openSUSE Recommended Update: rdesktop: Update to 1.8.1
______________________________________________________________________________
Announcement ID: openSUSE-RU-2014:0429-1
Rating: low
References: #849740 #852333 #852524
Affected Products:
openSUSE 13.1
______________________________________________________________________________
An update that has three recommended fixes can now be
installed.
Description:
This update fixes the following issues with rdesktop:
- update to 1.8.1
+ Fix a typo in configure.ac
+ Fix a bug which made rdesktop steal CPU cycles.
+ Fix issue with reconnect, make use of deactivate
variable
+ Added 4 new disconnect reasons with exit codes
+ Fix issues of window handling in SeamlessRDP parts of
rdesktop
+ Fix a backward compability with OpenSSL < 0.9.9
+ Fix a bug when code needs a x window available but
there are none.
+ Fix a sigsegv zeroing memory
+ Fix a 64bit portability issue
+ Fixes bnc#849740, bnc#852333, bnc#852524
Patch Instructions:
To install this openSUSE Recommended Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.1:
zypper in -t patch openSUSE-2014-245
To bring your system up-to-date, use "zypper patch".
Package List:
- openSUSE 13.1 (i586 x86_64):
rdesktop-1.8.1-2.4.1
rdesktop-debuginfo-1.8.1-2.4.1
rdesktop-debugsource-1.8.1-2.4.1
References:
https://bugzilla.novell.com/849740https://bugzilla.novell.com/852333https://bugzilla.novell.com/852524
openSUSE Recommended Update: lightdm: update to the latest bugfix releases 1.8.8
______________________________________________________________________________
Announcement ID: openSUSE-RU-2014:0428-1
Rating: important
References: #846832
Affected Products:
openSUSE 13.1
______________________________________________________________________________
An update that has one recommended fix can now be installed.
Description:
This update fixes the following issues with lightdm:
- update to version 1.8.8
+ Handle signals being received in child processes
instead of treating them like they are received in the
daemon
+ bnc#846832, lp#1260220: Ensure X authority is written
before X server is started
+ Honour session type requested by greeter for guest
sessions
+ Fix some small memory leaks detected by valgrind
+ Fix double removal of source IDs
+ Correctly invoke PAM to change authentication token
+ Fix issue where VTs are double used when switching
sessions
+ Don't pass system user accounts from AccountsService to
greeters
+ Fix crash if switching to greeter and it isn't installed
+ Implement missing guest-wrapper functionality and
enable it for Ubuntu
+ Update AppArmor scripts to work in Ubuntu 13.10
+ Correctly set for greeters. This was regressed in 1.7.5
for ConsoleKit and was never passed to logind
+ Correctly set user in session setup script
+ Fix notification of sessions being logged out
+ Fix crash when starting with existing X servers
+ Fix crash where Process objects are accessed after unref
Patch Instructions:
To install this openSUSE Recommended Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.1:
zypper in -t patch openSUSE-2014-243
To bring your system up-to-date, use "zypper patch".
Package List:
- openSUSE 13.1 (i586 x86_64):
liblightdm-gobject-1-0-1.8.8-11.1
liblightdm-gobject-1-0-debuginfo-1.8.8-11.1
liblightdm-qt-3-0-1.8.8-11.1
liblightdm-qt-3-0-debuginfo-1.8.8-11.1
lightdm-1.8.8-11.1
lightdm-debuginfo-1.8.8-11.1
lightdm-debugsource-1.8.8-11.1
lightdm-gobject-devel-1.8.8-11.1
lightdm-qt-devel-1.8.8-11.1
- openSUSE 13.1 (noarch):
lightdm-lang-1.8.8-11.1
References:
https://bugzilla.novell.com/846832
openSUSE Recommended Update: xf86-video-modesetting: Force SWCursor for KMS drivers without hw cursor support
______________________________________________________________________________
Announcement ID: openSUSE-RU-2014:0427-1
Rating: low
References: #864141 #866152
Affected Products:
openSUSE 13.1
______________________________________________________________________________
An update that has two recommended fixes can now be
installed.
Description:
This update fixes the following issue with
xf86-video-modesetting:
- bnc#864141, bnc#866152: Force SWCursor for KMS drivers
without hw cursor support
Patch Instructions:
To install this openSUSE Recommended Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.1:
zypper in -t patch openSUSE-2014-244
To bring your system up-to-date, use "zypper patch".
Package List:
- openSUSE 13.1 (i586 x86_64):
xf86-video-modesetting-0.8.0-3.5.1
xf86-video-modesetting-debuginfo-0.8.0-3.5.1
xf86-video-modesetting-debugsource-0.8.0-3.5.1
References:
https://bugzilla.novell.com/864141https://bugzilla.novell.com/866152
openSUSE Recommended Update: lightdm: update to the latest bugfix releases 1.4.7
______________________________________________________________________________
Announcement ID: openSUSE-RU-2014:0426-1
Rating: important
References: #846832
Affected Products:
openSUSE 12.3
______________________________________________________________________________
An update that has one recommended fix can now be installed.
Description:
This update fixes the following issues with lightdm:
- update to version 1.4.7
+ Handle signals being received in child processes
instead of treating them like they are received in the
daemon
+ bnc#846832, lp#1260220: Ensure X authority is written
before X server is started
+ Fix some small memory leaks detected by valgrind
+ Fix double removal of source IDs
+ Correctly invoke PAM to change authentication token
+ Load configuration from /etc/lightdm/lightdm.conf.d
+ Fix crash where Process objects are accessed after unref
+ Update apparmor abstractions
+ Don't fail writing X authority if reading it had an
error
+ Correctly set permissions on Xauthority file
+ Fix overallocation of array for strings from greeter
+ Fix truncation writing card32 in XDMCP server
+ Fix compile warnings
+ Stop using g_file_set_replace - it can leave
intermediate files around
+ Fix script hooks no longer working with latest glib
+ Ensure test programs quit when the status socket closes
+ Stop deprecation warnings from glib >= 2.36
Patch Instructions:
To install this openSUSE Recommended Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 12.3:
zypper in -t patch openSUSE-2014-242
To bring your system up-to-date, use "zypper patch".
Package List:
- openSUSE 12.3 (i586 x86_64):
liblightdm-gobject-1-0-1.4.7-6.7.1
liblightdm-gobject-1-0-debuginfo-1.4.7-6.7.1
liblightdm-qt-2-0-1.4.7-6.7.1
liblightdm-qt-2-0-debuginfo-1.4.7-6.7.1
lightdm-1.4.7-6.7.1
lightdm-debuginfo-1.4.7-6.7.1
lightdm-debugsource-1.4.7-6.7.1
lightdm-gobject-devel-1.4.7-6.7.1
lightdm-qt-devel-1.4.7-6.7.1
- openSUSE 12.3 (noarch):
lightdm-lang-1.4.7-6.7.1
References:
https://bugzilla.novell.com/846832
openSUSE Recommended Update: perl-Pod-Readme: fix permission of /usr/bin/pod2readme
______________________________________________________________________________
Announcement ID: openSUSE-RU-2014:0425-1
Rating: low
References: #851647
Affected Products:
openSUSE 13.1
openSUSE 12.3
______________________________________________________________________________
An update that has one recommended fix can now be installed.
Description:
This update fixes the following issue with perl-Pod-Readme:
- bnc#851647: /usr/bin/pod2readme should be executable
Patch Instructions:
To install this openSUSE Recommended Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.1:
zypper in -t patch openSUSE-2014-241
- openSUSE 12.3:
zypper in -t patch openSUSE-2014-241
To bring your system up-to-date, use "zypper patch".
Package List:
- openSUSE 13.1 (noarch):
perl-Pod-Readme-0.11-10.4.1
- openSUSE 12.3 (noarch):
perl-Pod-Readme-0.11-8.4.1
References:
https://bugzilla.novell.com/851647
openSUSE Recommended Update: coreutils: Several upstream-bugfixes
______________________________________________________________________________
Announcement ID: openSUSE-RU-2014:0424-1
Rating: low
References:
Affected Products:
openSUSE 13.1
______________________________________________________________________________
An update that has 0 recommended fixes can now be installed.
Description:
This update fixes the following issues with coreutils:
- gnu#16872: date: fix crash or infinite loop when parsing
a malformed TZ="".
- gnu#17010, gnu#14116: avoid that ln(1) segfaults for an
empty, relative target. Also fixes updating of existing
symlinks with --relative.
- Avoid another false sort test failure: skip some
multi-byte test cases.
Patch Instructions:
To install this openSUSE Recommended Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.1:
zypper in -t patch openSUSE-2014-238
To bring your system up-to-date, use "zypper patch".
Package List:
- openSUSE 13.1 (i586 x86_64):
coreutils-8.21-7.16.1
coreutils-debuginfo-8.21-7.16.1
coreutils-debugsource-8.21-7.16.1
- openSUSE 13.1 (noarch):
coreutils-lang-8.21-7.16.1
References:
openSUSE Recommended Update: boinc-client: Disable bash-completion.patch after it caused errors
______________________________________________________________________________
Announcement ID: openSUSE-RU-2014:0423-1
Rating: low
References: #779335
Affected Products:
openSUSE 13.1
openSUSE 12.3
______________________________________________________________________________
An update that has one recommended fix can now be installed.
Description:
This update fixes the following issue with boinc-client:
- bnc#779335: Disabled bash-completion.patch after it
caused errors
Patch Instructions:
To install this openSUSE Recommended Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.1:
zypper in -t patch openSUSE-2014-239
- openSUSE 12.3:
zypper in -t patch openSUSE-2014-239
To bring your system up-to-date, use "zypper patch".
Package List:
- openSUSE 13.1 (i586 x86_64):
boinc-client-6.12.43-6.12.1
boinc-client-debuginfo-6.12.43-6.12.1
boinc-client-debugsource-6.12.43-6.12.1
boinc-client-devel-6.12.43-6.12.1
boinc-manager-6.12.43-6.12.1
boinc-manager-debuginfo-6.12.43-6.12.1
libboinc6-6.12.43-6.12.1
libboinc6-debuginfo-6.12.43-6.12.1
- openSUSE 13.1 (noarch):
boinc-client-doc-6.12.43-6.12.1
boinc-client-lang-6.12.43-6.12.1
boinc-manager-lang-6.12.43-6.12.1
- openSUSE 12.3 (i586 x86_64):
boinc-client-6.12.43-3.8.1
boinc-client-debuginfo-6.12.43-3.8.1
boinc-client-debugsource-6.12.43-3.8.1
boinc-client-devel-6.12.43-3.8.1
boinc-manager-6.12.43-3.8.1
boinc-manager-debuginfo-6.12.43-3.8.1
libboinc6-6.12.43-3.8.1
libboinc6-debuginfo-6.12.43-3.8.1
- openSUSE 12.3 (noarch):
boinc-client-doc-6.12.43-3.8.1
boinc-client-lang-6.12.43-3.8.1
boinc-manager-lang-6.12.43-3.8.1
References:
https://bugzilla.novell.com/779335
openSUSE Recommended Update: postgresql-plr: Update to bugfix-release 8.0.15
______________________________________________________________________________
Announcement ID: openSUSE-RU-2014:0422-1
Rating: low
References:
Affected Products:
openSUSE 13.1
______________________________________________________________________________
An update that has 0 recommended fixes can now be installed.
Description:
This update fixes the following issues with postgresql-plr:
- Update to upstream 8.0.15 bugfix
+ Update for PostgreSQL 9.3 compatibility
+ Ensure certain errors in R code do not crash postgres
+ Unbreak compilation with older versions of postgres not
having rangetypes
+ Allow use of OUT parameters
Patch Instructions:
To install this openSUSE Recommended Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.1:
zypper in -t patch openSUSE-2014-240
To bring your system up-to-date, use "zypper patch".
Package List:
- openSUSE 13.1 (i586 x86_64):
postgresql-plr-8.3.0.15-2.4.1
postgresql-plr-debuginfo-8.3.0.15-2.4.1
postgresql-plr-debugsource-8.3.0.15-2.4.1
postgresql-plr-doc-8.3.0.15-2.4.1
References:
openSUSE Recommended Update: python-p2pack: Update to version 0.4.10
______________________________________________________________________________
Announcement ID: openSUSE-RU-2014:0421-1
Rating: important
References:
Affected Products:
openSUSE 13.1
______________________________________________________________________________
An update that has 0 recommended fixes can now be installed.
Description:
This update fixes the following issue with python-p2pack:
- Update to version 0.4.10
+ Fix PyPI URL to avoid 301 moved permanently
+ Minor bugfixes
- Update to version 0.4.9:
+ Fix coverage report source
+ Add cssselect setup_requires
+ Update SPDX license map
+ Change 'flake8' to 'pep8' target
+ Fix recursive-include for doc
Patch Instructions:
To install this openSUSE Recommended Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.1:
zypper in -t patch 2619
To bring your system up-to-date, use "zypper patch".
Package List:
- openSUSE 13.1 (noarch):
python-py2pack-0.4.10-2.7.1
References:
openSUSE Security Update: icinga: fixed potential buffer overflows
______________________________________________________________________________
Announcement ID: openSUSE-SU-2014:0420-1
Rating: moderate
References: #868426
Cross-References: CVE-2014-2386
Affected Products:
openSUSE 13.1
openSUSE 12.3
______________________________________________________________________________
An update that fixes one vulnerability is now available.
Description:
The monitoring system icinga received security fixes in the
cgi helpers where buffers could be overflowed by 1 byte.
Note that this will be caught by the FORTIFY_SOURCE static
overflow detection.
Patch Instructions:
To install this openSUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.1:
zypper in -t patch openSUSE-2014-237
- openSUSE 12.3:
zypper in -t patch openSUSE-2014-237
To bring your system up-to-date, use "zypper patch".
Package List:
- openSUSE 13.1 (i586 x86_64):
icinga-1.10.2-4.14.1
icinga-debuginfo-1.10.2-4.14.1
icinga-debugsource-1.10.2-4.14.1
icinga-devel-1.10.2-4.14.1
icinga-doc-1.10.2-4.14.1
icinga-idoutils-1.10.2-4.14.1
icinga-idoutils-debuginfo-1.10.2-4.14.1
icinga-idoutils-mysql-1.10.2-4.14.1
icinga-idoutils-oracle-1.10.2-4.14.1
icinga-idoutils-pgsql-1.10.2-4.14.1
icinga-plugins-downtimes-1.10.2-4.14.1
icinga-plugins-eventhandlers-1.10.2-4.14.1
icinga-www-1.10.2-4.14.1
icinga-www-debuginfo-1.10.2-4.14.1
monitoring-tools-1.10.2-4.14.1
monitoring-tools-debuginfo-1.10.2-4.14.1
- openSUSE 12.3 (i586 x86_64):
icinga-1.10.2-2.12.1
icinga-debuginfo-1.10.2-2.12.1
icinga-debugsource-1.10.2-2.12.1
icinga-devel-1.10.2-2.12.1
icinga-doc-1.10.2-2.12.1
icinga-idoutils-1.10.2-2.12.1
icinga-idoutils-debuginfo-1.10.2-2.12.1
icinga-idoutils-mysql-1.10.2-2.12.1
icinga-idoutils-oracle-1.10.2-2.12.1
icinga-idoutils-pgsql-1.10.2-2.12.1
icinga-plugins-downtimes-1.10.2-2.12.1
icinga-plugins-eventhandlers-1.10.2-2.12.1
icinga-www-1.10.2-2.12.1
icinga-www-debuginfo-1.10.2-2.12.1
monitoring-tools-1.10.2-2.12.1
monitoring-tools-debuginfo-1.10.2-2.12.1
References:
http://support.novell.com/security/cve/CVE-2014-2386.htmlhttps://bugzilla.novell.com/868426