An update that fixes three vulnerabilities is now available. . SUSE Security Update: Security update for salt ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:3171-1 Rating: critical References: #1178319 #1178361 #1178362 Cross-References: CVE-2020-16846 CVE-2020-17490 CVE-2020-25592 Affected Products: SUSE Enterprise Storage 5 ______________________________________________________________________________ An update that fixes three vulnerabilities is now available. Description: This update for salt fixes the following issues: - Fix for CVE-2020-25592 (bsc#1178319), CVE-2020-16846, (bsc#1178361), and CVE-2020-17490 (bsc#1178362). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Enterprise Storage 5: zypper in -t patch SUSE-Storage-5-2020-3171=1 Package List: - SUSE Enterprise Storage 5 (aarch64 x86_64): salt-2016.11.4-48.13.1 salt-api-2016.11.4-48.13.1 salt-master-2016.11.4-48.13.1 salt-minion-2016.11.4-48.13.1 References: https://www.suse.com/security/cve/CVE-2020-16846.html https://www.suse.com/security/cve/CVE-2020-17490.html https://www.suse.com/security/cve/CVE-2020-25592.html https://bugzilla.suse.com/1178319 https://bugzilla.suse.com/1178361 https://bugzilla.suse.com/1178362 . SUSE has released a security fix for Salt that tackles serious vulnerabilities. Ensure your system's safety with this important update.. SUSE Storage Update,Salt Security,Critical Fixes,SUSE Vulnerability Management. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.