Container summary for


SUSE-IU-2022:841-1

Container Advisory IDSUSE-IU-2022:841-1
Container Tags
Container Release
The following patches have been included in this update:
Advisory IDSUSE-SU-2018:1223-1
ReleasedTue Jun 26 11:41:00 2018
SummarySecurity update for gpg2
Typesecurity
Severityimportant
References1096745,CVE-2018-12020
Description:

This update for gpg2 fixes the following security issue:


Advisory IDSUSE-SU-2018:1327-1
ReleasedTue Jul 17 08:07:24 2018
SummarySecurity update for perl
Typesecurity
Severitymoderate
References1096718,CVE-2018-12015
Description:

This update for perl fixes the following issues:


Advisory IDSUSE-RU-2018:1332-1
ReleasedTue Jul 17 09:01:19 2018
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1073299,1093392
Description:

This update for timezone provides the following fixes:


Advisory IDSUSE-RU-2018:1333-1
ReleasedTue Jul 17 09:03:21 2018
SummaryRecommended update for bind
Typerecommended
Severitymoderate
References901577,965748
Description:

This update for bind provides the following fix:


Advisory IDSUSE-RU-2018:1334-1
ReleasedTue Jul 17 09:06:41 2018
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1096515
Description:

This update for mozilla-nss provides the following fixes:


Advisory IDSUSE-SU-2018:1346-1
ReleasedThu Jul 19 09:25:08 2018
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1082318,1092877,1094150,1094154,1094161,CVE-2017-18269,CVE-2018-11236,CVE-2018-11237
Description:

This update for glibc fixes the following security issues:


Advisory IDSUSE-SU-2018:1353-1
ReleasedThu Jul 19 09:50:32 2018
SummarySecurity update for e2fsprogs
Typesecurity
Severitymoderate
References1009532,1038194,915402,918346,960273,CVE-2015-0247,CVE-2015-1572
Description:

This update for e2fsprogs fixes the following issues:
Security issues fixed:


Bug fixes:


Advisory IDSUSE-RU-2018:1409-1
ReleasedFri Jul 27 06:45:10 2018
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1039099,1083158,1088052,1091265,1093851,1095096,1095973,1098569
Description:

This update for systemd provides the following fixes:


Advisory IDSUSE-SU-2018:1476-1
ReleasedThu Aug 2 14:20:03 2018
SummarySecurity update for cups
Typesecurity
Severitymoderate
References1096405,1096406,1096407,1096408,CVE-2018-4180,CVE-2018-4181,CVE-2018-4182,CVE-2018-4183
Description:

This update for cups fixes the following issues:
The following security vulnerabilities were fixed:


Advisory IDSUSE-RU-2018:1756-1
ReleasedFri Aug 24 17:12:55 2018
SummaryRecommended update for growpart
Typerecommended
Severitymoderate
References1097455,1098681
Description:

This update for growpart provides the following fix:


Advisory IDSUSE-RU-2018:1760-1
ReleasedFri Aug 24 17:14:53 2018
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1072183
Description:

This update for libtirpc fixes the following issues:


Advisory IDSUSE-RU-2018:1775-1
ReleasedTue Aug 28 12:40:50 2018
SummaryRecommended update for xfsprogs
Typerecommended
Severityimportant
References1089777,1105396
Description:

This update for xfsprogs fixes the following issues:


Advisory IDSUSE-RU-2018:1804-1
ReleasedFri Aug 31 13:02:24 2018
SummaryRecommended update for docker
Typerecommended
Severitymoderate
References1065609,1073877,1099277,1100727
Description:

This update for docker fixes the following issues:


Advisory IDSUSE-RU-2018:1999-1
ReleasedTue Sep 25 08:20:35 2018
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1071321
Description:

This update for zlib provides the following fixes:


Advisory IDSUSE-RU-2018:2138-1
ReleasedThu Oct 4 15:52:15 2018
SummaryRecommended update for sudo
Typerecommended
Severitylow
References1097643
Description:

This update for sudo fixes the following issues:


Advisory IDSUSE-RU-2018:2155-1
ReleasedFri Oct 5 14:41:17 2018
SummaryRecommended update for ca-certificates
Typerecommended
Severitymoderate
References1101470
Description:

This update for ca-certificates fixes the following issues:


Advisory IDSUSE-RU-2018:2170-1
ReleasedMon Oct 8 10:31:14 2018
SummaryRecommended update for python3
Typerecommended
Severitymoderate
References1107030
Description:

This update for python3 fixes the following issues:


Advisory IDSUSE-RU-2018:2177-1
ReleasedTue Oct 9 09:00:13 2018
SummaryRecommended update for bash
Typerecommended
Severitymoderate
References1095661,1095670,1100488
Description:

This update for bash provides the following fixes:


Advisory IDSUSE-SU-2018:2182-1
ReleasedTue Oct 9 11:08:36 2018
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1088279,1102046,1105166,CVE-2018-14404,CVE-2018-14567,CVE-2018-9251
Description:

This update for libxml2 fixes the following security issues:


Advisory IDSUSE-SU-2018:2340-1
ReleasedFri Oct 19 16:05:53 2018
SummarySecurity update for fuse
Typesecurity
Severitymoderate
References1101797,CVE-2018-10906
Description:

This update for fuse fixes the following issues:


Advisory IDSUSE-RU-2018:2346-1
ReleasedMon Oct 22 09:40:46 2018
SummaryRecommended update for logrotate
Typerecommended
Severitymoderate
References1093617
Description:

This update for logrotate provides the following fix:


Advisory IDSUSE-RU-2018:2370-1
ReleasedMon Oct 22 14:02:01 2018
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1102310,1104531
Description:

This update for aaa_base provides the following fixes:


Advisory IDSUSE-RU-2018:2412-1
ReleasedTue Oct 23 17:28:04 2018
SummaryRecommended update for gettext-runtime
Typerecommended
Severitymoderate
References1106843
Description:

This update for gettext-runtime provides the following fix:


Advisory IDSUSE-RU-2018:2463-1
ReleasedThu Oct 25 14:48:34 2018
SummaryRecommended update for timezone, timezone-java
Typerecommended
Severitymoderate
References1104700,1112310
Description:


This update for timezone, timezone-java fixes the following issues:
The timezone database was updated to 2018f:


Other bugfixes:


Advisory IDSUSE-RU-2018:2485-1
ReleasedFri Oct 26 12:38:01 2018
SummaryRecommended update for kmod
Typerecommended
Severitymoderate
References1112928
Description:

This update for kmod provides the following fixes:


Advisory IDSUSE-RU-2018:2486-1
ReleasedFri Oct 26 12:38:27 2018
SummaryRecommended update for xfsprogs
Typerecommended
Severitymoderate
References1105068
Description:

This update for xfsprogs fixes the following issues:


Advisory IDSUSE-RU-2018:2487-1
ReleasedFri Oct 26 12:39:07 2018
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1102526
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2018:2550-1
ReleasedWed Oct 31 16:16:56 2018
SummaryRecommended update for timezone, timezone-java
Typerecommended
Severitymoderate
References1113554
Description:

This update provides the latest time zone definitions (2018g), including the following change:


Advisory IDSUSE-RU-2018:2569-1
ReleasedFri Nov 2 19:00:18 2018
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1110700
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2018:2595-1
ReleasedWed Nov 7 11:14:42 2018
SummarySecurity update for systemd
Typesecurity
Severityimportant
References1089761,1090944,1091677,1093753,1101040,1102908,1105031,1107640,1107941,1109197,1109252,1110445,1112024,1113083,1113632,1113665,1114135,991901,CVE-2018-15686,CVE-2018-15688
Description:

This update for systemd fixes the following issues:
Security issues fixed:


Non security issues fixed:


Advisory IDSUSE-RU-2018:2607-1
ReleasedWed Nov 7 15:42:48 2018
SummaryOptional update for gcc8
Typerecommended
Severitylow
References1084812,1084842,1087550,1094222,1102564
Description:


The GNU Compiler GCC 8 is being added to the Development Tools Module by this update.
The update also supplies gcc8 compatible libstdc++, libgcc_s1 and other gcc derived libraries for the Basesystem module of SUSE Linux Enterprise 15.
Various optimizers have been improved in GCC 8, several of bugs fixed, quite some new warnings added and the error pin-pointing and fix-suggestions have been greatly improved.
The GNU Compiler page for GCC 8 contains a summary of all the changes that have happened:
https://gcc.gnu.org/gcc-8/changes.html
Also changes needed or common pitfalls when porting software are described on:
https://gcc.gnu.org/gcc-8/porting_to.html


Advisory IDSUSE-RU-2018:2641-1
ReleasedMon Nov 12 20:39:30 2018
SummaryRecommended update for nfsidmap
Typerecommended
Severitymoderate
References1098217
Description:

This update for nfsidmap fixes the following issues:


Advisory IDSUSE-RU-2018:2742-1
ReleasedThu Nov 22 13:28:36 2018
SummaryRecommended update for rpcbind
Typerecommended
Severitymoderate
References969953
Description:

This update for rpcbind fixes the following issues:


Advisory IDSUSE-SU-2018:2825-1
ReleasedMon Dec 3 15:35:02 2018
SummarySecurity update for pam
Typesecurity
Severityimportant
References1115640,CVE-2018-17953
Description:

This update for pam fixes the following issue:
Security issue fixed:


Advisory IDSUSE-SU-2018:2861-1
ReleasedThu Dec 6 14:32:01 2018
SummarySecurity update for ncurses
Typesecurity
Severityimportant
References1103320,1115929,CVE-2018-19211
Description:

This update for ncurses fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2018:2882-1
ReleasedMon Dec 10 08:07:44 2018
SummarySecurity update for cups
Typesecurity
Severityimportant
References1115750,CVE-2018-4700
Description:

This update for cups fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2018:2945-1
ReleasedFri Dec 14 16:43:57 2018
SummarySecurity update for tcpdump
Typesecurity
Severitymoderate
References1117267,CVE-2018-19519
Description:

This update for tcpdump fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2018:2984-1
ReleasedWed Dec 19 11:32:39 2018
SummarySecurity update for perl
Typesecurity
Severitymoderate
References1114674,1114675,1114681,1114686,CVE-2018-18311,CVE-2018-18312,CVE-2018-18313,CVE-2018-18314
Description:

This update for perl fixes the following issues:
Secuirty issues fixed:


Advisory IDSUSE-SU-2018:2986-1
ReleasedWed Dec 19 13:53:22 2018
SummarySecurity update for libnettle
Typesecurity
Severitymoderate
References1118086,CVE-2018-16869
Description:

This update for libnettle fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2018:3044-1
ReleasedFri Dec 21 18:47:21 2018
SummarySecurity update for MozillaFirefox, mozilla-nspr and mozilla-nss
Typesecurity
Severityimportant
References1097410,1106873,1119069,1119105,CVE-2018-0495,CVE-2018-12384,CVE-2018-12404,CVE-2018-12405,CVE-2018-17466,CVE-2018-18492,CVE-2018-18493,CVE-2018-18494,CVE-2018-18498
Description:

This update for MozillaFirefox, mozilla-nss and mozilla-nspr fixes the following issues:
Issues fixed in MozillaFirefox:


Issues fixed in mozilla-nss:

Issues fixed in mozilla-nspr:


Advisory IDSUSE-SU-2018:3064-1
ReleasedFri Dec 28 18:39:08 2018
SummarySecurity update for containerd, docker and go
Typesecurity
Severityimportant
References1047218,1074971,1080978,1081495,1084533,1086185,1094680,1095817,1098017,1102522,1104821,1105000,1108038,1113313,1113978,1114209,1118897,1118898,1118899,1119634,1119706,CVE-2018-16873,CVE-2018-16874,CVE-2018-16875,CVE-2018-7187
Description:


This update for containerd, docker and go fixes the following issues:
containerd and docker:


go:
Additionally, the package go1.10 has been added.


Advisory IDSUSE-SU-2019:23-1
ReleasedMon Jan 7 16:30:33 2019
SummarySecurity update for gpg2
Typesecurity
Severitymoderate
References1120346,CVE-2018-1000858
Description:

This update for gpg2 fixes the following issue:
Security issue fixed:


Advisory IDSUSE-RU-2019:32-1
ReleasedTue Jan 8 13:03:20 2019
SummaryRecommended update for librdkafka
Typerecommended
Severitymoderate
References1119963
Description:


This update ships librdkafka 0.11.6 to SUSE Linux Enterprise Server 15.
librdkafka is a C library implementation of the Apache Kafka protocol, containing both Producer and Consumer support.


Advisory IDSUSE-RU-2019:44-1
ReleasedTue Jan 8 13:07:32 2019
SummaryRecommended update for acl
Typerecommended
Severitylow
References953659
Description:

This update for acl fixes the following issues:


Advisory IDSUSE-RU-2019:62-1
ReleasedThu Jan 10 20:30:58 2019
SummaryRecommended update for xfsprogs
Typerecommended
Severitymoderate
References1119063
Description:

This update for xfsprogs fixes the following issues:


Advisory IDSUSE-RU-2019:82-1
ReleasedFri Jan 11 17:16:48 2019
SummaryRecommended update for suse-build-key
Typerecommended
Severitymoderate
References1044232
Description:

This update for suse-build-key fixes the following issues:


Advisory IDSUSE-RU-2019:91-1
ReleasedTue Jan 15 14:14:43 2019
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1090767,1121045,1121207
Description:

This update for mozilla-nss fixes the following issues:


Advisory IDSUSE-SU-2019:93-1
ReleasedTue Jan 15 14:48:33 2019
SummarySecurity update for wget
Typesecurity
Severityimportant
References1120382,CVE-2018-20483
Description:

This update for wget fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:102-1
ReleasedTue Jan 15 18:02:58 2019
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1120402
Description:

This update for timezone fixes the following issues:


Advisory IDSUSE-RU-2019:104-1
ReleasedTue Jan 15 18:03:13 2019
SummaryRecommended update for chrony
Typerecommended
Severitymoderate
References1117147
Description:

This update for chrony fixes the following issues:


Advisory IDSUSE-SU-2019:137-1
ReleasedMon Jan 21 15:52:45 2019
SummarySecurity update for systemd
Typesecurity
Severityimportant
References1005023,1045723,1076696,1080919,1093753,1101591,1111498,1114933,1117063,1119971,1120323,CVE-2018-16864,CVE-2018-16865,CVE-2018-16866,CVE-2018-6954
Description:

This update for systemd provides the following fixes:
Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-RU-2019:170-1
ReleasedFri Jan 25 13:43:29 2019
SummaryRecommended update for kmod
Typerecommended
Severitymoderate
References1118629
Description:

This update for kmod fixes the following issues:


Advisory IDSUSE-SU-2019:215-1
ReleasedThu Jan 31 15:59:57 2019
SummarySecurity update for python3
Typesecurity
Severityimportant
References1120644,1122191,CVE-2018-20406,CVE-2019-5010
Description:

This update for python3 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:247-1
ReleasedWed Feb 6 07:18:45 2019
SummarySecurity update for lua53
Typesecurity
Severitymoderate
References1123043,CVE-2019-6706
Description:

This update for lua53 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:273-1
ReleasedWed Feb 6 16:48:18 2019
SummarySecurity update for MozillaFirefox
Typesecurity
Severityimportant
References1119069,1120374,1122983,CVE-2018-12404,CVE-2018-18500,CVE-2018-18501,CVE-2018-18505
Description:

This update for MozillaFirefox, mozilla-nss fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:286-1
ReleasedThu Feb 7 13:45:27 2019
SummarySecurity update for docker
Typesecurity
Severitymoderate
References1001161,1112980,1115464,1118897,1118898,1118899,1118990,1121412,CVE-2018-16873,CVE-2018-16874,CVE-2018-16875
Description:

This update for containerd, docker, docker-runc and golang-github-docker-libnetwork fixes the following issues:
Security issues fixed for containerd, docker, docker-runc and golang-github-docker-libnetwork:


Non-security issues fixed for docker:


Advisory IDSUSE-RU-2019:369-1
ReleasedWed Feb 13 14:01:42 2019
SummaryRecommended update for itstool
Typerecommended
Severitymoderate
References1065270,1111019
Description:

This update for itstool and python-libxml2-python fixes the following issues:
Package: itstool - Updated version to support Python3. (bnc#1111019)
Package: python-libxml2-python - Fix segfault when parsing invalid data. (bsc#1065270)


Advisory IDSUSE-SU-2019:426-1
ReleasedMon Feb 18 17:46:55 2019
SummarySecurity update for systemd
Typesecurity
Severityimportant
References1117025,1121563,1122000,1123333,1123727,1123892,1124153,1125352,CVE-2019-6454
Description:

This update for systemd fixes the following issues:



Advisory IDSUSE-SU-2019:480-1
ReleasedMon Feb 25 11:55:21 2019
SummarySecurity update for supportutils
Typesecurity
Severityimportant
References1043311,1046681,1051797,1071545,1105849,1112461,1115245,1117776,1118460,1118462,1118463,1125609,1125666,CVE-2018-19637,CVE-2018-19638,CVE-2018-19639,CVE-2018-19640
Description:

This update for supportutils fixes the following issues:
Security issues fixed:


Other issues fixed:


Advisory IDSUSE-SU-2019:495-1
ReleasedTue Feb 26 16:42:35 2019
SummarySecurity update for containerd, docker, docker-runc, golang-github-docker-libnetwork, runc
Typesecurity
Severityimportant
References1048046,1051429,1114832,1118897,1118898,1118899,1121967,1124308,CVE-2018-16873,CVE-2018-16874,CVE-2018-16875,CVE-2019-5736
Description:

This update for containerd, docker, docker-runc, golang-github-docker-libnetwork, runc fixes the following issues:
Security issues fixed:


Other changes and fixes:


Advisory IDSUSE-RU-2019:565-1
ReleasedThu Mar 7 17:46:16 2019
SummaryRecommended update for supportutils
Typerecommended
Severitymoderate
References1094225,1109664,1120049,1121043,1127063,1127069
Description:

This update for supportutils fixes the following issues:


Advisory IDSUSE-RU-2019:570-1
ReleasedThu Mar 7 17:50:46 2019
SummaryRecommended update for bind
Typerecommended
Severitymoderate
References1094236
Description:

This update for bind fixes the following issues:


Advisory IDSUSE-SU-2019:571-1
ReleasedThu Mar 7 18:13:46 2019
SummarySecurity update for file
Typesecurity
Severitymoderate
References1096974,1096984,1126117,1126118,1126119,CVE-2018-10360,CVE-2019-8905,CVE-2019-8906,CVE-2019-8907
Description:

This update for file fixes the following issues:
The following security vulnerabilities were addressed:


Advisory IDSUSE-RU-2019:608-1
ReleasedWed Mar 13 15:21:02 2019
SummaryRecommended update for cups
Typerecommended
Severitymoderate
References1118118
Description:

This update for cups fixes the following issues:


Advisory IDSUSE-RU-2019:641-1
ReleasedTue Mar 19 13:17:28 2019
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1112570,1114984,1114993
Description:

This update for glibc provides the following fixes:


Advisory IDSUSE-RU-2019:700-1
ReleasedThu Mar 21 19:54:00 2019
SummaryRecommended update for cyrus-sasl
Typerecommended
Severitymoderate
References1044840
Description:

This update for cyrus-sasl provides the following fix:


Advisory IDSUSE-RU-2019:713-1
ReleasedFri Mar 22 15:55:05 2019
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1063675,1126590
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2019:732-1
ReleasedMon Mar 25 14:10:04 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1088524,1118364,1128246
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-SU-2019:788-1
ReleasedThu Mar 28 11:55:06 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1119687,CVE-2018-20346
Description:

This update for sqlite3 to version 3.27.2 fixes the following issue:
Security issue fixed:


Release notes: https://www.sqlite.org/releaselog/3_27_2.html


Advisory IDSUSE-RU-2019:790-1
ReleasedThu Mar 28 12:06:17 2019
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1130557
Description:

This update for timezone fixes the following issues:
timezone was updated 2019a:


Advisory IDSUSE-RU-2019:791-1
ReleasedThu Mar 28 12:06:50 2019
SummarySecurity update for libnettle
Typerecommended
Severitymoderate
References1129598
Description:

This update for libnettle to version 3.4.1 fixes the following issues:
Issues addressed and new features:


Advisory IDSUSE-RU-2019:858-1
ReleasedWed Apr 3 15:50:37 2019
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1120689,1126096
Description:

This update for libtirpc fixes the following issues:


Advisory IDSUSE-SU-2019:903-1
ReleasedMon Apr 8 15:41:44 2019
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1100396,1122729,1130045,CVE-2016-10739
Description:

This update for glibc fixes the following issues:
Security issue fixed:


Other issue fixed:


Advisory IDSUSE-RU-2019:909-1
ReleasedTue Apr 9 08:04:44 2019
SummaryRecommended update for chrony
Typerecommended
Severitymoderate
References1129914
Description:

This update for chrony fixes the following issues:


Advisory IDSUSE-SU-2019:925-1
ReleasedWed Apr 10 16:32:50 2019
SummarySecurity update for wget
Typesecurity
Severityimportant
References1131493,CVE-2019-5953
Description:

This update for wget fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:926-1
ReleasedWed Apr 10 16:33:12 2019
SummarySecurity update for tar
Typesecurity
Severitymoderate
References1120610,1130496,CVE-2018-20482,CVE-2019-9923
Description:

This update for tar fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:971-1
ReleasedWed Apr 17 14:43:26 2019
SummarySecurity update for python3
Typesecurity
Severityimportant
References1129346,CVE-2019-9636
Description:

This update for python3 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1002-1
ReleasedWed Apr 24 10:13:34 2019
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1110304,1129576
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2019:1040-1
ReleasedThu Apr 25 17:09:21 2019
SummarySecurity update for samba
Typesecurity
Severityimportant
References1114407,1124223,1125410,1126377,1131060,1131686,CVE-2019-3880
Description:

This update for samba fixes the following issues:
Security issue fixed:



ldb was updated to version 1.2.4 (bsc#1125410 bsc#1131686):


Non-security issues fixed:


Advisory IDSUSE-SU-2019:1127-1
ReleasedThu May 2 09:39:24 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1130325,1130326,CVE-2019-9936,CVE-2019-9937
Description:

This update for sqlite3 to version 3.28.0 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:1156-1
ReleasedMon May 6 13:46:07 2019
SummarySecurity update for python-Jinja2
Typesecurity
Severityimportant
References1125815,1132174,1132323,CVE-2016-10745,CVE-2019-10906,CVE-2019-8341
Description:

This update for python-Jinja2 to version 2.10.1 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:1206-1
ReleasedFri May 10 14:01:55 2019
SummarySecurity update for bzip2
Typesecurity
Severitylow
References985657,CVE-2016-3189
Description:

This update for bzip2 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:1234-1
ReleasedTue May 14 18:31:52 2019
SummarySecurity update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork
Typesecurity
Severityimportant
References1114209,1114832,1118897,1118898,1118899,1121397,1121967,1123013,1128376,1128746,1134068,CVE-2018-16873,CVE-2018-16874,CVE-2018-16875,CVE-2019-5736,CVE-2019-6486
Description:

This update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork fixes the following issues:
Security issues fixed:


Other changes and bug fixes:


Advisory IDSUSE-RU-2019:1312-1
ReleasedWed May 22 12:19:12 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1096191
Description:

This update for aaa_base fixes the following issue:
* Shell detection in /etc/profile and /etc/bash.bashrc was broken within AppArmor-confined containers (bsc#1096191)


Advisory IDSUSE-SU-2019:1352-1
ReleasedFri May 24 14:41:44 2019
SummarySecurity update for python3
Typesecurity
Severitymoderate
References1130840,1133452,CVE-2019-9947
Description:

This update for python3 to version 3.6.8 fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:1364-1
ReleasedTue May 28 10:51:38 2019
SummarySecurity update for systemd
Typesecurity
Severitymoderate
References1036463,1121563,1124122,1125352,1125604,1126056,1127557,1130230,1132348,1132400,1132721,1133506,1133509,CVE-2019-3842,CVE-2019-3843,CVE-2019-3844,CVE-2019-6454,SLE-5933
Description:

This update for systemd fixes the following issues:
Security issues fixed:


Non-security issued fixed:


Advisory IDSUSE-SU-2019:1368-1
ReleasedTue May 28 13:15:38 2019
SummaryRecommended update for sles12sp3-docker-image, sles12sp4-image, system-user-root
Typesecurity
Severityimportant
References1134524,CVE-2019-5021
Description:

This update for sles12sp3-docker-image, sles12sp4-image, system-user-root fixes the following issues:


Advisory IDSUSE-SU-2019:1372-1
ReleasedTue May 28 16:53:28 2019
SummarySecurity update for libtasn1
Typesecurity
Severitymoderate
References1105435,CVE-2018-1000654
Description:

This update for libtasn1 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1383-1
ReleasedThu May 30 08:11:26 2019
SummaryRecommended update for supportutils
Typerecommended
Severitymoderate
References1081326,1088234,1100529,1120967,1125623,1132865,1133844,1134599
Description:

This update for supportutils fixes the following issues:



Advisory IDSUSE-SU-2019:1398-1
ReleasedFri May 31 12:54:22 2019
SummarySecurity update for libpng16
Typesecurity
Severitylow
References1100687,1121624,1124211,CVE-2018-13785,CVE-2019-7317
Description:

This update for libpng16 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:1407-1
ReleasedMon Jun 3 13:33:51 2019
SummarySecurity update for bind
Typesecurity
Severityimportant
References1104129,1126068,1126069,1133185,CVE-2018-5740,CVE-2018-5743,CVE-2018-5745,CVE-2019-6465
Description:

This update for bind fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:1457-1
ReleasedTue Jun 11 10:09:14 2019
SummarySecurity update for vim
Typesecurity
Severityimportant
References1137443,CVE-2019-12735
Description:

This update for vim fixes the following issue:
Security issue fixed:


Advisory IDSUSE-RU-2019:1484-1
ReleasedThu Jun 13 07:46:46 2019
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1128383
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-SU-2019:1486-1
ReleasedThu Jun 13 09:40:24 2019
SummarySecurity update for elfutils
Typesecurity
Severitymoderate
References1033084,1033085,1033086,1033087,1033088,1033089,1033090,1106390,1107066,1107067,1111973,1112723,1112726,1123685,1125007,CVE-2017-7607,CVE-2017-7608,CVE-2017-7609,CVE-2017-7610,CVE-2017-7611,CVE-2017-7612,CVE-2017-7613,CVE-2018-16062,CVE-2018-16402,CVE-2018-16403,CVE-2018-18310,CVE-2018-18520,CVE-2018-18521,CVE-2019-7150,CVE-2019-7665
Description:

This update for elfutils fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:1487-1
ReleasedThu Jun 13 09:40:56 2019
SummarySecurity update for python-requests
Typesecurity
Severitymoderate
References1111622,CVE-2018-18074
Description:

This update for python-requests to version 2.20.1 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1492-1
ReleasedThu Jun 13 14:51:01 2019
SummaryRecommended update for libidn
Typerecommended
Severitylow
References1132869
Description:


This update for libidn fixes the following issue:


Advisory IDSUSE-SU-2019:1562-1
ReleasedWed Jun 19 09:16:07 2019
SummarySecurity update for docker
Typesecurity
Severitymoderate
References1096726,CVE-2018-15664
Description:

This update for docker fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:1595-1
ReleasedFri Jun 21 10:17:44 2019
SummarySecurity update for dbus-1
Typesecurity
Severityimportant
References1137832,CVE-2019-12749
Description:

This update for dbus-1 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1616-1
ReleasedFri Jun 21 11:04:39 2019
SummaryRecommended update for rpcbind
Typerecommended
Severitymoderate
References1134659
Description:

This update for rpcbind fixes the following issues:


Advisory IDSUSE-RU-2019:1627-1
ReleasedFri Jun 21 11:15:11 2019
SummaryRecommended update for xfsprogs
Typerecommended
Severitymoderate
References1073421,1122271,1129859
Description:

This update for xfsprogs fixes the following issues:


Advisory IDSUSE-RU-2019:1631-1
ReleasedFri Jun 21 11:17:21 2019
SummaryRecommended update for xz
Typerecommended
Severitylow
References1135709
Description:

This update for xz fixes the following issues:
Add SUSE-Public-Domain licence as some parts of xz utils (liblzma, xz, xzdec, lzmadec, documentation, translated messages, tests, debug, extra directory) are in public domain licence [bsc#1135709]


Advisory IDSUSE-RU-2019:1635-1
ReleasedFri Jun 21 12:45:53 2019
SummaryRecommended update for krb5
Typerecommended
Severitymoderate
References1134217
Description:

This update for krb5 provides the following fix:



Advisory IDSUSE-RU-2019:1700-1
ReleasedTue Jun 25 13:19:21 2019
SummarySecurity update for libssh
Typerecommended
Severitymoderate
References1134193
Description:

This update for libssh fixes the following issue:
Issue addressed:


Advisory IDSUSE-SU-2019:1804-1
ReleasedWed Jul 10 10:40:44 2019
SummarySecurity update for ruby-bundled-gems-rpmhelper, ruby2.5
Typesecurity
Severityimportant
References1082007,1082008,1082009,1082010,1082011,1082014,1082058,1087433,1087434,1087436,1087437,1087440,1087441,1112530,1112532,1130028,1130611,1130617,1130620,1130622,1130623,1130627,1133790,CVE-2017-17742,CVE-2018-1000073,CVE-2018-1000074,CVE-2018-1000075,CVE-2018-1000076,CVE-2018-1000077,CVE-2018-1000078,CVE-2018-1000079,CVE-2018-16395,CVE-2018-16396,CVE-2018-6914,CVE-2018-8777,CVE-2018-8778,CVE-2018-8779,CVE-2018-8780,CVE-2019-8320,CVE-2019-8321,CVE-2019-8322,CVE-2019-8323,CVE-2019-8324,CVE-2019-8325
Description:

This update for ruby2.5 and ruby-bundled-gems-rpmhelper fixes the following issues:
Changes in ruby2.5:
Update to 2.5.5 and 2.5.4:
https://www.ruby-lang.org/en/news/2019/03/15/ruby-2-5-5-released/ https://www.ruby-lang.org/en/news/2019/03/13/ruby-2-5-4-released/
Security issues fixed:



Ruby 2.5 was updated to 2.5.3:
This release includes some bug fixes and some security fixes.
Security issues fixed:

Ruby 2.5 was updated to 2.5.1:
This release includes some bug fixes and some security fixes.
Security issues fixed:


- CVE-2018-1000079: Fixed path traversal issue during gem installation allows to write to arbitrary filesystem locations (bsc#1082058) - CVE-2018-1000075: Fixed infinite loop vulnerability due to negative size in tar header causes Denial of Service (bsc#1082014) - CVE-2018-1000078: Fixed XSS vulnerability in homepage attribute when displayed via gem server (bsc#1082011) - CVE-2018-1000077: Fixed that missing URL validation on spec home attribute allows malicious gem to set an invalid homepage URL (bsc#1082010) - CVE-2018-1000076: Fixed improper verification of signatures in tarball allows to install mis-signed gem (bsc#1082009) - CVE-2018-1000074: Fixed unsafe Object Deserialization Vulnerability in gem owner allowing arbitrary code execution on specially crafted YAML (bsc#1082008) - CVE-2018-1000073: Fixed path traversal when writing to a symlinked basedir outside of the root (bsc#1082007)
Other changes:


Changes in ruby-bundled-gems-rpmhelper:


Advisory IDSUSE-RU-2019:1808-1
ReleasedWed Jul 10 13:16:29 2019
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1133808
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2019:1815-1
ReleasedThu Jul 11 07:47:55 2019
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1140016
Description:

This update for timezone fixes the following issues:


Advisory IDSUSE-SU-2019:1835-1
ReleasedFri Jul 12 18:06:31 2019
SummarySecurity update for expat
Typesecurity
Severitymoderate
References1139937,CVE-2018-20843
Description:

This update for expat fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:1846-1
ReleasedMon Jul 15 11:36:33 2019
SummarySecurity update for bzip2
Typesecurity
Severityimportant
References1139083,CVE-2019-12900
Description:

This update for bzip2 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1853-1
ReleasedMon Jul 15 16:03:36 2019
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1107617,1137053
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2019:1869-1
ReleasedWed Jul 17 14:03:20 2019
SummarySecurity update for MozillaFirefox
Typesecurity
Severityimportant
References1140868,CVE-2019-11709,CVE-2019-11711,CVE-2019-11712,CVE-2019-11713,CVE-2019-11715,CVE-2019-11717,CVE-2019-11719,CVE-2019-11729,CVE-2019-11730,CVE-2019-9811
Description:

This update for MozillaFirefox, mozilla-nss fixes the following issues:
MozillaFirefox to version ESR 60.8:


mozilla-nss to version 3.44.1:


Advisory IDSUSE-SU-2019:1877-1
ReleasedThu Jul 18 11:31:46 2019
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1117993,1123710,1127223,1127308,1131330,CVE-2009-5155,CVE-2019-9169
Description:

This update for glibc fixes the following issues:
Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2019:1971-1
ReleasedThu Jul 25 14:58:52 2019
SummarySecurity update for libgcrypt
Typesecurity
Severitymoderate
References1138939,CVE-2019-12904
Description:

This update for libgcrypt fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1994-1
ReleasedFri Jul 26 16:12:05 2019
SummaryRecommended update for libxml2
Typerecommended
Severitymoderate
References1135123
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2019:2001-1
ReleasedFri Jul 26 18:09:41 2019
SummaryRecommended update for docker
Typerecommended
Severityimportant
References1138920
Description:

This update for docker fixes the following issues:


Advisory IDSUSE-SU-2019:2004-1
ReleasedMon Jul 29 13:01:59 2019
SummarySecurity update for bzip2
Typesecurity
Severityimportant
References1139083,CVE-2019-12900
Description:

This update for bzip2 fixes the following issues:


Advisory IDSUSE-RU-2019:2005-1
ReleasedMon Jul 29 13:02:15 2019
SummaryRecommended update for cloud-init
Typerecommended
Severitymoderate
References1116767,1119397,1121878,1123694,1125950,1125992,1126101,1132692,1136440
Description:

This update for cloud-init fixes the following issues:


Some more fixes were included within the 19.1 update of cloud-init. Please refer to the package changelog for more details.


Advisory IDSUSE-SU-2019:2006-1
ReleasedMon Jul 29 13:02:49 2019
SummarySecurity update for gpg2
Typesecurity
Severityimportant
References1124847,1141093,CVE-2019-13050
Description:

This update for gpg2 fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:2050-1
ReleasedTue Aug 6 09:42:37 2019
SummarySecurity update for python3
Typesecurity
Severityimportant
References1094814,1138459,1141853,CVE-2018-20852,CVE-2019-10160
Description:

This update for python3 fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:2087-1
ReleasedWed Aug 7 18:16:48 2019
SummarySecurity update for tcpdump
Typesecurity
Severitymoderate
References1068716,1142439,CVE-2017-16808,CVE-2019-1010220
Description:

This update for tcpdump fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:2097-1
ReleasedFri Aug 9 09:31:17 2019
SummaryRecommended update for libgcrypt
Typerecommended
Severityimportant
References1097073
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-SU-2019:2117-1
ReleasedTue Aug 13 14:56:55 2019
SummarySecurity update for containerd, docker, docker-runc, golang-github-docker-libnetwork
Typesecurity
Severityimportant
References1100331,1121967,1138920,1139649,1142160,1142413,1143409,CVE-2018-10892,CVE-2019-13509,CVE-2019-14271,CVE-2019-5736
Description:

This update for containerd, docker, docker-runc, golang-github-docker-libnetwork fixes the following issues:
Docker:


runc:

containerd:

golang-github-docker-libnetwork:


Advisory IDSUSE-RU-2019:2134-1
ReleasedWed Aug 14 11:54:56 2019
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1136717,1137624,1141059,SLE-5807
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-RU-2019:2142-1
ReleasedWed Aug 14 18:14:04 2019
SummaryRecommended update for mozilla-nspr, mozilla-nss
Typerecommended
Severitymoderate
References1141322
Description:


This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to NSS 3.45 (bsc#1141322) :


mozilla-nspr was updated to version 4.21


Advisory IDSUSE-RU-2019:2188-1
ReleasedWed Aug 21 10:10:29 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1140647
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-RU-2019:2197-1
ReleasedThu Aug 22 14:35:12 2019
SummaryRecommended update for shim
Typerecommended
Severitymoderate
References1145676,1145802
Description:

This update for shim fixes the following issues:


Advisory IDSUSE-RU-2019:2218-1
ReleasedMon Aug 26 11:29:57 2019
SummaryRecommended update for pinentry
Typerecommended
Severitymoderate
References1141883
Description:

This update for pinentry fixes the following issues:


Advisory IDSUSE-RU-2019:2306-1
ReleasedThu Sep 5 14:39:23 2019
SummaryRecommended update for parted
Typerecommended
Severitymoderate
References1082318,1136245
Description:

This update for parted fixes the following issues:


Advisory IDSUSE-SU-2019:2307-1
ReleasedThu Sep 5 14:45:08 2019
SummarySecurity update for util-linux and shadow
Typesecurity
Severitymoderate
References1081947,1082293,1085196,1106214,1121197,1122417,1125886,1127701,1135534,1135708,1141113,353876
Description:

This update for util-linux and shadow fixes the following issues:
util-linux:


shadow:


Advisory IDSUSE-SU-2019:2332-1
ReleasedMon Sep 9 10:17:16 2019
SummarySecurity update for python-urllib3
Typesecurity
Severitymoderate
References1129071,1132663,1132900,CVE-2019-11236,CVE-2019-11324,CVE-2019-9740
Description:

This update for python-urllib3 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:2357-1
ReleasedWed Sep 11 13:26:14 2019
SummaryRecommended update for lmdb
Typerecommended
Severitymoderate
References1136132
Description:

This update for lmdb fixes the following issues:


Advisory IDSUSE-RU-2019:2361-1
ReleasedThu Sep 12 07:54:54 2019
SummaryRecommended update for krb5
Typerecommended
Severitymoderate
References1081947,1144047
Description:

This update for krb5 contains the following fixes:


Advisory IDSUSE-RU-2019:2422-1
ReleasedFri Sep 20 16:36:43 2019
SummaryRecommended update for python-urllib3
Typerecommended
Severitymoderate
References1150895
Description:

This update for python-urllib3 fixes the following issues:


Advisory IDSUSE-RU-2019:2423-1
ReleasedFri Sep 20 16:41:45 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1146866,SLE-9132
Description:

This update for aaa_base fixes the following issues:
Added sysctl.d/51-network.conf to tighten network security (bsc#1146866) (jira#SLE-9132)
Following settings have been tightened (and set to 0):


Advisory IDSUSE-SU-2019:2429-1
ReleasedMon Sep 23 09:28:40 2019
SummarySecurity update for expat
Typesecurity
Severitymoderate
References1149429,CVE-2019-15903
Description:

This update for expat fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:2494-1
ReleasedMon Sep 30 16:22:20 2019
SummaryRecommended update for cloud-init
Typerecommended
Severityimportant
References1141969,1144363,1144881
Description:

This update for cloud-init provides the following fixes:


Advisory IDSUSE-SU-2019:2517-1
ReleasedWed Oct 2 10:49:20 2019
SummarySecurity update for libseccomp
Typesecurity
Severitymoderate
References1082318,1128828,1142614,CVE-2019-9893
Description:

This update for libseccomp fixes the following issues:
Security issues fixed:


libseccomp was updated to new upstream release 2.4.1:

libseccomp was updated to 2.4.0 (bsc#1128828 CVE-2019-9893):

libseccomp was updated to release 2.3.3:


Advisory IDSUSE-SU-2019:2533-1
ReleasedThu Oct 3 15:02:50 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1150137,CVE-2019-16168
Description:

This update for sqlite3 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:2550-1
ReleasedFri Oct 4 13:17:15 2019
SummarySecurity update for bind
Typesecurity
Severityimportant
References1118367,1118368,1138687,CVE-2019-6471
Description:

This update for bind fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:2656-1
ReleasedMon Oct 14 17:02:24 2019
SummarySecurity update for sudo
Typesecurity
Severityimportant
References1153674,CVE-2019-14287
Description:

This update for sudo fixes the following issue:


Advisory IDSUSE-SU-2019:2657-1
ReleasedMon Oct 14 17:04:07 2019
SummarySecurity update for dhcp
Typesecurity
Severitymoderate
References1089524,1134078,1136572,CVE-2019-6470
Description:

This update for dhcp fixes the following issues:
Secuirty issue fixed:


Bug fixes:


Advisory IDSUSE-SU-2019:2673-1
ReleasedTue Oct 15 16:53:08 2019
SummarySecurity update for libpcap
Typesecurity
Severityimportant
References1153332,CVE-2018-16301,CVE-2019-15165
Description:

This update for libpcap fixes the following issues:


Advisory IDSUSE-SU-2019:2674-1
ReleasedTue Oct 15 16:53:28 2019
SummarySecurity update for tcpdump
Typesecurity
Severityimportant
References1068716,1153098,1153332,CVE-2017-16808,CVE-2018-10103,CVE-2018-10105,CVE-2018-14461,CVE-2018-14462,CVE-2018-14463,CVE-2018-14464,CVE-2018-14465,CVE-2018-14466,CVE-2018-14467,CVE-2018-14468,CVE-2018-14469,CVE-2018-14470,CVE-2018-14879,CVE-2018-14880,CVE-2018-14881,CVE-2018-14882,CVE-2018-16227,CVE-2018-16228,CVE-2018-16229,CVE-2018-16230,CVE-2018-16300,CVE-2018-16301,CVE-2018-16451,CVE-2018-16452,CVE-2019-1010220,CVE-2019-15166,CVE-2019-15167
Description:

This update for tcpdump fixes the following issues:


Advisory IDSUSE-RU-2019:2676-1
ReleasedTue Oct 15 21:06:54 2019
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1145716,1152101,CVE-2019-5094
Description:

This update for e2fsprogs fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2019:2681-1
ReleasedTue Oct 15 22:01:40 2019
SummaryRecommended update for libdb-4_8
Typerecommended
Severitymoderate
References1148244
Description:

This update for libdb-4_8 fixes the following issues:


Advisory IDSUSE-RU-2019:2693-1
ReleasedWed Oct 16 16:43:30 2019
SummaryRecommended update for rpcbind
Typerecommended
Severitymoderate
References1142343
Description:

This update for rpcbind fixes the following issues:


Advisory IDSUSE-RU-2019:2722-1
ReleasedMon Oct 21 11:14:20 2019
SummaryRecommended update for pciutils-ids
Typerecommended
Severitymoderate
References1127840,1133581
Description:

This is a version update for pciutils-ids to version 20190830 (bsc#1133581, bsc#1127840)


Advisory IDSUSE-SU-2019:2730-1
ReleasedMon Oct 21 16:04:57 2019
SummarySecurity update for procps
Typesecurity
Severityimportant
References1092100,1121753,CVE-2018-1122,CVE-2018-1123,CVE-2018-1124,CVE-2018-1125,CVE-2018-1126
Description:

This update for procps fixes the following issues:
procps was updated to 3.3.15. (bsc#1092100)
Following security issues were fixed:



Also this non-security issue was fixed:

The update to 3.3.15 contains the following fixes:


Advisory IDSUSE-SU-2019:2757-1
ReleasedWed Oct 23 17:21:17 2019
SummarySecurity update for lz4
Typesecurity
Severitymoderate
References1153936,CVE-2019-17543
Description:

This update for lz4 fixes the following issues:


Advisory IDSUSE-RU-2019:2762-1
ReleasedThu Oct 24 07:08:44 2019
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1150451
Description:

This update for timezone fixes the following issues:


Advisory IDSUSE-RU-2019:2777-1
ReleasedThu Oct 24 16:13:20 2019
SummaryRecommended update for fipscheck
Typerecommended
Severitymoderate
References1149792
Description:

This update for fipscheck fixes the following issues:


Advisory IDSUSE-SU-2019:2782-1
ReleasedFri Oct 25 14:27:52 2019
SummarySecurity update for nfs-utils
Typesecurity
Severitymoderate
References1150733,CVE-2019-3689
Description:

This update for nfs-utils fixes the following issues:


Advisory IDSUSE-SU-2019:2802-1
ReleasedTue Oct 29 11:39:05 2019
SummarySecurity update for python3
Typesecurity
Severitymoderate
References1149121,1149792,1149955,1151490,1153238,CVE-2019-16056,CVE-2019-16935,PM-1350,SLE-9426
Description:

This update for python3 to 3.6.9 fixes the following issues:
Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2019:2810-1
ReleasedTue Oct 29 14:56:44 2019
SummarySecurity update for runc
Typesecurity
Severitymoderate
References1131314,1131553,1152308,CVE-2019-16884
Description:

This update for runc fixes the following issues:
Security issue fixed:


Non-security issues fixed:


Advisory IDSUSE-RU-2019:2812-1
ReleasedTue Oct 29 14:57:55 2019
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1139459,1140631,1145023,1150595,SLE-7687
Description:

This update for systemd provides the following fixes:


Advisory IDSUSE-RU-2019:2870-1
ReleasedThu Oct 31 08:09:14 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1051143,1138869,1151023
Description:

This update for aaa_base provides the following fixes:


Advisory IDSUSE-SU-2019:2891-1
ReleasedMon Nov 4 17:47:10 2019
SummarySecurity update for python-ecdsa
Typesecurity
Severitymoderate
References1153165,1154217,CVE-2019-14853,CVE-2019-14859
Description:

This update for python-ecdsa to version 0.13.3 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:2418-1
ReleasedThu Nov 14 11:53:03 2019
SummaryRecommended update for bash
Typerecommended
Severitymoderate
References1133773,1143055
Description:

This update for bash fixes the following issues:


Advisory IDSUSE-RU-2019:2992-1
ReleasedMon Nov 18 11:52:10 2019
SummaryRecommended update for supportutils
Typerecommended
Severitymoderate
References1111029,1127734,1137336
Description:

This update for supportutils fixes the following issues:


Advisory IDSUSE-SU-2019:2997-1
ReleasedMon Nov 18 15:16:38 2019
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1103320,1154036,1154037,CVE-2019-17594,CVE-2019-17595
Description:

This update for ncurses fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:3030-1
ReleasedThu Nov 21 19:11:25 2019
SummarySecurity update for cups
Typesecurity
Severityimportant
References1146358,1146359,CVE-2019-8675,CVE-2019-8696
Description:

This update for cups fixes the following issues:


Advisory IDSUSE-SU-2019:3059-1
ReleasedMon Nov 25 17:33:07 2019
SummarySecurity update for cpio
Typesecurity
Severitymoderate
References1155199,CVE-2019-14866
Description:

This update for cpio fixes the following issues:


Advisory IDSUSE-SU-2019:3061-1
ReleasedMon Nov 25 17:34:22 2019
SummarySecurity update for gcc9
Typesecurity
Severitymoderate
References1114592,1135254,1141897,1142649,1142654,1148517,1149145,CVE-2019-14250,CVE-2019-15847,SLE-6533,SLE-6536
Description:



This update includes the GNU Compiler Collection 9.
A full changelog is provided by the GCC team on:
https://www.gnu.org/software/gcc/gcc-9/changes.html

The base system compiler libraries libgcc_s1, libstdc++6 and others are now built by the gcc 9 packages.
To use it, install 'gcc9' or 'gcc9-c++' or other compiler brands and use CC=gcc-9 / CXX=g++-9 during configuration for using it.

Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-RU-2019:3070-1
ReleasedTue Nov 26 12:39:29 2019
SummaryRecommended update for gpg2
Typerecommended
Severitylow
References1152755
Description:

This update for gpg2 provides the following fix:


Advisory IDSUSE-SU-2019:3086-1
ReleasedThu Nov 28 10:02:24 2019
SummarySecurity update for libidn2
Typesecurity
Severitymoderate
References1154884,1154887,CVE-2019-12290,CVE-2019-18224
Description:

This update for libidn2 to version 2.2.0 fixes the following issues:


Advisory IDSUSE-SU-2019:3087-1
ReleasedThu Nov 28 10:03:00 2019
SummarySecurity update for libxml2
Typesecurity
Severitylow
References1123919
Description:

This update for libxml2 doesn't fix any additional security issues, but correct its rpm changelog to reflect all CVEs that have been fixed over the past.


Advisory IDSUSE-SU-2019:3096-1
ReleasedThu Nov 28 16:48:21 2019
SummarySecurity update for cloud-init
Typesecurity
Severitymoderate
References1099358,1129124,1136440,1142988,1144363,1151488,1154092,CVE-2019-0816
Description:

This update for cloud-init to version 19.2 fixes the following issues:
Security issue fixed:


Non-security issues fixed:


Advisory IDSUSE-RU-2019:3118-1
ReleasedFri Nov 29 14:41:35 2019
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1154295
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-RU-2019:3166-1
ReleasedWed Dec 4 11:24:42 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1007715,1084934,1157278
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-RU-2019:3173-1
ReleasedWed Dec 4 20:22:45 2019
SummaryRecommended update for growpart, growpart-rootgrow
Typerecommended
Severitymoderate
References1154357,ECO-550
Description:

This update for growpart, growpart-rootgrow contains the following fixes:
growpart:


growpart-rootgrow:


Advisory IDSUSE-RU-2019:3240-1
ReleasedTue Dec 10 10:40:19 2019
SummaryRecommended update for ca-certificates-mozilla, p11-kit
Typerecommended
Severitymoderate
References1154871
Description:

This update for ca-certificates-mozilla, p11-kit fixes the following issues:
Changes in ca-certificates-mozilla:


Changes in p11-kit:


Advisory IDSUSE-SU-2019:3267-1
ReleasedWed Dec 11 11:19:53 2019
SummarySecurity update for libssh
Typesecurity
Severityimportant
References1158095,CVE-2019-14889
Description:

This update for libssh fixes the following issues:


Advisory IDSUSE-SU-2019:3392-1
ReleasedFri Dec 27 13:33:29 2019
SummarySecurity update for libgcrypt
Typesecurity
Severitymoderate
References1148987,1155338,1155339,CVE-2019-13627
Description:

This update for libgcrypt fixes the following issues:
Security issues fixed:


Bug fixes:


Advisory IDSUSE-SU-2019:3395-1
ReleasedMon Dec 30 14:05:06 2019
SummarySecurity update for mozilla-nspr, mozilla-nss
Typesecurity
Severitymoderate
References1141322,1158527,1159819,CVE-2018-18508,CVE-2019-11745,CVE-2019-17006
Description:

This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to NSS 3.47.1:
Security issues fixed:


mozilla-nspr was updated to version 4.23:


Advisory IDSUSE-RU-2020:9-1
ReleasedThu Jan 2 12:33:47 2020
SummaryRecommended update for xfsprogs
Typerecommended
Severitymoderate
References1157438
Description:

This update for xfsprogs fixes the following issues:


Advisory IDSUSE-SU-2020:35-1
ReleasedWed Jan 8 09:06:32 2020
SummarySecurity update for containerd, docker, docker-runc, golang-github-docker-libnetwork
Typesecurity
Severitymoderate
References1122469,1143349,1150397,1152308,1153367,1158590,CVE-2019-16884
Description:

This update for containerd, docker, docker-runc, golang-github-docker-libnetwork fixes the following issues:
Security issue fixed:


Bug fixes:


Advisory IDSUSE-SU-2020:114-1
ReleasedThu Jan 16 10:11:52 2020
SummarySecurity update for python3
Typesecurity
Severityimportant
References1027282,1029377,1029902,1040164,1042670,1070853,1079761,1081750,1083507,1086001,1088004,1088009,1088573,1094814,1107030,1109663,1109847,1120644,1122191,1129346,1130840,1133452,1137942,1138459,1141853,1149121,1149792,1149955,1151490,1153238,1159035,1159622,637176,658604,673071,709442,743787,747125,751718,754447,754677,787526,809831,831629,834601,871152,885662,885882,917607,942751,951166,983582,984751,985177,985348,989523,CVE-2011-3389,CVE-2011-4944,CVE-2012-0845,CVE-2012-1150,CVE-2013-1752,CVE-2013-4238,CVE-2014-2667,CVE-2014-4650,CVE-2016-0772,CVE-2016-1000110,CVE-2016-5636,CVE-2016-5699,CVE-2017-18207,CVE-2018-1000802,CVE-2018-1060,CVE-2018-1061,CVE-2018-14647,CVE-2018-20406,CVE-2018-20852,CVE-2019-10160,CVE-2019-15903,CVE-2019-16056,CVE-2019-16935,CVE-2019-5010,CVE-2019-9636,CVE-2019-9947
Description:

This update for python3 to version 3.6.10 fixes the following issues:


Advisory IDSUSE-RU-2020:119-1
ReleasedThu Jan 16 15:42:39 2020
SummaryRecommended update for python-jsonpatch
Typerecommended
Severitymoderate
References1160978
Description:

This update for python-jsonpatch fixes the following issues:


Advisory IDSUSE-SU-2020:129-1
ReleasedMon Jan 20 09:21:13 2020
SummarySecurity update for libssh
Typesecurity
Severityimportant
References1158095,CVE-2019-14889
Description:

This update for libssh fixes the following issues:


Advisory IDSUSE-RU-2020:225-1
ReleasedFri Jan 24 06:49:07 2020
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1158830
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2020:245-1
ReleasedTue Jan 28 09:42:30 2020
SummaryRecommended update for cloud-init
Typerecommended
Severitymoderate
References1155376,1156139,1157894,1161132,1161133
Description:

This update for cloud-init fixes the following issues:


Advisory IDSUSE-RU-2020:256-1
ReleasedWed Jan 29 09:39:17 2020
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1157794,1160970
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-SU-2020:262-1
ReleasedThu Jan 30 11:02:42 2020
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1149332,1151582,1157292,1157893,1158996,CVE-2019-19126
Description:

This update for glibc fixes the following issues:
Security issue fixed:


Bug fixes:


Advisory IDSUSE-SU-2020:265-1
ReleasedThu Jan 30 14:05:34 2020
SummarySecurity update for e2fsprogs
Typesecurity
Severitymoderate
References1160571,CVE-2019-5188
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-RU-2020:279-1
ReleasedFri Jan 31 12:01:39 2020
SummaryRecommended update for p11-kit
Typerecommended
Severitymoderate
References1013125
Description:

This update for p11-kit fixes the following issues:


Advisory IDSUSE-RU-2020:325-1
ReleasedWed Feb 5 14:57:02 2020
SummaryRecommended update for dmidecode
Typerecommended
Severitymoderate
References1153533,1158833
Description:

This update for dmidecode fixes the following issues:


Advisory IDSUSE-SU-2020:335-1
ReleasedThu Feb 6 11:37:24 2020
SummarySecurity update for systemd
Typesecurity
Severityimportant
References1084671,1092920,1106383,1133495,1151377,1154256,1155207,1155574,1156213,1156482,1158485,1159814,1161436,1162108,CVE-2019-20386,CVE-2020-1712
Description:

This update for systemd fixes the following issues:









Advisory IDSUSE-RU-2020:365-1
ReleasedFri Feb 7 13:48:54 2020
SummaryRecommended update for lmdb
Typerecommended
Severitymoderate
References1159086
Description:

This update for lmdb fixes the following issues:


Advisory IDSUSE-SU-2020:408-1
ReleasedWed Feb 19 09:32:46 2020
SummarySecurity update for sudo
Typesecurity
Severityimportant
References1162202,1162675,CVE-2019-18634
Description:

This update for sudo fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2020:417-1
ReleasedWed Feb 19 11:40:02 2020
SummaryRecommended update for chrony
Typerecommended
Severitymoderate
References1159840
Description:

This update for chrony fixes the following issues:


Advisory IDSUSE-SU-2020:440-1
ReleasedMon Feb 24 15:31:42 2020
SummarySecurity update for python-azure-agent
Typesecurity
Severitymoderate
References1127838,CVE-2019-0804
Description:

This update for python-azure-agent fixes the following issues:
python-azure-agent was updated to version 2.2.45 (jsc#ECO-80)


From 2.2.44 update:

From 2.2.42 update:

From 2.2.41 update:

From 2.2.40 update:

From 2.2.38 update:
Security issue fixed:
From 2.2.37 update:


Advisory IDSUSE-RU-2020:451-1
ReleasedTue Feb 25 10:50:35 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1155337,1161215,1161216,1161218,1161219,1161220
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2020:462-1
ReleasedTue Feb 25 11:49:30 2020
SummaryRecommended update for xfsprogs
Typerecommended
Severitymoderate
References1158504,1158509,1158630,1158758
Description:

This update for xfsprogs fixes the following issues:


Advisory IDSUSE-SU-2020:467-1
ReleasedTue Feb 25 12:00:39 2020
SummarySecurity update for python3
Typesecurity
Severitymoderate
References1162224,1162367,1162423,1162825,CVE-2019-9674,CVE-2020-8492
Description:

This update for python3 fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2020:476-1
ReleasedTue Feb 25 14:23:14 2020
SummaryRecommended update for perl
Typerecommended
Severitymoderate
References1102840,1160039
Description:

This update for perl fixes the following issues:


Advisory IDSUSE-RU-2020:480-1
ReleasedTue Feb 25 17:38:22 2020
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1160735
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-RU-2020:498-1
ReleasedWed Feb 26 17:59:44 2020
SummaryRecommended update for aws-cli, python-boto3, python-botocore, python-s3transfer, python-aws-sam-translator, python-cfn-lint, python-nose2, python-parameterized
Typerecommended
Severitymoderate
References1122669,1136184,1146853,1146854,1159018
Description:



This update for aws-cli, python-aws-sam-translator, python-cfn-lint, python-nose2, python-parameterized, python-boto3, python-botocore, python-s3transfer fixes the following issues:
python-aws-sam-translator was updated to 1.11.0 (bsc#1159018, jsc#PM-1507):
Upgrade to 1.11.0:
* Add ReservedConcurrentExecutions to globals * Fix ElasticsearchHttpPostPolicy resource reference * Support using AWS::Region in Ref and Sub * Documentation and examples updates * Add VersionDescription property to Serverless::Function * Update ServerlessRepoReadWriteAccessPolicy * Add additional template validation
Upgrade to 1.10.0:
* Add GSIs to DynamoDBReadPolicy and DynamoDBCrudPolicy * Add DynamoDBReconfigurePolicy * Add CostExplorerReadOnlyPolicy and OrganizationsListAccountsPolicy * Add EKSDescribePolicy * Add SESBulkTemplatedCrudPolicy * Add FilterLogEventsPolicy * Add SSMParameterReadPolicy * Add SESEmailTemplateCrudPolicy * Add s3:PutObjectAcl to S3CrudPolicy * Add allow_credentials CORS option * Add support for AccessLogSetting and CanarySetting Serverless::Api properties * Add support for X-Ray in Serverless::Api * Add support for MinimumCompressionSize in Serverless::Api * Add Auth to Serverless::Api globals * Remove trailing slashes from APIGW permissions * Add SNS FilterPolicy and an example application * Add Enabled property to Serverless::Function event sources * Add support for PermissionsBoundary in Serverless::Function * Fix boto3 client initialization * Add PublicAccessBlockConfiguration property to S3 bucket resource * Make PAY_PER_REQUEST default mode for Serverless::SimpleTable * Add limited support for resolving intrinsics in Serverless::LayerVersion * SAM now uses Flake8 * Add example application for S3 Events written in Go * Updated several example applications
python-cfn-lint was added in version 0.21.4:



Update to version 0.21.4:
+ Features * Include more resource types in W3037 + CloudFormation Specifications * Add Resource Type `AWS::CDK::Metadata` + Fixes * Uncap requests dependency in setup.py * Check Join functions have lists in the correct sections * Pass a parameter value for AutoPublishAlias when doing a Transform * Show usage examples when displaying the help
Update to version 0.21.3
+ Fixes * Support dumping strings for datetime objects when doing a Transform
Update to version 0.21.2
+ CloudFormation Specifications * Update CloudFormation specs to 3.3.0 * Update instance types from pricing API as of 2019.05.23
Update to version 0.21.1
+ Features * Add `Info` logging capability and set the default logging to `NotSet` + Fixes * Only do rule logging (start/stop/time) when the rule is going to be called * Update rule E1019 to allow `Fn::Transform` inside a `Fn::Sub` * Update rule W2001 to not break when `Fn::Transform` inside a `Fn::Sub` * Update rule E2503 to allow conditions to be used and to not default to `network` load balancer when an object is used for the Load Balancer type
Update to version 0.21.0
+ Features * New rule E3038 to check if a Serverless resource includes the appropriate Transform * New rule E2531 to validate a Lambda's runtime against the deprecated dates * New rule W2531 to validate a Lambda's runtime against the EOL dates * Update rule E2541 to include updates to Code Pipeline capabilities * Update rule E2503 to include checking of values for load balancer attributes + CloudFormation Specifications * Update CloudFormation specs to 3.2.0 * Update instance types from pricing API as of 2019.05.20 + Fixes * Include setuptools in setup.py requires
Update to version 0.20.3
+ CloudFormation Specifications * Update instance types from pricing API as of 2019.05.16 + Fixes * Update E7001 to allow float/doubles for mapping values * Update W1020 to check pre-transformed Fn::Sub(s) to determine if a Sub is needed * Pin requests to be below or equal to 2.21.0 to prevent issues with botocore
Update to version 0.20.2
+ Features * Add support for List Parameter types + CloudFormation Specifications * Add allowed values for AWS::EC2 EIP, FlowLog, CustomerGateway, DHCPOptions, EC2Fleet * Create new property type for Security Group IDs or Names * Add new Lambda runtime environment for NodeJs 10.x * Move AWS::ServiceDiscovery::Service Health checks from Only One to Exclusive * Update Glue Crawler Role to take an ARN or a name * Remove PrimitiveType from MaintenanceWindowTarget Targets * Add Min/Max values for Load Balancer Ports to be between 1-65535 + Fixes * Include License file in the pypi package to help with downstream projects * Filter out dynamic references from rule E3031 and E3030 * Convert Python linting and Code Coverage from Python 3.6 to 3.7
Update to version 0.20.1
+ Fixes * Update rule E8003 to support more functions inside a Fn::Equals
Update to version 0.20.0
+ Features * Allow a rule's exception to be defined in a resource's metadata * Add rule configuration capabilities * Update rule E3012 to allow for non strict property checking * Add rule E8003 to test Fn::Equals structure and syntax * Add rule E8004 to test Fn::And structure and syntax * Add rule E8005 to test Fn::Not structure and syntax * Add rule E8006 to test Fn::Or structure and syntax * Include Path to error in the JSON output * Update documentation to describe how to install cfn-lint from brew + CloudFormation Specifications * Update CloudFormation specs to version 3.0.0 * Add new region ap-east-1 * Add list min/max and string min/max for CloudWatch Alarm Actions * Add allowed values for EC2::LaunchTemplate * Add allowed values for EC2::Host * Update allowed values for Amazon MQ to include 5.15.9 * Add AWS::Greengrass::ResourceDefinition to GreenGrass supported regions * Add AWS::EC2::VPCEndpointService to all regions * Update AWS::ECS::TaskDefinition ExecutionRoleArn to be a IAM Role ARN * Patch spec files for SSM MaintenanceWindow to look for Target and not Targets * Update ManagedPolicyArns list size to be 20 which is the hard limit. 10 is the soft limit. + Fixes * Fix rule E3033 to check the string size when the string is inside a list * Fix an issue in which AWS::NotificationARNs was not a list * Add AWS::EC2::Volume to rule W3010 * Fix an issue with W2001 where SAM translate would remove the Ref to a parameter causing this error to falsely trigger * Fix rule W3010 to not error when the availability zone is 'all'
Update to version 0.19.1
+ Fixes * Fix core Condition processing to support direct Condition in another Condition * Fix the W2030 to check numbers against string allowed values
Update to version 0.19.0
+ Features * Add NS and PTR Route53 record checking to rule E3020 * New rule E3050 to check if a Ref to IAM Role has a Role path of '/' * New rule E3037 to look for duplicates in a list that doesn't support duplicates * New rule I3037 to look for duplicates in a list when duplicates are allowed + CloudFormation Specifications * Add Min/Max values to AWS::ElasticLoadBalancingV2::TargetGroup HealthCheckTimeoutSeconds * Add Max JSON size to AWS::IAM::ManagedPolicy PolicyDocument * Add allowed values for AWS::EC2 SpotFleet, TransitGateway, NetworkAcl NetworkInterface, PlacementGroup, and Volume * Add Min/max values to AWS::Budgets::Budget.Notification Threshold * Update RDS Instance types by database engine and license definitions using the pricing API * Update AWS::CodeBuild::Project ServiceRole to support Role Name or ARN * Update AWS::ECS::Service Role to support Role Name or ARN + Fixes * Update E3025 to support the new structure of data in the RDS instance type json * Update E2540 to remove all nested conditions from the object * Update E3030 to not do strict type checking * Update E3020 to support conditions nested in the record sets * Update E3008 to better handle CloudFormation sub stacks with different GetAtt formats
Update to version 0.18.1
+ CloudFormation Specifications * Update CloudFormation Specs to 2.30.0 * Fix IAM Regex Path to support more character types * Update AWS::Batch::ComputeEnvironment.ComputeResources InstanceRole to reference an InstanceProfile or GetAtt the InstanceProfile Arn * Allow VPC IDs to Ref a Parameter of type String + Fixes * Fix E3502 to check the size of the property instead of the parent object
Update to version 0.18.0
+ Features * New rule E3032 to check the size of lists * New rule E3502 to check JSON Object Size using definitions in the spec file * New rule E3033 to test the minimum and maximum length of a string * New rule E3034 to validate the min and max of a number * Remove Ebs Iops check from E2504 and use rule E3034 instead * Remove rule E2509 and use rule E3033 instead * Remove rule E2508 as it replaced by E3032 and E3502 * Update rule E2503 to check that there are at least two 2 Subnets or SubnetMappings for ALBs * SAM requirement upped to minimal version of 1.10.0 + CloudFormation Specifications * Extend specs to include: > `ListMin` and `ListMax` for the minimum and maximum size of a list > `JsonMax` to check the max size of a JSON Object > `StringMin` and `StringMax` to check the minimum and maximum length of a String > `NumberMin` and `NumberMax` to check the minimum and maximum value of a Number, Float, Long * Update State and ExecutionRoleArn to be required on AWS::DLM::LifecyclePolicy * Add AllowedValues for PerformanceInsightsRetentionPeriod for AWS::RDS::Instance * Add AllowedValues for the AWS::GuardDuty Resources * Add AllowedValues for AWS::EC2 VPC and VPN Resources * Switch IAM Instance Profiles for certain resources to the type that only takes the name * Add regex pattern for IAM Instance Profile when a name (not Arn) is used * Add regex pattern for IAM Paths * Add Regex pattern for IAM Role Arn * Update OnlyOne spec to require require at least one of Subnets or SubnetMappings with ELB v2 + Fixes * Fix serverless transform to use DefinitionBody when Auth is in the API definition * Fix rule W2030 to not error when checking SSM or List Parameters
Update to version 0.17.1
+ Features * Update rule E2503 to make sure NLBs don't have a Security Group configured + CloudFormation Specifications * Add all the allowed values of the `AWS::Glue` Resources * Update OnlyOne check for `AWS::CloudWatch::Alarm` to only `MetricName` or `Metrics` * Update Exclusive check for `AWS::CloudWatch::Alarm` for properties mixed with `Metrics` and `Statistic` * Update CloudFormation specs to 2.29.0 * Fix type with MariaDB in the AllowedValues * Update pricing information for data available on 2018.3.29 + Fixes * Fix rule E1029 to not look for a sub is needed when looking for iot strings in policies * Fix rule E2541 to allow for ActionId Versions of length 1-9 and meets regex `[0-9A-Za-z_-]+` * Fix rule E2532 to allow for `Parameters` inside a `Pass` action * Fix an issue when getting the location of an error in which numbers are causing an attribute error
Update to version 0.17.0
+ Features * Add new rule E3026 to validate Redis cluster settings including AutomaticFailoverEnabled and NumCacheClusters. Status: Released * Add new rule W3037 to validate IAM resource policies. Status: Experimental * Add new parameter `-e/--include-experimental` to allow for new rules in that aren't ready to be fully released + CloudFormation Specifications * Update Spec files to 2.28.0 * Add all the allowed values of the AWS::Redshift::* Resources * Add all the allowed values of the AWS::Neptune::* Resources * Patch spec to make AWS::CloudFront::Distribution.LambdaFunctionAssociation.LambdaFunctionARN required * Patch spec to make AWS::DynamoDB::Table AttributeDefinitions required + Fixes * Remove extra blank lines when there is no errors in the output * Add exception to rule E1029 to have exceptions for EMR CloudWatchAlarmDefinition * Update rule E1029 to allow for literals in a Sub * Remove sub checks from rule E3031 as it won't match in all cases of an allowed pattern regex check * Correct typos for errors in rule W1001 * Switch from parsing a template as Yaml to Json when finding an escape character * Fix an issue with SAM related to transforming templates with Serverless Application and Lambda Layers * Fix an issue with rule E2541 when non strings were used for Stage Names
Update to version 0.16.0
+ Features * Add rule E3031 to look for regex patterns based on the patched spec file * Remove regex checks from rule E2509 * Add parameter `ignore-templates` to allow the ignoring of templates when doing bulk linting + CloudFormation Specifications * Update Spec files to 2.26.0 * Add all the allowed values of the AWS::DirectoryService::* Resources * Add all the allowed values of the AWS::DynamoDB::* Resources * Added AWS::Route53Resolver resources to the Spec Patches of ap-southeast-2 * Patch the spec file with regex patterns * Add all the allowed values of the AWS::DocDb::* Resources + Fixes * Update rule E2504 to have '20000' as the max value * Update rule E1016 to not allow ImportValue inside of Conditions * Update rule E2508 to check conditions when providing limit checks on managed policies * Convert unicode to strings when in Py 3.4/3.5 and updating specs * Convert from `awslabs` to `aws-cloudformation` organization * Remove suppression of logging that was removed from samtranslator >1.7.0 and incompatibility with samtranslator 1.10.0
Update to version 0.15.0
+ Features * Add scaffolding for arbitrary Match attributes, adding attributes for Type checks * Add rule E3024 to validate that ProvisionedThroughput is not specified with BillingMode PAY_PER_REQUEST + CloudFormation Specifications * Update Spec files to 2.24.0 * Update OnlyOne spec to have BlockDeviceMapping to include NoDevice with Ebs and VirtualName * Add all the allowed values of the AWS::CloudFront::* Resources * Add all the allowed values of the AWS::DAX::* Resources + Fixes * Update config parsing to use the builtin Yaml decoder * Add condition support for Inclusive E2521, Exclusive E2520, and AtLeastOne E2522 rules * Update rule E1029 to better check Resource strings inside IAM Policies * Improve the line/column information of a Match with array support
Update to version 0.14.1
+ CloudFormation Specifications * Update CloudFormation Specs to version 2.23.0 * Add allowed values for AWS::Config::* resources * Add allowed values for AWS::ServiceDiscovery::* resources * Fix allowed values for Apache MQ + Fixes * Update rule E3008 to not error when using a list from a custom resource * Support simple types in the CloudFormation spec * Add tests for the formatters
Update to version 0.14.0
+ Features * Add rule E3035 to check the values of DeletionPolicy * Add rule E3036 to check the values of UpdateReplacePolicy * Add rule E2014 to check that there are no REFs in the Parameter section * Update rule E2503 to support TLS on NLBs + CloudFormation Specifications * Update CloudFormation spec to version 2.22.0 * Add allowed values for AWS::Cognito::* resources + Fixes * Update rule E3002 to allow GetAtts to Custom Resources under a Condition
Update to version 0.13.2
+ Features * Introducing the cfn-lint logo! * Update SAM dependency version + Fixes * Fix CloudWatchAlarmComparisonOperator allowed values. * Fix typo resoruce_type_spec in several files * Better support for nested And, Or, and Not when processing Conditions
Update to version 0.13.1
+ CloudFormation Specifications * Add allowed values for AWS::CloudTrail::Trail resources * Patch spec to have AWS::CodePipeline::CustomActionType Version included + Fixes * Fix conditions logic to use AllowedValues when REFing a Parameter that has AllowedValues specified
Update to version 0.13.0
+ Features * New rule W1011 to check if a FindInMap is using the correct map name and keys * New rule W1001 to check if a Ref/GetAtt to a resource that exists when Conditions are used * Removed logic in E1011 and moved it to W1011 for validating keys * Add property relationships for AWS::ApplicationAutoScaling::ScalingPolicy into Inclusive, Exclusive, and AtLeastOne * Update rule E2505 to check the netmask bit * Include the ability to update the CloudFormation Specs using the Pricing API + CloudFormation Specifications * Update to version 2.21.0 * Add allowed values for AWS::Budgets::Budget * Add allowed values for AWS::CertificateManager resources * Add allowed values for AWS::CodePipeline resources * Add allowed values for AWS::CodeCommit resources * Add allowed values for EC2 InstanceTypes from pricing API * Add allowed values for RedShift InstanceTypes from pricing API * Add allowed values for MQ InstanceTypes from pricing API * Add allowed values for RDS InstanceTypes from pricing API + Fixes * Fixed README indentation issue with .pre-commit-config.yaml * Fixed rule E2541 to allow for multiple inputs/outputs in a CodeBuild task * Fixed rule E3020 to allow for a period or no period at the end of a ACM registration record * Update rule E3001 to support UpdateReplacePolicy * Fix a cli issue where `--template` wouldn't be used when a .cfnlintrc was in the same folder * Update rule E3002 and E1024 to support packaging of AWS::Lambda::LayerVersion content

Update to 0.9.1
* the prof plugin now uses cProfile instead of hotshot for profiling * skipped tests now include the user's reason in junit XML's message field * the prettyassert plugin mishandled multi-line function definitions * Using a plugin's CLI flag when the plugin is already enabled via config no longer errors * nose2.plugins.prettyassert, enabled with --pretty-assert * Cleanup code for EOLed python versions * Dropped support for distutils. * Result reporter respects failure status set by other plugins * JUnit XML plugin now includes the skip reason in its output
Upgrade to 0.8.0:

Update to 0.7.0:



aws-cli was updated to version 1.16.223:
For detailed changes see the changes entries:
https://github.com/aws/aws-cli/blob/1.16.223/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.189/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.182/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.176/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.103/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.94/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.84/CHANGELOG.rst
python-boto3 was updated to 1.9.213, python-botocore was updated to 1.9.188, and python-s3transfer was updated to 1.12.74, fixing lots of bugs and adding features (bsc#1146853, bsc#1146854)


Advisory IDSUSE-RU-2020:503-1
ReleasedWed Feb 26 19:29:07 2020
SummaryRecommended update for zypper-migration-plugin
Typerecommended
Severitymoderate
References1100137,1107238
Description:

This update for zypper-migration-plugin fixes the following issues:


Advisory IDSUSE-RU-2020:517-1
ReleasedThu Feb 27 14:39:01 2020
SummaryRecommended update for cifs-utils
Typerecommended
Severitymoderate
References1130528,1132087,1136031,1149164
Description:

This update for cifs-utils fixes the following issues:
Update cifs-utils 6.9; (bsc#1132087); (bsc#1136031).



Advisory IDSUSE-RU-2020:521-1
ReleasedThu Feb 27 18:08:56 2020
SummaryRecommended update for c-ares
Typerecommended
Severitymoderate
References1125306,1159006
Description:

This update for c-ares fixes the following issues:
c-ares version update to 1.15.0:



Advisory IDSUSE-RU-2020:525-1
ReleasedFri Feb 28 11:49:36 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1164562
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2020:566-1
ReleasedTue Mar 3 09:14:05 2020
SummaryRecommended update for supportutils
Typerecommended
Severityimportant
References1023308,1089877,1145233,1154482,1156837,1162357,1162539
Description:

This update for supportutils fixes the following issues:


Advisory IDSUSE-RU-2020:572-1
ReleasedTue Mar 3 13:25:41 2020
SummaryRecommended update for cyrus-sasl
Typerecommended
Severitymoderate
References1162518
Description:

This update for cyrus-sasl fixes the following issues:


Advisory IDSUSE-RU-2020:597-1
ReleasedThu Mar 5 15:24:09 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1164950
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2020:633-1
ReleasedTue Mar 10 16:23:08 2020
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1139939,1151023
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-RU-2020:655-1
ReleasedThu Mar 12 13:17:03 2020
SummaryRecommended update for growpart
Typerecommended
Severitymoderate
References1164736
Description:

This update for growpart fixes the following issues:


Advisory IDSUSE-SU-2020:668-1
ReleasedFri Mar 13 10:48:58 2020
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1163184,1164505,1165784,CVE-2020-10029
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2020:689-1
ReleasedFri Mar 13 17:09:01 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1166510
Description:


This update for PAM fixes the following issue:


Advisory IDSUSE-RU-2020:690-1
ReleasedFri Mar 13 17:09:28 2020
SummaryRecommended update for suse-build-key
Typerecommended
Severitymoderate
References1166334
Description:

This update for suse-build-key fixes the following issues:


Advisory IDSUSE-RU-2020:475-1
ReleasedThu Mar 19 11:00:46 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1160595
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2020:729-1
ReleasedThu Mar 19 14:44:22 2020
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1166106
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-SU-2020:737-1
ReleasedFri Mar 20 13:47:16 2020
SummaryRecommended update for ruby2.5
Typesecurity
Severityimportant
References1140844,1152990,1152992,1152994,1152995,1162396,1164804,CVE-2012-6708,CVE-2015-9251,CVE-2019-15845,CVE-2019-16201,CVE-2019-16254,CVE-2019-16255,CVE-2020-8130
Description:

This update for ruby2.5 toversion 2.5.7 fixes the following issues: ruby 2.5 was updated to version 2.5.7


Advisory IDSUSE-SU-2020:751-1
ReleasedMon Mar 23 16:32:44 2020
SummarySecurity update for cloud-init
Typesecurity
Severitymoderate
References1162936,1162937,1163178,CVE-2020-8631,CVE-2020-8632
Description:

This update for cloud-init fixes the following security issues:


Advisory IDSUSE-RU-2020:777-1
ReleasedTue Mar 24 18:07:52 2020
SummaryRecommended update for python3
Typerecommended
Severitymoderate
References1165894
Description:

This update for python3 fixes the following issue:


Advisory IDSUSE-RU-2020:793-1
ReleasedWed Mar 25 15:16:00 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1139459,1161262,1162108,1164717,1165579,CVE-2020-1712
Description:

This update for systemd fixes the following issues:



Added support for I/O scheduler selection with blk-mq (bsc#1165579, bsc#1164717).
Added the udev 60-ssd-scheduler.rules:


Advisory IDSUSE-SU-2020:820-1
ReleasedTue Mar 31 13:02:22 2020
SummarySecurity update for glibc
Typesecurity
Severityimportant
References1167631,CVE-2020-1752
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2020:823-1
ReleasedTue Mar 31 13:28:14 2020
SummaryRecommended update for parted
Typerecommended
Severitymoderate
References1161783,1164260
Description:

This update for parted fixes the following issue:


Advisory IDSUSE-RU-2020:846-1
ReleasedThu Apr 2 07:24:07 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1164950,1166748,1167674
Description:

This update for libgcrypt fixes the following issues:


* Set up global_init as the constructor function: * Relax the entropy requirements on selftest. This is especially important for virtual machines to boot properly before the RNG is available:


Advisory IDSUSE-RU-2020:850-1
ReleasedThu Apr 2 14:37:31 2020
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1155350,1155357,1155360,1166880
Description:

This update for mozilla-nss fixes the following issues:
Added various fixes related to FIPS certification:


Advisory IDSUSE-RU-2020:917-1
ReleasedFri Apr 3 15:02:25 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1166510
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2020:934-1
ReleasedTue Apr 7 03:46:20 2020
SummaryRecommended update for wget
Typerecommended
Severitymoderate
References1167919
Description:

This update for wget fixes the following issues:
wget was updated to 1.20.3, fixing various bugs, including:


Advisory IDSUSE-RU-2020:935-1
ReleasedTue Apr 7 03:46:39 2020
SummaryRecommended update for xfsprogs
Typerecommended
Severitymoderate
References1158630,1167205,1167206
Description:

This update for xfsprogs fixes the following issues:




Advisory IDSUSE-SU-2020:944-1
ReleasedTue Apr 7 15:49:33 2020
SummarySecurity update for runc
Typesecurity
Severitymoderate
References1149954,1160452,CVE-2019-19921
Description:

This update for runc fixes the following issues:
runc was updated to v1.0.0~rc10


Advisory IDSUSE-SU-2020:948-1
ReleasedWed Apr 8 07:44:21 2020
SummarySecurity update for gmp, gnutls, libnettle
Typesecurity
Severitymoderate
References1152692,1155327,1166881,1168345,CVE-2020-11501
Description:

This update for gmp, gnutls, libnettle fixes the following issues:
Security issue fixed:


FIPS related bugfixes:


Advisory IDSUSE-RU-2020:949-1
ReleasedWed Apr 8 07:45:48 2020
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1168669
Description:

This update for mozilla-nss fixes the following issues:


Advisory IDSUSE-SU-2020:959-1
ReleasedWed Apr 8 12:59:50 2020
SummarySecurity update for python-PyYAML
Typesecurity
Severityimportant
References1165439,CVE-2020-1747
Description:

This update for python-PyYAML fixes the following issues:


Advisory IDSUSE-RU-2020:961-1
ReleasedWed Apr 8 13:34:06 2020
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1160979
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-SU-2020:967-1
ReleasedThu Apr 9 11:41:53 2020
SummarySecurity update for libssh
Typesecurity
Severitymoderate
References1168699,CVE-2020-1730
Description:

This update for libssh fixes the following issues:


Advisory IDSUSE-RU-2020:979-1
ReleasedMon Apr 13 15:42:59 2020
SummaryRecommended update for parted
Typerecommended
Severitymoderate
References1168756
Description:

This update for parted fixes the following issue:


Advisory IDSUSE-SU-2020:995-1
ReleasedWed Apr 15 08:30:39 2020
SummarySecurity update for ruby2.5
Typesecurity
Severitymoderate
References1167244,1168938,CVE-2020-10663,CVE-2020-10933
Description:

This update for ruby2.5 to version 2.5.8 fixes the following issues:


Advisory IDSUSE-RU-2020:1037-1
ReleasedMon Apr 20 10:49:39 2020
SummaryRecommended update for python-pytest
Typerecommended
Severitylow
References1002895,1107105,1138666,1167732
Description:


This update fixes the following issues:
New python-pytest versions are provided.
In Basesystem:


In Python2:


Advisory IDSUSE-RU-2020:1042-1
ReleasedTue Apr 21 08:00:15 2020
SummaryRecommended update for supportutils
Typerecommended
Severityimportant
References1162539,1165475
Description:

This update for supportutils fixes the following issues:


Advisory IDSUSE-RU-2020:1056-1
ReleasedTue Apr 21 16:26:22 2020
SummaryRecommended update for cloud-init
Typerecommended
Severityimportant
References1099358,1144881,1145622,1148645,1163178,1165296
Description:

This update for cloud-init contains the following fixes:




Advisory IDSUSE-RU-2020:1061-1
ReleasedWed Apr 22 10:45:41 2020
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1169872
Description:

This update for mozilla-nss fixes the following issues:


Advisory IDSUSE-RU-2020:1063-1
ReleasedWed Apr 22 10:46:50 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1165539,1169569
Description:

This update for libgcrypt fixes the following issues:
This update for libgcrypt fixes the following issues:


Advisory IDSUSE-SU-2020:1083-1
ReleasedThu Apr 23 11:31:23 2020
SummarySecurity update for cups
Typesecurity
Severityimportant
References1168422,CVE-2020-3898
Description:

This update for cups fixes the following issues:


Advisory IDSUSE-RU-2020:1112-1
ReleasedFri Apr 24 16:44:20 2020
SummaryRecommended update for suse-build-key
Typerecommended
Severitymoderate
References1170347
Description:

This update for suse-build-key fixes the following issues:


Advisory IDSUSE-RU-2020:1131-1
ReleasedTue Apr 28 11:59:17 2020
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1170571,1170572
Description:

This update for mozilla-nss fixes the following issues:


Advisory IDSUSE-RU-2020:1175-1
ReleasedTue May 5 08:33:43 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1165011,1168076
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2020:1181-1
ReleasedTue May 5 12:02:39 2020
SummaryRecommended update for pciutils-ids
Typerecommended
Severitymoderate
References1170160
Description:

This update for pciutils-ids fixes the following issues:


Advisory IDSUSE-RU-2020:1182-1
ReleasedTue May 5 12:06:55 2020
SummaryRecommended update for chrony
Typerecommended
Severitymoderate
References1099272,1156884,1161119
Description:

This update for chrony fixes the following issues:


Advisory IDSUSE-RU-2020:1214-1
ReleasedThu May 7 11:20:34 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1169944
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2020:1222-1
ReleasedFri May 8 08:23:57 2020
SummaryRecommended update for python-azure-agent
Typerecommended
Severitymoderate
References1167601,1167602
Description:

This update for python-azure-agent fixes the following issues:


Advisory IDSUSE-RU-2020:1226-1
ReleasedFri May 8 10:51:05 2020
SummaryRecommended update for gcc9
Typerecommended
Severitymoderate
References1149995,1152590,1167898
Description:

This update for gcc9 fixes the following issues:
This update ships the GCC 9.3 release.


Advisory IDSUSE-RU-2020:1266-1
ReleasedWed May 13 10:20:54 2020
SummaryRecommended update for jq
Typerecommended
Severitymoderate
References1170838
Description:

This update for jq fixes the following issues:
jq was updated to version 1.6:

'.' for the program, regardless of stdin/stdout
  • fix: Make sorting stable regardless of qsort.


  • Advisory IDSUSE-SU-2020:1294-1
    ReleasedMon May 18 07:38:36 2020
    SummarySecurity update for file
    Typesecurity
    Severitymoderate
    References1154661,1169512,CVE-2019-18218
    Description:

    This update for file fixes the following issues:
    Security issues fixed:


    Non-security issue fixed:


    Advisory IDSUSE-SU-2020:1299-1
    ReleasedMon May 18 07:43:21 2020
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1159928,1161517,1161521,CVE-2019-19956,CVE-2019-20388,CVE-2020-7595
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2020:1303-1
    ReleasedMon May 18 09:40:36 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1169582
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2020:1328-1
    ReleasedMon May 18 17:16:04 2020
    SummaryRecommended update for grep
    Typerecommended
    Severitymoderate
    References1155271
    Description:

    This update for grep fixes the following issues:


    Advisory IDSUSE-RU-2020:1342-1
    ReleasedTue May 19 13:27:31 2020
    SummaryRecommended update for python3
    Typerecommended
    Severitymoderate
    References1149955,1165894,CVE-2019-16056
    Description:

    This update for python3 fixes the following issues:


    Advisory IDSUSE-RU-2020:1348-1
    ReleasedWed May 20 11:37:41 2020
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1170908
    Description:

    This update for mozilla-nss fixes the following issues:
    The following issues are fixed:


    Advisory IDSUSE-SU-2020:1353-1
    ReleasedWed May 20 13:02:32 2020
    SummarySecurity update for freetype2
    Typesecurity
    Severitymoderate
    References1079603,1091109,CVE-2018-6942
    Description:

    This update for freetype2 to version 2.10.1 fixes the following issues:
    Security issue fixed:


    Non-security issues fixed:









    Advisory IDSUSE-RU-2020:1361-1
    ReleasedThu May 21 09:31:18 2020
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severitymoderate
    References1171872
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-RU-2020:1370-1
    ReleasedThu May 21 19:06:00 2020
    SummaryRecommended update for systemd-presets-branding-SLE
    Typerecommended
    Severitymoderate
    References1171656
    Description:

    This update for systemd-presets-branding-SLE fixes the following issues:
    Cleanup of outdated autostart services (bsc#1171656):


    Advisory IDSUSE-RU-2020:1400-1
    ReleasedMon May 25 14:09:02 2020
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1162930
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-RU-2020:1404-1
    ReleasedMon May 25 15:32:34 2020
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1138793,1166260
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2020:1496-1
    ReleasedWed May 27 20:30:31 2020
    SummaryRecommended update for python-requests
    Typerecommended
    Severitylow
    References1170175
    Description:

    This update for python-requests fixes the following issues:


    Advisory IDSUSE-RU-2020:1506-1
    ReleasedFri May 29 17:22:11 2020
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1087982,1170527
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2020:1532-1
    ReleasedThu Jun 4 10:16:12 2020
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1172021,CVE-2019-19956
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2020:1541-1
    ReleasedThu Jun 4 13:23:27 2020
    SummaryRecommended update for pciutils
    Typerecommended
    Severitymoderate
    References1170554
    Description:

    This update for pciutils fixes the following issues:


    Advisory IDSUSE-RU-2020:1542-1
    ReleasedThu Jun 4 13:24:37 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1172055
    Description:

    This update for timezone fixes the following issue:


    Advisory IDSUSE-SU-2020:1551-1
    ReleasedMon Jun 8 09:31:41 2020
    SummarySecurity update for vim
    Typesecurity
    Severitymoderate
    References1172225,CVE-2019-20807
    Description:

    This update for vim fixes the following issues:


    Advisory IDSUSE-RU-2020:1558-1
    ReleasedMon Jun 8 10:36:32 2020
    SummaryRecommended update for chrony
    Typerecommended
    Severitymoderate
    References1172113
    Description:

    This update for chrony fixes the following issue:


    Advisory IDSUSE-SU-2020:1657-1
    ReleasedThu Jun 18 10:49:53 2020
    SummarySecurity update for containerd, docker, docker-runc, golang-github-docker-libnetwork
    Typesecurity
    Severitymoderate
    References1172377,CVE-2020-13401
    Description:

    This update for containerd, docker, docker-runc, golang-github-docker-libnetwork fixes the following issues:
    Docker was updated to 19.03.11-ce runc was updated to version 1.0.0-rc10 containerd was updated to version 1.2.13


    Advisory IDSUSE-SU-2020:1677-1
    ReleasedThu Jun 18 18:16:39 2020
    SummarySecurity update for mozilla-nspr, mozilla-nss
    Typesecurity
    Severityimportant
    References1159819,1169746,1171978,CVE-2019-17006,CVE-2020-12399
    Description:

    This update for mozilla-nspr, mozilla-nss fixes the following issues:
    mozilla-nss was updated to version 3.53

    Release notes: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.53_release_notes
    mozilla-nspr to version 4.25


    Advisory IDSUSE-SU-2020:1682-1
    ReleasedFri Jun 19 09:44:54 2020
    SummarySecurity update for perl
    Typesecurity
    Severityimportant
    References1171863,1171864,1171866,1172348,CVE-2020-10543,CVE-2020-10878,CVE-2020-12723
    Description:

    This update for perl fixes the following issues:


    Advisory IDSUSE-SU-2020:1733-1
    ReleasedWed Jun 24 09:43:36 2020
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1173026,1173027,CVE-2020-8169,CVE-2020-8177
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2020:1759-1
    ReleasedThu Jun 25 18:44:37 2020
    SummaryRecommended update for krb5
    Typerecommended
    Severitymoderate
    References1169357
    Description:

    This update for krb5 fixes the following issue:


    Advisory IDSUSE-RU-2020:1760-1
    ReleasedThu Jun 25 18:46:13 2020
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1157315,1162698,1164538,1169488,1171145,1172072
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2020:1795-1
    ReleasedMon Jun 29 11:22:45 2020
    SummaryRecommended update for lvm2
    Typerecommended
    Severityimportant
    References1172566
    Description:

    This update for lvm2 fixes the following issues:


    Advisory IDSUSE-RU-2020:1821-1
    ReleasedThu Jul 2 08:39:34 2020
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1172807,1172816
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-SU-2020:1822-1
    ReleasedThu Jul 2 11:30:42 2020
    SummarySecurity update for python3
    Typesecurity
    Severityimportant
    References1173274,CVE-2020-14422
    Description:

    This update for python3 fixes the following issues:


    Advisory IDSUSE-SU-2020:1396-1
    ReleasedFri Jul 3 12:33:05 2020
    SummarySecurity update for zstd
    Typesecurity
    Severitymoderate
    References1082318,1133297
    Description:

    This update for zstd fixes the following issues:


    Advisory IDSUSE-SU-2020:1850-1
    ReleasedMon Jul 6 14:44:39 2020
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severitymoderate
    References1168669,1173032,CVE-2020-12402
    Description:

    This update for mozilla-nss fixes the following issues:
    mozilla-nss was updated to version 3.53.1


    Advisory IDSUSE-RU-2020:1852-1
    ReleasedMon Jul 6 16:50:23 2020
    SummaryRecommended update for fontforge, ghostscript-fonts, ttf-converter, xorg-x11-fonts
    Typerecommended
    Severitymoderate
    References1169444
    Description:

    This update for fontforge, ghostscript-fonts, ttf-converter, xorg-x11-fonts fixes the following issues:
    Changes in fontforge:


    Changes in ttf-converter:

    --shift-unicode-values: When passed 3 comma separated numbers a,b,c this shifts the unicode values of glyphs between a and b (both included) by adding c. Can be used more than once. * Add --bitmapTransform parameter to transform bitmap glyphs. (bsc#1169444) When used, all glyphs are modified with the transformation function and values passed as parameters. The parameter has three values separated by commas: fliph|flipv|rotate90cw|rotate90ccw|rotate180|skew|transmove,xoff,yoff * Add support to convert bitmap fonts (bsc#1169444) * Rename MediumItalic subfamily to Medium Italic * Show some more information when removing duplicated glyphs * Add a --force-monospaced argument instead of hardcoding font names * Convert `BoldCond` subfamily to `Bold Condensed` * Fixes for Monospaced fonts and force the Nimbus Mono L font to be Monospaced. (bsc#1169444 #c41) * Add a --version argument * Fix subfamily names so the converted font's subfamily match the original ones. (bsc#1169444 #c41)
    Changes in xorg-x11-fonts:

    Changes in ghostscript-fonts:


    Advisory IDSUSE-RU-2020:1885-1
    ReleasedFri Jul 10 14:54:22 2020
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1170154,1171546,1171995
    Description:

    This update for cloud-init contains the following fixes:


    + Explicitly test for netconfig version 1 as well as 2.
    + Handle netconfig v2 device configurations (bsc#1171546, bsc#1171995)


    Advisory IDSUSE-SU-2020:1902-1
    ReleasedTue Jul 14 15:19:43 2020
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1027519,1172205,1173376,1173377,1173378,1173380,CVE-2020-0543,CVE-2020-15563,CVE-2020-15565,CVE-2020-15566,CVE-2020-15567
    Description:

    This update for xen fixes the following issues:


    Additional upstream bug fixes (bsc#1027519)


    Advisory IDSUSE-RU-2020:1938-1
    ReleasedThu Jul 16 14:43:32 2020
    SummaryRecommended update for libsolv, libzypp, zypper
    Typerecommended
    Severitymoderate
    References1169947,1170801,1172925,1173106
    Description:

    This update for libsolv, libzypp, zypper fixes the following issues:
    libsolv was updated to:


    zypper was updated to version 1.14.37:

    libzypp was updated to 17.24.0


    Advisory IDSUSE-SU-2020:1948-1
    ReleasedFri Jul 17 14:48:02 2020
    SummarySecurity update for ldb, samba
    Typesecurity
    Severityimportant
    References1141320,1162680,1169095,1169521,1169850,1169851,1171437,1172307,1173159,1173160,1173161,1173359,1174120,CVE-2020-10700,CVE-2020-10704,CVE-2020-10730,CVE-2020-10745,CVE-2020-10760,CVE-2020-14303
    Description:

    This update for ldb, samba fixes the following issues:
    Changes in samba:





    Changes in ldb:


    Advisory IDSUSE-RU-2020:1950-1
    ReleasedFri Jul 17 17:16:21 2020
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1161573,1165828,1169997,1172807,1173560
    Description:

    This update for dracut fixes the following issues:



    Advisory IDSUSE-RU-2020:1952-1
    ReleasedFri Jul 17 17:35:24 2020
    SummaryRecommended update for zypper-migration-plugin
    Typerecommended
    Severitymoderate
    References1171652
    Description:

    This update for zypper-migration-plugin fixes the following issue:


    Advisory IDSUSE-RU-2020:1953-1
    ReleasedSat Jul 18 03:06:11 2020
    SummaryRecommended update for parted
    Typerecommended
    Severityimportant
    References1164260
    Description:

    This update for parted fixes the following issue:


    Advisory IDSUSE-RU-2020:1954-1
    ReleasedSat Jul 18 03:07:15 2020
    SummaryRecommended update for cracklib
    Typerecommended
    Severitymoderate
    References1172396
    Description:

    This update for cracklib fixes the following issues:


    Advisory IDSUSE-RU-2020:1986-1
    ReleasedTue Jul 21 16:06:29 2020
    SummaryRecommended update for openvswitch
    Typerecommended
    Severitymoderate
    References1172861,1172929
    Description:

    This update for openvswitch fixes the following issues:


    Advisory IDSUSE-RU-2020:1987-1
    ReleasedTue Jul 21 17:02:15 2020
    SummaryRecommended update for libsolv, libzypp, yast2-packager, yast2-pkg-bindings
    Typerecommended
    Severityimportant
    References1172477,1173336,1174011
    Description:

    This update for libsolv, libzypp, yast2-packager, yast2-pkg-bindings fixes the following issues:
    libsolv:


    libzypp:

    yast2-packager:

    yast2-pkg-bindings:


    Advisory IDSUSE-RU-2020:1989-1
    ReleasedTue Jul 21 17:58:58 2020
    SummaryRecommended update to SLES-releases
    Typerecommended
    Severityimportant
    References1173582
    Description:

    This update of SLES-release provides the following fix:


    Advisory IDSUSE-RU-2020:2000-1
    ReleasedWed Jul 22 09:04:41 2020
    SummaryRecommended update for efivar
    Typerecommended
    Severityimportant
    References1100077,1101023,1120862,1127544
    Description:

    This update for efivar fixes the following issues:


    Advisory IDSUSE-RU-2020:2018-1
    ReleasedThu Jul 23 09:35:42 2020
    SummaryRecommended update for apparmor
    Typerecommended
    Severitymoderate
    References1172040
    Description:

    This update for apparmor fixes the following issues:


    Advisory IDSUSE-SU-2020:2074-1
    ReleasedWed Jul 29 18:59:46 2020
    SummarySecurity update for grub2
    Typesecurity
    Severityimportant
    References1168994,1173812,1174463,1174570,CVE-2020-10713,CVE-2020-14308,CVE-2020-14309,CVE-2020-14310,CVE-2020-14311,CVE-2020-15706,CVE-2020-15707
    Description:

    This update for grub2 fixes the following issues:



    Advisory IDSUSE-RU-2020:2083-1
    ReleasedThu Jul 30 10:27:59 2020
    SummaryRecommended update for diffutils
    Typerecommended
    Severitymoderate
    References1156913
    Description:

    This update for diffutils fixes the following issue:


    Advisory IDSUSE-RU-2020:2099-1
    ReleasedFri Jul 31 08:06:40 2020
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1173227,1173229,1173422
    Description:

    This update for systemd fixes the following issues:


    The marker is used to make sure the script is run only once. Instead of storing it in /usr, use /var which is more appropriate for such file. Also make it owned by systemd package.

    Ghost files are assumed by rpm to have mode 000 by default which is not consistent with file permissions set at runtime. Also /var/lib/systemd/random-seed was tracked wrongly as a directory.
    Also don't track (ghost) /etc/systemd/system/runlevel*.target aliases since we're not supposed to track units or aliases user might define/override.


    Advisory IDSUSE-SU-2020:2105-1
    ReleasedMon Aug 3 16:42:25 2020
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1058115,1065729,1071995,1085030,1148868,1152472,1152489,1153274,1154353,1154492,1155518,1155798,1156395,1157169,1158050,1158242,1158265,1158748,1158765,1158983,1159781,1159867,1160947,1161495,1162002,1162063,1162400,1162702,1164648,1164777,1164780,1165211,1165933,1165975,1166985,1167104,1167651,1167773,1168230,1168779,1168838,1168959,1169021,1169094,1169194,1169514,1169681,1169771,1170011,1170284,1170442,1170617,1170774,1170879,1170891,1170895,1171150,1171189,1171191,1171219,1171220,1171246,1171417,1171513,1171529,1171530,1171662,1171688,1171699,1171732,1171739,1171743,1171759,1171828,1171857,1171868,1171904,1171915,1171982,1171983,1171988,1172017,1172046,1172061,1172062,1172063,1172064,1172065,1172066,1172067,1172068,1172069,1172073,1172086,1172095,1172169,1172170,1172201,1172208,1172223,1172342,1172343,1172344,1172365,1172366,1172374,1172391,1172393,1172394,1172453,1172458,1172467,1172484,1172537,1172543,1172687,1172719,1172739,1172751,1172759,1172775,1172781,1172782,1172783,1172814,1172823,1172841,1172871,1172938,1172939,1172940,1172956,1172983,1172984,1172985,1172986,1172987,1172988,1172989,1172990,1172999,1173060,1173068,1173074,1173085,1173139,1173206,1173271,1173280,1173284,1173428,1173438,1173461,1173514,1173552,1173573,1173625,1173746,1173776,1173817,1173818,1173820,1173822,1173823,1173824,1173825,1173826,1173827,1173828,1173830,1173831,1173832,1173833,1173834,1173836,1173837,1173838,1173839,1173841,1173843,1173844,1173845,1173847,1173849,1173860,1173894,1173941,1174018,1174072,1174116,1174126,1174127,1174128,1174129,1174185,1174244,1174263,1174264,1174331,1174332,1174333,1174345,1174356,1174396,1174398,1174407,1174409,1174411,1174438,1174462,1174513,1174527,1174543,1174627,962849,CVE-2019-19462,CVE-2019-20810,CVE-2019-20812,CVE-2020-0305,CVE-2020-10135,CVE-2020-10711,CVE-2020-10732,CVE-2020-10751,CVE-2020-10766,CVE-2020-10767,CVE-2020-10768,CVE-2020-10773,CVE-2020-10781,CVE-2020-12656,CVE-2020-12769,CVE-2020-12771,CVE-2020-12888,CVE-2020-13143,CVE-2020-13974,CVE-2020-14416,CVE-2020-15393,CVE-2020-15780
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2020:2127-1
    ReleasedWed Aug 5 10:28:23 2020
    SummaryRecommended update for python-azure-agent
    Typerecommended
    Severityimportant
    References1173866
    Description:

    This update for python-azure-agent fixes the following issues:


    Advisory IDSUSE-RU-2020:2148-1
    ReleasedThu Aug 6 13:36:17 2020
    SummaryRecommended update for ca-certificates-mozilla
    Typerecommended
    Severityimportant
    References1174673
    Description:

    This update for ca-certificates-mozilla fixes the following issues:
    Update to 2.42 state of the Mozilla NSS Certificate store (bsc#1174673)
    Removed CAs:
    * AddTrust External CA Root * AddTrust Class 1 CA Root * LuxTrust Global Root 2 * Staat der Nederlanden Root CA - G2 * Symantec Class 1 Public Primary Certification Authority - G4 * Symantec Class 2 Public Primary Certification Authority - G4 * VeriSign Class 3 Public Primary Certification Authority - G3
    Added CAs:
    * certSIGN Root CA G2 * e-Szigno Root CA 2017 * Microsoft ECC Root Certificate Authority 2017 * Microsoft RSA Root Certificate Authority 2017


    Advisory IDSUSE-SU-2020:2160-1
    ReleasedThu Aug 6 20:05:42 2020
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1172356,1174543
    Description:

    This update for xen fixes the following issues:


    Advisory IDSUSE-RU-2020:2219-1
    ReleasedWed Aug 12 15:47:42 2020
    SummaryRecommended update for supportutils-plugin-suse-public-cloud and python3-azuremetadata
    Typerecommended
    Severitymoderate
    References1170475,1170476,1173238,1173240,1173357,1174618,1174847
    Description:

    This update for supportutils-plugin-suse-public-cloud and python3-azuremetadata fixes the following issues:
    supportutils-plugin-suse-public-cloud:


    python3-azuremetadata:


    Advisory IDSUSE-RU-2020:2224-1
    ReleasedThu Aug 13 09:15:47 2020
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1171878,1172085
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-RU-2020:2244-1
    ReleasedFri Aug 14 15:27:35 2020
    SummaryRecommended update for grub2
    Typerecommended
    Severityimportant
    References1174782,1175036,1175060
    Description:

    This update for grub2 fixes the following issues:


    Advisory IDSUSE-RU-2020:2256-1
    ReleasedMon Aug 17 15:08:46 2020
    SummaryRecommended update for sysfsutils
    Typerecommended
    Severitymoderate
    References1155305
    Description:

    This update for sysfsutils fixes the following issue:


    Advisory IDSUSE-SU-2020:2277-1
    ReleasedWed Aug 19 13:24:03 2020
    SummarySecurity update for python3
    Typesecurity
    Severitymoderate
    References1174091,CVE-2019-20907
    Description:

    This update for python3 fixes the following issues:


    Advisory IDSUSE-RU-2020:2278-1
    ReleasedWed Aug 19 21:26:08 2020
    SummaryRecommended update for util-linux
    Typerecommended
    Severitymoderate
    References1149911,1151708,1168235,1168389
    Description:

    This update for util-linux fixes the following issues:


    Advisory IDSUSE-SU-2020:2296-1
    ReleasedMon Aug 24 10:34:37 2020
    SummarySecurity update for gettext-runtime
    Typesecurity
    Severitymoderate
    References1106843,1113719,941629,CVE-2018-18751
    Description:

    This update for gettext-runtime fixes the following issues:


    Advisory IDSUSE-SU-2020:2306-1
    ReleasedTue Aug 25 14:48:17 2020
    SummarySecurity update for grub2
    Typesecurity
    Severityimportant
    References1172745,1174421,CVE-2020-15705
    Description:

    This update for grub2 fixes the following issue:


    Advisory IDSUSE-RU-2020:2335-1
    ReleasedWed Aug 26 11:47:28 2020
    SummaryRecommended update for perl-Bootloader
    Typerecommended
    Severitymoderate
    References1174320
    Description:

    This update for perl-Bootloader fixes the following issues:
    Update from version 0.928 to version 0.931


    Advisory IDSUSE-RU-2020:2349-1
    ReleasedWed Aug 26 17:15:21 2020
    SummaryRecommended update for hyper-v
    Typerecommended
    Severitymoderate
    References1093910,1174443,1174444
    Description:

    This update for hyper-v fixes the following issues:


    Advisory IDSUSE-RU-2020:2378-1
    ReleasedFri Aug 28 14:52:31 2020
    SummaryRecommended update for python-azure-agent
    Typerecommended
    Severitymoderate
    References1175198
    Description:

    This update for python-azure-agent contains the following fix:


    Advisory IDSUSE-RU-2020:2380-1
    ReleasedFri Aug 28 14:54:08 2020
    SummaryRecommended update for supportutils-plugin-suse-public-cloud
    Typerecommended
    Severitymoderate
    References1175250,1175251
    Description:

    This update for supportutils-plugin-suse-public-cloud contains the following fix:


    Advisory IDSUSE-RU-2020:2384-1
    ReleasedSat Aug 29 00:57:13 2020
    SummaryRecommended update for e2fsprogs
    Typerecommended
    Severitylow
    References1170964
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-RU-2020:2386-1
    ReleasedSat Aug 29 01:21:01 2020
    SummaryRecommended update for samba
    Typerecommended
    Severitymoderate
    References1172810
    Description:

    This update for samba fixes the following issues:


    Advisory IDSUSE-RU-2020:2396-1
    ReleasedMon Aug 31 17:27:13 2020
    SummaryRecommended update for open-iscsi
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for open-iscsi fixes the following issues:
    Upgrade to upstream version 2.1.2 as 2.1.2-suse (jsc#SES-1081)



    Advisory IDSUSE-RU-2020:2411-1
    ReleasedTue Sep 1 13:28:47 2020
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1142733,1146991,1158336,1172195,1172824,1173539
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2020:2420-1
    ReleasedTue Sep 1 13:48:35 2020
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1174551,1174736
    Description:

    This update for zlib provides the following fixes:


    Advisory IDSUSE-RU-2020:2425-1
    ReleasedTue Sep 1 13:54:05 2020
    SummaryRecommended update for nfs-utils
    Typerecommended
    Severitymoderate
    References1174260
    Description:

    This update for nfs-utils fixes the following issues:


    Advisory IDSUSE-RU-2020:2441-1
    ReleasedTue Sep 1 22:16:10 2020
    SummaryRecommended update for avahi
    Typerecommended
    Severitymoderate
    References1154063
    Description:

    This update for avahi fixes the following issues:


    Advisory IDSUSE-SU-2020:2445-1
    ReleasedWed Sep 2 09:33:02 2020
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1175109,CVE-2020-8231
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2020:2451-1
    ReleasedWed Sep 2 12:30:38 2020
    SummaryRecommended update for dracut
    Typerecommended
    Severityimportant
    References1167494,996146
    Description:

    This update for dracut fixes the following issues:
    Update from version 049.1+suse.152.g8506e86f to version 049.1+suse.156.g7d852636:


    Advisory IDSUSE-RU-2020:2457-1
    ReleasedWed Sep 2 15:29:51 2020
    SummaryRecommended update for grub2
    Typerecommended
    Severityimportant
    References1174567,1175766
    Description:

    This update for grub2 fixes the following issues:


    A secure boot status check has been added before requesting other verifiers to verify external module, therefore external module loading can work after shim_lock module is loaded and secure boot turned off.


    Advisory IDSUSE-RU-2020:2458-1
    ReleasedWed Sep 2 15:44:30 2020
    SummaryRecommended update for iputils
    Typerecommended
    Severitymoderate
    References927831
    Description:

    This update for iputils fixes the following issue:


    Advisory IDSUSE-SU-2020:2486-1
    ReleasedThu Sep 3 20:15:36 2020
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1065600,1065729,1071995,1085030,1120163,1133021,1149032,1152472,1152489,1153274,1154353,1154488,1154492,1155518,1156395,1159058,1160634,1167773,1169790,1171634,1171688,1172108,1172197,1172247,1172418,1172871,1172963,1173468,1173485,1173798,1173813,1173954,1174002,1174003,1174026,1174205,1174247,1174362,1174387,1174484,1174625,1174645,1174689,1174699,1174737,1174757,1174762,1174770,1174771,1174777,1174805,1174824,1174825,1174852,1174865,1174880,1174897,1174906,1174969,1175009,1175010,1175011,1175012,1175013,1175014,1175015,1175016,1175017,1175018,1175019,1175020,1175021,1175052,1175112,1175116,1175128,1175149,1175175,1175176,1175180,1175181,1175182,1175183,1175184,1175185,1175186,1175187,1175188,1175189,1175190,1175191,1175192,1175195,1175199,1175213,1175232,1175263,1175284,1175296,1175344,1175345,1175346,1175347,1175367,1175377,1175440,1175493,1175546,1175550,1175654,1175691,1175768,1175769,1175770,1175771,1175772,1175774,1175775,1175834,1175873,CVE-2020-14314,CVE-2020-14331,CVE-2020-14356,CVE-2020-16166
    Description:


    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.
    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2020:2577-1
    ReleasedWed Sep 9 07:18:53 2020
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1176069,CVE-2020-14386
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.
    The following security bug was fixed:


    Advisory IDSUSE-SU-2020:2612-1
    ReleasedFri Sep 11 11:18:01 2020
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1176179,CVE-2020-24977
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-SU-2020:2629-1
    ReleasedMon Sep 14 18:12:01 2020
    SummarySecurity update for shim
    Typesecurity
    Severitymoderate
    References1113225,1121268,1153953,1168104,1168994,1173411,1174320,1175626,1175656,CVE-2020-10713
    Description:

    This update for shim fixes the following issues:
    This update addresses the 'BootHole' security issue (master CVE CVE-2020-10713), by disallowing binaries signed by the previous SUSE UEFI signing key from booting.
    This update should only be installed after updates of grub2, the Linux kernel and (if used) Xen from July / August 2020 are applied.

    Changes:
    Use vendor-dbx to block old SUSE/openSUSE signkeys (bsc#1168994)




    Advisory IDSUSE-RU-2020:2638-1
    ReleasedTue Sep 15 15:41:32 2020
    SummaryRecommended update for cryptsetup
    Typerecommended
    Severitymoderate
    References1165580
    Description:

    This update for cryptsetup fixes the following issues:
    Update from version 2.0.5 to version 2.0.6. (jsc#SLE-5911, bsc#1165580)


    This release properly supports all specified metadata areas, as documented in *LUKS2* format description. Currently, only default metadata area size is used (in format or convert). Later cryptsetup versions will allow increasing this metadata area size.

    For this function, the kernel must be compiled with the *CONFIG_CRYPTO_USER_API_AEAD* option enabled. Note that kernel user crypto API options (*CONFIG_CRYPTO_USER_API* and *CONFIG_CRYPTO_USER_API_SKCIPHER*) are already mandatory for LUKS2.





    For benchmark, use: # cryptsetup benchmark -c xchacha12,aes-adiantum # cryptsetup benchmark -c xchacha20,aes-adiantum
    For LUKS format: # cryptsetup luksFormat -c xchacha20,aes-adiantum-plain64 -s 256


    Advisory IDSUSE-RU-2020:2651-1
    ReleasedWed Sep 16 14:42:55 2020
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1175811,1175830,1175831
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2020:2684-1
    ReleasedFri Sep 18 15:01:24 2020
    SummaryRecommended update for grub2
    Typerecommended
    Severityimportant
    References1176134,1176591
    Description:

    This update for grub2 fixes the following issues:


    Advisory IDSUSE-RU-2020:2704-1
    ReleasedTue Sep 22 15:06:36 2020
    SummaryRecommended update for krb5
    Typerecommended
    Severitymoderate
    References1174079
    Description:

    This update for krb5 fixes the following issue:


    Advisory IDSUSE-SU-2020:2729-1
    ReleasedWed Sep 23 16:00:48 2020
    SummarySecurity update for cifs-utils
    Typesecurity
    Severitymoderate
    References1152930,1174477,CVE-2020-14342
    Description:

    This update for cifs-utils fixes the following issues:


    Advisory IDSUSE-SU-2020:2730-1
    ReleasedWed Sep 23 16:35:31 2020
    SummarySecurity update for samba
    Typesecurity
    Severityimportant
    References1176579,CVE-2020-1472
    Description:

    This update for samba fixes the following issues:



    Advisory IDSUSE-RU-2020:2757-1
    ReleasedFri Sep 25 19:45:40 2020
    SummaryRecommended update for nfs-utils
    Typerecommended
    Severitymoderate
    References1173104
    Description:

    This update for nfs-utils fixes the following issue:


    Advisory IDSUSE-RU-2020:2781-1
    ReleasedTue Sep 29 11:29:34 2020
    SummaryRecommended update for openssh
    Typerecommended
    Severitymoderate
    References1173799
    Description:

    This update for openssh fixes the following issues:


    Advisory IDSUSE-SU-2020:2791-1
    ReleasedTue Sep 29 14:13:44 2020
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1027519,1176339,1176341,1176343,1176344,1176345,1176346,1176347,1176348,1176349,1176350,CVE-2020-25595,CVE-2020-25596,CVE-2020-25597,CVE-2020-25598,CVE-2020-25599,CVE-2020-25600,CVE-2020-25601,CVE-2020-25602,CVE-2020-25603,CVE-2020-25604
    Description:

    This update for xen fixes the following issues:


    Advisory IDSUSE-RU-2020:2796-1
    ReleasedTue Sep 29 14:30:55 2020
    SummaryRecommended update for hyper-v
    Typerecommended
    Severitymoderate
    References1116957
    Description:

    This update for hyper-v fixes the following issues:


    Advisory IDSUSE-RU-2020:2819-1
    ReleasedThu Oct 1 10:39:16 2020
    SummaryRecommended update for libzypp, zypper
    Typerecommended
    Severitymoderate
    References1165424,1173273,1173529,1174240,1174561,1174918,1175342,1175592
    Description:

    This update for libzypp, zypper provides the following fixes:
    Changes in libzypp:


    Changes in zypper:


    Advisory IDSUSE-RU-2020:2825-1
    ReleasedFri Oct 2 08:44:28 2020
    SummaryRecommended update for suse-build-key
    Typerecommended
    Severitymoderate
    References1170347,1176759
    Description:

    This update for suse-build-key fixes the following issues:



    Advisory IDSUSE-RU-2020:2850-1
    ReleasedFri Oct 2 12:26:03 2020
    SummaryRecommended update for lvm2
    Typerecommended
    Severitymoderate
    References1175110
    Description:

    This update for lvm2 fixes the following issues:


    Advisory IDSUSE-RU-2020:2852-1
    ReleasedFri Oct 2 16:55:39 2020
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1173470,1175844
    Description:

    This update for openssl-1_1 fixes the following issues:
    FIPS:


    Advisory IDSUSE-RU-2020:2863-1
    ReleasedTue Oct 6 09:28:41 2020
    SummaryRecommended update for efivar
    Typerecommended
    Severitymoderate
    References1175989
    Description:

    This update for efivar fixes the following issues:


    Advisory IDSUSE-SU-2020:2864-1
    ReleasedTue Oct 6 10:34:14 2020
    SummarySecurity update for gnutls
    Typesecurity
    Severitymoderate
    References1176086,1176181,1176671,CVE-2020-24659
    Description:

    This update for gnutls fixes the following issues:


    Advisory IDSUSE-RU-2020:2869-1
    ReleasedTue Oct 6 16:13:20 2020
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1011548,1153943,1153946,1161239,1171762
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2020:2879-1
    ReleasedThu Oct 8 15:05:03 2020
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1055186,1058115,1065600,1065729,1094244,1136666,1152148,1152472,1152489,1153274,1154353,1155518,1155798,1156395,1167527,1170232,1170774,1171000,1171068,1171073,1171558,1171688,1171742,1172419,1172757,1172873,1173017,1173060,1173115,1173267,1173746,1174029,1174110,1174111,1174358,1174484,1174486,1174899,1175263,1175667,1175718,1175749,1175787,1175882,1175952,1175996,1175997,1175998,1175999,1176000,1176001,1176019,1176022,1176038,1176063,1176137,1176235,1176236,1176237,1176242,1176278,1176357,1176358,1176359,1176360,1176361,1176362,1176363,1176364,1176365,1176366,1176367,1176381,1176423,1176449,1176482,1176486,1176507,1176536,1176537,1176538,1176539,1176540,1176541,1176542,1176544,1176545,1176546,1176548,1176558,1176559,1176587,1176588,1176659,1176698,1176699,1176700,1176721,1176722,1176725,1176732,1176763,1176775,1176788,1176789,1176833,1176869,1176877,1176925,1176962,1176980,1176990,1177021,1177030,CVE-2020-0404,CVE-2020-0427,CVE-2020-0431,CVE-2020-0432,CVE-2020-14385,CVE-2020-14390,CVE-2020-25212,CVE-2020-25284,CVE-2020-26088
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.
    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2020:2893-1
    ReleasedMon Oct 12 14:14:55 2020
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1177479
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-SU-2020:2901-1
    ReleasedTue Oct 13 14:22:43 2020
    SummarySecurity update for libproxy
    Typesecurity
    Severityimportant
    References1176410,1177143,CVE-2020-25219,CVE-2020-26154
    Description:

    This update for libproxy fixes the following issues:


    Advisory IDSUSE-SU-2020:2914-1
    ReleasedTue Oct 13 17:25:20 2020
    SummarySecurity update for bind
    Typesecurity
    Severitymoderate
    References1100369,1109160,1118367,1118368,1128220,1156205,1157051,1161168,1170667,1170713,1171313,1171740,1172958,1173307,1173311,1173983,1175443,1176092,1176674,906079,CVE-2017-3136,CVE-2018-5741,CVE-2019-6477,CVE-2020-8616,CVE-2020-8617,CVE-2020-8618,CVE-2020-8619,CVE-2020-8620,CVE-2020-8621,CVE-2020-8622,CVE-2020-8623,CVE-2020-8624
    Description:

    This update for bind fixes the following issues:
    BIND was upgraded to version 9.16.6:
    Note:


    Fixing security issues:

    Other issues fixed:


    Advisory IDSUSE-RU-2020:2936-1
    ReleasedThu Oct 15 13:41:33 2020
    SummaryRecommended update for iproute2
    Typerecommended
    Severitymoderate
    References1175281
    Description:


    This update for iproute2 provides the following fix:


    Advisory IDSUSE-RU-2020:2945-1
    ReleasedFri Oct 16 10:06:06 2020
    SummaryRecommended update for python-azure-agent
    Typerecommended
    Severitycritical
    References1176368,1176369,1177161,1177257
    Description:

    This update for python-azure-agent fixes the following issues:


    Update to version 2.2.49.2 (bsc#1176368, bsc#1176369)
    + Do not use --unit with systemd-cgls (#1910) + Report processes that do not belong to the agent's cgroup (#1908) + Use controller mount point for extension cgroup path (#1899) + Improvements in setup of cgroups (#1896) + Remove ExtensionsMetricsData and per-process Memory data (#1884) + Fix return value of start_extension_command (#1927) + Remove import * (#1900) + Fix flaky ExtensionCleanupTest class (#1898) + Fix codecov badge (#1883) + Changed codecov to run on py3.8 (#1875) + Update documentation on /dev/random (#1909) + Mount options are in mount(8) (#1893) + Remove ssh host key thumbprint in report ready (#1913) + Emit AutoUpdate value at service start only (#1907) + Add logging for version mismatch (#1895) + Send telemetry event if libdir changes (#1897) + Add log collector utility (#1847) + Move AutoUpdate reporting to HeartBeat event (#1919) + Removing infinite download of extension manifest without a new GS (#1874) + Fix wrongful dir deletion (#1873) + Fix the cleanup-outdated-handlers to only delete handlers that are not present in the GS (#1889) + Expose periods of environment thread in waagent.conf (#1891) + Added user @kevinclark19a as Contributor. (#1906)

    + [#1741] Do not update goal state when refreshing the host plugin + [#1731] Fix upgrade sequence when update command fails + [#1725] Initialize CPU usage + [#1716, #1737] Added UTC logging and correcting the format + [#1651, #1729] Start sending PerformanceCounter metrics and additional memory information for Cgroups


    Advisory IDSUSE-SU-2020:2947-1
    ReleasedFri Oct 16 15:23:07 2020
    SummarySecurity update for gcc10, nvptx-tools
    Typesecurity
    Severitymoderate
    References1172798,1172846,1173972,1174753,1174817,1175168,CVE-2020-13844
    Description:

    This update for gcc10, nvptx-tools fixes the following issues:
    This update provides the GCC10 compiler suite and runtime libraries.
    The base SUSE Linux Enterprise libraries libgcc_s1, libstdc++6 are replaced by the gcc10 variants.
    The new compiler variants are available with '-10' suffix, you can specify them via:
    CC=gcc-10 CXX=g++-10
    or similar commands.
    For a detailed changelog check out https://gcc.gnu.org/gcc-10/changes.html
    Changes in nvptx-tools:


    Advisory IDSUSE-RU-2020:2953-1
    ReleasedMon Oct 19 06:25:15 2020
    SummaryRecommended update for gettext-runtime
    Typerecommended
    Severitymoderate
    References1176142
    Description:

    This update for gettext-runtime fixes the following issues:


    Advisory IDSUSE-RU-2020:2958-1
    ReleasedTue Oct 20 12:24:55 2020
    SummaryRecommended update for procps
    Typerecommended
    Severitymoderate
    References1158830
    Description:

    This update for procps fixes the following issues:


    Advisory IDSUSE-RU-2020:2971-1
    ReleasedTue Oct 20 16:41:36 2020
    SummaryRecommended update for shim-susesigned
    Typerecommended
    Severitymoderate
    References1177315
    Description:



    This update contains changes needed for Common criteria certification.
    shim:


    The Common Criteria system role for 15-SP2 was adjusted:


    Advisory IDSUSE-SU-2020:2980-1
    ReleasedWed Oct 21 13:28:37 2020
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severitycritical
    References1065600,1065729,1155798,1165692,1168468,1171675,1171688,1174003,1174098,1175599,1175621,1175807,1176019,1176400,1176907,1176979,1177090,1177109,1177121,1177193,1177194,1177206,1177258,1177271,1177283,1177284,1177285,1177286,1177297,1177384,1177511,1177617,1177681,1177683,1177687,1177694,1177697,1177719,1177724,1177725,1177726,954532,CVE-2020-12351,CVE-2020-12352,CVE-2020-24490,CVE-2020-25641,CVE-2020-25643,CVE-2020-25645
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.
    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2020:2983-1
    ReleasedWed Oct 21 15:03:03 2020
    SummaryRecommended update for file
    Typerecommended
    Severitymoderate
    References1176123
    Description:

    This update for file fixes the following issues:


    Advisory IDSUSE-RU-2020:2989-1
    ReleasedThu Oct 22 08:53:10 2020
    SummaryRecommended update for chrony
    Typerecommended
    Severitymoderate
    References1171806
    Description:

    This update for chrony fixes the following issues:


    Advisory IDSUSE-SU-2020:2995-1
    ReleasedThu Oct 22 10:03:09 2020
    SummarySecurity update for freetype2
    Typesecurity
    Severityimportant
    References1177914,CVE-2020-15999
    Description:

    This update for freetype2 fixes the following issues:


    Advisory IDSUSE-OU-2020:3026-1
    ReleasedFri Oct 23 15:35:51 2020
    SummaryOptional update for the Public Cloud Module
    Typeoptional
    Severitymoderate
    References
    Description:


    This update adds the Google Cloud Storage packages to the Public Cloud module (jsc#ECO-2398). The following packages were included:


    Advisory IDSUSE-RU-2020:3046-1
    ReleasedTue Oct 27 14:41:21 2020
    SummaryRecommended update for shim-susesigned
    Typerecommended
    Severitymoderate
    References1177315
    Description:

    This update for shim-susesigned fixes the following issues:


    Advisory IDSUSE-RU-2020:3048-1
    ReleasedTue Oct 27 16:05:17 2020
    SummaryRecommended update for libsolv, libzypp, yaml-cpp, zypper
    Typerecommended
    Severitymoderate
    References1174918,1176192,1176435,1176712,1176740,1176902,1177238,935885
    Description:

    This update for libsolv, libzypp, yaml-cpp, zypper fixes the following issues:
    libzypp was updated to 17.25.1:


    yaml-cpp:

    No source changes were done to yaml-cpp.
    zypper was updated to 1.14.40:

    libsolv was updated to 0.7.15 to fix:


    Advisory IDSUSE-SU-2020:3049-1
    ReleasedTue Oct 27 16:08:27 2020
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1177409,1177412,1177413,1177414,CVE-2020-27670,CVE-2020-27671,CVE-2020-27672,CVE-2020-27673
    Description:

    This update for xen fixes the following issues:


    Advisory IDSUSE-RU-2020:3058-1
    ReleasedWed Oct 28 06:11:14 2020
    SummaryRecommended update for catatonit
    Typerecommended
    Severitymoderate
    References1176155
    Description:

    This update for catatonit fixes the following issues:


    Advisory IDSUSE-RU-2020:3059-1
    ReleasedWed Oct 28 06:11:23 2020
    SummaryRecommended update for sysconfig
    Typerecommended
    Severitymoderate
    References1173391,1176285,1176325
    Description:

    This update for sysconfig fixes the following issues:


    Advisory IDSUSE-SU-2020:3081-1
    ReleasedThu Oct 29 11:00:34 2020
    SummarySecurity update for samba
    Typesecurity
    Severityimportant
    References1173902,1173994,1177613,CVE-2020-14318,CVE-2020-14323,CVE-2020-14383
    Description:

    This update for samba fixes the following issues:
    Update to samba 4.11.14


    Advisory IDSUSE-RU-2020:3099-1
    ReleasedThu Oct 29 19:33:41 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-SU-2020:3122-1
    ReleasedTue Nov 3 09:46:29 2020
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1055014,1055186,1061843,1065729,1077428,1129923,1134760,1152489,1174748,1174969,1175052,1175898,1176485,1176713,1177086,1177353,1177410,1177411,1177470,1177739,1177749,1177750,1177754,1177755,1177765,1177814,1177817,1177854,1177855,1177856,1177861,1178002,1178079,1178246,CVE-2020-14351,CVE-2020-16120,CVE-2020-25285
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2020:3123-1
    ReleasedTue Nov 3 09:48:13 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severityimportant
    References1177460,1178346,1178350,1178353
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2020:3138-1
    ReleasedTue Nov 3 12:14:03 2020
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1104902,1154935,1165502,1167471,1173422,1176513,1176800
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2020:3157-1
    ReleasedWed Nov 4 15:37:05 2020
    SummaryRecommended update for ca-certificates-mozilla
    Typerecommended
    Severitymoderate
    References1177864
    Description:

    This update for ca-certificates-mozilla fixes the following issues:
    The SSL Root CA store was updated to the 2.44 state of the Mozilla NSS Certificate store (bsc#1177864)


    - EE Certification Centre Root CA - Taiwan GRCA

    - Trustwave Global Certification Authority - Trustwave Global ECC P256 Certification Authority - Trustwave Global ECC P384 Certification Authority


    Advisory IDSUSE-RU-2020:3199-1
    ReleasedFri Nov 6 13:01:11 2020
    SummaryRecommended update for SUSEConnect
    Typerecommended
    Severitymoderate
    References1155027
    Description:

    This update for SUSEConnect fixes the following issues:


    Advisory IDSUSE-RU-2020:3253-1
    ReleasedMon Nov 9 07:45:04 2020
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1174697,1176173
    Description:

    This update for mozilla-nss fixes the following issues:


    Advisory IDSUSE-RU-2020:3270-1
    ReleasedTue Nov 10 17:53:08 2020
    SummaryRecommended update for bind
    Typerecommended
    Severitymoderate
    References1175894,1177603,1177790,1177913,1177915,1178078
    Description:

    This update for bind fixes the following issues:


    Advisory IDSUSE-RU-2020:3286-1
    ReleasedWed Nov 11 12:24:19 2020
    SummaryRecommended update for grub2
    Typerecommended
    Severitymoderate
    References1172952,1176062,1177957,1178278
    Description:

    This update for grub2 fixes the following issues:


    Advisory IDSUSE-RU-2020:3290-1
    ReleasedWed Nov 11 12:25:32 2020
    SummaryRecommended update for findutils
    Typerecommended
    Severitymoderate
    References1174232
    Description:

    This update for findutils fixes the following issues:


    Advisory IDSUSE-RU-2020:3301-1
    ReleasedThu Nov 12 13:51:02 2020
    SummaryRecommended update for openssh
    Typerecommended
    Severitymoderate
    References1177939
    Description:

    This update for openssh fixes the following issues:


    Advisory IDSUSE-RU-2020:2779-1
    ReleasedThu Nov 12 15:00:21 2020
    SummaryRecommended update for rsyslog
    Typerecommended
    Severitymoderate
    References1173433,1178627
    Description:

    This update for rsyslog fixes the following issues:


    Advisory IDSUSE-RU-2020:3323-1
    ReleasedFri Nov 13 15:25:55 2020
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1174443,1174444,1177526
    Description:

    This update for cloud-init contains the following fixes:


    Update to version 20.2 (bsc#1174443, bsc#1174444)
    + doc/format: reference make-mime.py instead of an inline script (#334) + Add docs about creating parent folders (#330) [Adrian Wilkins] + DataSourceNoCloud/OVF: drop claim to support FTP (#333) (LP: #1875470) + schema: ignore spurious pylint error (#332) + schema: add json schema for write_files module (#152) + BSD: find_devs_with_ refactoring (#298) [Gonéri Le Bouder] + nocloud: drop work around for Linux 2.6 (#324) [Gonéri Le Bouder] + cloudinit: drop dependencies on unittest2 and contextlib2 (#322) + distros: handle a potential mirror filtering error case (#328) + log: remove unnecessary import fallback logic (#327) + .travis.yml: don't run integration test on ubuntu/* branches (#321) + More unit test documentation (#314) + conftest: introduce disable_subp_usage autouse fixture (#304) + YAML align indent sizes for docs readability (#323) [Tak Nishigori] + network_state: add missing space to log message (#325) + tests: add missing mocks for get_interfaces_by_mac (#326) (LP: #1873910) + test_mounts: expand happy path test for both happy paths (#319) + cc_mounts: fix incorrect format specifiers (#316) (LP: #1872836) + swap file 'size' being used before checked if str (#315) [Eduardo Otubo] + HACKING.rst: add pytest version gotchas section (#311) + docs: Add steps to re-run cloud-id and cloud-init (#313) [Joshua Powers] + readme: OpenBSD is now supported (#309) [Gonéri Le Bouder] + net: ignore 'renderer' key in netplan config (#306) (LP: #1870421) + Add support for NFS/EFS mounts (#300) [Andrew Beresford] (LP: #1870370) + openbsd: set_passwd should not unlock user (#289) [Gonéri Le Bouder] + tools/.github-cla-signers: add beezly as CLA signer (#301) + util: remove unnecessary lru_cache import fallback (#299) + HACKING.rst: reorganise/update CLA signature info (#297) + distros: drop leading/trailing hyphens from mirror URL labels (#296) + HACKING.rst: add note about variable annotations (#295) + CiTestCase: stop using and remove sys_exit helper (#283) + distros: replace invalid characters in mirror URLs with hyphens (#291) (LP: #1868232) + rbxcloud: gracefully handle arping errors (#262) [Adam Dobrawy] + Fix cloud-init ignoring some misdeclared mimetypes in user-data. [Kurt Garloff] + net: ubuntu focal prioritize netplan over eni even if both present (#267) (LP: #1867029) + cloudinit: refactor util.is_ipv4 to net.is_ipv4_address (#292) + net/cmdline: replace type comments with annotations (#294) + HACKING.rst: add Type Annotations design section (#293) + net: introduce is_ip_address function (#288) + CiTestCase: remove now-unneeded parse_and_read helper method (#286) + .travis.yml: allow 30 minutes of inactivity in cloud tests (#287) + sources/tests/test_init: drop use of deprecated inspect.getargspec (#285) + setup.py: drop NIH check_output implementation (#282) + Identify SAP Converged Cloud as OpenStack [Silvio Knizek] + add Openbsd support (#147) [Gonéri Le Bouder] + HACKING.rst: add examples of the two test class types (#278) + VMWware: support to update guest info gc status if enabled (#261) [xiaofengw-vmware] + Add lp-to-git mapping for kgarloff (#279) + set_passwords: avoid chpasswd on BSD (#268) [Gonéri Le Bouder] + HACKING.rst: add Unit Testing design section (#277) + util: read_cc_from_cmdline handle urlencoded yaml content (#275) + distros/tests/test_init: add tests for _get_package_mirror_info (#272) + HACKING.rst: add links to new Code Review Process doc (#276) + freebsd: ensure package update works (#273) [Gonéri Le Bouder] + doc: introduce Code Review Process documentation (#160) + tools: use python3 (#274) + cc_disk_setup: fix RuntimeError (#270) (LP: #1868327) + cc_apt_configure/util: combine search_for_mirror implementations (#271) + bsd: boottime does not depend on the libc soname (#269) [Gonéri Le Bouder] + test_oracle,DataSourceOracle: sort imports (#266) + DataSourceOracle: update .network_config docstring (#257) + cloudinit/tests: remove unneeded with_logs configuration (#263) + .travis.yml: drop stale comment (#255) + .gitignore: add more common directories (#258) + ec2: render network on all NICs and add secondary IPs as static (#114) (LP: #1866930) + ec2 json validation: fix the reference to the 'merged_cfg' key (#256) [Paride Legovini] + releases.yaml: quote the Ubuntu version numbers (#254) [Paride Legovini] + cloudinit: remove six from packaging/tooling (#253) + util/netbsd: drop six usage (#252) + workflows: introduce stale pull request workflow (#125) + cc_resolv_conf: introduce tests and stabilise output across Python versions (#251) + fix minor issue with resolv_conf template (#144) [andreaf74] + doc: CloudInit also support NetBSD (#250) [Gonéri Le Bouder] + Add Netbsd support (#62) [Gonéri Le Bouder] + tox.ini: avoid substition syntax that causes a traceback on xenial (#245) + Add pub_key_ed25519 to cc_phone_home (#237) [Daniel Hensby] + Introduce and use of a list of GitHub usernames that have signed CLA (#244) + workflows/cla.yml: use correct username for CLA check (#243) + tox.ini: use xenial version of jsonpatch in CI (#242) + workflows: CLA validation altered to fail status on pull_request (#164) + tox.ini: bump pyflakes version to 2.1.1 (#239) + cloudinit: move to pytest for running tests (#211) + instance-data: add cloud-init merged_cfg and sys_info keys to json (#214) (LP: #1865969) + ec2: Do not fallback to IMDSv1 on EC2 (#216) + instance-data: write redacted cfg to instance-data.json (#233) (LP: #1865947) + net: support network-config:disabled on the kernel commandline (#232) (LP: #1862702) + ec2: only redact token request headers in logs, avoid altering request (#230) (LP: #1865882) + docs: typo fixed: dta → data [Alexey Vazhnov] + Fixes typo on Amazon Web Services (#217) [Nick Wales] + Fix docs for OpenStack DMI Asset Tag (#228) [Mark T. Voelker] (LP: #1669875) + Add physical network type: cascading to openstack helpers (#200) [sab-systems] + tests: add focal integration tests for ubuntu (#225)


    Advisory IDSUSE-SU-2020:3273-1
    ReleasedSat Nov 14 08:21:39 2020
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1065600,1066382,1149032,1163592,1164648,1170415,1175721,1175749,1176354,1177281,1177766,1177799,1177801,1178166,1178173,1178175,1178176,1178177,1178183,1178184,1178185,1178186,1178190,1178191,1178255,1178307,1178330,1178395,CVE-2020-25656,CVE-2020-25705,CVE-2020-8694
    Description:


    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bug fixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2020:3358-1
    ReleasedTue Nov 17 13:17:10 2020
    SummarySecurity update for tcpdump
    Typesecurity
    Severitymoderate
    References1178466,CVE-2020-8037
    Description:

    This update for tcpdump fixes the following issues:


    Advisory IDSUSE-SU-2020:3377-1
    ReleasedThu Nov 19 09:29:32 2020
    SummarySecurity update for krb5
    Typesecurity
    Severitymoderate
    References1178512,CVE-2020-28196
    Description:

    This update for krb5 fixes the following security issue:


    Advisory IDSUSE-RU-2020:3381-1
    ReleasedThu Nov 19 10:53:38 2020
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1177458,1177490,1177510
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2020:3382-1
    ReleasedThu Nov 19 11:03:01 2020
    SummaryRecommended update for dmidecode
    Typerecommended
    Severitymoderate
    References1174257
    Description:

    This update for dmidecode fixes the following issues:


    Advisory IDSUSE-SU-2020:3412-1
    ReleasedThu Nov 19 12:44:57 2020
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1027519,1177950,1178591,CVE-2020-28368
    Description:

    This update for xen fixes the following issues:
    Security issue fixed:


    Non-security issues fixed:


    Advisory IDSUSE-RU-2020:3461-1
    ReleasedFri Nov 20 13:09:07 2020
    SummaryRecommended update for bind
    Typerecommended
    Severitylow
    References1177983
    Description:

    This update for bind fixes the following issue:


    Advisory IDSUSE-RU-2020:3462-1
    ReleasedFri Nov 20 13:14:35 2020
    SummaryRecommended update for pam and sudo
    Typerecommended
    Severitymoderate
    References1174593,1177858,1178727
    Description:

    This update for pam and sudo fixes the following issue:
    pam:


    sudo:


    Advisory IDSUSE-SU-2020:3478-1
    ReleasedMon Nov 23 09:33:17 2020
    SummarySecurity update for c-ares
    Typesecurity
    Severitymoderate
    References1178882,CVE-2020-8277
    Description:

    This update for c-ares fixes the following issues:


    Advisory IDSUSE-OU-2020:3481-1
    ReleasedMon Nov 23 11:17:09 2020
    SummaryOptional update for vim
    Typeoptional
    Severitylow
    References1166602,1173256,1174564,1176549
    Description:

    This update for vim doesn't fix any user visible issues and it is optional to install.


    Advisory IDSUSE-RU-2020:3498-1
    ReleasedTue Nov 24 13:07:16 2020
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1164076,1177811,1178217
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-RU-2020:3517-1
    ReleasedWed Nov 25 13:36:40 2020
    SummaryRecommended update for cpupower
    Typerecommended
    Severitymoderate
    References1177394
    Description:

    This update for cpupower fixes the following issue:


    Advisory IDSUSE-RU-2020:3534-1
    ReleasedThu Nov 26 15:12:41 2020
    SummaryRecommended update for kdump
    Typerecommended
    Severityimportant
    References1173914,1177196
    Description:

    This update for kdump fixes the following issues:


    Advisory IDSUSE-RU-2020:3540-1
    ReleasedThu Nov 26 15:57:16 2020
    SummaryRecommended update for wicked
    Typerecommended
    Severitymoderate
    References1168155,1171234,1172082,1174099,959556
    Description:

    This update for wicked fixes the following issues:


    Advisory IDSUSE-SU-2020:3566-1
    ReleasedMon Nov 30 16:56:52 2020
    SummarySecurity update for python-setuptools
    Typesecurity
    Severityimportant
    References1176262,CVE-2019-20916
    Description:

    This update for python-setuptools fixes the following issues:


    Advisory IDSUSE-RU-2020:3570-1
    ReleasedMon Nov 30 17:14:35 2020
    SummaryRecommended update for rsyslog
    Typerecommended
    Severitymoderate
    References1178288
    Description:

    This update for rsyslog fixes the following issue:


    Advisory IDSUSE-RU-2020:3581-1
    ReleasedTue Dec 1 14:40:22 2020
    SummaryRecommended update for libusb-1_0
    Typerecommended
    Severitymoderate
    References1178376
    Description:

    This update for libusb-1_0 fixes the following issues:


    Advisory IDSUSE-SU-2020:3592-1
    ReleasedWed Dec 2 10:31:34 2020
    SummarySecurity update for python-cryptography
    Typesecurity
    Severitymoderate
    References1178168,CVE-2020-25659
    Description:

    This update for python-cryptography fixes the following issues:


    Advisory IDSUSE-SU-2020:3593-1
    ReleasedWed Dec 2 10:33:49 2020
    SummarySecurity update for python3
    Typesecurity
    Severityimportant
    References1176262,1179193,CVE-2019-20916
    Description:

    This update for python3 fixes the following issues:
    Update to 3.6.12 (bsc#1179193), including:


    Advisory IDSUSE-RU-2020:3608-1
    ReleasedWed Dec 2 18:16:12 2020
    SummaryRecommended update for cloud-init
    Typerecommended
    Severityimportant
    References1177526,1179150,1179151
    Description:

    This update for cloud-init contains the following fixes:




    Advisory IDSUSE-SU-2020:3615-1
    ReleasedThu Dec 3 10:02:02 2020
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1177409,1177412,1177413,1177414,1178591,1178963,CVE-2020-27670,CVE-2020-27671,CVE-2020-27672,CVE-2020-27674,CVE-2020-28368
    Description:

    This update for xen fixes the following issues:


    Advisory IDSUSE-RU-2020:3616-1
    ReleasedThu Dec 3 10:56:12 2020
    SummaryRecommended update for c-ares
    Typerecommended
    Severitymoderate
    References1178882
    Description:




    Advisory IDSUSE-RU-2020:3620-1
    ReleasedThu Dec 3 17:03:55 2020
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2020:3626-1
    ReleasedFri Dec 4 13:51:46 2020
    SummaryRecommended update for audit
    Typerecommended
    Severitymoderate
    References1179515
    Description:

    This update for audit fixes the following issues:


    Advisory IDSUSE-RU-2020:3703-1
    ReleasedMon Dec 7 20:17:32 2020
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1179431
    Description:

    This update for aaa_base fixes the following issue:


    Advisory IDSUSE-SU-2020:3721-1
    ReleasedWed Dec 9 13:36:46 2020
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severityimportant
    References1179491,CVE-2020-1971
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-SU-2020:3723-1
    ReleasedWed Dec 9 13:37:55 2020
    SummarySecurity update for python-urllib3
    Typesecurity
    Severitymoderate
    References1177120,CVE-2020-26137
    Description:

    This update for python-urllib3 fixes the following issues:


    Advisory IDSUSE-SU-2020:3735-1
    ReleasedWed Dec 9 18:19:24 2020
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1179398,1179399,1179593,CVE-2020-8284,CVE-2020-8285,CVE-2020-8286
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-SU-2020:3736-1
    ReleasedWed Dec 9 18:19:58 2020
    SummarySecurity update for openssh
    Typesecurity
    Severitymoderate
    References1173513,CVE-2020-14145
    Description:

    This update for openssh fixes the following issues:


    Advisory IDSUSE-SU-2020:3748-1
    ReleasedThu Dec 10 14:04:28 2020
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1149032,1152489,1153274,1154353,1155518,1160634,1166146,1166166,1167030,1167773,1170139,1171073,1171558,1172873,1173504,1174852,1175306,1175918,1176109,1176180,1176200,1176481,1176586,1176855,1176983,1177066,1177070,1177353,1177397,1177577,1177666,1177703,1177820,1178123,1178182,1178227,1178286,1178304,1178330,1178393,1178401,1178426,1178461,1178579,1178581,1178584,1178585,1178589,1178635,1178653,1178659,1178661,1178669,1178686,1178740,1178755,1178762,1178838,1178853,1178886,1179001,1179012,1179014,1179015,1179045,1179076,1179082,1179107,1179140,1179141,1179160,1179201,1179211,1179217,1179225,1179419,1179424,1179425,1179426,1179427,1179429,1179432,1179442,1179550,CVE-2020-15436,CVE-2020-15437,CVE-2020-25668,CVE-2020-25669,CVE-2020-25704,CVE-2020-27777,CVE-2020-28915,CVE-2020-28941,CVE-2020-28974,CVE-2020-29369,CVE-2020-29371,CVE-2020-4788
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to 3.12.31 to receive various security and bugfixes.
    The following security bugs were fixed:


    The following non-security bugs were fixed:


    kernel-default-base fixes the following issues:


    Advisory IDSUSE-RU-2020:3756-1
    ReleasedFri Dec 11 09:12:36 2020
    SummaryRecommended update for hwinfo
    Typerecommended
    Severitymoderate
    References1177261,1177600
    Description:

    This update for hwinfo fixes the following issues:


    Advisory IDSUSE-RU-2020:3791-1
    ReleasedMon Dec 14 17:39:19 2020
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for gzip fixes the following issue:


    Advisory IDSUSE-RU-2020:3809-1
    ReleasedTue Dec 15 13:46:05 2020
    SummaryRecommended update for glib2
    Typerecommended
    Severitymoderate
    References1178346
    Description:

    This update for glib2 fixes the following issues:
    Update from version 2.62.5 to version 2.62.6:


    Advisory IDSUSE-RU-2020:3853-1
    ReleasedWed Dec 16 12:27:27 2020
    SummaryRecommended update for util-linux
    Typerecommended
    Severitymoderate
    References1084671,1169006,1174942,1175514,1175623,1178554,1178825
    Description:

    This update for util-linux fixes the following issue:


    Advisory IDSUSE-SU-2020:3915-1
    ReleasedTue Dec 22 14:16:27 2020
    SummarySecurity update for xen
    Typesecurity
    Severitymoderate
    References1027519,1176782,1179496,1179498,1179501,1179502,1179506,1179514,1179516,CVE-2020-29480,CVE-2020-29481,CVE-2020-29483,CVE-2020-29484,CVE-2020-29566,CVE-2020-29570,CVE-2020-29571
    Description:

    This update for xen fixes the following issues:


    Advisory IDSUSE-RU-2020:3923-1
    ReleasedTue Dec 22 15:22:42 2020
    SummaryRecommended update for kexec-tools
    Typerecommended
    Severitymoderate
    References1174508,1176606
    Description:

    This update for kexec-tools fixes the following issues:


    This host feature removes the requirement to _un-ballon_ the `domU` prior `kexec`. With Xen 4.13 _cpuid faulting_ became the default, which affects the approach used before to detect the _domU_ type. As a result, invoking kexec in _dom0_ failed.


    Advisory IDSUSE-SU-2020:3930-1
    ReleasedWed Dec 23 18:19:39 2020
    SummarySecurity update for python3
    Typesecurity
    Severityimportant
    References1155094,1174091,1174571,1174701,1177211,1178009,1179193,1179630,CVE-2019-16935,CVE-2019-18348,CVE-2019-20907,CVE-2019-5010,CVE-2020-14422,CVE-2020-26116,CVE-2020-27619,CVE-2020-8492
    Description:

    This update for python3 fixes the following issues:


    Update to 3.6.12 (bsc#1179193)


    Update to 3.6.11:


    Advisory IDSUSE-RU-2020:3942-1
    ReleasedTue Dec 29 12:22:01 2020
    SummaryRecommended update for libidn2
    Typerecommended
    Severitymoderate
    References1180138
    Description:

    This update for libidn2 fixes the following issues:


    Advisory IDSUSE-RU-2020:3943-1
    ReleasedTue Dec 29 12:24:45 2020
    SummaryRecommended update for libxml2
    Typerecommended
    Severitymoderate
    References1178823
    Description:

    This update for libxml2 fixes the following issues:
    Avoid quadratic checking of identity-constraints, speeding up XML validation (bsc#1178823)


    Advisory IDSUSE-RU-2020:3946-1
    ReleasedTue Dec 29 17:39:54 2020
    SummaryRecommended update for python3
    Typerecommended
    Severityimportant
    References1180377
    Description:

    This update for python3 fixes the following issues:


    Advisory IDSUSE-RU-2021:6-1
    ReleasedMon Jan 4 07:05:06 2021
    SummaryRecommended update for libdlm
    Typerecommended
    Severitymoderate
    References1098449,1144793,1168771,1177533,1177658
    Description:

    This update for libdlm fixes the following issues:


    Advisory IDSUSE-RU-2021:10-1
    ReleasedMon Jan 4 10:01:52 2021
    SummaryRecommended update for dmidecode
    Typerecommended
    Severitymoderate
    References1174257
    Description:

    This update for dmidecode fixes the following issue:


    Advisory IDSUSE-RU-2021:73-1
    ReleasedTue Jan 12 10:24:50 2021
    SummaryRecommended update for SUSEConnect
    Typerecommended
    Severitylow
    References
    Description:

    This update for SUSEConnect fixes the following issue:
    Update to version 0.3.29


    Advisory IDSUSE-SU-2021:109-1
    ReleasedWed Jan 13 10:13:24 2021
    SummarySecurity update for libzypp, zypper
    Typesecurity
    Severitymoderate
    References1050625,1174016,1177238,1177275,1177427,1177583,1178910,1178966,1179083,1179222,1179415,1179909,CVE-2017-9271
    Description:

    This update for libzypp, zypper fixes the following issues:
    Update zypper to version 1.14.41
    Update libzypp to 17.25.4


    yast-installation was updated to 4.2.48:


    Advisory IDSUSE-SU-2021:117-1
    ReleasedThu Jan 14 06:14:36 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severitymoderate
    References1040855,1044120,1044767,1055117,1065729,1094840,1109695,1115431,1138374,1139944,1149032,1152457,1152472,1152489,1155518,1156315,1156395,1158775,1161099,1163727,1165933,1167657,1168952,1171000,1171078,1171688,1172145,1172733,1174486,1175079,1175480,1175995,1176396,1176942,1176956,1177326,1177500,1177666,1177679,1177733,1178049,1178203,1178270,1178372,1178590,1178612,1178634,1178660,1178756,1178780,1179107,1179204,1179419,1179434,1179435,1179519,1179575,1179578,1179601,1179604,1179639,1179652,1179656,1179670,1179671,1179672,1179673,1179675,1179676,1179677,1179678,1179679,1179680,1179681,1179682,1179683,1179684,1179685,1179687,1179688,1179689,1179690,1179703,1179704,1179707,1179709,1179710,1179711,1179712,1179713,1179714,1179715,1179716,1179745,1179763,1179888,1179892,1179896,1179960,1179963,1180027,1180029,1180031,1180052,1180056,1180086,1180117,1180258,1180261,1180506,1180541,1180559,1180566,CVE-2020-0444,CVE-2020-0465,CVE-2020-0466,CVE-2020-11668,CVE-2020-27068,CVE-2020-27777,CVE-2020-27786,CVE-2020-27825,CVE-2020-27830,CVE-2020-28374,CVE-2020-29370,CVE-2020-29373,CVE-2020-29660,CVE-2020-29661,CVE-2020-36158
    Description:


    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2021:127-1
    ReleasedThu Jan 14 10:30:23 2021
    SummarySecurity update for open-iscsi
    Typesecurity
    Severityimportant
    References1179440,1179908
    Description:

    This update for open-iscsi fixes the following issues:






    Advisory IDSUSE-RU-2021:152-1
    ReleasedFri Jan 15 17:04:47 2021
    SummaryRecommended update for lvm2
    Typerecommended
    Severitymoderate
    References1179691,1179738
    Description:

    This update for lvm2 fixes the following issues:


    Advisory IDSUSE-RU-2021:169-1
    ReleasedTue Jan 19 16:18:46 2021
    SummaryRecommended update for libsolv, libzypp, zypper
    Typerecommended
    Severitymoderate
    References1179816,1180077,1180663,1180721
    Description:

    This update for libsolv, libzypp, zypper fixes the following issues:
    libzypp was updated to 17.25.6:


    zypper was updated to 1.14.42:

    libsolv was updated to 0.7.16;


    Advisory IDSUSE-RU-2021:174-1
    ReleasedWed Jan 20 07:55:23 2021
    SummaryRecommended update for gnutls
    Typerecommended
    Severitymoderate
    References1172695
    Description:

    This update for gnutls fixes the following issue:


    Advisory IDSUSE-RU-2021:179-1
    ReleasedWed Jan 20 13:38:51 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:





    Advisory IDSUSE-SU-2021:197-1
    ReleasedFri Jan 22 15:17:42 2021
    SummarySecurity update for permissions
    Typesecurity
    Severitymoderate
    References1171883,CVE-2020-8025
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-RU-2021:220-1
    ReleasedTue Jan 26 14:00:51 2021
    SummaryRecommended update for keyutils
    Typerecommended
    Severitymoderate
    References1180603
    Description:

    This update for keyutils fixes the following issues:


    Advisory IDSUSE-SU-2021:227-1
    ReleasedTue Jan 26 19:22:14 2021
    SummarySecurity update for sudo
    Typesecurity
    Severityimportant
    References1180684,1180685,1180687,1181090,CVE-2021-23239,CVE-2021-23240,CVE-2021-3156
    Description:

    This update for sudo fixes the following issues:


    Advisory IDSUSE-RU-2021:233-1
    ReleasedWed Jan 27 12:15:33 2021
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1141597,1174436,1175458,1177490,1179363,1179824,1180225
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2021:264-1
    ReleasedMon Feb 1 15:04:00 2021
    SummaryRecommended update for dracut
    Typerecommended
    Severityimportant
    References1142248,1177870,1180119
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-RU-2021:265-1
    ReleasedMon Feb 1 15:06:45 2021
    SummaryRecommended update for systemd
    Typerecommended
    Severityimportant
    References1178775,1180885
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2021:278-1
    ReleasedTue Feb 2 09:43:08 2021
    SummaryRecommended update for lvm2
    Typerecommended
    Severitymoderate
    References1181319
    Description:

    This update for lvm2 fixes the following issues:


    Advisory IDSUSE-SU-2021:285-1
    ReleasedTue Feb 2 13:08:54 2021
    SummarySecurity update for cups
    Typesecurity
    Severitymoderate
    References1170671,1180520,CVE-2019-8842,CVE-2020-10001
    Description:

    This update for cups fixes the following issues:


    Advisory IDSUSE-RU-2021:292-1
    ReleasedWed Feb 3 11:46:32 2021
    SummaryRecommended update for python-azure-agent
    Typerecommended
    Severitymoderate
    References1180719,1181600,1181601
    Description:

    This update for python-azure-agent contains the following fix:


    Advisory IDSUSE-RU-2021:293-1
    ReleasedWed Feb 3 12:52:34 2021
    SummaryRecommended update for gmp
    Typerecommended
    Severitymoderate
    References1180603
    Description:

    This update for gmp fixes the following issues:


    Advisory IDSUSE-RU-2021:294-1
    ReleasedWed Feb 3 12:54:28 2021
    SummaryRecommended update for libprotobuf
    Typerecommended
    Severitymoderate
    References
    Description:


    libprotobuf was updated to fix:


    Advisory IDSUSE-RU-2021:301-1
    ReleasedThu Feb 4 08:46:27 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:



    Advisory IDSUSE-RU-2021:302-1
    ReleasedThu Feb 4 13:18:35 2021
    SummaryRecommended update for lvm2
    Typerecommended
    Severityimportant
    References1179691
    Description:

    This update for lvm2 fixes the following issues:


    If this behavior is still wanted, please change this manually in the lvm.conf


    Advisory IDSUSE-OU-2021:339-1
    ReleasedMon Feb 8 13:16:07 2021
    SummaryOptional update for pam
    Typeoptional
    Severitylow
    References
    Description:

    This update for pam fixes the following issues:


    This patch is optional to be installed - it doesn't fix any bugs.


    Advisory IDSUSE-SU-2021:354-1
    ReleasedTue Feb 9 16:38:54 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1065600,1149032,1152472,1152489,1153274,1154353,1155518,1163930,1165545,1167773,1172355,1175389,1176395,1176831,1176846,1178142,1178631,1179142,1179396,1179508,1179509,1179567,1179572,1179575,1179878,1180008,1180130,1180264,1180412,1180759,1180765,1180773,1180809,1180812,1180848,1180859,1180889,1180891,1180971,1181014,1181018,1181077,1181104,1181148,1181158,1181161,1181169,1181203,1181217,1181218,1181219,1181220,1181237,1181318,1181335,1181346,1181349,1181425,1181494,1181504,1181511,1181538,1181553,1181584,1181645,CVE-2020-25211,CVE-2020-25639,CVE-2020-27835,CVE-2020-29568,CVE-2020-29569,CVE-2021-0342,CVE-2021-20177,CVE-2021-3347,CVE-2021-3348
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2021:419-1
    ReleasedWed Feb 10 12:03:33 2021
    SummaryRecommended update for open-iscsi
    Typerecommended
    Severitymoderate
    References1181313
    Description:

    This update for open-iscsi fixes the following issues:


    Advisory IDSUSE-SU-2021:435-1
    ReleasedThu Feb 11 14:47:25 2021
    SummarySecurity update for containerd, docker, docker-runc, golang-github-docker-libnetwork
    Typesecurity
    Severityimportant
    References1174075,1176708,1178801,1178969,1180243,1180401,1181730,1181732,CVE-2020-15257,CVE-2021-21284,CVE-2021-21285
    Description:

    This update for containerd, docker, docker-runc, golang-github-docker-libnetwork fixes the following issues:
    Security issues fixed:


    Non-security issues fixed:













    Advisory IDSUSE-SU-2021:507-1
    ReleasedThu Feb 18 09:34:49 2021
    SummarySecurity update for bind
    Typesecurity
    Severityimportant
    References1182246,CVE-2020-8625
    Description:

    This update for bind fixes the following issues:


    Advisory IDSUSE-RU-2021:516-1
    ReleasedThu Feb 18 14:42:51 2021
    SummaryRecommended update for docker, golang-github-docker-libnetwork
    Typerecommended
    Severitymoderate
    References1178801,1180401,1182168
    Description:

    This update for docker, golang-github-docker-libnetwork fixes the following issues:


    Advisory IDSUSE-RU-2021:519-1
    ReleasedFri Feb 19 09:44:53 2021
    SummaryRecommended update for openssh
    Typerecommended
    Severitymoderate
    References1180501
    Description:

    This update for openssh fixes the following issues:


    Advisory IDSUSE-RU-2021:526-1
    ReleasedFri Feb 19 12:46:27 2021
    SummaryRecommended update for python-distro
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for python-distro fixes the following issues:
    Upgrade from version 1.2.0 to 1.5.0 (jsc#ECO-3212)




    Advisory IDSUSE-SU-2021:529-1
    ReleasedFri Feb 19 14:53:47 2021
    SummarySecurity update for python3
    Typesecurity
    Severitymoderate
    References1176262,1179756,1180686,1181126,CVE-2019-20916,CVE-2021-3177
    Description:

    This update for python3 fixes the following issues:


    Advisory IDSUSE-SU-2021:551-1
    ReleasedTue Feb 23 09:31:53 2021
    SummarySecurity update for avahi
    Typesecurity
    Severitymoderate
    References1180827,CVE-2021-26720
    Description:

    This update for avahi fixes the following issues:


    Advisory IDSUSE-RU-2021:571-1
    ReleasedTue Feb 23 16:11:33 2021
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1180176
    Description:

    This update for cloud-init contains the following fixes:



    Advisory IDSUSE-RU-2021:573-1
    ReleasedWed Feb 24 09:58:38 2021
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1176171,1180336
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-SU-2021:594-1
    ReleasedThu Feb 25 09:29:35 2021
    SummarySecurity update for python-cryptography
    Typesecurity
    Severityimportant
    References1182066,CVE-2020-36242
    Description:

    This update for python-cryptography fixes the following issues:


    Advisory IDSUSE-SU-2021:653-1
    ReleasedFri Feb 26 19:53:43 2021
    SummarySecurity update for glibc
    Typesecurity
    Severityimportant
    References1178386,1179694,1179721,1180038,1181505,1182117,CVE-2019-25013,CVE-2020-27618,CVE-2020-29562,CVE-2020-29573,CVE-2021-3326
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-SU-2021:654-1
    ReleasedFri Feb 26 20:01:10 2021
    SummarySecurity update for python-Jinja2
    Typesecurity
    Severityimportant
    References1181944,1182244,CVE-2020-28493
    Description:

    This update for python-Jinja2 fixes the following issues:


    Advisory IDSUSE-RU-2021:656-1
    ReleasedMon Mar 1 09:34:21 2021
    SummaryRecommended update for protobuf
    Typerecommended
    Severitymoderate
    References1177127
    Description:

    This update for protobuf fixes the following issues:


    Advisory IDSUSE-SU-2021:683-1
    ReleasedTue Mar 2 19:04:43 2021
    SummarySecurity update for grub2
    Typesecurity
    Severityimportant
    References1175970,1176711,1177883,1179264,1179265,1182057,1182262,1182263,CVE-2020-14372,CVE-2020-25632,CVE-2020-25647,CVE-2020-27749,CVE-2020-27779,CVE-2021-20225,CVE-2021-20233
    Description:

    This update for grub2 fixes the following issues:
    grub2 implements the new 'SBAT' method for SHIM based secure boot revocation. (bsc#1182057)


    Advisory IDSUSE-SU-2021:689-1
    ReleasedTue Mar 2 19:08:40 2021
    SummarySecurity update for bind
    Typesecurity
    Severityimportant
    References1180933
    Description:

    This update for bind fixes the following issues:


    Advisory IDSUSE-SU-2021:741-1
    ReleasedTue Mar 9 16:11:49 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1065600,1065729,1078720,1081134,1084610,1132477,1151927,1152472,1152489,1154353,1155518,1156395,1163776,1169514,1170442,1176248,1176855,1177109,1177326,1177440,1177529,1178142,1178995,1179082,1179137,1179243,1179428,1179660,1179929,1180058,1180846,1180964,1180989,1181133,1181259,1181544,1181574,1181637,1181655,1181671,1181674,1181710,1181720,1181735,1181736,1181738,1181747,1181753,1181818,1181843,1181854,1181896,1181958,1181960,1181985,1182047,1182110,1182118,1182128,1182140,1182171,1182175,1182259,1182265,1182266,1182267,1182268,1182271,1182272,1182273,1182275,1182276,1182278,1182283,1182341,1182374,1182380,1182381,1182406,1182430,1182439,1182441,1182442,1182443,1182444,1182445,1182446,1182447,1182449,1182454,1182455,1182456,1182457,1182458,1182459,1182460,1182461,1182462,1182463,1182464,1182465,1182466,1182485,1182489,1182490,1182507,1182547,1182558,1182560,1182561,1182571,1182599,1182602,1182626,1182650,1182672,1182676,1182683,1182684,1182686,1182770,1182798,1182800,1182801,1182854,1182856,CVE-2020-12362,CVE-2020-12363,CVE-2020-12364,CVE-2020-12373,CVE-2020-29368,CVE-2020-29374,CVE-2021-26930,CVE-2021-26931,CVE-2021-26932
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.
    The following security bugs were fixed:


    The following non-security bugs were fixed:

    The kernel-default-base packaging was changed:


    Advisory IDSUSE-SU-2021:754-1
    ReleasedTue Mar 9 17:10:49 2021
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severitymoderate
    References1182331,1182333,1182959,CVE-2021-23840,CVE-2021-23841
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2021:758-1
    ReleasedWed Mar 10 12:16:27 2021
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1182688
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-SU-2021:778-1
    ReleasedFri Mar 12 17:42:25 2021
    SummarySecurity update for glib2
    Typesecurity
    Severityimportant
    References1182328,1182362,CVE-2021-27218,CVE-2021-27219
    Description:

    This update for glib2 fixes the following issues:


    Advisory IDSUSE-RU-2021:784-1
    ReleasedMon Mar 15 11:19:08 2021
    SummaryRecommended update for efivar
    Typerecommended
    Severitymoderate
    References1181967
    Description:

    This update for efivar fixes the following issues:


    Advisory IDSUSE-RU-2021:786-1
    ReleasedMon Mar 15 11:19:23 2021
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1176201
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2021:802-1
    ReleasedTue Mar 16 16:54:12 2021
    SummaryRecommended update for grub2
    Typerecommended
    Severityimportant
    References1183073
    Description:

    This update for grub2 fixes the following issues:


    Advisory IDSUSE-RU-2021:874-1
    ReleasedThu Mar 18 09:41:54 2021
    SummaryRecommended update for libsolv, libzypp, zypper
    Typerecommended
    Severitymoderate
    References1179847,1181328,1181622,1182629
    Description:

    This update for libsolv, libzypp, zypper fixes the following issues:


    Advisory IDSUSE-RU-2021:881-1
    ReleasedFri Mar 19 04:16:42 2021
    SummaryRecommended update for yast2-adcommon-python, yast2-aduc, samba
    Typerecommended
    Severitymoderate
    References1084864,1132565,1133568,1135130,1135224,1138203,1138487,1145508,1146898,1150394,1150612,1151713,1152052,1154121,1170998
    Description:

    This update for yast2-adcommon-python, yast2-aduc, samba fixes the following issues:


    Advisory IDSUSE-RU-2021:924-1
    ReleasedTue Mar 23 10:00:49 2021
    SummaryRecommended update for filesystem
    Typerecommended
    Severitymoderate
    References1078466,1146705,1175519,1178775,1180020,1180083,1180596,1181011,1181831,1183094
    Description:

    This update for filesystem the following issues:


    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2021:926-1
    ReleasedTue Mar 23 13:20:24 2021
    SummaryRecommended update for systemd-presets-common-SUSE
    Typerecommended
    Severitymoderate
    References1083473,1112500,1115408,1165780,1183012
    Description:

    This update for systemd-presets-common-SUSE fixes the following issues:


    Advisory IDSUSE-SU-2021:930-1
    ReleasedWed Mar 24 12:09:23 2021
    SummarySecurity update for nghttp2
    Typesecurity
    Severityimportant
    References1172442,1181358,CVE-2020-11080
    Description:

    This update for nghttp2 fixes the following issues:


    Advisory IDSUSE-SU-2021:933-1
    ReleasedWed Mar 24 12:16:14 2021
    SummarySecurity update for ruby2.5
    Typesecurity
    Severityimportant
    References1177125,1177222,CVE-2020-25613
    Description:

    This update for ruby2.5 fixes the following issues:


    Advisory IDSUSE-SU-2021:935-1
    ReleasedWed Mar 24 12:19:10 2021
    SummarySecurity update for gnutls
    Typesecurity
    Severityimportant
    References1183456,1183457,CVE-2021-20231,CVE-2021-20232
    Description:

    This update for gnutls fixes the following issues:


    Advisory IDSUSE-SU-2021:945-1
    ReleasedWed Mar 24 13:43:08 2021
    SummarySecurity update for ldb
    Typesecurity
    Severityimportant
    References1183572,1183574,CVE-2020-27840,CVE-2021-20277
    Description:

    This update for ldb fixes the following issues:


    Advisory IDSUSE-SU-2021:947-1
    ReleasedWed Mar 24 14:30:58 2021
    SummarySecurity update for python3
    Typesecurity
    Severitymoderate
    References1182379,CVE-2021-23336
    Description:

    This update for python3 fixes the following issues:


    Advisory IDSUSE-SU-2021:948-1
    ReleasedWed Mar 24 14:31:34 2021
    SummarySecurity update for zstd
    Typesecurity
    Severitymoderate
    References1183370,1183371,CVE-2021-24031,CVE-2021-24032
    Description:

    This update for zstd fixes the following issues:


    Advisory IDSUSE-SU-2021:955-1
    ReleasedThu Mar 25 16:11:48 2021
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severityimportant
    References1183852,CVE-2021-3449
    Description:

    This update for openssl-1_1 fixes the security issue:


    Advisory IDSUSE-RU-2021:960-1
    ReleasedMon Mar 29 11:16:28 2021
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1181283
    Description:

    This update for cloud-init fixes the following issues:


    Advisory IDSUSE-SU-2021:974-1
    ReleasedMon Mar 29 19:31:27 2021
    SummarySecurity update for tar
    Typesecurity
    Severitylow
    References1181131,CVE-2021-20193
    Description:

    This update for tar fixes the following issues:
    CVE-2021-20193: Memory leak in read_header() in list.c (bsc#1181131)


    Advisory IDSUSE-RU-2021:985-1
    ReleasedTue Mar 30 14:43:43 2021
    SummaryRecommended update for the Azure SDK and CLI
    Typerecommended
    Severitymoderate
    References1125671,1140565,1154393,1174514,1175289,1176784,1176785,1178168,CVE-2020-14343,CVE-2020-25659
    Description:


    This update for the Azure SDK and CLI adds support for the AHB (Azure Hybrid Benefit). (bsc#1176784, jsc#ECO=3105)


    Advisory IDSUSE-RU-2021:991-1
    ReleasedWed Mar 31 13:28:37 2021
    SummaryRecommended update for vim
    Typerecommended
    Severitymoderate
    References1182324
    Description:

    This update for vim provides the following fixes:


    Advisory IDSUSE-RU-2021:1004-1
    ReleasedThu Apr 1 15:07:09 2021
    SummaryRecommended update for libcap
    Typerecommended
    Severitymoderate
    References1180073
    Description:

    This update for libcap fixes the following issues:


    Advisory IDSUSE-SU-2021:1006-1
    ReleasedThu Apr 1 17:44:57 2021
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1183933,1183934,CVE-2021-22876,CVE-2021-22890
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2021:1018-1
    ReleasedTue Apr 6 14:29:13 2021
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References1180713
    Description:

    This update for gzip fixes the following issues:


    Advisory IDSUSE-RU-2021:1021-1
    ReleasedTue Apr 6 14:30:30 2021
    SummaryRecommended update for cups
    Typerecommended
    Severitymoderate
    References1175960
    Description:

    This update for cups fixes the following issues:


    Advisory IDSUSE-SU-2021:1028-1
    ReleasedTue Apr 6 17:54:37 2021
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1027519,1177204,1179148,1180690,1181254,1181989,1182576,1183072,CVE-2021-28687,CVE-2021-3308
    Description:

    This update for xen fixes the following issues:


    Advisory IDSUSE-SU-2021:1161-1
    ReleasedTue Apr 13 11:35:57 2021
    SummarySecurity update for cifs-utils
    Typesecurity
    Severitymoderate
    References1183239,CVE-2021-20208
    Description:

    This update for cifs-utils fixes the following issues:


    Advisory IDSUSE-RU-2021:1169-1
    ReleasedTue Apr 13 15:01:42 2021
    SummaryRecommended update for procps
    Typerecommended
    Severitylow
    References1181976
    Description:

    This update for procps fixes the following issues:


    Advisory IDSUSE-RU-2021:1205-1
    ReleasedThu Apr 15 15:14:31 2021
    SummaryRecommended update for rsyslog
    Typerecommended
    Severitymoderate
    References1178490
    Description:

    This update for rsyslog fixes the following issues:


    Advisory IDSUSE-SU-2021:1238-1
    ReleasedFri Apr 16 10:58:27 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1047233,1065729,1113295,1152472,1152489,1153274,1154353,1155518,1156256,1156395,1159280,1160634,1167574,1167773,1168777,1169514,1169709,1171295,1173485,1175995,1177326,1178163,1178181,1178330,1179454,1180197,1180980,1181383,1181507,1181674,1181862,1182011,1182077,1182485,1182552,1182574,1182591,1182595,1182715,1182716,1182717,1182770,1182989,1183015,1183018,1183022,1183023,1183048,1183252,1183277,1183278,1183279,1183280,1183281,1183282,1183283,1183284,1183285,1183286,1183287,1183288,1183366,1183369,1183386,1183405,1183412,1183416,1183427,1183428,1183445,1183447,1183501,1183509,1183530,1183534,1183540,1183593,1183596,1183598,1183637,1183646,1183662,1183686,1183692,1183696,1183750,1183757,1183775,1183843,1183859,1183871,1184074,1184120,1184167,1184168,1184170,1184176,1184192,1184193,1184194,1184196,1184198,1184211,1184217,1184218,1184219,1184220,1184224,1184388,1184391,1184393,1184485,1184509,1184511,1184512,1184514,1184583,1184585,1184647,CVE-2019-18814,CVE-2019-19769,CVE-2020-25670,CVE-2020-25671,CVE-2020-25672,CVE-2020-25673,CVE-2020-27170,CVE-2020-27171,CVE-2020-27815,CVE-2020-35519,CVE-2020-36310,CVE-2020-36311,CVE-2020-36312,CVE-2020-36322,CVE-2021-27363,CVE-2021-27364,CVE-2021-27365,CVE-2021-28038,CVE-2021-28375,CVE-2021-28660,CVE-2021-28688,CVE-2021-28950,CVE-2021-28964,CVE-2021-28971,CVE-2021-28972,CVE-2021-29154,CVE-2021-29264,CVE-2021-29265,CVE-2021-29647,CVE-2021-30002,CVE-2021-3428,CVE-2021-3444,CVE-2021-3483
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.
    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2021:1269-1
    ReleasedTue Apr 20 14:00:20 2021
    SummaryRecommended update for grub2
    Typerecommended
    Severityimportant
    References1174166,1181696,1182012
    Description:

    This update for grub2 fixes the following issues:


    Advisory IDSUSE-SU-2021:1275-1
    ReleasedTue Apr 20 14:31:26 2021
    SummarySecurity update for sudo
    Typesecurity
    Severityimportant
    References1183936,CVE-2021-3156
    Description:

    This update for sudo fixes the following issues:


    Advisory IDSUSE-SU-2021:1280-1
    ReleasedTue Apr 20 14:34:19 2021
    SummarySecurity update for ruby2.5
    Typesecurity
    Severitymoderate
    References1184644,CVE-2021-28965
    Description:

    This update for ruby2.5 fixes the following issues:


    Advisory IDSUSE-RU-2021:1286-1
    ReleasedTue Apr 20 20:10:21 2021
    SummaryRecommended update for SLES-release
    Typerecommended
    Severitymoderate
    References1180836
    Description:

    This recommended update for SLES-release provides the following fix:


    Advisory IDSUSE-RU-2021:1289-1
    ReleasedWed Apr 21 14:02:46 2021
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References1177047
    Description:

    This update for gzip fixes the following issues:


    Advisory IDSUSE-RU-2021:1295-1
    ReleasedWed Apr 21 14:08:19 2021
    SummaryRecommended update for systemd-presets-common-SUSE
    Typerecommended
    Severitymoderate
    References1184136
    Description:

    This update for systemd-presets-common-SUSE fixes the following issues:


    Advisory IDSUSE-OU-2021:1296-1
    ReleasedWed Apr 21 14:09:28 2021
    SummaryOptional update for e2fsprogs
    Typeoptional
    Severitylow
    References1183791
    Description:

    This update for e2fsprogs fixes the following issues:


    This patch does not fix any user visible issues and is therefore optional to install.


    Advisory IDSUSE-RU-2021:1297-1
    ReleasedWed Apr 21 14:10:10 2021
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1178219
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-OU-2021:1299-1
    ReleasedWed Apr 21 14:11:41 2021
    SummaryOptional update for gpgme
    Typeoptional
    Severitylow
    References1183801
    Description:

    This update for gpgme fixes the following issues:


    This patch is optional to install and does not provide any user visible bug fixes.


    Advisory IDSUSE-RU-2021:1407-1
    ReleasedWed Apr 28 15:49:02 2021
    SummaryRecommended update for libcap
    Typerecommended
    Severityimportant
    References1184690
    Description:

    This update for libcap fixes the following issues:


    Advisory IDSUSE-SU-2021:1412-1
    ReleasedWed Apr 28 17:09:28 2021
    SummarySecurity update for libnettle
    Typesecurity
    Severityimportant
    References1184401,CVE-2021-20305
    Description:

    This update for libnettle fixes the following issues:


    Advisory IDSUSE-RU-2021:1419-1
    ReleasedThu Apr 29 06:20:30 2021
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1178219
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-OU-2021:1425-1
    ReleasedThu Apr 29 06:23:08 2021
    SummaryOptional update for tcpdump
    Typeoptional
    Severitylow
    References1183800
    Description:

    This update for tcpdump fixes the following issues:


    This patch does not fix any user visible issues and is therefore optional to install.


    Advisory IDSUSE-RU-2021:1426-1
    ReleasedThu Apr 29 06:23:13 2021
    SummaryRecommended update for libsolv
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for libsolv fixes the following issues:


    Advisory IDSUSE-SU-2021:1444-1
    ReleasedThu Apr 29 16:17:34 2021
    SummarySecurity update for samba
    Typesecurity
    Severityimportant
    References1178469,1179156,1183572,1183574,1184310,1184677,CVE-2020-27840,CVE-2021-20254,CVE-2021-20277
    Description:

    This update for samba fixes the following issues:


    Advisory IDSUSE-RU-2021:1449-1
    ReleasedFri Apr 30 08:08:25 2021
    SummaryRecommended update for systemd-presets-branding-SLE
    Typerecommended
    Severitymoderate
    References1165780
    Description:

    This update for systemd-presets-branding-SLE fixes the following issues:


    Advisory IDSUSE-RU-2021:1451-1
    ReleasedFri Apr 30 08:08:45 2021
    SummaryRecommended update for dhcp
    Typerecommended
    Severitymoderate
    References1185157
    Description:

    This update for dhcp fixes the following issues:


    Advisory IDSUSE-SU-2021:1454-1
    ReleasedFri Apr 30 09:22:26 2021
    SummarySecurity update for cups
    Typesecurity
    Severityimportant
    References1184161,CVE-2021-25317
    Description:

    This update for cups fixes the following issues:


    Advisory IDSUSE-RU-2021:1456-1
    ReleasedFri Apr 30 12:00:01 2021
    SummaryRecommended update for cifs-utils
    Typerecommended
    Severityimportant
    References1184815
    Description:

    This update for cifs-utils fixes the following issues:


    Advisory IDSUSE-RU-2021:1462-1
    ReleasedFri Apr 30 14:54:23 2021
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1181283,1184085
    Description:

    This update for cloud-init fixes the following issues:


    Advisory IDSUSE-SU-2021:1466-1
    ReleasedTue May 4 08:30:57 2021
    SummarySecurity update for permissions
    Typesecurity
    Severityimportant
    References1182899
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-SU-2021:1471-1
    ReleasedTue May 4 08:36:57 2021
    SummarySecurity update for bind
    Typesecurity
    Severityimportant
    References1183453,1185345,CVE-2021-25214,CVE-2021-25215
    Description:

    This update for bind fixes the following issues:


    Advisory IDSUSE-RU-2021:1481-1
    ReleasedTue May 4 14:18:32 2021
    SummaryRecommended update for lvm2
    Typerecommended
    Severitymoderate
    References1178680
    Description:

    This update for lvm2 fixes the following issues:


    Advisory IDSUSE-SU-2021:1493-1
    ReleasedTue May 4 17:13:34 2021
    SummarySecurity update for avahi
    Typesecurity
    Severitymoderate
    References1184521,CVE-2021-3468
    Description:

    This update for avahi fixes the following issues:


    Advisory IDSUSE-RU-2021:1517-1
    ReleasedWed May 5 17:43:54 2021
    SummaryRecommended update for open-iscsi
    Typerecommended
    Severitymoderate
    References1179908,1183421,CVE-2020-13987,CVE-2020-13988,CVE-2020-17437,CVE-2020-17438
    Description:

    This update for open-iscsi fixes the following issues:


    Advisory IDSUSE-SU-2021:1523-1
    ReleasedWed May 5 18:24:20 2021
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1185408,1185409,1185410,CVE-2021-3516,CVE-2021-3517,CVE-2021-3518
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2021:1527-1
    ReleasedThu May 6 08:58:53 2021
    SummaryRecommended update for bash
    Typerecommended
    Severityimportant
    References1183064
    Description:

    This update for bash fixes the following issues:


    Advisory IDSUSE-RU-2021:1528-1
    ReleasedThu May 6 15:31:23 2021
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1161276
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2021:1534-1
    ReleasedThu May 6 17:05:07 2021
    SummaryRecommended update for kexec-tools
    Typerecommended
    Severitymoderate
    References1185020
    Description:

    This update for kexec-tools fixes the following issue:


    Advisory IDSUSE-RU-2021:1543-1
    ReleasedFri May 7 15:16:33 2021
    SummaryRecommended update for patterns-microos
    Typerecommended
    Severitymoderate
    References1184435
    Description:

    This update for patterns-microos provides the following fix:


    Advisory IDSUSE-RU-2021:1544-1
    ReleasedFri May 7 16:34:41 2021
    SummaryRecommended update for libzypp
    Typerecommended
    Severitymoderate
    References1180851,1181874,1182936,1183628,1184997,1185239
    Description:

    This update for libzypp fixes the following issues:
    Upgrade from version 17.25.8 to version 17.25.10


    Advisory IDSUSE-RU-2021:1549-1
    ReleasedMon May 10 13:48:00 2021
    SummaryRecommended update for procps
    Typerecommended
    Severitymoderate
    References1185417
    Description:

    This update for procps fixes the following issues:


    Advisory IDSUSE-SU-2021:1557-1
    ReleasedTue May 11 09:50:00 2021
    SummarySecurity update for python3
    Typesecurity
    Severitymoderate
    References1183374,CVE-2021-3426
    Description:

    This update for python3 fixes the following issues:


    Advisory IDSUSE-SU-2021:1564-1
    ReleasedTue May 11 13:29:55 2021
    SummarySecurity update for shim
    Typesecurity
    Severityimportant
    References1177315,1182057,1185464
    Description:

    This update for shim fixes the following issues:


    Advisory IDSUSE-RU-2021:1565-1
    ReleasedTue May 11 14:20:04 2021
    SummaryRecommended update for krb5
    Typerecommended
    Severitymoderate
    References1185163
    Description:

    This update for krb5 fixes the following issues:


    Advisory IDSUSE-RU-2021:1566-1
    ReleasedWed May 12 09:39:16 2021
    SummaryRecommended update for chrony
    Typerecommended
    Severitymoderate
    References1162964,1184400
    Description:

    This update for chrony fixes the following issues:


    Advisory IDSUSE-SU-2021:1574-1
    ReleasedWed May 12 12:04:51 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1043990,1055117,1065729,1152457,1152489,1156395,1167260,1168838,1174416,1174426,1178089,1179243,1179851,1180846,1181161,1182613,1183063,1183203,1183289,1184208,1184209,1184436,1184514,1184650,1184724,1184728,1184730,1184731,1184736,1184737,1184738,1184740,1184741,1184742,1184760,1184811,1184893,1184934,1184942,1184957,1184969,1184984,1185041,1185113,1185233,1185244,1185269,1185365,1185454,1185472,1185491,1185549,1185586,1185587,CVE-2021-29155,CVE-2021-29650
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2021:1582-1
    ReleasedWed May 12 13:40:03 2021
    SummaryRecommended update for lvm2
    Typerecommended
    Severitymoderate
    References1184687,1185190
    Description:

    This update for lvm2 fixes the following issues:


    Advisory IDSUSE-OU-2021:1592-1
    ReleasedWed May 12 13:47:41 2021
    SummaryOptional update for sed
    Typeoptional
    Severitylow
    References1183797
    Description:

    This update for sed fixes the following issues:


    This patch is optional to install.


    Advisory IDSUSE-RU-2021:1600-1
    ReleasedThu May 13 16:34:08 2021
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1185277
    Description:

    This update for dracut fixes the following issue:
    Update to version 049.1+suse.188.gbf445638:


    Advisory IDSUSE-SU-2021:1636-1
    ReleasedWed May 19 13:33:56 2021
    SummaryRecommended update for grub2
    Typesecurity
    Severitymoderate
    References1185580
    Description:

    This update for grub2 fixes the following issues:


    Advisory IDSUSE-RU-2021:1643-1
    ReleasedWed May 19 13:51:48 2021
    SummaryRecommended update for pam
    Typerecommended
    Severityimportant
    References1181443,1184358,1185562
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2021:1647-1
    ReleasedWed May 19 13:59:12 2021
    SummarySecurity update for lz4
    Typesecurity
    Severityimportant
    References1185438,CVE-2021-3520
    Description:

    This update for lz4 fixes the following issues:


    Advisory IDSUSE-SU-2021:1654-1
    ReleasedWed May 19 16:43:36 2021
    SummarySecurity update for libxml2
    Typesecurity
    Severityimportant
    References1185408,1185409,1185410,1185698,CVE-2021-3516,CVE-2021-3517,CVE-2021-3518,CVE-2021-3537
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2021:1669-1
    ReleasedThu May 20 11:10:44 2021
    SummaryRecommended update for nfs-utils
    Typerecommended
    Severitymoderate
    References1181540,1181651,1183194,1185170
    Description:

    This update for nfs-utils fixes the following issues:


    Advisory IDSUSE-RU-2021:1672-1
    ReleasedThu May 20 13:44:41 2021
    SummaryRecommended update for supportutils
    Typerecommended
    Severitymoderate
    References1021918,1089870,1168894,1169122,1169348,1170092,1170094,1170858,1176370,1178491,1180478,1181351,1181610,1181679,1181911,1182904,1182950,1183732,1183826,1184829,1184912
    Description:

    This update for supportutils fixes the following issues:


    Advisory IDSUSE-RU-2021:1675-1
    ReleasedThu May 20 15:00:23 2021
    SummaryRecommended update for snappy
    Typerecommended
    Severitymoderate
    References1080040,1184507
    Description:

    This update for snappy fixes the following issues:
    Update from version 1.1.3 to 1.1.8


    Advisory IDSUSE-RU-2021:1702-1
    ReleasedTue May 25 09:53:56 2021
    SummaryRecommended update for shim
    Typerecommended
    Severitymoderate
    References1185464,1185961
    Description:

    This update for shim fixes the following issues:


    Advisory IDSUSE-SU-2021:1762-1
    ReleasedWed May 26 12:30:01 2021
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1186114,CVE-2021-22898
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2021:1773-1
    ReleasedWed May 26 17:22:21 2021
    SummaryRecommended update for python3
    Typerecommended
    Severitylow
    References
    Description:

    This update for python3 fixes the following issues:


    Advisory IDSUSE-RU-2021:1801-1
    ReleasedMon May 31 07:36:01 2021
    SummaryRecommended update for openssh
    Typerecommended
    Severitymoderate
    References1115550,1174162
    Description:

    This update for openssh fixes the following issues:


    Advisory IDSUSE-RU-2021:1833-1
    ReleasedWed Jun 2 15:32:28 2021
    SummaryRecommended update for zypper
    Typerecommended
    Severitymoderate
    References1153687,1180851,1181874,1182372,1182936,1183268,1183589,1183628,1184997,1185239
    Description:

    This update for zypper fixes the following issues:
    zypper was upgraded to 1.14.44:


    libzypp was upgraded from version 17.25.8 to version 17.25.10


    Advisory IDSUSE-SU-2021:1841-1
    ReleasedWed Jun 2 16:30:17 2021
    SummarySecurity update for dhcp
    Typesecurity
    Severityimportant
    References1186382,CVE-2021-25217
    Description:

    This update for dhcp fixes the following issues:


    Advisory IDSUSE-RU-2021:1846-1
    ReleasedFri Jun 4 08:46:37 2021
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1185910
    Description:

    This update for mozilla-nss fixes the following issue:


    Advisory IDSUSE-SU-2021:1859-1
    ReleasedFri Jun 4 09:02:38 2021
    SummarySecurity update for python-py
    Typesecurity
    Severitymoderate
    References1179805,1184505,CVE-2020-29651
    Description:

    This update for python-py fixes the following issues:


    Advisory IDSUSE-RU-2021:1861-1
    ReleasedFri Jun 4 09:59:40 2021
    SummaryRecommended update for gcc10
    Typerecommended
    Severitymoderate
    References1029961,1106014,1178577,1178624,1178675,1182016
    Description:

    This update for gcc10 fixes the following issues:


    Advisory IDSUSE-RU-2021:1879-1
    ReleasedTue Jun 8 09:16:09 2021
    SummaryRecommended update for libzypp, zypper
    Typerecommended
    Severityimportant
    References1184326,1184399,1184997,1185325
    Description:

    This update for libzypp, zypper fixes the following issues:
    libzypp was updated to 17.26.0:


    zypper was updated to 1.14.45:


    Advisory IDSUSE-RU-2021:1882-1
    ReleasedTue Jun 8 13:25:36 2021
    SummaryRecommended update for shim
    Typerecommended
    Severitymoderate
    References1185464,1185961
    Description:

    This update for shim fixes the following issues:


    Advisory IDSUSE-SU-2021:1890-1
    ReleasedTue Jun 8 15:08:16 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1087082,1133021,1152457,1152489,1155518,1156395,1164648,1177666,1178378,1178418,1178612,1179519,1179825,1179827,1179851,1182257,1182378,1182999,1183346,1183868,1183873,1183932,1183947,1183976,1184081,1184082,1184259,1184611,1184855,1185428,1185495,1185497,1185589,1185606,1185642,1185645,1185677,1185680,1185703,1185725,1185758,1185859,1185860,1185861,1185862,1185863,1185898,1185899,1185911,1185938,1185950,1185982,1185987,1185988,1186060,1186061,1186062,1186111,1186285,1186320,1186390,1186416,1186439,1186441,1186451,1186460,1186479,1186484,1186498,1186501,1186573,1186681,CVE-2020-24586,CVE-2020-24587,CVE-2020-24588,CVE-2020-26139,CVE-2020-26141,CVE-2020-26145,CVE-2020-26147,CVE-2021-23134,CVE-2021-32399,CVE-2021-33034,CVE-2021-33200,CVE-2021-3491
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2021:1910-1
    ReleasedWed Jun 9 09:37:41 2021
    SummaryRecommended update for openssh
    Typerecommended
    Severitymoderate
    References1186673
    Description:

    This update for openssh fixes the following issues:


    Advisory IDSUSE-SU-2021:1917-1
    ReleasedWed Jun 9 14:48:05 2021
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1186015,CVE-2021-3541
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2021:1923-1
    ReleasedThu Jun 10 08:37:00 2021
    SummaryRecommended update for nfs-utils
    Typerecommended
    Severityimportant
    References1183194
    Description:

    This update for nfs-utils fixes the following issues:


    Advisory IDSUSE-RU-2021:1935-1
    ReleasedThu Jun 10 10:45:09 2021
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for gzip fixes the following issue:


    Advisory IDSUSE-RU-2021:1937-1
    ReleasedThu Jun 10 10:47:09 2021
    SummaryRecommended update for nghttp2
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for nghttp2 fixes the following issue:


    Advisory IDSUSE-RU-2021:1941-1
    ReleasedThu Jun 10 10:49:52 2021
    SummaryRecommended update for sysconfig
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for sysconfig fixes the following issue:


    Advisory IDSUSE-RU-2021:1946-1
    ReleasedThu Jun 10 11:40:34 2021
    SummaryRecommended update for SUSEConnect
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for SUSEConnect fixes the following issue:


    Advisory IDSUSE-RU-2021:1953-1
    ReleasedThu Jun 10 16:18:50 2021
    SummaryRecommended update for gpg2
    Typerecommended
    Severitymoderate
    References1161268,1172308
    Description:

    This update for gpg2 fixes the following issues:


    Advisory IDSUSE-SU-2021:1954-1
    ReleasedFri Jun 11 10:45:09 2021
    SummarySecurity update for containerd, docker, runc
    Typesecurity
    Severityimportant
    References1168481,1175081,1175821,1181594,1181641,1181677,1181730,1181732,1181749,1182451,1182476,1182947,1183024,1183855,1184768,1184962,1185405,CVE-2021-21284,CVE-2021-21285,CVE-2021-21334,CVE-2021-30465
    Description:

    This update for containerd, docker, runc fixes the following issues:
    Docker was updated to 20.10.6-ce (bsc#1184768, bsc#1182947, bsc#1181594)


    runc was updated to v1.0.0~rc93 (bsc#1182451, bsc#1175821 bsc#1184962).

    containerd was updated to v1.4.4


    Advisory IDSUSE-RU-2021:2091-1
    ReleasedMon Jun 21 10:45:13 2021
    SummaryRecommended update for wget
    Typerecommended
    Severitymoderate
    References1181173
    Description:

    This update for wget fixes the following issue:


    Advisory IDSUSE-RU-2021:2096-1
    ReleasedMon Jun 21 13:35:38 2021
    SummaryRecommended update for python-six
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for python-six fixes the following issue:


    Advisory IDSUSE-SU-2021:2106-1
    ReleasedMon Jun 21 19:26:19 2021
    SummarySecurity update for salt
    Typesecurity
    Severitycritical
    References1171257,1176293,1179831,1181368,1182281,1182293,1182382,1185092,1185281,1186674,CVE-2018-15750,CVE-2018-15751,CVE-2020-11651,CVE-2020-11652,CVE-2020-25592,CVE-2021-25315,CVE-2021-31607
    Description:

    This update for salt fixes the following issues:
    Update to Salt release version 3002.2 (jsc#ECO-3212, jsc#SLE-18033, jsc#SLE-18028)


    Advisory IDSUSE-SU-2021:2143-1
    ReleasedWed Jun 23 16:27:04 2021
    SummarySecurity update for libnettle
    Typesecurity
    Severityimportant
    References1187060,CVE-2021-3580
    Description:

    This update for libnettle fixes the following issues:


    Advisory IDSUSE-SU-2021:2157-1
    ReleasedThu Jun 24 15:40:14 2021
    SummarySecurity update for libgcrypt
    Typesecurity
    Severityimportant
    References1187212,CVE-2021-33560
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-RU-2021:2173-1
    ReleasedMon Jun 28 14:59:45 2021
    SummaryRecommended update for automake
    Typerecommended
    Severitymoderate
    References1040589,1047218,1182604,1185540,1186049
    Description:

    This update for automake fixes the following issues:


    This update for pcre fixes the following issues:

    This update for brp-check-suse fixes the following issues:


    Advisory IDSUSE-RU-2021:2178-1
    ReleasedMon Jun 28 15:56:15 2021
    SummaryRecommended update for systemd-presets-common-SUSE
    Typerecommended
    Severitymoderate
    References1186561
    Description:

    This update for systemd-presets-common-SUSE fixes the following issues:
    When installing the systemd-presets-common-SUSE package for the first time in a new system, it might happen that some services are installed before systemd so the %systemd_pre/post macros would not work. This is handled by enabling all preset services in this package's %posttrans section but it wasn't enabling user services, just system services. Now it enables also the user services installed before this package (bsc#1186561)


    Advisory IDSUSE-RU-2021:2191-1
    ReleasedMon Jun 28 18:38:12 2021
    SummaryRecommended update for patterns-microos
    Typerecommended
    Severitymoderate
    References1186791
    Description:

    This update for patterns-microos provides the following fix:


    Advisory IDSUSE-RU-2021:2193-1
    ReleasedMon Jun 28 18:38:43 2021
    SummaryRecommended update for tar
    Typerecommended
    Severitymoderate
    References1184124
    Description:

    This update for tar fixes the following issues:


    Advisory IDSUSE-SU-2021:2196-1
    ReleasedTue Jun 29 09:41:39 2021
    SummarySecurity update for lua53
    Typesecurity
    Severitymoderate
    References1175448,1175449,CVE-2020-24370,CVE-2020-24371
    Description:

    This update for lua53 fixes the following issues:
    Update to version 5.3.6:


    Advisory IDSUSE-RU-2021:2210-1
    ReleasedWed Jun 30 13:00:09 2021
    SummaryRecommended update for lvm2
    Typerecommended
    Severitymoderate
    References1184124
    Description:

    This update for lvm2 fixes the following issues:


    Advisory IDSUSE-RU-2021:2223-1
    ReleasedThu Jul 1 12:15:26 2021
    SummaryRecommended update for chrony
    Typerecommended
    Severitymoderate
    References1173760
    Description:

    This update for chrony fixes the following issues:


    Advisory IDSUSE-RU-2021:2229-1
    ReleasedThu Jul 1 20:40:37 2021
    SummaryRecommended update for release packages
    Typerecommended
    Severitymoderate
    References1099521,1185221
    Description:

    This update for the release packages provides the following fix:


    Advisory ID18619
    ReleasedMon Jul 5 13:24:23 2021
    SummaryRecommended update for the Linux Kernel
    Typerecommended
    Severitymoderate
    References
    Description:


    This update for the Linux Kernel provides the following fixes:


    Advisory IDSUSE-RU-2021:2246-1
    ReleasedMon Jul 5 15:17:49 2021
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1154935,1167471,1178561,1184761,1184967,1185046,1185331,1185807,1185958,1187292,1187400
    Description:

    This update for systemd fixes the following issues:
    cgroup: Parse infinity properly for memory protections. (bsc#1167471) cgroup: Make empty assignments reset to default. (bsc#1167471) cgroup: Support 0-value for memory protection directives. (bsc#1167471) core/cgroup: Fixed an issue with ignored parameter of 'MemorySwapMax=0'. (bsc#1154935) bus-unit-util: Add proper 'MemorySwapMax' serialization. core: Accept MemorySwapMax= properties that are scaled. execute: Make sure to call into PAM after initializing resource limits. (bsc#1184967) core: Rename 'ShutdownWatchdogSec' to 'RebootWatchdogSec'. (bsc#1185331) Return -EAGAIN instead of -EALREADY from unit_reload. (bsc#1185046) rules: Don't ignore Xen virtual interfaces anymore. (bsc#1178561) write_net_rules: Set execute bits. (bsc#1178561) udev: Rework network device renaming. Revert 'Revert 'udev: Network device renaming - immediately give up if the target name isn't available'' mount-util: tape over name_to_handle_at() flakiness (#7517) (bsc#1184761) core: fix output (logging) for mount units (#7603) (bsc#1187400) udev requires systemd in its %post (bsc#1185958) cgroup: Parse infinity properly for memory protections (bsc#1167471) cgroup: Make empty assignments reset to default (bsc#1167471) cgroup: Support 0-value for memory protection directives (bsc#1167471) Create /run/lock/subsys again (bsc#1187292) The creation of this directory was mistakenly dropped when 'filesystem' package took the initialization of the generic paths over. Expect 644 permissions for /usr/lib/udev/compat-symlink-generation (bsc#1185807)


    Advisory IDSUSE-OU-2021:2249-1
    ReleasedMon Jul 5 15:40:46 2021
    SummaryOptional update for gnutls
    Typeoptional
    Severitylow
    References1047218,1186579
    Description:

    This update for gnutls does not fix any user visible issues. It is therefore optional to install.


    Advisory IDSUSE-RU-2021:2273-1
    ReleasedThu Jul 8 09:48:48 2021
    SummaryRecommended update for libzypp, zypper
    Typerecommended
    Severitymoderate
    References1186447,1186503
    Description:

    This update for libzypp, zypper fixes the following issues:


    Advisory IDSUSE-RU-2021:2286-1
    ReleasedFri Jul 9 17:38:53 2021
    SummaryRecommended update for dosfstools
    Typerecommended
    Severitymoderate
    References1172863
    Description:

    This update for dosfstools fixes the following issue:


    Advisory IDSUSE-SU-2021:2292-1
    ReleasedMon Jul 12 08:25:20 2021
    SummarySecurity update for dbus-1
    Typesecurity
    Severityimportant
    References1187105,CVE-2020-35512
    Description:

    This update for dbus-1 fixes the following issues:


    Advisory IDSUSE-SU-2021:2320-1
    ReleasedWed Jul 14 17:01:06 2021
    SummarySecurity update for sqlite3
    Typesecurity
    Severityimportant
    References1157818,1158812,1158958,1158959,1158960,1159491,1159715,1159847,1159850,1160309,1160438,1160439,1164719,1172091,1172115,1172234,1172236,1172240,1173641,928700,928701,CVE-2015-3414,CVE-2015-3415,CVE-2019-19244,CVE-2019-19317,CVE-2019-19603,CVE-2019-19645,CVE-2019-19646,CVE-2019-19880,CVE-2019-19923,CVE-2019-19924,CVE-2019-19925,CVE-2019-19926,CVE-2019-19959,CVE-2019-20218,CVE-2020-13434,CVE-2020-13435,CVE-2020-13630,CVE-2020-13631,CVE-2020-13632,CVE-2020-15358,CVE-2020-9327
    Description:

    This update for sqlite3 fixes the following issues:


    Advisory IDSUSE-SU-2021:2325-1
    ReleasedWed Jul 14 17:07:11 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1152489,1153274,1154353,1155518,1164648,1174978,1176771,1179610,1182470,1183712,1184212,1184685,1185195,1185486,1185589,1185675,1185677,1185701,1186206,1186463,1186666,1186672,1186752,1186949,1186950,1186951,1186952,1186953,1186954,1186955,1186956,1186957,1186958,1186959,1186960,1186961,1186962,1186963,1186964,1186965,1186966,1186967,1186968,1186969,1186970,1186971,1186972,1186973,1186974,1186976,1186977,1186978,1186979,1186980,1186981,1186982,1186983,1186984,1186985,1186986,1186987,1186988,1186989,1186990,1186991,1186992,1186993,1186994,1186995,1186996,1186997,1186998,1186999,1187000,1187001,1187002,1187003,1187038,1187050,1187067,1187068,1187069,1187072,1187143,1187144,1187171,1187263,1187356,1187402,1187403,1187404,1187407,1187408,1187409,1187410,1187411,1187412,1187413,1187452,1187554,1187595,1187601,1187795,1187867,1187883,1187886,1187927,1187972,1187980,CVE-2020-26558,CVE-2020-36385,CVE-2020-36386,CVE-2021-0129,CVE-2021-0512,CVE-2021-0605,CVE-2021-33624,CVE-2021-34693,CVE-2021-3573
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2021:2395-1
    ReleasedMon Jul 19 12:08:34 2021
    SummaryRecommended update for efivar
    Typerecommended
    Severitymoderate
    References1187386
    Description:

    This update for efivar provides the following fix:


    Advisory IDSUSE-SU-2021:2404-1
    ReleasedTue Jul 20 14:21:30 2021
    SummarySecurity update for systemd
    Typesecurity
    Severitymoderate
    References1184994,1188063,CVE-2021-33910
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-SU-2021:2412-1
    ReleasedTue Jul 20 15:25:21 2021
    SummarySecurity update for containerd
    Typesecurity
    Severitymoderate
    References1188282,CVE-2021-32760
    Description:

    This update for containerd fixes the following issues:


    Advisory IDSUSE-SU-2021:2438-1
    ReleasedWed Jul 21 13:46:04 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1065729,1085224,1094840,1152472,1152489,1170511,1179243,1183871,1184114,1184804,1185308,1185791,1187215,1187585,1188036,1188062,1188080,1188116,1188121,1188176,1188267,1188268,1188269,CVE-2021-22555,CVE-2021-33909,CVE-2021-35039,CVE-2021-3609,CVE-2021-3612
    Description:



    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2021:2439-1
    ReleasedWed Jul 21 13:46:48 2021
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1188217,1188218,1188219,1188220,CVE-2021-22922,CVE-2021-22923,CVE-2021-22924,CVE-2021-22925
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2021:2456-1
    ReleasedThu Jul 22 15:28:39 2021
    SummaryRecommended update for pam-config
    Typerecommended
    Severitymoderate
    References1187091
    Description:

    This update for pam-config fixes the following issues:


    Advisory IDSUSE-RU-2021:2465-1
    ReleasedFri Jul 23 14:56:48 2021
    SummaryRecommended update for shim
    Typerecommended
    Severitymoderate
    References1185232,1185261,1185441,1185621,1187071,1187260,1187696
    Description:

    This update for shim fixes the following issues:
    Update to shim to 15.4-4.7.1, Version: 15.4, 'Thu Jul 15 2021' Update the SLE signatures
    Includes fixes for various bugs in MOK handling and booting (bsc#1187696, bsc#1185261, bsc#1185441, bsc#1187071, bsc#1185621, bsc#1185261, bsc#1185232, bsc#1185261, bsc#1187260, bsc#1185232)
    Remove shim-install because the shim-install is updated in the RPM.


    Advisory IDSUSE-RU-2021:2481-1
    ReleasedTue Jul 27 14:20:27 2021
    SummaryRecommended update for sysconfig
    Typerecommended
    Severitymoderate
    References1184124
    Description:

    This update for sysconfig fixes the following issues:


    Advisory IDSUSE-RU-2021:2573-1
    ReleasedThu Jul 29 14:21:52 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1188127
    Description:

    This update for timezone fixes the following issue:

    the IANA time zone database package, in addition to 'zone1970.tab', as before. This makes sure time zone aliases are now correctly supported. This update adds the 'tzdata.zi' file (bsc#1188127).


    Advisory IDSUSE-RU-2021:2593-1
    ReleasedMon Aug 2 15:40:22 2021
    SummaryRecommended update for suse-module-tools
    Typerecommended
    Severitymoderate
    References1177695
    Description:

    This update for suse-module-tools provides the following fix:


    Advisory IDSUSE-RU-2021:2603-1
    ReleasedWed Aug 4 10:09:08 2021
    SummaryRecommended update for sca-appliance-common, supportutils
    Typerecommended
    Severitymoderate
    References1185991,1185993,1186347,1186397,1186687
    Description:

    This update for sca-appliance-common, supportutils fixes the following issues:


    Advisory IDSUSE-RU-2021:2623-1
    ReleasedThu Aug 5 11:54:08 2021
    SummaryRecommended update for samba
    Typerecommended
    Severitymoderate
    References1185420
    Description:

    This update for samba fixes the following issues:


    Advisory IDSUSE-SU-2021:2689-1
    ReleasedMon Aug 16 10:54:52 2021
    SummarySecurity update for cpio
    Typesecurity
    Severityimportant
    References1189206,CVE-2021-38185
    Description:

    This update for cpio fixes the following issues:
    It was possible to trigger Remote code execution due to a integer overflow (CVE-2021-38185, bsc#1189206)


    Advisory IDSUSE-SU-2021:2756-1
    ReleasedTue Aug 17 13:24:52 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1065729,1085224,1094840,1113295,1153274,1154353,1155518,1156395,1176940,1179243,1180092,1183871,1184114,1184350,1184631,1184804,1185377,1186194,1186206,1186482,1186483,1187476,1188101,1188405,1188445,1188504,1188620,1188683,1188746,1188747,1188748,1188770,1188771,1188772,1188773,1188774,1188777,1188838,1188876,1188885,1188973,CVE-2021-21781,CVE-2021-22543,CVE-2021-3659,CVE-2021-37576
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2021:2760-1
    ReleasedTue Aug 17 17:11:14 2021
    SummarySecurity update for c-ares
    Typesecurity
    Severityimportant
    References1188881,CVE-2021-3672
    Description:

    This update for c-ares fixes the following issues:
    Version update to git snapshot 1.17.1+20200724:


    Advisory IDSUSE-RU-2021:2763-1
    ReleasedTue Aug 17 17:16:22 2021
    SummaryRecommended update for cpio
    Typerecommended
    Severitycritical
    References1189465
    Description:

    This update for cpio fixes the following issues:


    Advisory IDSUSE-RU-2021:2780-1
    ReleasedThu Aug 19 16:09:15 2021
    SummaryRecommended update for cpio
    Typerecommended
    Severitycritical
    References1189465,CVE-2021-38185
    Description:

    This update for cpio fixes the following issues:


    Advisory IDSUSE-SU-2021:2800-1
    ReleasedFri Aug 20 10:43:04 2021
    SummarySecurity update for krb5
    Typesecurity
    Severityimportant
    References1188571,CVE-2021-36222
    Description:

    This update for krb5 fixes the following issues:


    Advisory IDSUSE-RU-2021:2805-1
    ReleasedMon Aug 23 07:01:37 2021
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1185615,1185646,1187115,1187470,1187774
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-SU-2021:2810-1
    ReleasedMon Aug 23 12:14:30 2021
    SummarySecurity update for dbus-1
    Typesecurity
    Severitymoderate
    References1172505,CVE-2020-12049
    Description:

    This update for dbus-1 fixes the following issues:


    Advisory IDSUSE-SU-2021:2817-1
    ReleasedMon Aug 23 15:05:18 2021
    SummarySecurity update for aws-cli, python-boto3, python-botocore, python-service_identity, python-trustme, python-urllib3
    Typesecurity
    Severitymoderate
    References1102408,1138715,1138746,1176389,1177120,1182421,1182422,CVE-2020-26137
    Description:

    This patch updates the Python AWS SDK stack in SLE 15:
    General:
    # aws-cli


    # python-boto3

    # python-botocore

    # python-urllib3

    # python-service_identity

    # python-trustme

    Security fixes:
    # python-urllib3:


    Advisory IDSUSE-SU-2021:2830-1
    ReleasedTue Aug 24 16:20:18 2021
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severityimportant
    References1189520,1189521,CVE-2021-3711,CVE-2021-3712
    Description:

    This update for openssl-1_1 fixes the following security issues:



    Advisory IDSUSE-RU-2021:2871-1
    ReleasedMon Aug 30 15:46:25 2021
    SummaryRecommended update for bind
    Typerecommended
    Severitymoderate
    References1187921,1188763
    Description:

    This update for bind fixes the following issues:


    Advisory IDSUSE-RU-2021:2887-1
    ReleasedTue Aug 31 13:31:19 2021
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1183939,1184758
    Description:

    This update for cloud-init contains the following:


    Advisory IDSUSE-SU-2021:2922-1
    ReleasedThu Sep 2 10:10:17 2021
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1027519,1137251,1176189,1179148,1179246,1180491,1181989,1183877,1185682,1186428,1186429,1186433,1186434,1188050,1189373,1189376,1189378,1189380,1189381,1189882,CVE-2021-0089,CVE-2021-28690,CVE-2021-28692,CVE-2021-28693,CVE-2021-28694,CVE-2021-28695,CVE-2021-28696,CVE-2021-28697,CVE-2021-28698,CVE-2021-28699,CVE-2021-28700
    Description:

    This update for xen fixes the following issues:
    Update to Xen 4.13.3 general bug fix release (bsc#1027519).
    Security issues fixed:


    Other issues fixed:


    Advisory IDSUSE-SU-2021:2937-1
    ReleasedFri Sep 3 09:18:45 2021
    SummarySecurity update for libesmtp
    Typesecurity
    Severityimportant
    References1160462,1189097,CVE-2019-19977
    Description:

    This update for libesmtp fixes the following issues:


    Advisory IDSUSE-RU-2021:2950-1
    ReleasedFri Sep 3 11:59:19 2021
    SummaryRecommended update for pcre2
    Typerecommended
    Severitymoderate
    References1187937
    Description:

    This update for pcre2 fixes the following issue:

    PHP versions.


    Advisory IDSUSE-RU-2021:2962-1
    ReleasedMon Sep 6 18:23:01 2021
    SummaryRecommended update for runc
    Typerecommended
    Severitycritical
    References1189743
    Description:

    This update for runc fixes the following issues:


    Advisory IDSUSE-SU-2021:2966-1
    ReleasedTue Sep 7 09:49:14 2021
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severitylow
    References1189521,CVE-2021-3712
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2021:2974-1
    ReleasedTue Sep 7 17:17:23 2021
    SummaryRecommended update for librdkafka
    Typerecommended
    Severityimportant
    References1189792
    Description:

    This update for librdkafka fixes the following issue:


    Advisory IDSUSE-RU-2021:3001-1
    ReleasedThu Sep 9 15:08:13 2021
    SummaryRecommended update for netcfg
    Typerecommended
    Severitymoderate
    References1189683
    Description:

    This update for netcfg fixes the following issues:


    Advisory IDSUSE-RU-2021:3022-1
    ReleasedMon Sep 13 10:48:16 2021
    SummaryRecommended update for c-ares
    Typerecommended
    Severityimportant
    References1190225
    Description:

    This update for c-ares fixes the following issue:


    Advisory IDSUSE-RU-2021:3034-1
    ReleasedTue Sep 14 13:49:23 2021
    SummaryRecommended update for python-pytz
    Typerecommended
    Severitymoderate
    References1185748
    Description:

    This update for python-pytz fixes the following issues:








    Advisory IDSUSE-RU-2021:3115-1
    ReleasedThu Sep 16 14:04:26 2021
    SummaryRecommended update for mozilla-nspr, mozilla-nss
    Typerecommended
    Severitymoderate
    References1029961,1174697,1176206,1176934,1179382,1188891,CVE-2020-12400,CVE-2020-12401,CVE-2020-12403,CVE-2020-25648,CVE-2020-6829
    Description:

    This update for mozilla-nspr fixes the following issues:
    mozilla-nspr was updated to version 4.32:



    Mozilla NSS was updated to version 3.68:

    update to NSS 3.67

    update to NSS 3.66

    update to NSS 3.65

    update to NSS 3.64
    disable_crypto_vsx.
  • bmo#1698320 - replace __builtin_cpu_supports('vsx') with
  • ppc_crypto_support() for clang.
  • bmo#1613235 - Add POWER ChaCha20 stream cipher vector
  • acceleration.
    Fixed in 3.63
    initialization to prevent build isses with GCC 4.8.
  • bmo#1683520 - [lib/freebl/ecl] P-384: allow zero scalars in dual
  • scalar multiplication.
  • bmo#1683520 - ECCKiila P521, change syntax of nested structs
  • initialization to prevent build isses with GCC 4.8.
  • bmo#1683520 - [lib/freebl/ecl] P-521: allow zero scalars in dual
  • scalar multiplication.
  • bmo#1696800 - HACL* update March 2021 - c95ab70fcb2bc21025d8845281bc4bc8987ca683.
  • bmo#1694214 - tstclnt can't enable middlebox compat mode.
  • bmo#1694392 - NSS does not work with PKCS #11 modules not supporting
  • profiles.
  • bmo#1685880 - Minor fix to prevent unused variable on early return.
  • bmo#1685880 - Fix for the gcc compiler version 7 to support setenv
  • with nss build.
  • bmo#1693217 - Increase nssckbi.h version number for March 2021 batch
  • of root CA changes, CA list version 2.48.
  • bmo#1692094 - Set email distrust after to 21-03-01 for Camerfirma's
  • 'Chambers of Commerce' and 'Global Chambersign' roots.
  • bmo#1618407 - Symantec root certs - Set CKA_NSS_EMAIL_DISTRUST_AFTER.
  • bmo#1693173 - Add GlobalSign R45, E45, R46, and E46 root certs to NSS.
  • bmo#1683738 - Add AC RAIZ FNMT-RCM SERVIDORES SEGUROS root cert to NSS.
  • bmo#1686854 - Remove GeoTrust PCA-G2 and VeriSign Universal root certs
  • from NSS.
  • bmo#1687822 - Turn off Websites trust bit for the “Staat der
  • Nederlanden Root CA - G3” root cert in NSS.
  • bmo#1692094 - Turn off Websites Trust Bit for 'Chambers of Commerce
  • Root - 2008' and 'Global Chambersign Root - 2008’.
  • bmo#1694291 - Tracing fixes for ECH.

  • update to NSS 3.62
    can corrupt 'cachedCertTable'
  • bmo#1690583 - Fix CH padding extension size calculation
  • bmo#1690421 - Adjust 3.62 ABI report formatting for new libabigail
  • bmo#1690421 - Install packaged libabigail in docker-builds image
  • bmo#1689228 - Minor ECH -09 fixes for interop testing, fuzzing
  • bmo#1674819 - Fixup a51fae403328, enum type may be signed
  • bmo#1681585 - Add ECH support to selfserv
  • bmo#1681585 - Update ECH to Draft-09
  • bmo#1678398 - Add Export/Import functions for HPKE context
  • bmo#1678398 - Update HPKE to draft-07

  • update to NSS 3.61
    values under certain conditions.
  • bmo#1684300 - Fix default PBE iteration count when NSS is compiled
  • with NSS_DISABLE_DBM.
  • bmo#1651411 - Improve constant-timeness in RSA operations.
  • bmo#1677207 - Upgrade Google Test version to latest release.
  • bmo#1654332 - Add aarch64-make target to nss-try.

  • Update to NSS 3.60.1:
    Notable changes in NSS 3.60:
    Update to NSS 3.59.1:
    PKCS11 modules
    Update to NSS 3.59:
    Notable changes:

    Bugfixes
    root certs when SHA1 signatures are disabled.
  • bmo#1644209 - Fix broken SelectedCipherSuiteReplacer filter to
  • solve some test intermittents
  • bmo#1672703 - Tolerate the first CCS in TLS 1.3 to fix a regression in
  • our CVE-2020-25648 fix that broke purple-discord (boo#1179382)
  • bmo#1666891 - Support key wrap/unwrap with RSA-OAEP
  • bmo#1667989 - Fix gyp linking on Solaris
  • bmo#1668123 - Export CERT_AddCertToListHeadWithData and
  • CERT_AddCertToListTailWithData from libnss
  • bmo#1634584 - Set CKA_NSS_SERVER_DISTRUST_AFTER for Trustis FPS Root CA
  • bmo#1663091 - Remove unnecessary assertions in the streaming
  • ASN.1 decoder that affected decoding certain PKCS8 private keys when using NSS debug builds
  • bmo#670839 - Use ARM crypto extension for AES, SHA1 and SHA2 on MacOS.

  • update to NSS 3.58
    Bugs fixed:

    update to NSS 3.57

    update to NSS 3.56
    Notable changes
    detection.
  • bmo#1652729 - Add build flag to disable RC2 and relocate to
  • lib/freebl/deprecated.
  • bmo#1656429 - Correct RTT estimate used in 0-RTT anti-replay.
  • bmo#1588941 - Send empty certificate message when scheme selection
  • fails.
  • bmo#1652032 - Fix failure to build in Windows arm64 makefile
  • cross-compilation.
  • bmo#1625791 - Fix deadlock issue in nssSlot_IsTokenPresent.
  • bmo#1653975 - Fix 3.53 regression by setting 'all' as the default
  • makefile target.
  • bmo#1659792 - Fix broken libpkix tests with unexpired PayPal cert.
  • bmo#1659814 - Fix interop.sh failures with newer tls-interop
  • commit and dependencies.
  • bmo#1656519 - NSPR dependency updated to 4.28

  • update to NSS 3.55
    Notable changes
    Relevant Bugfixes

    update to NSS 3.54
    Notable changes


    Bugs fixed
    Root Certification Authority; C=TW' root.
  • bmo#1645199 - Remove AddTrust root certificates.
  • bmo#1641718 - Remove 'LuxTrust Global Root 2' root certificate.
  • bmo#1639987 - Remove 'Staat der Nederlanden Root CA - G2' root
  • certificate.
  • bmo#1618402 - Remove Symantec root certificates and disable email trust
  • bit.
  • bmo#1640516 - NSS 3.54 should depend on NSPR 4.26.
  • bmo#1642146 - Fix undefined reference to `PORT_ZAlloc_stub' in seed.c.
  • bmo#1642153 - Fix infinite recursion building NSS.
  • bmo#1642638 - Fix fuzzing assertion crash.
  • bmo#1642871 - Enable SSL_SendSessionTicket after resumption.
  • bmo#1643123 - Support SSL_ExportEarlyKeyingMaterial with External PSKs.
  • bmo#1643557 - Fix numerous compile warnings in NSS.
  • bmo#1644774 - SSL gtests to use ClearServerCache when resetting
  • self-encrypt keys.
  • bmo#1645479 - Don't use SECITEM_MakeItem in secutil.c.
  • bmo#1646520 - Stricter enforcement of ASN.1 INTEGER encoding.

  • Advisory IDSUSE-SU-2021:3123-1
    ReleasedThu Sep 16 19:45:05 2021
    SummarySecurity update for libcroco
    Typesecurity
    Severitymoderate
    References1171685,CVE-2020-12825
    Description:

    This update for libcroco fixes the following issues:


    Advisory IDSUSE-RU-2021:3133-1
    ReleasedFri Sep 17 16:37:56 2021
    SummaryRecommended update for grub2, efibootmgr
    Typerecommended
    Severitymoderate
    References1186565,1186975,1187565
    Description:

    This update for grub2, efibootmgr provides the following fixes:


    Advisory IDSUSE-RU-2021:3136-1
    ReleasedFri Sep 17 16:59:09 2021
    SummaryRecommended update for SUSEConnect
    Typerecommended
    Severitymoderate
    References1185611
    Description:

    This update for SUSEConnect fixes the following issues:


    Advisory IDSUSE-SU-2021:3141-1
    ReleasedSat Sep 18 14:37:39 2021
    SummarySecurity update for xen
    Typesecurity
    Severitymoderate
    References1027519,1189632,CVE-2021-28701
    Description:

    This update for xen fixes the following issues:



    Advisory IDSUSE-RU-2021:3182-1
    ReleasedTue Sep 21 17:04:26 2021
    SummaryRecommended update for file
    Typerecommended
    Severitymoderate
    References1189996
    Description:

    This update for file fixes the following issues:


    Advisory IDSUSE-SU-2021:3207-1
    ReleasedThu Sep 23 16:18:52 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1040364,1127650,1135481,1152489,1160010,1167032,1168202,1174969,1175052,1175543,1177399,1180141,1180347,1181148,1181972,1184114,1184180,1185675,1185902,1186264,1186731,1187211,1187455,1187468,1187619,1188067,1188172,1188418,1188439,1188616,1188780,1188781,1188782,1188783,1188784,1188786,1188787,1188788,1188790,1188878,1188885,1188924,1188982,1188983,1188985,1189021,1189057,1189077,1189153,1189197,1189209,1189210,1189212,1189213,1189214,1189215,1189216,1189217,1189218,1189219,1189220,1189221,1189222,1189229,1189262,1189291,1189292,1189298,1189301,1189305,1189323,1189384,1189385,1189392,1189399,1189400,1189427,1189449,1189503,1189504,1189505,1189506,1189507,1189562,1189563,1189564,1189565,1189566,1189567,1189568,1189569,1189573,1189574,1189575,1189576,1189577,1189579,1189581,1189582,1189583,1189585,1189586,1189587,1189706,1189760,1189832,1189841,1189870,1189883,1190025,1190115,1190117,1190131,1190181,CVE-2021-34556,CVE-2021-35477,CVE-2021-3640,CVE-2021-3653,CVE-2021-3656,CVE-2021-3679,CVE-2021-3732,CVE-2021-3739,CVE-2021-3743,CVE-2021-3753,CVE-2021-3759,CVE-2021-38160,CVE-2021-38198,CVE-2021-38204,CVE-2021-38205,CVE-2021-38207
    Description:



    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.
    The following security bugs were fixed:



    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2021:3224-1
    ReleasedFri Sep 24 11:34:33 2021
    SummaryRecommended update for shim-susesigned
    Typerecommended
    Severitymoderate
    References1177315,1177789,1182057,1184454,1185232,1185261,1185441,1185464,1185621,1185961,1187260,1187696
    Description:

    This update for shim-susesigned fixes the following issues:
    Sync with Microsoft signed shim to Thu Jul 15 08:13:26 UTC 2021.
    This update addresses the 'susesigned' shim component.
    shim was updated to 15.4 (bsc#1182057)


    Advisory IDSUSE-RU-2021:3233-1
    ReleasedMon Sep 27 15:02:21 2021
    SummaryRecommended update for xfsprogs
    Typerecommended
    Severitymoderate
    References1085917,1181299,1181306,1181309,1181535,1181536,1188651,1189552
    Description:

    This update for xfsprogs fixes the following issues:


    Advisory IDSUSE-RU-2021:3245-1
    ReleasedTue Sep 28 13:54:31 2021
    SummaryRecommended update for docker
    Typerecommended
    Severityimportant
    References1190670
    Description:

    This update for docker fixes the following issues:


    Advisory IDSUSE-RU-2021:3274-1
    ReleasedFri Oct 1 10:34:17 2021
    SummaryRecommended update for ca-certificates-mozilla
    Typerecommended
    Severityimportant
    References1190858
    Description:

    This update for ca-certificates-mozilla fixes the following issues:


    Advisory IDSUSE-SU-2021:3298-1
    ReleasedWed Oct 6 16:54:52 2021
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1190373,1190374,CVE-2021-22946,CVE-2021-22947
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2021:3303-1
    ReleasedWed Oct 6 18:11:24 2021
    SummaryRecommended update for kdump
    Typerecommended
    Severitymoderate
    References1172670,1182309,1183070,1184616,1186037,1188090
    Description:

    This update for kdump fixes the following issues:


    Advisory IDSUSE-RU-2021:3318-1
    ReleasedWed Oct 6 19:31:19 2021
    SummaryRecommended update for sudo
    Typerecommended
    Severitymoderate
    References1176473,1181371
    Description:

    This update for sudo fixes the following issues:


    Advisory IDSUSE-SU-2021:3348-1
    ReleasedTue Oct 12 13:08:06 2021
    SummarySecurity update for systemd
    Typesecurity
    Severitymoderate
    References1134353,1171962,1184994,1188018,1188063,1188291,1188713,1189480,1190234,CVE-2021-33910
    Description:

    This update for systemd fixes the following issues:



    Advisory IDSUSE-RU-2021:3382-1
    ReleasedTue Oct 12 14:30:17 2021
    SummaryRecommended update for ca-certificates-mozilla
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for ca-certificates-mozilla fixes the following issues:


    Advisory IDSUSE-SU-2021:3385-1
    ReleasedTue Oct 12 15:54:31 2021
    SummarySecurity update for glibc
    Typesecurity
    Severitymoderate
    References1186489,1187911,CVE-2021-33574,CVE-2021-35942
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-RU-2021:3411-1
    ReleasedWed Oct 13 10:42:25 2021
    SummaryRecommended update for lvm2
    Typerecommended
    Severitymoderate
    References1191019
    Description:

    This update for lvm2 fixes the following issues:


    Advisory IDSUSE-RU-2021:3412-1
    ReleasedWed Oct 13 10:50:33 2021
    SummaryRecommended update for suse-module-tools
    Typerecommended
    Severityimportant
    References1189841,1190598
    Description:

    This update for suse-module-tools fixes the following issues:


    Advisory IDSUSE-SU-2021:3444-1
    ReleasedFri Oct 15 09:03:07 2021
    SummarySecurity update for rpm
    Typesecurity
    Severityimportant
    References1179416,1183543,1183545,1183632,1183659,1185299,1187670,1188548,CVE-2021-20266,CVE-2021-20271,CVE-2021-3421
    Description:

    This update for rpm fixes the following issues:
    Security issues fixed:


    Maintaince issues fixed:


    Advisory IDSUSE-SU-2021:3447-1
    ReleasedFri Oct 15 09:05:15 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1065729,1148868,1152489,1154353,1159886,1167773,1170774,1173746,1176940,1184439,1184804,1185302,1185677,1185726,1185762,1187167,1188067,1188651,1188986,1189297,1189841,1189884,1190023,1190062,1190115,1190159,1190358,1190406,1190432,1190467,1190523,1190534,1190543,1190576,1190595,1190596,1190598,1190620,1190626,1190679,1190705,1190717,1190746,1190758,1190784,1190785,1191172,1191193,1191240,1191292,CVE-2020-3702,CVE-2021-3669,CVE-2021-3744,CVE-2021-3752,CVE-2021-3764,CVE-2021-40490
    Description:



    The SUSE Linux Enterprise 15 SP2 kernel was updated.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2021:3454-1
    ReleasedMon Oct 18 09:29:26 2021
    SummarySecurity update for krb5
    Typesecurity
    Severitymoderate
    References1189929,CVE-2021-37750
    Description:

    This update for krb5 fixes the following issues:


    Advisory IDSUSE-RU-2021:3479-1
    ReleasedWed Oct 20 11:23:45 2021
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1184970,1186260,1187115,1187470,1187774,1190845
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-RU-2021:3480-1
    ReleasedWed Oct 20 11:24:08 2021
    SummaryRecommended update for yast2-network
    Typerecommended
    Severitymoderate
    References1185016,1185524,1186910,1187270,1187512,1188344,1190645,1190739,1190915,1190933
    Description:

    This update for yast2-network fixes the following issues:


    Advisory IDSUSE-SU-2021:3490-1
    ReleasedWed Oct 20 16:31:55 2021
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1190793,CVE-2021-39537
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2021:3494-1
    ReleasedWed Oct 20 16:48:46 2021
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1190052
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2021:3501-1
    ReleasedFri Oct 22 10:42:46 2021
    SummaryRecommended update for libzypp, zypper, libsolv, protobuf
    Typerecommended
    Severitymoderate
    References1186503,1186602,1187224,1187425,1187466,1187738,1187760,1188156,1188435,1189031,1190059,1190199,1190465,1190712,1190815
    Description:

    This update for libzypp, zypper, libsolv and protobuf fixes the following issues:


    Advisory IDSUSE-SU-2021:3506-1
    ReleasedMon Oct 25 10:20:22 2021
    SummarySecurity update for containerd, docker, runc
    Typesecurity
    Severityimportant
    References1102408,1185405,1187704,1188282,1190826,1191015,1191121,1191334,1191355,1191434,CVE-2021-30465,CVE-2021-32760,CVE-2021-41089,CVE-2021-41091,CVE-2021-41092,CVE-2021-41103
    Description:

    This update for containerd, docker, runc fixes the following issues:
    Docker was updated to 20.10.9-ce. (bsc#1191355)
    See upstream changelog in the packaged /usr/share/doc/packages/docker/CHANGELOG.md.
    CVE-2021-41092 CVE-2021-41089 CVE-2021-41091 CVE-2021-41103
    container was updated to v1.4.11, to fix CVE-2021-41103. bsc#1191355



    Update to runc v1.0.2. Upstream changelog is available from
    https://github.com/opencontainers/runc/releases/tag/v1.0.2

    Update to runc v1.0.1. Upstream changelog is available from
    https://github.com/opencontainers/runc/releases/tag/v1.0.1

    Update to runc v1.0.0. Upstream changelog is available from
    https://github.com/opencontainers/runc/releases/tag/v1.0.0
    ! The usage of relative paths for mountpoints will now produce a warning (such configurations are outside of the spec, and in future runc will produce an error when given such configurations).
    Update to runc v1.0.0~rc95. Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.0.0-rc95
    This release of runc contains a fix for CVE-2021-30465, and users are strongly recommended to update (especially if you are providing semi-limited access to spawn containers to untrusted users). (bsc#1185405)
    Update to runc v1.0.0~rc94. Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.0.0-rc94
    Breaking Changes:
    Regression Fixes:


    Advisory IDSUSE-RU-2021:3510-1
    ReleasedTue Oct 26 11:22:15 2021
    SummaryRecommended update for pam
    Typerecommended
    Severityimportant
    References1191987
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2021:3515-1
    ReleasedTue Oct 26 13:48:04 2021
    SummaryRecommended update for suse-module-tools
    Typerecommended
    Severityimportant
    References1191200,1191260,1191480,1191804,1191922
    Description:

    This update for suse-module-tools fixes the following issues:

    Update to version 15.2.15:


    Advisory IDSUSE-SU-2021:3523-1
    ReleasedTue Oct 26 15:40:13 2021
    SummarySecurity update for util-linux
    Typesecurity
    Severitymoderate
    References1122417,1125886,1178236,1188921,CVE-2021-37600
    Description:

    This update for util-linux fixes the following issues:
    Update to version 2.33.2 to provide seamless update from SLE12 SP5 to SLE15 SP2:


    Advisory IDSUSE-SU-2021:3529-1
    ReleasedWed Oct 27 09:23:32 2021
    SummarySecurity update for pcre
    Typesecurity
    Severitymoderate
    References1172973,1172974,CVE-2019-20838,CVE-2020-14155
    Description:

    This update for pcre fixes the following issues:
    Update pcre to version 8.45:


    Advisory IDSUSE-RU-2021:3538-1
    ReleasedWed Oct 27 10:40:32 2021
    SummaryRecommended update for iproute2
    Typerecommended
    Severitymoderate
    References1160242
    Description:

    This update for iproute2 fixes the following issues:


    Advisory IDSUSE-RU-2021:3545-1
    ReleasedWed Oct 27 14:46:39 2021
    SummaryRecommended update for less
    Typerecommended
    Severitylow
    References1190552
    Description:

    This update for less fixes the following issues:


    Advisory IDSUSE-RU-2021:3567-1
    ReleasedWed Oct 27 22:14:01 2021
    SummaryRecommended update for apparmor
    Typerecommended
    Severitymoderate
    References1191690
    Description:

    This update for apparmor fixes the following issues:


    Advisory IDSUSE-RU-2021:3581-1
    ReleasedFri Oct 29 16:09:23 2021
    SummaryRecommended update for SUSEConnect
    Typerecommended
    Severityimportant
    References
    Description:

    This update for SUSEConnect contains the following fix:


    Advisory IDSUSE-RU-2021:3617-1
    ReleasedThu Nov 4 21:00:19 2021
    SummaryRecommended update for samba
    Typerecommended
    Severitymoderate
    References1188727
    Description:

    This update for samba fixes the following issues:


    Advisory IDSUSE-SU-2021:3650-1
    ReleasedWed Nov 10 17:36:06 2021
    SummarySecurity update for samba
    Typesecurity
    Severityimportant
    References1014440,1192214,1192284,CVE-2016-2124,CVE-2020-25717,CVE-2021-23192
    Description:

    This update for samba fixes the following issues:


    Advisory IDSUSE-SU-2021:3754-1
    ReleasedFri Nov 19 18:41:20 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1065729,1085030,1152489,1154353,1156395,1157177,1167773,1172073,1173604,1176940,1184673,1185762,1186063,1187167,1188563,1189841,1190006,1190067,1190349,1190351,1190479,1190620,1190642,1190795,1190941,1191229,1191241,1191315,1191317,1191349,1191384,1191449,1191450,1191451,1191452,1191455,1191456,1191628,1191731,1191800,1191934,1191958,1192040,1192041,1192107,1192145,1192267,1192549,CVE-2021-3542,CVE-2021-3655,CVE-2021-3715,CVE-2021-3760,CVE-2021-3772,CVE-2021-3896,CVE-2021-41864,CVE-2021-42008,CVE-2021-42252,CVE-2021-42739,CVE-2021-43056
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2021:3773-1
    ReleasedTue Nov 23 15:49:30 2021
    SummarySecurity update for bind
    Typesecurity
    Severityimportant
    References1192146,CVE-2021-25219
    Description:

    This update for bind fixes the following issues:


    Advisory IDSUSE-RU-2021:3782-1
    ReleasedTue Nov 23 23:49:03 2021
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1187190,1188713,1190326
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-RU-2021:3787-1
    ReleasedWed Nov 24 06:00:10 2021
    SummaryRecommended update for xfsprogs
    Typerecommended
    Severitymoderate
    References1189983,1189984,1191500,1191566,1191675
    Description:

    This update for xfsprogs fixes the following issues:


    Advisory IDSUSE-RU-2021:3799-1
    ReleasedWed Nov 24 18:07:54 2021
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1187153,1187273,1188623
    Description:

    This update for gcc11 fixes the following issues:
    The additional GNU compiler collection GCC 11 is provided:
    To select these compilers install the packages:


    to select them for building:

    The compiler baselibraries (libgcc_s1, libstdc++6 and others) are being replaced by the GCC 11 variants.


    Advisory IDSUSE-RU-2021:3809-1
    ReleasedFri Nov 26 00:31:59 2021
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1189803,1190325,1190440,1190984,1191252,1192161
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-SU-2021:3830-1
    ReleasedWed Dec 1 13:45:46 2021
    SummarySecurity update for glibc
    Typesecurity
    Severitymoderate
    References1027496,1183085,CVE-2016-10228
    Description:


    This update for glibc fixes the following issues:


    Advisory IDSUSE-SU-2021:3838-1
    ReleasedWed Dec 1 16:07:54 2021
    SummarySecurity update for ruby2.5
    Typesecurity
    Severityimportant
    References1188160,1188161,1190375,CVE-2021-31799,CVE-2021-31810,CVE-2021-32066
    Description:

    This update for ruby2.5 fixes the following issues:


    Advisory IDSUSE-RU-2021:3870-1
    ReleasedThu Dec 2 07:11:50 2021
    SummaryRecommended update for libzypp, zypper
    Typerecommended
    Severitymoderate
    References1190356,1191286,1191324,1191370,1191609,1192337,1192436
    Description:

    This update for libzypp, zypper fixes the following issues:
    libzypp:


    zypper:


    Advisory IDSUSE-RU-2021:3872-1
    ReleasedThu Dec 2 07:25:55 2021
    SummaryRecommended update for cracklib
    Typerecommended
    Severitymoderate
    References1191736
    Description:

    This update for cracklib fixes the following issues:


    Advisory IDSUSE-RU-2021:3883-1
    ReleasedThu Dec 2 11:47:07 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:
    Update timezone to 2021e (bsc#1177460)


    Advisory IDSUSE-SU-2021:3888-1
    ReleasedFri Dec 3 09:47:42 2021
    SummarySecurity update for xen
    Typesecurity
    Severitymoderate
    References1027519,1191363,1192554,1192557,1192559,CVE-2021-28702,CVE-2021-28704,CVE-2021-28705,CVE-2021-28706,CVE-2021-28707,CVE-2021-28708,CVE-2021-28709
    Description:

    This update for xen fixes the following issues:



    Advisory IDSUSE-RU-2021:3891-1
    ReleasedFri Dec 3 10:21:49 2021
    SummaryRecommended update for keyutils
    Typerecommended
    Severitymoderate
    References1029961,1113013,1187654
    Description:

    This update for keyutils fixes the following issues:


    keyutils was updated to 1.6.3 (jsc#SLE-20016):

    Updated to 1.6:

    Updated to 1.5.11 (bsc#1113013)


    Advisory IDSUSE-SU-2021:3899-1
    ReleasedFri Dec 3 11:27:41 2021
    SummarySecurity update for aaa_base
    Typesecurity
    Severitymoderate
    References1162581,1174504,1191563,1192248
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2021:3933-1
    ReleasedMon Dec 6 11:35:17 2021
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1094840,1133021,1152489,1169263,1170269,1188601,1190523,1190795,1191790,1191851,1191958,1191961,1191980,1192045,1192229,1192273,1192328,1192718,1192740,1192745,1192750,1192753,1192781,1192802,1192896,1192906,1192918,CVE-2021-0941,CVE-2021-20322,CVE-2021-31916,CVE-2021-34981,CVE-2021-37159,CVE-2021-43389
    Description:



    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    The following security bugs were fixed:


    You can reenable via systemctl setting /proc/sys/kernel/unprivileged_bpf_disabled to 0. (kernel.unprivileged_bpf_disabled = 0)

    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2021:3934-1
    ReleasedMon Dec 6 13:22:27 2021
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1193170,CVE-2021-43527
    Description:

    This update for mozilla-nss fixes the following issues:
    Update to version 3.68.1:


    Advisory IDSUSE-SU-2021:3945-1
    ReleasedMon Dec 6 14:56:55 2021
    SummarySecurity update for python-Babel
    Typesecurity
    Severityimportant
    References1185768,CVE-2021-42771
    Description:

    This update for python-Babel fixes the following issues:


    Advisory IDSUSE-SU-2021:3946-1
    ReleasedMon Dec 6 14:57:42 2021
    SummarySecurity update for gmp
    Typesecurity
    Severitymoderate
    References1192717,CVE-2021-43618
    Description:

    This update for gmp fixes the following issues:


    Advisory IDSUSE-RU-2021:3986-1
    ReleasedFri Dec 10 06:09:11 2021
    SummaryRecommended update for suse-module-tools
    Typerecommended
    Severitymoderate
    References1187196
    Description:

    This update for suse-module-tools fixes the following issues:


    Advisory IDSUSE-RU-2021:4013-1
    ReleasedMon Dec 13 13:56:44 2021
    SummaryRecommended update for apparmor
    Typerecommended
    Severitymoderate
    References1191690
    Description:

    This update for apparmor fixes the following issue:


    Advisory IDSUSE-SU-2021:4015-1
    ReleasedMon Dec 13 17:16:00 2021
    SummarySecurity update for python3
    Typesecurity
    Severitymoderate
    References1180125,1183374,1183858,1185588,1187338,1187668,1189241,1189287,CVE-2021-3426,CVE-2021-3733,CVE-2021-3737
    Description:

    This update for python3 fixes the following issues:



    Advisory IDSUSE-RU-2021:4139-1
    ReleasedTue Dec 21 17:02:44 2021
    SummaryRecommended update for systemd
    Typerecommended
    Severitycritical
    References1193481,1193521
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2021:4141-1
    ReleasedWed Dec 22 05:22:23 2021
    SummaryRecommended update for dracut
    Typerecommended
    Severityimportant
    References1193512
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-RU-2021:4145-1
    ReleasedWed Dec 22 05:27:48 2021
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1161276
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-SU-2021:4154-1
    ReleasedWed Dec 22 11:02:38 2021
    SummarySecurity update for p11-kit
    Typesecurity
    Severityimportant
    References1180064,1187993,CVE-2020-29361
    Description:

    This update for p11-kit fixes the following issues:


    Advisory IDSUSE-SU-2021:4171-1
    ReleasedThu Dec 23 09:55:13 2021
    SummarySecurity update for runc
    Typesecurity
    Severitymoderate
    References1193436,CVE-2021-43784
    Description:

    This update for runc fixes the following issues:
    Update to runc v1.0.3.


    Advisory IDSUSE-RU-2021:4173-1
    ReleasedThu Dec 23 10:11:31 2021
    SummaryRecommended update for samba
    Typerecommended
    Severityimportant
    References1192849,CVE-2020-25717
    Description:

    This update for samba fixes the following issues:
    The username map advice from the CVE-2020-25717 advisory note has undesired side effects for the local nt token. Fallback to a SID/UID based mapping if the name based lookup fails (bsc#1192849).


    Advisory IDSUSE-RU-2021:4182-1
    ReleasedThu Dec 23 11:51:51 2021
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1192688
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-SU-2021:4192-1
    ReleasedTue Dec 28 10:39:50 2021
    SummarySecurity update for permissions
    Typesecurity
    Severitymoderate
    References1174504
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-RU-2022:2-1
    ReleasedMon Jan 3 08:27:18 2022
    SummaryRecommended update for lvm2
    Typerecommended
    Severitymoderate
    References1183905,1193181
    Description:

    This update for lvm2 fixes the following issues:


    Advisory IDSUSE-RU-2022:4-1
    ReleasedMon Jan 3 08:28:54 2022
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severitymoderate
    References1193480
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-RU-2022:7-1
    ReleasedMon Jan 3 08:45:52 2022
    SummaryRecommended update for grub2
    Typerecommended
    Severitymoderate
    References1071559,1177751,1189769,1189874,1191504
    Description:

    This update for grub2 fixes the following issues:


    Advisory IDSUSE-RU-2022:55-1
    ReleasedTue Jan 11 12:53:23 2022
    SummaryRecommended update for rsyslog
    Typerecommended
    Severitymoderate
    References1029961,1160414,1178490,1182653
    Description:

    This update for rsyslog fixes the following issues:









    Advisory IDSUSE-RU-2022:72-1
    ReleasedThu Jan 13 16:13:36 2022
    SummaryRecommended update for mozilla-nss and MozillaFirefox
    Typerecommended
    Severityimportant
    References1193845
    Description:

    This update for mozilla-nss and MozillaFirefox fix the following issues:
    mozilla-nss:

    MozillaFirefox:


    Advisory IDSUSE-RU-2022:84-1
    ReleasedMon Jan 17 04:40:30 2022
    SummaryRecommended update for dosfstools
    Typerecommended
    Severitymoderate
    References1172863,1188401
    Description:

    This update for dosfstools fixes the following issues:


    Advisory IDSUSE-RU-2022:92-1
    ReleasedMon Jan 17 20:59:15 2022
    SummaryRecommended update for rsyslog
    Typerecommended
    Severityimportant
    References1194593
    Description:

    This update for rsyslog fixes the following issues:


    Advisory IDSUSE-RU-2022:93-1
    ReleasedTue Jan 18 05:11:58 2022
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severityimportant
    References1192489
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2022:94-1
    ReleasedTue Jan 18 05:13:24 2022
    SummaryRecommended update for rpm
    Typerecommended
    Severityimportant
    References1180125,1193711
    Description:

    This update for rpm fixes the following issues:


    Advisory IDSUSE-RU-2022:125-1
    ReleasedWed Jan 19 05:03:22 2022
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1175892,1194162
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-SU-2022:141-1
    ReleasedThu Jan 20 13:47:16 2022
    SummarySecurity update for permissions
    Typesecurity
    Severitymoderate
    References1169614
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-SU-2022:178-1
    ReleasedTue Jan 25 14:16:23 2022
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1194251,1194362,1194474,1194476,1194477,1194478,1194479,1194480,CVE-2021-45960,CVE-2021-46143,CVE-2022-22822,CVE-2022-22823,CVE-2022-22824,CVE-2022-22825,CVE-2022-22826,CVE-2022-22827
    Description:

    This update for expat fixes the following issues:


    Advisory IDSUSE-SU-2022:184-1
    ReleasedTue Jan 25 18:20:56 2022
    SummarySecurity update for json-c
    Typesecurity
    Severityimportant
    References1171479,CVE-2020-12762
    Description:

    This update for json-c fixes the following issues:


    Advisory IDSUSE-SU-2022:197-1
    ReleasedWed Jan 26 07:40:52 2022
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1071995,1139944,1151927,1152489,1153275,1154353,1154355,1161907,1164565,1166780,1169514,1176242,1176536,1176544,1176545,1176546,1176548,1176558,1176559,1176940,1176956,1177440,1178270,1179211,1179424,1179426,1179427,1179599,1179960,1181148,1181507,1181710,1183534,1183540,1183897,1184209,1185726,1185902,1187541,1189126,1189158,1191271,1191793,1191876,1192267,1192507,1192511,1192569,1192606,1192845,1192847,1192877,1192946,1192969,1192987,1192990,1192998,1193002,1193042,1193169,1193255,1193306,1193318,1193349,1193440,1193442,1193660,1193669,1193727,1193767,1193901,1193927,1194001,1194087,1194094,1194302,1194516,1194517,1194529,1194888,1194985,CVE-2020-27820,CVE-2020-27825,CVE-2021-28711,CVE-2021-28712,CVE-2021-28713,CVE-2021-28714,CVE-2021-28715,CVE-2021-33098,CVE-2021-4001,CVE-2021-4002,CVE-2021-4083,CVE-2021-4135,CVE-2021-4149,CVE-2021-4197,CVE-2021-4202,CVE-2021-43975,CVE-2021-43976,CVE-2021-44733,CVE-2021-45485,CVE-2021-45486,CVE-2022-0185,CVE-2022-0322
    Description:



    The SUSE Linux Enterprise 15 SP2 LTSS kernel was updated to receive various security and bugfixes.
    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2022:203-1
    ReleasedWed Jan 26 14:13:45 2022
    SummaryRecommended update for cloud-init
    Typerecommended
    Severityimportant
    References1186004
    Description:

    This update for cloud-init fixes the following issues:

    From 21.1 + Azure: Support for VMs without ephemeral resource disks. (#800) [Johnson Shi] (LP: #1901011) + cc_keys_to_console: add option to disable key emission (#811) [Michael Hudson-Doyle] (LP: #1915460) + integration_tests: introduce lxd_use_exec mark (#802) + azure: case-insensitive UUID to avoid new IID during kernel upgrade (#798) (LP: #1835584) + stale.yml: don't ask submitters to reopen PRs (#816) + integration_tests: fix use of SSH agent within tox (#815) + integration_tests: add UPGRADE CloudInitSource (#812) + integration_tests: use unique MAC addresses for tests (#813) + Update .gitignore (#814) + Port apt cloud_tests to integration tests (#808) + integration_tests: fix test_gh626 on LXD VMs (#809) + Fix attempting to decode binary data in test_seed_random_data test (#806) + Remove wait argument from tests with session_cloud calls (#805) + Datasource for UpCloud (#743) [Antti Myyrä] + test_gh668: fix failure on LXD VMs (#801) + openstack: read the dynamic metadata group vendor_data2.json (#777) [Andrew Bogott] (LP: #1841104) + includedir in suoders can be prefixed by 'arroba' (#783) [Jordi Massaguer Pla] + [VMware] change default max wait time to 15s (#774) [xiaofengw-vmware] + Revert integration test associated with reverted #586 (#784) + Add jordimassaguerpla as contributor (#787) [Jordi Massaguer Pla] + Add Rick Harding to CLA signers (#792) [Rick Harding] + HACKING.rst: add clarifying note to LP CLA process section (#789) + Stop linting cloud_tests (#791) + cloud-tests: update cryptography requirement (#790) [Joshua Powers] + Remove 'remove-raise-on-failure' calls from integration_tests (#788) + Use more cloud defaults in integration tests (#757) + Adding self to cla signers (#776) [Andrew Bogott] + doc: avoid two warnings (#781) [Dan Kenigsberg] + Use proper spelling for Red Hat (#778) [Dan Kenigsberg] + Add antonyc to .github-cla-signers (#747) [Anton Chaporgin] + integration_tests: log image serial if available (#772) + [VMware] Support cloudinit raw data feature (#691) [xiaofengw-vmware] + net: Fix static routes to host in eni renderer (#668) [Pavel Abalikhin] + .travis.yml: don't run cloud_tests in CI (#756) + test_upgrade: add some missing commas (#769) + cc_seed_random: update documentation and fix integration test (#771) (LP: #1911227) + Fix test gh-632 test to only run on NoCloud (#770) (LP: #1911230) + archlinux: fix package upgrade command handling (#768) [Bao Trinh] + integration_tests: add integration test for LP: #1910835 (#761) + Fix regression with handling of IMDS ssh keys (#760) [Thomas Stringer] + integration_tests: log cloud-init version in SUT (#758) + Add ajmyyra as contributor (#742) [Antti Myyrä] + net_convert: add some missing help text (#755) + Missing IPV6_AUTOCONF=no to render sysconfig dhcp6 stateful on RHEL (#753) [Eduardo Otubo] + doc: document missing IPv6 subnet types (#744) [Antti Myyrä] + Add example configuration for datasource `AliYun` (#751) [Xiaoyu Zhong] + integration_tests: add SSH key selection settings (#754) + fix a typo in man page cloud-init.1 (#752) [Amy Chen] + network-config-format-v2.rst: add Netplan Passthrough section (#750) + stale: re-enable post holidays (#749) + integration_tests: port ca_certs tests from cloud_tests (#732) + Azure: Add telemetry for poll IMDS (#741) [Johnson Shi] + doc: move testing section from HACKING to its own doc (#739) + No longer allow integration test failures on travis (#738) + stale: fix error in definition (#740) + integration_tests: set log-cli-level to INFO by default (#737) + PULL_REQUEST_TEMPLATE.md: use backticks around commit message (#736) + stale: disable check for holiday break (#735) + integration_tests: log the path we collect logs into (#733) + .travis.yml: add (most) supported Python versions to CI (#734) + integration_tests: fix IN_PLACE CLOUD_INIT_SOURCE (#731) + cc_ca_certs: add RHEL support (#633) [cawamata] + Azure: only generate config for NICs with addresses (#709) [Thomas Stringer] + doc: fix CloudStack configuration example (#707) [Olivier Lemasle] + integration_tests: restrict test_lxd_bridge appropriately (#730) + Add integration tests for CLI functionality (#729) + Integration test for gh-626 (#728) + Some test_upgrade fixes (#726) + Ensure overriding test vars with env vars works for booleans (#727) + integration_tests: port lxd_bridge test from cloud_tests (#718) + Integration test for gh-632. (#725) + Integration test for gh-671 (#724) + integration-requirements.txt: bump pycloudlib commit (#723) + Drop unnecessary shebang from cmd/main.py (#722) [Eduardo Otubo] + Integration test for LP: #1813396 and #669 (#719) + integration_tests: include timestamp in log output (#720) + integration_tests: add test for LP: #1898997 (#713) + Add integration test for power_state_change module (#717) + Update documentation for network-config-format-v2 (#701) [ggiesen] + sandbox CA Cert tests to not require ca-certificates (#715) [Eduardo Otubo] + Add upgrade integration test (#693) + Integration test for 570 (#712) + Add ability to keep snapshotted images in integration tests (#711) + Integration test for pull #586 (#706) + integration_tests: introduce skipping of tests by OS (#702) + integration_tests: introduce IntegrationInstance.restart (#708) + Add lxd-vm to list of valid integration test platforms (#705) + Adding BOOTPROTO = dhcp to render sysconfig dhcp6 stateful on RHEL (#685) [Eduardo Otubo] + Delete image snapshots created for integration tests (#682) + Parametrize ssh_keys_provided integration test (#700) [lucasmoura] + Drop use_sudo attribute on IntegrationInstance (#694) [lucasmoura] + cc_apt_configure: add riscv64 as a ports arch (#687) [Dimitri John Ledkov] + cla: add xnox (#692) [Dimitri John Ledkov] + Collect logs from integration test runs (#675) From 20.4.1 + Revert 'ssh_util: handle non-default AuthorizedKeysFile config (#586)' From 20.4 + tox: avoid tox testenv subsvars for xenial support (#684) + Ensure proper root permissions in integration tests (#664) [James Falcon] + LXD VM support in integration tests (#678) [James Falcon] + Integration test for fallocate falling back to dd (#681) [James Falcon] + .travis.yml: correctly integration test the built .deb (#683) + Ability to hot-attach NICs to preprovisioned VMs before reprovisioning (#613) [aswinrajamannar] + Support configuring SSH host certificates. (#660) [Jonathan Lung] + add integration test for LP: #1900837 (#679) + cc_resizefs on FreeBSD: Fix _can_skip_ufs_resize (#655) [Mina Galić] (LP: #1901958, #1901958) + DataSourceAzure: push dmesg log to KVP (#670) [Anh Vo] + Make mount in place for tests work (#667) [James Falcon] + integration_tests: restore emission of settings to log (#657) + DataSourceAzure: update password for defuser if exists (#671) [Anh Vo] + tox.ini: only select 'ci' marked tests for CI runs (#677) + Azure helper: Increase Azure Endpoint HTTP retries (#619) [Johnson Shi] + DataSourceAzure: send failure signal on Azure datasource failure (#594) [Johnson Shi] + test_persistence: simplify VersionIsPoppedFromState (#674) + only run a subset of integration tests in CI (#672) + cli: add + -system param to allow validating system user-data on a machine (#575) + test_persistence: add VersionIsPoppedFromState test (#673) + introduce an upgrade framework and related testing (#659) + add + -no-tty option to gpg (#669) [Till Riedel] (LP: #1813396) + Pin pycloudlib to a working commit (#666) [James Falcon] + DataSourceOpenNebula: exclude SRANDOM from context output (#665) + cloud_tests: add hirsute release definition (#662) + split integration and cloud_tests requirements (#652) + faq.rst: add warning to answer that suggests running `clean` (#661) + Fix stacktrace in DataSourceRbxCloud if no metadata disk is found (#632) [Scott Moser] + Make wakeonlan Network Config v2 setting actually work (#626) [dermotbradley] + HACKING.md: unify network-refactoring namespace (#658) [Mina Galić] + replace usage of dmidecode with kenv on FreeBSD (#621) [Mina Galić] + Prevent timeout on travis integration tests. (#651) [James Falcon] + azure: enable pushing the log to KVP from the last pushed byte (#614) [Moustafa Moustafa] + Fix launch_kwargs bug in integration tests (#654) [James Falcon] + split read_fs_info into linux & freebsd parts (#625) [Mina Galić] + PULL_REQUEST_TEMPLATE.md: expand commit message section (#642) + Make some language improvements in growpart documentation (#649) [Shane Frasier] + Revert '.travis.yml: use a known-working version of lxd (#643)' (#650) + Fix not sourcing default 50-cloud-init ENI file on Debian (#598) [WebSpider] + remove unnecessary reboot from gpart resize (#646) [Mina Galić] + cloudinit: move dmi functions out of util (#622) [Scott Moser] + integration_tests: various launch improvements (#638) + test_lp1886531: don't assume /etc/fstab exists (#639) + Remove Ubuntu restriction from PR template (#648) [James Falcon] + util: fix mounting of vfat on *BSD (#637) [Mina Galić] + conftest: improve docstring for disable_subp_usage (#644) + doc: add example query commands to debug Jinja templates (#645) + Correct documentation and testcase data for some user-data YAML (#618) [dermotbradley] + Hetzner: Fix instance_id / SMBIOS serial comparison (#640) [Markus Schade] + .travis.yml: use a known-working version of lxd (#643) + tools/build-on-freebsd: fix comment explaining purpose of the script (#635) [Mina Galić] + Hetzner: initialize instance_id from system-serial-number (#630) [Markus Schade] (LP: #1885527) + Explicit set IPV6_AUTOCONF and IPV6_FORCE_ACCEPT_RA on static6 (#634) [Eduardo Otubo] + get_interfaces: don't exclude Open vSwitch bridge/bond members (#608) [Lukas Märdian] (LP: #1898997) + Add config modules for controlling IBM PowerVM RMC. (#584) [Aman306] (LP: #1895979) + Update network config docs to clarify MAC address quoting (#623) [dermotbradley] + gentoo: fix hostname rendering when value has a comment (#611) [Manuel Aguilera] + refactor integration testing infrastructure (#610) [James Falcon] + stages: don't reset permissions of cloud-init.log every boot (#624) (LP: #1900837) + docs: Add how to use cloud-localds to boot qemu (#617) [Joshua Powers] + Drop vestigial update_resolve_conf_file function (#620) [Scott Moser] + cc_mounts: correctly fallback to dd if fallocate fails (#585) (LP: #1897099) + .travis.yml: add integration-tests to Travis matrix (#600) + ssh_util: handle non-default AuthorizedKeysFile config (#586) [Eduardo Otubo] + Multiple file fix for AuthorizedKeysFile config (#60) [Eduardo Otubo] + bddeb: new + -packaging-branch argument to pull packaging from branch (#576) [Paride Legovini] + Add more integration tests (#615) [lucasmoura] + DataSourceAzure: write marker file after report ready in preprovisioning (#590) [Johnson Shi] + integration_tests: emit settings to log during setup (#601) + integration_tests: implement citest tests run in Travis (#605) + Add Azure support to integration test framework (#604) [James Falcon] + openstack: consider product_name as valid chassis tag (#580) [Adrian Vladu] (LP: #1895976) + azure: clean up and refactor report_diagnostic_event (#563) [Johnson Shi] + net: add the ability to blacklist network interfaces based on driver during enumeration of physical network devices (#591) [Anh Vo] + integration_tests: don't error on cloud-init failure (#596) + integration_tests: improve cloud-init.log assertions (#593) + conftest.py: remove top-level import of httpretty (#599) + tox.ini: add integration-tests testenv definition (#595) + PULL_REQUEST_TEMPLATE.md: empty checkboxes need a space (#597) + add integration test for LP: #1886531 (#592) + Initial implementation of integration testing infrastructure (#581) [James Falcon] + Fix name of ntp and chrony service on CentOS and RHEL. (#589) [Scott Moser] (LP: #1897915) + Adding a PR template (#587) [James Falcon] + Azure parse_network_config uses fallback cfg when generate IMDS network cfg fails (#549) [Johnson Shi] + features: refresh docs for easier out-of-context reading (#582) + Fix typo in resolv_conf module's description (#578) [Wacław Schiller] + cc_users_groups: minor doc formatting fix (#577) + Fix typo in disk_setup module's description (#579) [Wacław Schiller] + Add vendor-data support to seedfrom parameter for NoCloud and OVF (#570) [Johann Queuniet] + boot.rst: add First Boot Determination section (#568) (LP: #1888858) + opennebula.rst: minor readability improvements (#573) [Mina Galić] + cloudinit: remove unused LOG variables (#574) + create a shutdown_command method in distro classes (#567) [Emmanuel Thomé] + user_data: remove unused constant (#566) + network: Fix type and respect name when rendering vlan in sysconfig. (#541) [Eduardo Otubo] (LP: #1788915, #1826608) + Retrieve SSH keys from IMDS first with OVF as a fallback (#509) [Thomas Stringer] + Add jqueuniet as contributor (#569) [Johann Queuniet] + distros: minor typo fix (#562) + Bump the integration-requirements versioned dependencies (#565) [Paride Legovini] + network-config-format-v1: fix typo in nameserver example (#564) [Stanislas] + Run cloud-init-local.service after the hv_kvp_daemon (#505) [Robert Schweikert] + Add method type hints for Azure helper (#540) [Johnson Shi] + systemd: add Before=shutdown.target when Conflicts=shutdown.target is used (#546) [Paride Legovini] + LXD: detach network from profile before deleting it (#542) [Paride Legovini] (LP: #1776958) + redhat spec: add missing BuildRequires (#552) [Paride Legovini] + util: remove debug statement (#556) [Joshua Powers] + Fix cloud config on chef example (#551) [lucasmoura] From 20.3 + Azure: Add netplan driver filter when using hv_netvsc driver (#539) [James Falcon] (LP: #1830740) + query: do not handle non-decodable non-gzipped content (#543) + DHCP sandboxing failing on noexec mounted /var/tmp (#521) [Eduardo Otubo] + Update the list of valid ssh keys. (#487) [Ole-Martin Bratteng] (LP: #1877869) + cmd: cloud-init query to handle compressed userdata (#516) (LP: #1889938) + Pushing cloud-init log to the KVP (#529) [Moustafa Moustafa] + Add Alpine Linux support. (#535) [dermotbradley] + Detect kernel version before swap file creation (#428) [Eduardo Otubo] + cli: add devel make-mime subcommand (#518) + user-data: only verify mime-types for TYPE_NEEDED and x-shellscript (#511) (LP: #1888822) + DataSourceOracle: retry twice (and document why we retry at all) (#536) + Refactor Azure report ready code (#468) [Johnson Shi] + tox.ini: pin correct version of httpretty in xenial{,-dev} envs (#531) + Support Oracle IMDSv2 API (#528) [James Falcon] + .travis.yml: run a doc build during CI (#534) + doc/rtd/topics/datasources/ovf.rst: fix doc8 errors (#533) + Fix 'Users and Groups' configuration documentation (#530) [sshedi] + cloudinit.distros: update docstrings of add_user and create_user (#527) + Fix headers for device types in network v2 docs (#532) [Caleb Xavier Berger] + Add AlexBaranowski as contributor (#508) [Aleksander Baranowski] + DataSourceOracle: refactor to use only OPC v1 endpoint (#493) + .github/workflows/stale.yml: s/Josh/Rick/ (#526) + Fix a typo in apt pipelining module (#525) [Xiao Liang] + test_util: parametrize devlist tests (#523) [James Falcon] + Recognize LABEL_FATBOOT labels (#513) [James Falcon] (LP: #1841466) + Handle additional identifier for SLES For HPC (#520) [Robert Schweikert] + Revert 'test-requirements.txt: pin pytest to <6 (#512)' (#515) + test-requirements.txt: pin pytest to <6 (#512) + Add 'tsanghan' as contributor (#504) [tsanghan] + fix brpm building (LP: #1886107) + Adding eandersson as a contributor (#502) [Erik Olof Gunnar Andersson] + azure: disable bouncing hostname when setting hostname fails (#494) [Anh Vo] + VMware: Support parsing DEFAULT-RUN-POST-CUST-SCRIPT (#441) [xiaofengw-vmware] + DataSourceAzure: Use ValueError when JSONDecodeError is not available (#490) [Anh Vo] + cc_ca_certs.py: fix blank line problem when removing CAs and adding new one (#483) [dermotbradley] + freebsd: py37-serial is now py37-pyserial (#492) [Gonéri Le Bouder] + ssh exit with non-zero status on disabled user (#472) [Eduardo Otubo] (LP: #1170059) + cloudinit: remove global disable of pylint W0107 and fix errors (#489) + networking: refactor wait_for_physdevs from cloudinit.net (#466) (LP: #1884626) + HACKING.rst: add pytest.param pytest gotcha (#481) + cloudinit: remove global disable of pylint W0105 and fix errors (#480) + Fix two minor warnings (#475) + test_data: fix faulty patch (#476) + cc_mounts: handle missing fstab (#484) (LP: #1886531) + LXD cloud_tests: support more lxd image formats (#482) [Paride Legovini] + Add update_etc_hosts as default module on *BSD (#479) [Adam Dobrawy] + cloudinit: fix tip-pylint failures and bump pinned pylint version (#478) + Added BirknerAlex as contributor and sorted the file (#477) [Alexander Birkner] + Update list of types of modules in cli.rst [saurabhvartak1982] + tests: use markers to configure disable_subp_usage (#473) + Add mention of vendor-data to no-cloud format documentation (#470) [Landon Kirk] + Fix broken link to OpenStack metadata service docs (#467) [Matt Riedemann] + Disable ec2 mirror for non aws instances (#390) [lucasmoura] (LP: #1456277) + cloud_tests: don't pass + -python-version to read-dependencies (#465) + networking: refactor is_physical from cloudinit.net (#457) (LP: #1884619) + Enable use of the caplog fixture in pytest tests, and add a cc_final_message test using it (#461) + RbxCloud: Add support for FreeBSD (#464) [Adam Dobrawy] + Add schema for cc_chef module (#375) [lucasmoura] (LP: #1858888) + test_util: add (partial) testing for util.mount_cb (#463) + .travis.yml: revert to installing ubuntu-dev-tools (#460) + HACKING.rst: add details of net refactor tracking (#456) + .travis.yml: rationalise installation of dependencies in host (#449) + Add dermotbradley as contributor. (#458) [dermotbradley] + net/networking: remove unused functions/methods (#453) + distros.networking: initial implementation of layout (#391) + cloud-init.service.tmpl: use 'rhel' instead of 'redhat' (#452) + Change from redhat to rhel in systemd generator tmpl (#450) [Eduardo Otubo] + Hetzner: support reading user-data that is base64 encoded. (#448) [Scott Moser] (LP: #1884071) + HACKING.rst: add strpath gotcha to testing gotchas section (#446) + cc_final_message: don't create directories when writing boot-finished (#445) (LP: #1883903) + .travis.yml: only store new schroot if something has changed (#440) + util: add ensure_dir_exists parameter to write_file (#443) + printing the error stream of the dhclient process before killing it (#369) [Moustafa Moustafa] + Fix link to the MAAS documentation (#442) [Paride Legovini] (LP: #1883666) + RPM build: disable the dynamic mirror URLs when using a proxy (#437) [Paride Legovini] + util: rename write_file's copy_mode parameter to preserve_mode (#439) + .travis.yml: use $TRAVIS_BUILD_DIR for lxd_image caching (#438) + cli.rst: alphabetise devel subcommands and add net-convert to list (#430) + Default to UTF-8 in /var/log/cloud-init.log (#427) [James Falcon] + travis: cache the chroot we use for package builds (#429) + test: fix all flake8 E126 errors (#425) [Joshua Powers] + Fixes KeyError for bridge with no 'parameters:' setting (#423) [Brian Candler] (LP: #1879673) + When tools.conf does not exist, running cmd 'vmware-toolbox-cmd config get deployPkg enable-custom-scripts', the return code will be EX_UNAVAILABLE(69), on this condition, it should not take it as error. (#413) [chengcheng-chcheng] + Document CloudStack data-server well-known hostname (#399) [Gregor Riepl] + test: move conftest.py to top-level, to cover tests/ also (#414) + Replace cc_chef is_installed with use of subp.is_exe. (#421) [Scott Moser] + Move runparts to subp. (#420) [Scott Moser] + Move subp into its own module. (#416) [Scott Moser] + readme: point at travis-ci.com (#417) [Joshua Powers] + New feature flag functionality and fix includes failing silently (#367) [James Falcon] (LP: #1734939) + Enhance poll imds logging (#365) [Moustafa Moustafa] + test: fix all flake8 E121 and E123 errors (#404) [Joshua Powers] + test: fix all flake8 E241 (#403) [Joshua Powers] + test: ignore flake8 E402 errors in main.py (#402) [Joshua Powers] + cc_grub_dpkg: determine idevs in more robust manner with grub-probe (#358) [Matthew Ruffell] (LP: #1877491) + test: fix all flake8 E741 errors (#401) [Joshua Powers] + tests: add groovy integration tests for ubuntu (#400) + Enable chef_license support for chef infra client (#389) [Bipin Bachhao] + testing: use flake8 again (#392) [Joshua Powers] + enable Puppet, Chef mcollective in default config (#385) [Mina Galić (deprecated: Igor Galić)] (LP: #1880279) + HACKING.rst: introduce .net + > Networking refactor section (#384) + Travis: do not install python3-contextlib2 (dropped dependency) (#388) [Paride Legovini] + HACKING: mention that .github-cla-signers is alpha-sorted (#380) + Add bipinbachhao as contributor (#379) [Bipin Bachhao] + cc_snap: validate that assertions property values are strings (#370) + conftest: implement partial disable_subp_usage (#371) + test_resolv_conf: refresh stale comment (#374) + cc_snap: apply validation to snap.commands properties (#364) + make finding libc platform independent (#366) [Mina Galić (deprecated: Igor Galić)] + doc/rtd/topics/faq: Updates LXD docs links to current site (#368) [TomP] + templater: drop Jinja Python 2 compatibility shim (#353) + cloudinit: minor pylint fixes (#360) + cloudinit: remove unneeded __future__ imports (#362) + migrating momousta lp user to Moustafa-Moustafa GitHub user (#361) [Moustafa Moustafa] + cloud_tests: emit dots on Travis while fetching images (#347) + Add schema to apt configure config (#357) [lucasmoura] (LP: #1858884) + conftest: add docs and tests regarding CiTestCase's subp functionality (#343) + analyze/dump: refactor shared string into variable (#350) + doc: update boot.rst with correct timing of runcmd (#351) + HACKING.rst: change contact info to Rick Harding (#359) [lucasmoura] + HACKING.rst: guide people to add themselves to the CLA file (#349) + HACKING.rst: more unit testing documentation (#354) + .travis.yml: don't run lintian during integration test package builds (#352) + Add test to ensure docs examples are valid cloud-init configs (#355) [James Falcon] (LP: #1876414) + make suse and sles support 127.0.1.1 (#336) [chengcheng-chcheng] + Create tests to validate schema examples (#348) [lucasmoura] (LP: #1876412) + analyze/dump: add support for Amazon Linux 2 log lines (#346) (LP: #1876323) + bsd: upgrade support (#305) [Gonéri Le Bouder] + Add lucasmoura as contributor (#345) [lucasmoura] + Add 'therealfalcon' as contributor (#344) [James Falcon] + Adapt the package building scripts to use Python 3 (#231) [Paride Legovini] + DataSourceEc2: use metadata's NIC ordering to determine route-metrics (#342) (LP: #1876312) + .travis.yml: introduce caching (#329) + cc_locale: introduce schema (#335) + doc/rtd/conf.py: bump copyright year to 2020 (#341) + yum_add_repo: Add Centos to the supported distro list (#340)


    Advisory IDSUSE-RU-2022:228-1
    ReleasedMon Jan 31 06:07:52 2022
    SummaryRecommended update for boost
    Typerecommended
    Severitymoderate
    References1194522
    Description:

    This update for boost fixes the following issues:


    Advisory IDSUSE-SU-2022:287-1
    ReleasedTue Feb 1 17:54:57 2022
    SummarySecurity update for samba
    Typesecurity
    Severitycritical
    References1194859,CVE-2021-44142
    Description:

    This update for samba fixes the following issues:


    Advisory IDSUSE-RU-2022:322-1
    ReleasedThu Feb 3 14:03:19 2022
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1192685,1194716
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-SU-2022:334-1
    ReleasedFri Feb 4 09:30:58 2022
    SummarySecurity update for containerd, docker
    Typesecurity
    Severitymoderate
    References1191015,1191121,1191334,1191434,1193273,CVE-2021-41089,CVE-2021-41091,CVE-2021-41092,CVE-2021-41103,CVE-2021-41190
    Description:

    This update for containerd, docker fixes the following issues:


    Advisory IDSUSE-RU-2022:346-1
    ReleasedTue Feb 8 12:20:33 2022
    SummaryRecommended update for wicked
    Typerecommended
    Severitymoderate
    References1029961,1057592,1156920,1160654,1177215,1178357,1181163,1181186,1181812,1182227,1183407,1183495,1188019,1189560,1192164,1192311,1192353,1194392,954329
    Description:

    This update for wicked fixes the following issues:


    Advisory IDSUSE-RU-2022:348-1
    ReleasedTue Feb 8 13:02:20 2022
    SummaryRecommended update for libzypp
    Typerecommended
    Severityimportant
    References1193007,1193488,1194597,1194898,954813
    Description:

    This update for libzypp fixes the following issues:


    Advisory IDSUSE-SU-2022:365-1
    ReleasedThu Feb 10 17:36:13 2022
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severitycritical
    References1177599,1183405,1185377,1188605,1193096,1193506,1193861,1193864,1193867,1194048,1194227,1194880,1195009,1195065,1195184,1195254,CVE-2021-22600,CVE-2021-39648,CVE-2021-39657,CVE-2021-45095,CVE-2022-0330,CVE-2022-0435,CVE-2022-22942
    Description:


    The SUSE Linux Enterprise 15 SP2 LTSS kernel was updated receive various security and bugfixes.
    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2022:368-1
    ReleasedThu Feb 10 20:29:26 2022
    SummaryRecommended update for grub2
    Typerecommended
    Severitymoderate
    References1187645,1193532
    Description:

    This update for grub2 fixes the following issues:


    Advisory IDSUSE-SU-2022:467-1
    ReleasedThu Feb 17 09:51:37 2022
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1194576,1194581,1194588,CVE-2022-23033,CVE-2022-23034,CVE-2022-23035
    Description:

    This update for xen fixes the following issues:


    Advisory IDSUSE-RU-2022:476-1
    ReleasedThu Feb 17 10:31:35 2022
    SummaryRecommended update for nfs-utils
    Typerecommended
    Severitymoderate
    References1194661
    Description:

    This update for nfs-utils fixes the following issues:


    Advisory IDSUSE-SU-2022:498-1
    ReleasedFri Feb 18 10:46:56 2022
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1195054,1195217,CVE-2022-23852,CVE-2022-23990
    Description:

    This update for expat fixes the following issues:


    Advisory IDSUSE-RU-2022:511-1
    ReleasedFri Feb 18 12:41:53 2022
    SummaryRecommended update for coreutils
    Typerecommended
    Severitymoderate
    References1082318,1189152
    Description:

    This update for coreutils fixes the following issues:


    Advisory IDSUSE-RU-2022:523-1
    ReleasedFri Feb 18 12:49:09 2022
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1193759,1193841
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2022:604-1
    ReleasedTue Mar 1 07:13:50 2022
    SummaryRecommended update for rsyslog
    Typerecommended
    Severitylow
    References1194669
    Description:

    This update for rsyslog fixes the following issues:


    Advisory IDSUSE-RU-2022:674-1
    ReleasedWed Mar 2 13:24:36 2022
    SummaryRecommended update for yast2-network
    Typerecommended
    Severitymoderate
    References1187512
    Description:

    This update for yast2-network fixes the following issues:


    Advisory IDSUSE-RU-2022:682-1
    ReleasedThu Mar 3 11:37:03 2022
    SummaryRecommended update for supportutils-plugin-suse-public-cloud
    Typerecommended
    Severityimportant
    References1195095,1195096
    Description:

    This update for supportutils-plugin-suse-public-cloud fixes the following issues:


    Advisory IDSUSE-RU-2022:692-1
    ReleasedThu Mar 3 15:46:47 2022
    SummaryRecommended update for filesystem
    Typerecommended
    Severitymoderate
    References1190447
    Description:

    This update for filesystem fixes the following issues:


    Advisory IDSUSE-RU-2022:701-1
    ReleasedThu Mar 3 17:45:33 2022
    SummaryRecommended update for sudo
    Typerecommended
    Severitymoderate
    References1181703
    Description:

    This update for sudo fixes the following issues:


    Advisory IDSUSE-SU-2022:702-1
    ReleasedThu Mar 3 18:22:59 2022
    SummarySecurity update for cyrus-sasl
    Typesecurity
    Severityimportant
    References1196036,CVE-2022-24407
    Description:

    This update for cyrus-sasl fixes the following issues:


    Advisory IDSUSE-SU-2022:713-1
    ReleasedFri Mar 4 09:34:17 2022
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1196025,1196026,1196168,1196169,1196171,CVE-2022-25235,CVE-2022-25236,CVE-2022-25313,CVE-2022-25314,CVE-2022-25315
    Description:

    This update for expat fixes the following issues:


    Advisory IDSUSE-SU-2022:717-1
    ReleasedFri Mar 4 09:45:20 2022
    SummarySecurity update for gnutls
    Typesecurity
    Severitymoderate
    References1196167,CVE-2021-4209
    Description:

    This update for gnutls fixes the following issues:


    Advisory IDSUSE-SU-2022:720-1
    ReleasedFri Mar 4 10:20:28 2022
    SummarySecurity update for containerd
    Typesecurity
    Severitymoderate
    References1196441,CVE-2022-23648
    Description:

    This update for containerd fixes the following issues:


    Advisory IDSUSE-SU-2022:736-1
    ReleasedFri Mar 4 14:51:57 2022
    SummarySecurity update for vim
    Typesecurity
    Severityimportant
    References1190533,1190570,1191893,1192478,1192481,1193294,1193298,1194216,1194556,1195004,1195066,1195126,1195202,1195356,CVE-2021-3778,CVE-2021-3796,CVE-2021-3872,CVE-2021-3927,CVE-2021-3928,CVE-2021-3984,CVE-2021-4019,CVE-2021-4193,CVE-2021-46059,CVE-2022-0318,CVE-2022-0319,CVE-2022-0351,CVE-2022-0361,CVE-2022-0413
    Description:

    This update for vim fixes the following issues:


    Advisory IDSUSE-SU-2022:759-1
    ReleasedTue Mar 8 19:05:12 2022
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1189126,1191580,1192483,1194516,1195254,1195286,1195516,1195543,1195612,1195701,1195897,1195905,1195908,1195947,1195949,1195987,1195995,1196079,1196095,1196132,1196155,1196235,1196584,1196601,1196612,1196776,CVE-2021-44879,CVE-2022-0001,CVE-2022-0002,CVE-2022-0487,CVE-2022-0492,CVE-2022-0516,CVE-2022-0617,CVE-2022-0644,CVE-2022-0847,CVE-2022-24448,CVE-2022-24958,CVE-2022-24959,CVE-2022-25258,CVE-2022-25375
    Description:

    The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes.

    Transient execution side-channel attacks attacking the Branch History Buffer (BHB), named 'Branch Target Injection' and 'Intra-Mode Branch History Injection' are now mitigated.
    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2022:774-1
    ReleasedWed Mar 9 10:52:10 2022
    SummarySecurity update for tcpdump
    Typesecurity
    Severitymoderate
    References1195825,CVE-2018-16301
    Description:

    This update for tcpdump fixes the following issues:


    Advisory IDSUSE-RU-2022:788-1
    ReleasedThu Mar 10 11:21:04 2022
    SummaryRecommended update for libzypp, zypper
    Typerecommended
    Severitymoderate
    References1195326
    Description:

    This update for libzypp, zypper fixes the following issues:


    Advisory IDSUSE-RU-2022:789-1
    ReleasedThu Mar 10 11:22:05 2022
    SummaryRecommended update for update-alternatives
    Typerecommended
    Severitymoderate
    References1195654
    Description:

    This update for update-alternatives fixes the following issues:


    Advisory IDSUSE-RU-2022:792-1
    ReleasedThu Mar 10 11:58:18 2022
    SummaryRecommended update for suse-build-key
    Typerecommended
    Severitymoderate
    References1194845,1196494,1196495
    Description:

    This update for suse-build-key fixes the following issues:


    Advisory IDSUSE-SU-2022:805-1
    ReleasedThu Mar 10 18:05:31 2022
    SummarySecurity update for openssh
    Typesecurity
    Severityimportant
    References1190975,CVE-2021-41617
    Description:

    This update for openssh fixes the following issues:


    Advisory IDSUSE-RU-2022:808-1
    ReleasedFri Mar 11 06:07:58 2022
    SummaryRecommended update for procps
    Typerecommended
    Severitymoderate
    References1195468
    Description:

    This update for procps fixes the following issues:


    Advisory IDSUSE-SU-2022:832-1
    ReleasedMon Mar 14 17:27:03 2022
    SummarySecurity update for glibc
    Typesecurity
    Severityimportant
    References1193625,1194640,1194768,1194770,1195560,CVE-2015-8985,CVE-2021-3999,CVE-2022-23218,CVE-2022-23219
    Description:


    glibc was updated to fix the following issues:
    Security issues fixed:


    Also the following bug was fixed:


    Advisory IDSUSE-SU-2022:844-1
    ReleasedTue Mar 15 11:33:57 2022
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1196025,1196784,CVE-2022-25236
    Description:

    This update for expat fixes the following issues:


    Advisory IDSUSE-SU-2022:845-1
    ReleasedTue Mar 15 11:40:50 2022
    SummarySecurity update for chrony
    Typesecurity
    Severitymoderate
    References1099272,1115529,1128846,1162964,1172113,1173277,1174075,1174911,1180689,1181826,1187906,1190926,1194229,CVE-2020-14367
    Description:

    This update for chrony fixes the following issues:
    Chrony was updated to 4.1, bringing features and bugfixes.
    Update to 4.1
    * Add support for NTS servers specified by IP address (matching Subject Alternative Name in server certificate) * Add source-specific configuration of trusted certificates * Allow multiple files and directories with trusted certificates * Allow multiple pairs of server keys and certificates * Add copy option to server/pool directive * Increase PPS lock limit to 40% of pulse interval * Perform source selection immediately after loading dump files * Reload dump files for addresses negotiated by NTS-KE server * Update seccomp filter and add less restrictive level * Restart ongoing name resolution on online command * Fix dump files to not include uncorrected offset * Fix initstepslew to accept time from own NTP clients * Reset NTP address and port when no longer negotiated by NTS-KE server



    Update to 4.0
    - Enhancements
    - Add support for Network Time Security (NTS) authentication - Add support for AES-CMAC keys (AES128, AES256) with Nettle - Add authselectmode directive to control selection of unauthenticated sources - Add binddevice, bindacqdevice, bindcmddevice directives - Add confdir directive to better support fragmented configuration - Add sourcedir directive and 'reload sources' command to support dynamic NTP sources specified in files - Add clockprecision directive - Add dscp directive to set Differentiated Services Code Point (DSCP) - Add -L option to limit log messages by severity - Add -p option to print whole configuration with included files - Add -U option to allow start under non-root user - Allow maxsamples to be set to 1 for faster update with -q/-Q option - Avoid replacing NTP sources with sources that have unreachable address - Improve pools to repeat name resolution to get 'maxsources' sources - Improve source selection with trusted sources - Improve NTP loop test to prevent synchronisation to itself - Repeat iburst when NTP source is switched from offline state to online - Update clock synchronisation status and leap status more frequently - Update seccomp filter - Add 'add pool' command - Add 'reset sources' command to drop all measurements - Add authdata command to print details about NTP authentication - Add selectdata command to print details about source selection - Add -N option and sourcename command to print original names of sources - Add -a option to some commands to print also unresolved sources - Add -k, -p, -r options to clients command to select, limit, reset data
    - Bug fixes
    - Don’t set interface for NTP responses to allow asymmetric routing - Handle RTCs that don’t support interrupts - Respond to command requests with correct address on multihomed hosts - Removed features - Drop support for RIPEMD keys (RMD128, RMD160, RMD256, RMD320) - Drop support for long (non-standard) MACs in NTPv4 packets (chrony 2.x clients using non-MD5/SHA1 keys need to use option 'version 3') - Drop support for line editing with GNU Readline


    Update to 3.5.1:
    * Create new file when writing pidfile (CVE-2020-14367, bsc#1174911)





    Update to 3.5:




    Update to version 3.4
    * Enhancements
    + Add filter option to server/pool/peer directive + Add minsamples and maxsamples options to hwtimestamp directive + Add support for faster frequency adjustments in Linux 4.19 + Change default pidfile to /var/run/chrony/chronyd.pid to allow chronyd without root privileges to remove it on exit + Disable sub-second polling intervals for distant NTP sources + Extend range of supported sub-second polling intervals + Get/set IPv4 destination/source address of NTP packets on FreeBSD + Make burst options and command useful with short polling intervals + Modify auto_offline option to activate when sending request failed + Respond from interface that received NTP request if possible + Add onoffline command to switch between online and offline state according to current system network configuration + Improve example NetworkManager dispatcher script
    * Bug fixes
    + Avoid waiting in Linux getrandom system call + Fix PPS support on FreeBSD and NetBSD
    Update to version 3.3
    * Enhancements:
    + Add burst option to server/pool directive + Add stratum and tai options to refclock directive + Add support for Nettle crypto library + Add workaround for missing kernel receive timestamps on Linux + Wait for late hardware transmit timestamps + Improve source selection with unreachable sources + Improve protection against replay attacks on symmetric mode + Allow PHC refclock to use socket in /var/run/chrony + Add shutdown command to stop chronyd + Simplify format of response to manual list command + Improve handling of unknown responses in chronyc
    * Bug fixes:
    + Respond to NTPv1 client requests with zero mode + Fix -x option to not require CAP_SYS_TIME under non-root user + Fix acquisitionport directive to work with privilege separation + Fix handling of socket errors on Linux to avoid high CPU usage + Fix chronyc to not get stuck in infinite loop after clock step


    Advisory IDSUSE-RU-2022:861-1
    ReleasedTue Mar 15 23:31:21 2022
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1182959,1195149,1195792,1195856
    Description:

    This update for openssl-1_1 fixes the following issues:
    openssl-1_1:

    glibc:
    linux-glibc-devel:

    libxcrypt:

    zlib:


    Advisory IDSUSE-RU-2022:867-1
    ReleasedWed Mar 16 07:14:44 2022
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1193805
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2022:884-1
    ReleasedThu Mar 17 09:47:43 2022
    SummaryRecommended update for python-jsonschema, python-rfc3987, python-strict-rfc3339
    Typerecommended
    Severitymoderate
    References1082318
    Description:

    This update for python-jsonschema, python-rfc3987, python-strict-rfc3339 fixes the following issues:











    Advisory IDSUSE-RU-2022:888-1
    ReleasedThu Mar 17 10:56:42 2022
    SummaryRecommended update for avahi
    Typerecommended
    Severitymoderate
    References1179060,1194561,1195614,1196282
    Description:

    This update for avahi fixes the following issues:


    Advisory IDSUSE-RU-2022:936-1
    ReleasedTue Mar 22 18:10:17 2022
    SummaryRecommended update for filesystem and systemd-rpm-macros
    Typerecommended
    Severitymoderate
    References1196275,1196406
    Description:

    This update for filesystem and systemd-rpm-macros fixes the following issues:
    filesystem:


    systemd-rpm-macros:


    Advisory IDSUSE-SU-2022:946-1
    ReleasedThu Mar 24 15:19:49 2022
    SummarySecurity update for bind
    Typesecurity
    Severityimportant
    References1197135,CVE-2021-25220
    Description:

    This update for bind fixes the following issues:


    Advisory IDSUSE-RU-2022:1021-1
    ReleasedTue Mar 29 13:24:21 2022
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1195899
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2022:1032-1
    ReleasedTue Mar 29 18:41:26 2022
    SummaryRecommended update for openssh
    Typerecommended
    Severitymoderate
    References1179465
    Description:

    This update for openssh fixes the following issue:


    Advisory IDSUSE-SU-2022:1040-1
    ReleasedWed Mar 30 09:40:58 2022
    SummarySecurity update for protobuf
    Typesecurity
    Severitymoderate
    References1195258,CVE-2021-22570
    Description:

    This update for protobuf fixes the following issues:


    Advisory IDSUSE-RU-2022:1047-1
    ReleasedWed Mar 30 16:20:56 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1196093,1197024
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2022:1061-1
    ReleasedWed Mar 30 18:27:06 2022
    SummarySecurity update for zlib
    Typesecurity
    Severityimportant
    References1197459,CVE-2018-25032
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-SU-2022:1073-1
    ReleasedFri Apr 1 11:45:01 2022
    SummarySecurity update for yaml-cpp
    Typesecurity
    Severitymoderate
    References1121227,1121230,1122004,1122021,CVE-2018-20573,CVE-2018-20574,CVE-2019-6285,CVE-2019-6292
    Description:

    This update for yaml-cpp fixes the following issues:


    Advisory IDSUSE-RU-2022:1074-1
    ReleasedFri Apr 1 13:27:00 2022
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1193531
    Description:

    This update for cloud-init contains the following fixes:




    Advisory IDSUSE-RU-2022:1099-1
    ReleasedMon Apr 4 12:53:05 2022
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1194883
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-RU-2022:1109-1
    ReleasedMon Apr 4 17:50:01 2022
    SummaryRecommended update for util-linux
    Typerecommended
    Severityimportant
    References1172427,1194642
    Description:

    This update for util-linux fixes the following issues:


    Advisory IDSUSE-RU-2022:1118-1
    ReleasedTue Apr 5 18:34:06 2022
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2022:1126-1
    ReleasedThu Apr 7 14:05:02 2022
    SummaryRecommended update for nfs-utils
    Typerecommended
    Severitymoderate
    References1197297,1197788
    Description:

    This update for nfs-utils fixes the following issues:


    Advisory IDSUSE-RU-2022:1135-1
    ReleasedFri Apr 8 13:12:45 2022
    SummaryRecommended update for supportutils
    Typerecommended
    Severitymoderate
    References1189028,1190315,1190943,1191096,1191794,1193204,1193732,1193868,1195797
    Description:

    This update for supportutils fixes the following issues:


    Advisory IDSUSE-RU-2022:1147-1
    ReleasedMon Apr 11 15:49:43 2022
    SummaryRecommended update for containerd
    Typerecommended
    Severitymoderate
    References1195784
    Description:


    This update of containerd fixes the following issue:


    Advisory IDSUSE-SU-2022:1149-1
    ReleasedMon Apr 11 16:29:14 2022
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1197903,CVE-2022-1097
    Description:

    This update for mozilla-nss fixes the following issues:
    Mozilla NSS 3.68.3 (bsc#1197903): - CVE-2022-1097: Fixed memory safety violations that could occur when PKCS#11 tokens are removed while in use.


    Advisory IDSUSE-RU-2022:1150-1
    ReleasedMon Apr 11 17:34:19 2022
    SummaryRecommended update for suse-build-key
    Typerecommended
    Severitymoderate
    References1197293
    Description:

    This update for suse-build-key fixes the following issues:
    No longer install 1024bit keys by default. (bsc#1197293)


    Advisory IDSUSE-SU-2022:1157-1
    ReleasedTue Apr 12 13:26:19 2022
    SummarySecurity update for libsolv, libzypp, zypper
    Typesecurity
    Severityimportant
    References1184501,1194848,1195999,1196061,1196317,1196368,1196514,1196925,1197134
    Description:

    This update for libsolv, libzypp, zypper fixes the following issues:
    Security relevant fix:


    libsolv update to 0.7.22:

    libzypp update to 17.30.0:

    zypper update to 1.14.52:


    Advisory IDSUSE-SU-2022:1158-1
    ReleasedTue Apr 12 14:44:43 2022
    SummarySecurity update for xz
    Typesecurity
    Severityimportant
    References1198062,CVE-2022-1271
    Description:

    This update for xz fixes the following issues:


    Advisory IDSUSE-RU-2022:1190-1
    ReleasedWed Apr 13 20:52:23 2022
    SummaryRecommended update for cloud-init
    Typerecommended
    Severityimportant
    References1192343
    Description:

    This update for cloud-init contains the following fixes:



    + Still need to consider the 'network' configuration option


    Advisory IDSUSE-SU-2022:1197-1
    ReleasedThu Apr 14 10:07:51 2022
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1179639,1189562,1193731,1194943,1195051,1195254,1195353,1195403,1195939,1196018,1196196,1196468,1196488,1196761,1196823,1196830,1196836,1196956,1197227,1197331,1197366,1197389,1197462,1197702,1197914,1198031,1198032,1198033,CVE-2021-0920,CVE-2021-39698,CVE-2021-45868,CVE-2022-0850,CVE-2022-0854,CVE-2022-1016,CVE-2022-1048,CVE-2022-1055,CVE-2022-23036,CVE-2022-23037,CVE-2022-23038,CVE-2022-23039,CVE-2022-23040,CVE-2022-23041,CVE-2022-23042,CVE-2022-26490,CVE-2022-26966,CVE-2022-27666,CVE-2022-28388,CVE-2022-28389,CVE-2022-28390
    Description:


    The SUSE Linux Enterprise 15 SP2 kernel was updated.
    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2022:1202-1
    ReleasedThu Apr 14 11:40:59 2022
    SummaryRecommended update for grub2
    Typerecommended
    Severitymoderate
    References1179981,1191974,1192622,1195204
    Description:

    This update for grub2 fixes the following issues:


    Advisory IDSUSE-RU-2022:1203-1
    ReleasedThu Apr 14 11:43:28 2022
    SummaryRecommended update for lvm2
    Typerecommended
    Severitymoderate
    References1195231
    Description:

    This update for lvm2 fixes the following issues:


    Advisory IDSUSE-SU-2022:1300-1
    ReleasedFri Apr 22 08:39:36 2022
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1194267,1196915,1197423,1197425,1197426,CVE-2021-26401,CVE-2022-0001,CVE-2022-0002,CVE-2022-26356,CVE-2022-26357,CVE-2022-26358,CVE-2022-26359,CVE-2022-26360,CVE-2022-26361
    Description:

    This update for xen fixes the following issues:


    Advisory IDSUSE-RU-2022:1302-1
    ReleasedFri Apr 22 10:04:46 2022
    SummaryRecommended update for e2fsprogs
    Typerecommended
    Severitymoderate
    References1196939
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-RU-2022:1374-1
    ReleasedMon Apr 25 15:02:13 2022
    SummaryRecommended update for openldap2
    Typerecommended
    Severitymoderate
    References1191157,1197004
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-RU-2022:1409-1
    ReleasedTue Apr 26 12:54:57 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1195628,1196107
    Description:

    This update for gcc11 fixes the following issues:


    Advisory IDSUSE-SU-2022:1430-1
    ReleasedWed Apr 27 10:01:43 2022
    SummarySecurity update for cifs-utils
    Typesecurity
    Severityimportant
    References1197216,CVE-2022-27239
    Description:

    This update for cifs-utils fixes the following issues:


    Advisory IDSUSE-RU-2022:1438-1
    ReleasedWed Apr 27 15:27:19 2022
    SummaryRecommended update for systemd-presets-common-SUSE
    Typerecommended
    Severitylow
    References1195251
    Description:

    This update for systemd-presets-common-SUSE fixes the following issue:


    Advisory IDSUSE-RU-2022:1452-1
    ReleasedThu Apr 28 10:48:06 2022
    SummaryRecommended update for perl
    Typerecommended
    Severitymoderate
    References1193489
    Description:

    This update for perl fixes the following issues:


    Advisory IDSUSE-RU-2022:1471-1
    ReleasedFri Apr 29 16:48:14 2022
    SummaryRecommended update for samba
    Typerecommended
    Severitylow
    References1134046
    Description:

    This update for samba fixes the following issue:


    Advisory IDSUSE-SU-2022:1512-1
    ReleasedTue May 3 16:11:28 2022
    SummarySecurity update for ruby2.5
    Typesecurity
    Severityimportant
    References1188160,1188161,1190375,1193035,1198441,CVE-2021-31799,CVE-2021-31810,CVE-2021-32066,CVE-2021-41817,CVE-2022-28739
    Description:

    This update for ruby2.5 fixes the following issues:


    Advisory IDSUSE-RU-2022:1544-1
    ReleasedThu May 5 11:52:22 2022
    SummaryRecommended update for dracut
    Typerecommended
    Severitymoderate
    References1195011,1195508,1197967
    Description:

    This update for dracut fixes the following issues:


    Advisory IDSUSE-SU-2022:1548-1
    ReleasedThu May 5 16:45:28 2022
    SummarySecurity update for tar
    Typesecurity
    Severitymoderate
    References1029961,1120610,1130496,1181131,CVE-2018-20482,CVE-2019-9923,CVE-2021-20193
    Description:

    This update for tar fixes the following issues:







    Advisory IDSUSE-SU-2022:1583-1
    ReleasedMon May 9 17:42:50 2022
    SummarySecurity update for rsyslog
    Typesecurity
    Severityimportant
    References1199061,CVE-2022-24903
    Description:

    This update for rsyslog fixes the following issues:


    Advisory IDSUSE-SU-2022:1617-1
    ReleasedTue May 10 14:40:12 2022
    SummarySecurity update for gzip
    Typesecurity
    Severityimportant
    References1198062,1198922,CVE-2022-1271
    Description:

    This update for gzip fixes the following issues:


    Advisory IDSUSE-RU-2022:1655-1
    ReleasedFri May 13 15:36:10 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1197794
    Description:

    This update for pam fixes the following issue:


    Advisory IDSUSE-SU-2022:1657-1
    ReleasedFri May 13 15:39:07 2022
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1198614,1198723,1198766,CVE-2022-22576,CVE-2022-27775,CVE-2022-27776
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2022:1658-1
    ReleasedFri May 13 15:40:20 2022
    SummaryRecommended update for libpsl
    Typerecommended
    Severityimportant
    References1197771
    Description:

    This update for libpsl fixes the following issues:


    Advisory IDSUSE-RU-2022:1659-1
    ReleasedFri May 13 15:41:32 2022
    SummaryRecommended update for cups
    Typerecommended
    Severitymoderate
    References1189517,1195115
    Description:

    This update for cups fixes the following issues:


    Advisory IDSUSE-SU-2022:1670-1
    ReleasedMon May 16 10:06:30 2022
    SummarySecurity update for openldap2
    Typesecurity
    Severityimportant
    References1199240,CVE-2022-29155
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-SU-2022:1688-1
    ReleasedMon May 16 14:02:49 2022
    SummarySecurity update for e2fsprogs
    Typesecurity
    Severityimportant
    References1198446,CVE-2022-1304
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-SU-2022:1689-1
    ReleasedMon May 16 14:09:01 2022
    SummarySecurity update for containerd, docker
    Typesecurity
    Severityimportant
    References1193930,1196441,1197284,1197517,CVE-2021-43565,CVE-2022-23648,CVE-2022-24769,CVE-2022-27191
    Description:

    This update for containerd, docker fixes the following issues:


    Advisory IDSUSE-RU-2022:1691-1
    ReleasedMon May 16 15:13:39 2022
    SummaryRecommended update for augeas
    Typerecommended
    Severitymoderate
    References1197443
    Description:

    This update for augeas fixes the following issue:


    Advisory IDSUSE-SU-2022:1750-1
    ReleasedThu May 19 15:28:20 2022
    SummarySecurity update for libxml2
    Typesecurity
    Severityimportant
    References1196490,1199132,CVE-2022-23308,CVE-2022-29824
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2022:1824-1
    ReleasedTue May 24 10:31:13 2022
    SummaryRecommended update for dhcp
    Typerecommended
    Severitymoderate
    References1198657
    Description:

    This update for dhcp fixes the following issues:


    Advisory IDSUSE-RU-2022:1839-1
    ReleasedWed May 25 10:32:21 2022
    SummaryRecommended update for openssh
    Typerecommended
    Severitymoderate
    References1192439
    Description:

    This update for openssh fixes the following issues:


    Advisory IDSUSE-RU-2022:1843-1
    ReleasedWed May 25 15:25:44 2022
    SummaryRecommended update for suse-build-key
    Typerecommended
    Severitymoderate
    References1198504
    Description:

    This update for suse-build-key fixes the following issues:


    Advisory IDSUSE-SU-2022:1861-1
    ReleasedThu May 26 12:07:40 2022
    SummarySecurity update for cups
    Typesecurity
    Severityimportant
    References1199474,CVE-2022-26691
    Description:

    This update for cups fixes the following issues:


    Advisory IDSUSE-SU-2022:1870-1
    ReleasedFri May 27 10:03:40 2022
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1199223,1199224,CVE-2022-27781,CVE-2022-27782
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-SU-2022:1883-1
    ReleasedMon May 30 12:41:35 2022
    SummarySecurity update for pcre2
    Typesecurity
    Severityimportant
    References1199232,CVE-2022-1586
    Description:

    This update for pcre2 fixes the following issues:


    Advisory IDSUSE-RU-2022:1887-1
    ReleasedTue May 31 09:24:18 2022
    SummaryRecommended update for grep
    Typerecommended
    Severitymoderate
    References1040589
    Description:

    This update for grep fixes the following issues:


    Advisory IDSUSE-RU-2022:2019-1
    ReleasedWed Jun 8 16:50:07 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1192951,1193659,1195283,1196861,1197065
    Description:

    This update for gcc11 fixes the following issues:
    Update to the GCC 11.3.0 release.


    Advisory IDSUSE-RU-2022:2024-1
    ReleasedThu Jun 9 10:13:12 2022
    SummaryRecommended update for python-azure-agent
    Typerecommended
    Severitymoderate
    References1198258
    Description:

    This update for python-azure-agent fixes the following issues:


    Advisory IDSUSE-SU-2022:2074-1
    ReleasedTue Jun 14 11:59:55 2022
    SummarySecurity update for grub2
    Typesecurity
    Severityimportant
    References1191184,1191185,1191186,1193282,1197948,1198460,1198493,1198495,1198496,1198581,CVE-2021-3695,CVE-2021-3696,CVE-2021-3697,CVE-2022-28733,CVE-2022-28734,CVE-2022-28735,CVE-2022-28736
    Description:

    This update for grub2 fixes the following issues:
    Security fixes and hardenings for boothole 3 / boothole 2022 (bsc#1198581)



    Advisory IDSUSE-SU-2022:2102-1
    ReleasedThu Jun 16 15:18:23 2022
    SummarySecurity update for vim
    Typesecurity
    Severityimportant
    References1070955,1191770,1192167,1192902,1192903,1192904,1193466,1193905,1194093,1194216,1194217,1194388,1194872,1194885,1195004,1195203,1195332,1195354,1196361,1198596,1198748,1199331,1199333,1199334,1199651,1199655,1199693,1199745,1199747,1199936,1200010,1200011,1200012,CVE-2017-17087,CVE-2021-3778,CVE-2021-3796,CVE-2021-3872,CVE-2021-3875,CVE-2021-3903,CVE-2021-3927,CVE-2021-3928,CVE-2021-3968,CVE-2021-3973,CVE-2021-3974,CVE-2021-3984,CVE-2021-4019,CVE-2021-4069,CVE-2021-4136,CVE-2021-4166,CVE-2021-4192,CVE-2021-4193,CVE-2021-46059,CVE-2022-0128,CVE-2022-0213,CVE-2022-0261,CVE-2022-0318,CVE-2022-0319,CVE-2022-0351,CVE-2022-0359,CVE-2022-0361,CVE-2022-0392,CVE-2022-0407,CVE-2022-0413,CVE-2022-0696,CVE-2022-1381,CVE-2022-1420,CVE-2022-1616,CVE-2022-1619,CVE-2022-1620,CVE-2022-1733,CVE-2022-1735,CVE-2022-1771,CVE-2022-1785,CVE-2022-1796,CVE-2022-1851,CVE-2022-1897,CVE-2022-1898,CVE-2022-1927
    Description:

    This update for vim fixes the following issues:


    Advisory IDSUSE-SU-2022:2104-1
    ReleasedThu Jun 16 15:21:45 2022
    SummarySecurity update for the Linux Kernel
    Typesecurity
    Severityimportant
    References1028340,1065729,1071995,1158266,1177282,1191647,1195651,1195926,1196114,1196367,1196426,1196433,1196514,1196570,1196942,1197157,1197343,1197472,1197656,1197660,1197895,1198330,1198400,1198484,1198516,1198577,1198660,1198687,1198778,1198825,1199012,1199063,1199314,1199505,1199507,1199605,1199650,1199918,1200015,1200143,1200144,1200249,CVE-2019-19377,CVE-2020-26541,CVE-2021-20321,CVE-2021-33061,CVE-2022-0168,CVE-2022-1011,CVE-2022-1158,CVE-2022-1184,CVE-2022-1353,CVE-2022-1516,CVE-2022-1652,CVE-2022-1729,CVE-2022-1734,CVE-2022-1966,CVE-2022-1974,CVE-2022-1975,CVE-2022-21123,CVE-2022-21125,CVE-2022-21127,CVE-2022-21166,CVE-2022-21180,CVE-2022-28893,CVE-2022-30594
    Description:


    The SUSE Linux Enterprise 15 SP2 kernel was updated.
    The following security bugs were fixed:


    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2022:2164-1
    ReleasedThu Jun 23 15:33:30 2022
    SummarySecurity update for xen
    Typesecurity
    Severityimportant
    References1199965,1199966,CVE-2022-26362,CVE-2022-26363,CVE-2022-26364
    Description:

    This update for xen fixes the following issues:


    Advisory IDSUSE-SU-2022:2251-1
    ReleasedMon Jul 4 09:52:25 2022
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severitymoderate
    References1185637,1199166,1200550,CVE-2022-1292,CVE-2022-2068
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2022:2323-1
    ReleasedThu Jul 7 12:16:58 2022
    SummaryRecommended update for systemd-presets-branding-SLE
    Typerecommended
    Severitylow
    References
    Description:

    This update for systemd-presets-branding-SLE fixes the following issues:


    Advisory IDSUSE-SU-2022:2327-1
    ReleasedThu Jul 7 15:06:13 2022
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1200735,1200737,CVE-2022-32206,CVE-2022-32208
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-SU-2022:2328-1
    ReleasedThu Jul 7 15:07:35 2022
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severityimportant
    References1201099,CVE-2022-2097
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2022:2339-1
    ReleasedFri Jul 8 15:47:43 2022
    SummaryRecommended update for rsyslog
    Typerecommended
    Severitymoderate
    References1198939
    Description:

    This update for rsyslog fixes the following issues:


    Advisory IDSUSE-SU-2022:2341-1
    ReleasedFri Jul 8 16:09:12 2022
    SummarySecurity update for containerd, docker and runc
    Typesecurity
    Severityimportant
    References1192051,1199460,1199565,1200088,1200145,CVE-2022-29162,CVE-2022-31030
    Description:

    This update for containerd, docker and runc fixes the following issues:
    containerd:


    docker:

    runc:
    Update to runc v1.1.3.
    Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.1.3.

    Update to runc v1.1.2.
    Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.1.2.
    Security issue fixed:


    Update to runc v1.1.1.
    Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.1.1.

    Update to runc v1.1.0.
    Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.1.0.

    Update to runc v1.1.0~rc1.
    Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.1.0-rc.1.


    Advisory IDSUSE-SU-2022:2351-1
    ReleasedMon Jul 11 10:50:12 2022
    SummarySecurity update for python3
    Typesecurity
    Severityimportant
    References1186819,1190566,1192249,1193179,1198511,CVE-2015-20107,CVE-2021-3572
    Description:

    This update for python3 fixes the following issues:
    Security issues fixed:


    Other bugs fixed:


    Advisory IDSUSE-SU-2022:2361-1
    ReleasedTue Jul 12 12:05:01 2022
    SummarySecurity update for pcre
    Typesecurity
    Severityimportant
    References1199232,CVE-2022-1586
    Description:

    This update for pcre fixes the following issues:


    Advisory IDSUSE-SU-2022:2402-1
    ReleasedThu Jul 14 16:58:22 2022
    SummarySecurity update for python-PyJWT
    Typesecurity
    Severityimportant
    References1199756,CVE-2022-29217
    Description:

    This update for python-PyJWT fixes the following issues:


    Advisory IDSUSE-SU-2022:2405-1
    ReleasedFri Jul 15 11:47:57 2022
    SummarySecurity update for p11-kit
    Typesecurity
    Severitymoderate
    References1180065,CVE-2020-29362
    Description:

    This update for p11-kit fixes the following issues:


    Advisory IDSUSE-RU-2023:3590-1
    ReleasedTue Sep 12 16:40:53 2023
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1176173
    Description:


    This update for mozilla-nss fixes the following issue: