Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
202

openSUSE 2023:0310-1 Important: openssl-1_1 Security Flaw Fixes

An update that solves four vulnerabilities and has two fixes is now available.. SUSE Security Update: Security update for openssl-1_1 ______________________________________________________________________________ Announcement ID: SUSE-SU-2023:0310-1 Rating: important References: #1121365 #1198472 #1207533 #1207534 #1207536 #1207538 Cross-References: CVE-2022-4304 CVE-2022-4450 CVE-2023-0215 CVE-2023-0286 CVSS scores: CVE-2022-4304 (SUSE): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N CVE-2022-4450 (SUSE): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2023-0215 (SUSE): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2023-0286 (SUSE): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H Affected Products: SUSE Enterprise Storage 7 SUSE Enterprise Storage 7.1 SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS SUSE Linux Enterprise High Performance Computing 15-SP3-ESPOS SUSE Linux Enterprise High Performance Computing 15-SP3-LTSS SUSE Linux Enterprise Micro 5.1 SUSE Linux Enterprise Micro 5.2 SUSE Linux Enterprise Realtime Extension 15-SP3 SUSE Linux Enterprise Server 15-SP2-LTSS SUSE Linux Enterprise Server 15-SP3-LTSS SUSE Linux Enterprise Server for SAP 15-SP2 SUSE Linux Enterprise Server for SAP 15-SP3 SUSE Manager Proxy 4.2 SUSE Manager Retail Branch Server 4.2 SUSE Manager Server 4.2 openSUSE Leap Micro 5.2 ______________________________________________________________________________ An update that solves four vulnerabilities and has two fixes is now available. Description: This update for openssl-1_1 fixesthe following issues: - CVE-2023-0286: Fixed X.400 address type confusion in X.509 GENERAL_NAME_cmp for x400Address (bsc#1207533). - CVE-2023-0215: Fixed use-after-free following BIO_new_NDEF() (bsc#1207536). - CVE-2022-4450: Fixed double free after calling PEM_read_bio_ex() (bsc#1207538). - CVE-2022-4304: Fixed timing Oracle in RSA Decryption (bsc#1207534). - FIPS: list only FIPS approved public key algorithms (bsc#1121365, bsc#1198472) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap Micro 5.2: zypper in -t patch openSUSE-Leap-Micro-5.2-2023-310=1 - SUSE Manager Server 4.2: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.2-2023-310=1 - SUSE Manager Retail Branch Server 4.2: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch-Server-4.2-2023-310=1 - SUSE Manager Proxy 4.2: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.2-2023-310=1 - SUSE Linux Enterprise Server for SAP 15-SP3: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2023-310=1 - SUSE Linux Enterprise Server for SAP 15-SP2: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2023-310=1 - SUSE Linux Enterprise Server 15-SP3-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2023-310=1 - SUSE Linux Enterprise Server 15-SP2-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2023-310=1 - SUSE Linux Enterprise Realtime Extension 15-SP3: zypper in -t patch SUSE-SLE-Product-RT-15-SP3-2023-310=1 - SUSE Linux Enterprise Micro 5.2: zypper in -t patch SUSE-SUSE-MicroOS-5.2-2023-310=1 - SUSE Linux Enterprise Micro 5.1: zypper in -t patch SUSE-SUSE-MicroOS-5.1-2023-310=1 - SUSE Linux Enterprise High Performance Computing 15-SP3-LTSS: zypper in -t patchSUSE-SLE-Product-HPC-15-SP3-LTSS-2023-310=1 - SUSE Linux Enterprise High Performance Computing 15-SP3-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-ESPOS-2023-310=1 - SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2023-310=1 - SUSE Enterprise Storage 7.1: zypper in -t patch SUSE-Storage-7.1-2023-310=1 - SUSE Enterprise Storage 7: zypper in -t patch SUSE-Storage-7-2023-310=1 Package List: - openSUSE Leap Micro 5.2 (aarch64 x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Manager Server 4.2 (ppc64le s390x x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Manager Server 4.2 (x86_64): libopenssl-1_1-devel-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 - SUSE Manager Retail Branch Server 4.2 (x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl-1_1-devel-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Manager Proxy 4.2 (x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl-1_1-devel-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Server for SAP 15-SP3 (ppc64le x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Server for SAP 15-SP3 (noarch): openssl-1_1-doc-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Server for SAP 15-SP3 (x86_64): libopenssl-1_1-devel-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Server for SAP 15-SP2 (ppc64le x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Server for SAP 15-SP2 (x86_64): libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Server 15-SP3-LTSS (aarch64 ppc64le s390x x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Server 15-SP3-LTSS (noarch): openssl-1_1-doc-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Server 15-SP3-LTSS (x86_64): libopenssl-1_1-devel-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Server 15-SP2-LTSS (aarch64 ppc64le s390x x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Server 15-SP2-LTSS (x86_64): libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Realtime Extension 15-SP3 (x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl-1_1-devel-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Micro 5.2 (aarch64 s390x x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise Micro 5.1 (aarch64 s390x x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise High Performance Computing 15-SP3-LTSS (aarch64 x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise High Performance Computing 15-SP3-LTSS (x86_64): libopenssl-1_1-devel-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise High Performance Computing 15-SP3-LTSS (noarch): openssl-1_1-doc-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise High Performance Computing 15-SP3-ESPOS (aarch64 x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise High Performance Computing 15-SP3-ESPOS (x86_64): libopenssl-1_1-devel-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise High Performance Computing 15-SP3-ESPOS (noarch): openssl-1_1-doc-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS (aarch64 x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS (x86_64): libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 - SUSE Enterprise Storage 7.1 (aarch64 x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Enterprise Storage 7.1 (noarch): openssl-1_1-doc-1.1.1d-150200.11.57.1 - SUSE Enterprise Storage 7.1 (x86_64): libopenssl-1_1-devel-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 - SUSE Enterprise Storage 7 (aarch64 x86_64): libopenssl-1_1-devel-1.1.1d-150200.11.57.1 libopenssl1_1-1.1.1d-150200.11.57.1 libopenssl1_1-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-1.1.1d-150200.11.57.1 openssl-1_1-1.1.1d-150200.11.57.1 openssl-1_1-debuginfo-1.1.1d-150200.11.57.1 openssl-1_1-debugsource-1.1.1d-150200.11.57.1 - SUSE Enterprise Storage 7 (x86_64): libopenssl1_1-32bit-1.1.1d-150200.11.57.1 libopenssl1_1-32bit-debuginfo-1.1.1d-150200.11.57.1 libopenssl1_1-hmac-32bit-1.1.1d-150200.11.57.1 References: https://www.suse.com/security/cve/CVE-2022-4304.html https://www.suse.com/security/cve/CVE-2022-4450.html https://www.suse.com/security/cve/CVE-2023-0215.html https://www.suse.com/security/cve/CVE-2023-0286.html https://bugzilla.suse.com/1121365 https://bugzilla.suse.com/1198472 https://bugzilla.suse.com/1207533 https://bugzilla.suse.com/1207534 https://bugzilla.suse.com/1207536 https://bugzilla.suse.com/1207538 . A new version of openssl-1_1 has been launched to mitigate four vulnerabilities. Review the patch specifics and risk ratings here.. OpenSSL Updates,SUSE Patches,Security Flaw Updates,Patch Management. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 07, 2023 Important OpenSUSE
100

SUSE Manager Ubuntu 18.04: 2021:14755-1 Moderate: Two Security Issues

An update that solves two vulnerabilities, contains three features and has 12 fixes is now available. . SUSE Security Update: Security update for SUSE Manager Client Tools ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:14755-1 Rating: moderate References: #1171257 #1173557 #1176293 #1179831 #1180583 #1180584 #1180585 #1181368 #1182281 #1182293 #1182382 #1185092 #1185281 #1186674 ECO-3212 SLE-18028 SLE-18033 Cross-References: CVE-2021-25315 CVE-2021-31607 CVSS scores: CVE-2021-25315 (NVD) : 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2021-25315 (SUSE): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVE-2021-31607 (NVD) : 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2021-31607 (SUSE): 7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: SUSE Manager Ubuntu 18.04-CLIENT-TOOLS ______________________________________________________________________________ An update that solves two vulnerabilities, contains three features and has 12 fixes is now available. Description: This update fixes the following issues: salt: - Check if dpkgnotify is executable (bsc#1186674) - Update to Salt release version 3002.2 (jsc#ECO-3212- Check if dpkgnotify is executable (bsc#1186674)) - Drop support for Python2. Obsoletes `python2-salt` package (jsc#SLE-18028) - Virt module updates * network: handle missing ipv4 netmask attribute * more network support * PCI/USB host devices passthrough support - Set distro requirement to oldest supported version in requirements/base.txt - Bring missing part of async batch implementation back (bsc#1182382, CVE-2021-25315) - Always require python3-distro (bsc#1182293) - Remove deprecated warning that breaks minion execution when "server_id_use_crc" opts is missing - Fix pkg states when DEB package has "all" arch - Do not force beacons configuration to be a list. - Remove msgpack < 1.0.0 from base requirements (bsc#1176293) - Msgpack support for version > = 1.0.0 (bsc#1171257) - Fix issue parsing errors in ansiblegate state module - Prevent command injection in the snapper module (bsc#1185281, CVE-2021-31607) - Transactional_update: detect recursion in the executor - Add subpackage salt-transactional-update (jsc#SLE-18033) - Remove duplicate directories from specfile - Improvements on "ansiblegate" module (bsc#1185092): * New methods: ansible.targets / ansible.discover_playbooks - Add support for Alibaba Cloud Linux 2 (Aliyun Linux) - Regression fix of salt-ssh on processing targets - Update target fix for salt-ssh and avoiding race condition on salt-ssh event processing (bsc#1179831, bsc#1182281) - Add notify beacon for Debian/Ubuntu systems - Fix zmq bug that causes salt-call to freeze (bsc#1181368) spacecmd: - Rename system migration to system transfer - Rename SP to product migration - Update translation strings - Add group_addconfigchannel and group_removeconfigchannel - Add group_listconfigchannels and configchannel_listgroups - Fix spacecmd compat with Python 3 - Deprecated "Software Crashes" feature - Document advanced package search on '--help' (bsc#1180583) - Fixed advanced search on 'package_listinstalledsystems' - Fixed duplicate results when using multiple search criteria (bsc#1180585) - Fixed "non-advanced" package search when using multiple package names (bsc#1180584) - Update translations - Fix: make spacecmd build on Debian - Add Service Pack migration operations (bsc#1173557) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSEManager Ubuntu 18.04-CLIENT-TOOLS: zypper in -t patch suse-ubu184ct-client-tools-202105-14755=1 Package List: - SUSE Manager Ubuntu 18.04-CLIENT-TOOLS (amd64): libopenscap-dev-1.2.15-1build1~uyuni1 libopenscap-perl-1.2.15-1build1~uyuni1 libopenscap8-1.2.15-1build1~uyuni1 libopenscap8-dbg-1.2.15-1build1~uyuni1 python-openscap-1.2.15-1build1~uyuni1 python3-pycryptodome-3.4.7-1ubuntu1 - SUSE Manager Ubuntu 18.04-CLIENT-TOOLS (all): salt-common-3002.2+ds-1+89.1 salt-minion-3002.2+ds-1+89.1 scap-security-guide-ubuntu-0.1.55git20210323-2.3 spacecmd-4.2.8-26.2 References: https://www.suse.com/security/cve/CVE-2021-25315.html https://www.suse.com/security/cve/CVE-2021-31607.html https://bugzilla.suse.com/1171257 https://bugzilla.suse.com/1173557 https://bugzilla.suse.com/1176293 https://bugzilla.suse.com/1179831 https://bugzilla.suse.com/1180583 https://bugzilla.suse.com/1180584 https://bugzilla.suse.com/1180585 https://bugzilla.suse.com/1181368 https://bugzilla.suse.com/1182281 https://bugzilla.suse.com/1182293 https://bugzilla.suse.com/1182382 https://bugzilla.suse.com/1185092 https://bugzilla.suse.com/1185281 https://bugzilla.suse.com/1186674 . SUSE Manager Client Tools update provides security guidance on two issues, enhancing features crucial for users.. SUSE Manager Client Tools, security update, patch instructions. . LinuxSecurity.com Team

Calendar 2 Jun 21, 2021 SuSE
100

SUSE: 2020:0813-1 Important: spamassassin Configuration Issues

An update that solves three vulnerabilities and has one errata is now available. . SUSE Security Update: Security update for spamassassin ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:0813-1 Rating: important References: #1118987 #1162197 #1162200 #862963 Cross-References: CVE-2018-11805 CVE-2020-1930 CVE-2020-1931 Affected Products: SUSE Linux Enterprise Server for SAP 15 SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise High Performance Computing 15-LTSS SUSE Linux Enterprise High Performance Computing 15-ESPOS ______________________________________________________________________________ An update that solves three vulnerabilities and has one errata is now available. Description: This update for spamassassin fixes the following issues: Security issues fixed: - CVE-2018-11805: Fixed an issue with delimiter handling in rule files related to is_regexp_valid() (bsc#1118987). - CVE-2020-1930: Fixed an issue with rule configuration (.cf) files which can be configured to run system commands (bsc#1162197). - CVE-2020-1931: Fixed an issue with rule configuration (.cf) files which can be configured to run system commands with warnings (bsc#1162200). Non-security issue fixed: - Altering hash requires restarting loop (bsc#862963). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server for SAP 15: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-2020-813=1 - SUSE Linux Enterprise Server 15-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-2020-813=1 - SUSE Linux Enterprise High Performance Computing 15-LTSS: zypper in -t patchSUSE-SLE-Product-HPC-15-2020-813=1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-2020-813=1 Package List: - SUSE Linux Enterprise Server for SAP 15 (ppc64le x86_64): perl-Mail-SpamAssassin-3.4.2-7.9.1 perl-Mail-SpamAssassin-Plugin-iXhash2-2.05-7.9.1 spamassassin-3.4.2-7.9.1 spamassassin-debuginfo-3.4.2-7.9.1 spamassassin-debugsource-3.4.2-7.9.1 - SUSE Linux Enterprise Server 15-LTSS (aarch64 s390x): perl-Mail-SpamAssassin-3.4.2-7.9.1 perl-Mail-SpamAssassin-Plugin-iXhash2-2.05-7.9.1 spamassassin-3.4.2-7.9.1 spamassassin-debuginfo-3.4.2-7.9.1 spamassassin-debugsource-3.4.2-7.9.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (aarch64 x86_64): perl-Mail-SpamAssassin-3.4.2-7.9.1 perl-Mail-SpamAssassin-Plugin-iXhash2-2.05-7.9.1 spamassassin-3.4.2-7.9.1 spamassassin-debuginfo-3.4.2-7.9.1 spamassassin-debugsource-3.4.2-7.9.1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (aarch64 x86_64): perl-Mail-SpamAssassin-3.4.2-7.9.1 perl-Mail-SpamAssassin-Plugin-iXhash2-2.05-7.9.1 spamassassin-3.4.2-7.9.1 spamassassin-debuginfo-3.4.2-7.9.1 spamassassin-debugsource-3.4.2-7.9.1 References: https://www.suse.com/security/cve/CVE-2018-11805.html https://www.suse.com/security/cve/CVE-2020-1930.html https://www.suse.com/security/cve/CVE-2020-1931.html https://bugzilla.suse.com/1118987 https://bugzilla.suse.com/1162197 https://bugzilla.suse.com/1162200 https://bugzilla.suse.com/862963 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . This Red Hat patch resolves significant vulnerabilities in Snort, impacting essential network settings.. SUSE Security Update, SpamAssassin Issues, Configuration Vulnerabilities. . Severity: Important. LinuxSecurity.comTeam

Calendar 2 Mar 30, 2020 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here