Announcement ID: | SUSE-SU-2024:1509-1 |
---|---|
Rating: | important |
References: | |
Cross-References: | |
CVSS scores: |
|
Affected Products: |
|
An update that solves 15 vulnerabilities, contains one feature and has four security fixes can now be installed.
This update fixes the following issues:
POS_Image-Graphical7 was updated to version 0.1.1710765237.46af599:
Version 0.1.1710765237.46af599
Moved image services to dracut-saltboot package
Use salt bundle
Version 0.1.1645440615.7f1328c
Removed deprecated kiwi functions
POS_Image-JeOS7 was updated to version 0.1.1710765237.46af599:
Version 0.1.1710765237.46af599
Moved image services to dracut-saltboot package
Use salt bundle
Version 0.1.1645440615.7f1328c
Removed deprecated kiwi functions
ansible received the following fixes:
Security issues fixed:
CVE-2023-5764: Address issues where internal templating can cause unsafe variables to lose their unsafe designation (bsc#1216854)
CVE-2024-0690: Address issue where ANSIBLE_NO_LOG was ignored (bsc#1219002)
CVE-2018-10874: Fixed inventory variables loading from current working directory when running ad-hoc command that can lead to code execution (bsc#1099805)
Bugs fixed:
Don't Require python-coverage, it is needed only for testing (bsc#1177948)
dracut-saltboot was updated to version 0.1.1710765237.46af599:
Version 0.1.1710765237.46af599
Load only first available leaseinfo (bsc#1221092)
Version 0.1.1681904360.84ef141
grafana was updated to version 9.5.18:
Security issues fixed:
CVE-2024-1313: Require same organisation when deleting snapshots (bsc#1222155)
CVE-2023-6152: Add email verification when updating user email (bsc#1219912)
Other non-security related changes:
Version 9.5.17:
Version 9.5.16:
Version 9.5.15:
Version 9.5.14:
Version 9.5.13:
Version 9.5.12:
Version 9.5.9:
mgr-daemon was updated to version 4.3.9-0:
Version 4.3.9-0
Update translation strings
spacecmd was updated to version 4.3.27-0:
Version 4.3.27-0
Update translation strings
spacewalk-client-tools was updated to version 4.3.19-0:
Version 4.3.19-0
Update translation strings
spacewalk-koan was updated to version version 4.3.6-0:
Version 4.3.6-0
Change Docker image location for test
uyuni-common-libs was updated to version 4.3.10-0:
Version 4.3.10-0
Add support for package signature type V4 RSA/SHA384
uyuni-proxy-systemd-services was updated to version 4.3.12-0:
Version 4.3.12-0
Update to SUSE Manager 4.3.12
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
zypper in -t patch openSUSE-SLE-15.5-2024-1509=1
zypper in -t patch SUSE-SLE-Manager-Tools-15-2024-1509=1
zypper in -t patch SUSE-SLE-Manager-Tools-For-Micro-5-2024-1509=1
zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2024-1509=1
zypper in -t patch SUSE-SLE-Module-SUSE-Manager-Proxy-4.3-2024-1509=1