openSUSE Recommended Update: Recommended update for postfix
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1452-1
Rating: moderate
References:
Affected Products:
openSUSE Leap 15.0
______________________________________________________________________________
An update that has 0 recommended fixes can now be installed.
Description:
This update for postfix fixes the following issues:
- Setting the security file permissions to "paranoid" could have caused
postfix to hang (bsc#1120757)
- postfix-files contained an incorrect path to postfix-ldap.so which
resulted in an error when running postfix set-permissions
(bsc#bsc#1120110)
This update was imported from the SUSE:SLE-15:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.0:
zypper in -t patch openSUSE-2019-1452=1
Package List:
- openSUSE Leap 15.0 (i586 x86_64):
postfix-3.3.1-lp150.9.2
postfix-debuginfo-3.3.1-lp150.9.2
postfix-debugsource-3.3.1-lp150.9.2
postfix-devel-3.3.1-lp150.9.2
postfix-lmdb-3.3.1-lp150.9.2
postfix-lmdb-debuginfo-3.3.1-lp150.9.2
postfix-mysql-3.3.1-lp150.9.2
postfix-mysql-debuginfo-3.3.1-lp150.9.2
postfix-postgresql-3.3.1-lp150.9.2
postfix-postgresql-debuginfo-3.3.1-lp150.9.2
- openSUSE Leap 15.0 (noarch):
postfix-doc-3.3.1-lp150.9.2
References:
openSUSE Recommended Update: Recommended update for SUSEConnect
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1451-1
Rating: moderate
References: #1128969 #959561
Affected Products:
openSUSE Leap 15.0
______________________________________________________________________________
An update that has two recommended fixes can now be
installed.
Description:
This update for SUSEConnect fixes the following issues:
- Does no longer try to remove a service during migration, if a zypper
service plugin already exists (bsc#1128969)
- Shows non-enabled extensions with a remark about availability
- Adds output information about registration and unregistration progress
- Output proper message when SUSEConnect is called without parameters
(bsc#959561)
- Default to https URI when no protocol prefix is provided for --url
- Support transactional-update systems (fate#326482)
This update was imported from the SUSE:SLE-15:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.0:
zypper in -t patch openSUSE-2019-1451=1
Package List:
- openSUSE Leap 15.0 (x86_64):
SUSEConnect-0.3.17-lp150.2.14.1
References:
https://bugzilla.suse.com/1128969https://bugzilla.suse.com/959561
openSUSE Recommended Update: Recommended update for krdc
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1447-1
Rating: moderate
References:
Affected Products:
openSUSE Leap 15.1
______________________________________________________________________________
An update that has 0 recommended fixes can now be installed.
Description:
This update for krdc fixes the following issues:
- Fixed broken VNC display with color depths other than 32bit.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1447=1
Package List:
- openSUSE Leap 15.1 (noarch):
krdc-lang-18.12.3-lp151.2.4.1
- openSUSE Leap 15.1 (x86_64):
krdc-18.12.3-lp151.2.4.1
krdc-debuginfo-18.12.3-lp151.2.4.1
krdc-debugsource-18.12.3-lp151.2.4.1
krdc-devel-18.12.3-lp151.2.4.1
References:
openSUSE Recommended Update: Recommended update for virtualbox
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1449-1
Rating: moderate
References:
Affected Products:
openSUSE Leap 15.1
______________________________________________________________________________
An update that has 0 recommended fixes can now be installed.
Description:
This update for virtualbox fixes the following issues:
VirtualBox was updated to 6.0.8 (released May 13 2019 by Oracle)
This is a maintenance release. The following items were fixed and/or added:
- Core: fix saved state resume failures (bugs #18265 and #18331)
- User interface: show full file location in New Medium window.
- User interface: fix mouse click pass-through problems in multi-screen
virtual machines (6.0.6 regression, bug #18567)
- Graphics: fixed a crash when powering off a VM without graphics
controller (bug #18570)
- API: partial fix for dealing with VM config conflicting with other VMs
related to medium UUIDs, now correctly flags VM as inaccessible (bug
#17908)
- Linux hosts: fix kernel module build breakage in non-default build
set-ups (bug #18620, thank you Ambroz Bizjak)
- Linux hosts: fix kernel module build breakage in debug build set-ups
(bug #18621, thank you Ambroz Bizjak)
- Windows guests: notice file size increases in shared folders which were
missed in certain cases
- Linux guests: make shared folders work with Linux 3.16.35
- Linux guests: fix incorrectly read-only shared folders (bug #18345)
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1449=1
Package List:
- openSUSE Leap 15.1 (noarch):
virtualbox-guest-desktop-icons-6.0.8-lp151.2.3.1
virtualbox-guest-source-6.0.8-lp151.2.3.1
virtualbox-host-source-6.0.8-lp151.2.3.1
- openSUSE Leap 15.1 (x86_64):
python3-virtualbox-6.0.8-lp151.2.3.1
python3-virtualbox-debuginfo-6.0.8-lp151.2.3.1
virtualbox-6.0.8-lp151.2.3.1
virtualbox-debuginfo-6.0.8-lp151.2.3.1
virtualbox-debugsource-6.0.8-lp151.2.3.1
virtualbox-devel-6.0.8-lp151.2.3.1
virtualbox-guest-kmp-default-6.0.8_k4.12.14_lp151.27-lp151.2.3.1
virtualbox-guest-kmp-default-debuginfo-6.0.8_k4.12.14_lp151.27-lp151.2.3.1
virtualbox-guest-tools-6.0.8-lp151.2.3.1
virtualbox-guest-tools-debuginfo-6.0.8-lp151.2.3.1
virtualbox-guest-x11-6.0.8-lp151.2.3.1
virtualbox-guest-x11-debuginfo-6.0.8-lp151.2.3.1
virtualbox-host-kmp-default-6.0.8_k4.12.14_lp151.27-lp151.2.3.1
virtualbox-host-kmp-default-debuginfo-6.0.8_k4.12.14_lp151.27-lp151.2.3.1
virtualbox-qt-6.0.8-lp151.2.3.1
virtualbox-qt-debuginfo-6.0.8-lp151.2.3.1
virtualbox-vnc-6.0.8-lp151.2.3.1
virtualbox-websrv-6.0.8-lp151.2.3.1
virtualbox-websrv-debuginfo-6.0.8-lp151.2.3.1
References:
openSUSE Recommended Update: Recommended update for akonadi-server
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1448-1
Rating: moderate
References:
Affected Products:
openSUSE Leap 15.1
______________________________________________________________________________
An update that has 0 recommended fixes can now be installed.
Description:
This update for akonadi-server fixes the following issues:
- Fixed a possible crash on exit (kde#401692)
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1448=1
Package List:
- openSUSE Leap 15.1 (x86_64):
akonadi-server-18.12.3-lp151.3.4.1
akonadi-server-debuginfo-18.12.3-lp151.3.4.1
akonadi-server-debugsource-18.12.3-lp151.3.4.1
akonadi-server-devel-18.12.3-lp151.3.4.1
akonadi-server-devel-debuginfo-18.12.3-lp151.3.4.1
akonadi-server-sqlite-18.12.3-lp151.3.4.1
akonadi-server-sqlite-debuginfo-18.12.3-lp151.3.4.1
libKF5AkonadiAgentBase5-18.12.3-lp151.3.4.1
libKF5AkonadiAgentBase5-debuginfo-18.12.3-lp151.3.4.1
libKF5AkonadiCore5-18.12.3-lp151.3.4.1
libKF5AkonadiCore5-debuginfo-18.12.3-lp151.3.4.1
libKF5AkonadiPrivate5-18.12.3-lp151.3.4.1
libKF5AkonadiPrivate5-debuginfo-18.12.3-lp151.3.4.1
libKF5AkonadiWidgets5-18.12.3-lp151.3.4.1
libKF5AkonadiWidgets5-debuginfo-18.12.3-lp151.3.4.1
libKF5AkonadiXml5-18.12.3-lp151.3.4.1
libKF5AkonadiXml5-debuginfo-18.12.3-lp151.3.4.1
- openSUSE Leap 15.1 (noarch):
akonadi-server-lang-18.12.3-lp151.3.4.1
References:
openSUSE Recommended Update: Recommended update for kidentitymanagement
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1446-1
Rating: moderate
References:
Affected Products:
openSUSE Leap 15.1
______________________________________________________________________________
An update that has 0 recommended fixes can now be installed.
Description:
This update for kidentitymanagement fixes the following issues:
- Fixed that newly created itentities are not showing up in the settings
dialog before kmail is restarted (kde#391631)
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1446=1
Package List:
- openSUSE Leap 15.1 (noarch):
kidentitymanagement-lang-18.12.3-lp151.2.4.1
- openSUSE Leap 15.1 (x86_64):
kidentitymanagement-debugsource-18.12.3-lp151.2.4.1
kidentitymanagement-devel-18.12.3-lp151.2.4.1
libKF5IdentityManagement5-18.12.3-lp151.2.4.1
libKF5IdentityManagement5-debuginfo-18.12.3-lp151.2.4.1
References:
openSUSE Security Update: Security update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork
______________________________________________________________________________
Announcement ID: openSUSE-SU-2019:1444-1
Rating: important
References: #1114209 #1114832 #1118897 #1118898 #1118899
#1121397 #1121967 #1123013 #1128376 #1128746
#1134068
Cross-References: CVE-2018-16873 CVE-2018-16874 CVE-2018-16875
CVE-2019-5736 CVE-2019-6486
Affected Products:
openSUSE Leap 15.1
______________________________________________________________________________
An update that solves 5 vulnerabilities and has 6 fixes is
now available.
Description:
This update for containerd, docker, docker-runc, go, go1.11, go1.12,
golang-github-docker-libnetwork fixes the following issues:
Security issues fixed:
- CVE-2019-5736: containerd: Fixing container breakout vulnerability
(bsc#1121967).
- CVE-2019-6486: go security release, fixing crypto/elliptic CPU DoS
vulnerability affecting P-521 and P-384 (bsc#1123013).
- CVE-2018-16873: go secuirty release, fixing cmd/go remote command
execution (bsc#1118897).
- CVE-2018-16874: go security release, fixing cmd/go directory traversal
(bsc#1118898).
- CVE-2018-16875: go security release, fixing crypto/x509 CPU denial of
service (bsc#1118899).
Other changes and bug fixes:
- Update to containerd v1.2.5, which is required for v18.09.5-ce
(bsc#1128376, bsc#1134068).
- Update to runc 2b18fe1d885e, which is required for Docker v18.09.5-ce
(bsc#1128376, bsc#1134068).
- Update to Docker 18.09.5-ce see upstream changelog in the packaged
(bsc#1128376, bsc#1134068).
- docker-test: Improvements to test packaging (bsc#1128746).
- Move daemon.json file to /etc/docker directory (bsc#1114832).
- Revert golang(API) removal since it turns out this breaks >= requires in
certain cases (bsc#1114209).
- Fix go build failures (bsc#1121397).
This update was imported from the SUSE:SLE-15:Update update project.
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1444=1
Package List:
- openSUSE Leap 15.1 (i586 x86_64):
go-1.12-lp151.2.3.1
go-doc-1.12-lp151.2.3.1
- openSUSE Leap 15.1 (x86_64):
containerd-1.2.5-lp151.2.3.1
containerd-ctr-1.2.5-lp151.2.3.1
docker-18.09.6_ce-lp151.2.3.1
docker-debuginfo-18.09.6_ce-lp151.2.3.1
docker-debugsource-18.09.6_ce-lp151.2.3.1
docker-libnetwork-0.7.0.1+gitr2726_872f0a83c98a-lp151.2.3.1
docker-libnetwork-debuginfo-0.7.0.1+gitr2726_872f0a83c98a-lp151.2.3.1
docker-runc-1.0.0rc6+gitr3804_2b18fe1d885e-lp151.3.3.1
docker-runc-debuginfo-1.0.0rc6+gitr3804_2b18fe1d885e-lp151.3.3.1
docker-test-18.09.6_ce-lp151.2.3.1
docker-test-debuginfo-18.09.6_ce-lp151.2.3.1
go-race-1.12-lp151.2.3.1
go1.11-1.11.9-lp151.2.3.1
go1.11-doc-1.11.9-lp151.2.3.1
go1.11-race-1.11.9-lp151.2.3.1
go1.12-1.12.4-lp151.2.3.1
go1.12-doc-1.12.4-lp151.2.3.1
go1.12-race-1.12.4-lp151.2.3.1
golang-github-docker-libnetwork-0.7.0.1+gitr2726_872f0a83c98a-lp151.2.3.1
- openSUSE Leap 15.1 (noarch):
containerd-test-1.2.5-lp151.2.3.1
docker-bash-completion-18.09.6_ce-lp151.2.3.1
docker-runc-test-1.0.0rc6+gitr3804_2b18fe1d885e-lp151.3.3.1
docker-zsh-completion-18.09.6_ce-lp151.2.3.1
References:
https://www.suse.com/security/cve/CVE-2018-16873.htmlhttps://www.suse.com/security/cve/CVE-2018-16874.htmlhttps://www.suse.com/security/cve/CVE-2018-16875.htmlhttps://www.suse.com/security/cve/CVE-2019-5736.htmlhttps://www.suse.com/security/cve/CVE-2019-6486.htmlhttps://bugzilla.suse.com/1114209https://bugzilla.suse.com/1114832https://bugzilla.suse.com/1118897https://bugzilla.suse.com/1118898https://bugzilla.suse.com/1118899https://bugzilla.suse.com/1121397https://bugzilla.suse.com/1121967https://bugzilla.suse.com/1123013https://bugzilla.suse.com/1128376https://bugzilla.suse.com/1128746https://bugzilla.suse.com/1134068
openSUSE Recommended Update: PackageKit
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1443-1
Rating: moderate
References: #1038425
Affected Products:
openSUSE Leap 15.1
______________________________________________________________________________
An update that has one recommended fix can now be installed.
Description:
This update for PackageKit fixes the following issues:
- This fixes an issue on GNOME where a pop up window for license
agreements was not shown (boo#1038425)
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1443=1
Package List:
- openSUSE Leap 15.1 (i586 x86_64):
PackageKit-1.1.10-lp151.8.3.1
PackageKit-backend-zypp-1.1.10-lp151.8.3.1
PackageKit-backend-zypp-debuginfo-1.1.10-lp151.8.3.1
PackageKit-debuginfo-1.1.10-lp151.8.3.1
PackageKit-debugsource-1.1.10-lp151.8.3.1
PackageKit-devel-1.1.10-lp151.8.3.1
PackageKit-devel-debuginfo-1.1.10-lp151.8.3.1
PackageKit-gstreamer-plugin-1.1.10-lp151.8.3.1
PackageKit-gstreamer-plugin-debuginfo-1.1.10-lp151.8.3.1
PackageKit-gtk3-module-1.1.10-lp151.8.3.1
PackageKit-gtk3-module-debuginfo-1.1.10-lp151.8.3.1
libpackagekit-glib2-18-1.1.10-lp151.8.3.1
libpackagekit-glib2-18-debuginfo-1.1.10-lp151.8.3.1
libpackagekit-glib2-devel-1.1.10-lp151.8.3.1
typelib-1_0-PackageKitGlib-1_0-1.1.10-lp151.8.3.1
- openSUSE Leap 15.1 (noarch):
PackageKit-branding-upstream-1.1.10-lp151.8.3.1
PackageKit-lang-1.1.10-lp151.8.3.1
- openSUSE Leap 15.1 (x86_64):
libpackagekit-glib2-18-32bit-1.1.10-lp151.8.3.1
libpackagekit-glib2-18-32bit-debuginfo-1.1.10-lp151.8.3.1
libpackagekit-glib2-devel-32bit-1.1.10-lp151.8.3.1
References:
https://bugzilla.suse.com/1038425
openSUSE Recommended Update: Recommended update for usbguard
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1442-1
Rating: moderate
References: #1071076 #1120969 #1132443
Affected Products:
openSUSE Leap 15.0
______________________________________________________________________________
An update that has three recommended fixes can now be
installed.
Description:
This update for usbguard to version 0.7.4 fixes the following issues:
- Updated usbguard.service to allow autostart (boo#1120969).
- Added a sample rules.conf (boo#1071076).
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.0:
zypper in -t patch openSUSE-2019-1442=1
Package List:
- openSUSE Leap 15.0 (x86_64):
libusbguard0-0.7.4-lp150.2.3.1
libusbguard0-debuginfo-0.7.4-lp150.2.3.1
usbguard-0.7.4-lp150.2.3.1
usbguard-applet-qt-0.7.4-lp150.2.3.1
usbguard-applet-qt-debuginfo-0.7.4-lp150.2.3.1
usbguard-debuginfo-0.7.4-lp150.2.3.1
usbguard-debugsource-0.7.4-lp150.2.3.1
usbguard-devel-0.7.4-lp150.2.3.1
usbguard-tools-0.7.4-lp150.2.3.1
usbguard-tools-debuginfo-0.7.4-lp150.2.3.1
References:
https://bugzilla.suse.com/1071076https://bugzilla.suse.com/1120969https://bugzilla.suse.com/1132443
openSUSE Recommended Update: Recommended update for docker-runc
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1441-1
Rating: important
References: #1131314 #1131553
Affected Products:
openSUSE Leap 42.3
______________________________________________________________________________
An update that has two recommended fixes can now be
installed.
Description:
This update for docker-runc fixes the following issues:
- Backport various upstream patches to fix some kernel regression related
to O_TMPFILE. bsc#1131314 bsc#1131553
This update was imported from the SUSE:SLE-12:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 42.3:
zypper in -t patch openSUSE-2019-1441=1
Package List:
- openSUSE Leap 42.3 (i586 x86_64):
docker-runc-1.0.0rc6+gitr3748_96ec2177ae84-14.1
docker-runc-debuginfo-1.0.0rc6+gitr3748_96ec2177ae84-14.1
docker-runc-debugsource-1.0.0rc6+gitr3748_96ec2177ae84-14.1
docker-runc-kubic-1.0.0rc6+gitr3748_96ec2177ae84-14.1
docker-runc-kubic-debuginfo-1.0.0rc6+gitr3748_96ec2177ae84-14.1
docker-runc-kubic-debugsource-1.0.0rc6+gitr3748_96ec2177ae84-14.1
- openSUSE Leap 42.3 (noarch):
docker-runc-kubic-test-1.0.0rc6+gitr3748_96ec2177ae84-14.1
docker-runc-test-1.0.0rc6+gitr3748_96ec2177ae84-14.1
References:
https://bugzilla.suse.com/1131314https://bugzilla.suse.com/1131553