* bsc#1129772 * bsc#1152803 * bsc#1154838 * bsc#1181400 * bsc#1230961 . # Security update for vhostmd Announcement ID: SUSE-SU-2024:4416-1 Release Date: 2024-12-24T08:21:06Z Rating: moderate References: * bsc#1129772 * bsc#1152803 * bsc#1154838 * bsc#1181400 * bsc#1230961 Affected Products: * openSUSE Leap 15.6 * Server Applications Module 15-SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that has five security fixes can now be installed. ## Description: This update for vhostmd fixes the following issues: Updated to version 1.2 * Fix actions using the 'free' command * Fix buffer accounting when generating metric XML * Change actions to retrieve vendor and product info * Add a 'unit' attribute to the metrics element * vif-stats.py: convert to Python3 * conf: Update the 'VirtualizationVendor' action to strip any URLs that may follow the vendor name (bsc#1230961) * Fix virtio transport to work with libvirt > = 9.7.0 * Added hardening to systemd service (bsc#1181400) * spec: Don't replace user-modified dtd in /etc/vhostmd/ (bsc#1154838) * Relax virtio requirement in config file (bsc#1152803) Updated to version 1.1 (bsc#1129772) * Merge libserialclient with libmetrics * Misc bug fixes and improvements ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2024-4416=1 openSUSE-SLE-15.6-2024-4416=1 * Server Applications Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP6-2024-4416=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * vhostmd-1.2-150600.17.3.1 * vm-dump-metrics-debuginfo-1.2-150600.17.3.1 * vhostmd-debugsource-1.2-150600.17.3.1 *libmetrics0-debuginfo-1.2-150600.17.3.1 * vm-dump-metrics-1.2-150600.17.3.1 * libmetrics-devel-1.2-150600.17.3.1 * libmetrics0-1.2-150600.17.3.1 * vhostmd-debuginfo-1.2-150600.17.3.1 * Server Applications Module 15-SP6 (aarch64 ppc64le s390x x86_64) * vhostmd-1.2-150600.17.3.1 * vm-dump-metrics-debuginfo-1.2-150600.17.3.1 * vhostmd-debugsource-1.2-150600.17.3.1 * vm-dump-metrics-1.2-150600.17.3.1 * vhostmd-debuginfo-1.2-150600.17.3.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1129772 * https://bugzilla.suse.com/show_bug.cgi?id=1152803 * https://bugzilla.suse.com/show_bug.cgi?id=1154838 * https://bugzilla.suse.com/show_bug.cgi?id=1181400 * https://bugzilla.suse.com/show_bug.cgi?id=1230961 . vhostmd improves network security and optimizes overall performance for SUSE systems. Detailed installation instructions included.. vhostmd updates, openSUSE security, system performance, SUSE advisory. . LinuxSecurity.com Team
An update that has five security fixes can now be installed.. # Security update for vhostmd Announcement ID: SUSE-SU-2024:4416-1 Release Date: 2024-12-24T08:21:06Z Rating: moderate References: * bsc#1129772 * bsc#1152803 * bsc#1154838 * bsc#1181400 * bsc#1230961 Affected Products: * openSUSE Leap 15.6 * Server Applications Module 15-SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that has five security fixes can now be installed. ## Description: This update for vhostmd fixes the following issues: Updated to version 1.2 * Fix actions using the 'free' command * Fix buffer accounting when generating metric XML * Change actions to retrieve vendor and product info * Add a 'unit' attribute to the metrics element * vif-stats.py: convert to Python3 * conf: Update the 'VirtualizationVendor' action to strip any URLs that may follow the vendor name (bsc#1230961) * Fix virtio transport to work with libvirt > = 9.7.0 * Added hardening to systemd service (bsc#1181400) * spec: Don't replace user-modified dtd in /etc/vhostmd/ (bsc#1154838) * Relax virtio requirement in config file (bsc#1152803) Updated to version 1.1 (bsc#1129772) * Merge libserialclient with libmetrics * Misc bug fixes and improvements ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2024-4416=1 openSUSE-SLE-15.6-2024-4416=1 * Server Applications Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP6-2024-4416=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * vhostmd-1.2-150600.17.3.1 * vm-dump-metrics-debuginfo-1.2-150600.17.3.1 * vhostmd-debugsource-1.2-150600.17.3.1 *libmetrics0-debuginfo-1.2-150600.17.3.1 * vm-dump-metrics-1.2-150600.17.3.1 * libmetrics-devel-1.2-150600.17.3.1 * libmetrics0-1.2-150600.17.3.1 * vhostmd-debuginfo-1.2-150600.17.3.1 * Server Applications Module 15-SP6 (aarch64 ppc64le s390x x86_64) * vhostmd-1.2-150600.17.3.1 * vm-dump-metrics-debuginfo-1.2-150600.17.3.1 * vhostmd-debugsource-1.2-150600.17.3.1 * vm-dump-metrics-1.2-150600.17.3.1 * vhostmd-debuginfo-1.2-150600.17.3.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1129772 * https://bugzilla.suse.com/show_bug.cgi?id=1152803 * https://bugzilla.suse.com/show_bug.cgi?id=1154838 * https://bugzilla.suse.com/show_bug.cgi?id=1181400 * https://bugzilla.suse.com/show_bug.cgi?id=1230961 . This release tackles several vulnerabilities in vhostmd for openSUSE. Strengthen your system's defenses with the newest patches.. Security Update, openSUSE, vhostmd Security, Patch Instructions. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.