An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for emacs ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:4310-1 Rating: important References: #1205822 Cross-References: CVE-2022-45939 CVSS scores: CVE-2022-45939 (NVD) : 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVE-2022-45939 (SUSE): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Affected Products: SUSE CaaS Platform 4.0 SUSE Enterprise Storage 6 SUSE Enterprise Storage 7 SUSE Enterprise Storage 7.1 SUSE Linux Enterprise Desktop 15-SP3 SUSE Linux Enterprise High Performance Computing 15-ESPOS SUSE Linux Enterprise High Performance Computing 15-LTSS SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS SUSE Linux Enterprise High Performance Computing 15-SP2-ESPOS SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS SUSE Linux Enterprise High Performance Computing 15-SP3 SUSE Linux Enterprise Module for Basesystem 15-SP3 SUSE Linux Enterprise Module for Desktop Applications 15-SP3 SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Server 15-SP1-BCL SUSE Linux Enterprise Server 15-SP1-LTSS SUSE Linux Enterprise Server 15-SP2-BCL SUSE Linux Enterprise Server 15-SP2-LTSS SUSE Linux Enterprise Server 15-SP3 SUSE Linux Enterprise Server for SAP 15 SUSE Linux Enterprise Server for SAP 15-SP1 SUSE Linux Enterprise Server for SAP 15-SP2 SUSE Linux Enterprise Server for SAP Applications 15-SP3 SUSE Manager Proxy 4.1 SUSE Manager Proxy 4.2 SUSE Manager Retail Branch Server 4.1 SUSE Manager Retail Branch Server 4.2 SUSE Manager Server 4.1 SUSE Manager Server 4.2 openSUSE Leap 15.3 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for emacs fixes the following issues: - CVE-2022-45939: Fixed shell command injection via source code files when using ctags (bsc#1205822). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.3: zypper in -t patch openSUSE-SLE-15.3-2022-4310=1 - SUSE Manager Server 4.1: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.1-2022-4310=1 - SUSE Manager Retail Branch Server 4.1: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch-Server-4.1-2022-4310=1 - SUSE Manager Proxy 4.1: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.1-2022-4310=1 - SUSE Linux Enterprise Server for SAP 15-SP2: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2022-4310=1 - SUSE Linux Enterprise Server for SAP 15-SP1: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP1-2022-4310=1 - SUSE Linux Enterprise Server for SAP 15: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-2022-4310=1 - SUSE Linux Enterprise Server 15-SP2-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2022-4310=1 - SUSE Linux Enterprise Server 15-SP2-BCL: zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-BCL-2022-4310=1 - SUSE Linux Enterprise Server 15-SP1-LTSS: zypper in -t patchSUSE-SLE-Product-SLES-15-SP1-LTSS-2022-4310=1 - SUSE Linux Enterprise Server 15-SP1-BCL: zypper in -t patch SUSE-SLE-Product-SLES-15-SP1-BCL-2022-4310=1 - SUSE Linux Enterprise Server 15-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-2022-4310=1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP3: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP3-2022-4310=1 - SUSE Linux Enterprise Module for Basesystem 15-SP3: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP3-2022-4310=1 - SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2022-4310=1 - SUSE Linux Enterprise High Performance Computing 15-SP2-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-ESPOS-2022-4310=1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP1-LTSS-2022-4310=1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP1-ESPOS-2022-4310=1 - SUSE Linux Enterprise High Performance Computing 15-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-2022-4310=1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-2022-4310=1 - SUSE Enterprise Storage 7: zypper in -t patch SUSE-Storage-7-2022-4310=1 - SUSE Enterprise Storage 6: zypper in -t patch SUSE-Storage-6-2022-4310=1 - SUSE CaaS Platform 4.0: To install this update, use the SUSE CaaS Platform 'skuba' tool. It will inform you if it detects new updates and let you then trigger updating of the complete cluster in a controlled way. Package List: - openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - openSUSE Leap 15.3 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Manager Server 4.1 (ppc64le s390x x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Manager Server 4.1 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Manager Retail Branch Server 4.1 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Manager Retail Branch Server 4.1 (x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Manager Proxy 4.1 (x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Manager Proxy 4.1 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise Server for SAP 15-SP2 (ppc64le x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise Server for SAP 15-SP2 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise Server for SAP 15-SP1 (ppc64le x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise Server for SAP 15-SP1 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise Server for SAP 15 (ppc64le x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise Server for SAP 15 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise Server 15-SP2-LTSS (aarch64 ppc64le s390x x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise Server 15-SP2-LTSS (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise Server 15-SP2-BCL (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise Server 15-SP2-BCL (x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise Server 15-SP1-LTSS (aarch64 ppc64le s390x x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise Server 15-SP1-LTSS (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise Server 15-SP1-BCL (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise Server 15-SP1-BCL (x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise Server 15-LTSS (aarch64 s390x): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise Server 15-LTSS (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP3 (aarch64 ppc64le s390x x86_64): emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise Module for Basesystem 15-SP3 (aarch64 ppc64le s390x x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise Module for Basesystem 15-SP3 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS (aarch64 x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-SP2-ESPOS (aarch64 x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-SP2-ESPOS (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing15-SP1-LTSS (aarch64 x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS (aarch64 x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (aarch64 x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (aarch64 x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Enterprise Storage 7 (aarch64 x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Enterprise Storage 7 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE Enterprise Storage 6 (aarch64 x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 - SUSE Enterprise Storage 6 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE CaaS Platform 4.0 (noarch): emacs-el-25.3-150000.3.12.1 emacs-info-25.3-150000.3.12.1 - SUSE CaaS Platform 4.0 (x86_64): emacs-25.3-150000.3.12.1 emacs-debuginfo-25.3-150000.3.12.1 emacs-debugsource-25.3-150000.3.12.1 emacs-nox-25.3-150000.3.12.1 emacs-nox-debuginfo-25.3-150000.3.12.1 emacs-x11-25.3-150000.3.12.1 emacs-x11-debuginfo-25.3-150000.3.12.1 etags-25.3-150000.3.12.1 etags-debuginfo-25.3-150000.3.12.1 References: https://www.suse.com/security/cve/CVE-2022-45939.html https://bugzilla.suse.com/1205822 . SUSE has issued a critical security patch for emacs to rectify a vulnerability linked to shell command injection across various distributions.. SUSE Security Update, Emacs Shell Injection, Software Patch.. Severity: Important. LinuxSecurity.com Team
An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for emacs ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:4304-1 Rating: important References: #1205822 Cross-References: CVE-2022-45939 CVSS scores: CVE-2022-45939 (SUSE): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Affected Products: SUSE Linux Enterprise Desktop 15-SP4 SUSE Linux Enterprise High Performance Computing 15-SP4 SUSE Linux Enterprise Module for Basesystem 15-SP4 SUSE Linux Enterprise Module for Desktop Applications 15-SP4 SUSE Linux Enterprise Server 15-SP4 SUSE Linux Enterprise Server for SAP Applications 15-SP4 SUSE Manager Proxy 4.3 SUSE Manager Retail Branch Server 4.3 SUSE Manager Server 4.3 openSUSE Leap 15.4 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for emacs fixes the following issues: - CVE-2022-45939: Fixed shell command injection via source code files when using ctags (bsc#1205822). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.4: zypper in -t patch openSUSE-SLE-15.4-2022-4304=1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP4: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP4-2022-4304=1 - SUSE Linux Enterprise Module for Basesystem 15-SP4: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP4-2022-4304=1 Package List: - openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64): emacs-27.2-150400.3.3.1 emacs-debuginfo-27.2-150400.3.3.1 emacs-debugsource-27.2-150400.3.3.1 emacs-nox-27.2-150400.3.3.1 emacs-nox-debuginfo-27.2-150400.3.3.1 emacs-x11-27.2-150400.3.3.1 emacs-x11-debuginfo-27.2-150400.3.3.1 etags-27.2-150400.3.3.1 etags-debuginfo-27.2-150400.3.3.1 - openSUSE Leap 15.4 (noarch): emacs-el-27.2-150400.3.3.1 emacs-info-27.2-150400.3.3.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP4 (aarch64 ppc64le s390x x86_64): emacs-debuginfo-27.2-150400.3.3.1 emacs-debugsource-27.2-150400.3.3.1 emacs-x11-27.2-150400.3.3.1 emacs-x11-debuginfo-27.2-150400.3.3.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (aarch64 ppc64le s390x x86_64): emacs-27.2-150400.3.3.1 emacs-debuginfo-27.2-150400.3.3.1 emacs-debugsource-27.2-150400.3.3.1 emacs-nox-27.2-150400.3.3.1 emacs-nox-debuginfo-27.2-150400.3.3.1 etags-27.2-150400.3.3.1 etags-debuginfo-27.2-150400.3.3.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (noarch): emacs-el-27.2-150400.3.3.1 emacs-info-27.2-150400.3.3.1 References: https://www.suse.com/security/cve/CVE-2022-45939.html https://bugzilla.suse.com/1205822 . Fedora reveals critical patch for vi editor tackling buffer overflow vulnerability, under advisory ID: FEDORA-SU-2022:1212-2.. emacs Shell Command Injection,SUSE Linux Patches,Security Update. . Severity: Important. LinuxSecurity.com Team
An update that solves one vulnerability, contains one feature and has two fixes is now available. . SUSE Security Update: Security update for sssd ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:1258-1 Rating: important References: #1183735 #1189492 #1196564 SLE-17773 Cross-References: CVE-2021-3621 CVSS scores: CVE-2021-3621 (NVD) : 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVE-2021-3621 (SUSE): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H Affected Products: SUSE Linux Enterprise Server 12-SP4-LTSS SUSE Linux Enterprise Server for SAP 12-SP4 SUSE OpenStack Cloud 9 SUSE OpenStack Cloud Crowbar 9 ______________________________________________________________________________ An update that solves one vulnerability, contains one feature and has two fixes is now available. Description: This update for sssd fixes the following issues: - CVE-2021-3621: Fixed shell command injection in sssctl via the logs-fetch and cache-expire subcommands (bsc#1189492). - Add LDAPS support for the AD provider (bsc#1183735)(jsc#SLE-17773). Non-security fixes: - Fixed a crash caused by calling dbus_watch_handle with a corrupted memory value (bsc#1196564). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud Crowbar 9: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-9-2022-1258=1 - SUSE OpenStack Cloud 9: zypper in -t patch SUSE-OpenStack-Cloud-9-2022-1258=1 - SUSE Linux Enterprise Server for SAP 12-SP4: zypper in -t patch SUSE-SLE-SAP-12-SP4-2022-1258=1 - SUSE Linux Enterprise Server 12-SP4-LTSS: zypper in -t patchSUSE-SLE-SERVER-12-SP4-LTSS-2022-1258=1 Package List: - SUSE OpenStack Cloud Crowbar 9 (x86_64): libipa_hbac0-1.16.1-4.40.1 libipa_hbac0-debuginfo-1.16.1-4.40.1 libsss_certmap0-1.16.1-4.40.1 libsss_certmap0-debuginfo-1.16.1-4.40.1 libsss_idmap0-1.16.1-4.40.1 libsss_idmap0-debuginfo-1.16.1-4.40.1 libsss_nss_idmap0-1.16.1-4.40.1 libsss_nss_idmap0-debuginfo-1.16.1-4.40.1 libsss_simpleifp0-1.16.1-4.40.1 libsss_simpleifp0-debuginfo-1.16.1-4.40.1 python-sssd-config-1.16.1-4.40.1 python-sssd-config-debuginfo-1.16.1-4.40.1 sssd-1.16.1-4.40.1 sssd-32bit-1.16.1-4.40.1 sssd-ad-1.16.1-4.40.1 sssd-ad-debuginfo-1.16.1-4.40.1 sssd-dbus-1.16.1-4.40.1 sssd-dbus-debuginfo-1.16.1-4.40.1 sssd-debuginfo-1.16.1-4.40.1 sssd-debuginfo-32bit-1.16.1-4.40.1 sssd-debugsource-1.16.1-4.40.1 sssd-ipa-1.16.1-4.40.1 sssd-ipa-debuginfo-1.16.1-4.40.1 sssd-krb5-1.16.1-4.40.1 sssd-krb5-common-1.16.1-4.40.1 sssd-krb5-common-debuginfo-1.16.1-4.40.1 sssd-krb5-debuginfo-1.16.1-4.40.1 sssd-ldap-1.16.1-4.40.1 sssd-ldap-debuginfo-1.16.1-4.40.1 sssd-proxy-1.16.1-4.40.1 sssd-proxy-debuginfo-1.16.1-4.40.1 sssd-tools-1.16.1-4.40.1 sssd-tools-debuginfo-1.16.1-4.40.1 - SUSE OpenStack Cloud 9 (x86_64): libipa_hbac0-1.16.1-4.40.1 libipa_hbac0-debuginfo-1.16.1-4.40.1 libsss_certmap0-1.16.1-4.40.1 libsss_certmap0-debuginfo-1.16.1-4.40.1 libsss_idmap0-1.16.1-4.40.1 libsss_idmap0-debuginfo-1.16.1-4.40.1 libsss_nss_idmap0-1.16.1-4.40.1 libsss_nss_idmap0-debuginfo-1.16.1-4.40.1 libsss_simpleifp0-1.16.1-4.40.1 libsss_simpleifp0-debuginfo-1.16.1-4.40.1 python-sssd-config-1.16.1-4.40.1 python-sssd-config-debuginfo-1.16.1-4.40.1 sssd-1.16.1-4.40.1 sssd-32bit-1.16.1-4.40.1 sssd-ad-1.16.1-4.40.1 sssd-ad-debuginfo-1.16.1-4.40.1 sssd-dbus-1.16.1-4.40.1 sssd-dbus-debuginfo-1.16.1-4.40.1 sssd-debuginfo-1.16.1-4.40.1 sssd-debuginfo-32bit-1.16.1-4.40.1 sssd-debugsource-1.16.1-4.40.1 sssd-ipa-1.16.1-4.40.1 sssd-ipa-debuginfo-1.16.1-4.40.1 sssd-krb5-1.16.1-4.40.1 sssd-krb5-common-1.16.1-4.40.1 sssd-krb5-common-debuginfo-1.16.1-4.40.1 sssd-krb5-debuginfo-1.16.1-4.40.1 sssd-ldap-1.16.1-4.40.1 sssd-ldap-debuginfo-1.16.1-4.40.1 sssd-proxy-1.16.1-4.40.1 sssd-proxy-debuginfo-1.16.1-4.40.1 sssd-tools-1.16.1-4.40.1 sssd-tools-debuginfo-1.16.1-4.40.1 - SUSE Linux Enterprise Server for SAP 12-SP4 (ppc64le x86_64): libipa_hbac0-1.16.1-4.40.1 libipa_hbac0-debuginfo-1.16.1-4.40.1 libsss_certmap0-1.16.1-4.40.1 libsss_certmap0-debuginfo-1.16.1-4.40.1 libsss_idmap0-1.16.1-4.40.1 libsss_idmap0-debuginfo-1.16.1-4.40.1 libsss_nss_idmap0-1.16.1-4.40.1 libsss_nss_idmap0-debuginfo-1.16.1-4.40.1 libsss_simpleifp0-1.16.1-4.40.1 libsss_simpleifp0-debuginfo-1.16.1-4.40.1 python-sssd-config-1.16.1-4.40.1 python-sssd-config-debuginfo-1.16.1-4.40.1 sssd-1.16.1-4.40.1 sssd-ad-1.16.1-4.40.1 sssd-ad-debuginfo-1.16.1-4.40.1 sssd-dbus-1.16.1-4.40.1 sssd-dbus-debuginfo-1.16.1-4.40.1 sssd-debuginfo-1.16.1-4.40.1 sssd-debugsource-1.16.1-4.40.1 sssd-ipa-1.16.1-4.40.1 sssd-ipa-debuginfo-1.16.1-4.40.1 sssd-krb5-1.16.1-4.40.1 sssd-krb5-common-1.16.1-4.40.1 sssd-krb5-common-debuginfo-1.16.1-4.40.1 sssd-krb5-debuginfo-1.16.1-4.40.1 sssd-ldap-1.16.1-4.40.1 sssd-ldap-debuginfo-1.16.1-4.40.1 sssd-proxy-1.16.1-4.40.1 sssd-proxy-debuginfo-1.16.1-4.40.1 sssd-tools-1.16.1-4.40.1 sssd-tools-debuginfo-1.16.1-4.40.1 - SUSE Linux Enterprise Server for SAP 12-SP4 (x86_64): sssd-32bit-1.16.1-4.40.1 sssd-debuginfo-32bit-1.16.1-4.40.1 - SUSE Linux Enterprise Server 12-SP4-LTSS (aarch64 ppc64le s390x x86_64): libipa_hbac0-1.16.1-4.40.1 libipa_hbac0-debuginfo-1.16.1-4.40.1 libsss_certmap0-1.16.1-4.40.1 libsss_certmap0-debuginfo-1.16.1-4.40.1 libsss_idmap0-1.16.1-4.40.1 libsss_idmap0-debuginfo-1.16.1-4.40.1 libsss_nss_idmap0-1.16.1-4.40.1 libsss_nss_idmap0-debuginfo-1.16.1-4.40.1 libsss_simpleifp0-1.16.1-4.40.1 libsss_simpleifp0-debuginfo-1.16.1-4.40.1 python-sssd-config-1.16.1-4.40.1 python-sssd-config-debuginfo-1.16.1-4.40.1 sssd-1.16.1-4.40.1 sssd-ad-1.16.1-4.40.1 sssd-ad-debuginfo-1.16.1-4.40.1 sssd-dbus-1.16.1-4.40.1 sssd-dbus-debuginfo-1.16.1-4.40.1 sssd-debuginfo-1.16.1-4.40.1 sssd-debugsource-1.16.1-4.40.1 sssd-ipa-1.16.1-4.40.1 sssd-ipa-debuginfo-1.16.1-4.40.1 sssd-krb5-1.16.1-4.40.1 sssd-krb5-common-1.16.1-4.40.1 sssd-krb5-common-debuginfo-1.16.1-4.40.1 sssd-krb5-debuginfo-1.16.1-4.40.1 sssd-ldap-1.16.1-4.40.1 sssd-ldap-debuginfo-1.16.1-4.40.1 sssd-proxy-1.16.1-4.40.1 sssd-proxy-debuginfo-1.16.1-4.40.1 sssd-tools-1.16.1-4.40.1 sssd-tools-debuginfo-1.16.1-4.40.1 - SUSE Linux Enterprise Server 12-SP4-LTSS (s390x x86_64): sssd-32bit-1.16.1-4.40.1 sssd-debuginfo-32bit-1.16.1-4.40.1 - SUSE Linux Enterprise Server 12-SP4-LTSS (aarch64): libsss_nss_idmap-devel-1.16.1-4.40.1 - SUSE Linux Enterprise Server 12-SP4-LTSS (s390x): libsss_idmap-devel-1.16.1-4.40.1 References: https://www.suse.com/security/cve/CVE-2021-3621.html https://bugzilla.suse.com/1183735 https://bugzilla.suse.com/1189492 https://bugzilla.suse.com/1196564 . SUSE reveals a significant upgrade for sssd that tackles a major vulnerability related to shell command injection and improves Active Directory compatibility.. SUSE Security Update, sssd command injection, AD provider support. . Severity: Important. LinuxSecurity.com Team
An update that solves one vulnerability and has two fixes is now available. . SUSE Security Update: Security update for sssd ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:0826-1 Rating: important References: #1182637 #1189492 #1190775 Cross-References: CVE-2021-3621 CVSS scores: CVE-2021-3621 (NVD) : 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVE-2021-3621 (SUSE): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H Affected Products: SUSE CaaS Platform 4.0 SUSE Enterprise Storage 6 SUSE Linux Enterprise High Performance Computing 15-ESPOS SUSE Linux Enterprise High Performance Computing 15-LTSS SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Server 15-SP1-BCL SUSE Linux Enterprise Server 15-SP1-LTSS SUSE Linux Enterprise Server for SAP 15 SUSE Linux Enterprise Server for SAP 15-SP1 ______________________________________________________________________________ An update that solves one vulnerability and has two fixes is now available. Description: This update for sssd fixes the following issues: Security issues fixed: - CVE-2021-3621: Fixed shell command injection in sssctl via the logs-fetch and cache-expire subcommands (bsc#1189492). Non-security issues fixed: - Create timestamp attribute in cache objects if missing. (bsc#1182637) - Add 'ldap_ignore_unreadable_references' parameter to skip unreadable objects referenced by 'member' attributte (bsc#1190775). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaSTonline_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server for SAP 15-SP1: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP1-2022-826=1 - SUSE Linux Enterprise Server for SAP 15: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-2022-826=1 - SUSE Linux Enterprise Server 15-SP1-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-SP1-LTSS-2022-826=1 - SUSE Linux Enterprise Server 15-SP1-BCL: zypper in -t patch SUSE-SLE-Product-SLES-15-SP1-BCL-2022-826=1 - SUSE Linux Enterprise Server 15-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-2022-826=1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP1-LTSS-2022-826=1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP1-ESPOS-2022-826=1 - SUSE Linux Enterprise High Performance Computing 15-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-2022-826=1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-2022-826=1 - SUSE Enterprise Storage 6: zypper in -t patch SUSE-Storage-6-2022-826=1 - SUSE CaaS Platform 4.0: To install this update, use the SUSE CaaS Platform 'skuba' tool. It will inform you if it detects new updates and let you then trigger updating of the complete cluster in a controlled way. Package List: - SUSE Linux Enterprise Server for SAP 15-SP1 (ppc64le x86_64): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 sssd-winbind-idmap-1.16.1-8.64.1 sssd-winbind-idmap-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise Server for SAP 15-SP1 (x86_64): sssd-32bit-1.16.1-8.64.1 sssd-32bit-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise Server for SAP 15 (ppc64le x86_64): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 - SUSE Linux Enterprise Server for SAP 15 (x86_64): sssd-32bit-1.16.1-8.64.1 sssd-32bit-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise Server 15-SP1-LTSS (aarch64 ppc64le s390x x86_64): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 sssd-winbind-idmap-1.16.1-8.64.1 sssd-winbind-idmap-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise Server 15-SP1-LTSS (x86_64): sssd-32bit-1.16.1-8.64.1 sssd-32bit-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise Server 15-SP1-BCL (x86_64): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-32bit-1.16.1-8.64.1 sssd-32bit-debuginfo-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 sssd-winbind-idmap-1.16.1-8.64.1 sssd-winbind-idmap-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise Server 15-LTSS (aarch64 s390x): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS (aarch64 x86_64): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 sssd-winbind-idmap-1.16.1-8.64.1 sssd-winbind-idmap-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS (x86_64): sssd-32bit-1.16.1-8.64.1 sssd-32bit-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS (aarch64 x86_64): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 sssd-winbind-idmap-1.16.1-8.64.1 sssd-winbind-idmap-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS (x86_64): sssd-32bit-1.16.1-8.64.1 sssd-32bit-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (aarch64 x86_64): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (x86_64): sssd-32bit-1.16.1-8.64.1 sssd-32bit-debuginfo-1.16.1-8.64.1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (aarch64 x86_64): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (x86_64): sssd-32bit-1.16.1-8.64.1 sssd-32bit-debuginfo-1.16.1-8.64.1 - SUSE Enterprise Storage 6 (aarch64 x86_64): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 sssd-winbind-idmap-1.16.1-8.64.1 sssd-winbind-idmap-debuginfo-1.16.1-8.64.1 - SUSE Enterprise Storage 6 (x86_64): sssd-32bit-1.16.1-8.64.1 sssd-32bit-debuginfo-1.16.1-8.64.1 - SUSE CaaS Platform 4.0 (x86_64): libipa_hbac-devel-1.16.1-8.64.1 libipa_hbac0-1.16.1-8.64.1 libipa_hbac0-debuginfo-1.16.1-8.64.1 libsss_certmap-devel-1.16.1-8.64.1 libsss_certmap0-1.16.1-8.64.1 libsss_certmap0-debuginfo-1.16.1-8.64.1 libsss_idmap-devel-1.16.1-8.64.1 libsss_idmap0-1.16.1-8.64.1 libsss_idmap0-debuginfo-1.16.1-8.64.1 libsss_nss_idmap-devel-1.16.1-8.64.1 libsss_nss_idmap0-1.16.1-8.64.1 libsss_nss_idmap0-debuginfo-1.16.1-8.64.1 libsss_simpleifp-devel-1.16.1-8.64.1 libsss_simpleifp0-1.16.1-8.64.1 libsss_simpleifp0-debuginfo-1.16.1-8.64.1 python3-sssd-config-1.16.1-8.64.1 python3-sssd-config-debuginfo-1.16.1-8.64.1 sssd-1.16.1-8.64.1 sssd-32bit-1.16.1-8.64.1 sssd-32bit-debuginfo-1.16.1-8.64.1 sssd-ad-1.16.1-8.64.1 sssd-ad-debuginfo-1.16.1-8.64.1 sssd-dbus-1.16.1-8.64.1 sssd-dbus-debuginfo-1.16.1-8.64.1 sssd-debuginfo-1.16.1-8.64.1 sssd-debugsource-1.16.1-8.64.1 sssd-ipa-1.16.1-8.64.1 sssd-ipa-debuginfo-1.16.1-8.64.1 sssd-krb5-1.16.1-8.64.1 sssd-krb5-common-1.16.1-8.64.1 sssd-krb5-common-debuginfo-1.16.1-8.64.1 sssd-krb5-debuginfo-1.16.1-8.64.1 sssd-ldap-1.16.1-8.64.1 sssd-ldap-debuginfo-1.16.1-8.64.1 sssd-proxy-1.16.1-8.64.1 sssd-proxy-debuginfo-1.16.1-8.64.1 sssd-tools-1.16.1-8.64.1 sssd-tools-debuginfo-1.16.1-8.64.1 sssd-wbclient-1.16.1-8.64.1 sssd-wbclient-debuginfo-1.16.1-8.64.1 sssd-wbclient-devel-1.16.1-8.64.1 sssd-winbind-idmap-1.16.1-8.64.1 sssd-winbind-idmap-debuginfo-1.16.1-8.64.1 References: https://www.suse.com/security/cve/CVE-2021-3621.html https://bugzilla.suse.com/1182637 https://bugzilla.suse.com/1189492 https://bugzilla.suse.com/1190775 . Significant SUSE Security Patch for sssd tackles a severe shell command injection flaw.. SUSE Security Patch,shell command injection,sssd update,SUSE CaaS Platform,SUSE Enterprise Storage. . Severity: Important. LinuxSecurity.com Team
One security issue has been discovered in sssd. The sssctl command was vulnerable to shell command injection via the logs-fetch and cache-expire subcommands. This flaw allows an attacker to trick the root . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-2758-1
An update that solves one vulnerability and has two fixes is now available. . openSUSE Security Update: Security update for sssd ______________________________________________________________________________ Announcement ID: openSUSE-SU-2021:2941-1 Rating: important References: #1183735 #1187120 #1189492 Cross-References: CVE-2021-3621 CVSS scores: CVE-2021-3621 (SUSE): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H Affected Products: openSUSE Leap 15.3 ______________________________________________________________________________ An update that solves one vulnerability and has two fixes is now available. Description: This update for sssd fixes the following issues: - CVE-2021-3621: Fixed shell command injection in sssctl via the logs-fetch and cache-expire subcommands (bsc#1189492). - Add LDAPS support for the AD provider (bsc#1183735). - Improve logs to record the reason why internal watchdog terminates a process (bsc#1187120). - Fix watchdog not terminating tasks (bsc#1187120). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.3: zypper in -t patch openSUSE-SLE-15.3-2021-2941=1 Package List: - openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64): libipa_hbac-devel-1.16.1-23.11.1 libipa_hbac0-1.16.1-23.11.1 libipa_hbac0-debuginfo-1.16.1-23.11.1 libnfsidmap-sss-1.16.1-23.11.1 libnfsidmap-sss-debuginfo-1.16.1-23.11.1 libsss_certmap-devel-1.16.1-23.11.1 libsss_certmap0-1.16.1-23.11.1 libsss_certmap0-debuginfo-1.16.1-23.11.1 libsss_idmap-devel-1.16.1-23.11.1 libsss_idmap0-1.16.1-23.11.1 libsss_idmap0-debuginfo-1.16.1-23.11.1 libsss_nss_idmap-devel-1.16.1-23.11.1 libsss_nss_idmap0-1.16.1-23.11.1 libsss_nss_idmap0-debuginfo-1.16.1-23.11.1 libsss_simpleifp-devel-1.16.1-23.11.1 libsss_simpleifp0-1.16.1-23.11.1 libsss_simpleifp0-debuginfo-1.16.1-23.11.1 python3-ipa_hbac-1.16.1-23.11.1 python3-ipa_hbac-debuginfo-1.16.1-23.11.1 python3-sss-murmur-1.16.1-23.11.1 python3-sss-murmur-debuginfo-1.16.1-23.11.1 python3-sss_nss_idmap-1.16.1-23.11.1 python3-sss_nss_idmap-debuginfo-1.16.1-23.11.1 python3-sssd-config-1.16.1-23.11.1 python3-sssd-config-debuginfo-1.16.1-23.11.1 sssd-1.16.1-23.11.1 sssd-ad-1.16.1-23.11.1 sssd-ad-debuginfo-1.16.1-23.11.1 sssd-common-1.16.1-23.11.1 sssd-common-debuginfo-1.16.1-23.11.1 sssd-dbus-1.16.1-23.11.1 sssd-dbus-debuginfo-1.16.1-23.11.1 sssd-debugsource-1.16.1-23.11.1 sssd-ipa-1.16.1-23.11.1 sssd-ipa-debuginfo-1.16.1-23.11.1 sssd-krb5-1.16.1-23.11.1 sssd-krb5-common-1.16.1-23.11.1 sssd-krb5-common-debuginfo-1.16.1-23.11.1 sssd-krb5-debuginfo-1.16.1-23.11.1 sssd-ldap-1.16.1-23.11.1 sssd-ldap-debuginfo-1.16.1-23.11.1 sssd-proxy-1.16.1-23.11.1 sssd-proxy-debuginfo-1.16.1-23.11.1 sssd-tools-1.16.1-23.11.1 sssd-tools-debuginfo-1.16.1-23.11.1 sssd-wbclient-1.16.1-23.11.1 sssd-wbclient-debuginfo-1.16.1-23.11.1 sssd-wbclient-devel-1.16.1-23.11.1 sssd-winbind-idmap-1.16.1-23.11.1 sssd-winbind-idmap-debuginfo-1.16.1-23.11.1 References: https://www.suse.com/security/cve/CVE-2021-3621.html https://bugzilla.suse.com/1183735 https://bugzilla.suse.com/1187120 https://bugzilla.suse.com/1189492 . A significant enhancement for Fedora tackles a vulnerabilities in audacity alongside various improvements.. openSUSE security update, sssd commands, Linux security patches. . Severity: Important. LinuxSecurity.com Team
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2021-3336 https://linux.oracle.com/errata/ELSA-2021-3336.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable LinuxNetwork: aarch64: libipa_hbac-1.16.5-10.0.1.el7_9.10.aarch64.rpm libsss_autofs-1.16.5-10.0.1.el7_9.10.aarch64.rpm libsss_certmap-1.16.5-10.0.1.el7_9.10.aarch64.rpm libsss_idmap-1.16.5-10.0.1.el7_9.10.aarch64.rpm libsss_nss_idmap-1.16.5-10.0.1.el7_9.10.aarch64.rpm libsss_simpleifp-1.16.5-10.0.1.el7_9.10.aarch64.rpm libsss_sudo-1.16.5-10.0.1.el7_9.10.aarch64.rpm python-libipa_hbac-1.16.5-10.0.1.el7_9.10.aarch64.rpm python-libsss_nss_idmap-1.16.5-10.0.1.el7_9.10.aarch64.rpm python-sss-1.16.5-10.0.1.el7_9.10.aarch64.rpm python-sssdconfig-1.16.5-10.0.1.el7_9.10.noarch.rpm python-sss-murmur-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-ad-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-client-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-common-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-common-pac-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-dbus-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-ipa-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-kcm-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-krb5-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-krb5-common-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-ldap-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-libwbclient-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-polkit-rules-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-proxy-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-tools-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-winbind-idmap-1.16.5-10.0.1.el7_9.10.aarch64.rpm libipa_hbac-devel-1.16.5-10.0.1.el7_9.10.aarch64.rpm libsss_certmap-devel-1.16.5-10.0.1.el7_9.10.aarch64.rpm libsss_idmap-devel-1.16.5-10.0.1.el7_9.10.aarch64.rpm libsss_nss_idmap-devel-1.16.5-10.0.1.el7_9.10.aarch64.rpm libsss_simpleifp-devel-1.16.5-10.0.1.el7_9.10.aarch64.rpm sssd-libwbclient-devel-1.16.5-10.0.1.el7_9.10.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol7/SRPMS-updates/sssd-1.16.5-10.0.1.el7_9.10.src.rpm Related CVEs: CVE-2021-3621 Description of changes: [1.16.5-10.0.1] - Revert Redhat's change of disallowing duplicated incomplete gid when "id_provider=ldap" is used, which caused regression in AD environment. [Orabug:29286774] [Doc ID 2605732.1] [1.16.5-10.10] - Resolves: rhbz#1973796 - SSSD is NOT able to contact the Global Catalog when local site is down [1.16.5-10.9] - Resolves: rhbz#1988463 - Missing search index for `originalADgidNumber` [rhel-7.9.z] - Resolves: rhbz#1968330 - id lookup is failing intermittently - Resolves: rhbz#1964415 - Memory leak in the simple access provider - Resolves: rhbz#1985457 - EMBARGOED CVE-2021-3621 sssd: shell command injection in sssctl [rhel-7.9.z] _______________________________________________ El-errata mailing list
sssd: shell command injection in sssctl (CVE-2021-3621) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE Bug Fix(es): * Memory leak in the simple access provider * id lookup is failing intermittently * SSSD is NOT able to contact the Global Catalog when local site is down * Missing search in [More...]. Synopsis: Important: sssd security and bug fix update Advisory ID: SLSA-2021:3336-1 Issue Date: 2021-08-31 CVE Numbers: CVE-2021-3621 -- Security Fix(es): * sssd: shell command injection in sssctl (CVE-2021-3621) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE Bug Fix(es): * Memory leak in the simple access provider * id lookup is failing intermittently * SSSD is NOT able to contact the Global Catalog when local site is down * Missing search index for`originalADgidNumber` --- SL7 x86_64 libipa_hbac-1.16.5-10.el7_9.10.i686.rpm libipa_hbac-1.16.5-10.el7_9.10.x86_64.rpm libipa_hbac-devel-1.16.5-10.el7_9.10.i686.rpm libipa_hbac-devel-1.16.5-10.el7_9.10.x86_64.rpm libsss_autofs-1.16.5-10.el7_9.10.x86_64.rpm libsss_certmap-1.16.5-10.el7_9.10.i686.rpm libsss_certmap-1.16.5-10.el7_9.10.x86_64.rpm libsss_certmap-devel-1.16.5-10.el7_9.10.i686.rpm libsss_certmap-devel-1.16.5-10.el7_9.10.x86_64.rpm libsss_idmap-1.16.5-10.el7_9.10.i686.rpm libsss_idmap-1.16.5-10.el7_9.10.x86_64.rpm libsss_idmap-devel-1.16.5-10.el7_9.10.i686.rpm libsss_idmap-devel-1.16.5-10.el7_9.10.x86_64.rpm libsss_nss_idmap-1.16.5-10.el7_9.10.i686.rpm libsss_nss_idmap-1.16.5-10.el7_9.10.x86_64.rpm libsss_nss_idmap-devel-1.16.5-10.el7_9.10.i686.rpm libsss_nss_idmap-devel-1.16.5-10.el7_9.10.x86_64.rpm libsss_simpleifp-1.16.5-10.el7_9.10.i686.rpm libsss_simpleifp-1.16.5-10.el7_9.10.x86_64.rpm libsss_simpleifp-devel-1.16.5-10.el7_9.10.i686.rpm libsss_simpleifp-devel-1.16.5-10.el7_9.10.x86_64.rpm libsss_sudo-1.16.5-10.el7_9.10.x86_64.rpm python-libipa_hbac-1.16.5-10.el7_9.10.x86_64.rpm python-libsss_nss_idmap-1.16.5-10.el7_9.10.x86_64.rpm python-sss-1.16.5-10.el7_9.10.x86_64.rpm python-sss-murmur-1.16.5-10.el7_9.10.x86_64.rpm sssd-1.16.5-10.el7_9.10.x86_64.rpm sssd-ad-1.16.5-10.el7_9.10.x86_64.rpm sssd-client-1.16.5-10.el7_9.10.i686.rpm sssd-client-1.16.5-10.el7_9.10.x86_64.rpm sssd-common-1.16.5-10.el7_9.10.x86_64.rpm sssd-common-pac-1.16.5-10.el7_9.10.x86_64.rpm sssd-dbus-1.16.5-10.el7_9.10.x86_64.rpm sssd-debuginfo-1.16.5-10.el7_9.10.i686.rpm sssd-debuginfo-1.16.5-10.el7_9.10.x86_64.rpm sssd-ipa-1.16.5-10.el7_9.10.x86_64.rpm sssd-kcm-1.16.5-10.el7_9.10.x86_64.rpm sssd-krb5-1.16.5-10.el7_9.10.x86_64.rpm sssd-krb5-common-1.16.5-10.el7_9.10.x86_64.rpm sssd-ldap-1.16.5-10.el7_9.10.x86_64.rpm sssd-libwbclient-1.16.5-10.el7_9.10.x86_64.rpm sssd-libwbclient-devel-1.16.5-10.el7_9.10.i686.rpm sssd-libwbclient-devel-1.16.5-10.el7_9.10.x86_64.rpm sssd-polkit-rules-1.16.5-10.el7_9.10.x86_64.rpm sssd-proxy-1.16.5-10.el7_9.10.x86_64.rpm sssd-tools-1.16.5-10.el7_9.10.x86_64.rpm sssd-winbind-idmap-1.16.5-10.el7_9.10.x86_64.rpm noarch python-sssdconfig-1.16.5-10.el7_9.10.noarch.rpm -- - Scientific Linux Development Team . Crucial sssd patch released to resolve command execution vulnerability and additional vital corrections in Scientific Linux. Discover the details.. sssd Security Update, Shell Command Injection, Scientific Linux Advisory, Bug Fix Updates. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.