openSUSE Security Update: Security update for tor
______________________________________________________________________________
Announcement ID: openSUSE-SU-2021:1513-1
Rating: moderate
References: #1192658
Cross-References: CVE-2021-22929
Affected Products:
openSUSE Leap 15.2
openSUSE Backports SLE-15-SP3
______________________________________________________________________________
An update that fixes one vulnerability is now available.
Description:
This update for tor fixes the following issues:
tor 0.4.6.8:
* Improving reporting of general overload state for DNS timeout errors by
relays
* Regenerate fallback directories for October 2021
* Bug fixes for onion services
* CVE-2021-22929: do not log v2 onion services access attempt warnings on
disk excessively (TROVE-2021-008, boo#1192658)
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.2:
zypper in -t patch openSUSE-2021-1513=1
- openSUSE Backports SLE-15-SP3:
zypper in -t patch openSUSE-2021-1513=1
Package List:
- openSUSE Leap 15.2 (x86_64):
tor-0.4.6.8-lp152.2.18.1
tor-debuginfo-0.4.6.8-lp152.2.18.1
tor-debugsource-0.4.6.8-lp152.2.18.1
- openSUSE Backports SLE-15-SP3 (aarch64 i586 ppc64le s390x x86_64):
tor-0.4.6.8-bp153.2.9.1
References:
https://www.suse.com/security/cve/CVE-2021-22929.htmlhttps://bugzilla.suse.com/1192658
openSUSE Recommended Update: Recommended update for systemd
______________________________________________________________________________
Announcement ID: openSUSE-RU-2021:1512-1
Rating: moderate
References: #1189803 #1190325 #1190440 #1190984 #1191252
#1192161 SLE-18102 SLE-18103 SLE-21032 SLE-21862
Affected Products:
openSUSE Leap 15.2
______________________________________________________________________________
An update that has 6 recommended fixes and contains four
features can now be installed.
Description:
This update for systemd fixes the following issues:
- Add timestamp to D-Bus events to improve traceability (jsc#SLE-21862,
jsc#SLE-18102, jsc#SLE-18103)
- Fix IO scheduler udev rules to address performance issues
(jsc#SLE-21032, bsc#1192161)
- shutdown: Reduce log level of unmounts (bsc#1191252)
- pid1: make use of new "prohibit_ipc" logging flag in PID 1 (bsc#1189803)
- core: rework how we connect to the bus (bsc#1190325)
- mount-util: fix fd_is_mount_point() when both the parent and directory
are network fs (bsc#1190984)
- virt: detect Amazon EC2 Nitro instance (bsc#1190440)
- Several fixes for umount
- busctl: use usec granularity for the timestamp printed by the busctl
monitor command
- fix unitialized fields in MountPoint in dm_list_get()
- shutdown: explicitly set a log target
- mount-util: add mount_option_mangle()
- dissect: automatically mark partitions read-only that have a read-only
file system
- build-sys: require proper libmount version
- systemd-shutdown: use log_set_prohibit_ipc(true)
- rationalize interface for opening/closing logging
- pid1: when we can't log to journal, remember our fallback log target
- log: remove LOG_TARGET_SAFE pseudo log target
- log: add brief comment for log_set_open_when_needed() and
log_set_always_reopen_console()
- log: add new "prohibit_ipc" flag to logging system
- log: make log_set_upgrade_syslog_to_journal() take effect immediately
- dbus: split up bus_done() into seperate functions
- machine-id-setup: generate machine-id from DMI product ID on Amazon EC2
- virt: if we detect Xen by DMI, trust that over CPUID
This update was imported from the SUSE:SLE-15:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.2:
zypper in -t patch openSUSE-2021-1512=1
Package List:
- openSUSE Leap 15.2 (i586 x86_64):
libsystemd0-234-lp152.31.37.1
libsystemd0-debuginfo-234-lp152.31.37.1
libsystemd0-mini-234-lp152.31.37.1
libsystemd0-mini-debuginfo-234-lp152.31.37.1
libudev-devel-234-lp152.31.37.1
libudev-mini-devel-234-lp152.31.37.1
libudev-mini1-234-lp152.31.37.1
libudev-mini1-debuginfo-234-lp152.31.37.1
libudev1-234-lp152.31.37.1
libudev1-debuginfo-234-lp152.31.37.1
nss-myhostname-234-lp152.31.37.1
nss-myhostname-debuginfo-234-lp152.31.37.1
nss-mymachines-234-lp152.31.37.1
nss-mymachines-debuginfo-234-lp152.31.37.1
nss-systemd-234-lp152.31.37.1
nss-systemd-debuginfo-234-lp152.31.37.1
systemd-234-lp152.31.37.1
systemd-container-234-lp152.31.37.1
systemd-container-debuginfo-234-lp152.31.37.1
systemd-coredump-234-lp152.31.37.1
systemd-coredump-debuginfo-234-lp152.31.37.1
systemd-debuginfo-234-lp152.31.37.1
systemd-debugsource-234-lp152.31.37.1
systemd-devel-234-lp152.31.37.1
systemd-journal-remote-234-lp152.31.37.1
systemd-journal-remote-debuginfo-234-lp152.31.37.1
systemd-logger-234-lp152.31.37.1
systemd-mini-234-lp152.31.37.1
systemd-mini-container-mini-234-lp152.31.37.1
systemd-mini-container-mini-debuginfo-234-lp152.31.37.1
systemd-mini-coredump-mini-234-lp152.31.37.1
systemd-mini-coredump-mini-debuginfo-234-lp152.31.37.1
systemd-mini-debuginfo-234-lp152.31.37.1
systemd-mini-debugsource-234-lp152.31.37.1
systemd-mini-devel-234-lp152.31.37.1
systemd-mini-sysvinit-234-lp152.31.37.1
systemd-network-234-lp152.31.37.1
systemd-network-debuginfo-234-lp152.31.37.1
systemd-sysvinit-234-lp152.31.37.1
udev-234-lp152.31.37.1
udev-debuginfo-234-lp152.31.37.1
udev-mini-234-lp152.31.37.1
udev-mini-debuginfo-234-lp152.31.37.1
- openSUSE Leap 15.2 (x86_64):
libsystemd0-32bit-234-lp152.31.37.1
libsystemd0-32bit-debuginfo-234-lp152.31.37.1
libudev-devel-32bit-234-lp152.31.37.1
libudev1-32bit-234-lp152.31.37.1
libudev1-32bit-debuginfo-234-lp152.31.37.1
nss-myhostname-32bit-234-lp152.31.37.1
nss-myhostname-32bit-debuginfo-234-lp152.31.37.1
nss-mymachines-32bit-234-lp152.31.37.1
nss-mymachines-32bit-debuginfo-234-lp152.31.37.1
systemd-32bit-234-lp152.31.37.1
systemd-32bit-debuginfo-234-lp152.31.37.1
- openSUSE Leap 15.2 (noarch):
systemd-bash-completion-234-lp152.31.37.1
systemd-mini-bash-completion-234-lp152.31.37.1
References:
https://bugzilla.suse.com/1189803https://bugzilla.suse.com/1190325https://bugzilla.suse.com/1190440https://bugzilla.suse.com/1190984https://bugzilla.suse.com/1191252https://bugzilla.suse.com/1192161
openSUSE Recommended Update: Recommended update for yast2-storage-ng
______________________________________________________________________________
Announcement ID: openSUSE-RU-2021:1510-1
Rating: moderate
References: #1186268 #1186298 #1187270 #1192124
Affected Products:
openSUSE Leap 15.2
______________________________________________________________________________
An update that has four recommended fixes can now be
installed.
Description:
This update for yast2-storage-ng fixes the following issues:
- Ensure mount options are not doubled (bsc#1186298)
- Try harder matching device names to fix failing offline upgrade from
SLE-12 SP5 to SLE-15 SP2 (bsc#1186268)
- Fix desktop file comment to properly display control center tooltip
(bsc#1187270)
- Set the volume group extent size according to the AutoYaST profile
(bsc#1192124)
This update was imported from the SUSE:SLE-15-SP2:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.2:
zypper in -t patch openSUSE-2021-1510=1
Package List:
- openSUSE Leap 15.2 (i586 x86_64):
yast2-storage-ng-4.2.119-lp152.2.15.1
References:
https://bugzilla.suse.com/1186268https://bugzilla.suse.com/1186298https://bugzilla.suse.com/1187270https://bugzilla.suse.com/1192124
openSUSE Recommended Update: Recommended update for tuned
______________________________________________________________________________
Announcement ID: openSUSE-RU-2021:1508-1
Rating: moderate
References: #1191341
Affected Products:
openSUSE Leap 15.2
______________________________________________________________________________
An update that has one recommended fix can now be installed.
Description:
This update for tuned fixes the following issues:
- Follow upstream and set backup latency requirement to 3 (bsc#1191341)
This update was imported from the SUSE:SLE-15-SP1:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.2:
zypper in -t patch openSUSE-2021-1508=1
Package List:
- openSUSE Leap 15.2 (noarch):
tuned-2.10.0-lp152.7.3.1
tuned-gtk-2.10.0-lp152.7.3.1
tuned-profiles-atomic-2.10.0-lp152.7.3.1
tuned-profiles-nfv-2.10.0-lp152.7.3.1
tuned-profiles-oracle-2.10.0-lp152.7.3.1
tuned-profiles-realtime-2.10.0-lp152.7.3.1
tuned-utils-2.10.0-lp152.7.3.1
tuned-utils-systemtap-2.10.0-lp152.7.3.1
References:
https://bugzilla.suse.com/1191341
openSUSE Recommended Update: Recommended update for resource-agents
______________________________________________________________________________
Announcement ID: openSUSE-RU-2021:1507-1
Rating: moderate
References: #1184382
Affected Products:
openSUSE Leap 15.2
______________________________________________________________________________
An update that has one recommended fix can now be installed.
Description:
This update for resource-agents fixes the following issues:
- Improve client fail over to regain access to nfs share (bsc#1184382)
This update was imported from the SUSE:SLE-15-SP2:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.2:
zypper in -t patch openSUSE-2021-1507=1
Package List:
- openSUSE Leap 15.2 (i586 x86_64):
ldirectord-4.4.0+git57.70549516-lp152.2.34.1
resource-agents-4.4.0+git57.70549516-lp152.2.34.1
resource-agents-debuginfo-4.4.0+git57.70549516-lp152.2.34.1
resource-agents-debugsource-4.4.0+git57.70549516-lp152.2.34.1
- openSUSE Leap 15.2 (noarch):
monitoring-plugins-metadata-4.4.0+git57.70549516-lp152.2.34.1
References:
https://bugzilla.suse.com/1184382
openSUSE Recommended Update: Recommended update for dracut
______________________________________________________________________________
Announcement ID: openSUSE-RU-2021:1506-1
Rating: moderate
References: #1187190 #1188713 #1190326
Affected Products:
openSUSE Leap 15.2
______________________________________________________________________________
An update that has three recommended fixes can now be
installed.
Description:
This update for dracut fixes the following issues:
- Fixed multipath devices that always default to bfq scheduler
(bsc#1188713)
- Fixed unbootable system when testing kernel 5.14 (bsc#1190326)
- Add support for the new iscsiadm "no-wait" (-W) command (bsc#1187190)
- Add iscsid.service requirements (bsc#1187190)
This update was imported from the SUSE:SLE-15-SP2:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.2:
zypper in -t patch openSUSE-2021-1506=1
Package List:
- openSUSE Leap 15.2 (i586 x86_64):
dracut-049.1+suse.216.gf705637b-lp152.2.36.1
dracut-debuginfo-049.1+suse.216.gf705637b-lp152.2.36.1
dracut-debugsource-049.1+suse.216.gf705637b-lp152.2.36.1
dracut-extra-049.1+suse.216.gf705637b-lp152.2.36.1
dracut-fips-049.1+suse.216.gf705637b-lp152.2.36.1
dracut-ima-049.1+suse.216.gf705637b-lp152.2.36.1
dracut-tools-049.1+suse.216.gf705637b-lp152.2.36.1
References:
https://bugzilla.suse.com/1187190https://bugzilla.suse.com/1188713https://bugzilla.suse.com/1190326
openSUSE Recommended Update: Recommended update for xfsprogs
______________________________________________________________________________
Announcement ID: openSUSE-RU-2021:1509-1
Rating: moderate
References: #1189983 #1189984 #1191500 #1191566 #1191675
Affected Products:
openSUSE Leap 15.2
______________________________________________________________________________
An update that has 5 recommended fixes can now be installed.
Description:
This update for xfsprogs fixes the following issues:
- Make libhandle1 an explicit dependency in the xfsprogs-devel package
(bsc#1191566)
- Remove deprecated barrier/nobarrier mount options from manual pages
section 5 (bsc#1191675)
- xfs_io: include support for label command (bsc#1191500)
- xfs_quota: state command to report all three (-ugp) grace times
separately (bsc#1189983)
- xfs_admin: add support for external log devices (bsc#1189984)
This update was imported from the SUSE:SLE-15:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.2:
zypper in -t patch openSUSE-2021-1509=1
Package List:
- openSUSE Leap 15.2 (i586 x86_64):
libhandle1-4.15.0-lp152.12.6.1
libhandle1-debuginfo-4.15.0-lp152.12.6.1
xfsprogs-4.15.0-lp152.12.6.1
xfsprogs-debuginfo-4.15.0-lp152.12.6.1
xfsprogs-debugsource-4.15.0-lp152.12.6.1
xfsprogs-devel-4.15.0-lp152.12.6.1
References:
https://bugzilla.suse.com/1189983https://bugzilla.suse.com/1189984https://bugzilla.suse.com/1191500https://bugzilla.suse.com/1191566https://bugzilla.suse.com/1191675