Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
100

SUSE: 2019:14163-1 Moderate: Session Validity Issue Fixed

An update that solves one vulnerability and has 19 fixes is now available. . SUSE Security Update: Security update for SUSE Manager Client Tools ______________________________________________________________________________ Announcement ID: SUSE-SU-2019:14163-1 Rating: moderate References: #1103696 #1104034 #1130040 #1135881 #1136029 #1136480 #1137715 #1137940 #1138313 #1138358 #1138494 #1138822 #1139453 #1142038 #1143856 #1144155 #1144889 #1148125 #1148177 #1148311 Cross-References: CVE-2019-10136 Affected Products: SUSE Linux Enterprise Server 11-SP4-CLIENT-TOOLS SUSE Linux Enterprise Server 11-SP3-CLIENT-TOOLS ______________________________________________________________________________ An update that solves one vulnerability and has 19 fixes is now available. Description: This update fixes the following issues: mgr-cfg: - Ensure bytes type when using hashlib to avoid traceback (bsc#1138822) mgr-daemon: - Fix systemd timer configuration on SLE12 (bsc#1142038) mgr-osad: - Fix obsolete for old osad packages, to allow installing mgr-osad even by using osad at yum/zyppper install (bsc#1139453) - Ensure bytes type when using hashlib to avoid traceback (bsc#1138822) mgr-virtualization: - Fix missing python 3 ugettext (bsc#1138494) - Fix package dependencies to prevent file conflict (bsc#1143856) rhnlib: - Add SNI support for clients - Fix initialize ssl connection (bsc#1144155) - Fix bootstrapping SLE11SP4 trad client with SSL enabled (bsc#1148177) python-gzipstream: - SPEC cleanup - add makefile and pylint configuration - Add Uyuni URL to package - Bump version to 4.0.0 (bsc#1104034) - Fix copyright for the package specfile (bsc#1103696) spacecmd: - Bugfix: referenced variable before assignment. - Bugfix: 'dict' object has no attribute 'iteritems'(bsc#1135881) - Add unit tests for custominfo, snippet, scap, ssm, cryptokey and distribution - Fix missing runtime dependencies that made spacecmd return old versions of packages in some cases, even if newer ones were available (bsc#1148311) spacewalk-backend: - Do not overwrite comps and module data with older versions - Fix issue with "dists" keyword in url hostname - Import packages from all collections of a patch not just first one - Ensure bytes type when using hashlib to avoid traceback on XMLRPC call to "registration.register_osad" (bsc#1138822) - Do not duplicate "http://" protocol when using proxies with "deb" repositories (bsc#1138313) - Fix reposync when dealing with RedHat CDN (bsc#1138358) - Fix for CVE-2019-10136. An attacker with a valid, but expired, authenticated set of headers could move some digits around, artificially extending the session validity without modifying the checksum. (bsc#1136480) - Prevent FileNotFoundError: repomd.xml.key traceback (bsc#1137940) - Add journalctl output to spacewalk-debug tarballs - Prevent unnecessary triggering of channel-repodata tasks when GPG signing is disabled (bsc#1137715) - Fix spacewalk-repo-sync for Ubuntu repositories in mirror case (bsc#1136029) - Add support for ULN repositories on new Zypper based reposync. - Don't skip Deb package tags on package import (bsc#1130040) - For backend-libs subpackages, exclude files for the server (already part of spacewalk-backend) to avoid conflicts (bsc#1148125) - prevent duplicate key violates on repo-sync with long changelog entries (bsc#1144889) spacewalk-remote-utils: - Add RHEL8 Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 11-SP4-CLIENT-TOOLS: zypper in -t patchslesctsp4-client-tools-201907-14163=1 - SUSE Linux Enterprise Server 11-SP3-CLIENT-TOOLS: zypper in -t patch slesctsp3-client-tools-201907-14163=1 Package List: - SUSE Linux Enterprise Server 11-SP4-CLIENT-TOOLS (i586 ia64 ppc64 s390x x86_64): mgr-cfg-4.0.9-5.6.3 mgr-cfg-actions-4.0.9-5.6.3 mgr-cfg-client-4.0.9-5.6.3 mgr-cfg-management-4.0.9-5.6.3 mgr-daemon-4.0.7-5.8.2 mgr-daemon-debuginfo-4.0.7-5.8.2 mgr-daemon-debugsource-4.0.7-5.8.2 mgr-osad-4.0.9-5.6.2 mgr-virtualization-host-4.0.8-5.8.3 python2-mgr-cfg-4.0.9-5.6.3 python2-mgr-cfg-actions-4.0.9-5.6.3 python2-mgr-cfg-client-4.0.9-5.6.3 python2-mgr-cfg-management-4.0.9-5.6.3 python2-mgr-osa-common-4.0.9-5.6.2 python2-mgr-osad-4.0.9-5.6.2 python2-mgr-virtualization-common-4.0.8-5.8.3 python2-mgr-virtualization-host-4.0.8-5.8.3 python2-rhnlib-4.0.11-12.16.1 spacecmd-4.0.14-18.51.1 spacewalk-backend-libs-4.0.25-28.42.1 - SUSE Linux Enterprise Server 11-SP4-CLIENT-TOOLS (noarch): spacewalk-remote-utils-4.0.5-6.12.2 - SUSE Linux Enterprise Server 11-SP3-CLIENT-TOOLS (i586 ia64 ppc64 s390x x86_64): mgr-cfg-4.0.9-5.6.3 mgr-cfg-actions-4.0.9-5.6.3 mgr-cfg-client-4.0.9-5.6.3 mgr-cfg-management-4.0.9-5.6.3 mgr-daemon-4.0.7-5.8.2 mgr-daemon-debuginfo-4.0.7-5.8.2 mgr-daemon-debugsource-4.0.7-5.8.2 mgr-osad-4.0.9-5.6.2 mgr-virtualization-host-4.0.8-5.8.3 python2-mgr-cfg-4.0.9-5.6.3 python2-mgr-cfg-actions-4.0.9-5.6.3 python2-mgr-cfg-client-4.0.9-5.6.3 python2-mgr-cfg-management-4.0.9-5.6.3 python2-mgr-osa-common-4.0.9-5.6.2 python2-mgr-osad-4.0.9-5.6.2 python2-mgr-virtualization-common-4.0.8-5.8.3 python2-mgr-virtualization-host-4.0.8-5.8.3 python2-rhnlib-4.0.11-12.16.1 spacecmd-4.0.14-18.51.1 spacewalk-backend-libs-4.0.25-28.42.1 - SUSE Linux Enterprise Server 11-SP3-CLIENT-TOOLS (noarch): spacewalk-remote-utils-4.0.5-6.12.2 References: https://www.suse.com/security/cve/CVE-2019-10136.html https://bugzilla.suse.com/1103696 https://bugzilla.suse.com/1104034 https://bugzilla.suse.com/1130040 https://bugzilla.suse.com/1135881 https://bugzilla.suse.com/1136029 https://bugzilla.suse.com/1136480 https://bugzilla.suse.com/1137715 https://bugzilla.suse.com/1137940 https://bugzilla.suse.com/1138313 https://bugzilla.suse.com/1138358 https://bugzilla.suse.com/1138494 https://bugzilla.suse.com/1138822 https://bugzilla.suse.com/1139453 https://bugzilla.suse.com/1142038 https://bugzilla.suse.com/1143856 https://bugzilla.suse.com/1144155 https://bugzilla.suse.com/1144889 https://bugzilla.suse.com/1148125 https://bugzilla.suse.com/1148177 https://bugzilla.suse.com/1148311 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . SUSE Security Update addresses a vulnerability affecting SUSE Manager Client Tools. Discover more about the specifics and implications.. SUSE Manager Tools Update, Client Tools Security Fixes, SUSE Patches. . LinuxSecurity.com Team

Calendar 2 Sep 05, 2019 SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here