Image summary for SUSE:SLE-15-SP5:Update:QR:QU3


SUSE-IU-2000:29-1

Container Advisory IDSUSE-IU-2000:29-1
Container TagsSUSE:SLE-15-SP5:0
Container Release
The following patches have been included in this update:
Advisory IDSUSE-SU-2018:1189-1
ReleasedWed Jun 20 16:20:01 2018
SummarySecurity update for go, go1.9
Typesecurity
Severitymoderate
References1081495,1085785,CVE-2018-7187
Description:

This update for go and go1.9 fixes the following issues: The following security issues have been addressed for both packages:


The following other changes have been made for go1.9:

For details on any other changes see the Go milestones on the official issue tracker.


Advisory IDSUSE-SU-2018:1277-1
ReleasedThu Jul 5 08:38:06 2018
SummarySecurity update for unzip
Typesecurity
Severitymoderate
References1080074,910683,914442,CVE-2014-9636,CVE-2018-1000035
Description:

This update for unzip fixes the following issues:


This non-security issue was fixed:
+- Allow processing of Windows zip64 archives (Windows archivers set total_disks field to 0 but per standard, valid values are 1 and higher) (bnc#910683)


Advisory IDSUSE-SU-2018:1279-1
ReleasedThu Jul 5 08:41:25 2018
SummarySecurity update for tiff
Typesecurity
Severitymoderate
References1074317,1082332,1082825,1086408,1092949,CVE-2017-11613,CVE-2017-18013,CVE-2018-10963,CVE-2018-7456,CVE-2018-8905
Description:

This update for tiff fixes the following security issues:
These security issues were fixed:


Advisory IDSUSE-SU-2018:1281-1
ReleasedThu Jul 5 08:44:42 2018
SummarySecurity update for ghostscript
Typesecurity
Severitymoderate
References1090099,CVE-2018-10194
Description:

This update for ghostscript fixes the following issues:


Advisory IDSUSE-SU-2018:1282-1
ReleasedThu Jul 5 08:46:19 2018
SummarySecurity update for libvorbis
Typesecurity
Severitymoderate
References1091070,CVE-2018-10392
Description:

This update for libvorbis fixes the following issues:
The following security issue was fixed:
- Fixed the validation of channels in mapping0_forward(), which previously allowed remote attackers to cause a denial of service via specially crafted files (CVE-2018-10392, bsc#1091070)


Advisory IDSUSE-SU-2018:1292-1
ReleasedMon Jul 9 11:57:14 2018
SummarySecurity update for openslp
Typesecurity
Severityimportant
References1090638,CVE-2017-17833
Description:

This update for openslp fixes the following issues:


Advisory IDSUSE-RU-2018:1307-1
ReleasedWed Jul 11 17:25:54 2018
SummaryRecommended update for google-compute-engine
Typerecommended
Severitymoderate
References1097378
Description:

This update for google-compute-engine fixes the following issues:


Advisory IDSUSE-SU-2018:1319-1
ReleasedThu Jul 12 11:04:25 2018
SummarySecurity update for java-1_8_0-openjdk
Typesecurity
Severityimportant
References1087066,1090023,1090024,1090025,1090026,1090027,1090028,1090029,1090030,1090032,1090033,CVE-2018-2790,CVE-2018-2794,CVE-2018-2795,CVE-2018-2796,CVE-2018-2797,CVE-2018-2798,CVE-2018-2799,CVE-2018-2800,CVE-2018-2814,CVE-2018-2815
Description:

This update for java-1_8_0-openjdk to version 8u171 fixes the following issues:
These security issues were fixed:


For other changes please consult the changelog.


Advisory IDSUSE-SU-2018:1323-1
ReleasedFri Jul 13 09:26:19 2018
SummarySecurity update for libopenmpt
Typesecurity
Severitymoderate
References1089080,1095644,CVE-2018-10017,CVE-2018-11710
Description:

This update for libopenmpt to version 0.3.9 fixes the following issues:
These security issues were fixed:


These non-security issues were fixed:


Advisory IDSUSE-RU-2018:1332-1
ReleasedTue Jul 17 09:01:19 2018
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1073299,1093392
Description:

This update for timezone provides the following fixes:


Advisory IDSUSE-RU-2018:1335-1
ReleasedTue Jul 17 10:13:39 2018
SummaryRecommended update for cloud-netconfig
Typerecommended
Severitymoderate
References1095485
Description:

This update for cloud-netconfig fixes the following issues:


Advisory IDSUSE-SU-2018:1348-1
ReleasedThu Jul 19 09:32:11 2018
SummarySecurity update for wireshark
Typesecurity
Severitymoderate
References1094301,CVE-2018-11356,CVE-2018-11357,CVE-2018-11358,CVE-2018-11359,CVE-2018-11360,CVE-2018-11362
Description:

This update for wireshark fixes vulnerabilities that could be used to trigger dissector crashes or cause dissectors to go into large infinite loops by making Wireshark read specially crafted packages from the network or capture files (bsc#1094301).
This includes:


Advisory IDSUSE-SU-2018:1349-1
ReleasedThu Jul 19 09:35:42 2018
SummarySecurity update for rubygem-sprockets
Typesecurity
Severitymoderate
References1098369,CVE-2018-3760
Description:

This update for rubygem-sprockets fixes the following issues:
The following security vulnerability was addressed:


Advisory IDSUSE-SU-2018:1371-1
ReleasedMon Jul 23 10:37:01 2018
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1097158,1097624,1098592,CVE-2018-0732
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2018:1398-1
ReleasedThu Jul 26 16:27:58 2018
SummarySecurity update for java-1_8_0-ibm
Typesecurity
Severityimportant
References1085449,1093311,CVE-2018-1417,CVE-2018-2783,CVE-2018-2790,CVE-2018-2794,CVE-2018-2795,CVE-2018-2796,CVE-2018-2797,CVE-2018-2798,CVE-2018-2799,CVE-2018-2800,CVE-2018-2814,CVE-2018-2825,CVE-2018-2826
Description:


IBM Java was updated to version 8.0.5.15 [bsc#1093311, bsc#1085449]
Security fixes:



Advisory IDSUSE-SU-2018:1404-1
ReleasedThu Jul 26 16:41:42 2018
SummarySecurity update for libsndfile
Typesecurity
Severitymoderate
References1071767,1071777,1100167,CVE-2017-17456,CVE-2017-17457,CVE-2018-13139
Description:

This update for libsndfile fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2018:1411-1
ReleasedFri Jul 27 06:48:11 2018
SummaryRecommended update for SAPHanaSR-ScaleOut
Typerecommended
Severitymoderate
References1091988,1092331
Description:

This update for SAPHanaSR-ScaleOut provides the following fixes:


Advisory IDSUSE-SU-2018:1416-1
ReleasedFri Jul 27 12:47:55 2018
SummarySecurity update for mutt
Typesecurity
Severityimportant
References1094717,1101428,1101566,1101567,1101568,1101569,1101570,1101571,1101573,1101576,1101577,1101578,1101581,1101582,1101583,1101588,1101589,CVE-2014-9116,CVE-2018-14349,CVE-2018-14350,CVE-2018-14351,CVE-2018-14352,CVE-2018-14353,CVE-2018-14354,CVE-2018-14355,CVE-2018-14356,CVE-2018-14357,CVE-2018-14358,CVE-2018-14359,CVE-2018-14360,CVE-2018-14361,CVE-2018-14362,CVE-2018-14363
Description:

This update for mutt fixes the following issues:
Security issues fixed:


Bug fixes:


Advisory IDSUSE-RU-2018:1458-1
ReleasedTue Jul 31 12:48:18 2018
SummaryRecommended update for lapack
Typerecommended
Severitymoderate
References1087426
Description:

This update for lapack fixes the following issues:


Advisory IDSUSE-SU-2018:1462-1
ReleasedTue Jul 31 14:04:41 2018
SummarySecurity update for java-11-openjdk
Typesecurity
Severitymoderate
References1101645,1101651,1101655,1101656,CVE-2018-2940,CVE-2018-2952,CVE-2018-2972,CVE-2018-2973
Description:

This java-11-openjdk update to version jdk-11+24 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2018:1476-1
ReleasedThu Aug 2 14:20:03 2018
SummarySecurity update for cups
Typesecurity
Severitymoderate
References1096405,1096406,1096407,1096408,CVE-2018-4180,CVE-2018-4181,CVE-2018-4182,CVE-2018-4183
Description:

This update for cups fixes the following issues:
The following security vulnerabilities were fixed:


Advisory IDSUSE-SU-2018:1509-1
ReleasedTue Aug 7 09:39:07 2018
SummarySecurity update for clamav
Typesecurity
Severitymoderate
References1101410,1101412,1101654,1103040,CVE-2018-0360,CVE-2018-0361
Description:

This update for clamav to version 0.100.1 fixes the following issues: The following security vulnerabilities were addressed:


The following other changes were made:


Advisory IDSUSE-SU-2018:1512-1
ReleasedTue Aug 7 12:48:02 2018
SummarySecurity update for libcdio
Typesecurity
Severitylow
References1082821,1082877,CVE-2017-18199,CVE-2017-18201
Description:

This update for libcdio fixes the following issues:
The following security vulnerabilities were addressed:


Advisory IDSUSE-SU-2018:1514-1
ReleasedTue Aug 7 18:05:04 2018
SummarySecurity update for enigmail
Typesecurity
Severitymoderate
References1094781,1096745,1097525,CVE-2018-12019,CVE-2018-12020
Description:

This update for enigmail to 2.0.7 fixes the following issues:
These security issues were fixed:


These non-security issues were fixed:


Advisory IDSUSE-SU-2018:1539-1
ReleasedFri Aug 10 11:39:36 2018
SummarySecurity update for wireshark
Typesecurity
Severitymoderate
References1101776,1101777,1101786,1101788,1101791,1101794,1101800,1101802,1101804,1101810,CVE-2018-14339,CVE-2018-14340,CVE-2018-14341,CVE-2018-14342,CVE-2018-14343,CVE-2018-14344,CVE-2018-14367,CVE-2018-14368,CVE-2018-14369,CVE-2018-14370
Description:

This update for wireshark fixes the following issues:
Security issues fixed:


Bug fixes:


Advisory IDSUSE-SU-2018:1642-1
ReleasedThu Aug 16 16:55:54 2018
SummarySecurity update for perl-Archive-Zip
Typesecurity
Severitymoderate
References1099497,CVE-2018-10860
Description:

This update for perl-Archive-Zip fixes the following security issue:


Advisory IDSUSE-RU-2018:1705-1
ReleasedMon Aug 20 16:31:22 2018
SummaryRecommended update for quota
Typerecommended
Severityimportant
References1104898
Description:

This update for quota fixes the following issues:


Advisory IDSUSE-RU-2018:1756-1
ReleasedFri Aug 24 17:12:55 2018
SummaryRecommended update for growpart
Typerecommended
Severitymoderate
References1097455,1098681
Description:

This update for growpart provides the following fix:


Advisory IDSUSE-RU-2018:1782-1
ReleasedTue Aug 28 18:20:02 2018
SummaryRecommended update for SAPHanaSR
Typerecommended
Severitymoderate
References1062267,1091074
Description:

This update for SAPHanaSR provides the following fixes:


Advisory IDSUSE-RU-2018:1804-1
ReleasedFri Aug 31 13:02:24 2018
SummaryRecommended update for docker
Typerecommended
Severitymoderate
References1065609,1073877,1099277,1100727
Description:

This update for docker fixes the following issues:


Advisory IDSUSE-SU-2018:1853-1
ReleasedThu Sep 6 19:41:23 2018
SummarySecurity update for enigmail
Typesecurity
Severitymoderate
References1104036
Description:

This update for enigmail to 2.0.8 fixes the following issues:
The enigmail 2.0.8 release addresses a security issue and solves a few regression bugs.


Advisory IDSUSE-RU-2018:1861-1
ReleasedMon Sep 10 11:38:53 2018
SummaryRecommended update for firewalld and susefirewall2-to-firewalld
Typerecommended
Severitymoderate
References1096542,1098986,1099698,1105157,1105170
Description:

This update for firewalld and susefirewall2-to-firewalld fixes the following issues:
firewalld:


susefirewall2-to-firewalld:


Advisory IDSUSE-RU-2018:1897-1
ReleasedThu Sep 13 15:18:20 2018
SummaryRecommended update for python3-gcemetadata
Typerecommended
Severitymoderate
References1097505
Description:

This update for python3-gcemetadata fixes the following issues:


Advisory IDSUSE-RU-2018:1901-1
ReleasedFri Sep 14 12:38:11 2018
SummaryRecommended update for vncmanager
Typerecommended
Severitymoderate
References1103552
Description:

This update for vncmanager fixes the following issues:


Advisory IDSUSE-RU-2018:1911-1
ReleasedMon Sep 17 14:36:44 2018
SummaryRecommended update for python3-susepubliccloudinfo
Typerecommended
Severitymoderate
References1103684
Description:

This update for python3-susepubliccloudinfo fixes the following issues:


Advisory IDSUSE-RU-2018:1962-1
ReleasedFri Sep 21 13:48:37 2018
SummaryRecommended update for icewm
Typerecommended
Severityimportant
References1096917
Description:

This update for icewm fixes the following issues:


Advisory IDSUSE-RU-2018:1978-1
ReleasedMon Sep 24 10:37:23 2018
SummaryRecommended update for myspell-dictionaries
Typerecommended
Severitylow
References1099508,1102294
Description:


This update brings myspell-dictionaries to version 20180704, providing the following fixes:


Advisory IDSUSE-RU-2018:1998-1
ReleasedTue Sep 25 08:19:41 2018
SummaryRecommended update for wireless-regdb
Typerecommended
Severitymoderate
References1095397,1106528
Description:

This update for wireless-regdb fixes the following issues:


Advisory IDSUSE-RU-2018:2022-1
ReleasedWed Sep 26 09:48:09 2018
SummaryRecommended update for SUSE Manager Client Tools
Typerecommended
Severitymoderate
References1103388,1104120,1106523
Description:

This update fixes the following issues:
hwdata:


spacewalk-backend:


Advisory IDSUSE-RU-2018:2044-1
ReleasedWed Sep 26 15:12:18 2018
SummaryRecommended update for firewalld-rpcbind-helper
Typerecommended
Severitymoderate
References1096064
Description:

This update for firewalld-rpcbind-helper fixes the following issues:


Advisory IDSUSE-SU-2018:2052-1
ReleasedThu Sep 27 12:03:08 2018
SummarySecurity update for wireshark
Typesecurity
Severitymoderate
References1106514,CVE-2018-16056,CVE-2018-16057,CVE-2018-16058
Description:

This update for wireshark to version 2.4.9 fixes the following issues:
Security issues fixed (bsc#1106514):


Further bug fixes and updated protocol support as listed in: https://www.wireshark.org/docs/relnotes/wireshark-2.4.9.html


Advisory IDSUSE-SU-2018:2054-1
ReleasedThu Sep 27 12:04:23 2018
SummarySecurity update for mgetty
Typesecurity
Severityimportant
References1108752,1108756,1108757,1108761,1108762,CVE-2018-16741,CVE-2018-16742,CVE-2018-16743,CVE-2018-16744,CVE-2018-16745
Description:

This update for mgetty fixes the following issues:


Advisory IDSUSE-RU-2018:2060-1
ReleasedThu Sep 27 15:06:52 2018
SummaryRecommended update for SAPHanaSR-ScaleOut
Typerecommended
Severitymoderate
References1098979
Description:

This update for SAPHanaSR-ScaleOut provides the following fix:


Advisory IDSUSE-RU-2018:2077-1
ReleasedFri Sep 28 14:52:24 2018
SummaryRecommended update for pidentd
Typerecommended
Severityimportant
References1101107,1101600
Description:

This update for pidentd fixes the following issues:


Advisory IDSUSE-RU-2018:2078-1
ReleasedFri Sep 28 14:54:53 2018
SummaryRecommended update for sapconf
Typerecommended
Severitymoderate
References1093843,1093844,1096498,1099101
Description:

This update for sapconf provides the following fixes:


Advisory IDSUSE-SU-2018:2082-1
ReleasedSun Sep 30 14:06:27 2018
SummarySecurity update for libX11
Typesecurity
Severitymoderate
References1102062,1102068,1102073,CVE-2018-14598,CVE-2018-14599,CVE-2018-14600
Description:

This update for libX11 fixes the following security issues:


Advisory IDSUSE-SU-2018:2095-1
ReleasedMon Oct 1 16:02:00 2018
SummarySecurity update for openssl-1_0_0
Typesecurity
Severitymoderate
References1089039,1097158,1101470,1104789,1106197,CVE-2018-0732,CVE-2018-0737
Description:

This update for openssl-1_0_0 to 1.0.2p fixes the following issues:
These security issues were fixed:


This non-security issue was fixed:


Advisory IDSUSE-SU-2018:2119-1
ReleasedTue Oct 2 16:31:25 2018
SummarySecurity update for ghostscript
Typesecurity
Severityimportant
References1106171,1106172,1106173,1106195,1107410,1107411,1107412,1107413,1107420,1107421,1107422,1107423,1107426,1107581,1108027,1109105,CVE-2018-15908,CVE-2018-15909,CVE-2018-15910,CVE-2018-15911,CVE-2018-16509,CVE-2018-16510,CVE-2018-16511,CVE-2018-16513,CVE-2018-16539,CVE-2018-16540,CVE-2018-16541,CVE-2018-16542,CVE-2018-16543,CVE-2018-16585,CVE-2018-16802,CVE-2018-17183
Description:

This update for ghostscript to version 9.25 fixes the following issues:
These security issues were fixed:


These non-security issues were fixed:

For additional changes please check http://www.ghostscript.com/doc/9.25/News.htm


Advisory IDSUSE-SU-2018:2165-1
ReleasedFri Oct 5 15:22:38 2018
SummarySecurity update for java-1_8_0-openjdk
Typesecurity
Severityimportant
References1101644,1101645,1101651,1101656,1106812,CVE-2018-2938,CVE-2018-2940,CVE-2018-2952,CVE-2018-2973
Description:

This update for java-1_8_0-openjdk to the jdk8u181 (icedtea 3.9.0) release fixes the following issues:
These security issues were fixed:


These non-security issues were fixed:


Advisory IDSUSE-SU-2018:2171-1
ReleasedMon Oct 8 10:31:29 2018
SummarySecurity update for soundtouch
Typesecurity
Severitymoderate
References1103676,CVE-2018-1000223
Description:

This update for soundtouch fixes the following security issue:


Advisory IDSUSE-SU-2018:2183-1
ReleasedTue Oct 9 11:30:31 2018
SummarySecurity update for java-1_8_0-ibm
Typesecurity
Severitymoderate
References1104668,CVE-2016-0705,CVE-2017-3732,CVE-2017-3736,CVE-2018-12539,CVE-2018-1517,CVE-2018-1656,CVE-2018-2940,CVE-2018-2952,CVE-2018-2964,CVE-2018-2973
Description:

This update for java-1_8_0-ibm to 8.0.5.20 fixes the following issues:


Advisory IDSUSE-RU-2018:2193-1
ReleasedWed Oct 10 13:20:50 2018
SummaryRecommended update for dialog
Typerecommended
Severitymoderate
References1094836
Description:

This update for dialog fixes the following issues:


Advisory IDSUSE-RU-2018:2298-1
ReleasedWed Oct 17 17:02:57 2018
SummaryRecommended update for java-11-openjdk
Typerecommended
Severitymoderate
References1111162,1112142,1112143,1112144,1112145,1112146,1112147,1112148,1112149,CVE-2018-3136,CVE-2018-3139,CVE-2018-3149,CVE-2018-3150,CVE-2018-3157,CVE-2018-3169,CVE-2018-3180,CVE-2018-3183
Description:

This update for java-11-openjdk fixes the following issues:
Update to upstream tag jdk-11.0.1+13 (Oracle October 2018 CPU)
Security fixes:


Security-In-Depth fixes:

Update to upstream tag jdk-11+28 (OpenJDK 11 rc1)


Update to upstream tag jdk-11+27


Advisory IDSUSE-SU-2018:2302-1
ReleasedThu Oct 18 14:29:31 2018
SummarySecurity update for zziplib
Typesecurity
Severitymoderate
References1110687,CVE-2018-17828
Description:

This update for zziplib fixes the following issues:


Advisory IDSUSE-RU-2018:2307-1
ReleasedThu Oct 18 14:42:54 2018
SummaryRecommended update for libxcb
Typerecommended
Severitymoderate
References1101560
Description:

This update for libxcb provides the following fix:


Advisory IDSUSE-SU-2018:2335-1
ReleasedFri Oct 19 15:06:23 2018
SummarySecurity update for clamav
Typesecurity
Severitymoderate
References1103040,1104457,1110723,CVE-2018-14680,CVE-2018-14681,CVE-2018-14682,CVE-2018-15378
Description:

This update for clamav fixes the following issues:
clamav was updated to version 0.100.2.
Following security issues were fixed:


Following non-security issues were addressed:


Advisory IDSUSE-SU-2018:2340-1
ReleasedFri Oct 19 16:05:53 2018
SummarySecurity update for fuse
Typesecurity
Severitymoderate
References1101797,CVE-2018-10906
Description:

This update for fuse fixes the following issues:


Advisory IDSUSE-RU-2018:2343-1
ReleasedSat Oct 20 09:51:54 2018
SummaryRecommended update for dejagnu
Typerecommended
Severitymoderate
References1100206
Description:

This update for dejagnu fixes the following issues:


Advisory IDSUSE-SU-2018:2364-1
ReleasedMon Oct 22 13:13:28 2018
SummarySecurity update for wireshark
Typesecurity
Severityimportant
References1111647,CVE-2018-12086,CVE-2018-18227
Description:

This update for wireshark fixes the following issues:
Wireshark was updated to 2.4.10 (bsc#1111647).
Following security issues were fixed:


Further bug fixes and updated protocol support that were done are listed in:
https://www.wireshark.org/docs/relnotes/wireshark-2.4.10.html


Advisory IDSUSE-SU-2018:2392-1
ReleasedTue Oct 23 12:45:51 2018
SummarySecurity update for tiff
Typesecurity
Severitymoderate
References1092480,1106853,1108627,1108637,1110358,CVE-2018-10779,CVE-2018-16335,CVE-2018-17100,CVE-2018-17101,CVE-2018-17795
Description:

This update for tiff fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2018:2411-1
ReleasedTue Oct 23 17:27:40 2018
SummaryRecommended update for libXaw
Typerecommended
Severitymoderate
References1098411
Description:

This update for libXaw provides the following fix:


Advisory IDSUSE-SU-2018:2431-1
ReleasedWed Oct 24 13:05:29 2018
SummarySecurity update for ntp
Typesecurity
Severitymoderate
References1083424,1098531,1111853,CVE-2018-12327,CVE-2018-7170
Description:


NTP was updated to 4.2.8p12 (bsc#1111853):


Please also see https://www.nwtime.org/network-time-foundation-publishes-ntp-4-2-8p12/ for more information.


Advisory IDSUSE-OU-2018:2441-1
ReleasedWed Oct 24 16:38:48 2018
SummaryInitial release of python-pyinotify
Typeoptional
Severitylow
References1111493
Description:

This update provides python-pyinotify required for salt beacons


Advisory IDSUSE-RU-2018:2442-1
ReleasedWed Oct 24 16:39:09 2018
SummaryRecommended update for python-msrestazure and it's dependencies
Typerecommended
Severitymoderate
References1109694
Description:

This update for python-adal, python-isodate, python-msrest, python-msrestazure fixes the following issues:
python-msrestazure:


+ Features * Implementation is now using ADAL and not request-oauthlib. This allows more AD scenarios (like federated). * Add additionalInfo parsing for CloudError. * Implement new LRO options of Autorest. * Improve MSI for VM token polling algorithm. * MSIAuthentication now uses IMDS endpoint if available. * MSIAuthentication can be used in any environment that defines MSI_ENDPOINT env variable. * CloudError now includes the 'innererror' attribute to match OData v4. * Introduces ARMPolling implementation of Azure Resource Management LRO. * Add support for WebApp/Functions in MSIAuthentication classes. * Add parse_resource_id(), resource_id(), validate_resource_id() to parse ARM ids. * Retry strategy now n reach 24 seconds (instead of 12 seconds). * Add Managed Service Integrated (MSI) authentication. * Add 'timeout' to ServicePrincipalCredentials and UserPasswordCredentials. * Threads created by AzureOperationPoller have now a name prefixed by 'AzureOperationPoller' to help identify them. * Improve MSIAuthentication to support User Assigned Identity.
+ Bugfixes * MSIAuthentication regression for KeyVault since IMDS support. * MSIAuthentication should initialize the token attribute on creation. * Fixes refreshToken in UserPassCredentials and AADTokenCredentials. * Fix US government cloud definition. * Reduce max MSI polling time for VM. * IMDS/MSI: Retry on more error codes. * IMDS/MSI: Fix a boundary case on timeout. * Fix parse_resource_id() tool to be case*insensitive to keywords when matching. * Add missing baseclass init call for AdalAuthentication. * Fix LRO result if POST uses AsyncOperation header. * Remove a possible infinite loop with MSIAuthentication. * Fix session obj for cloudmetadata endpoint. * Fix authentication resource node for AzureSatck. * Better detection of AppService with MSIAuthentication. * get_cloud_from_metadata_endpoint incorrect on AzureStack. * get_cloud_from_metadata_endpoint certificate issue. * Fix AttributeError if error JSON from ARM does not follow ODatav4 (as it should). * Fix AttributeError if input JSON is not a dict. * Fix AdalError handling in some scenarios. * Update Azure Gov login endpoint. * Update metadata ARM endpoint parser.
+ Incompatible changes * Remove unused auth_uri, state, client and token_uri attributes in ServicePrincipalCredentials, UserPassCredentials and AADTokenCredentials. * Remove token caching based on 'keyring'. Token caching should be implemented using ADAL now. * Remove InteractiveCredentials. This class was deprecated and unusable. Use ADAL device code instead.
python-msrest

+ Require python-enum32 and python-typing.
+ Features * Support additionalProperties and XML. * Deserialize/from_dict now accepts a content*type parameter to parse XML strings. * Add XML support * Add many type hints, and MyPY testing on CI. * HTTP calls are made through a HTTPDriver API. Only implementation is `requests` for now. This driver API is *not* considered stable and you should pin your msrest version if you want to provide a personal implementation. * msrest is now able to keep the 'requests.Session' alive for performance. * All Authentication classes now define `signed_session` and `refresh_session` with an optional `session` parameter. * Disable HTTP log by default (security), add `enable_http_log` to restore it. * Add TopicCredentials for EventGrid client. * Add LROPoller class. This is a customizable LRO engine. * Model now accept kwargs in constructor for future kwargs models. * Add support for additional_properties. * The interpretation of Swagger 2.0 'discriminator' is now lenient. * Add ApiKeyCredentials class. This can be used to support OpenAPI ApiKey feature. * Add CognitiveServicesAuthentication class. Pre*declared ApiKeyCredentials class for Cognitive Services. * Add Configuration.session_configuration_callback to customize the requests.Session if necessary. * Add a flag to Serializer to disable client*side*validation. * Remove 'import requests' from 'exceptions.py' for apps that require fast loading time. * Input is now more lenient. * Model have a 'validate' method to check content constraints. * Model have now new methods for serialize, as_dict, deserialize and from_dict.
+ Bugfixes * Fix a serialization issue if additional_properties is declared, and 'automatic model' syntax is used ('automatic model' being the ability to pass a dict to command and have the model auto*created). * Better parse empty node and not string types. * Improve 'object' XML parsing. * Fix some XML serialization subtle scenarios. * Fix some complex XML Swagger definitions. * Lower Accept header overwrite logging message. * Fix 'object' type and XML format. * Incorrect milliseconds serialization for some datetime object. * Improve `SDKClient.__exit__` to take exc_details as optional parameters and not required. * Refresh_session should also use the permanent HTTP session if available. * Fix incorrect date parsing if ms precision is over 6 digits. * Fix minimal dependency of isodate. * Fix serialisation from dict if datetime provided. * Date parsing is now compliant with Autorest / Swagger 2.0 specification (less lenient). * Accept to deserialize enum of different type if content string match. * Stop failing on deserialization if enum string is unkwon. Return the string instead. * Do not validate additional_properties. * Improve validation error if expected type is dict, but actual type is not. * Fix additional_properties if Swagger was flatten. * Optional formdata parameters were raising an exception. * 'application/x*www*form*urlencoded' form was sent using 'multipart/form*data'. * Fix regression: accept 'set' as a valid '[str]' * Always log response body. * Improved exception message if error JSON is Odata v4. * Refuse 'str' as a valid '[str]' type. * Better exception handling if input from server is not JSON valid. * Fix regression introduced in msrest 0.4.12 * dict syntax with enum modeled as string and enum used. * Fix regression introduced in msrest 0.4.12 * dict syntax using isodate.Duration. * Better Enum checking.
+ Internal optimisation * Call that does not return a streamable object are now executed in requests stream mode False (was True whatever the type of the call). This should reduce the number of leaked opened session and allow urllib3 to manage connection pooling more efficiently. Only clients generated with Autorest.Python >= 2.1.31 (not impacted otherwise, fully backward compatible)
+ Deprecation * Trigger DeprecationWarning for _client.add_header and _client.send_formdata.
python-adal

python-isodate


Advisory IDSUSE-RU-2018:2445-1
ReleasedWed Oct 24 16:41:09 2018
SummaryRecommended update for iotop
Typerecommended
Severitymoderate
References1094694,1094823
Description:

This update for iotop provides the following fix:


Advisory IDSUSE-RU-2018:2463-1
ReleasedThu Oct 25 14:48:34 2018
SummaryRecommended update for timezone, timezone-java
Typerecommended
Severitymoderate
References1104700,1112310
Description:


This update for timezone, timezone-java fixes the following issues:
The timezone database was updated to 2018f:


Other bugfixes:


Advisory IDSUSE-SU-2018:2505-1
ReleasedFri Oct 26 16:12:37 2018
SummarySecurity update for audiofile
Typesecurity
Severitymoderate
References1111586,CVE-2018-17095
Description:

This update for audiofile fixes the following issues:


Advisory IDSUSE-RU-2018:2507-1
ReleasedFri Oct 26 16:27:56 2018
SummaryRecommended update for s3fs
Typerecommended
Severitymoderate
References1111267
Description:

This update for s3fs fixes the following issues:


Advisory IDSUSE-RU-2018:2513-1
ReleasedMon Oct 29 11:11:23 2018
SummaryRecommended update for sysstat
Typerecommended
Severitymoderate
References1089883
Description:


This update for sysstat fixes the following issues:
Sysstat was updated to 12.0.2, bringing new features and bugfixes (fate#326576, bsc#1089883)


Please look at http://sebastien.godard.pagesperso-orange.fr/ for a more detailed history of changes.


Advisory IDSUSE-RU-2018:2514-1
ReleasedMon Oct 29 11:11:47 2018
SummaryRecommended update for nfs4-acl-tools
Typerecommended
Severitymoderate
References1104803,967251
Description:

This update for nfs4-acl-tools fixes the following issues:


Advisory IDSUSE-RU-2018:2529-1
ReleasedTue Oct 30 16:05:19 2018
SummaryRecommended update for dapl
Typerecommended
Severitymoderate
References1094657
Description:

This update for dapl fixes the following issues:


Advisory IDSUSE-RU-2018:2550-1
ReleasedWed Oct 31 16:16:56 2018
SummaryRecommended update for timezone, timezone-java
Typerecommended
Severitymoderate
References1113554
Description:

This update provides the latest time zone definitions (2018g), including the following change:


Advisory IDSUSE-SU-2018:2565-1
ReleasedFri Nov 2 17:10:31 2018
SummarySecurity update for soundtouch
Typesecurity
Severitymoderate
References1108630,1108631,1108632,CVE-2018-17096,CVE-2018-17097,CVE-2018-17098
Description:

This update for soundtouch fixes the following issues:


Advisory IDSUSE-RU-2018:2569-1
ReleasedFri Nov 2 19:00:18 2018
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1110700
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2018:2607-1
ReleasedWed Nov 7 15:42:48 2018
SummaryOptional update for gcc8
Typerecommended
Severitylow
References1084812,1084842,1087550,1094222,1102564
Description:


The GNU Compiler GCC 8 is being added to the Development Tools Module by this update.
The update also supplies gcc8 compatible libstdc++, libgcc_s1 and other gcc derived libraries for the Basesystem module of SUSE Linux Enterprise 15.
Various optimizers have been improved in GCC 8, several of bugs fixed, quite some new warnings added and the error pin-pointing and fix-suggestions have been greatly improved.
The GNU Compiler page for GCC 8 contains a summary of all the changes that have happened:
https://gcc.gnu.org/gcc-8/changes.html
Also changes needed or common pitfalls when porting software are described on:
https://gcc.gnu.org/gcc-8/porting_to.html


Advisory IDSUSE-SU-2018:2616-1
ReleasedThu Nov 8 17:53:23 2018
SummarySecurity update for libepubgen, liblangtag, libmwaw, libnumbertext, libreoffice, libstaroffice, libwps, myspell-dictionaries, xmlsec1
Typesecurity
Severitymoderate
References1050305,1088263,1091606,1094779,1095601,1095639,1096360,1098891,1104876,CVE-2018-10583
Description:



This update for LibreOffice, libepubgen, liblangtag, libmwaw, libnumbertext, libstaroffice, libwps, myspell-dictionaries, xmlsec1 fixes the following issues:
LibreOffice was updated to 6.1.3.2 (fate#326624) and contains new features and lots of bugfixes:
The full changelog can be found on:
https://wiki.documentfoundation.org/ReleaseNotes/6.1
Bugfixes:





libepubgen was updated to 0.1.1:

liblangtag was updated to 0.6.2:

libmwaw was updated to 0.3.14:

libnumbertext was update to 1.0.5:

libstaroffice was updated to 0.0.6:

libwps was updated to 0.4.9:

myspell-dictionaries was updated to 20181025:

xmlsec1 was updated to 1.2.26:


Advisory IDSUSE-RU-2018:2625-1
ReleasedMon Nov 12 08:58:25 2018
SummaryRecommended update for java-11-openjdk
Typerecommended
Severitymoderate
References1113734
Description:

This update for java-11-openjdk fixes the following issues:
Merge into the JDK following modules from github.com/javaee:


This provides a default implementation of JAXB-API that existed in JDK before Java 11 and that some applications depend on.


Advisory IDSUSE-RU-2018:2641-1
ReleasedMon Nov 12 20:39:30 2018
SummaryRecommended update for nfsidmap
Typerecommended
Severitymoderate
References1098217
Description:

This update for nfsidmap fixes the following issues:


Advisory IDSUSE-RU-2018:2649-1
ReleasedTue Nov 13 14:49:19 2018
SummaryRecommended update for guile
Typerecommended
Severitymoderate
References1110085
Description:


based on Shift-JIS (LC_CTYPE=ja_JP.sjis) (bsc#1110085)


Advisory IDSUSE-RU-2018:2716-1
ReleasedTue Nov 20 16:15:16 2018
SummaryRecommended update for llvm5
Typerecommended
Severitymoderate
References1111190
Description:

This update for llvm5 fixes the following issues:


Advisory IDSUSE-RU-2018:2742-1
ReleasedThu Nov 22 13:28:36 2018
SummaryRecommended update for rpcbind
Typerecommended
Severitymoderate
References969953
Description:

This update for rpcbind fixes the following issues:


Advisory IDSUSE-SU-2018:2761-1
ReleasedThu Nov 22 16:26:11 2018
SummarySecurity update for libwpd
Typesecurity
Severityimportant
References1115713,CVE-2018-19208
Description:

This update for libwpd fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2018:2763-1
ReleasedThu Nov 22 16:26:44 2018
SummarySecurity update for java-1_8_0-ibm
Typesecurity
Severityimportant
References1116574,CVE-2018-13785,CVE-2018-3136,CVE-2018-3139,CVE-2018-3149,CVE-2018-3169,CVE-2018-3180,CVE-2018-3183,CVE-2018-3214
Description:


java-1_8_0-ibm was updated to Java 8.0 Service Refresh 5 Fix Pack 25 (bsc#1116574)


- IJ10934 CVE-2018-13785 - IJ10935 CVE-2018-3136 - IJ10895 CVE-2018-3139 - IJ10932 CVE-2018-3149 - IJ10894 CVE-2018-3180 - IJ10930 CVE-2018-3183 - IJ10933 CVE-2018-3214 - IJ09315 FLOATING POINT EXCEPTION FROM JAVA.TEXT.DECIMALFORMAT. FORMAT - IJ09088 INTRODUCING A NEW PROPERTY FOR TURKEY TIMEZONE FOR PRODUCTS NOT IDENTIFYING TRT - IJ10800 REMOVE EXPIRING ROOT CERTIFICATES IN IBM JDK’S CACERTS. - IJ10566 SUPPORT EBCDIC CODE PAGE IBM-274 – BELGIUM EBCDIC

- IJ08730 APPLICATION SIGNAL HANDLER NOT INVOKED FOR SIGABRT - IJ10453 ASSERTION FAILURE AT CLASSPATHITEM.CPP - IJ09574 CLASSLOADER DEFINED THROUGH SYSTEM PROPERTY ‘JAVA.SYSTEM.CLASS.LOADE R’ IS NOT HONORED. - IJ10931 CVE-2018-3169 - IJ10618 GPU SORT: UNSPECIFIED LAUNCH FAILURE - IJ10619 INCORRECT ILLEGALARGUMENTEXCEPTION BECAUSE OBJECT IS NOT AN INSTANCE OF DECLARING CLASS ON REFLECTIVE INVOCATION - IJ10135 JVM HUNG IN GARBAGECOLLECTORMXBEAN.G ETLASTGCINFO() API - IJ10680 RECURRENT ABORTED SCAVENGE

- IX90187 CLIENTREQUESTIMPL.REINVO KE FAILS WITH JAVA.LANG.INDEXOUTOFBOUN DSEXCEPTION

- IJ09600 DTFJ AND JDMPVIEW FAIL TO PARSE WIDE REGISTER VALUES

- IJ10492 'EC KEYSIZE < 384' IS NOT HONORED USING THE 'JDK.TLS.DISABLEDALGORIT HMS' SECURITY PROPERTY - IJ10310 ADD NULL CHECKING ON THE ENCRYPTION TYPES LIST TO CREDENTIALS.GETDEFAULTNA TIVECREDS() METHOD - IJ10491 AES/GCM CIPHER – AAD NOT RESET TO UN-INIT STATE AFTER DOFINAL( ) AND INIT( ) - IJ08442 HTTP PUBLIC KEY PINNING FINGERPRINT,PROBLEM WITH CONVERTING TO JKS KEYSTORE - IJ09107 IBMPKCS11IMPL CRYPTO PROVIDER – INTERMITTENT ERROR WITH SECP521R1 SIGNATURE ON Z/OS - IJ10136 IBMPKCS11IMPL – INTERMITTENT ERROR WITH SECP521R1 SIG ON Z/OS AND Z/LINUX - IJ08530 IBMPKCS11IMPL PROVIDER USES THE WRONG RSA CIPHER MECHANISM FOR THE RSA/ECB/PKCS1PADDING CIPHER - IJ08723 JAAS THROWS A ‘ARRAY INDEX OUT OF RANGE’ EXCEPTION - IJ08704 THE SECURITY PROPERTY ‘JDK.CERTPATH.DISABLEDAL GORITHMS’ IS MISTAKENLY BEING USED TO FILTER JAR SIGNING ALGORITHMS

- PH03889 ADD SUPPORT FOR TRY-WITH-RESOURCES TO COM.IBM.JZOS.ENQUEUE - PH03414 ROLLOVER FROM SYE TO SAE FOR ICSF REASON CODE 3059 - PH04008 ZERTJSSE – Z SYSTEMS ENCRYPTION READINESS TOOL (ZERT) NEW SUPPORT IN THE Z/OS JAVA SDK
This includes the update to Java 8.0 Service Refresh 5 Fix Pack 22:

- IJ09139 CUDA4J NOT AVAILABLE ON ALL PLATFORMS

- IJ09089 CRASH DURING COMPILATION IN USEREGISTER ON X86-32 - IJ08655 FLOATING POINT ERROR (SIGFPE) IN ZJ9SYM1 OR ANY VM/JIT MODULE ON AN INSTRUCTION FOLLOWING A VECTOR INSTRUCTION - IJ08850 CRASH IN ARRAYLIST$ITR.NEXT() - IJ09601 JVM CRASHES ON A SIGBUS SIGNAL WHEN ACCESSING A DIRECTBYTEBUFFER

- PH02999 JZOS data management classes accept dataset names in code pages supported by z/OS system services - PH01244 OUTPUT BUFFER TOO SHORT FOR GCM MODE ENCRYPTION USING IBMJCEHYBRID
Also the update to Java 8.0 Service Refresh 5 Fix Pack 21

- IJ08569 JAVA.IO.IOEXCEPTION OCCURS WHEN A FILECHANNEL IS BIGGER THAN 2GB ON AIX PLATFORM - IJ08570 JAVA.LANG.UNSATISFIEDLIN KERROR WITH JAVA OPTION -DSUN.JAVA2D.CMM=SUN.JAV A2D.CMM.KCMS.KCMSSERVICE PROVIDER ON AIX PLATFORM

- IJ08001 30% THROUGHPUT DROP FOR CERTAIN SYNCHRONIZATION WORKLOADS - IJ07997 TRACEASSERT IN GARBAGE COLLECTOR(MEMORYSUBSPACE)

- IJ08503 ASSERTION IS HIT DUE TO UNEXPECTED STACK HEIGHT IN DEBUGGING MODE - IJ08375 CRASH DURING HARDWARE GENERATED GUARDED STORAGE EVENT WITHIN A TRANSACTIONAL EXECUTION REGION WHEN RUNNING WITH -XGC:CONCURRENTS - IJ08205 CRASH WHILE COMPILING - IJ09575 INCORRECT RESULT WHEN USING JAVA.LANG.MATH.MIN OR MAX ON 31-BIT JVM - IJ07886 INCORRECT CALUCATIONS WHEN USING NUMBERFORMAT.FORMAT() AND BIGDECIMAL.{FLOAT/DOUBLE }VALUE()


Advisory IDSUSE-RU-2018:2792-1
ReleasedTue Nov 27 10:52:31 2018
SummaryRecommended update for autofs
Typerecommended
Severitymoderate
References1093436
Description:

This update for autofs fixes the following issues:


Advisory IDSUSE-SU-2018:2793-1
ReleasedTue Nov 27 13:38:46 2018
SummarySecurity update for tiff
Typesecurity
Severitymoderate
References1099257,1113094,1113672,CVE-2018-12900,CVE-2018-18557,CVE-2018-18661
Description:

This update for tiff fixes the following issues:
Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2018:2797-1
ReleasedTue Nov 27 15:54:44 2018
SummarySecurity update for rubygem-loofah
Typesecurity
Severitymoderate
References1113969,CVE-2018-16468
Description:

This update for rubygem-loofah fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2018:2798-1
ReleasedWed Nov 28 07:48:35 2018
SummaryRecommended update for make
Typerecommended
Severitymoderate
References1100504
Description:

This update for make fixes the following issues:


Advisory IDSUSE-RU-2018:2818-1
ReleasedFri Nov 30 14:32:24 2018
SummaryRecommended update for skopeo
Typerecommended
Severitymoderate
References1115165
Description:


This update for skopeo to version 0.1.32 adds the following feature:


Advisory IDSUSE-SU-2018:2825-1
ReleasedMon Dec 3 15:35:02 2018
SummarySecurity update for pam
Typesecurity
Severityimportant
References1115640,CVE-2018-17953
Description:

This update for pam fixes the following issue:
Security issue fixed:


Advisory IDSUSE-SU-2018:2857-1
ReleasedThu Dec 6 09:40:03 2018
SummarySecurity update for rubygem-activejob-5_1
Typesecurity
Severitylow
References1117632,CVE-2018-16476
Description:

This update for rubygem-activejob-5_1 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2018:2861-1
ReleasedThu Dec 6 14:32:01 2018
SummarySecurity update for ncurses
Typesecurity
Severityimportant
References1103320,1115929,CVE-2018-19211
Description:

This update for ncurses fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2018:2862-1
ReleasedThu Dec 6 14:33:19 2018
SummarySecurity update for openssl-1_0_0
Typesecurity
Severitymoderate
References1100078,1112209,1113534,1113652,1113742,CVE-2018-0734,CVE-2018-5407
Description:

This update for openssl-1_0_0 fixes the following issues:
Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2018:2864-1
ReleasedFri Dec 7 10:21:20 2018
SummarySecurity update for tiff
Typesecurity
Severitymoderate
References1017693,1054594,1115717,990460,CVE-2016-10092,CVE-2016-10093,CVE-2016-10094,CVE-2016-6223,CVE-2017-12944,CVE-2018-19210
Description:

This update for tiff fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2018:2866-1
ReleasedFri Dec 7 12:04:49 2018
SummaryRecommended update for helm-mirror
Typerecommended
Severitylow
References1116182
Description:


This update provides helm-mirror to the Containers module.
This utility mirrors Helm repositories to a local directory and it can extract used container images.


Advisory IDSUSE-SU-2018:2882-1
ReleasedMon Dec 10 08:07:44 2018
SummarySecurity update for cups
Typesecurity
Severityimportant
References1115750,CVE-2018-4700
Description:

This update for cups fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2018:2908-1
ReleasedTue Dec 11 21:48:30 2018
SummaryRecommended update for susefirewall2-to-firewalld
Typerecommended
Severitymoderate
References1115001
Description:

This update for susefirewall2-to-firewalld fixes the following issues:


Advisory IDSUSE-SU-2018:2914-1
ReleasedWed Dec 12 13:37:46 2018
SummarySecurity update for ghostscript
Typesecurity
Severityimportant
References1109105,1111479,1111480,1112229,1117022,1117274,1117313,1117327,1117331,CVE-2018-17183,CVE-2018-17961,CVE-2018-18073,CVE-2018-18284,CVE-2018-19409,CVE-2018-19475,CVE-2018-19476,CVE-2018-19477
Description:

This update for ghostscript to version 9.26 fixes the following issues:
Security issues fixed:


Version update to 9.26 (bsc#1117331):


Advisory IDSUSE-RU-2018:2926-1
ReleasedThu Dec 13 11:24:58 2018
SummaryRecommended update for java-1_8_0-ibm
Typerecommended
Severityimportant
References1119213
Description:

This update for java-1_8_0-ibm fixes the following issues:


Advisory IDSUSE-RU-2018:2939-1
ReleasedFri Dec 14 13:59:54 2018
SummaryRecommended update for libcdio
Typerecommended
Severitymoderate
References1108134
Description:

This update for libcdio fixes the following issues:


Advisory IDSUSE-RU-2018:2961-1
ReleasedMon Dec 17 19:51:40 2018
SummaryRecommended update for psmisc
Typerecommended
Severitymoderate
References1098697,1112780
Description:

This update for psmisc provides the following fix:


Advisory IDSUSE-RU-2018:2970-1
ReleasedMon Dec 17 19:53:42 2018
SummaryRecommended update for libmtp
Typerecommended
Severitymoderate
References1110868
Description:

This update for libmtp fixes the following issues:


Advisory IDSUSE-SU-2018:3024-1
ReleasedFri Dec 21 11:23:50 2018
SummarySecurity update for enigmail
Typesecurity
Severitymoderate
References1118935
Description:

This update for enigmail to version 2.0.9 fixes the following issues:
Security issue fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2018:3044-1
ReleasedFri Dec 21 18:47:21 2018
SummarySecurity update for MozillaFirefox, mozilla-nspr and mozilla-nss
Typesecurity
Severityimportant
References1097410,1106873,1119069,1119105,CVE-2018-0495,CVE-2018-12384,CVE-2018-12404,CVE-2018-12405,CVE-2018-17466,CVE-2018-18492,CVE-2018-18493,CVE-2018-18494,CVE-2018-18498
Description:

This update for MozillaFirefox, mozilla-nss and mozilla-nspr fixes the following issues:
Issues fixed in MozillaFirefox:


Issues fixed in mozilla-nss:

Issues fixed in mozilla-nspr:


Advisory IDSUSE-SU-2018:3064-1
ReleasedFri Dec 28 18:39:08 2018
SummarySecurity update for containerd, docker and go
Typesecurity
Severityimportant
References1047218,1074971,1080978,1081495,1084533,1086185,1094680,1095817,1098017,1102522,1104821,1105000,1108038,1113313,1113978,1114209,1118897,1118898,1118899,1119634,1119706,CVE-2018-16873,CVE-2018-16874,CVE-2018-16875,CVE-2018-7187
Description:


This update for containerd, docker and go fixes the following issues:
containerd and docker:


go:
Additionally, the package go1.10 has been added.


Advisory IDSUSE-SU-2018:3066-1
ReleasedFri Dec 28 18:39:32 2018
SummarySecurity update for wireshark
Typesecurity
Severitymoderate
References1117740,CVE-2018-19622,CVE-2018-19623,CVE-2018-19624,CVE-2018-19625,CVE-2018-19626,CVE-2018-19627
Description:

This update for wireshark fixes the following issues:
Update to Wireshark 2.4.11 (bsc#1117740).
Security issues fixed:


Further bug fixes and updated protocol support as listed in:


Advisory IDSUSE-SU-2019:5-1
ReleasedWed Jan 2 13:54:39 2019
SummarySecurity update for libraw
Typesecurity
Severitymoderate
References1097975,1103200,1103206,CVE-2018-5804,CVE-2018-5813,CVE-2018-5815,CVE-2018-5816
Description:

This update for libraw fixes the following issues:
Security issues fixed:
The following security vulnerabilities were addressed:


Advisory IDSUSE-RU-2019:6-1
ReleasedWed Jan 2 20:25:25 2019
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1099119,1099192
Description:



GCC 7 was updated to the GCC 7.4 release.


Advisory IDSUSE-RU-2019:9-1
ReleasedWed Jan 2 20:26:17 2019
SummaryRecommended update for mirror
Typerecommended
Severitymoderate
References1117110
Description:

This update for mirror provides the following fix:


Advisory IDSUSE-RU-2019:32-1
ReleasedTue Jan 8 13:03:20 2019
SummaryRecommended update for librdkafka
Typerecommended
Severitymoderate
References1119963
Description:


This update ships librdkafka 0.11.6 to SUSE Linux Enterprise Server 15.
librdkafka is a C library implementation of the Apache Kafka protocol, containing both Producer and Consumer support.


Advisory IDSUSE-RU-2019:44-1
ReleasedTue Jan 8 13:07:32 2019
SummaryRecommended update for acl
Typerecommended
Severitylow
References953659
Description:

This update for acl fixes the following issues:


Advisory IDSUSE-SU-2019:48-1
ReleasedWed Jan 9 17:24:55 2019
SummarySecurity update for helm-mirror
Typesecurity
Severitymoderate
References1116182,1118897,1118898,1118899,1120762,CVE-2018-16873,CVE-2018-16874,CVE-2018-16875
Description:

This update for helm-mirror to version 0.2.1 fixes the following issues:

Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:58-1
ReleasedThu Jan 10 16:03:31 2019
SummarySecurity update for java-1_8_0-openjdk
Typesecurity
Severityimportant
References1112142,1112143,1112144,1112146,1112147,1112148,1112152,1112153,CVE-2018-13785,CVE-2018-16435,CVE-2018-3136,CVE-2018-3139,CVE-2018-3149,CVE-2018-3169,CVE-2018-3180,CVE-2018-3183,CVE-2018-3214
Description:

This update for java-1_8_0-openjdk to version 8u191 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:75-1
ReleasedFri Jan 11 13:29:22 2019
SummaryRecommended update for azure-li-services, python-Cerberus
Typerecommended
Severitymoderate
References1103542,1119702
Description:


This update for azure-li-services, python-Cerberus fixes the following issues:
azure-li-services and its dependency python-Cerberus were added to the Public Cloud Module. (fate#326575 bsc#1103542)
'azure-li-services' is a package providing services to setup a system suitable to run SAP workloads on it.


Advisory IDSUSE-RU-2019:76-1
ReleasedFri Jan 11 13:46:45 2019
SummaryRecommended update for lifecycle-data-sle-module-live-patching
Typerecommended
Severitymoderate
References1020320
Description:


This update for lifecycle-data-sle-module-live-patching adds lifecycle data for following live patches:


Advisory IDSUSE-RU-2019:82-1
ReleasedFri Jan 11 17:16:48 2019
SummaryRecommended update for suse-build-key
Typerecommended
Severitymoderate
References1044232
Description:

This update for suse-build-key fixes the following issues:


Advisory IDSUSE-RU-2019:89-1
ReleasedTue Jan 15 13:15:33 2019
SummaryRecommended update for python3-susepubliccloudinfo
Typerecommended
Severitymoderate
References1121150,1121151
Description:

This update for python3-susepubliccloudinfo fixes the following issues:
Update to version 1.1.0 (bsc#1121151, bsc#1121150)
+ Support new inactive state + Remove awscvsgen and associated subpackage


Advisory IDSUSE-RU-2019:90-1
ReleasedTue Jan 15 13:15:42 2019
SummaryRecommended update for regionServiceClientConfigEC2
Typerecommended
Severitymoderate
References1121114
Description:

This update for regionServiceClientConfigEC2 2.1.0 fixes the following issues:
Add the SUSE server IP 34.197.223.242 to the configuration. (bsc#1121114)


Advisory IDSUSE-SU-2019:93-1
ReleasedTue Jan 15 14:48:33 2019
SummarySecurity update for wget
Typesecurity
Severityimportant
References1120382,CVE-2018-20483
Description:

This update for wget fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:97-1
ReleasedTue Jan 15 18:01:38 2019
SummaryRecommended update for rpmlint
Typerecommended
Severitymoderate
References1015141,1076467,1089114,1089340,1095769,1097339,1102836,1104110,1108037,1109938,1111254,1116686,1116758,1119975
Description:

This update for rpmlint fixes the following issues:


Advisory IDSUSE-RU-2019:102-1
ReleasedTue Jan 15 18:02:58 2019
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1120402
Description:

This update for timezone fixes the following issues:


Advisory IDSUSE-SU-2019:110-1
ReleasedThu Jan 17 14:17:05 2019
SummarySecurity update for zeromq
Typesecurity
Severityimportant
References1121717,CVE-2019-6250
Description:

This update for zeromq fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:112-1
ReleasedThu Jan 17 14:19:30 2019
SummarySecurity update for soundtouch
Typesecurity
Severitymoderate
References1108631,1108632,CVE-2018-17097,CVE-2018-17098
Description:

This update for soundtouch fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:130-1
ReleasedFri Jan 18 16:30:56 2019
SummarySecurity update for wireshark
Typesecurity
Severitymoderate
References1121232,1121233,1121234,1121235,CVE-2019-5717,CVE-2019-5718,CVE-2019-5719,CVE-2019-5721
Description:

This update for wireshark to version 2.4.12 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:133-1
ReleasedMon Jan 21 09:35:52 2019
SummarySecurity update for libraw
Typesecurity
Severitymoderate
References1120498,1120499,1120500,1120515,1120516,1120517,1120519,CVE-2018-20337,CVE-2018-20363,CVE-2018-20364,CVE-2018-20365,CVE-2018-5817,CVE-2018-5818,CVE-2018-5819
Description:

This update for libraw fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:145-1
ReleasedWed Jan 23 15:55:42 2019
SummarySecurity update for ghostscript
Typesecurity
Severityimportant
References1122319,CVE-2019-6116
Description:

This update for ghostscript version 9.26a fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:155-1
ReleasedThu Jan 24 13:50:25 2019
SummaryRecommended update for csync
Typerecommended
Severitymoderate
References1113889
Description:

This update for csync fixes the following issues:


Advisory IDSUSE-RU-2019:201-1
ReleasedTue Jan 29 20:19:32 2019
SummaryRecommended update for google-compute-engine
Typerecommended
Severitymoderate
References1119029,1119110,1122172
Description:

This update for google-compute-engine provides the following fixes:


Advisory IDSUSE-RU-2019:207-1
ReleasedTue Jan 29 20:20:24 2019
SummaryRecommended update for container-suseconnect
Typerecommended
Severitymoderate
References1119496
Description:

This update for container-suseconnect fixes the following issues:
container-suseconnect was updated to 2.0.0 (bsc#1119496):


Advisory IDSUSE-SU-2019:221-1
ReleasedFri Feb 1 15:20:56 2019
SummarySecurity update for java-11-openjdk
Typesecurity
Severityimportant
References1120431,1122293,1122299,CVE-2018-11212,CVE-2019-2422,CVE-2019-2426
Description:

This update for java-11-openjdk to version 11.0.2+7 fixes the following issues:
Security issues fixed:


Non-security issues fix:


Advisory IDSUSE-RU-2019:225-1
ReleasedMon Feb 4 13:36:52 2019
SummaryRecommended update for hmaccalc
Typerecommended
Severitymoderate
References1122491
Description:

This update for hmaccalc fixes the following issues:


Advisory IDSUSE-SU-2019:247-1
ReleasedWed Feb 6 07:18:45 2019
SummarySecurity update for lua53
Typesecurity
Severitymoderate
References1123043,CVE-2019-6706
Description:

This update for lua53 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:259-1
ReleasedWed Feb 6 11:26:09 2019
SummaryRecommended update for man-pages-posix
Typerecommended
Severitylow
References1116987
Description:

This update for man-pages-posix fixes the following issues:
- Supplements the package 'man' in order to install some missing man pages. (bnc#1116987)


Advisory IDSUSE-RU-2019:270-1
ReleasedWed Feb 6 15:43:23 2019
SummaryRecommended update for mariadb-connector-c
Typerecommended
Severityimportant
References1097938,1116686
Description:

This update for mariadb-connector-c fixes the following issues:


Advisory IDSUSE-RU-2019:276-1
ReleasedWed Feb 6 19:12:35 2019
SummaryRecommended update for rollback-helper
Typerecommended
Severitymoderate
References1108618,1113048,1115555
Description:

This update for rollback-helper fixes the following issues:


Advisory IDSUSE-SU-2019:286-1
ReleasedThu Feb 7 13:45:27 2019
SummarySecurity update for docker
Typesecurity
Severitymoderate
References1001161,1112980,1115464,1118897,1118898,1118899,1118990,1121412,CVE-2018-16873,CVE-2018-16874,CVE-2018-16875
Description:

This update for containerd, docker, docker-runc and golang-github-docker-libnetwork fixes the following issues:
Security issues fixed for containerd, docker, docker-runc and golang-github-docker-libnetwork:


Non-security issues fixed for docker:


Advisory IDSUSE-RU-2019:317-1
ReleasedMon Feb 11 16:08:23 2019
SummaryRecommended update for sendmail
Typerecommended
Severitymoderate
References1116675
Description:

This update for sendmail addresses the following issues:


Advisory IDSUSE-SU-2019:362-1
ReleasedWed Feb 13 13:31:56 2019
SummarySecurity update for docker-runc
Typesecurity
Severityimportant
References1121967,CVE-2019-5736
Description:

This update for docker-runc fixes the following issues: Security issue fixed:


Advisory IDSUSE-RU-2019:366-1
ReleasedWed Feb 13 14:00:29 2019
SummaryRecommended update for wireless-regdb
Typerecommended
Severitymoderate
References1121466
Description:

This update for wireless-regdb provides the following fixes:



Advisory IDSUSE-RU-2019:371-1
ReleasedWed Feb 13 14:02:17 2019
SummaryRecommended update for ypbind
Typerecommended
Severitymoderate
References1114640
Description:

This update for ypbind fixes the following issues:


Advisory IDSUSE-RU-2019:374-1
ReleasedWed Feb 13 14:03:02 2019
SummaryRecommended update for xrdb
Typerecommended
Severitymoderate
References1120004
Description:

This update for xrdb fixes the following issues:


Advisory IDSUSE-RU-2019:443-1
ReleasedTue Feb 19 18:53:19 2019
SummaryRecommended update for google-compute-engine
Typerecommended
Severitymoderate
References1123671,1123672
Description:

This update for google-compute-engine fixes the following issues:
Google Compute Engine was updated to version 20190124 (bsc#1123671, bsc#1123672)


Advisory IDSUSE-RU-2019:464-1
ReleasedFri Feb 22 09:43:52 2019
SummaryRecommended update for xkeyboard-config
Typerecommended
Severitymoderate
References1123784
Description:

This update for xkeyboard-config fixes the following issues:


Advisory IDSUSE-RU-2019:487-1
ReleasedMon Feb 25 17:42:01 2019
SummaryRecommended update for cloud-regionsrv-client
Typerecommended
Severitymoderate
References1029162,1114985,1120980
Description:

This update for cloud-regionsrv-client fixes the following issues:
Updated to version 8.1.3


Advisory IDSUSE-SU-2019:495-1
ReleasedTue Feb 26 16:42:35 2019
SummarySecurity update for containerd, docker, docker-runc, golang-github-docker-libnetwork, runc
Typesecurity
Severityimportant
References1048046,1051429,1114832,1118897,1118898,1118899,1121967,1124308,CVE-2018-16873,CVE-2018-16874,CVE-2018-16875,CVE-2019-5736
Description:

This update for containerd, docker, docker-runc, golang-github-docker-libnetwork, runc fixes the following issues:
Security issues fixed:


Other changes and fixes:


Advisory IDSUSE-RU-2019:500-1
ReleasedTue Feb 26 19:11:26 2019
SummaryRecommended update for lifecycle-data-sle-module-live-patching
Typerecommended
Severitymoderate
References1020320,1126443
Description:

This update for lifecycle-data-sle-module-live-patching fixes the following issues:


Advisory IDSUSE-RU-2019:529-1
ReleasedFri Mar 1 13:46:51 2019
SummaryRecommended update for cloud-netconfig
Typerecommended
Severitymoderate
References1112822,1118783,1122013,1123008
Description:

This update for cloud-netconfig provides the following fixes:


Advisory IDSUSE-RU-2019:533-1
ReleasedFri Mar 1 13:47:40 2019
SummaryRecommended update for mirror
Typerecommended
Severitylow
References1123661
Description:

This update for mirror provides the following fix:


Advisory IDSUSE-RU-2019:550-1
ReleasedTue Mar 5 14:46:46 2019
SummaryRecommended update for sapconf
Typerecommended
Severitymoderate
References1111243,1122741
Description:

This update for sapconf fixes the following issues:


Advisory IDSUSE-RU-2019:567-1
ReleasedThu Mar 7 17:49:00 2019
SummaryRecommended update for arpwatch
Typerecommended
Severitymoderate
References1119851
Description:

This update for arpwatch provides the following fix:


Advisory IDSUSE-SU-2019:571-1
ReleasedThu Mar 7 18:13:46 2019
SummarySecurity update for file
Typesecurity
Severitymoderate
References1096974,1096984,1126117,1126118,1126119,CVE-2018-10360,CVE-2019-8905,CVE-2019-8906,CVE-2019-8907
Description:

This update for file fixes the following issues:
The following security vulnerabilities were addressed:


Advisory IDSUSE-SU-2019:574-1
ReleasedFri Mar 8 15:22:51 2019
SummarySecurity update for java-1_8_0-openjdk
Typesecurity
Severityimportant
References1122293,1122299,CVE-2018-11212,CVE-2019-2422
Description:

This update for java-1_8_0-openjdk to version jdk8u201 (icedtea 3.11.0) fixes the following issues: Security issues fixed:


Complete list of changes: https://mail.openjdk.java.net/pipermail/distro-pkg-dev/2019-March/041223.html


Advisory IDSUSE-SU-2019:585-1
ReleasedTue Mar 12 12:59:09 2019
SummarySecurity update for java-1_8_0-ibm
Typesecurity
Severityimportant
References1122292,1122293,1122299,1128158,CVE-2018-11212,CVE-2018-1890,CVE-2019-2422,CVE-2019-2449
Description:

This update for java-1_8_0-ibm to version 8.0.5.30 fixes the following issues:
Security issues fixed:


More information: https://www-01.ibm.com/support/docview.wss?uid=ibm10873332


Advisory IDSUSE-SU-2019:600-1
ReleasedTue Mar 12 18:40:17 2019
SummarySecurity update for openssl-1_0_0
Typesecurity
Severitymoderate
References1117951,1127080,CVE-2019-1559
Description:

This update for openssl-1_0_0 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:605-1
ReleasedWed Mar 13 12:40:48 2019
SummaryRecommended update for azure-li-services
Typerecommended
Severitymoderate
References1127923,1127924
Description:


This update for azure-li-services to version 1.1.27 provides the following:


Advisory IDSUSE-RU-2019:608-1
ReleasedWed Mar 13 15:21:02 2019
SummaryRecommended update for cups
Typerecommended
Severitymoderate
References1118118
Description:

This update for cups fixes the following issues:


Advisory IDSUSE-SU-2019:619-1
ReleasedFri Mar 15 15:38:37 2019
SummarySecurity update for wireshark
Typesecurity
Severitymoderate
References1127367,1127369,1127370,CVE-2019-9208,CVE-2019-9209,CVE-2019-9214
Description:

This update for wireshark to version 2.4.13 fixes the following issues:
Security issues fixed:


Release notes: https://www.wireshark.org/docs/relnotes/wireshark-2.4.13.html


Advisory IDSUSE-SU-2019:637-1
ReleasedTue Mar 19 09:26:52 2019
SummarySecurity update for libssh2_org
Typesecurity
Severitymoderate
References1128471,1128472,1128474,1128476,1128480,1128481,1128490,1128492,1128493,CVE-2019-3855,CVE-2019-3856,CVE-2019-3857,CVE-2019-3858,CVE-2019-3859,CVE-2019-3860,CVE-2019-3861,CVE-2019-3862,CVE-2019-3863
Description:

This update for libssh2_org fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:654-1
ReleasedWed Mar 20 10:29:13 2019
SummarySecurity update for openwsman
Typesecurity
Severityimportant
References1092206,1122623,CVE-2019-3816,CVE-2019-3833
Description:

This update for openwsman fixes the following issues:
Security issues fixed:


Other issues addressed:


Advisory IDSUSE-SU-2019:707-1
ReleasedFri Mar 22 13:32:07 2019
SummarySecurity update for unzip
Typesecurity
Severitymoderate
References1110194,CVE-2018-18384
Description:

This update for unzip fixes the following issues:


Advisory IDSUSE-SU-2019:718-1
ReleasedFri Mar 22 16:50:25 2019
SummarySecurity update for ghostscript
Typesecurity
Severityimportant
References1129186,CVE-2019-3838
Description:

This update for ghostscript fixes the following issue:
Security issue fixed:


Advisory IDSUSE-SU-2019:720-1
ReleasedFri Mar 22 16:53:55 2019
SummarySecurity update for libgxps
Typesecurity
Severitymoderate
References1092125,CVE-2018-10733
Description:

This update for libgxps fixes the following issues:


Advisory IDSUSE-SU-2019:748-1
ReleasedTue Mar 26 14:35:56 2019
SummarySecurity update for libmspack
Typesecurity
Severitymoderate
References1113038,1113039,CVE-2018-18584,CVE-2018-18585
Description:

This update for libmspack fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:772-1
ReleasedWed Mar 27 10:37:12 2019
SummarySecurity update for wavpack
Typesecurity
Severitymoderate
References1120929,1120930,CVE-2018-19840,CVE-2018-19841
Description:

This update for wavpack fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:777-1
ReleasedWed Mar 27 12:23:34 2019
SummarySecurity update for ntp
Typesecurity
Severitymoderate
References1128525,CVE-2019-8936
Description:

This update for ntp fixes the following issues:
Security issue fixed:


Other issues addressed:


Advisory IDSUSE-SU-2019:786-1
ReleasedThu Mar 28 11:21:38 2019
SummarySecurity update for tiff
Typesecurity
Severitymoderate
References1108606,1115717,1121626,1125113,CVE-2018-17000,CVE-2018-19210,CVE-2019-6128,CVE-2019-7663
Description:

This update for tiff fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:788-1
ReleasedThu Mar 28 11:55:06 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1119687,CVE-2018-20346
Description:

This update for sqlite3 to version 3.27.2 fixes the following issue:
Security issue fixed:


Release notes: https://www.sqlite.org/releaselog/3_27_2.html


Advisory IDSUSE-RU-2019:790-1
ReleasedThu Mar 28 12:06:17 2019
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1130557
Description:

This update for timezone fixes the following issues:
timezone was updated 2019a:


Advisory IDSUSE-SU-2019:806-1
ReleasedFri Mar 29 13:16:51 2019
SummarySecurity update for sysstat
Typesecurity
Severitylow
References1117001,1117260,CVE-2018-19416,CVE-2018-19517
Description:

This update for sysstat fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:855-1
ReleasedWed Apr 3 11:49:58 2019
SummarySecurity update for netpbm
Typesecurity
Severitymoderate
References1086777,CVE-2018-8975
Description:

This update for netpbm fixes the following issues:


Advisory IDSUSE-SU-2019:861-1
ReleasedWed Apr 3 16:09:41 2019
SummarySecurity update for clamav
Typesecurity
Severityimportant
References1130721,CVE-2019-1787,CVE-2019-1788,CVE-2019-1789
Description:

This update for clamav to version 0.100.3 fixes the following issues:
Security issues fixed (bsc#1130721):


Advisory IDSUSE-RU-2019:869-1
ReleasedThu Apr 4 11:46:13 2019
SummaryRecommended update for mariadb-connector-c
Typerecommended
Severitymoderate
References1126088
Description:

This update for mariadb-connector-c fixes the following issues:


Advisory IDSUSE-RU-2019:887-1
ReleasedFri Apr 5 07:55:32 2019
SummaryRecommended update for zypper-docker
Typerecommended
Severitymoderate
References1018823,1022052,1097442,1098017
Description:


This update for zypper-docker to version 2.0.0 contains the following changes:
Features:
* Allow inspection of stopped containers Using zypper-docker luc,lpc or pchkc on a stopped container is now possible. * Analyze container instead of base image by default Note: This is a backwards incompatible change. If the base image of a container needs to be analyzed, which was the former default a new --base flag can be used. e.g. zypper-docker pchkc --base
Minor Improvements / Fixes:
* Add short forms of commands to help section (bsc#1022052) * Fix bug that caused images not to be removed properly in some cases * Fix bug that caused lpc command to log to stdout * Fix bug that caused force flag not to work with zypper-docker images * Fix zypper-docker ps command * Fix bug with zypper-docker up/patch --no-recommends * Fix update behavior when getting a zypper update
Other:
* Update and use zypper exit codes (bsc#1018823) * Support recent version of the docker API


Advisory IDSUSE-RU-2019:895-1
ReleasedMon Apr 8 10:58:32 2019
SummaryRecommended update for speech-dispatcher
Typerecommended
Severitymoderate
References1129586
Description:

This update for speech-dispatcher fixes the following issues:


Advisory IDSUSE-RU-2019:905-1
ReleasedMon Apr 8 16:48:02 2019
SummaryRecommended update for gcc
Typerecommended
Severitymoderate
References1096008
Description:

This update for gcc fixes the following issues:


Advisory IDSUSE-SU-2019:917-1
ReleasedTue Apr 9 13:08:12 2019
SummarySecurity update for SDL
Typesecurity
Severitymoderate
References1124799,1124800,1124802,1124803,1124805,1124806,1124824,1124825,1124826,1124827,1125099,CVE-2019-7572,CVE-2019-7573,CVE-2019-7574,CVE-2019-7575,CVE-2019-7576,CVE-2019-7577,CVE-2019-7578,CVE-2019-7635,CVE-2019-7636,CVE-2019-7637,CVE-2019-7638
Description:

This update for SDL fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:919-1
ReleasedTue Apr 9 15:47:42 2019
SummarySecurity update for blktrace
Typesecurity
Severitylow
References1091942,CVE-2018-10689
Description:

This update for blktrace fixes the following issues:


Advisory IDSUSE-SU-2019:920-1
ReleasedTue Apr 9 16:52:38 2019
SummarySecurity update for flac
Typesecurity
Severitylow
References1091045,CVE-2017-6888
Description:

This update for flac fixes the following issues:


Advisory IDSUSE-SU-2019:925-1
ReleasedWed Apr 10 16:32:50 2019
SummarySecurity update for wget
Typesecurity
Severityimportant
References1131493,CVE-2019-5953
Description:

This update for wget fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:926-1
ReleasedWed Apr 10 16:33:12 2019
SummarySecurity update for tar
Typesecurity
Severitymoderate
References1120610,1130496,CVE-2018-20482,CVE-2019-9923
Description:

This update for tar fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:940-1
ReleasedFri Apr 12 13:20:03 2019
SummarySecurity update for audiofile
Typesecurity
Severitylow
References1100523,CVE-2018-13440
Description:

This update for audiofile fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:954-1
ReleasedTue Apr 16 13:05:59 2019
SummarySecurity update for openexr
Typesecurity
Severitylow
References1113455,CVE-2018-18444
Description:

This update for openexr fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:1001-1
ReleasedWed Apr 24 09:41:15 2019
SummarySecurity update for ntfs-3g_ntfsprogs
Typesecurity
Severitymoderate
References1130165,CVE-2019-9755
Description:

This update for ntfs-3g_ntfsprogs fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:1018-1
ReleasedWed Apr 24 13:02:28 2019
SummarySecurity update for jasper
Typesecurity
Severitymoderate
References1010783,1117505,1117511,CVE-2016-9396,CVE-2018-19539,CVE-2018-19542
Description:

This update for jasper fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:1022-1
ReleasedWed Apr 24 13:46:51 2019
SummaryRecommended update for hwdata
Typerecommended
Severitymoderate
References1121410
Description:

This update for hwdata fixes the following issues:
Update to version 0.320 (bsc#1121410):


Advisory IDSUSE-RU-2019:1034-1
ReleasedThu Apr 25 13:39:50 2019
SummaryRecommended update for docker-runc
Typerecommended
Severityimportant
References1131314,1131553
Description:

This update for docker-runc fixes the following issues:


Advisory IDSUSE-SU-2019:1036-1
ReleasedThu Apr 25 14:53:44 2019
SummarySecurity update for wireshark
Typesecurity
Severitymoderate
References1131945,CVE-2019-10894,CVE-2019-10895,CVE-2019-10896,CVE-2019-10899,CVE-2019-10901,CVE-2019-10903
Description:

This update for wireshark to version 2.4.14 fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:1040-1
ReleasedThu Apr 25 17:09:21 2019
SummarySecurity update for samba
Typesecurity
Severityimportant
References1114407,1124223,1125410,1126377,1131060,1131686,CVE-2019-3880
Description:

This update for samba fixes the following issues:
Security issue fixed:



ldb was updated to version 1.2.4 (bsc#1125410 bsc#1131686):


Non-security issues fixed:


Advisory IDSUSE-SU-2019:1052-1
ReleasedFri Apr 26 14:33:42 2019
SummarySecurity update for java-11-openjdk
Typesecurity
Severitymoderate
References1132728,1132732,CVE-2019-2602,CVE-2019-2684
Description:

This update for java-11-openjdk to version 11.0.3+7 fixes the following issues:
Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2019:1059-1
ReleasedSat Apr 27 09:44:01 2019
SummarySecurity update for libssh2_org
Typesecurity
Severityimportant
References1130103,1133528,CVE-2019-3859
Description:

This update for libssh2_org fixes the following issues:
- Incorrect upstream fix for CVE-2019-3859 broke public key authentication [bsc#1133528, bsc#1130103]


Advisory IDSUSE-SU-2019:1090-1
ReleasedMon Apr 29 14:32:33 2019
SummarySecurity update for rubygem-actionpack-5_1
Typesecurity
Severitymoderate
References1129271,1129272,CVE-2019-5418,CVE-2019-5419
Description:

This update for rubygem-actionpack-5_1 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:1105-1
ReleasedTue Apr 30 12:10:58 2019
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1084842,1114592,1124644,1128794,1129389,1131264,SLE-6738
Description:

This update for gcc7 fixes the following issues:
Update to gcc-7-branch head (r270528).


Advisory IDSUSE-RU-2019:1113-1
ReleasedTue Apr 30 14:08:42 2019
SummaryRecommended update for python-pycurl
Typerecommended
Severitymoderate
References1128355
Description:

This update for python-pycurl fixes the following issues:



Advisory IDSUSE-SU-2019:1127-1
ReleasedThu May 2 09:39:24 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1130325,1130326,CVE-2019-9936,CVE-2019-9937
Description:

This update for sqlite3 to version 3.28.0 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:1130-1
ReleasedThu May 2 13:07:59 2019
SummaryRecommended update for azure-li-services
Typerecommended
Severitymoderate
References1125372,1125373
Description:


This update for azure-li-services fixes the following issues:


Write /etc/sysconfig/sbd which contains the disk device name used to initialize the SBD device

In a new an optional stonith section the configuration for the iSCSI initiator and ip address can be setup. Once present the process to setup the iSCSI initiator as well as the device discovery is started. (bsc#1125373 and bsc#1125372)


Advisory IDSUSE-RU-2019:1134-1
ReleasedThu May 2 17:57:27 2019
SummaryRecommended update for quota
Typerecommended
Severitymoderate
References1131513,SLE-5734
Description:

This update for quota fixes the following issues:
Quota was updated to 4.05 release jsc#SLE-5734 bsc#1131513:



Advisory IDSUSE-RU-2019:1152-1
ReleasedFri May 3 18:06:09 2019
SummaryRecommended update for java-11-openjdk
Typerecommended
Severitymoderate
References1131378
Description:

This update for java-11-openjdk fixes the following issues:


Advisory IDSUSE-SU-2019:1156-1
ReleasedMon May 6 13:46:07 2019
SummarySecurity update for python-Jinja2
Typesecurity
Severityimportant
References1125815,1132174,1132323,CVE-2016-10745,CVE-2019-10906,CVE-2019-8341
Description:

This update for python-Jinja2 to version 2.10.1 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:1176-1
ReleasedTue May 7 16:19:23 2019
SummaryRecommended update for rpmlint
Typerecommended
Severitymoderate
References1132530
Description:

This update for rpmlint fixes the following issues:


Advisory IDSUSE-RU-2019:1199-1
ReleasedFri May 10 07:44:05 2019
SummaryRecommended update for nvmetcli
Typerecommended
Severitymoderate
References1130981
Description:

This update for nvmetcli fixes the following issues:


Advisory IDSUSE-SU-2019:1211-1
ReleasedFri May 10 14:09:09 2019
SummarySecurity update for java-1_8_0-openjdk
Typesecurity
Severityimportant
References1132728,1132729,1132732,1133135,CVE-2018-3639,CVE-2019-2602,CVE-2019-2684,CVE-2019-2698
Description:

This update for java-1_8_0-openjdk to version 8u212 fixes the following issues:
Security issues fixed:


Non-Security issue fixed:


Advisory IDSUSE-RU-2019:1229-1
ReleasedTue May 14 11:05:55 2019
SummaryRecommended update for sensors
Typerecommended
Severitymoderate
References1108468,1116021
Description:

This update for sensors fixes the following issues:
sensors was updated to version 3.5.0:
The following changes were done:



* Fix systemd paths. * Add detection of Fintek F81768. * Only probe I/O ports on x86. * Add detection of Nuvoton NCT6793D. * Add detection of Microchip MCP9808. * Mark F71868A as supported by the f71882fg driver. * Mark F81768D as supported by the f71882fg driver. * Mark F81866D as supported by the f71882fg driver. * Add detection of various ITE chips. * Add detection of Nuvoton NCT6795D. * Add detection of DDR4 SPD. * Add detection of ITE IT8987D. * Add detection of AMD Family 17h temperature sensors. * Add detection of AMD KERNCZ SMBus controller. * Add detection of various Intel SMBus controllers. * Add detection of Giantec GT30TS00. * Add detection of ONS CAT34TS02C and CAT34TS04. * Add detection of AMD Family 15h Model 60+ temperature sensors. * Add detection of Nuvoton NCT6796D. * Add detection of AMD Family 15h Model 70+ temperature sensors.

* Add hardwired inputs of NCT6795D * Add hardwired inputs of F71868A * Add hardwired NCT6796D inputs

* Add support for SENSORS_BUS_TYPE_SCSI, add support for power min, lcrit, min_alarm, lcrit_alarm. * Handle hwmon device with thermal device parent (bsc#1108468).


Advisory IDSUSE-SU-2019:1234-1
ReleasedTue May 14 18:31:52 2019
SummarySecurity update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork
Typesecurity
Severityimportant
References1114209,1114832,1118897,1118898,1118899,1121397,1121967,1123013,1128376,1128746,1134068,CVE-2018-16873,CVE-2018-16874,CVE-2018-16875,CVE-2019-5736,CVE-2019-6486
Description:

This update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork fixes the following issues:
Security issues fixed:


Other changes and bug fixes:


Advisory IDSUSE-RU-2019:1282-1
ReleasedFri May 17 13:14:19 2019
SummaryRecommended update for azure-li-services
Typerecommended
Severitymoderate
References1133162
Description:


This update for azure-li-services to 1.1.31 fixes the following issues:


If one service(A) needs the LUN and another service(B) that needs the LUN too runs in parallel a potential race condition exists in a way the service A could have umounted the LUN exactly at a time service B accesses it. Thus this patch changes the services such that only the last service, the cleanup service umounts the LUN.

It loads the module and make the load boot persistant

The setup of the stonith SBD device requires the network to be up beforehand because the target is an iSCSI endpoint.


Advisory IDSUSE-SU-2019:1291-1
ReleasedMon May 20 09:57:16 2019
SummarySecurity update for transfig
Typesecurity
Severitylow
References1106531,CVE-2018-16140
Description:

This update for transfig fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1302-1
ReleasedTue May 21 13:05:02 2019
SummaryRecommended update for monitoring-plugins
Typerecommended
Severitymoderate
References1132350,1132903,1133107
Description:

This update for monitoring-plugins fixes the following issues:







Advisory IDSUSE-SU-2019:1308-1
ReleasedTue May 21 18:35:23 2019
SummarySecurity update for java-1_8_0-ibm
Typesecurity
Severityimportant
References1132728,1132729,1132732,1132734,1134718,CVE-2019-10245,CVE-2019-2602,CVE-2019-2684,CVE-2019-2697,CVE-2019-2698
Description:

This update for java-1_8_0-ibm fixes the following issues:
Update to Java 8.0 Service Refresh 5 Fix Pack 35.
Security issues fixed:


Advisory IDSUSE-RU-2019:1318-1
ReleasedThu May 23 12:45:16 2019
SummaryRecommended update for orc
Typerecommended
Severitymoderate
References1130085
Description:

This update for orc does not fix any customer visible issues and does only address an issue with its test suite (bsc#1130085)


Advisory IDSUSE-RU-2019:1327-1
ReleasedThu May 23 18:09:53 2019
SummaryRecommended update for speech-dispatcher
Typerecommended
Severitymoderate
References1129586
Description:

This update for speech-dispatcher fixes the following issues:


Advisory IDSUSE-RU-2019:1328-1
ReleasedThu May 23 18:10:08 2019
SummaryRecommended update for lifecycle-data-sle-module-live-patching
Typerecommended
Severitymoderate
References1020320
Description:

This update for lifecycle-data-sle-module-live-patching fixes the following issues:


Advisory IDSUSE-SU-2019:1340-1
ReleasedFri May 24 12:57:31 2019
SummarySecurity update for libu2f-host
Typesecurity
Severitylow
References1124781,CVE-2018-20340
Description:

This update for libu2f-host fixes the following issues: Security issue fixed:


Advisory IDSUSE-RU-2019:1343-1
ReleasedFri May 24 13:58:40 2019
SummaryRecommended update for google-compute-engine
Typerecommended
Severitymoderate
References1128392,1134179
Description:

This update for google-compute-engine fixes the following issues:
google-compute-engine was updated to version 20190416 (bsc#1128392, bsc#1134179):


* Fix pam_group ordering detection. * Restart cron from the OS Login control file. * Add PAM entry to su:account stack.
Update to version 20190315:

* Fix alternate challenge section for two factor authentication.
Update to version 20190304:

* Set oom_score_adjust for google_accounts_daemon.

* Use pam_group to provide users with default groups. * Add compat.h to support FreeBSD. * Exit immediately after a two factor authentication failure. * Add support for Google phone prompt challenges.


Advisory IDSUSE-RU-2019:1367-1
ReleasedTue May 28 12:41:43 2019
SummaryRecommended update for tcsh
Typerecommended
Severitymoderate
References1129112
Description:

This update for tcsh fixes the following issues:


Advisory IDSUSE-SU-2019:1368-1
ReleasedTue May 28 13:15:38 2019
SummaryRecommended update for sles12sp3-docker-image, sles12sp4-image, system-user-root
Typesecurity
Severityimportant
References1134524,CVE-2019-5021
Description:

This update for sles12sp3-docker-image, sles12sp4-image, system-user-root fixes the following issues:


Advisory IDSUSE-SU-2019:1372-1
ReleasedTue May 28 16:53:28 2019
SummarySecurity update for libtasn1
Typesecurity
Severitymoderate
References1105435,CVE-2018-1000654
Description:

This update for libtasn1 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:1374-1
ReleasedWed May 29 10:15:39 2019
SummarySecurity update for taglib
Typesecurity
Severitylow
References1096180,CVE-2018-11439
Description:

This update for taglib fixes the following issues:


Advisory IDSUSE-RU-2019:1376-1
ReleasedWed May 29 13:31:29 2019
SummaryRecommended update for openal-soft
Typerecommended
Severitylow
References1131808
Description:

This update for openal-soft provides the following fixes:


Advisory IDSUSE-RU-2019:1380-1
ReleasedWed May 29 15:10:22 2019
SummaryRecommended update for ipa-ex-fonts
Typerecommended
Severitymoderate
References1112183
Description:

This update for ipa-ex-fonts fixes the following issues:



Advisory IDSUSE-RU-2019:1393-1
ReleasedFri May 31 10:18:34 2019
SummaryRecommended update for pesign
Typerecommended
Severitymoderate
References1130588,1134670
Description:

This update for pesign fixes the following issues:



Advisory IDSUSE-SU-2019:1398-1
ReleasedFri May 31 12:54:22 2019
SummarySecurity update for libpng16
Typesecurity
Severitylow
References1100687,1121624,1124211,CVE-2018-13785,CVE-2019-7317
Description:

This update for libpng16 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:1403-1
ReleasedMon Jun 3 10:45:52 2019
SummaryRecommended update for fio
Typerecommended
Severitymoderate
References1129706
Description:


This update ships the performance measurement tool 'fio' to the SUSE Linux Enterprise 15 Module for Basesystem. (bsc#1129706)


Advisory IDSUSE-RU-2019:1409-1
ReleasedMon Jun 3 16:28:25 2019
SummaryRecommended update for lifecycle-data-sle-module-live-patching
Typerecommended
Severitymoderate
References1020320
Description:

This update for lifecycle-data-sle-module-live-patching fixes the following issues:


Advisory IDSUSE-RU-2019:1412-1
ReleasedTue Jun 4 07:58:12 2019
SummaryRecommended update for wireless-regdb
Typerecommended
Severitymoderate
References1134213
Description:

This update for wireless-regdb provides the following fixes:



Advisory IDSUSE-RU-2019:1415-1
ReleasedTue Jun 4 13:18:42 2019
SummaryRecommended update for fping
Typerecommended
Severitymoderate
References1133988
Description:

This update for fping fixes the following issues:


Advisory IDSUSE-RU-2019:1417-1
ReleasedTue Jun 4 15:40:25 2019
SummaryRecommended update for libselinux, policycoreutils, setools
Typerecommended
Severitymoderate
References1130097,1136515
Description:


This update for libselinux, policycoreutils, setools fixes the following issues:
This update provides policycoreutils-python that contains binaries necessary for SELinux administration. (bsc#1130097)
Also necessary dependencies for this package have been included in the update.
python2-setools and python3-setools are shipped instead of python-setools.


Advisory IDSUSE-RU-2019:1447-1
ReleasedFri Jun 7 12:28:24 2019
SummaryRecommended update for sap-suse-cluster-connector
Typerecommended
Severitymoderate
References1119137,1135487
Description:

This update for sap-suse-cluster-connector fixes the following issues:



Advisory IDSUSE-RU-2019:1492-1
ReleasedThu Jun 13 14:51:01 2019
SummaryRecommended update for libidn
Typerecommended
Severitylow
References1132869
Description:


This update for libidn fixes the following issue:


Advisory IDSUSE-SU-2019:1525-1
ReleasedMon Jun 17 17:31:04 2019
SummarySecurity update for netpbm
Typesecurity
Severitymoderate
References1024288,1024291,1136936,CVE-2017-2579,CVE-2017-2580
Description:

This update for netpbm fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:1560-1
ReleasedWed Jun 19 08:57:17 2019
SummaryRecommended update for cloud-netconfig
Typerecommended
Severitymoderate
References1135257,1135263
Description:

This update for cloud-netconfig fixes the following issues:


Advisory IDSUSE-SU-2019:1562-1
ReleasedWed Jun 19 09:16:07 2019
SummarySecurity update for docker
Typesecurity
Severitymoderate
References1096726,CVE-2018-15664
Description:

This update for docker fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1565-1
ReleasedWed Jun 19 11:55:42 2019
SummaryRecommended update for google-compute-engine
Typerecommended
Severitymoderate
References1136266,1136267
Description:

This update for google-compute-engine fixes the following issues:
Update to version 20190522 (bsc#1136266, bsc#1136267)


* Fix guest attributes flow in Python 3.

* Update OS Login control file for FreeBSD support.
Update to version 20190521:

* Retry download for metadata scripts. * Fix script retrieval in Python 3. * Disable boto config in Python 3. * Update SSH host keys in guest attributes. * Fix XPS settings with more than 64 vCPUs.


Advisory IDSUSE-SU-2019:1576-1
ReleasedThu Jun 20 12:49:40 2019
SummarySecurity update for enigmail
Typesecurity
Severityimportant
References1135855,CVE-2019-12269
Description:

This update for enigmail to version 2.0.11 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:1603-1
ReleasedFri Jun 21 10:23:33 2019
SummarySecurity update for exempi
Typesecurity
Severitymoderate
References1098946,CVE-2018-12648
Description:

This update for exempi fixes the following issues:


Advisory IDSUSE-SU-2019:1607-1
ReleasedFri Jun 21 10:26:45 2019
SummarySecurity update for wireshark
Typesecurity
Severitymoderate
References1136021
Description:

This update for wireshark to version 2.4.15 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1616-1
ReleasedFri Jun 21 11:04:39 2019
SummaryRecommended update for rpcbind
Typerecommended
Severitymoderate
References1134659
Description:

This update for rpcbind fixes the following issues:


Advisory IDSUSE-RU-2019:1631-1
ReleasedFri Jun 21 11:17:21 2019
SummaryRecommended update for xz
Typerecommended
Severitylow
References1135709
Description:

This update for xz fixes the following issues:
Add SUSE-Public-Domain licence as some parts of xz utils (liblzma, xz, xzdec, lzmadec, documentation, translated messages, tests, debug, extra directory) are in public domain licence [bsc#1135709]


Advisory IDSUSE-RU-2019:1728-1
ReleasedTue Jul 2 17:35:39 2019
SummaryRecommended update for openssl-1_0_0
Typerecommended
Severitymoderate
References1130041
Description:

This update for openssl-1_0_0 fixes the following issues:


This update also ships openssl-1_0_0 to the SUSE Manager Client Tools 15 repository, to be used for phantomjs / grafana.


Advisory IDSUSE-RU-2019:1741-1
ReleasedWed Jul 3 21:13:18 2019
SummaryRecommended update for perl-Tk
Typerecommended
Severitymoderate
References1134134
Description:

This update for perl-Tk fixes the following issues:


Advisory IDSUSE-SU-2019:1750-1
ReleasedThu Jul 4 16:07:32 2019
SummarySecurity update for libu2f-host, pam_u2f
Typesecurity
Severitymoderate
References1128140,1135727,1135729,CVE-2019-12209,CVE-2019-12210,CVE-2019-9578
Description:

This update for libu2f-host and pam_u2f to version 1.0.8 fixes the following issues:
Security issues fixed for libu2f-host:


Security issues fixed for pam_u2f:


Advisory IDSUSE-SU-2019:1776-1
ReleasedMon Jul 8 18:18:37 2019
SummarySecurity update for zeromq
Typesecurity
Severityimportant
References1082318,1140255,CVE-2019-13132
Description:

This update for zeromq fixes the following issues:




Advisory IDSUSE-RU-2019:1780-1
ReleasedMon Jul 8 20:24:24 2019
SummaryRecommended update for icewm
Typerecommended
Severitymoderate
References1076817
Description:

This update for icewm fixes the following issues:


Advisory IDSUSE-RU-2019:1795-1
ReleasedTue Jul 9 23:39:25 2019
SummaryRecommended update for saptune
Typerecommended
Severitymoderate
References1116799,1123808,1124485,1124486,1124487,1124488,1124489,1126220,1128322,1128325
Description:

This update for saptune fixes the following issues:



























Remove the parameter from the tuned.conf file and add it to the SAP note files '1984787' and '2205917'










Advisory IDSUSE-SU-2019:1804-1
ReleasedWed Jul 10 10:40:44 2019
SummarySecurity update for ruby-bundled-gems-rpmhelper, ruby2.5
Typesecurity
Severityimportant
References1082007,1082008,1082009,1082010,1082011,1082014,1082058,1087433,1087434,1087436,1087437,1087440,1087441,1112530,1112532,1130028,1130611,1130617,1130620,1130622,1130623,1130627,1133790,CVE-2017-17742,CVE-2018-1000073,CVE-2018-1000074,CVE-2018-1000075,CVE-2018-1000076,CVE-2018-1000077,CVE-2018-1000078,CVE-2018-1000079,CVE-2018-16395,CVE-2018-16396,CVE-2018-6914,CVE-2018-8777,CVE-2018-8778,CVE-2018-8779,CVE-2018-8780,CVE-2019-8320,CVE-2019-8321,CVE-2019-8322,CVE-2019-8323,CVE-2019-8324,CVE-2019-8325
Description:

This update for ruby2.5 and ruby-bundled-gems-rpmhelper fixes the following issues:
Changes in ruby2.5:
Update to 2.5.5 and 2.5.4:
https://www.ruby-lang.org/en/news/2019/03/15/ruby-2-5-5-released/ https://www.ruby-lang.org/en/news/2019/03/13/ruby-2-5-4-released/
Security issues fixed:



Ruby 2.5 was updated to 2.5.3:
This release includes some bug fixes and some security fixes.
Security issues fixed:

Ruby 2.5 was updated to 2.5.1:
This release includes some bug fixes and some security fixes.
Security issues fixed:


- CVE-2018-1000079: Fixed path traversal issue during gem installation allows to write to arbitrary filesystem locations (bsc#1082058) - CVE-2018-1000075: Fixed infinite loop vulnerability due to negative size in tar header causes Denial of Service (bsc#1082014) - CVE-2018-1000078: Fixed XSS vulnerability in homepage attribute when displayed via gem server (bsc#1082011) - CVE-2018-1000077: Fixed that missing URL validation on spec home attribute allows malicious gem to set an invalid homepage URL (bsc#1082010) - CVE-2018-1000076: Fixed improper verification of signatures in tarball allows to install mis-signed gem (bsc#1082009) - CVE-2018-1000074: Fixed unsafe Object Deserialization Vulnerability in gem owner allowing arbitrary code execution on specially crafted YAML (bsc#1082008) - CVE-2018-1000073: Fixed path traversal when writing to a symlinked basedir outside of the root (bsc#1082007)
Other changes:


Changes in ruby-bundled-gems-rpmhelper:


Advisory IDSUSE-RU-2019:1807-1
ReleasedWed Jul 10 13:13:21 2019
SummaryRecommended update for java-11-openjdk
Typerecommended
Severitymoderate
References1137264
Description:


This update ships the OpenJDK LTS version 11 in the java-11-openjdk packages. (FATE#326347 bsc#1137264)


Advisory IDSUSE-RU-2019:1815-1
ReleasedThu Jul 11 07:47:55 2019
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1140016
Description:

This update for timezone fixes the following issues:


Advisory IDSUSE-RU-2019:1864-1
ReleasedWed Jul 17 12:22:37 2019
SummaryRecommended update for osc
Typerecommended
Severitymoderate
References1138165
Description:

This update for osc fixes the following issues:


* fix oscssl 'urldefrag is not defined error' * osc release command now python3 compatible * add more decode logic in get_commitlog * osc add 'dir' in compressed mode now works with python3 * osc getbinaries now prints the output instead of using the quiet mode as a default


Advisory IDSUSE-RU-2019:1892-1
ReleasedThu Jul 18 15:54:35 2019
SummaryRecommended update for openslp
Typerecommended
Severitymoderate
References1117969,1136136
Description:

This update for openslp fixes the following issues:


Advisory IDSUSE-SU-2019:1894-1
ReleasedThu Jul 18 16:18:10 2019
SummarySecurity update for LibreOffice
Typesecurity
Severitymoderate
References1089811,1116451,1121874,1123131,1123455,1124062,1124869,1127760,1127857,1128845,1135189,1135228,CVE-2018-16858
Description:


This update for libreoffice and libraries fixes the following issues:
LibreOffice was updated to 6.2.5.2 (fate#327121 bsc#1128845 bsc#1123455), bringing lots of bug and stability fixes.
Additional bugfixes:


libixion was updated to 0.14.1:

liborcus was updated to 0.14.1:



libwps was updated to 0.4.10:

mdds was updated to 1.4.3:

myspell-dictionaries was updated to 20190423:


Advisory IDSUSE-SU-2019:1963-1
ReleasedWed Jul 24 11:41:43 2019
SummarySecurity update for openexr
Typesecurity
Severitymoderate
References1040109,1040113,1040115,CVE-2017-9111,CVE-2017-9113,CVE-2017-9115
Description:

This update for openexr fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:1998-1
ReleasedFri Jul 26 16:13:22 2019
SummaryRecommended update for sysstat
Typerecommended
Severitymoderate
References1138767
Description:

This update for sysstat fixes the following issues:


Advisory IDSUSE-RU-2019:2001-1
ReleasedFri Jul 26 18:09:41 2019
SummaryRecommended update for docker
Typerecommended
Severityimportant
References1138920
Description:

This update for docker fixes the following issues:


Advisory IDSUSE-SU-2019:2002-1
ReleasedMon Jul 29 13:00:27 2019
SummarySecurity update for java-11-openjdk
Typesecurity
Severityimportant
References1115375,1140461,1141780,1141781,1141782,1141783,1141784,1141785,1141787,1141788,1141789,CVE-2019-2745,CVE-2019-2762,CVE-2019-2766,CVE-2019-2769,CVE-2019-2786,CVE-2019-2816,CVE-2019-2818,CVE-2019-2821,CVE-2019-7317
Description:

This update for java-11-openjdk to version jdk-11.0.4+11 fixes the following issues:
Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2019:2003-1
ReleasedMon Jul 29 13:01:22 2019
SummarySecurity update for libreoffice
Typesecurity
Severityimportant
References1110348,1112112,1112113,1112114,1116451,1117195,1117300,1121874,1123131,1123455,1124062,1124658,1124869,1127760,1127857,1128845,1135189,1135228,882383,CVE-2018-16858
Description:

This update for libreoffice fixes the following issues:
LibreOffice was updated to 6.2.5.2 (fate#327121).
Security issue fixed:


Other bugfixes:


Advisory IDSUSE-RU-2019:2005-1
ReleasedMon Jul 29 13:02:15 2019
SummaryRecommended update for cloud-init
Typerecommended
Severitymoderate
References1116767,1119397,1121878,1123694,1125950,1125992,1126101,1132692,1136440
Description:

This update for cloud-init fixes the following issues:


Some more fixes were included within the 19.1 update of cloud-init. Please refer to the package changelog for more details.


Advisory IDSUSE-SU-2019:2020-1
ReleasedTue Jul 30 13:18:31 2019
SummarySecurity update for mariadb, mariadb-connector-c
Typesecurity
Severityimportant
References1126088,1132666,1136035,CVE-2019-2614,CVE-2019-2627,CVE-2019-2628
Description:

This update for mariadb and mariadb-connector-c fixes the following issues:
mariadb:


mariadb-connector-c:


Advisory IDSUSE-SU-2019:2021-1
ReleasedTue Jul 30 16:38:55 2019
SummarySecurity update for java-1_8_0-openjdk
Typesecurity
Severityimportant
References1115375,1141780,1141782,1141783,1141784,1141785,1141786,1141787,1141789,CVE-2019-2745,CVE-2019-2762,CVE-2019-2766,CVE-2019-2769,CVE-2019-2786,CVE-2019-2816,CVE-2019-2842,CVE-2019-7317
Description:

This update for java-1_8_0-openjdk to version 8u222 fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2019:2039-1
ReleasedFri Aug 2 08:34:40 2019
SummaryRecommended update for transfig
Typerecommended
Severitymoderate
References1136882
Description:

This update for transfig fixes the following issues:


Advisory IDSUSE-SU-2019:2043-1
ReleasedFri Aug 2 15:18:37 2019
SummarySecurity update for openexr
Typesecurity
Severitymoderate
References1061305,CVE-2017-14988
Description:

This update for openexr fixes the following issues:


Advisory IDSUSE-RU-2019:2060-1
ReleasedTue Aug 6 14:27:41 2019
SummaryRecommended update for libreoffice-share-linker
Typerecommended
Severitymoderate
References1139727
Description:

This update for libreoffice-share-linker fixes the following issues:


Advisory IDSUSE-RU-2019:2061-1
ReleasedTue Aug 6 14:28:33 2019
SummaryRecommended update for several bugs for Hawk2
Typerecommended
Severitymoderate
References1089802,1137891
Description:


Update for Hawk2 for the following issues: - Fix display in case of nameless cluster (bsc#1137891) - Fix utility method for checking ACL version in Hawk (bsc#1089802)


Advisory IDSUSE-SU-2019:2067-1
ReleasedTue Aug 6 17:22:07 2019
SummarySecurity update for osc
Typesecurity
Severityimportant
References1129889,1138977,1140697,1142518,1142662,1144211,CVE-2019-3685
Description:

This update for osc to version 0.165.4 fixes the following issues:
Security issue fixed:


Non-security issues fixed:


Advisory IDSUSE-RU-2019:2077-1
ReleasedWed Aug 7 10:54:05 2019
SummaryRecommended update for wireless-regdb
Typerecommended
Severitymoderate
References1138177
Description:

This update for wireless-regdb fixes the following issues:


Advisory IDSUSE-RU-2019:2094-1
ReleasedFri Aug 9 06:56:18 2019
SummaryRecommended update for glm
Typerecommended
Severitymoderate
References1135667
Description:

This update for glm fixes the following issues:


Advisory IDSUSE-RU-2019:2095-1
ReleasedFri Aug 9 06:56:48 2019
SummaryRecommended update for container-suseconnect
Typerecommended
Severitymoderate
References1138731
Description:

This update for container-suseconnect fixes the following issues:
container-suseconnect was updated to 2.1.0 (bsc#1138731), fixing interacting with SCC behind proxy and SMT.


Advisory IDSUSE-RU-2019:2096-1
ReleasedFri Aug 9 06:57:23 2019
SummaryRecommended update for docker-img-store-setup
Typerecommended
Severitymoderate
References1138201
Description:

This update for docker-img-store-setup fixes the following issues:


Advisory IDSUSE-SU-2019:2103-1
ReleasedFri Aug 9 13:16:36 2019
SummarySecurity update for wireshark
Typesecurity
Severitymoderate
References1141980,CVE-2019-13619
Description:

This update for wireshark to version 2.4.16 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:2116-1
ReleasedTue Aug 13 07:43:01 2019
SummaryRecommended update for aide
Typerecommended
Severitymoderate
References1098360
Description:

This update for aide fixes the following issues:


Advisory IDSUSE-SU-2019:2117-1
ReleasedTue Aug 13 14:56:55 2019
SummarySecurity update for containerd, docker, docker-runc, golang-github-docker-libnetwork
Typesecurity
Severityimportant
References1100331,1121967,1138920,1139649,1142160,1142413,1143409,CVE-2018-10892,CVE-2019-13509,CVE-2019-14271,CVE-2019-5736
Description:

This update for containerd, docker, docker-runc, golang-github-docker-libnetwork fixes the following issues:
Docker:


runc:

containerd:

golang-github-docker-libnetwork:


Advisory IDSUSE-OU-2019:2121-1
ReleasedWed Aug 14 11:17:51 2019
SummaryOptional update for susemanager-cloud-setup
Typeoptional
Severitymoderate
References1138254
Description:


This is the initial release of the susemanager-cloud-setup packages (bsc#1138254, fate#327820)


Advisory IDSUSE-RU-2019:2122-1
ReleasedWed Aug 14 11:17:59 2019
SummaryRecommended update for lifecycle-data-sle-module-live-patching
Typerecommended
Severitymoderate
References1020320
Description:

This update for lifecycle-data-sle-module-live-patching fixes the following issues:


Advisory IDSUSE-RU-2019:2139-1
ReleasedWed Aug 14 12:53:22 2019
SummaryRecommended update for google-compute-engine
Typerecommended
Severitymoderate
References1144092,1144170
Description:

This update for google-compute-engine fixes the following issues:


Some more minor bug fixes were included in this maintenance update. The full list can be retrieved from this rpm's changelog file.


Advisory IDSUSE-RU-2019:2141-1
ReleasedWed Aug 14 14:45:18 2019
SummaryRecommended update for cloud-regionsrv-client
Typerecommended
Severitymoderate
References1136112,1136113,1137384,1137385
Description:

This update for cloud-regionsrv-client fixes the following issues:


This maintenance update for cloud-regionsrv-client includes some more smaller bug fixes as well. Please refer to this rpm's changelog file to receive a full list of all changes.


Advisory IDSUSE-RU-2019:2142-1
ReleasedWed Aug 14 18:14:04 2019
SummaryRecommended update for mozilla-nspr, mozilla-nss
Typerecommended
Severitymoderate
References1141322
Description:


This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to NSS 3.45 (bsc#1141322) :


mozilla-nspr was updated to version 4.21


Advisory IDSUSE-RU-2019:2145-1
ReleasedThu Aug 15 07:33:19 2019
SummaryRecommended update for python3-susepubliccloudinfo
Typerecommended
Severitymoderate
References1144100,1144102
Description:

This update for python3-susepubliccloudinfo fixes the following issues:


Advisory IDSUSE-RU-2019:2189-1
ReleasedWed Aug 21 10:12:23 2019
SummaryRecommended update for sysstat
Typerecommended
Severitymoderate
References1142470
Description:

This update for sysstat fixes the following issues:


Advisory IDSUSE-SU-2019:2191-1
ReleasedWed Aug 21 17:59:24 2019
SummarySecurity update for wavpack
Typesecurity
Severitylow
References1133384,1141334,CVE-2019-1010319,CVE-2019-11498
Description:

This update for wavpack fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:2198-1
ReleasedThu Aug 22 14:35:15 2019
SummaryRecommended update for cloud-regionsrv-client
Typerecommended
Severityimportant
References1144754,1146321,1146462,1146463,1146467,1146468,1146610
Description:

This update for cloud-regionsrv-client fixes the following issues:


Advisory IDSUSE-RU-2019:2200-1
ReleasedThu Aug 22 14:36:04 2019
SummaryRecommended update for quota
Typerecommended
Severitylow
References1144265
Description:

This update for quota fixes the following issues:


Advisory IDSUSE-RU-2019:2218-1
ReleasedMon Aug 26 11:29:57 2019
SummaryRecommended update for pinentry
Typerecommended
Severitymoderate
References1141883
Description:

This update for pinentry fixes the following issues:


Advisory IDSUSE-SU-2019:2223-1
ReleasedTue Aug 27 15:42:56 2019
SummarySecurity update for podman, slirp4netns and libcontainers-common
Typesecurity
Severitymoderate
References1096726,1123156,1123387,1135460,1136974,1137860,1143386,CVE-2018-15664,CVE-2019-10152,CVE-2019-6778
Description:


This is a version update for podman to version 1.4.4 (bsc#1143386).
Additional changes by SUSE on top:


Version update podman to v1.4.4:

- Podman now has greatly improved support for containers using multiple OCI runtimes. Containers now remember if they were created with a different runtime using --runtime and will always use that runtime - The cached and delegated options for volume mounts are now allowed for Docker compatability (#3340) - The podman diff command now supports the --latest flag

- Fixed a bug where rootless Podman would attempt to use the entire root configuration if no rootless configuration was present for the user, breaking rootless Podman for new installations - Fixed a bug where rootless Podman's pause process would block SIGTERM, preventing graceful system shutdown and hanging until the system's init send SIGKILL - Fixed a bug where running Podman as root with sudo -E would not work after running rootless Podman at least once - Fixed a bug where options for tmpfs volumes added with the --tmpfs flag were being ignored - Fixed a bug where images with no layers could not properly be displayed and removed by Podman - Fixed a bug where locks were not properly freed on failure to create a container or pod - Fixed a bug where podman cp on a single file would create a directory at the target and place the file in it (#3384) - Fixed a bug where podman inspect --format '{{.Mounts}}' would print a hexadecimal address instead of a container's mounts - Fixed a bug where rootless Podman would not add an entry to container's /etc/hosts files for their own hostname (#3405) - Fixed a bug where podman ps --sync would segfault (#3411) - Fixed a bug where podman generate kube would produce an invalid ports configuration (#3408)

- Updated containers/storage to v1.12.13 - Podman now performs much better on systems with heavy I/O load - The --cgroup-manager flag to podman now shows the correct default setting in help if the default was overridden by libpod.conf - For backwards compatability, setting --log-driver=json-file in podman run is now supported as an alias for --log-driver=k8s-file. This is considered deprecated, and json-file will be moved to a new implementation in the future ([#3363](https://github.com/containers/libpo\ d/issues/3363)) - Podman's default libpod.conf file now allows the crun OCI runtime to be used if it is installed
Update podman to v1.4.2:

Updated podman to version 1.4.0 (bsc#1137860) and (bsc#1135460)



Update to storage v1.12.10:

slirp4netns was updated to 0.3.0:

This update also includes:


Advisory IDSUSE-SU-2019:2229-1
ReleasedWed Aug 28 07:58:29 2019
SummarySecurity update for slurm
Typesecurity
Severityimportant
References1140709,CVE-2019-12838
Description:

This update for slurm to version 18.08.8 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:2249-1
ReleasedThu Aug 29 08:18:30 2019
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1141168
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2019:2283-1
ReleasedWed Sep 4 13:41:47 2019
SummaryRecommended update for google-compute-engine
Typerecommended
Severitymoderate
References1146172
Description:

This update for google-compute-engine fixes the following issues:


Advisory IDSUSE-SU-2019:2291-1
ReleasedWed Sep 4 16:48:52 2019
SummarySecurity update for java-1_8_0-ibm
Typesecurity
Severityimportant
References1122292,1122299,1141780,1141782,1141783,1141785,1141787,1141789,1147021,CVE-2018-11212,CVE-2019-11771,CVE-2019-11772,CVE-2019-11775,CVE-2019-2449,CVE-2019-2762,CVE-2019-2766,CVE-2019-2769,CVE-2019-2786,CVE-2019-2816,CVE-2019-4473,CVE-2019-7317
Description:

This update for java-1_8_0-ibm fixes the following issues:
Update to Java 8.0 Service Refresh 5 Fix Pack 40.
Security issues fixed:


Advisory IDSUSE-RU-2019:2323-1
ReleasedFri Sep 6 09:19:52 2019
SummaryRecommended update for pesign
Typerecommended
Severitymoderate
References1144441
Description:

This update for pesign contains the following fixes:


Advisory IDSUSE-SU-2019:2340-1
ReleasedTue Sep 10 09:31:35 2019
SummarySecurity update for skopeo
Typesecurity
Severityimportant
References1144065,CVE-2019-10214
Description:

This update for skopeo fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:2344-1
ReleasedTue Sep 10 12:47:25 2019
SummaryRecommended update for cloud-regionsrv-client
Typerecommended
Severityimportant
References1148644,1149840
Description:

This update for cloud-regionsrv-client fixes the following issues:


Advisory IDSUSE-SU-2019:2348-1
ReleasedTue Sep 10 14:51:43 2019
SummarySecurity update for ghostscript
Typesecurity
Severitymoderate
References1144621,CVE-2019-10216
Description:

This update for ghostscript fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:2357-1
ReleasedWed Sep 11 13:26:14 2019
SummaryRecommended update for lmdb
Typerecommended
Severitymoderate
References1136132
Description:

This update for lmdb fixes the following issues:


Advisory IDSUSE-RU-2019:2362-1
ReleasedThu Sep 12 07:55:13 2019
SummaryRecommended update for python-cairo
Typerecommended
Severitymoderate
References1142582
Description:

This update for python-cairo does not fix any visible issues to users.


Advisory IDSUSE-RU-2019:2378-1
ReleasedFri Sep 13 13:21:51 2019
SummaryRecommended update for apache2-mod_nss
Typerecommended
Severitymoderate
References1150133
Description:

This update for apache2-mod_nss fixes the following issues:


Advisory IDSUSE-SU-2019:2435-1
ReleasedMon Sep 23 13:57:12 2019
SummarySecurity update for libopenmpt
Typesecurity
Severitymoderate
References1143578,1143581,1143582,1143584,CVE-2018-20860,CVE-2018-20861,CVE-2019-14382,CVE-2019-14383
Description:

This update for libopenmpt fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:2443-1
ReleasedTue Sep 24 09:17:39 2019
SummaryRecommended update for libcdio
Typerecommended
Severitymoderate
References1094761
Description:

This update for libcdio fixes the following issues:


Advisory IDSUSE-SU-2019:2460-1
ReleasedWed Sep 25 09:25:34 2019
SummarySecurity update for ghostscript
Typesecurity
Severityimportant
References1129180,1129186,1134156,1140359,1146882,1146884,CVE-2019-12973,CVE-2019-14811,CVE-2019-14812,CVE-2019-14813,CVE-2019-14817,CVE-2019-3835,CVE-2019-3839
Description:

This update for ghostscript fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:2466-1
ReleasedWed Sep 25 23:24:08 2019
SummaryRecommended update for SAPHanaSR
Typerecommended
Severityimportant
References1082974,1101373,1133024,1133866,1134106,1139715,1149829
Description:

This update for SAPHanaSR fixes the following issues:


Advisory IDSUSE-RU-2019:2477-1
ReleasedThu Sep 26 12:09:46 2019
SummaryRecommended update for openwsman
Typerecommended
Severitymoderate
References1105331
Description:

This update for openwsman fixes the following issues:


Advisory IDSUSE-RU-2019:2482-1
ReleasedFri Sep 27 13:40:42 2019
SummaryRecommended update for google-compute-engine
Typerecommended
Severityimportant
References1150058
Description:

This update for google-compute-engine fixes the following issues:


Advisory IDSUSE-OU-2019:2483-1
ReleasedFri Sep 27 14:16:23 2019
SummaryOptional update for python3-google-api-python-client, python3-httplib2, python3-oauth2client, and python3-uritemplate.
Typeoptional
Severitylow
References1088358
Description:

This update ships python3-google-api-python-client, python3-httplib2, python3-oauth2client, and python3-uritemplate for the SUSE Linux Enterprise Public Cloud 15 module.


Advisory IDSUSE-RU-2019:2494-1
ReleasedMon Sep 30 16:22:20 2019
SummaryRecommended update for cloud-init
Typerecommended
Severityimportant
References1141969,1144363,1144881
Description:

This update for cloud-init provides the following fixes:


Advisory IDSUSE-RU-2019:2495-1
ReleasedMon Sep 30 16:22:27 2019
SummaryRecommended update for firewalld-rpcbind-helper
Typerecommended
Severitymoderate
References1146188
Description:

This update for firewalld-rpcbind-helper fixes the following issues:


Advisory IDSUSE-SU-2019:2512-1
ReleasedWed Oct 2 10:47:58 2019
SummarySecurity update for jasper
Typesecurity
Severitymoderate
References1117507,1117508,CVE-2018-19540,CVE-2018-19541
Description:

This update for jasper fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:2533-1
ReleasedThu Oct 3 15:02:50 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1150137,CVE-2019-16168
Description:

This update for sqlite3 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:2561-1
ReleasedFri Oct 4 14:09:56 2019
SummarySecurity update for openssl-1_0_0
Typesecurity
Severitymoderate
References1131291,1150003,1150250,CVE-2019-1547,CVE-2019-1563
Description:

This update for openssl-1_0_0 fixes the following issues:
OpenSSL Security Advisory [10 September 2019]


In addition fixed invalid curve attacks by validating that an EC point lies on the curve (bsc#1131291).


Advisory IDSUSE-SU-2019:2622-1
ReleasedWed Oct 9 15:23:35 2019
SummarySecurity update for libopenmpt
Typesecurity
Severityimportant
References1153102,CVE-2019-17113
Description:

This update for libopenmpt to version 0.3.19 fixes the following issues:


Advisory IDSUSE-RU-2019:2642-1
ReleasedFri Oct 11 17:10:51 2019
SummaryRecommended update for python-kiwi
Typerecommended
Severityimportant
References1112357,1124885,1127173,1129566,1132455,1136444,1142899,1143033,1149686
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-SU-2019:2657-1
ReleasedMon Oct 14 17:04:07 2019
SummarySecurity update for dhcp
Typesecurity
Severitymoderate
References1089524,1134078,1136572,CVE-2019-6470
Description:

This update for dhcp fixes the following issues:
Secuirty issue fixed:


Bug fixes:


Advisory IDSUSE-RU-2019:2675-1
ReleasedTue Oct 15 21:06:30 2019
SummaryRecommended update for clone-master-clean-up
Typerecommended
Severitymoderate
References1139667,1149322
Description:

This update for clone-master-clean-up fixes the following issues:


* Deleted /var/lib/wicked/* files for cloning. If machines with identical settings exist in the same network multiple times, IP addresses may change with each renewal (bsc#1139667)


Advisory IDSUSE-RU-2019:2681-1
ReleasedTue Oct 15 22:01:40 2019
SummaryRecommended update for libdb-4_8
Typerecommended
Severitymoderate
References1148244
Description:

This update for libdb-4_8 fixes the following issues:


Advisory IDSUSE-RU-2019:2693-1
ReleasedWed Oct 16 16:43:30 2019
SummaryRecommended update for rpcbind
Typerecommended
Severitymoderate
References1142343
Description:

This update for rpcbind fixes the following issues:


Advisory IDSUSE-SU-2019:2702-1
ReleasedWed Oct 16 18:41:30 2019
SummarySecurity update for gcc7
Typesecurity
Severitymoderate
References1071995,1141897,1142649,1148517,1149145,CVE-2019-14250,CVE-2019-15847
Description:

This update for gcc7 to r275405 fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2019:2722-1
ReleasedMon Oct 21 11:14:20 2019
SummaryRecommended update for pciutils-ids
Typerecommended
Severitymoderate
References1127840,1133581
Description:

This is a version update for pciutils-ids to version 20190830 (bsc#1133581, bsc#1127840)


Advisory IDSUSE-SU-2019:2730-1
ReleasedMon Oct 21 16:04:57 2019
SummarySecurity update for procps
Typesecurity
Severityimportant
References1092100,1121753,CVE-2018-1122,CVE-2018-1123,CVE-2018-1124,CVE-2018-1125,CVE-2018-1126
Description:

This update for procps fixes the following issues:
procps was updated to 3.3.15. (bsc#1092100)
Following security issues were fixed:



Also this non-security issue was fixed:

The update to 3.3.15 contains the following fixes:


Advisory IDSUSE-RU-2019:2734-1
ReleasedTue Oct 22 11:00:58 2019
SummaryRecommended update for tcsh
Typerecommended
Severitymoderate
References1151630
Description:

This update for tcsh fixes the following issues:


Advisory IDSUSE-SU-2019:2737-1
ReleasedTue Oct 22 12:02:36 2019
SummarySecurity update for openconnect
Typesecurity
Severitymoderate
References1151178,CVE-2019-16239
Description:

This update for openconnect fixes the following issues:


Advisory IDSUSE-SU-2019:2749-1
ReleasedWed Oct 23 09:08:41 2019
SummarySecurity update for sysstat
Typesecurity
Severitymoderate
References1150114,CVE-2019-16167
Description:

This update for sysstat fixes the following issue:


Advisory IDSUSE-SU-2019:2750-1
ReleasedWed Oct 23 09:22:42 2019
SummarySecurity update for zziplib
Typesecurity
Severitymoderate
References1107424,1129403,CVE-2018-16548
Description:

This update for zziplib fixes the following issues:
Security issue fixed:


Other issue addressed:


Advisory IDSUSE-RU-2019:2762-1
ReleasedThu Oct 24 07:08:44 2019
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1150451
Description:

This update for timezone fixes the following issues:


Advisory IDSUSE-RU-2019:2763-1
ReleasedThu Oct 24 07:08:52 2019
SummaryRecommended update for mysql-connector-cpp
Typerecommended
Severitymoderate
References1149792
Description:

This update for mysql-connector-cpp fixes the following issues:


Advisory IDSUSE-RU-2019:2766-1
ReleasedThu Oct 24 07:09:49 2019
SummaryRecommended update for migrate-sles-to-sles4sap
Typerecommended
Severitymoderate
References1112548
Description:

This update for migrate-sles-to-sles4sap fixes the following issues:



Advisory IDSUSE-RU-2019:2772-1
ReleasedThu Oct 24 13:55:37 2019
SummaryRecommended update for lifecycle-data-sle-module-live-patching
Typerecommended
Severitymoderate
References1020320
Description:

This update for lifecycle-data-sle-module-live-patching fixes the following issues:


Advisory IDSUSE-RU-2019:2777-1
ReleasedThu Oct 24 16:13:20 2019
SummaryRecommended update for fipscheck
Typerecommended
Severitymoderate
References1149792
Description:

This update for fipscheck fixes the following issues:


Advisory IDSUSE-SU-2019:2779-1
ReleasedThu Oct 24 16:57:42 2019
SummarySecurity update for binutils
Typesecurity
Severitymoderate
References1109412,1109413,1109414,1111996,1112534,1112535,1113247,1113252,1113255,1116827,1118644,1118830,1118831,1120640,1121034,1121035,1121056,1133131,1133232,1141913,1142772,1152590,1154016,1154025,CVE-2018-1000876,CVE-2018-17358,CVE-2018-17359,CVE-2018-17360,CVE-2018-17985,CVE-2018-18309,CVE-2018-18483,CVE-2018-18484,CVE-2018-18605,CVE-2018-18606,CVE-2018-18607,CVE-2018-19931,CVE-2018-19932,CVE-2018-20623,CVE-2018-20651,CVE-2018-20671,CVE-2018-6323,CVE-2018-6543,CVE-2018-6759,CVE-2018-6872,CVE-2018-7208,CVE-2018-7568,CVE-2018-7569,CVE-2018-7570,CVE-2018-7642,CVE-2018-7643,CVE-2018-8945,CVE-2019-1010180,ECO-368,SLE-6206
Description:

This update for binutils fixes the following issues:
binutils was updated to current 2.32 branch [jsc#ECO-368].
Includes following security fixes:



Update to binutils 2.32:


Advisory IDSUSE-SU-2019:2786-1
ReleasedFri Oct 25 15:56:35 2019
SummarySecurity update for docker-runc
Typesecurity
Severitymoderate
References1152308,CVE-2019-16884
Description:

This update for docker-runc fixes the following issues:


Advisory IDSUSE-RU-2019:2790-1
ReleasedMon Oct 28 14:54:13 2019
SummaryRecommended update for java-1_8_0-ibm
Typerecommended
Severitymoderate
References1143080
Description:

This update for java-1_8_0-ibm fixes the following issues:
Update to Java 8.0 Service Refresh 5 Fix Pack 41 [bsc#1143080]:
* JIT compiler crash: Remove implicit sign extension assumptions from iRegStore evaluator (https://github.com/eclipse/omr/pull/4103)


Advisory IDSUSE-RU-2019:2799-1
ReleasedMon Oct 28 17:11:16 2019
SummaryRecommended update for tcsh
Typerecommended
Severityimportant
References1153839,1154877
Description:

This update for tcsh fixes the following issues:


Advisory IDSUSE-RU-2019:2806-1
ReleasedTue Oct 29 11:47:15 2019
SummaryRecommended update for libspectre
Typerecommended
Severitymoderate
References1153337
Description:


This update for libspectre aligns the libspectre build with the current ghostscript 9.27 release. (bsc#1153337)


Advisory IDSUSE-SU-2019:2810-1
ReleasedTue Oct 29 14:56:44 2019
SummarySecurity update for runc
Typesecurity
Severitymoderate
References1131314,1131553,1152308,CVE-2019-16884
Description:

This update for runc fixes the following issues:
Security issue fixed:


Non-security issues fixed:


Advisory IDSUSE-RU-2019:2811-1
ReleasedTue Oct 29 14:57:18 2019
SummaryRecommended update for llvm7
Typerecommended
Severitymoderate
References1138457
Description:

This update for llvm7 doesn't address any user visible issues.


Advisory IDSUSE-RU-2019:2888-1
ReleasedMon Nov 4 17:33:58 2019
SummaryRecommended update for neon
Typerecommended
Severitylow
References1149792
Description:

This update for neon provides the following fixes:


Advisory IDSUSE-SU-2019:2891-1
ReleasedMon Nov 4 17:47:10 2019
SummarySecurity update for python-ecdsa
Typesecurity
Severitymoderate
References1153165,1154217,CVE-2019-14853,CVE-2019-14859
Description:

This update for python-ecdsa to version 0.13.3 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:2908-1
ReleasedWed Nov 6 13:49:01 2019
SummaryRecommended update for perl-Mail-SPF
Typerecommended
Severitylow
References1141089
Description:

This update for perl-Mail-SPF fixes the following issues:


Advisory IDSUSE-RU-2019:2929-1
ReleasedThu Nov 7 16:45:13 2019
SummaryRecommended update for python-kubernetes
Typerecommended
Severitymoderate
References1151481
Description:

This update for python-kubernetes fixes the following issues:


Advisory IDSUSE-RU-2019:2933-1
ReleasedFri Nov 8 11:46:01 2019
SummaryRecommended update for llvm7
Typerecommended
Severitymoderate
References1139584
Description:

This update for llvm7 fixes the following issues:


Advisory IDSUSE-SU-2019:2934-1
ReleasedFri Nov 8 13:17:50 2019
SummarySecurity update for apache2-mod_auth_openidc
Typesecurity
Severityimportant
References1153666,CVE-2019-14857
Description:

This update for apache2-mod_auth_openidc fixes the following issues:


Advisory IDSUSE-RU-2019:2978-1
ReleasedThu Nov 14 22:42:51 2019
SummaryRecommended update for helm-mirror
Typerecommended
Severitymoderate
References1153244
Description:

This update for helm-mirror fixes the following issues:


Advisory IDSUSE-SU-2019:2981-1
ReleasedFri Nov 15 10:46:06 2019
SummarySecurity update for ghostscript
Typesecurity
Severityimportant
References1156275,CVE-2019-14869
Description:

This update for ghostscript fixes the following issues:


Advisory IDSUSE-SU-2019:2982-1
ReleasedFri Nov 15 10:46:21 2019
SummarySecurity update for enigmail
Typesecurity
Severitymoderate
References1141025,1151317
Description:

This update for enigmail fixes the following issues:


enigmail was updated 2.1.2:

enimail was updated to 2.0.12:


Advisory IDSUSE-RU-2019:2993-1
ReleasedMon Nov 18 11:52:23 2019
SummaryRecommended update for tftp
Typerecommended
Severitymoderate
References1153625
Description:

This update for tftp fixes the following issues:


Advisory IDSUSE-SU-2019:2997-1
ReleasedMon Nov 18 15:16:38 2019
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1103320,1154036,1154037,CVE-2019-17594,CVE-2019-17595
Description:

This update for ncurses fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:2998-1
ReleasedMon Nov 18 15:17:23 2019
SummarySecurity update for java-11-openjdk
Typesecurity
Severityimportant
References1152856,1154212,CVE-2019-2894,CVE-2019-2933,CVE-2019-2945,CVE-2019-2949,CVE-2019-2958,CVE-2019-2962,CVE-2019-2964,CVE-2019-2973,CVE-2019-2975,CVE-2019-2977,CVE-2019-2978,CVE-2019-2981,CVE-2019-2983,CVE-2019-2987,CVE-2019-2988,CVE-2019-2989,CVE-2019-2992,CVE-2019-2999
Description:

This update for java-11-openjdk to version jdk-11.0.5-10 fixes the following issues:
Security issues fixed (October 2019 CPU bsc#1154212):


Advisory IDSUSE-RU-2019:3008-1
ReleasedTue Nov 19 11:38:27 2019
SummaryRecommended update for fwupdate
Typerecommended
Severitymoderate
References1152928
Description:

This update for fwupdate fixes the following issues:


Advisory IDSUSE-RU-2019:3009-1
ReleasedTue Nov 19 18:10:39 2019
SummaryRecommended update for cloud-regionsrv-client
Typerecommended
Severitymoderate
References1149528,1152567,1154533
Description:

This update for cloud-regionsrv-client fixes the following issues:


Advisory IDSUSE-RU-2019:3012-1
ReleasedTue Nov 19 18:11:26 2019
SummaryRecommended update for brp-check-suse
Typerecommended
Severitymoderate
References1114695
Description:

This update for brp-check-suse fixes the following issues:


Advisory IDSUSE-RU-2019:3018-1
ReleasedWed Nov 20 12:48:21 2019
SummaryRecommended update for xkeyboard-config
Typerecommended
Severitymoderate
References1153774
Description:

This update for xkeyboard-config fixes the following issues:


Advisory IDSUSE-SU-2019:3030-1
ReleasedThu Nov 21 19:11:25 2019
SummarySecurity update for cups
Typesecurity
Severityimportant
References1146358,1146359,CVE-2019-8675,CVE-2019-8696
Description:

This update for cups fixes the following issues:


Advisory IDSUSE-SU-2019:3053-1
ReleasedMon Nov 25 17:28:17 2019
SummarySecurity update for clamav
Typesecurity
Severitymoderate
References1144504,1149458,1151839,CVE-2019-12625,CVE-2019-12900
Description:

This update for clamav fixes the following issues:
Security issue fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2019:3061-1
ReleasedMon Nov 25 17:34:22 2019
SummarySecurity update for gcc9
Typesecurity
Severitymoderate
References1114592,1135254,1141897,1142649,1142654,1148517,1149145,CVE-2019-14250,CVE-2019-15847,SLE-6533,SLE-6536
Description:



This update includes the GNU Compiler Collection 9.
A full changelog is provided by the GCC team on:
https://www.gnu.org/software/gcc/gcc-9/changes.html

The base system compiler libraries libgcc_s1, libstdc++6 and others are now built by the gcc 9 packages.
To use it, install 'gcc9' or 'gcc9-c++' or other compiler brands and use CC=gcc-9 / CXX=g++-9 during configuration for using it.

Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2019:3086-1
ReleasedThu Nov 28 10:02:24 2019
SummarySecurity update for libidn2
Typesecurity
Severitymoderate
References1154884,1154887,CVE-2019-12290,CVE-2019-18224
Description:

This update for libidn2 to version 2.2.0 fixes the following issues:


Advisory IDSUSE-SU-2019:3096-1
ReleasedThu Nov 28 16:48:21 2019
SummarySecurity update for cloud-init
Typesecurity
Severitymoderate
References1099358,1129124,1136440,1142988,1144363,1151488,1154092,CVE-2019-0816
Description:

This update for cloud-init to version 19.2 fixes the following issues:
Security issue fixed:


Non-security issues fixed:


Advisory IDSUSE-RU-2019:3104-1
ReleasedFri Nov 29 06:47:08 2019
SummaryRecommended update for sysstat
Typerecommended
Severitymoderate
References1144923,SLE-5958
Description:

This update for sysstat fixes the following issues:


Advisory IDSUSE-RU-2019:3170-1
ReleasedWed Dec 4 11:45:48 2019
SummaryRecommended update for cjose
Typerecommended
Severitymoderate
References1149887
Description:

This update for cjose provides the following fix:


Advisory IDSUSE-RU-2019:3173-1
ReleasedWed Dec 4 20:22:45 2019
SummaryRecommended update for growpart, growpart-rootgrow
Typerecommended
Severitymoderate
References1154357,ECO-550
Description:

This update for growpart, growpart-rootgrow contains the following fixes:
growpart:


growpart-rootgrow:


Advisory IDSUSE-SU-2019:3176-1
ReleasedThu Dec 5 11:41:01 2019
SummarySecurity update for clamav
Typesecurity
Severityimportant
References1157763,CVE-2019-15961
Description:

This update for clamav fixes the following issues:


Advisory IDSUSE-RU-2019:3195-1
ReleasedThu Dec 5 21:32:12 2019
SummaryRecommended update for perl-DBD-mysql
Typerecommended
Severitylow
References1149792
Description:

This update for perl-DBD-mysql fixes the following issues:


Advisory IDSUSE-RU-2019:3205-1
ReleasedMon Dec 9 13:48:28 2019
SummaryRecommended update for insserv-compat
Typerecommended
Severitymoderate
References1052837,1133306
Description:

This update for insserv-compat fixes the following issues:


Advisory IDSUSE-RU-2019:3210-1
ReleasedTue Dec 10 08:54:15 2019
SummaryRecommended update for rubygem-mail
Typerecommended
Severitymoderate
References1156721
Description:

This update for rubygem-mail fixes the following issues:
Compatibility fixes:


Bug fixes:


Advisory IDSUSE-SU-2019:3238-1
ReleasedTue Dec 10 10:21:59 2019
SummarySecurity update for java-1_8_0-openjdk
Typesecurity
Severityimportant
References1138529,1152856,1154212,CVE-2019-2894,CVE-2019-2933,CVE-2019-2945,CVE-2019-2949,CVE-2019-2958,CVE-2019-2962,CVE-2019-2964,CVE-2019-2973,CVE-2019-2975,CVE-2019-2978,CVE-2019-2981,CVE-2019-2983,CVE-2019-2987,CVE-2019-2988,CVE-2019-2989,CVE-2019-2992,CVE-2019-2999
Description:

This update for java-1_8_0-openjdk (jdk8u232/icedtea 3.14.0) fixes the following issues:
Security issues fixed (bsc#1154212):


Bug fixes:


Advisory IDSUSE-RU-2019:3245-1
ReleasedWed Dec 11 10:12:19 2019
SummaryRecommended update for azure-li-services
Typerecommended
Severitymoderate
References1157040,1157041
Description:

This update for azure-li-services fixes the following issues:
















One of the issues is that `saptune` is a different tool that supersedes `sapconf`. Then the `saptune daemon restart` command will always overwrite the profile with `saptune`. Two different tools that can't be mixed. Only one should be used. In case of SLES (not SLES for SAP), the sequence should be For SLES 12 ``` tuned-adm profile sap-hana systemctl enable --now sapconf.service ``` and for SLES15 ``` tuned-adm profile sapconf systemctl enable --now sapconf.service ``` For SLES for SAP, the sequence is the same for 12 and 15: ``` saptune daemon start saptune solution apply HANA ``` This Fixes #172


This Fixes #178

























Advisory IDSUSE-RU-2019:3298-1
ReleasedSat Dec 14 00:59:01 2019
SummaryRecommended update for gnu-compilers-hpc
Typerecommended
Severitymoderate
References1149414,SLE-7765,SLE-7766
Description:

This update for gnu-compilers-hpc fixes the following issues:


Advisory IDSUSE-RU-2019:3301-1
ReleasedMon Dec 16 10:47:20 2019
SummaryRecommended update for mariadb-connector-c
Typerecommended
Severitymoderate
References1156669
Description:

This update for mariadb-connector-c fixes the following issues:
New upstream version 3.1.5 (bsc#1156669) - Plugin dialog could not be loaded (wrong path) - Fix for unknown/not handled schannel error codes - Use windows crypto libraries on Windows platforms - Fix crash in GnuTLS when key and certificate are in the same file - Fix location of PLUGINDIR if Connector/C is a subproject


Advisory IDSUSE-RU-2019:3327-1
ReleasedTue Dec 17 15:45:47 2019
SummaryRecommended update for libtcnative-1-0
Typerecommended
Severitymoderate
References1130843,202339,622430
Description:

This update for libtcnative-1-0 fixes the following issues:


Advisory IDSUSE-RU-2019:3329-1
ReleasedTue Dec 17 15:46:18 2019
SummaryRecommended update to python-tornado
Typerecommended
Severitylow
References1149792
Description:


Advisory IDSUSE-OU-2019:3345-1
ReleasedThu Dec 19 15:02:29 2019
SummaryOptional update for container-diff
Typeoptional
Severitylow
References1148768,ECO-338
Description:

Added container-diff package to SUSE Linux Enterprise 15 Containers Module and SUSE Linux Enterprise 15 SP1 Containers Module.


Advisory IDSUSE-SU-2019:3348-1
ReleasedThu Dec 19 16:13:04 2019
SummarySecurity update for spectre-meltdown-checker
Typesecurity
Severitymoderate
References1117665,1139073,CVE-2018-12207,CVE-2019-11135
Description:

This update for spectre-meltdown-checker fixes the following issues:
- feat: implement TAA detection (CVE-2019-11135 bsc#1139073) - feat: implement MCEPSC / iTLB Multihit detection (CVE-2018-12207 bsc#1117665) - feat: taa: add TSX_CTRL MSR detection in hardware info - feat: fwdb: use both Intel GitHub repo and MCEdb to build our firmware version database - feat: use --live with --kernel/--config/--map to override file detection in live mode - enh: rework the vuln logic of MDS with --paranoid (fixes #307) - enh: explain that Enhanced IBRS is better for performance than classic IBRS - enh: kernel: autodetect customized arch kernels from cmdline - enh: kernel decompression: better tolerance against missing tools - enh: mock: implement reading from /proc/cmdline - fix: variant3a: Silvermont CPUs are not vulnerable to variant 3a - fix: lockdown: detect Red Hat locked down kernels (impacts MSR writes) - fix: lockdown: detect locked down mode in vanilla 5.4+ kernels - fix: sgx: on locked down kernels, fallback to CPUID bit for detection - fix: fwdb: builtin version takes precedence if the local cached version is older - fix: pteinv: don't check kernel image if not available - fix: silence useless error from grep (fixes #322) - fix: msr: fix msr module detection under Ubuntu 19.10 (fixes #316) - fix: mocking value for read_msr - chore: rename mcedb cmdline parameters to fwdb, and change db version scheme - chore: fwdb: update to v130.20191104+i20191027 - chore: add GitHub check workflow


Advisory IDSUSE-RU-2019:3383-1
ReleasedMon Dec 23 16:55:01 2019
SummaryRecommended update for google-compute-engine
Typerecommended
Severitymoderate
References1151398
Description:

This update for google-compute-engine the following fix:


Advisory IDSUSE-SU-2019:3391-1
ReleasedFri Dec 27 13:33:16 2019
SummarySecurity update for dia
Typesecurity
Severitymoderate
References1158194,CVE-2019-19451
Description:

This update for dia fixes the following issue:


Advisory IDSUSE-SU-2019:3395-1
ReleasedMon Dec 30 14:05:06 2019
SummarySecurity update for mozilla-nspr, mozilla-nss
Typesecurity
Severitymoderate
References1141322,1158527,1159819,CVE-2018-18508,CVE-2019-11745,CVE-2019-17006
Description:

This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to NSS 3.47.1:
Security issues fixed:


mozilla-nspr was updated to version 4.23:


Advisory IDSUSE-RU-2019:3400-1
ReleasedTue Dec 31 08:18:40 2019
SummaryRecommended update for libsodium
Typerecommended
Severitymoderate
References1146257
Description:

This update for libsodium fixes the following issues:


Advisory IDSUSE-SU-2020:1-1
ReleasedThu Jan 2 09:47:04 2020
SummarySecurity update for java-1_8_0-ibm
Typesecurity
Severitymoderate
References1154212,1158442,CVE-2019-17631,CVE-2019-2933,CVE-2019-2945,CVE-2019-2958,CVE-2019-2962,CVE-2019-2964,CVE-2019-2973,CVE-2019-2975,CVE-2019-2978,CVE-2019-2981,CVE-2019-2983,CVE-2019-2988,CVE-2019-2989,CVE-2019-2992,CVE-2019-2996,CVE-2019-2999
Description:

This update for java-1_8_0-ibm fixes the following issues:


Advisory IDSUSE-RU-2020:10-1
ReleasedThu Jan 2 12:35:06 2020
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1146475
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-SU-2020:17-1
ReleasedTue Jan 7 11:19:17 2020
SummarySecurity update for virglrenderer
Typesecurity
Severityimportant
References1159478,1159479,1159482,1159486,CVE-2019-18388,CVE-2019-18389,CVE-2019-18390,CVE-2019-18391
Description:

This update for virglrenderer fixes the following issues:


Advisory IDSUSE-RU-2020:19-1
ReleasedTue Jan 7 11:28:10 2020
SummaryRecommended update for lifecycle-data-sle-module-live-patching
Typerecommended
Severitymoderate
References1020320
Description:

This update for lifecycle-data-sle-module-live-patching fixes the following issues:


Advisory IDSUSE-RU-2020:32-1
ReleasedTue Jan 7 16:09:04 2020
SummaryRecommended update for rpmlint
Typerecommended
Severitymoderate
References1151418,1157663
Description:

This update for rpmlint contains the following fixes:


Advisory IDSUSE-SU-2020:35-1
ReleasedWed Jan 8 09:06:32 2020
SummarySecurity update for containerd, docker, docker-runc, golang-github-docker-libnetwork
Typesecurity
Severitymoderate
References1122469,1143349,1150397,1152308,1153367,1158590,CVE-2019-16884
Description:

This update for containerd, docker, docker-runc, golang-github-docker-libnetwork fixes the following issues:
Security issue fixed:


Bug fixes:


Advisory IDSUSE-RU-2020:37-1
ReleasedWed Jan 8 10:42:00 2020
Summary- Fix test getdate [bsc#1159990]
Typerecommended
Severitylow
References
Description:


Advisory IDSUSE-SU-2020:45-1
ReleasedWed Jan 8 14:56:48 2020
SummarySecurity update for git
Typesecurity
Severityimportant
References1082023,1149792,1158785,1158787,1158788,1158789,1158790,1158791,1158792,1158793,1158795,CVE-2019-1348,CVE-2019-1349,CVE-2019-1350,CVE-2019-1351,CVE-2019-1352,CVE-2019-1353,CVE-2019-1354,CVE-2019-1387,CVE-2019-19604
Description:

This update for git fixes the following issues:
Security issues fixed:


Bug fixes:


Advisory IDSUSE-OU-2020:52-1
ReleasedThu Jan 9 10:09:11 2020
SummaryOptional update for openslp
Typeoptional
Severitylow
References1149792
Description:

This update for openslp doesn't fix any user visible bugs.


Advisory IDSUSE-SU-2020:58-1
ReleasedThu Jan 9 13:29:49 2020
SummarySecurity update for LibreOffice
Typesecurity
Severitymoderate
References1061210,1105173,1144522,1152684,CVE-2019-9853,SLE-8705
Description:

This update libreoffice and libraries fixes the following issues:
LibreOffice was updated to 6.3.3 (jsc#SLE-8705), bringing many bug and stability fixes.
More information for the 6.3 release at: https://wiki.documentfoundation.org/ReleaseNotes/6.3
Security issue fixed:


Other issues addressed:


cmis-client was updated to 0.5.2:
* Removed header for Uuid's sha1 header(bsc#1105173). * Fixed Google Drive login * Added support for Google Drive two-factor authentication * Fixed access to SharePoint root folder * Limited the maximal number of redirections to 20 * Switched library implementation to C++11 (the API remains C++98-compatible) * Fixed encoding of OAuth2 credentials * Dropped cppcheck run from 'make check'. A new 'make cppcheck' target was created for it * Added proper API symbol exporting * Speeded up building of tests a bit * Fixed a few issues found by coverity and cppcheck

libixion was updated to 0.15.0:
* Updated for new liborcus * Switched to spdlog for compile-time debug log outputs * Fixed various issues
libmwaw was updated 0.3.15: * Fixed fuzzing issues
liborcus was updated to 0.15.3:
* Fixed various xml related bugs * Improved performance * Fixed multiple parser issues * Added map and structure mode to orcus-json * Other improvements and fixes
mdds was updated to 1.5.0:
* API changed to 1.5 * Moved the API incompatibility notes from README to the rst doc. * Added the overview section for flat_segment_tree.
myspell-dictionaries was updated to 20191016:
* Updated Slovenian thesaurus * Updated the da_DK dictionary * Removed the abbreviations from Thai hunspell dictionary * Updated the English dictionaries * Fixed the logo management for 'ca'
spdlog was updated to 0.16.3:
* Fixed sleep issue under MSVC that happens when changing the clock backwards * Ensured that macros always expand to expressions * Added global flush_on function


Advisory IDSUSE-SU-2020:64-1
ReleasedFri Jan 10 11:02:19 2020
SummarySecurity update for openssl-1_0_0
Typesecurity
Severitymoderate
References1158809,CVE-2019-1551
Description:

This update for openssl-1_0_0 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2020:94-1
ReleasedTue Jan 14 12:28:26 2020
SummaryRecommended update for icu
Typerecommended
Severityimportant
References1103893,1146907
Description:

This update for icu fixes the following issues:


Advisory IDSUSE-RU-2020:108-1
ReleasedWed Jan 15 14:19:08 2020
SummaryRecommended update for ClusterTools2
Typerecommended
Severitymoderate
References1084925,1097134
Description:

This update for ClusterTools2 fixes the following issues:


Advisory IDSUSE-RU-2020:109-1
ReleasedWed Jan 15 14:19:28 2020
SummaryRecommended update for hawk2
Typerecommended
Severitymoderate
References1158681
Description:

This update for hawk2 fixes the following issues:


Advisory IDSUSE-RU-2020:119-1
ReleasedThu Jan 16 15:42:39 2020
SummaryRecommended update for python-jsonpatch
Typerecommended
Severitymoderate
References1160978
Description:

This update for python-jsonpatch fixes the following issues:


Advisory IDSUSE-RU-2020:122-1
ReleasedFri Jan 17 10:56:07 2020
SummaryRecommended update for container-suseconnect
Typerecommended
Severitymoderate
References1138731,1154247,1157960
Description:

This update for container-suseconnect fixes the following issues:


Advisory IDSUSE-RU-2020:125-1
ReleasedFri Jan 17 12:27:07 2020
SummaryRecommended update for icu
Typerecommended
Severityimportant
References1161007
Description:

This update for icu provides the following fix:


Advisory IDSUSE-SU-2020:143-1
ReleasedMon Jan 20 16:10:38 2020
SummarySecurity update for libvpx
Typesecurity
Severityimportant
References1160611,1160612,1160613,1160614,1160615,CVE-2019-2126,CVE-2019-9232,CVE-2019-9325,CVE-2019-9371,CVE-2019-9433
Description:

This update for libvpx fixes the following issues:


Advisory IDSUSE-SU-2020:213-1
ReleasedWed Jan 22 15:38:15 2020
SummarySecurity update for java-11-openjdk
Typesecurity
Severityimportant
References1160968,CVE-2020-2583,CVE-2020-2590,CVE-2020-2593,CVE-2020-2601,CVE-2020-2604,CVE-2020-2654,CVE-2020-2655
Description:

This update for java-11-openjdk fixes the following issues:
Update to version jdk-11.0.6-10 (January 2020 CPU, bsc#1160968)
Fixing these security related issues:


Advisory IDSUSE-RU-2020:217-1
ReleasedThu Jan 23 07:50:32 2020
SummaryRecommended update for perl-Crypt-SSLeay
Typerecommended
Severitymoderate
References1149792
Description:

This update for perl-Crypt-SSLeay fixes the following issues:


Advisory IDSUSE-RU-2020:225-1
ReleasedFri Jan 24 06:49:07 2020
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1158830
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-SU-2020:231-1
ReleasedFri Jan 24 13:34:17 2020
SummarySecurity update for java-1_8_0-openjdk
Typesecurity
Severityimportant
References1160968,CVE-2020-2583,CVE-2020-2590,CVE-2020-2593,CVE-2020-2601,CVE-2020-2604,CVE-2020-2654,CVE-2020-2659
Description:

This update for java-1_8_0-openjdk fixes the following issues:
Update java-1_8_0-openjdk to version jdk8u242 (icedtea 3.15.0) (January 2020 CPU, bsc#1160968):


Advisory IDSUSE-RU-2020:237-1
ReleasedMon Jan 27 10:15:16 2020
SummaryRecommended update for saptune
Typerecommended
Severitymoderate
References1142467,1142526,1149002,1152598,1159671
Description:

This update for saptune fixes the following issues:


Advisory IDSUSE-RU-2020:245-1
ReleasedTue Jan 28 09:42:30 2020
SummaryRecommended update for cloud-init
Typerecommended
Severitymoderate
References1155376,1156139,1157894,1161132,1161133
Description:

This update for cloud-init fixes the following issues:


Advisory IDSUSE-RU-2020:303-1
ReleasedMon Feb 3 15:11:40 2020
SummaryRecommended update for perl-ldap
Typerecommended
Severitymoderate
References1158918
Description:

This update for perl-ldap fixes the following issues:
The package is added to the Basesystem module, as it is required by the YAST modules 'dhcp-server' and 'dns-server'. (bsc#1158918)


Advisory IDSUSE-RU-2020:314-1
ReleasedTue Feb 4 14:13:27 2020
SummaryRecommended update for gssproxy
Typerecommended
Severitymoderate
References1024309
Description:

This update for gssproxy fixes the following issues:


Also ding-libs was updated from 0.6.0 to 0.6.1 (jsc#ECO-248):


Advisory IDSUSE-RU-2020:322-1
ReleasedWed Feb 5 09:02:56 2020
SummaryRecommended update for terraform-provider-aws, terraform-provider-susepubliccloud
Typerecommended
Severitymoderate
References1162585
Description:

This update for terraform-provider-aws, terraform-provider-susepubliccloud fixes the following issues:


Advisory IDSUSE-RU-2020:336-1
ReleasedThu Feb 6 12:45:08 2020
SummaryRecommended update for opus
Typerecommended
Severitymoderate
References1162395
Description:

This update for opus fixes the following issues:


This update also improves the security of this software.


Advisory IDSUSE-RU-2020:338-1
ReleasedThu Feb 6 13:00:23 2020
SummaryRecommended update for apr
Typerecommended
Severitymoderate
References1151059
Description:

This update for apr fixes the following issues:


Advisory IDSUSE-RU-2020:343-1
ReleasedThu Feb 6 13:08:13 2020
SummaryRecommended update for SAPHanaSR
Typerecommended
Severitymoderate
References1155423,1156067,1156150,1157453
Description:

This update for SAPHanaSR fixes the following issues:


Advisory IDSUSE-RU-2020:344-1
ReleasedThu Feb 6 13:08:33 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1139915,1150190,1155815,1156694,1156908,1157104,1157354,1159235,1159538
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-SU-2020:359-1
ReleasedFri Feb 7 10:39:59 2020
SummarySecurity update for rubygem-rack
Typesecurity
Severitymoderate
References1114828,1116600,1159548,CVE-2018-16471,CVE-2019-16782
Description:

This update for rubygem-rack to version 2.0.8 fixes the following issues:


Advisory IDSUSE-RU-2020:362-1
ReleasedFri Feb 7 11:14:20 2020
SummaryRecommended update for libXi
Typerecommended
Severitymoderate
References1153311
Description:


This update for libXi fixes the following issue:


Advisory IDSUSE-RU-2020:365-1
ReleasedFri Feb 7 13:48:54 2020
SummaryRecommended update for lmdb
Typerecommended
Severitymoderate
References1159086
Description:

This update for lmdb fixes the following issues:


Advisory IDSUSE-SU-2020:375-1
ReleasedFri Feb 7 17:30:25 2020
SummarySecurity update for docker-runc
Typesecurity
Severitymoderate
References1160452,CVE-2019-19921
Description:

This update for docker-runc fixes the following issues:


Advisory IDSUSE-RU-2020:392-1
ReleasedTue Feb 18 11:23:50 2020
SummaryRecommended update for lifecycle-data-sle-module-live-patching
Typerecommended
Severitymoderate
References1020320
Description:

This update for lifecycle-data-sle-module-live-patching fixes the following issues:


Advisory IDSUSE-RU-2020:395-1
ReleasedTue Feb 18 14:16:48 2020
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1160086
Description:


This update for gcc7 fixes the following issue:



Advisory IDSUSE-RU-2020:398-1
ReleasedTue Feb 18 16:59:27 2020
SummaryRecommended update for gnu-compilers-hpc
Typerecommended
Severitymoderate
References1160924
Description:

This update for gnu-compilers-hpc fixes the following issues:


Advisory IDSUSE-SU-2020:413-1
ReleasedWed Feb 19 10:21:41 2020
SummarySecurity update for enigmail
Typesecurity
Severitymoderate
References1159973
Description:

This update for enigmail fixes the following issues:
enigmail was updated to 2.1.5:


enigmail 2.1.4:

enigmail 2.1.3:


Advisory IDSUSE-RU-2020:31-1
ReleasedMon Feb 24 10:36:36 2020
SummaryRecommended update for cloud-netconfig
Typerecommended
Severitymoderate
References1135592,1144282,1157117,1157190
Description:

This update for cloud-netconfig contains the following fixes:





Advisory IDSUSE-SU-2020:440-1
ReleasedMon Feb 24 15:31:42 2020
SummarySecurity update for python-azure-agent
Typesecurity
Severitymoderate
References1127838,CVE-2019-0804
Description:

This update for python-azure-agent fixes the following issues:
python-azure-agent was updated to version 2.2.45 (jsc#ECO-80)


From 2.2.44 update:

From 2.2.42 update:

From 2.2.41 update:

From 2.2.40 update:

From 2.2.38 update:
Security issue fixed:
From 2.2.37 update:


Advisory IDSUSE-RU-2020:453-1
ReleasedTue Feb 25 10:51:53 2020
SummaryRecommended update for binutils
Typerecommended
Severitymoderate
References1160590
Description:

This update for binutils fixes the following issues:


Advisory IDSUSE-SU-2020:458-1
ReleasedTue Feb 25 11:01:37 2020
SummarySecurity update for libexif
Typesecurity
Severitymoderate
References1120943,1160770,CVE-2018-20030,CVE-2019-9278
Description:

This update for libexif fixes the following issues:


Advisory IDSUSE-SU-2020:466-1
ReleasedTue Feb 25 11:59:19 2020
SummarySecurity update for java-1_8_0-ibm
Typesecurity
Severityimportant
References1160968,1162972,CVE-2019-4732,CVE-2020-2583,CVE-2020-2593,CVE-2020-2604,CVE-2020-2659
Description:

This update for java-1_8_0-ibm fixes the following issues:
Java 8.0 was updated to Service Refresh 6 Fix Pack 5 (bsc#1162972, bsc#1160968)


Advisory IDSUSE-RU-2020:481-1
ReleasedTue Feb 25 17:39:22 2020
SummaryRecommended update for perl-TimeDate
Typerecommended
Severitymoderate
References1162433
Description:

This update for perl-TimeDate fixes the following issues:


Advisory IDSUSE-SU-2020:489-1
ReleasedWed Feb 26 11:44:03 2020
SummarySecurity update for ppp
Typesecurity
Severityimportant
References1162610,CVE-2020-8597
Description:

This update for ppp fixes the following security issue:


Advisory IDSUSE-RU-2020:498-1
ReleasedWed Feb 26 17:59:44 2020
SummaryRecommended update for aws-cli, python-boto3, python-botocore, python-s3transfer, python-aws-sam-translator, python-cfn-lint, python-nose2, python-parameterized
Typerecommended
Severitymoderate
References1122669,1136184,1146853,1146854,1159018
Description:



This update for aws-cli, python-aws-sam-translator, python-cfn-lint, python-nose2, python-parameterized, python-boto3, python-botocore, python-s3transfer fixes the following issues:
python-aws-sam-translator was updated to 1.11.0 (bsc#1159018, jsc#PM-1507):
Upgrade to 1.11.0:
* Add ReservedConcurrentExecutions to globals * Fix ElasticsearchHttpPostPolicy resource reference * Support using AWS::Region in Ref and Sub * Documentation and examples updates * Add VersionDescription property to Serverless::Function * Update ServerlessRepoReadWriteAccessPolicy * Add additional template validation
Upgrade to 1.10.0:
* Add GSIs to DynamoDBReadPolicy and DynamoDBCrudPolicy * Add DynamoDBReconfigurePolicy * Add CostExplorerReadOnlyPolicy and OrganizationsListAccountsPolicy * Add EKSDescribePolicy * Add SESBulkTemplatedCrudPolicy * Add FilterLogEventsPolicy * Add SSMParameterReadPolicy * Add SESEmailTemplateCrudPolicy * Add s3:PutObjectAcl to S3CrudPolicy * Add allow_credentials CORS option * Add support for AccessLogSetting and CanarySetting Serverless::Api properties * Add support for X-Ray in Serverless::Api * Add support for MinimumCompressionSize in Serverless::Api * Add Auth to Serverless::Api globals * Remove trailing slashes from APIGW permissions * Add SNS FilterPolicy and an example application * Add Enabled property to Serverless::Function event sources * Add support for PermissionsBoundary in Serverless::Function * Fix boto3 client initialization * Add PublicAccessBlockConfiguration property to S3 bucket resource * Make PAY_PER_REQUEST default mode for Serverless::SimpleTable * Add limited support for resolving intrinsics in Serverless::LayerVersion * SAM now uses Flake8 * Add example application for S3 Events written in Go * Updated several example applications
python-cfn-lint was added in version 0.21.4:



Update to version 0.21.4:
+ Features * Include more resource types in W3037 + CloudFormation Specifications * Add Resource Type `AWS::CDK::Metadata` + Fixes * Uncap requests dependency in setup.py * Check Join functions have lists in the correct sections * Pass a parameter value for AutoPublishAlias when doing a Transform * Show usage examples when displaying the help
Update to version 0.21.3
+ Fixes * Support dumping strings for datetime objects when doing a Transform
Update to version 0.21.2
+ CloudFormation Specifications * Update CloudFormation specs to 3.3.0 * Update instance types from pricing API as of 2019.05.23
Update to version 0.21.1
+ Features * Add `Info` logging capability and set the default logging to `NotSet` + Fixes * Only do rule logging (start/stop/time) when the rule is going to be called * Update rule E1019 to allow `Fn::Transform` inside a `Fn::Sub` * Update rule W2001 to not break when `Fn::Transform` inside a `Fn::Sub` * Update rule E2503 to allow conditions to be used and to not default to `network` load balancer when an object is used for the Load Balancer type
Update to version 0.21.0
+ Features * New rule E3038 to check if a Serverless resource includes the appropriate Transform * New rule E2531 to validate a Lambda's runtime against the deprecated dates * New rule W2531 to validate a Lambda's runtime against the EOL dates * Update rule E2541 to include updates to Code Pipeline capabilities * Update rule E2503 to include checking of values for load balancer attributes + CloudFormation Specifications * Update CloudFormation specs to 3.2.0 * Update instance types from pricing API as of 2019.05.20 + Fixes * Include setuptools in setup.py requires
Update to version 0.20.3
+ CloudFormation Specifications * Update instance types from pricing API as of 2019.05.16 + Fixes * Update E7001 to allow float/doubles for mapping values * Update W1020 to check pre-transformed Fn::Sub(s) to determine if a Sub is needed * Pin requests to be below or equal to 2.21.0 to prevent issues with botocore
Update to version 0.20.2
+ Features * Add support for List Parameter types + CloudFormation Specifications * Add allowed values for AWS::EC2 EIP, FlowLog, CustomerGateway, DHCPOptions, EC2Fleet * Create new property type for Security Group IDs or Names * Add new Lambda runtime environment for NodeJs 10.x * Move AWS::ServiceDiscovery::Service Health checks from Only One to Exclusive * Update Glue Crawler Role to take an ARN or a name * Remove PrimitiveType from MaintenanceWindowTarget Targets * Add Min/Max values for Load Balancer Ports to be between 1-65535 + Fixes * Include License file in the pypi package to help with downstream projects * Filter out dynamic references from rule E3031 and E3030 * Convert Python linting and Code Coverage from Python 3.6 to 3.7
Update to version 0.20.1
+ Fixes * Update rule E8003 to support more functions inside a Fn::Equals
Update to version 0.20.0
+ Features * Allow a rule's exception to be defined in a resource's metadata * Add rule configuration capabilities * Update rule E3012 to allow for non strict property checking * Add rule E8003 to test Fn::Equals structure and syntax * Add rule E8004 to test Fn::And structure and syntax * Add rule E8005 to test Fn::Not structure and syntax * Add rule E8006 to test Fn::Or structure and syntax * Include Path to error in the JSON output * Update documentation to describe how to install cfn-lint from brew + CloudFormation Specifications * Update CloudFormation specs to version 3.0.0 * Add new region ap-east-1 * Add list min/max and string min/max for CloudWatch Alarm Actions * Add allowed values for EC2::LaunchTemplate * Add allowed values for EC2::Host * Update allowed values for Amazon MQ to include 5.15.9 * Add AWS::Greengrass::ResourceDefinition to GreenGrass supported regions * Add AWS::EC2::VPCEndpointService to all regions * Update AWS::ECS::TaskDefinition ExecutionRoleArn to be a IAM Role ARN * Patch spec files for SSM MaintenanceWindow to look for Target and not Targets * Update ManagedPolicyArns list size to be 20 which is the hard limit. 10 is the soft limit. + Fixes * Fix rule E3033 to check the string size when the string is inside a list * Fix an issue in which AWS::NotificationARNs was not a list * Add AWS::EC2::Volume to rule W3010 * Fix an issue with W2001 where SAM translate would remove the Ref to a parameter causing this error to falsely trigger * Fix rule W3010 to not error when the availability zone is 'all'
Update to version 0.19.1
+ Fixes * Fix core Condition processing to support direct Condition in another Condition * Fix the W2030 to check numbers against string allowed values
Update to version 0.19.0
+ Features * Add NS and PTR Route53 record checking to rule E3020 * New rule E3050 to check if a Ref to IAM Role has a Role path of '/' * New rule E3037 to look for duplicates in a list that doesn't support duplicates * New rule I3037 to look for duplicates in a list when duplicates are allowed + CloudFormation Specifications * Add Min/Max values to AWS::ElasticLoadBalancingV2::TargetGroup HealthCheckTimeoutSeconds * Add Max JSON size to AWS::IAM::ManagedPolicy PolicyDocument * Add allowed values for AWS::EC2 SpotFleet, TransitGateway, NetworkAcl NetworkInterface, PlacementGroup, and Volume * Add Min/max values to AWS::Budgets::Budget.Notification Threshold * Update RDS Instance types by database engine and license definitions using the pricing API * Update AWS::CodeBuild::Project ServiceRole to support Role Name or ARN * Update AWS::ECS::Service Role to support Role Name or ARN + Fixes * Update E3025 to support the new structure of data in the RDS instance type json * Update E2540 to remove all nested conditions from the object * Update E3030 to not do strict type checking * Update E3020 to support conditions nested in the record sets * Update E3008 to better handle CloudFormation sub stacks with different GetAtt formats
Update to version 0.18.1
+ CloudFormation Specifications * Update CloudFormation Specs to 2.30.0 * Fix IAM Regex Path to support more character types * Update AWS::Batch::ComputeEnvironment.ComputeResources InstanceRole to reference an InstanceProfile or GetAtt the InstanceProfile Arn * Allow VPC IDs to Ref a Parameter of type String + Fixes * Fix E3502 to check the size of the property instead of the parent object
Update to version 0.18.0
+ Features * New rule E3032 to check the size of lists * New rule E3502 to check JSON Object Size using definitions in the spec file * New rule E3033 to test the minimum and maximum length of a string * New rule E3034 to validate the min and max of a number * Remove Ebs Iops check from E2504 and use rule E3034 instead * Remove rule E2509 and use rule E3033 instead * Remove rule E2508 as it replaced by E3032 and E3502 * Update rule E2503 to check that there are at least two 2 Subnets or SubnetMappings for ALBs * SAM requirement upped to minimal version of 1.10.0 + CloudFormation Specifications * Extend specs to include: > `ListMin` and `ListMax` for the minimum and maximum size of a list > `JsonMax` to check the max size of a JSON Object > `StringMin` and `StringMax` to check the minimum and maximum length of a String > `NumberMin` and `NumberMax` to check the minimum and maximum value of a Number, Float, Long * Update State and ExecutionRoleArn to be required on AWS::DLM::LifecyclePolicy * Add AllowedValues for PerformanceInsightsRetentionPeriod for AWS::RDS::Instance * Add AllowedValues for the AWS::GuardDuty Resources * Add AllowedValues for AWS::EC2 VPC and VPN Resources * Switch IAM Instance Profiles for certain resources to the type that only takes the name * Add regex pattern for IAM Instance Profile when a name (not Arn) is used * Add regex pattern for IAM Paths * Add Regex pattern for IAM Role Arn * Update OnlyOne spec to require require at least one of Subnets or SubnetMappings with ELB v2 + Fixes * Fix serverless transform to use DefinitionBody when Auth is in the API definition * Fix rule W2030 to not error when checking SSM or List Parameters
Update to version 0.17.1
+ Features * Update rule E2503 to make sure NLBs don't have a Security Group configured + CloudFormation Specifications * Add all the allowed values of the `AWS::Glue` Resources * Update OnlyOne check for `AWS::CloudWatch::Alarm` to only `MetricName` or `Metrics` * Update Exclusive check for `AWS::CloudWatch::Alarm` for properties mixed with `Metrics` and `Statistic` * Update CloudFormation specs to 2.29.0 * Fix type with MariaDB in the AllowedValues * Update pricing information for data available on 2018.3.29 + Fixes * Fix rule E1029 to not look for a sub is needed when looking for iot strings in policies * Fix rule E2541 to allow for ActionId Versions of length 1-9 and meets regex `[0-9A-Za-z_-]+` * Fix rule E2532 to allow for `Parameters` inside a `Pass` action * Fix an issue when getting the location of an error in which numbers are causing an attribute error
Update to version 0.17.0
+ Features * Add new rule E3026 to validate Redis cluster settings including AutomaticFailoverEnabled and NumCacheClusters. Status: Released * Add new rule W3037 to validate IAM resource policies. Status: Experimental * Add new parameter `-e/--include-experimental` to allow for new rules in that aren't ready to be fully released + CloudFormation Specifications * Update Spec files to 2.28.0 * Add all the allowed values of the AWS::Redshift::* Resources * Add all the allowed values of the AWS::Neptune::* Resources * Patch spec to make AWS::CloudFront::Distribution.LambdaFunctionAssociation.LambdaFunctionARN required * Patch spec to make AWS::DynamoDB::Table AttributeDefinitions required + Fixes * Remove extra blank lines when there is no errors in the output * Add exception to rule E1029 to have exceptions for EMR CloudWatchAlarmDefinition * Update rule E1029 to allow for literals in a Sub * Remove sub checks from rule E3031 as it won't match in all cases of an allowed pattern regex check * Correct typos for errors in rule W1001 * Switch from parsing a template as Yaml to Json when finding an escape character * Fix an issue with SAM related to transforming templates with Serverless Application and Lambda Layers * Fix an issue with rule E2541 when non strings were used for Stage Names
Update to version 0.16.0
+ Features * Add rule E3031 to look for regex patterns based on the patched spec file * Remove regex checks from rule E2509 * Add parameter `ignore-templates` to allow the ignoring of templates when doing bulk linting + CloudFormation Specifications * Update Spec files to 2.26.0 * Add all the allowed values of the AWS::DirectoryService::* Resources * Add all the allowed values of the AWS::DynamoDB::* Resources * Added AWS::Route53Resolver resources to the Spec Patches of ap-southeast-2 * Patch the spec file with regex patterns * Add all the allowed values of the AWS::DocDb::* Resources + Fixes * Update rule E2504 to have '20000' as the max value * Update rule E1016 to not allow ImportValue inside of Conditions * Update rule E2508 to check conditions when providing limit checks on managed policies * Convert unicode to strings when in Py 3.4/3.5 and updating specs * Convert from `awslabs` to `aws-cloudformation` organization * Remove suppression of logging that was removed from samtranslator >1.7.0 and incompatibility with samtranslator 1.10.0
Update to version 0.15.0
+ Features * Add scaffolding for arbitrary Match attributes, adding attributes for Type checks * Add rule E3024 to validate that ProvisionedThroughput is not specified with BillingMode PAY_PER_REQUEST + CloudFormation Specifications * Update Spec files to 2.24.0 * Update OnlyOne spec to have BlockDeviceMapping to include NoDevice with Ebs and VirtualName * Add all the allowed values of the AWS::CloudFront::* Resources * Add all the allowed values of the AWS::DAX::* Resources + Fixes * Update config parsing to use the builtin Yaml decoder * Add condition support for Inclusive E2521, Exclusive E2520, and AtLeastOne E2522 rules * Update rule E1029 to better check Resource strings inside IAM Policies * Improve the line/column information of a Match with array support
Update to version 0.14.1
+ CloudFormation Specifications * Update CloudFormation Specs to version 2.23.0 * Add allowed values for AWS::Config::* resources * Add allowed values for AWS::ServiceDiscovery::* resources * Fix allowed values for Apache MQ + Fixes * Update rule E3008 to not error when using a list from a custom resource * Support simple types in the CloudFormation spec * Add tests for the formatters
Update to version 0.14.0
+ Features * Add rule E3035 to check the values of DeletionPolicy * Add rule E3036 to check the values of UpdateReplacePolicy * Add rule E2014 to check that there are no REFs in the Parameter section * Update rule E2503 to support TLS on NLBs + CloudFormation Specifications * Update CloudFormation spec to version 2.22.0 * Add allowed values for AWS::Cognito::* resources + Fixes * Update rule E3002 to allow GetAtts to Custom Resources under a Condition
Update to version 0.13.2
+ Features * Introducing the cfn-lint logo! * Update SAM dependency version + Fixes * Fix CloudWatchAlarmComparisonOperator allowed values. * Fix typo resoruce_type_spec in several files * Better support for nested And, Or, and Not when processing Conditions
Update to version 0.13.1
+ CloudFormation Specifications * Add allowed values for AWS::CloudTrail::Trail resources * Patch spec to have AWS::CodePipeline::CustomActionType Version included + Fixes * Fix conditions logic to use AllowedValues when REFing a Parameter that has AllowedValues specified
Update to version 0.13.0
+ Features * New rule W1011 to check if a FindInMap is using the correct map name and keys * New rule W1001 to check if a Ref/GetAtt to a resource that exists when Conditions are used * Removed logic in E1011 and moved it to W1011 for validating keys * Add property relationships for AWS::ApplicationAutoScaling::ScalingPolicy into Inclusive, Exclusive, and AtLeastOne * Update rule E2505 to check the netmask bit * Include the ability to update the CloudFormation Specs using the Pricing API + CloudFormation Specifications * Update to version 2.21.0 * Add allowed values for AWS::Budgets::Budget * Add allowed values for AWS::CertificateManager resources * Add allowed values for AWS::CodePipeline resources * Add allowed values for AWS::CodeCommit resources * Add allowed values for EC2 InstanceTypes from pricing API * Add allowed values for RedShift InstanceTypes from pricing API * Add allowed values for MQ InstanceTypes from pricing API * Add allowed values for RDS InstanceTypes from pricing API + Fixes * Fixed README indentation issue with .pre-commit-config.yaml * Fixed rule E2541 to allow for multiple inputs/outputs in a CodeBuild task * Fixed rule E3020 to allow for a period or no period at the end of a ACM registration record * Update rule E3001 to support UpdateReplacePolicy * Fix a cli issue where `--template` wouldn't be used when a .cfnlintrc was in the same folder * Update rule E3002 and E1024 to support packaging of AWS::Lambda::LayerVersion content

Update to 0.9.1
* the prof plugin now uses cProfile instead of hotshot for profiling * skipped tests now include the user's reason in junit XML's message field * the prettyassert plugin mishandled multi-line function definitions * Using a plugin's CLI flag when the plugin is already enabled via config no longer errors * nose2.plugins.prettyassert, enabled with --pretty-assert * Cleanup code for EOLed python versions * Dropped support for distutils. * Result reporter respects failure status set by other plugins * JUnit XML plugin now includes the skip reason in its output
Upgrade to 0.8.0:

Update to 0.7.0:



aws-cli was updated to version 1.16.223:
For detailed changes see the changes entries:
https://github.com/aws/aws-cli/blob/1.16.223/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.189/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.182/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.176/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.103/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.94/CHANGELOG.rst https://github.com/aws/aws-cli/blob/1.16.84/CHANGELOG.rst
python-boto3 was updated to 1.9.213, python-botocore was updated to 1.9.188, and python-s3transfer was updated to 1.12.74, fixing lots of bugs and adding features (bsc#1146853, bsc#1146854)


Advisory IDSUSE-RU-2020:521-1
ReleasedThu Feb 27 18:08:56 2020
SummaryRecommended update for c-ares
Typerecommended
Severitymoderate
References1125306,1159006
Description:

This update for c-ares fixes the following issues:
c-ares version update to 1.15.0:



Advisory IDSUSE-RU-2020:525-1
ReleasedFri Feb 28 11:49:36 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1164562
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2020:556-1
ReleasedMon Mar 2 13:32:14 2020
SummaryRecommended update for 389-ds
Typerecommended
Severitymoderate
References1155951
Description:

This update for 389-ds to version 1.4.2.2 fixes the following issues:
389-ds was updated to 1.4.2.6 (fate#326677, bsc#1155951), bringing many bug and stability fixes.
Issue addressed:

More information for this release at: https://directory.fedoraproject.org/docs/389ds/releases/release-1-4-2-1.html


Advisory IDSUSE-RU-2020:562-1
ReleasedMon Mar 2 17:37:15 2020
SummaryRecommended update for mariadb-connector-c
Typerecommended
Severitymoderate
References1162388
Description:

This update for mariadb-connector-c fixes the following issues:
New upstream version 3.1.7 (bsc#1162388)


Advisory IDSUSE-RU-2020:567-1
ReleasedTue Mar 3 10:46:37 2020
SummaryRecommended update for sendmail
Typerecommended
Severitymoderate
References1164084
Description:

This update for sendmail fixes the following issues:


Advisory IDSUSE-RU-2020:575-1
ReleasedTue Mar 3 14:51:50 2020
SummaryRecommended update for hfst-ospell
Typerecommended
Severitymoderate
References1164440
Description:

This update for hfst-ospell fixes the following issue:


Advisory IDSUSE-RU-2020:591-1
ReleasedThu Mar 5 12:33:06 2020
SummaryRecommended update for libfreehand
Typerecommended
Severitymoderate
References1164434
Description:

This update for libfreehand fixes the following issue:


Advisory IDSUSE-RU-2020:593-1
ReleasedThu Mar 5 13:25:06 2020
SummaryRecommended update for umoci
Typerecommended
Severitymoderate
References1165161
Description:

This update for umoci fixes the following issues:
Update to umoci v0.4.4:


Update to umoci v0.4.3:

Update to umoci v0.4.2:

Update to umoci v0.4.1.

Update to umoci v0.4.0:


Advisory IDSUSE-RU-2020:624-1
ReleasedTue Mar 10 10:39:09 2020
SummaryRecommended update for python-PyNaCl
Typerecommended
Severityimportant
References1161557
Description:

This update for python-PyNaCl fixes the following issues:


Advisory IDSUSE-RU-2020:627-1
ReleasedTue Mar 10 12:27:48 2020
SummaryRecommended update for osc
Typerecommended
Severityimportant
References1136584,1137477,1154972,1155953,1156501
Description:

This update for osc fixes the following issues:


Advisory IDSUSE-RU-2020:637-1
ReleasedWed Mar 11 11:29:56 2020
SummaryRecommended update for cloud-netconfig
Typerecommended
Severitymoderate
References1162705,1162707
Description:

This update for cloud-netconfig fixes the following issues:



Advisory IDSUSE-RU-2020:655-1
ReleasedThu Mar 12 13:17:03 2020
SummaryRecommended update for growpart
Typerecommended
Severitymoderate
References1164736
Description:

This update for growpart fixes the following issues:


Advisory IDSUSE-RU-2020:657-1
ReleasedThu Mar 12 15:06:48 2020
SummaryRecommended update for cloud-regionsrv-client
Typerecommended
Severitymoderate
References1158664
Description:

This update for cloud-regionsrv-client contains the following fixes:



Advisory IDSUSE-RU-2020:689-1
ReleasedFri Mar 13 17:09:01 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1166510
Description:


This update for PAM fixes the following issue:


Advisory IDSUSE-RU-2020:690-1
ReleasedFri Mar 13 17:09:28 2020
SummaryRecommended update for suse-build-key
Typerecommended
Severitymoderate
References1166334
Description:

This update for suse-build-key fixes the following issues:


Advisory IDSUSE-SU-2020:697-1
ReleasedMon Mar 16 13:17:10 2020
SummarySecurity update for cni, cni-plugins, conmon, fuse-overlayfs, podman
Typesecurity
Severitymoderate
References1155217,1160460,1164390,CVE-2019-18466
Description:

This update for cni, cni-plugins, conmon, fuse-overlayfs, podman fixes the following issues:
podman was updated to 1.8.0:



Update podman to v1.8.0 (bsc#1160460):

- The podman system service command has been added, providing a preview of Podman's new Docker-compatible API. This API is still very new, and not yet ready for production use, but is available for early testing - Rootless Podman now uses Rootlesskit for port forwarding, which should greatly improve performance and capabilities - The podman untag command has been added to remove tags from images without deleting them - The podman inspect command on images now displays previous names they used - The podman generate systemd command now supports a --new option to generate service files that create and run new containers instead of managing existing containers - Support for --log-opt tag= to set logging tags has been added to the journald log driver - Added support for using Seccomp profiles embedded in images for podman run and podman create via the new --seccomp-policy CLI flag - The podman play kube command now honors pull policy

- Fixed a bug where the podman cp command would not copy the contents of directories when paths ending in /. were given - Fixed a bug where the podman play kube command did not properly locate Seccomp profiles specified relative to localhost - Fixed a bug where the podman info command for remote Podman did not show registry information - Fixed a bug where the podman exec command did not support having input piped into it - Fixed a bug where the podman cp command with rootless Podman on CGroups v2 systems did not properly determine if the container could be paused while copying - Fixed a bug where the podman container prune --force command could possible remove running containers if they were started while the command was running - Fixed a bug where Podman, when run as root, would not properly configure slirp4netns networking when requested - Fixed a bug where podman run --userns=keep-id did not work when the user had a UID over 65535 - Fixed a bug where rootless podman run and podman create with the --userns=keep-id option could change permissions on /run/user/$UID and break KDE - Fixed a bug where rootless Podman could not be run in a systemd service on systems using CGroups v2 - Fixed a bug where podman inspect would show CPUShares as 0, instead of the default (1024), when it was not explicitly set - Fixed a bug where podman-remote push would segfault - Fixed a bug where image healthchecks were not shown in the output of podman inspect - Fixed a bug where named volumes created with containers from pre-1.6.3 releases of Podman would be autoremoved with their containers if the --rm flag was given, even if they were given names - Fixed a bug where podman history was not computing image sizes correctly - Fixed a bug where Podman would not error on invalid values to the --sort flag to podman images - Fixed a bug where providing a name for the image made by podman commit was mandatory, not optional as it should be - Fixed a bug where the remote Podman client would append an extra ' to %PATH - Fixed a bug where the podman build command would sometimes ignore the -f option and build the wrong Containerfile - Fixed a bug where the podman ps --filter command would only filter running containers, instead of all containers, if --all was not passed - Fixed a bug where the podman load command on compressed images would leave an extra copy on disk - Fixed a bug where the podman restart command would not properly clean up the network, causing it to function differently from podman stop; podman start - Fixed a bug where setting the --memory-swap flag to podman create and podman run to -1 (to indicate unlimited) was not supported

- Initial work on version 2 of the Podman remote API has been merged, but is still in an alpha state and not ready for use. Read more here - Many formatting corrections have been made to the manpages - The changes to address (#5009) may cause anonymous volumes created by Podman versions 1.6.3 to 1.7.0 to not be removed when their container is removed - Updated vendored Buildah to v1.13.1 - Updated vendored containers/storage to v1.15.8 - Updated vendored containers/image to v5.2.0


Update podman to v1.7.0

- Added support for setting a static MAC address for containers - Added support for creating macvlan networks with podman network create, allowing Podman containers to be attached directly to networks the host is connected to - The podman image prune and podman container prune commands now support the --filter flag to filter what will be pruned, and now prompts for confirmation when run without --force (#4410 and #4411) - Podman now creates CGroup namespaces by default on systems using CGroups v2 (#4363) - Added the podman system reset command to remove all Podman files and perform a factory reset of the Podman installation - Added the --history flag to podman images to display previous names used by images (#4566) - Added the --ignore flag to podman rm and podman stop to not error when requested containers no longer exist - Added the --cidfile flag to podman rm and podman stop to read the IDs of containers to be removed or stopped from a file - The podman play kube command now honors Seccomp annotations (#3111) - The podman play kube command now honors RunAsUser, RunAsGroup, and selinuxOptions - The output format of the podman version command has been changed to better match docker version when using the --format flag - Rootless Podman will no longer initialize containers/storage twice, removing a potential deadlock preventing Podman commands from running while an image was being pulled (#4591) - Added tmpcopyup and notmpcopyup options to the --tmpfs and --mount type=tmpfs flags to podman create and podman run to control whether the content of directories are copied into tmpfs filesystems mounted over them - Added support for disabling detaching from containers by setting empty detach keys via --detach-keys='' - The podman build command now supports the --pull and --pull-never flags to control when images are pulled during a build - The podman ps -p command now shows the name of the pod as well as its ID (#4703) - The podman inspect command on containers will now display the command used to create the container - The podman info command now displays information on registry mirrors (#4553)

- Fixed a bug where Podman would use an incorrect runtime directory as root, causing state to be deleted after root logged out and making Podman in systemd services not function properly - Fixed a bug where the --change flag to podman import and podman commit was not being parsed properly in many cases - Fixed a bug where detach keys specified in libpod.conf were not used by the podman attach and podman exec commands, which always used the global default ctrl-p,ctrl-q key combination (#4556) - Fixed a bug where rootless Podman was not able to run podman pod stats even on CGroups v2 enabled systems (#4634) - Fixed a bug where rootless Podman would fail on kernels without the renameat2 syscall (#4570) - Fixed a bug where containers with chained network namespace dependencies (IE, container A using --net container=B and container B using --net container=C) would not properly mount /etc/hosts and /etc/resolv.conf into the container (#4626) - Fixed a bug where podman run with the --rm flag and without -d could, when run in the background, throw a 'container does not exist' error when attempting to remove the container after it exited - Fixed a bug where named volume locks were not properly reacquired after a reboot, potentially leading to deadlocks when trying to start containers using the volume (#4605 and #4621) - Fixed a bug where Podman could not completely remove containers if sent SIGKILL during removal, leaving the container name unusable without the podman rm --storage command to complete removal (#3906) - Fixed a bug where checkpointing containers started with --rm was allowed when --export was not specified (the container, and checkpoint, would be removed after checkpointing was complete by --rm) (#3774) - Fixed a bug where the podman pod prune command would fail if containers were present in the pods and the --force flag was not passed (#4346) - Fixed a bug where containers could not set a static IP or static MAC address if they joined a non-default CNI network (#4500) - Fixed a bug where podman system renumber would always throw an error if a container was mounted when it was run - Fixed a bug where podman container restore would fail with containers using a user namespace - Fixed a bug where rootless Podman would attempt to use the journald events backend even on systems without systemd installed - Fixed a bug where podman history would sometimes not properly identify the IDs of layers in an image (#3359) - Fixed a bug where containers could not be restarted when Conmon v2.0.3 or later was used - Fixed a bug where Podman did not check image OS and Architecture against the host when starting a container - Fixed a bug where containers in pods did not function properly with the Kata OCI runtime (#4353) - Fixed a bug where `podman info --format '{{ json . }}' would not produce JSON output (#4391) - Fixed a bug where Podman would not verify if files passed to --authfile existed (#4328) - Fixed a bug where podman images --digest would not always print digests when they were available - Fixed a bug where rootless podman run could hang due to a race with reading and writing events - Fixed a bug where rootless Podman would print warning-level logs despite not be instructed to do so (#4456) - Fixed a bug where podman pull would attempt to fetch from remote registries when pulling an unqualified image using the docker-daemon transport (#4434) - Fixed a bug where podman cp would not work if STDIN was a pipe - Fixed a bug where podman exec could stop accepting input if anything was typed between the command being run and the exec session starting (#4397) - Fixed a bug where podman logs --tail 0 would print all lines of a container's logs, instead of no lines (#4396) - Fixed a bug where the timeout for slirp4netns was incorrectly set, resulting in an extremely long timeout (#4344) - Fixed a bug where the podman stats command would print CPU utilizations figures incorrectly (#4409) - Fixed a bug where the podman inspect --size command would not print the size of the container's read/write layer if the size was 0 (#4744) - Fixed a bug where the podman kill command was not properly validating signals before use (#4746) - Fixed a bug where the --quiet and --format flags to podman ps could not be used at the same time - Fixed a bug where the podman stop command was not stopping exec sessions when a container was created without a PID namespace (--pid=host) - Fixed a bug where the podman pod rm --force command was not removing anonymous volumes for containers that were removed - Fixed a bug where the podman checkpoint command would not export all changes to the root filesystem of the container if performed more than once on the same container (#4606) - Fixed a bug where containers started with --rm would not be automatically removed on being stopped if an exec session was running inside the container (#4666)

- The fixes to runtime directory path as root can cause strange behavior if an upgrade is performed while containers are running - Updated vendored Buildah to v1.12.0 - Updated vendored containers/storage library to v1.15.4 - Updated vendored containers/image library to v5.1.0 - Kata Containers runtimes (kata-runtime, kata-qemu, and kata-fc) are now present in the default libpod.conf, but will not be available unless Kata containers is installed on the system - Podman previously did not allow the creation of containers with a memory limit lower than 4MB. This restriction has been removed, as the crun runtime can create containers with significantly less memory
Update podman to v1.6.4
Update podman to v1.6.2

- Added a --runtime flag to podman system migrate to allow the OCI runtime for all containers to be reset, to ease transition to the crun runtime on CGroups V2 systems until runc gains full support - The podman rm command can now remove containers in broken states which previously could not be removed - The podman info command, when run without root, now shows information on UID and GID mappings in the rootless user namespace - Added podman build --squash-all flag, which squashes all layers (including those of the base image) into one layer - The --systemd flag to podman run and podman create now accepts a string argument and allows a new value, always, which forces systemd support without checking if the the container entrypoint is systemd

- Fixed a bug where the podman top command did not work on systems using CGroups V2 (#4192) - Fixed a bug where rootless Podman could double-close a file, leading to a panic - Fixed a bug where rootless Podman could fail to retrieve some containers while refreshing the state - Fixed a bug where podman start --attach --sig-proxy=false would still proxy signals into the container - Fixed a bug where Podman would unconditionally use a non-default path for authentication credentials (auth.json), breaking podman login integration with skopeo and other tools using the containers/image library - Fixed a bug where podman ps --format=json and podman images --format=json would display null when no results were returned, instead of valid JSON - Fixed a bug where podman build --squash was incorrectly squashing all layers into one, instead of only new layers - Fixed a bug where rootless Podman would allow volumes with options to be mounted (mounting volumes requires root), creating an inconsistent state where volumes reported as mounted but were not (#4248) - Fixed a bug where volumes which failed to unmount could not be removed (#4247) - Fixed a bug where Podman incorrectly handled some errors relating to unmounted or missing containers in containers/storage - Fixed a bug where podman stats was broken on systems running CGroups V2 when run rootless (#4268) - Fixed a bug where the podman start command would print the short container ID, instead of the full ID - Fixed a bug where containers created with an OCI runtime that is no longer available (uninstalled or removed from the config file) would not appear in podman ps and could not be removed via podman rm - Fixed a bug where containers restored via podman container restore --import would retain the CGroup path of the original container, even if their container ID changed; thus, multiple containers created from the same checkpoint would all share the same CGroup

- The default PID limit for containers is now set to 4096. It can be adjusted back to the old default (unlimited) by passing --pids-limit 0 to podman create and podman run - The podman start --attach command now automatically attaches STDIN if the container was created with -i - The podman network create command now validates network names using the same regular expression as container and pod names - The --systemd flag to podman run and podman create will now only enable systemd mode when the binary being run inside the container is /sbin/init, /usr/sbin/init, or ends in systemd (previously detected any path ending in init or systemd) - Updated vendored Buildah to 1.11.3 - Updated vendored containers/storage to 1.13.5 - Updated vendored containers/image to 4.0.1
Update podman to v1.6.1

- The podman network create, podman network rm, podman network inspect, and podman network ls commands have been added to manage CNI networks used by Podman - The podman volume create command can now create and mount volumes with options, allowing volumes backed by NFS, tmpfs, and many other filesystems - Podman can now run containers without CGroups for better integration with systemd by using the --cgroups=disabled flag with podman create and podman run. This is presently only supported with the crun OCI runtime - The podman volume rm and podman volume inspect commands can now refer to volumes by an unambiguous partial name, in addition to full name (e.g. podman volume rm myvol to remove a volume named myvolume) (#3891) - The podman run and podman create commands now support the --pull flag to allow forced re-pulling of images (#3734) - Mounting volumes into a container using --volume, --mount, and --tmpfs now allows the suid, dev, and exec mount options (the inverse of nosuid, nodev, noexec) (#3819) - Mounting volumes into a container using --mount now allows the relabel=Z and relabel=z options to relabel mounts. - The podman push command now supports the --digestfile option to save a file containing the pushed digest - Pods can now have their hostname set via podman pod create --hostname or providing Pod YAML with a hostname set to podman play kube (#3732) - The podman image sign command now supports the --cert-dir flag - The podman run and podman create commands now support the --security-opt label=filetype:$LABEL flag to set the SELinux label for container files - The remote Podman client now supports healthchecks

- Fixed a bug where remote podman pull would panic if a Varlink connection was not available (#4013) - Fixed a bug where podman exec would not properly set terminal size when creating a new exec session (#3903) - Fixed a bug where podman exec would not clean up socket symlinks on the host (#3962) - Fixed a bug where Podman could not run systemd in containers that created a CGroup namespace - Fixed a bug where podman prune -a would attempt to prune images used by Buildah and CRI-O, causing errors (#3983) - Fixed a bug where improper permissions on the ~/.config directory could cause rootless Podman to use an incorrect directory for storing some files - Fixed a bug where the bash completions for podman import threw errors - Fixed a bug where Podman volumes created with podman volume create would not copy the contents of their mountpoint the first time they were mounted into a container (#3945) - Fixed a bug where rootless Podman could not run podman exec when the container was not run inside a CGroup owned by the user (#3937) - Fixed a bug where podman play kube would panic when given Pod YAML without a securityContext (#3956) - Fixed a bug where Podman would place files incorrectly when storage.conf configuration items were set to the empty string (#3952) - Fixed a bug where podman build did not correctly inherit Podman's CGroup configuration, causing crashed on CGroups V2 systems (#3938) - Fixed a bug where remote podman run --rm would exit before the container was completely removed, allowing race conditions when removing container resources (#3870) - Fixed a bug where rootless Podman would not properly handle changes to /etc/subuid and /etc/subgid after a container was launched - Fixed a bug where rootless Podman could not include some devices in a container using the --device flag (#3905) - Fixed a bug where the commit Varlink API would segfault if provided incorrect arguments (#3897) - Fixed a bug where temporary files were not properly cleaned up after a build using remote Podman (#3869) - Fixed a bug where podman remote cp crashed instead of reporting it was not yet supported (#3861) - Fixed a bug where podman exec would run as the wrong user when execing into a container was started from an image with Dockerfile USER (or a user specified via podman run --user) (#3838) - Fixed a bug where images pulled using the oci: transport would be improperly named - Fixed a bug where podman varlink would hang when managed by systemd due to SD_NOTIFY support conflicting with Varlink (#3572) - Fixed a bug where mounts to the same destination would sometimes not trigger a conflict, causing a race as to which was actually mounted - Fixed a bug where podman exec --preserve-fds caused Podman to hang (#4020) - Fixed a bug where removing an unmounted container that was unmounted might sometimes not properly clean up the container (#4033) - Fixed a bug where the Varlink server would freeze when run in a systemd unit file (#4005) - Fixed a bug where Podman would not properly set the $HOME environment variable when the OCI runtime did not set it - Fixed a bug where rootless Podman would incorrectly print warning messages when an OCI runtime was not found (#4012) - Fixed a bug where named volumes would conflict with, instead of overriding, tmpfs filesystems added by the --read-only-tmpfs flag to podman create and podman run - Fixed a bug where podman cp would incorrectly make the target directory when copying to a symlink which pointed to a nonexistent directory (#3894) - Fixed a bug where remote Podman would incorrectly read STDIN when the -i flag was not set (#4095) - Fixed a bug where podman play kube would create an empty pod when given an unsupported YAML type (#4093) - Fixed a bug where podman import --change improperly parsed CMD (#4000) - Fixed a bug where rootless Podman on systems using CGroups V2 would not function with the cgroupfs CGroups manager - Fixed a bug where rootless Podman could not correctly identify the DBus session address, causing containers to fail to start (#4162) - Fixed a bug where rootless Podman with slirp4netns networking would fail to start containers due to mount leaks

- Significant changes were made to Podman volumes in this release. If you have pre-existing volumes, it is strongly recommended to run podman system renumber after upgrading. - Version 0.8.1 or greater of the CNI Plugins is now required for Podman - Version 2.0.1 or greater of Conmon is strongly recommended - Updated vendored Buildah to v1.11.2 - Updated vendored containers/storage library to v1.13.4 - Improved error messages when trying to create a pod with no name via podman play kube - Improved error messages when trying to run podman pause or podman stats on a rootless container on a system without CGroups V2 enabled - TMPDIR has been set to /var/tmp by default to better handle large temporary files - podman wait has been optimized to detect stopped containers more rapidly - Podman containers now include a ContainerManager annotation indicating they were created by libpod - The podman info command now includes information about slirp4netns and fuse-overlayfs if they are available - Podman no longer sets a default size of 65kb for tmpfs filesystems - The default Podman CNI network has been renamed in an attempt to prevent conflicts with CRI-O when both are run on the same system. This should only take effect on system restart - The output of podman volume inspect has been more closely matched to docker volume inspect

Update podman to v1.5.1

- The hostname of pods is now set to the pod's name

- Fixed a bug where podman run and podman create did not honor the --authfile option (#3730) - Fixed a bug where containers restored with podman container restore --import would incorrectly duplicate the Conmon PID file of the original container - Fixed a bug where podman build ignored the default OCI runtime configured in libpod.conf - Fixed a bug where podman run --rm (or force-removing any running container with podman rm --force) were not retrieving the correct exit code (#3795) - Fixed a bug where Podman would exit with an error if any configured hooks directory was not present - Fixed a bug where podman inspect and podman commit would not use the correct CMD for containers run with podman play kube - Fixed a bug created pods when using rootless Podman and CGroups V2 (#3801) - Fixed a bug where the podman events command with the --since or --until options could take a very long time to complete
- Rootless Podman will now inherit OCI runtime configuration from the root configuration (#3781) - Podman now properly sets a user agent while contacting registries (#3788)

Update podman to v1.5.0

- Podman containers can now join the user namespaces of other containers with --userns=container:$ID, or a user namespace at an arbitary path with --userns=ns:$PATH - Rootless Podman can experimentally squash all UIDs and GIDs in an image to a single UID and GID (which does not require use of the newuidmap and newgidmap executables) by passing --storage-opt ignore_chown_errors - The podman generate kube command now produces YAML for any bind mounts the container has created (#2303) - The podman container restore command now features a new flag, --ignore-static-ip, that can be used with --import to import a single container with a static IP multiple times on the same host - Added the ability for podman events to output JSON by specifying --format=json - If the OCI runtime or conmon binary cannot be found at the paths specified in libpod.conf, Podman will now also search for them in the calling user's path - Added the ability to use podman import with URLs (#3609) - The podman ps command now supports filtering names using regular expressions (#3394) - Rootless Podman containers with --privileged set will now mount in all host devices that the user can access - The podman create and podman run commands now support the --env-host flag to forward all environment variables from the host into the container - Rootless Podman now supports healthchecks (#3523) - The format of the HostConfig portion of the output of podman inspect on containers has been improved and synced with Docker - Podman containers now support CGroup namespaces, and can create them by passing --cgroupns=private to podman run or podman create - The podman create and podman run commands now support the --ulimit=host flag, which uses any ulimits currently set on the host for the container - The podman rm and podman rmi commands now use different exit codes to indicate 'no such container' and 'container is running' errors - Support for CGroups V2 through the crun OCI runtime has been greatly improved, allowing resource limits to be set for rootless containers when the CGroups V2 hierarchy is in use

- Fixed a bug where a race condition could cause podman restart to fail to start containers with ports - Fixed a bug where containers restored from a checkpoint would not properly report the time they were started at - Fixed a bug where podman search would return at most 25 results, even when the maximum number of results was set higher - Fixed a bug where podman play kube would not honor capabilities set in imported YAML (#3689) - Fixed a bug where podman run --env, when passed a single key (to use the value from the host), would set the environment variable in the container even if it was not set on the host (#3648) - Fixed a bug where podman commit --changes would not properly set environment variables - Fixed a bug where Podman could segfault while working with images with no history - Fixed a bug where podman volume rm could remove arbitrary volumes if given an ambiguous name (#3635) - Fixed a bug where podman exec invocations leaked memory by not cleaning up files in tmpfs - Fixed a bug where the --dns and --net=container flags to podman run and podman create were not mutually exclusive (#3553) - Fixed a bug where rootless Podman would be unable to run containers when less than 5 UIDs were available - Fixed a bug where containers in pods could not be removed without removing the entire pod (#3556) - Fixed a bug where Podman would not properly clean up all CGroup controllers for created cgroups when using the cgroupfs CGroup driver - Fixed a bug where Podman containers did not properly clean up files in tmpfs, resulting in a memory leak as containers stopped - Fixed a bug where healthchecks from images would not use default settings for interval, retries, timeout, and start period when they were not provided by the image (#3525) - Fixed a bug where healthchecks using the HEALTHCHECK CMD format where not properly supported (#3507) - Fixed a bug where volume mounts using relative source paths would not be properly resolved (#3504) - Fixed a bug where podman run did not use authorization credentials when a custom path was specified (#3524) - Fixed a bug where containers checkpointed with podman container checkpoint did not properly set their finished time - Fixed a bug where running podman inspect on any container not created with podman run or podman create (for example, pod infra containers) would result in a segfault (#3500) - Fixed a bug where healthcheck flags for podman create and podman run were incorrectly named (#3455) - Fixed a bug where Podman commands would fail to find targets if a partial ID was specified that was ambiguous between a container and pod (#3487) - Fixed a bug where restored containers would not have the correct SELinux label - Fixed a bug where Varlink endpoints were not working properly if more was not correctly specified - Fixed a bug where the Varlink PullImage endpoint would crash if an error occurred (#3715) - Fixed a bug where the --mount flag to podman create and podman run did not allow boolean arguments for its ro and rw options (#2980) - Fixed a bug where pods did not properly share the UTS namespace, resulting in incorrect behavior from some utilities which rely on hostname (#3547) - Fixed a bug where Podman would unconditionally append ENTRYPOINT to CMD during podman commit (and when reporting CMD in podman inspect) (#3708) - Fixed a bug where podman events with the journald events backend would incorrectly print 6 previous events when only new events were requested (#3616) - Fixed a bug where podman port would exit prematurely when a port number was specified (#3747) - Fixed a bug where passing . as an argument to the --dns-search flag to podman create and podman run was not properly clearing DNS search domains in the container

- Updated vendored Buildah to v1.10.1 - Updated vendored containers/image to v3.0.2 - Updated vendored containers/storage to v1.13.1 - Podman now requires conmon v2.0.0 or higher - The podman info command now displays the events logger being in use - The podman inspect command on containers now includes the ID of the pod a container has joined and the PID of the container's conmon process - The -v short flag for podman --version has been re-added - Error messages from podman pull should be significantly clearer - The podman exec command is now available in the remote client - The podman-v1.5.0.tar.gz file attached is podman packaged for MacOS. It can be installed using Homebrew.
conmon was included in version 2.0.10. (bsc#1160460, bsc#1164390, jsc#ECO-1048, jsc#SLE-11485, jsc#SLE-11331):
fuse-overlayfs was updated to v0.7.6 (bsc#1160460)

cni was updated to 0.7.1:

Update to version 0.7.1 (bsc#1160460):

+ invoke : ensure custom envs of CNIArgs are prepended to process envs + add GetNetworkListCachedResult to CNI interface + delegate : allow delegation funcs override CNI_COMMAND env automatically in heritance

+ Update cnitool documentation for spec v0.4.0 + Add cni-route-override to CNI plugin list
Update to version 0.7.0:

+ Use more RFC2119 style language in specification (must, should...) + add notes about ADD/DEL ordering + Make the container ID required and unique. + remove the version parameter from ADD and DEL commands. + Network interface name matters + be explicit about optional and required structure members + add CHECK method + Add a well-known error for 'try again' + SPEC.md: clarify meaning of 'routes'

+ pkg/types: Makes IPAM concrete type + libcni: return error if Type is empty + skel: VERSION shouldn't block on stdin + non-pointer instances of types.Route now correctly marshal to JSON + libcni: add ValidateNetwork and ValidateNetworkList functions + pkg/skel: return error if JSON config has no network name + skel: add support for plugin version string + libcni: make exec handling an interface for better downstream testing + libcni: api now takes a Context to allow operations to be timed out or cancelled + types/version: add helper to parse PrevResult + skel: only print about message, not errors + skel,invoke,libcni: implementation of CHECK method + cnitool: Honor interface name supplied via CNI_IFNAME environment variable. + cnitool: validate correct number of args + Don't copy gw from IP4.Gateway to Route.GW When converting from 0.2.0 + add PrintTo method to Result interface + Return a better error when the plugin returns none
cni-plugins was updated to 0.8.4:
Update to version 0.8.4 (bsc#1160460):

Update to version 0.8.3:



* bugfix: defer after err check, or it may panic (#391). * portmap: Fix dual-stack support (#379). * firewall: don't return error in DEL if prevResult is not found (#390). * bump up libcni back to v0.7.1 (#377).

* contributing doc: revise test script name to run (#396). * contributing doc: describe cnitool installation (#397).
Update plugins to v0.8.2

* Support 'args' in static and tuning * Add Loopback DSR support, allow l2tunnel networks to be used with the l2bridge plugin * host-local: return error if same ADD request is seen twice * bandwidth: fix collisions * Support ips capability in static and mac capability in tuning * pkg/veth: Make host-side veth name configurable

Updated plugins to v0.8.1:

* bridge: fix ipMasq setup to use correct source address * fix compilation error on 386 * bandwidth: get bandwidth interface in host ns through container interface

Updated plugins to v0.8.0:

* bandwidth - limit incoming and outgoing bandwidth * firewall - add containers to firewall rules * sbr - convert container routes to source-based routes * static - assign a fixed IP address * win-bridge, win-overlay: Windows plugins

* CHECK Support * macvlan: - Allow to configure empty ipam for macvlan - Make master config optional * bridge: - Add vlan tag to the bridge cni plugin - Allow the user to assign VLAN tag - L2 bridge Implementation. * dhcp: - Include Subnet Mask option parameter in DHCPREQUEST - Add systemd unit file to activate socket with systemd - Add container ifName to the dhcp clientID, making the clientID value * flannel: - Pass through runtimeConfig to delegate * host-local: - host-local: add ifname to file tracking IP address used * host-device: - Support the IPAM in the host-device - Handle empty netns in DEL for loopback and host-device * tuning: - adds 'ip link' command related feature into tuning
from version v0.7.5:


Advisory IDSUSE-SU-2020:705-1
ReleasedTue Mar 17 15:04:10 2020
SummarySecurity update for apache2-mod_auth_openidc
Typesecurity
Severitymoderate
References1164459,CVE-2019-20479
Description:

This update for apache2-mod_auth_openidc fixes the following issues:


Advisory IDSUSE-SU-2020:712-1
ReleasedWed Mar 18 10:26:53 2020
SummarySecurity update for skopeo
Typesecurity
Severitymoderate
References1159530,1165715,CVE-2019-10214
Description:

This update for skopeo fixes the following issues:
Update to skopeo v0.1.41 (bsc#1165715):


Changes in v0.1.40:


Update to skopeo v0.1.39 (bsc#1159530):


Advisory IDSUSE-SU-2020:737-1
ReleasedFri Mar 20 13:47:16 2020
SummaryRecommended update for ruby2.5
Typesecurity
Severityimportant
References1140844,1152990,1152992,1152994,1152995,1162396,1164804,CVE-2012-6708,CVE-2015-9251,CVE-2019-15845,CVE-2019-16201,CVE-2019-16254,CVE-2019-16255,CVE-2020-8130
Description:

This update for ruby2.5 toversion 2.5.7 fixes the following issues: ruby 2.5 was updated to version 2.5.7


Advisory IDSUSE-SU-2020:751-1
ReleasedMon Mar 23 16:32:44 2020
SummarySecurity update for cloud-init
Typesecurity
Severitymoderate
References1162936,1162937,1163178,CVE-2020-8631,CVE-2020-8632
Description:

This update for cloud-init fixes the following security issues:


Advisory IDSUSE-RU-2020:753-1
ReleasedMon Mar 23 18:31:11 2020
SummaryRecommended update for metis
Typerecommended
Severitymoderate
References
Description:

This update for metis fixes the following issues:



Advisory IDSUSE-RU-2020:755-1
ReleasedTue Mar 24 09:20:53 2020
SummaryRecommended update for taglib
Typerecommended
Severitymoderate
References1166467
Description:

This update for taglib fixes the following issue:


Advisory IDSUSE-RU-2020:758-1
ReleasedTue Mar 24 11:36:02 2020
SummaryRecommended update for saptune
Typerecommended
Severitymoderate
References1160564,1161791
Description:

This update for saptune fixes the following issues:


Advisory IDSUSE-RU-2020:774-1
ReleasedTue Mar 24 17:37:55 2020
SummaryRecommended update for libcgroup
Typerecommended
Severitymoderate
References1166968
Description:


This update for libcgroup fixes the following issue:
libcgroup is provided to SUSE Linux Enterprise 15 SP1 in the Legacy Module. (jsc#SLE-10792 jsc#ECO-1225 bsc#1166968)
Usage of cgroups via libcgroup conflicts with cgroups used by systemd, so please make sure their usages do not conflict.


Advisory IDSUSE-RU-2020:787-1
ReleasedWed Mar 25 10:16:38 2020
SummaryRecommended update for lifecycle-data-sle-module-live-patching
Typerecommended
Severitymoderate
References1020320
Description:

This update for lifecycle-data-sle-module-live-patching fixes the following issue:


Advisory IDSUSE-SU-2020:801-1
ReleasedThu Mar 26 17:29:16 2020
SummarySecurity update for ldns
Typesecurity
Severitymoderate
References1068709,1068711,CVE-2017-1000231,CVE-2017-1000232
Description:

This update for ldns fixes the following issues:


Advisory IDSUSE-SU-2020:811-1
ReleasedMon Mar 30 10:33:19 2020
SummarySecurity update for spamassassin
Typesecurity
Severityimportant
References1118987,1162197,1162200,862963,CVE-2018-11805,CVE-2020-1930,CVE-2020-1931
Description:

This update for spamassassin fixes the following issues:
Security issues fixed:

Non-security issue fixed:


Advisory IDSUSE-RU-2020:814-1
ReleasedMon Mar 30 16:23:40 2020
SummaryRecommended update for QR-Code-generator, boost, libreoffice, myspell-dictionaries, xmlsec1
Typerecommended
Severitymoderate
References1161816,1162152,1167223
Description:

This update for QR-Code-generator, boost, libreoffice, myspell-dictionaries, xmlsec1 fixes the following issues:
libreoffice was updated to 6.4.2.2 (jsc#SLE-11174 jsc#SLE-11175 jsc#SLE-11176 bsc#1167223):
Full Release Notes can be found on:
https://wiki.documentfoundation.org/ReleaseNotes/6.4


xmlsec1 was updated to 1.2.28:



Version update to 1.2.27:

myspell-dictionaries was updated to 20191219:


boost was updated to fix:
The QR-Code-generator is shipped:


Advisory IDSUSE-SU-2020:819-1
ReleasedTue Mar 31 13:01:34 2020
SummarySecurity update for icu
Typesecurity
Severityimportant
References1166844,CVE-2020-10531
Description:

This update for icu fixes the following issues:


Advisory IDSUSE-RU-2020:824-1
ReleasedTue Mar 31 13:28:28 2020
SummaryRecommended update for python-paramiko
Typerecommended
Severitymoderate
References1166758
Description:

This update for python-paramiko fixes the following issues:


Advisory IDSUSE-RU-2020:825-1
ReleasedTue Mar 31 13:30:37 2020
SummaryRecommended update for openslp
Typerecommended
Severitymoderate
References1165050,1165121
Description:

This update for openslp fixes the following issues:


Advisory IDSUSE-RU-2020:827-1
ReleasedTue Mar 31 13:33:09 2020
SummaryRecommended update for susemanager-cloud-setup
Typerecommended
Severitymoderate
References1158691
Description:

This update for susemanager-cloud-setup fixes the following issues:


Advisory IDSUSE-RU-2020:829-1
ReleasedTue Mar 31 13:46:43 2020
SummaryRecommended update for geolite2legacy
Typerecommended
Severitymoderate
References1156194
Description:

This update for geolite2legacy fixes the following issues:


Advisory IDSUSE-RU-2020:840-1
ReleasedWed Apr 1 11:25:34 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1143454,1163978,1164310,1165578,1167746
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2020:848-1
ReleasedThu Apr 2 11:24:38 2020
SummaryRecommended update for GeoIP
Typerecommended
Severitymoderate
References1156194
Description:

This update for GeoIP fixes the following issues:


Advisory IDSUSE-RU-2020:917-1
ReleasedFri Apr 3 15:02:25 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1166510
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2020:925-1
ReleasedMon Apr 6 10:08:27 2020
SummaryRecommended update for python3-azuremetadata, regionServiceClientConfigAzure, regionServiceClientConfigSAPAzure
Typerecommended
Severitymoderate
References1158698,1158707,1164818,1164819
Description:

This update for python3-azuremetadata, regionServiceClientConfigAzure, regionServiceClientConfigSAPAzure fixes the following issues:
regionServiceClientConfigAzure was updated to version 0.0.5:


regionServiceClientConfigSAPAzure was updated to version 1.0.2:

Changes in python3-azuremetadata:


Advisory IDSUSE-RU-2020:934-1
ReleasedTue Apr 7 03:46:20 2020
SummaryRecommended update for wget
Typerecommended
Severitymoderate
References1167919
Description:

This update for wget fixes the following issues:
wget was updated to 1.20.3, fixing various bugs, including:


Advisory IDSUSE-RU-2020:943-1
ReleasedTue Apr 7 15:24:19 2020
SummaryRecommended update for nvmetcli
Typerecommended
Severitymoderate
References1167644
Description:

This update for nvmetcli fixes the following issues:


Advisory IDSUSE-SU-2020:944-1
ReleasedTue Apr 7 15:49:33 2020
SummarySecurity update for runc
Typesecurity
Severitymoderate
References1149954,1160452,CVE-2019-19921
Description:

This update for runc fixes the following issues:
runc was updated to v1.0.0~rc10


Advisory IDSUSE-SU-2020:948-1
ReleasedWed Apr 8 07:44:21 2020
SummarySecurity update for gmp, gnutls, libnettle
Typesecurity
Severitymoderate
References1152692,1155327,1166881,1168345,CVE-2020-11501
Description:

This update for gmp, gnutls, libnettle fixes the following issues:
Security issue fixed:


FIPS related bugfixes:


Advisory IDSUSE-SU-2020:957-1
ReleasedWed Apr 8 12:28:03 2020
SummarySecurity update for mgetty
Typesecurity
Severitymoderate
References1142770,1168170,CVE-2019-1010190
Description:

This update for mgetty fixes the following issues:


Advisory IDSUSE-RU-2020:958-1
ReleasedWed Apr 8 12:38:15 2020
SummaryRecommended update for python3-ec2metadata
Typerecommended
Severitymoderate
References1157901,1157902
Description:

This update for python3-ec2metadata contains the following fixes:


Advisory IDSUSE-SU-2020:693-1
ReleasedWed Apr 8 14:11:14 2020
SummarySecurity update for wireshark
Typesecurity
Severitymoderate
References1093733,1094301,1101776,1101777,1101786,1101788,1101791,1101794,1101800,1101802,1101804,1101810,1106514,1111647,1117740,1121231,1121232,1121233,1121234,1121235,1127367,1127369,1127370,1131941,1131945,1136021,1141980,1150690,1156288,1158505,1161052,1165241,1165710,957624,CVE-2018-11354,CVE-2018-11355,CVE-2018-11356,CVE-2018-11357,CVE-2018-11358,CVE-2018-11359,CVE-2018-11360,CVE-2018-11361,CVE-2018-11362,CVE-2018-12086,CVE-2018-14339,CVE-2018-14340,CVE-2018-14341,CVE-2018-14342,CVE-2018-14343,CVE-2018-14344,CVE-2018-14367,CVE-2018-14368,CVE-2018-14369,CVE-2018-14370,CVE-2018-16056,CVE-2018-16057,CVE-2018-16058,CVE-2018-18225,CVE-2018-18226,CVE-2018-18227,CVE-2018-19622,CVE-2018-19623,CVE-2018-19624,CVE-2018-19625,CVE-2018-19626,CVE-2018-19627,CVE-2018-19628,CVE-2019-10894,CVE-2019-10895,CVE-2019-10896,CVE-2019-10897,CVE-2019-10898,CVE-2019-10899,CVE-2019-10900,CVE-2019-10901,CVE-2019-10902,CVE-2019-10903,CVE-2019-13619,CVE-2019-16319,CVE-2019-19553,CVE-2019-5716,CVE-2019-5717,CVE-2019-5718,CVE-2019-5719,CVE-2019-5721,CVE-2019-9208,CVE-2019-9209,CVE-2019-9214,CVE-2020-7044,CVE-2020-9428,CVE-2020-9429,CVE-2020-9430,CVE-2020-9431
Description:

This update for wireshark and libmaxminddb fixes the following issues:
Update wireshark to new major version 3.2.2 and introduce libmaxminddb for GeoIP support (bsc#1156288).
New features include:


Advisory IDSUSE-RU-2020:966-1
ReleasedThu Apr 9 09:44:18 2020
SummaryRecommended update for libcgroup
Typerecommended
Severitymoderate
References1166968
Description:

This update for libcgroup fixes the following issues:


Advisory IDSUSE-RU-2020:987-1
ReleasedTue Apr 14 13:21:07 2020
SummaryRecommended update for python-azure-mgmt-compute
Typerecommended
Severitymoderate
References1140565
Description:

This update for python-azure-mgmt-compute fixes the following issues:

New upstream release 4.6.2 (bsc#1140565, jsc#ECO-1257, jsc#PM-1598):


Advisory IDSUSE-RU-2020:994-1
ReleasedWed Apr 15 07:57:24 2020
SummaryRecommended update for clamav
Typerecommended
Severitymoderate
References1119353
Description:

This update for clamav fixes the following issues:


Advisory IDSUSE-SU-2020:995-1
ReleasedWed Apr 15 08:30:39 2020
SummarySecurity update for ruby2.5
Typesecurity
Severitymoderate
References1167244,1168938,CVE-2020-10663,CVE-2020-10933
Description:

This update for ruby2.5 to version 2.5.8 fixes the following issues:


Advisory IDSUSE-RU-2020:919-1
ReleasedWed Apr 15 10:43:21 2020
SummaryRecommended update for python-pyroute2
Typerecommended
Severitymoderate
References1160933,1161898
Description:


This update provides python-pyroute2 for use by the gcp-vpc-move-route agent in resource-agents.


Advisory IDSUSE-RU-2020:998-1
ReleasedWed Apr 15 13:00:05 2020
SummaryRecommended update for python-pycups
Typerecommended
Severitymoderate
References735865
Description:

This update for python-pycups fixes the following issues:


Advisory IDSUSE-RU-2020:1000-1
ReleasedWed Apr 15 14:18:56 2020
SummaryRecommended update for azure-cli tools, python-adal, python-applicationinsights, python-azure modules, python-msrest, python-msrestazure, python-pydocumentdb, python-uamqp, python-vsts-cd-manager
Typerecommended
Severitymoderate
References1014478,1054413,1140565,982804,999200
Description:

This update for azure-cli tools, python-adal, python-applicationinsights, python-azure modules, python-msrest, python-msrestazure, python-pydocumentdb, python-uamqp, python-vsts-cd-manager fixes the following issues:
The Azure python modules and client tool stack was updated to the 2020 state.
Various other python modules were added and updated.


Advisory IDSUSE-RU-2020:1005-1
ReleasedThu Apr 16 06:22:32 2020
SummaryRecommended update for ypbind
Typerecommended
Severitymoderate
References1163252
Description:

This update for ypbind fixes the following issues:


Advisory IDSUSE-RU-2020:1016-1
ReleasedThu Apr 16 16:15:45 2020
SummaryRecommended update for python-cachetools, python-google-api-python-client, python-google-auth, python-google-auth-httplib2
Typerecommended
Severitymoderate
References1088358,1160933
Description:

This update for python-cachetools, python-google-api-python-client, python-google-auth, python-google-auth-httplib2 fixes the following issues:
python-cachetools was updated to version 2.0.1:


update to 2.0.0:

update to 1.1.6:

python-google-api-python-client was updated to:

Changes in python-google-auth was updated to 1.5.1:

Update to 1.4.2:

New upstream release 1.4.1 (bsc#1088358)


python-google-auth-httplib2 initially shipped:
python-pytest-localserver was updated to 0.4.1:
Update to version 0.3.6:


Advisory IDSUSE-RU-2020:1033-1
ReleasedMon Apr 20 09:12:45 2020
SummaryRecommended update for perl-CGI
Typerecommended
Severitymoderate
References1162868
Description:

This update for perl-CGI fixes the following issues:
Update from version 4.38 to 4.46 (bsc#1162868)


Advisory IDSUSE-RU-2020:1034-1
ReleasedMon Apr 20 09:15:18 2020
SummaryRecommended update for psqlODBC
Typerecommended
Severitymoderate
References1166821
Description:

This update for psqlODBC fixes the following issue:


Advisory IDSUSE-RU-2020:1037-1
ReleasedMon Apr 20 10:49:39 2020
SummaryRecommended update for python-pytest
Typerecommended
Severitylow
References1002895,1107105,1138666,1167732
Description:


This update fixes the following issues:
New python-pytest versions are provided.
In Basesystem:


In Python2:


Advisory IDSUSE-RU-2020:1038-1
ReleasedMon Apr 20 10:50:20 2020
SummaryRecommended update for seccheck
Typerecommended
Severitymoderate
References1132919,985802
Description:

This update for seccheck fixes the following issues:


Advisory IDSUSE-RU-2020:1039-1
ReleasedMon Apr 20 11:33:39 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severityimportant
References1165960,1168480
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2020:1048-1
ReleasedTue Apr 21 10:33:46 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1165823
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2020:1055-1
ReleasedTue Apr 21 15:53:44 2020
SummaryRecommended update for patterns-server-enterprise
Typerecommended
Severitymoderate
References1168416,1169042
Description:

This update for patterns-server-enterprise fixes the following issues:


Advisory IDSUSE-RU-2020:1056-1
ReleasedTue Apr 21 16:26:22 2020
SummaryRecommended update for cloud-init
Typerecommended
Severityimportant
References1099358,1144881,1145622,1148645,1163178,1165296
Description:

This update for cloud-init contains the following fixes:




Advisory IDSUSE-RU-2020:1060-1
ReleasedWed Apr 22 09:55:41 2020
SummaryRecommended update for sapconf
Typerecommended
Severitymoderate
References1124453,1139176,1148163,1150868,1150870
Description:

This update for sapconf fixes the following issues:


Advisory IDSUSE-SU-2020:1083-1
ReleasedThu Apr 23 11:31:23 2020
SummarySecurity update for cups
Typesecurity
Severityimportant
References1168422,CVE-2020-3898
Description:

This update for cups fixes the following issues:


Advisory IDSUSE-RU-2020:1094-1
ReleasedThu Apr 23 16:34:21 2020
SummaryRecommended update for python-google-api-python-client
Typerecommended
Severitymoderate
References1088358,1160933
Description:

This update for python-google-api-python-client fixes the following issues:


python-cachetools 2.0.1 is shipped to the Public Cloud Module. python-google-auth 1.5.1 is shipped to the Public Cloud Module.

python-google-api-python-client was updated to:


Update to 1.4.2:

New upstream release 1.4.1 (bsc#1088358)


Advisory IDSUSE-RU-2020:1096-1
ReleasedThu Apr 23 16:35:05 2020
SummaryRecommended update for google-compute-engine
Typerecommended
Severitymoderate
References1167810
Description:

This update for google-compute-engine fixes the following issues:


Advisory IDSUSE-RU-2020:1097-1
ReleasedThu Apr 23 21:12:03 2020
SummaryRecommended update for python3-azuremetadata
Typerecommended
Severitymoderate
References1169921
Description:

This update for python3-azuremetadata fixes the following issues:


Advisory IDSUSE-RU-2020:1112-1
ReleasedFri Apr 24 16:44:20 2020
SummaryRecommended update for suse-build-key
Typerecommended
Severitymoderate
References1170347
Description:

This update for suse-build-key fixes the following issues:


Advisory IDSUSE-RU-2020:1160-1
ReleasedThu Apr 30 17:40:19 2020
SummaryRecommended update for cloud-regionsrv-client
Typerecommended
Severitymoderate
References1169599
Description:

This update for cloud-regionsrv-client contains the following fix:


Advisory IDSUSE-RU-2020:1170-1
ReleasedMon May 4 15:17:47 2020
SummaryRecommended update for aws-cli, python-boto, python-boto3, python-botocore, python-s3transfer
Typerecommended
Severitymoderate
References1116204,1117074,1122668,1129696,1166924,1168943
Description:

This update for aws-cli, python-boto, python-boto3, python-botocore, python-s3transfer fixes the following issues:
aws-cli was updated to version 1.18.38 (bsc#1166924, bsc#1168943):


Update to version 1.18.35

Update to version 1.18.27

Update to version 1.18.0



Update to version 1.17.9

Update to version 1.16.297

Update to version 1.16.281

Update to version 1.16.258


python-boto3 was updated to 1.12.38 (bsc#1166924, bsc#1168943)
* api-change:``apigateway``: [``botocore``] Update apigateway client to latest version * api-change:``codeguru-reviewer``: [``botocore``] Update codeguru-reviewer client to latest version * api-change:``mediaconnect``: [``botocore``] Update mediaconnect client to latest version

* api-change:``transcribe``: [``botocore``] Update transcribe client to latest version * api-change:``chime``: [``botocore``] Update chime client to latest version * api-change:``iam``: [``botocore``] Update iam client to latest version * api-change:``elasticbeanstalk``: [``botocore``] Update elasticbeanstalk client to latest version






python-botocore was updated to 1.15.38 (bsc#1166924, bsc#1168943)
* api-change:``apigateway``: Update apigateway client to latest version * api-change:``codeguru-reviewer``: Update codeguru-reviewer client to latest version * api-change:``mediaconnect``: Update mediaconnect client to latest version








python-s3transfer was updated to 0.3.3:

Update to version 0.3.2

from version 0.3.1

from version 0.3.0

python-boto was updated to fix:


Advisory IDSUSE-RU-2020:1172-1
ReleasedMon May 4 18:15:17 2020
SummaryRecommended update for osc
Typerecommended
Severitymoderate
References1160446,1166537,1168862
Description:

This update for osc fixes the following issues:
Update from version 0.167.2 to 0.168.2 (bsc#1168862)


Advisory IDSUSE-SU-2020:1177-1
ReleasedTue May 5 09:50:10 2020
SummarySecurity update for rpmlint
Typesecurity
Severitymoderate
References1129452,1169365
Description:

This update for rpmlint fixes the following issues:


Advisory IDSUSE-SU-2020:1178-1
ReleasedTue May 5 10:27:30 2020
SummarySecurity update for rubygem-actionview-5_1
Typesecurity
Severitymoderate
References1167240,CVE-2020-5267
Description:

This update for rubygem-actionview-5_1 fixes the following issues:


Advisory IDSUSE-RU-2020:1181-1
ReleasedTue May 5 12:02:39 2020
SummaryRecommended update for pciutils-ids
Typerecommended
Severitymoderate
References1170160
Description:

This update for pciutils-ids fixes the following issues:


Advisory IDSUSE-RU-2020:1183-1
ReleasedTue May 5 12:09:56 2020
SummaryRecommended update for geoipupdate
Typerecommended
Severitymoderate
References1169766
Description:

This update for geoipupdate fixes the following issue:


Advisory IDSUSE-RU-2020:1187-1
ReleasedTue May 5 12:51:09 2020
SummaryRecommended update for python-paramiko
Typerecommended
Severitymoderate
References1169489
Description:

This update for python-paramiko fixes the following issues:


Advisory IDSUSE-RU-2020:1159-1
ReleasedTue May 5 16:24:36 2020
SummaryRecommended update for python3-azuremetadata
Typerecommended
Severitymoderate
References1170598,1170599,1170605,1170606
Description:

This update for python3-azuremetadata fixes the following issues:
python3-azuremetadata was updated to version 5.1.0:



regionServiceClientConfigSAPAzure was updated to 1.0.3 and regionServiceClientConfigAzure was updated to 0.0.6:


Advisory IDSUSE-SU-2020:1199-1
ReleasedWed May 6 13:53:40 2020
SummarySecurity update for php7
Typesecurity
Severitymoderate
References1168326,1168352,CVE-2020-7064,CVE-2020-7066
Description:

This update for php7 fixes the following issues:


Advisory IDSUSE-RU-2020:1202-1
ReleasedWed May 6 15:51:16 2020
SummaryRecommended update for supportutils-plugin-ha-sap
Typerecommended
Severitymoderate
References1170085
Description:

This update for supportutils-plugin-ha-sap fixes the following issues:


Advisory IDSUSE-SU-2020:1220-1
ReleasedThu May 7 17:11:57 2020
SummarySecurity update for ghostscript
Typesecurity
Severityimportant
References1170603,CVE-2020-12268
Description:

This update for ghostscript to version 9.52 fixes the following issues:


Advisory IDSUSE-RU-2020:1222-1
ReleasedFri May 8 08:23:57 2020
SummaryRecommended update for python-azure-agent
Typerecommended
Severitymoderate
References1167601,1167602
Description:

This update for python-azure-agent fixes the following issues:


Advisory IDSUSE-RU-2020:1226-1
ReleasedFri May 8 10:51:05 2020
SummaryRecommended update for gcc9
Typerecommended
Severitymoderate
References1149995,1152590,1167898
Description:

This update for gcc9 fixes the following issues:
This update ships the GCC 9.3 release.


Advisory IDSUSE-RU-2020:1230-1
ReleasedMon May 11 07:29:21 2020
SummaryRecommended update for md_monitor
Typerecommended
Severitymoderate
References1081286,1091619,1095141,1096363,1104770,1116560,1123046,1125281,1136542,1139268,1149316,1157098,1157754
Description:

This update for md_monitor fixes the following issues:


Advisory IDSUSE-OU-2020:1260-1
ReleasedTue May 12 18:00:45 2020
SummaryOptional update for terraform-provider-susepubliccloud
Typeoptional
Severitylow
References1166049
Description:

This update for terraform-provider-susepubliccloud doesn't fix any issues and just adjusts some packaging meta information.


Advisory IDSUSE-RU-2020:1261-1
ReleasedTue May 12 18:40:18 2020
SummaryRecommended update for hwdata
Typerecommended
Severitymoderate
References1168806
Description:

This update for hwdata fixes the following issues:
Update from version 0.320 to version 0.324 (bsc#1168806)


Advisory IDSUSE-RU-2020:1263-1
ReleasedWed May 13 08:24:14 2020
SummaryRecommended update for hawk2
Typerecommended
Severitymoderate
References1054027,1068942,1069217,1069296,1071481,1074856,1076421,1080439,1085318,1085343,1085515,1089709,1089802,1090562,1090657,1090667,1092108,1092122,1093420,1098637,1137891,1158681,1162221,1165587
Description:

This update for hawk2 fixes the following issues:
WIP * Implement mechanism to switch binaries in case (bsc#1165587) * Work around the removal of Dir::Tmpname#make_tmpname (bsc#1162221) * Fix cib.xml parsing for acl_version (bsc#1158681) * Fix mime type issue in MS windows (bsc#1098637) * Fix nameless cluster display (bsc#1137891) * High: Set secure flag to enforce https (bsc#1090657) * Medium: Improve hawk-server side cookie handling (bsc#1090667) * Medium: Set Symmetrical to False when score is Serialize (bsc#1085515) * Medium: Make resource stop/start icon dependent on target-role (bsc#1076421) * Api: Add advance resource type(group|clone|master|bundle) in resource route(fate#323437) * Api: return nil if elem is nil(fate#323437) in some case, param in determine_online_status_fencing is nil, this will cause NoMethodError * Medium: Fix acl_version check (bsc#1089802) * High: Fetch correct meta data (bsc#1092122) * Medium: Fix history explorer views (bsc#1093420) * High: Update links to release notes and documentation (bsc#1089709) * High: Return after redirect in reports (bsc#1090562) * Medium: Comply routes' id with resources' ID (bsc#1092108) * Api: Add registration route (fate#323437) * High: Calculate guest node state correctly (bsc#1074856) * Use Promotable etc. (bsc#1085318) (bsc#1085343) * High: Fix remote nodes iteration (bsc#1080439) * High: Support guest nodes (bsc#1074856) * Ensure certificate/key is group readable (bsc#1071481) * Test: Add test suit for (bsc#1069296) * Dev: Fix acl_enabled? (bsc#1069296) * Dev: Dev: Handle redirection correctly after renaming resources (bsc#1068942) * Dev: Handle redirection correctly after renaming constraints (bsc#1068942) * Dev: Dev: split rename action for constraints to edit/update (bsc#1068942) * Dev: Refactor resouces.js (bsc#1068942) * Dev: Change the rename path for resources (#bsc#1068942) * Dev: split rename action to edit/update (bsc#1068942) * Fix node/resource event injection in simulator (bsc#1069217) * Show descriptions in cluster config (bsc#1054027)


Advisory IDSUSE-RU-2020:1266-1
ReleasedWed May 13 10:20:54 2020
SummaryRecommended update for jq
Typerecommended
Severitymoderate
References1170838
Description:

This update for jq fixes the following issues:
jq was updated to version 1.6:

'.' for the program, regardless of stdin/stdout
  • fix: Make sorting stable regardless of qsort.


  • Advisory IDSUSE-RU-2020:1252-1
    ReleasedWed May 13 13:51:29 2020
    SummaryRecommended update for regionServiceClientConfigEC2
    Typerecommended
    Severitymoderate
    References1171232,1171233
    Description:

    This update for regionServiceClientConfigEC2 fixes the following issues:


    Advisory IDSUSE-RU-2020:1280-1
    ReleasedThu May 14 14:27:51 2020
    SummaryRecommended update for postgresql, postgresql10, postgresql12
    Typerecommended
    Severitymoderate
    References1138034,1151591,1153168,1163985,1167541,CVE-2019-10164,CVE-2020-1720
    Description:

    This update for postgresql, postgresql10, postgresql12 fixes the following issues:
    Changes in the postgresql wrapper package:


    Changes in postgresql10:

    Changes in postgresql12:
    Initial package for the postgresql 12 branch
    https://www.postgresql.org/about/news/1976/




    https://www.postgresql.org/docs/12/release-12-1.html https://www.postgresql.org/about/news/1994/

    python-psycopg2 was updated to 2.8.4 to allow working with postgresql12.


    Advisory IDSUSE-RU-2020:1286-1
    ReleasedFri May 15 11:05:14 2020
    SummaryRecommended update for cdrtools
    Typerecommended
    Severitymoderate
    References1169420
    Description:

    This update for cdrtools fixes the following issues:


    Advisory IDSUSE-RU-2020:1288-1
    ReleasedFri May 15 11:27:01 2020
    SummaryRecommended update for regionServiceClientConfigAzure
    Typerecommended
    Severitycritical
    References1171465
    Description:

    This update for regionServiceClientConfigAzure fixes the following issues:


    Advisory IDSUSE-RU-2020:1291-1
    ReleasedFri May 15 16:40:53 2020
    SummaryRecommended update for shared-python-startup
    Typerecommended
    Severitymoderate
    References1170411
    Description:

    This update for shared-python-startup fixes the following issues:
    This package contains common python startup files. (bsc#1170411)


    Advisory IDSUSE-SU-2020:1293-1
    ReleasedMon May 18 07:38:06 2020
    SummarySecurity update for openexr
    Typesecurity
    Severitymoderate
    References1146648,1169549,1169573,1169574,1169575,1169576,1169578,1169580,CVE-2020-11758,CVE-2020-11760,CVE-2020-11761,CVE-2020-11762,CVE-2020-11763,CVE-2020-11764,CVE-2020-11765
    Description:

    This update for openexr provides the following fix:
    Security issues fixed:


    Non-security issue fixed:


    Advisory IDSUSE-SU-2020:1294-1
    ReleasedMon May 18 07:38:36 2020
    SummarySecurity update for file
    Typesecurity
    Severitymoderate
    References1154661,1169512,CVE-2019-18218
    Description:

    This update for file fixes the following issues:
    Security issues fixed:


    Non-security issue fixed:


    Advisory IDSUSE-SU-2020:1297-1
    ReleasedMon May 18 07:42:18 2020
    SummarySecurity update for libvpx
    Typesecurity
    Severitymoderate
    References1166066,CVE-2020-0034
    Description:

    This update for libvpx fixes the following issues:


    Advisory IDSUSE-SU-2020:1298-1
    ReleasedMon May 18 07:42:49 2020
    SummarySecurity update for libbsd
    Typesecurity
    Severitymoderate
    References1160551,CVE-2019-20367
    Description:

    This update for libbsd fixes the following issues:


    Advisory IDSUSE-RU-2020:1303-1
    ReleasedMon May 18 09:40:36 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1169582
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2020:1308-1
    ReleasedMon May 18 10:05:46 2020
    SummaryRecommended update for psmisc
    Typerecommended
    Severitymoderate
    References1170247
    Description:

    This update for psmisc fixes the following issues:


    Advisory IDSUSE-RU-2020:1309-1
    ReleasedMon May 18 10:08:16 2020
    SummaryRecommended update for gnome-themes-standard
    Typerecommended
    Severitymoderate
    References1170757
    Description:

    This update for gnome-themes-standard fixes the following issue:


    Advisory IDSUSE-RU-2020:1310-1
    ReleasedMon May 18 10:09:22 2020
    SummaryRecommended update for icewm, icewm-theme-branding
    Typerecommended
    Severitymoderate
    References1170420
    Description:

    This update for icewm, icewm-theme-branding fixes the following issues:
    Changes in icewm:


    Changes in icewm-theme-branding:


    Advisory IDSUSE-RU-2020:1315-1
    ReleasedMon May 18 10:38:42 2020
    SummaryRecommended update for eiciel
    Typerecommended
    Severitymoderate
    References1170756
    Description:

    This update for eiciel fixes the following issue:


    Advisory IDSUSE-RU-2020:1319-1
    ReleasedMon May 18 11:43:44 2020
    SummaryRecommended update for tcsh
    Typerecommended
    Severitymoderate
    References1170527
    Description:

    This update for tcsh fixes the following issues:


    Advisory IDSUSE-RU-2020:1321-1
    ReleasedMon May 18 11:45:10 2020
    SummaryRecommended update for regionServiceClientConfigGCE
    Typerecommended
    Severityimportant
    References1171467,1171469
    Description:

    This update for regionServiceClientConfigGCE fixes the following issues:


    Advisory IDSUSE-RU-2020:1323-1
    ReleasedMon May 18 11:49:02 2020
    SummaryRecommended update for python3-gcemetadata
    Typerecommended
    Severityimportant
    References1134510
    Description:

    This update for python3-gcemetadata fixes the following issues:


    Advisory IDSUSE-RU-2020:1327-1
    ReleasedMon May 18 17:15:48 2020
    SummaryRecommended update for ntfs-3g_ntfsprogs
    Typerecommended
    Severitymoderate
    References1170609
    Description:


    This update for ntfs-3g_ntfsprogs fixes the following issue:


    Advisory IDSUSE-RU-2020:1328-1
    ReleasedMon May 18 17:16:04 2020
    SummaryRecommended update for grep
    Typerecommended
    Severitymoderate
    References1155271
    Description:

    This update for grep fixes the following issues:


    Advisory IDSUSE-SU-2020:1337-1
    ReleasedTue May 19 13:20:44 2020
    SummarySecurity update for openconnect
    Typesecurity
    Severitymoderate
    References1170452,CVE-2020-12105
    Description:

    This update for openconnect fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-SU-2020:1353-1
    ReleasedWed May 20 13:02:32 2020
    SummarySecurity update for freetype2
    Typesecurity
    Severitymoderate
    References1079603,1091109,CVE-2018-6942
    Description:

    This update for freetype2 to version 2.10.1 fixes the following issues:
    Security issue fixed:


    Non-security issues fixed:









    Advisory IDSUSE-RU-2020:1370-1
    ReleasedThu May 21 19:06:00 2020
    SummaryRecommended update for systemd-presets-branding-SLE
    Typerecommended
    Severitymoderate
    References1171656
    Description:

    This update for systemd-presets-branding-SLE fixes the following issues:
    Cleanup of outdated autostart services (bsc#1171656):


    Advisory IDSUSE-RU-2020:1378-1
    ReleasedThu May 21 19:08:52 2020
    SummaryRecommended update for google-compute-engine
    Typerecommended
    Severitymoderate
    References1170719,1170720
    Description:

    This update for google-compute-engine contain the following fix:


    Advisory IDSUSE-SU-2020:1381-1
    ReleasedFri May 22 08:01:14 2020
    SummarySecurity update for memcached
    Typesecurity
    Severitymoderate
    References1133817,1149110,CVE-2019-11596,CVE-2019-15026
    Description:

    This update for memcached fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-RU-2020:1388-1
    ReleasedFri May 22 10:58:17 2020
    SummaryRecommended update for lifecycle-data-sle-module-live-patching
    Typerecommended
    Severitymoderate
    References1020320
    Description:

    This update for lifecycle-data-sle-module-live-patching fixes the following issues:


    Advisory IDSUSE-RU-2020:1402-1
    ReleasedMon May 25 14:17:17 2020
    SummaryRecommended update for mrsh
    Typerecommended
    Severitymoderate
    References1144051
    Description:

    This update for mrsh fixes the following issues:





    Advisory IDSUSE-RU-2020:1407-1
    ReleasedMon May 25 15:55:08 2020
    SummaryRecommended update for amazon-ssm-agent
    Typerecommended
    Severitymoderate
    References1085670,1108265,1170935
    Description:

    This update for amazon-ssm-agent fixes the following issues:




    Advisory IDSUSE-RU-2020:1413-1
    ReleasedTue May 26 09:45:41 2020
    SummaryRecommended update for vncmanager
    Typerecommended
    Severitymoderate
    References1169732,1171344
    Description:

    This update for vncmanager fixes the following issues:


    Advisory IDSUSE-SU-2020:1419-1
    ReleasedTue May 26 12:23:30 2020
    SummarySecurity update for sysstat
    Typesecurity
    Severitylow
    References1159104,CVE-2019-19725
    Description:

    This update for sysstat fixes the following issues:


    Advisory IDSUSE-SU-2020:1420-1
    ReleasedTue May 26 12:23:54 2020
    SummarySecurity update for jasper
    Typesecurity
    Severitylow
    References1092115,CVE-2018-9154
    Description:

    This update for jasper fixes the following issues:


    Advisory IDSUSE-SU-2020:1423-1
    ReleasedTue May 26 14:33:06 2020
    SummarySecurity update for mariadb-connector-c
    Typesecurity
    Severityimportant
    References1171550,CVE-2020-13249
    Description:

    This update for mariadb-connector-c fixes the following issues:
    Security issue fixed:


    Non-security issues fixed:


    Advisory IDSUSE-RU-2020:1426-1
    ReleasedTue May 26 14:54:32 2020
    SummaryRecommended update for python-boto
    Typerecommended
    Severitymoderate
    References1171769
    Description:

    This update for python-boto fixes the following issues:


    Advisory IDSUSE-RU-2020:1427-1
    ReleasedTue May 26 14:55:16 2020
    SummaryRecommended update for docker-runc
    Typerecommended
    Severitymoderate
    References1168481
    Description:

    This update for docker-runc contains the following fixes:



    Advisory IDSUSE-RU-2020:1487-1
    ReleasedWed May 27 15:24:08 2020
    SummaryRecommended update for cloud-regionsrv-client
    Typerecommended
    Severityimportant
    References1171704,1171705
    Description:

    This update for cloud-regionsrv-client contains the following fixes:



    Advisory IDSUSE-SU-2020:1493-1
    ReleasedWed May 27 18:55:51 2020
    SummarySecurity update for libmspack
    Typesecurity
    Severitylow
    References1130489,1141680,CVE-2019-1010305
    Description:

    This update for libmspack fixes the following issues:
    Security issue fixed:

    Other issue addressed:


    Advisory IDSUSE-RU-2020:1494-1
    ReleasedWed May 27 20:29:48 2020
    SummaryRecommended update for python-psycopg2
    Typerecommended
    Severitymoderate
    References1171213
    Description:

    This update for python-psycopg2 fixes the following issues:


    Advisory IDSUSE-RU-2020:1507-1
    ReleasedFri May 29 17:23:52 2020
    SummaryRecommended update for publicsuffix
    Typerecommended
    Severitymoderate
    References1171819
    Description:

    This update for publicsuffix fixes the following issues:



















    Advisory IDSUSE-RU-2020:1508-1
    ReleasedFri May 29 17:32:31 2020
    SummaryRecommended update for apache2-mod_jk
    Typerecommended
    Severitymoderate
    References1167896
    Description:

    This update for apache2-mod_jk fixes the following issues:


    Advisory IDSUSE-SU-2020:1511-1
    ReleasedFri May 29 18:03:39 2020
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1167462,1169511,CVE-2020-2754,CVE-2020-2755,CVE-2020-2756,CVE-2020-2757,CVE-2020-2767,CVE-2020-2773,CVE-2020-2778,CVE-2020-2781,CVE-2020-2800,CVE-2020-2803,CVE-2020-2805,CVE-2020-2816,CVE-2020-2830
    Description:

    This update for java-11-openjdk fixes the following issues:
    Java was updated to jdk-11.0.7+10 (April 2020 CPU, bsc#1169511).
    Security issues fixed:


    Advisory IDSUSE-RU-2020:1512-1
    ReleasedFri May 29 18:11:37 2020
    SummaryRecommended update for unrar_wrapper
    Typerecommended
    Severityimportant
    References1170792
    Description:

    This update for unrar_wrapper fixes the following issues:


    Advisory IDSUSE-RU-2020:1520-1
    ReleasedTue Jun 2 19:53:03 2020
    SummaryRecommended update for psqlODBC
    Typerecommended
    Severitymoderate
    References1166821
    Description:

    This update for psqlODBC provides the following fixes:






    Advisory IDSUSE-OU-2020:1527-1
    ReleasedWed Jun 3 13:34:59 2020
    SummaryOptional update for alsa-plugins
    Typeoptional
    Severitylow
    References1171586
    Description:

    This update for alsa-plugins doesn't fix any user visible issues, but changes the way the package is being built. An installation is optional and not required. (bsc#1171586, jsc#SLE-11987)


    Advisory IDSUSE-RU-2020:1542-1
    ReleasedThu Jun 4 13:24:37 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1172055
    Description:

    This update for timezone fixes the following issue:


    Advisory IDSUSE-SU-2020:1553-1
    ReleasedMon Jun 8 09:32:53 2020
    SummarySecurity update for libexif
    Typesecurity
    Severitymoderate
    References1055857,1059893,1120943,1160770,1171475,1171847,1172105,1172116,1172121,CVE-2016-6328,CVE-2017-7544,CVE-2018-20030,CVE-2019-9278,CVE-2020-0093,CVE-2020-12767,CVE-2020-13112,CVE-2020-13113,CVE-2020-13114
    Description:

    This update for libexif to 0.6.22 fixes the following issues:
    Security issues fixed:


    Non-security issues fixed:


    Advisory IDSUSE-RU-2020:1560-1
    ReleasedMon Jun 8 12:08:28 2020
    SummaryRecommended update for llvm7
    Typerecommended
    Severitylow
    References1171512
    Description:

    This update for llvm7 fixes the following issues:
    -Fix for build failures when using 'llvm7' on i586. (bsc#1171512)


    Advisory IDSUSE-SU-2020:1569-1
    ReleasedTue Jun 9 11:13:16 2020
    SummarySecurity update for java-1_8_0-openjdk
    Typesecurity
    Severityimportant
    References1160398,1169511,1171352,CVE-2020-2754,CVE-2020-2755,CVE-2020-2756,CVE-2020-2757,CVE-2020-2773,CVE-2020-2781,CVE-2020-2800,CVE-2020-2803,CVE-2020-2805,CVE-2020-2830
    Description:

    This update for java-1_8_0-openjdk to version jdk8u252 fixes the following issues:


    Advisory IDSUSE-SU-2020:1582-1
    ReleasedTue Jun 9 18:20:10 2020
    SummarySecurity update for rubygem-bundler
    Typesecurity
    Severitymoderate
    References1143436,CVE-2019-3881
    Description:

    This update for rubygem-bundler fixes the following issue:


    Advisory IDSUSE-RU-2020:1616-1
    ReleasedFri Jun 12 10:51:28 2020
    SummaryRecommended update for SAPHanaSR-ScaleOut
    Typerecommended
    Severitymoderate
    References1156067,1156150,1157685
    Description:

    This update for SAPHanaSR-ScaleOut fixes the following issues:


    Advisory IDSUSE-RU-2020:1631-1
    ReleasedWed Jun 17 09:53:58 2020
    SummaryRecommended update for fonts-config
    Typerecommended
    Severityimportant
    References1049056,1092737,1101985,1106850,1111791,1172022
    Description:

    This update for fonts-config fixes the following issues:


    Advisory IDSUSE-RU-2020:1635-1
    ReleasedWed Jun 17 14:20:56 2020
    SummaryRecommended update for susemanager-cloud-setup
    Typerecommended
    Severityimportant
    References1172645
    Description:

    This update for susemanager-cloud-setup contains the following fix:



    Advisory IDSUSE-SU-2020:1657-1
    ReleasedThu Jun 18 10:49:53 2020
    SummarySecurity update for containerd, docker, docker-runc, golang-github-docker-libnetwork
    Typesecurity
    Severitymoderate
    References1172377,CVE-2020-13401
    Description:

    This update for containerd, docker, docker-runc, golang-github-docker-libnetwork fixes the following issues:
    Docker was updated to 19.03.11-ce runc was updated to version 1.0.0-rc10 containerd was updated to version 1.2.13


    Advisory IDSUSE-SU-2020:1677-1
    ReleasedThu Jun 18 18:16:39 2020
    SummarySecurity update for mozilla-nspr, mozilla-nss
    Typesecurity
    Severityimportant
    References1159819,1169746,1171978,CVE-2019-17006,CVE-2020-12399
    Description:

    This update for mozilla-nspr, mozilla-nss fixes the following issues:
    mozilla-nss was updated to version 3.53

    Release notes: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.53_release_notes
    mozilla-nspr to version 4.25


    Advisory IDSUSE-SU-2020:1684-1
    ReleasedFri Jun 19 09:48:36 2020
    SummarySecurity update for java-1_8_0-ibm
    Typesecurity
    Severityimportant
    References1160968,1169511,1171352,1172277,CVE-2019-2949,CVE-2020-2654,CVE-2020-2754,CVE-2020-2755,CVE-2020-2756,CVE-2020-2757,CVE-2020-2781,CVE-2020-2800,CVE-2020-2803,CVE-2020-2805,CVE-2020-2830
    Description:

    This update for java-1_8_0-ibm fixes the following issues:
    java-1_8_0-ibm was updated to Java 8.0 Service Refresh 6 Fix Pack 10 (bsc#1172277,bsc#1169511,bsc#1160968)


    Advisory IDSUSE-SU-2020:1695-1
    ReleasedFri Jun 19 14:54:47 2020
    SummarySecurity update for osc
    Typesecurity
    Severitymoderate
    References1122675,CVE-2019-3681
    Description:

    This update for osc to 0.169.1 fixes the following issues:
    Security issue fixed:


    Non-security issues fixed:


    Advisory IDSUSE-RU-2020:1704-1
    ReleasedMon Jun 22 11:21:12 2020
    SummaryRecommended update for susefirewall2-to-firewalld
    Typerecommended
    Severitymoderate
    References1170461
    Description:

    This update for susefirewall2-to-firewalld fixes the following issues:


    Advisory IDSUSE-RU-2020:1706-1
    ReleasedMon Jun 22 14:34:34 2020
    SummaryRecommended update for susemanager-cloud-setup
    Typerecommended
    Severityimportant
    References1172838
    Description:

    This update for susemanager-cloud-setup contains the following fix:



    Advisory IDSUSE-RU-2020:1707-1
    ReleasedTue Jun 23 10:02:48 2020
    SummaryRecommended update for gnu-free-fonts
    Typerecommended
    Severitymoderate
    References1170856
    Description:

    This update for gnu-free-fonts fixes the following issue:


    Advisory IDSUSE-RU-2020:1727-1
    ReleasedTue Jun 23 15:33:07 2020
    SummaryRecommended update for python3-gcemetadata
    Typerecommended
    Severitymoderate
    References1173136
    Description:

    This update for python3-gcemetadata fixes the following issues:
    Update to version 1.0.4 (bsc#1173136)


    Advisory IDSUSE-SU-2020:1730-1
    ReleasedWed Jun 24 09:41:15 2020
    SummarySecurity update for libssh2_org
    Typesecurity
    Severitymoderate
    References1154862,CVE-2019-17498
    Description:

    This update for libssh2_org fixes the following issue:


    Advisory IDSUSE-SU-2020:1771-1
    ReleasedFri Jun 26 08:04:23 2020
    SummarySecurity update for mutt
    Typesecurity
    Severityimportant
    References1172906,1172935,1173197,CVE-2020-14093,CVE-2020-14154,CVE-2020-14954
    Description:

    This update for mutt fixes the following issues:


    Advisory IDSUSE-SU-2020:1772-1
    ReleasedFri Jun 26 08:05:06 2020
    SummarySecurity update for unbound
    Typesecurity
    Severityimportant
    References1157268,1171889,CVE-2019-18934,CVE-2020-12662,CVE-2020-12663
    Description:

    This update for unbound fixes the following issues:


    Advisory IDSUSE-RU-2020:1785-1
    ReleasedFri Jun 26 09:26:09 2020
    SummaryRecommended update for perl-TimeDate
    Typerecommended
    Severitymoderate
    References1172834
    Description:

    This update for perl-TimeDate fixes the following issue:


    Advisory IDSUSE-RU-2020:1801-1
    ReleasedTue Jun 30 13:07:01 2020
    SummaryRecommended update for zeromq
    Typerecommended
    Severitylow
    References1171566
    Description:


    This update of zeromq fixes the following issue.


    Advisory IDSUSE-RU-2020:1802-1
    ReleasedTue Jun 30 13:15:44 2020
    SummaryRecommended update for ucode-intel
    Typerecommended
    Severitymoderate
    References1172466,1172856
    Description:

    This update for ucode-intel fixes the following issues:
    Updated Intel CPU Microcode to 20200616 official release (bsc#1172856)


    Updated Intel CPU Microcode to 20200609 official release (bsc#1172466)


    Advisory IDSUSE-SU-2020:1823-1
    ReleasedThu Jul 2 11:32:22 2020
    SummarySecurity update for ntp
    Typesecurity
    Severitymoderate
    References1125401,1169740,1171355,1172651,1173334,992038,CVE-2018-8956,CVE-2020-11868,CVE-2020-13817,CVE-2020-15025
    Description:

    This update for ntp fixes the following issues:
    ntp was updated to 4.2.8p15


    Advisory IDSUSE-RU-2020:1852-1
    ReleasedMon Jul 6 16:50:23 2020
    SummaryRecommended update for fontforge, ghostscript-fonts, ttf-converter, xorg-x11-fonts
    Typerecommended
    Severitymoderate
    References1169444
    Description:

    This update for fontforge, ghostscript-fonts, ttf-converter, xorg-x11-fonts fixes the following issues:
    Changes in fontforge:


    Changes in ttf-converter:

    --shift-unicode-values: When passed 3 comma separated numbers a,b,c this shifts the unicode values of glyphs between a and b (both included) by adding c. Can be used more than once. * Add --bitmapTransform parameter to transform bitmap glyphs. (bsc#1169444) When used, all glyphs are modified with the transformation function and values passed as parameters. The parameter has three values separated by commas: fliph|flipv|rotate90cw|rotate90ccw|rotate180|skew|transmove,xoff,yoff * Add support to convert bitmap fonts (bsc#1169444) * Rename MediumItalic subfamily to Medium Italic * Show some more information when removing duplicated glyphs * Add a --force-monospaced argument instead of hardcoding font names * Convert `BoldCond` subfamily to `Bold Condensed` * Fixes for Monospaced fonts and force the Nimbus Mono L font to be Monospaced. (bsc#1169444 #c41) * Add a --version argument * Fix subfamily names so the converted font's subfamily match the original ones. (bsc#1169444 #c41)
    Changes in xorg-x11-fonts:

    Changes in ghostscript-fonts:


    Advisory IDSUSE-RU-2020:1870-1
    ReleasedTue Jul 7 15:13:13 2020
    SummaryRecommended update for llvm9
    Typerecommended
    Severitymoderate
    References1173202
    Description:

    This update for llvm9 fixes the following issues:


    Advisory IDSUSE-RU-2020:1871-1
    ReleasedTue Jul 7 15:14:11 2020
    SummaryRecommended update for llvm7
    Typerecommended
    Severitymoderate
    References1173202
    Description:

    This update for llvm7 fixes the following issues:


    Advisory IDSUSE-RU-2020:1885-1
    ReleasedFri Jul 10 14:54:22 2020
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1170154,1171546,1171995
    Description:

    This update for cloud-init contains the following fixes:


    + Explicitly test for netconfig version 1 as well as 2.
    + Handle netconfig v2 device configurations (bsc#1171546, bsc#1171995)


    Advisory IDSUSE-OU-2020:1894-1
    ReleasedMon Jul 13 10:40:16 2020
    SummaryOptional update for python-Cerberus
    Typeoptional
    Severitymoderate
    References1121858,1173465
    Description:

    This update for python-Cerberus fixes the following issues:


    Advisory IDSUSE-RU-2020:1903-1
    ReleasedTue Jul 14 15:46:28 2020
    SummaryRecommended update for lifecycle-data-sle-module-desktop-productivity
    Typerecommended
    Severitymoderate
    References1173407
    Description:

    This update for lifecycle-data-sle-module-desktop-productivity fixes the following issues:


    Advisory IDSUSE-RU-2020:1905-1
    ReleasedTue Jul 14 15:56:17 2020
    SummaryRecommended update for lifecycle-data-sle-module-basesystem
    Typerecommended
    Severitymoderate
    References1173407
    Description:

    This update for lifecycle-data-sle-module-basesystem fixes the following issues:


    Advisory IDSUSE-RU-2020:1906-1
    ReleasedTue Jul 14 15:58:16 2020
    SummaryRecommended update for lifecycle-data-sle-module-development-tools
    Typerecommended
    Severitymoderate
    References1173407
    Description:

    This update for lifecycle-data-sle-module-development-tools fixes the following issue:


    Advisory IDSUSE-RU-2020:1907-1
    ReleasedTue Jul 14 16:01:25 2020
    SummaryRecommended update for lifecycle-data-sle-module-hpc
    Typerecommended
    Severitymoderate
    References1173407
    Description:

    This update for lifecycle-data-sle-module-hpc fixes the following issues:


    Advisory IDSUSE-RU-2020:1908-1
    ReleasedTue Jul 14 16:03:22 2020
    SummaryRecommended update for lifecycle-data-sle-module-server-applications
    Typerecommended
    Severitymoderate
    References1173407
    Description:

    This update for lifecycle-data-sle-module-server-applications fixes the following issues:


    Advisory IDSUSE-RU-2020:1909-1
    ReleasedTue Jul 14 16:05:26 2020
    SummaryRecommended update for lifecycle-data-sle-module-desktop-applications
    Typerecommended
    Severitymoderate
    References1173407
    Description:

    This update for lifecycle-data-sle-module-desktop-applications fixes the following issues:


    Advisory IDSUSE-SU-2020:1919-1
    ReleasedWed Jul 15 10:56:06 2020
    SummarySecurity update for rubygem-puma
    Typesecurity
    Severitymoderate
    References1172175,1172176,CVE-2020-11076,CVE-2020-11077
    Description:

    This update for rubygem-puma to version 4.3.5 fixes the following issues:


    Advisory IDSUSE-SU-2020:1930-1
    ReleasedWed Jul 15 15:05:07 2020
    SummarySecurity update for openconnect
    Typesecurity
    Severitymoderate
    References1171862,CVE-2020-12823
    Description:

    This update for openconnect fixes the following issues:


    Advisory IDSUSE-SU-2020:1931-1
    ReleasedWed Jul 15 15:05:43 2020
    SummarySecurity update for openexr
    Typesecurity
    Severitymoderate
    References1173466,1173467,1173469,CVE-2020-15304,CVE-2020-15305,CVE-2020-15306
    Description:

    This update for openexr fixes the following issues:


    Advisory IDSUSE-SU-2020:1934-1
    ReleasedWed Jul 15 15:07:30 2020
    SummarySecurity update for google-compute-engine
    Typesecurity
    Severityimportant
    References1169978,1173258,CVE-2020-8903,CVE-2020-8907,CVE-2020-8933
    Description:

    This update for google-compute-engine fixes the following issues:


    + Do not add the created user to the adm (CVE-2020-8903), docker (CVE-2020-8907), or lxd (CVE-2020-8933) groups if they exist (bsc#1173258)


    Advisory IDSUSE-RU-2020:1935-1
    ReleasedWed Jul 15 16:25:57 2020
    SummaryRecommended update for azure-li-services
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for azure-li-services fixes the following issues:


    Advisory IDSUSE-SU-2020:1944-1
    ReleasedFri Jul 17 13:50:40 2020
    SummarySecurity update for ant
    Typesecurity
    Severitymoderate
    References1171696,CVE-2020-1945
    Description:

    This update for ant fixes the following issues:


    Advisory IDSUSE-RU-2020:1954-1
    ReleasedSat Jul 18 03:07:15 2020
    SummaryRecommended update for cracklib
    Typerecommended
    Severitymoderate
    References1172396
    Description:

    This update for cracklib fixes the following issues:


    Advisory IDSUSE-RU-2020:1979-1
    ReleasedTue Jul 21 02:41:47 2020
    SummaryRecommended update for golang-github-prometheus-node_exporter
    Typerecommended
    Severitymoderate
    References1143913
    Description:

    This update for golang-github-prometheus-node_exporter fixes the following issues:

    0.18.1 / 2019-06-04 * [BUGFIX] Fix incorrect sysctl call in BSD meminfo collector, resulting in broken swap metrics on FreeBSD * [BUGFIX] Fix rollover bug in mountstats collector 0.18.0 / 2019-05-09 * Renamed interface label to device in netclass collector for consistency with other network metrics * The cpufreq metrics now separate the cpufreq and scaling data based on what the driver provides. * The labels for the network_up metric have changed * Bonding collector now uses mii_status instead of operstatus * Several systemd metrics have been turned off by default to improve performance * These include unit_tasks_current, unit_tasks_max, service_restart_total, and unit_start_time_seconds * The systemd collector blacklist now includes automount, device, mount, and slice units by default. * [CHANGE] Bonding state uses mii_status * [CHANGE] Add a limit to the number of in-flight requests * [CHANGE] Renamed interface label to device in netclass collector * [CHANGE] Add separate cpufreq and scaling metrics * [CHANGE] Several systemd metrics have been turned off by default to improve performance * [CHANGE] Expand systemd collector blacklist * [CHANGE] Split cpufreq metrics into a separate collector * [FEATURE] Add a flag to disable exporter metrics * [FEATURE] Add kstat-based Solaris metrics for boottime, cpu and zfs collectors * [FEATURE] Add uname collector for FreeBSD * [FEATURE] Add diskstats collector for OpenBSD * [FEATURE] Add pressure collector exposing pressure stall information for Linux * [FEATURE] Add perf exporter for Linux * [ENHANCEMENT] Add Infiniband counters * [ENHANCEMENT] Add TCPSynRetrans to netstat default filter * [ENHANCEMENT] Move network_up labels into new metric network_info * [ENHANCEMENT] Use 64-bit counters for Darwin netstat * [BUGFIX] Add fallback for missing /proc/1/mounts * [BUGFIX] Fix node_textfile_mtime_seconds to work properly on symlinks
  • Add network-online (Wants and After) dependency to systemd unit. (bsc#1143913)

  • Advisory IDSUSE-SU-2020:1983-1
    ReleasedTue Jul 21 08:31:44 2020
    SummarySecurity update for tomcat
    Typesecurity
    Severityimportant
    References1173389,CVE-2020-11996
    Description:

    This update for tomcat fixes the following issues: Tomcat was updated to 9.0.36 See changelog at


    Advisory IDSUSE-RU-2020:1986-1
    ReleasedTue Jul 21 16:06:29 2020
    SummaryRecommended update for openvswitch
    Typerecommended
    Severitymoderate
    References1172861,1172929
    Description:

    This update for openvswitch fixes the following issues:


    Advisory IDSUSE-RU-2020:2000-1
    ReleasedWed Jul 22 09:04:41 2020
    SummaryRecommended update for efivar
    Typerecommended
    Severityimportant
    References1100077,1101023,1120862,1127544
    Description:

    This update for efivar fixes the following issues:


    Advisory IDSUSE-RU-2020:2002-1
    ReleasedWed Jul 22 09:43:24 2020
    SummaryRecommended update for lifecycle-data-sle-module-live-patching
    Typerecommended
    Severitymoderate
    References1020320
    Description:

    This update for lifecycle-data-sle-module-live-patching fixes the following issues:


    Advisory IDSUSE-RU-2020:2006-1
    ReleasedWed Jul 22 16:00:52 2020
    SummaryRecommended update for postgresql, postgresql12
    Typerecommended
    Severitymoderate
    References1148643,1171924
    Description:

    This update for postgresql, postgresql12 fixes the following issues:
    Postgresql12 was updated to 12.3 (bsc#1171924).



    Also changed in the postgresql wrapper package:



    Advisory IDSUSE-SU-2020:2025-1
    ReleasedThu Jul 23 13:32:32 2020
    SummarySecurity update for perl-YAML-LibYAML
    Typesecurity
    Severitymoderate
    References1173703
    Description:

    This update for perl-YAML-LibYAML fixes the following issues:
    perl-YAML-LibYAML was updated to 0.69: [bsc#1173703]


    Advisory IDSUSE-SU-2020:2029-1
    ReleasedThu Jul 23 13:50:04 2020
    SummarySecurity update for libraw
    Typesecurity
    Severitymoderate
    References1173674,CVE-2020-15503
    Description:

    This update for libraw fixes the following issues:


    Advisory IDSUSE-RU-2020:2042-1
    ReleasedFri Jul 24 13:59:31 2020
    SummaryRecommended update for SAPHanaSR
    Typerecommended
    Severitymoderate
    References1173581
    Description:

    This update for SAPHanaSR fixes the following issues:


    Advisory IDSUSE-SU-2020:2047-1
    ReleasedFri Jul 24 14:09:14 2020
    SummarySecurity update for tomcat
    Typesecurity
    Severityimportant
    References1174117,1174121,CVE-2020-13934,CVE-2020-13935
    Description:

    This update for tomcat fixes the following issues:


    Advisory IDSUSE-RU-2020:2071-1
    ReleasedWed Jul 29 12:47:19 2020
    SummaryRecommended update for sapconf
    Typerecommended
    Severitymoderate
    References1124453,1139176,1150868,1150870,1166925,1168067,1168840
    Description:

    This update for sapconf fixes the following issues:


    Advisory IDSUSE-RU-2020:2080-1
    ReleasedWed Jul 29 20:09:09 2020
    SummaryRecommended update for libtool
    Typerecommended
    Severitymoderate
    References1171566
    Description:


    This update for libtool provides missing the libltdl 32bit library. (bsc#1171566)


    Advisory IDSUSE-RU-2020:2082-1
    ReleasedThu Jul 30 09:49:35 2020
    SummaryRecommended update for google-guest-agent, google-guest-configs, and google-guest-oslogin
    Typerecommended
    Severitymoderate
    References1174304,1174306
    Description:

    The python based packages google-compute-engine-init and google-compute-engine-oslogin were deprecated and are now replaced by the new Go based packages google-guest-agent, google-guest-configs, and google-guest-oslogin (jsc#ECO-2099)


    Advisory IDSUSE-RU-2020:2083-1
    ReleasedThu Jul 30 10:27:59 2020
    SummaryRecommended update for diffutils
    Typerecommended
    Severitymoderate
    References1156913
    Description:

    This update for diffutils fixes the following issue:


    Advisory IDSUSE-RU-2020:2091-1
    ReleasedThu Jul 30 14:55:00 2020
    SummaryRecommended update for python-kiwi
    Typerecommended
    Severitymoderate
    References1156677,1168973,1172928
    Description:

    This update for python-kiwi fixes the following issues:


    Advisory IDSUSE-RU-2020:2093-1
    ReleasedThu Jul 30 14:57:24 2020
    SummaryRecommended update for tftpboot-installation-common
    Typerecommended
    Severitylow
    References1172161
    Description:

    This update for tftpboot-installation-common fixes the following issues:


    Advisory IDSUSE-SU-2020:2095-1
    ReleasedThu Jul 30 17:10:15 2020
    SummarySecurity update for ghostscript
    Typesecurity
    Severityimportant
    References1174415,CVE-2020-15900
    Description:

    This update for ghostscript fixes the following issues:


    Advisory IDSUSE-RU-2020:2115-1
    ReleasedTue Aug 4 12:12:10 2020
    SummaryRecommended update for opus
    Typerecommended
    Severitymoderate
    References1172526
    Description:

    This update for opus fixes the following issues:


    Advisory IDSUSE-SU-2020:2116-1
    ReleasedTue Aug 4 15:12:41 2020
    SummarySecurity update for libX11
    Typesecurity
    Severityimportant
    References1174628,CVE-2020-14344
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-RU-2020:2126-1
    ReleasedWed Aug 5 09:26:46 2020
    SummaryRecommended update for cloud-regionsrv-client
    Typerecommended
    Severitymoderate
    References1173474,1173475
    Description:

    This update for cloud-regionsrv-client fixes the following issues:


    Advisory IDSUSE-RU-2020:2127-1
    ReleasedWed Aug 5 10:28:23 2020
    SummaryRecommended update for python-azure-agent
    Typerecommended
    Severityimportant
    References1173866
    Description:

    This update for python-azure-agent fixes the following issues:


    Advisory IDSUSE-RU-2020:2128-1
    ReleasedWed Aug 5 10:28:47 2020
    SummaryRecommended update for cryptctl
    Typerecommended
    Severitymoderate
    References
    Description:


    cryptctl was updated to fix the following issue


    Advisory IDSUSE-RU-2020:2130-1
    ReleasedWed Aug 5 13:01:43 2020
    SummaryRecommended update for aws-iam-authenticator, cni, cni-plugins
    Typerecommended
    Severitymoderate
    References1098521
    Description:



    This update ships initial versions of the aws-iam-authenticator, cni, cni-plugins packages to the Public Cloud module. (jsc#PM-1449, jsc#SLE-10777, bsc#1098521)
    This provides support for Amazon EKS.


    Advisory IDSUSE-SU-2020:2142-1
    ReleasedThu Aug 6 11:05:34 2020
    SummarySecurity update for xrdp
    Typesecurity
    Severityimportant
    References1173580,CVE-2020-4044
    Description:

    This update for xrdp fixes the following issues:


    Advisory IDSUSE-SU-2020:2143-1
    ReleasedThu Aug 6 11:06:49 2020
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1174157,CVE-2020-14556,CVE-2020-14562,CVE-2020-14573,CVE-2020-14577,CVE-2020-14581,CVE-2020-14583,CVE-2020-14593,CVE-2020-14621
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-SU-2020:2144-1
    ReleasedThu Aug 6 11:07:58 2020
    SummarySecurity update for wireshark
    Typesecurity
    Severitymoderate
    References1169063,1171899,1173606,CVE-2020-11647,CVE-2020-13164,CVE-2020-15466
    Description:

    This update for wireshark fixes the following issues:


    Advisory IDSUSE-SU-2020:2147-1
    ReleasedThu Aug 6 13:36:01 2020
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1171433,1174538,CVE-2020-15652,CVE-2020-15653,CVE-2020-15654,CVE-2020-15655,CVE-2020-15656,CVE-2020-15657,CVE-2020-15658,CVE-2020-15659,CVE-2020-6463,CVE-2020-6514
    Description:

    This update for MozillaFirefox fixes the following issues:
    This update for MozillaFirefox and pipewire fixes the following issues:
    MozillaFirefox Extended Support Release 78.1.0 ESR


    pipewire was updated to version 0.3.6 (bsc#1171433, jsc#ECO-2308):


    Advisory IDSUSE-RU-2020:2148-1
    ReleasedThu Aug 6 13:36:17 2020
    SummaryRecommended update for ca-certificates-mozilla
    Typerecommended
    Severityimportant
    References1174673
    Description:

    This update for ca-certificates-mozilla fixes the following issues:
    Update to 2.42 state of the Mozilla NSS Certificate store (bsc#1174673)
    Removed CAs:
    * AddTrust External CA Root * AddTrust Class 1 CA Root * LuxTrust Global Root 2 * Staat der Nederlanden Root CA - G2 * Symantec Class 1 Public Primary Certification Authority - G4 * Symantec Class 2 Public Primary Certification Authority - G4 * VeriSign Class 3 Public Primary Certification Authority - G3
    Added CAs:
    * certSIGN Root CA G2 * e-Szigno Root CA 2017 * Microsoft ECC Root Certificate Authority 2017 * Microsoft RSA Root Certificate Authority 2017


    Advisory IDSUSE-SU-2020:2172-1
    ReleasedFri Aug 7 16:11:00 2020
    SummarySecurity update for perl-XML-Twig
    Typesecurity
    Severitymoderate
    References1008644,CVE-2016-9180
    Description:

    This update for perl-XML-Twig fixes the following issues:


    Advisory IDSUSE-SU-2020:2197-1
    ReleasedTue Aug 11 13:32:49 2020
    SummarySecurity update for libX11
    Typesecurity
    Severityimportant
    References1174628,CVE-2020-14344
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-RU-2020:2210-1
    ReleasedWed Aug 12 06:24:02 2020
    SummaryRecommended update for osc
    Typerecommended
    Severitymoderate
    References1173926
    Description:

    This update for osc fixes the following issues:


    Advisory IDSUSE-RU-2020:2219-1
    ReleasedWed Aug 12 15:47:42 2020
    SummaryRecommended update for supportutils-plugin-suse-public-cloud and python3-azuremetadata
    Typerecommended
    Severitymoderate
    References1170475,1170476,1173238,1173240,1173357,1174618,1174847
    Description:

    This update for supportutils-plugin-suse-public-cloud and python3-azuremetadata fixes the following issues:
    supportutils-plugin-suse-public-cloud:


    python3-azuremetadata:


    Advisory IDSUSE-RU-2020:2220-1
    ReleasedWed Aug 12 16:23:08 2020
    SummaryRecommended update for hawk2
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for hawk2 fixes the following issue:
    Update to version 2.1.2+git.1594886920.d00b94aa:


    Advisory IDSUSE-RU-2020:2236-1
    ReleasedThu Aug 13 13:06:27 2020
    SummaryRecommended update for wireguard-tools
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for wireguard-tools fixes the following issues:
    Update to version 1.0.20200513


    Update to version 1.0.20200510

    Update to version 1.0.20200319

    Update to version 1.0.20200206

    Update to version 1.0.20200121


    Advisory IDSUSE-RU-2020:2252-1
    ReleasedMon Aug 17 14:16:31 2020
    SummaryRecommended update for python-parallax
    Typerecommended
    Severitymoderate
    References1174894
    Description:

    This update for python-parallax fixes the following issue:


    Advisory IDSUSE-RU-2020:2254-1
    ReleasedMon Aug 17 15:07:18 2020
    SummaryRecommended update for prometheus-sap_host_exporter and prometheus-ha_cluster_exporter
    Typerecommended
    Severitymoderate
    References1174429
    Description:

    This update for prometheus-sap_host_exporter and prometheus-ha_cluster_exporter fixes the following issues:
    prometheus-sap_host_exporter:



    prometheus-ha_cluster_exporter:



    Advisory IDSUSE-RU-2020:2256-1
    ReleasedMon Aug 17 15:08:46 2020
    SummaryRecommended update for sysfsutils
    Typerecommended
    Severitymoderate
    References1155305
    Description:

    This update for sysfsutils fixes the following issue:


    Advisory IDSUSE-SU-2020:2265-1
    ReleasedTue Aug 18 12:08:55 2020
    SummarySecurity update for postgresql12
    Typesecurity
    Severityimportant
    References1175193,1175194,CVE-2020-14349,CVE-2020-14350
    Description:

    This update for postgresql12 fixes the following issues:


    Advisory IDSUSE-RU-2020:2280-1
    ReleasedWed Aug 19 21:27:31 2020
    SummaryRecommended update for devscripts
    Typerecommended
    Severitymoderate
    References1174163
    Description:

    This update for devscripts fixes the following issue:
    Update from version 2.15.1 to version 2.19.5 (bsc#1174163)


    Advisory IDSUSE-RU-2020:2281-1
    ReleasedWed Aug 19 21:28:12 2020
    SummaryRecommended update for openssl-1_0_0
    Typerecommended
    Severitymoderate
    References1174459
    Description:

    This update for openssl-1_0_0 fixes the following issue:


    Advisory IDSUSE-RU-2020:2282-1
    ReleasedWed Aug 19 21:28:40 2020
    SummaryRecommended update for libgit2
    Typerecommended
    Severitymoderate
    References1157473
    Description:

    This update for libgit2 provides the following fix:


    Advisory IDSUSE-RU-2020:2289-1
    ReleasedFri Aug 21 10:58:57 2020
    SummaryRecommended update for davfs2
    Typerecommended
    Severitymoderate
    References1173419
    Description:

    This update for davfs2 fixes the following issue:


    Advisory IDSUSE-RU-2020:2314-1
    ReleasedTue Aug 25 15:31:17 2020
    SummaryRecommended update for cloud-regionsrv-client
    Typerecommended
    Severitymoderate
    References1174731,1174732,1174743,1174791,1174837,1174937
    Description:

    This update for cloud-regionsrv-client contains the following fixes:



    Advisory IDSUSE-RU-2020:2316-1
    ReleasedTue Aug 25 15:38:19 2020
    SummaryRecommended update for regionServiceClientConfigEC2
    Typerecommended
    Severitymoderate
    References1174791,1174937
    Description:

    This update for regionServiceClientConfigEC2 contains the following fixes:


    Advisory IDSUSE-RU-2020:2318-1
    ReleasedTue Aug 25 15:39:22 2020
    SummaryRecommended update for python3-ec2metadata
    Typerecommended
    Severitymoderate
    References1174743,1174837
    Description:

    This update for python3-ec2metadata contains the following fixes:


    Advisory IDSUSE-SU-2020:2240-1
    ReleasedTue Aug 25 19:03:12 2020
    SummarySecurity update for xorg-x11-server
    Typesecurity
    Severityimportant
    References1174633,1174635,1174638,CVE-2020-14345,CVE-2020-14346,CVE-2020-14347
    Description:

    This update for xorg-x11-server fixes the following issues:


    Advisory IDSUSE-RU-2020:2330-1
    ReleasedWed Aug 26 07:27:43 2020
    SummaryRecommended update for ibmrtpkgs
    Typerecommended
    Severitymoderate
    References1173678
    Description:

    This update for ibmrtpkgs fixes the following issues:


    Advisory IDSUSE-RU-2020:2338-1
    ReleasedWed Aug 26 13:45:01 2020
    SummaryRecommended update for cloud-regionsrv-client
    Typerecommended
    Severityimportant
    References1175752,1175753
    Description:

    This update for cloud-regionsrv-client fixes the following issues:


    Advisory IDSUSE-RU-2020:2341-1
    ReleasedWed Aug 26 15:57:46 2020
    SummaryRecommended update for regionServiceClientConfigGCE
    Typerecommended
    Severitymoderate
    References1174791,1174937
    Description:

    This update for regionServiceClientConfigGCE contains the following fixes:


    Advisory IDSUSE-RU-2020:2349-1
    ReleasedWed Aug 26 17:15:21 2020
    SummaryRecommended update for hyper-v
    Typerecommended
    Severitymoderate
    References1093910,1174443,1174444
    Description:

    This update for hyper-v fixes the following issues:


    Advisory IDSUSE-SU-2020:2373-1
    ReleasedFri Aug 28 12:58:51 2020
    SummarySecurity update for SUSE Manager 4.1.1
    Typesecurity
    Severitymoderate
    References1136857,1165572,1169553,1169780,1170244,1170468,1170654,1171281,1172279,1172504,1172709,1172807,1172831,1172839,1173169,1173522,1173535,1173554,1173566,1173584,1173932,1173982,1173997,1174025,1174167,1174201,1174229,1174325,1174405,1174470,1174965,1175485,1175555,1175558,1175724,1175791,678126,CVE-2020-11022
    Description:

    This consolidated update includes multiple patchinfos for SUSE Manager Server and Proxy. This patchinfo is used for the codestream release only.


    Advisory IDSUSE-RU-2020:2378-1
    ReleasedFri Aug 28 14:52:31 2020
    SummaryRecommended update for python-azure-agent
    Typerecommended
    Severitymoderate
    References1175198
    Description:

    This update for python-azure-agent contains the following fix:


    Advisory IDSUSE-RU-2020:2380-1
    ReleasedFri Aug 28 14:54:08 2020
    SummaryRecommended update for supportutils-plugin-suse-public-cloud
    Typerecommended
    Severitymoderate
    References1175250,1175251
    Description:

    This update for supportutils-plugin-suse-public-cloud contains the following fix:


    Advisory IDSUSE-RU-2020:2394-1
    ReleasedMon Aug 31 17:16:14 2020
    SummaryRecommended update for lifecycle-data-sle-module-live-patching
    Typerecommended
    Severitymoderate
    References1020320
    Description:

    This update for lifecycle-data-sle-module-live-patching fixes the following issue:
    Live kernel patching update data. (bsc#1020320)


    Advisory IDSUSE-RU-2020:2415-1
    ReleasedTue Sep 1 13:45:00 2020
    SummaryRecommended update for python-kiwi
    Typerecommended
    Severitymoderate
    References1096738,1165730,1172908,1173226,1173356,1174009
    Description:

    This update for python-kiwi contains the following fixes:


    * Skip filesystem check for XFS prior xfs_grow running xfs_repair check isn't strictly necessary before resizing, and in some cases it may even prevent resizing by giving an error that would be cleared through mounting the fs (e.g. when the fs wasn't cleanly umounted, and thus letting xfs recover and replay its journal). Given that xfs can only grow online (while being mounted), this is sufficient to ensure that the fs is in a state where it can be resized. This is related to bsc#1174009. (bsc#1174009)
    * Fixed grub setup in EFI/BOOT directory
    kiwi copied the same grub.cfg file as it exists in boot/grub2 to the efi path. This is wrong as the setup in the efi boot directory is used to enable normal grub loading and not providing the user grub configuration. In addition the changes here makes sure that the early grub boot code is placed into the system in any EFI case except for secure boot when shim-install is present. If shim-install is present it also creates the early grub boot setup such that kiwi doesn't have to do it. This Fixes #1491 and Fixes bsc#1172908. (bsc#1172908)
    * Use rsync in inplace transfer mode
    Using the --inplace option in rsync helps to save space on syncing the rootfs data and prevents e.g OBS workers from running out of VM space when transfering root filesystem data. Also using --inplace allows to keep hardlinks intact. This is related to bsc#1096738. (bsc#1096738)
    * Don't keep copy of grub2-install in the system
    To prevent shim-install from calling grub2-install in uefi mode kiwi temporary replaces the tool by a noop. This acts as a workaround for an issue in shim-install. However the workaround left a file copy of grub2-install in the system which should not happen. This commit Fixes bsc#1173226 and Fixes #1490. (bsc#1173226)
    * Fixes live ISOs
    This commit fixes iso images. Due to a change introduced in c7ed1cf live ISOs were no longer booting as the rootfs.img filesystem was copied to the squashfs container while being still mounted. Because of that, at boot time, it refused to mount. This commit adds umount method for the filesystem base class, so it can be umounted before deleting the instance. Fixes #1489 and bsc#1173356. (bsc#1173356)
    * Support grub timeout_style parameter
    Grub supports a style setting that influences the display of the menu depending on the configured timeout value. With this patch kiwi allows to specify the style via a new bootloader parameter named timeout_style='hidden|countdown'. If not set the grub default applies which shows the menu in any case. This Fixes bsc#1165730 and Fixes #1404. (bsc#1165730)
    * Use auto video mode as default for grub
    An explicit video mode 800x600 was used for grub if no video mode setup exists in the XML description. For grub this should better result in the auto mode. Related to bsc#1165730. (bsc#1165730)


    Advisory IDSUSE-RU-2020:2424-1
    ReleasedTue Sep 1 13:53:52 2020
    SummaryRecommended update for yast2-rmt
    Typerecommended
    Severitymoderate
    References1171555,1172674
    Description:

    This update for yast2-rmt fixes the following issues:


    Advisory IDSUSE-RU-2020:2440-1
    ReleasedTue Sep 1 22:14:33 2020
    SummaryRecommended update for libmaxminddb
    Typerecommended
    Severitymoderate
    References1175006
    Description:

    This update for libmaxminddb fixes the following issues:


    Advisory IDSUSE-SU-2020:2452-1
    ReleasedWed Sep 2 13:58:24 2020
    SummarySecurity update for xorg-x11-server
    Typesecurity
    Severityimportant
    References1174910,1174913,CVE-2020-14361,CVE-2020-14362
    Description:

    This update for xorg-x11-server fixes the following issues:


    Advisory IDSUSE-SU-2020:2453-1
    ReleasedWed Sep 2 13:59:21 2020
    SummarySecurity update for java-1_8_0-ibm
    Typesecurity
    Severitymoderate
    References1174157,1175259,CVE-2019-17639,CVE-2020-14556,CVE-2020-14577,CVE-2020-14578,CVE-2020-14579,CVE-2020-14581,CVE-2020-14583,CVE-2020-14593,CVE-2020-14621
    Description:

    This update for java-1_8_0-ibm fixes the following issues:


    Advisory IDSUSE-RU-2020:2464-1
    ReleasedWed Sep 2 23:25:41 2020
    SummaryRecommended update for icewm
    Typerecommended
    Severitymoderate
    References1170420,1173441
    Description:

    This update for icewm fixes the following issues:


    Advisory IDSUSE-RU-2020:2470-1
    ReleasedWed Sep 2 23:29:43 2020
    SummaryRecommended update for lshw
    Typerecommended
    Severitymoderate
    References1168865,1169668,1172156
    Description:

    This update for lshw fixes the following issues:


    Advisory IDSUSE-SU-2020:2474-1
    ReleasedThu Sep 3 12:10:29 2020
    SummarySecurity update for libX11
    Typesecurity
    Severitymoderate
    References1175239,CVE-2020-14363
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-RU-2020:2489-1
    ReleasedFri Sep 4 11:39:19 2020
    SummaryRecommended update for fwupdate
    Typerecommended
    Severitymoderate
    References1174543
    Description:


    This update of fwupdate fixes the following issue:


    Advisory IDSUSE-RU-2020:2549-1
    ReleasedFri Sep 4 18:25:50 2020
    SummaryRecommended update for OpenStack clients
    Typerecommended
    Severitymoderate
    References1121610,1174571,917818
    Description:

    Updated OpenStack clients to the latest OpenStack release named Ussuri.


    Advisory IDSUSE-RU-2020:2556-1
    ReleasedMon Sep 7 14:31:43 2020
    SummaryRecommended update for python3-azuremetadata
    Typerecommended
    Severitymoderate
    References1175609,1175610
    Description:

    This update for python3-azuremetadata contains the following fix:


    Advisory IDSUSE-RU-2020:2558-1
    ReleasedMon Sep 7 14:32:59 2020
    SummaryRecommended update for tomcat
    Typerecommended
    Severitymoderate
    References1092163,1172562,1173103
    Description:

    This update for tomcat fixes the following issues:


    Advisory IDSUSE-RU-2020:2559-1
    ReleasedMon Sep 7 14:33:27 2020
    SummaryRecommended update for xrdp
    Typerecommended
    Severitymoderate
    References1171415
    Description:

    This update for xrdp fixes the following issue:


    Advisory IDSUSE-RU-2020:2567-1
    ReleasedTue Sep 8 12:03:33 2020
    SummaryRecommended update for azure-li-services
    Typerecommended
    Severityimportant
    References
    Description:

    This update for azure-li-services fixes the following issues:


    Advisory IDSUSE-OU-2020:2568-1
    ReleasedTue Sep 8 13:55:56 2020
    SummaryOptional update for iscsi-formula
    Typeoptional
    Severityimportant
    References
    Description:


    This update adds iscsi-formula to the SLES for SAP products. (jsc#ECO-2443, jsc#ECO-1965, jsc#SLE-4047)


    Advisory IDSUSE-RU-2020:2594-1
    ReleasedThu Sep 10 14:02:49 2020
    SummaryRecommended update for clone-master-clean-up
    Typerecommended
    Severitymoderate
    References1174147
    Description:

    This update for clone-master-clean-up fixes the following issues:


    Advisory IDSUSE-RU-2020:2616-1
    ReleasedMon Sep 14 10:34:31 2020
    SummaryRecommended update for python-argparse-manpage
    Typerecommended
    Severitylow
    References
    Description:

    This update for python-argparse-manpage fixes the following issues:


    Advisory IDSUSE-RU-2020:2630-1
    ReleasedMon Sep 14 18:26:03 2020
    SummaryRecommended update for biosdevname
    Typerecommended
    Severitymoderate
    References1174491
    Description:

    This update for biosdevname fixes the following issues:


    Advisory IDSUSE-RU-2020:2639-1
    ReleasedTue Sep 15 16:23:43 2020
    SummaryRecommended update for realmd
    Typerecommended
    Severitymoderate
    References1175616
    Description:

    This update for realmd fixes the following issue:


    Advisory IDSUSE-SU-2020:2646-1
    ReleasedWed Sep 16 12:07:28 2020
    SummarySecurity update for perl-DBI
    Typesecurity
    Severityimportant
    References1176409,1176412,CVE-2020-14392,CVE-2020-14393
    Description:

    This update for perl-DBI fixes the following issues:
    Security issues fixed:


    Advisory IDSUSE-RU-2020:2655-1
    ReleasedWed Sep 16 14:44:27 2020
    SummaryRecommended update for google-guest-agent, google-guest-configs, google-guest-oslogin
    Typerecommended
    Severitymoderate
    References1174745,1175173,1175740,1175741
    Description:

    This update for google-guest-agent, google-guest-configs, google-guest-oslogin contains the following fixes:






    Advisory IDSUSE-RU-2020:2658-1
    ReleasedWed Sep 16 14:45:24 2020
    SummaryRecommended update for build
    Typerecommended
    Severitymoderate
    References1170956,1172563,1174854
    Description:

    This update for build fixes the following issues:










    Advisory IDSUSE-RU-2020:2659-1
    ReleasedWed Sep 16 14:46:06 2020
    SummaryRecommended update for openwsman
    Typerecommended
    Severitymoderate
    References1174541,1175631
    Description:

    This update for openwsman fixes the following issues:


    Advisory IDSUSE-RU-2020:2667-1
    ReleasedThu Sep 17 14:46:50 2020
    SummaryRecommended update for openssl-1_0_0
    Typerecommended
    Severitymoderate
    References1175429
    Description:

    This update for openssl-1_0_0 fixes the following issues:


    Advisory IDSUSE-RU-2020:2676-1
    ReleasedThu Sep 17 23:48:03 2020
    SummaryRecommended update for star
    Typerecommended
    Severitymoderate
    References1170726
    Description:

    This update for star fixes the following issues:


    Advisory IDSUSE-SU-2020:2689-1
    ReleasedMon Sep 21 10:56:11 2020
    SummarySecurity update for jasper
    Typesecurity
    Severitymoderate
    References1010979,1010980,1020451,1020456,1020458,1020460,1045450,1057152,1088278,1114498,1115637,1117328,1120805,1120807,CVE-2016-9398,CVE-2016-9399,CVE-2017-14132,CVE-2017-5499,CVE-2017-5503,CVE-2017-5504,CVE-2017-5505,CVE-2017-9782,CVE-2018-18873,CVE-2018-19139,CVE-2018-19543,CVE-2018-20570,CVE-2018-20622,CVE-2018-9252
    Description:

    This update for jasper fixes the following issues:


    Advisory IDSUSE-RU-2020:2706-1
    ReleasedTue Sep 22 15:08:19 2020
    SummaryRecommended update for xorg-x11-server
    Typerecommended
    Severitymoderate
    References1176015
    Description:

    This update for xorg-x11-server fixes the following issues:


    Advisory IDSUSE-RU-2020:2709-1
    ReleasedTue Sep 22 15:35:58 2020
    SummaryRecommended update for pdate to version 1.0.5 (bsc#1174791, bsc#1174937)
    Typerecommended
    Severitylow
    References1174791,1174937
    Description:


    Advisory IDSUSE-SU-2020:2710-1
    ReleasedTue Sep 22 17:06:19 2020
    SummarySecurity update for rubygem-actionpack-5_1
    Typesecurity
    Severityimportant
    References1172177,CVE-2020-8164
    Description:

    This update for rubygem-actionpack-5_1 fixes the following issues:


    Advisory IDSUSE-SU-2020:2731-1
    ReleasedThu Sep 24 07:42:32 2020
    SummarySecurity update for conmon, fuse-overlayfs, libcontainers-common, podman
    Typesecurity
    Severitymoderate
    References1162432,1164090,1165738,1171578,1174075,1175821,1175957,CVE-2020-1726
    Description:

    This update for conmon, fuse-overlayfs, libcontainers-common, podman fixes the following issues:
    podman was updated to v2.0.6 (bsc#1175821)


    * Fixed a bug where running systemd in a container on a cgroups v1 system would fail. * Fixed a bug where /etc/passwd could be re-created every time a container is restarted if the container's /etc/passwd did not contain an entry for the user the container was started as. * Fixed a bug where containers without an /etc/passwd file specifying a non-root user would not start. * Fixed a bug where the --remote flag would sometimes not make remote connections and would instead attempt to run Podman locally.
    Update to v2.0.6:

    - Rootless Podman will now add an entry to /etc/passwd for the user who ran Podman if run with --userns=keep-id. - The podman system connection command has been reworked to support multiple connections, and reenabled for use! - Podman now has a new global flag, --connection, to specify a connection to a remote Podman API instance.

    - Podman's automatic systemd integration (activated by the --systemd=true flag, set by default) will now activate for containers using /usr/local/sbin/init as their command, instead of just /usr/sbin/init and /sbin/init (and any path ending in systemd). - Seccomp profiles specified by the --security-opt seccomp=... flag to podman create and podman run will now be honored even if the container was created using --privileged.

    - Fixed a bug where the podman play kube would not honor the hostIP field for port forwarding (#5964). - Fixed a bug where the podman generate systemd command would panic on an invalid restart policy being specified (#7271). - Fixed a bug where the podman images command could take a very long time (several minutes) to complete when a large number of images were present. - Fixed a bug where the podman logs command with the --tail flag would not work properly when a large amount of output would be printed ((#7230)[https://github.com//issues/7230]). - Fixed a bug where the podman exec command with remote Podman would not return a non-zero exit code when the exec session failed to start (e.g. invoking a non-existent command) (#6893). - Fixed a bug where the podman load command with remote Podman would did not honor user-specified tags (#7124). - Fixed a bug where the podman system service command, when run as a non-root user by Systemd, did not properly handle the Podman pause process and would not restart properly as a result (#7180). - Fixed a bug where the --publish flag to podman create, podman run, and podman pod create did not properly handle a host IP of 0.0.0.0 (attempting to bind to literal 0.0.0.0, instead of all IPs on the system) (#7104). - Fixed a bug where the podman start --attach command would not print the container's exit code when the command exited due to the container exiting. - Fixed a bug where the podman rm command with remote Podman would not remove volumes, even if the --volumes flag was specified (#7128). - Fixed a bug where the podman run command with remote Podman and the --rm flag could exit before the container was fully removed. - Fixed a bug where the --pod new:... flag to podman run and podman create would create a pod that did not share any namespaces. - Fixed a bug where the --preserve-fds flag to podman run and podman exec could close the wrong file descriptors while trying to close user-provided descriptors after passing them into the container. - Fixed a bug where default environment variables ($PATH and $TERM) were not set in containers when not provided by the image. - Fixed a bug where pod infra containers were not properly unmounted after exiting. - Fixed a bug where networks created with podman network create with an IPv6 subnet did not properly set an IPv6 default route. - Fixed a bug where the podman save command would not work properly when its output was piped to another command (#7017). - Fixed a bug where containers using a systemd init on a cgroups v1 system could leak mounts under /sys/fs/cgroup/systemd to the host. - Fixed a bug where podman build would not generate an event on completion (#7022). - Fixed a bug where the podman history command with remote Podman printed incorrect creation times for layers (#7122). - Fixed a bug where Podman would not create working directories specified by the container image if they did not exist. - Fixed a bug where Podman did not clear CMD from the container image if the user overrode ENTRYPOINT (#7115). - Fixed a bug where error parsing image names were not fully reported (part of the error message containing the exact issue was dropped). - Fixed a bug where the podman images command with remote Podman did not support printing image tags in Go templates supplied to the --format flag (#7123). - Fixed a bug where the podman rmi --force command would not attempt to unmount containers it was removing, which could cause a failure to remove the image. - Fixed a bug where the podman generate systemd --new command could incorrectly quote arguments to Podman that contained whitespace, leading to nonfunctional unit files (#7285). - Fixed a bug where the podman version command did not properly include build time and Git commit. - Fixed a bug where running systemd in a Podman container on a system that did not use the systemd cgroup manager would fail (#6734). - Fixed a bug where capabilities from --cap-add were not properly added when a container was started as a non-root user via --user. - Fixed a bug where Pod infra containers were not properly cleaned up when they stopped, causing networking issues (#7103).

    - Fixed a bug where the libpod and compat Build endpoints did not accept the application/tar content type (instead only accepting application/x-tar) (#7185). - Fixed a bug where the libpod Exists endpoint would attempt to write a second header in some error conditions (#7197). - Fixed a bug where compat and libpod Network Inspect and Network Remove endpoints would return a 500 instead of 404 when the requested network was not found. - Added a versioned _ping endpoint (e.g. http://localhost/v1.40/_ping). - Fixed a bug where containers started through a systemd-managed instance of the REST API would be shut down when podman system service shut down due to its idle timeout (#7294). - Added stronger parameter verification for the libpod Network Create endpoint to ensure subnet mask is a valid value. - The Pod URL parameter to the Libpod Container List endpoint has been deprecated; the information previously gated by the Pod boolean will now be included in the response unconditionally.

    Update to v2.0.4


    Update to v2.0.3

    Update to podman v2.0.2

    Update to podman v2.0.0

    Update to podman v1.9.3:

    Update podman to v1.9.1:

    - Fixed a bug where healthchecks could become nonfunctional if container log paths were manually set with --log-path and multiple container logs were placed in the same directory - Fixed a bug where rootless Podman could, when using an older libpod.conf, print numerous warning messages about an invalid CGroup manager config - Fixed a bug where rootless Podman would sometimes fail to close the rootless user namespace when joining it
    Update podman to v1.9.0:

    - Experimental support has been added for podman run --userns=auto, which automatically allocates a unique UID and GID range for the new container's user namespace - The podman play kube command now has a --network flag to place the created pod in one or more CNI networks - The podman commit command now supports an --iidfile flag to write the ID of the committed image to a file - Initial support for the new containers.conf configuration file has been added. containers.conf allows for much more detailed configuration of some Podman functionality

    - There has been a major cleanup of the podman info command resulting in breaking changes. Many fields have been renamed to better suit usage with APIv2 - All uses of the --timeout flag have been switched to prefer the alternative --time. The --timeout flag will continue to work, but man pages and --help will use the --time flag instead

    - Fixed a bug where some volume mounts from the host would sometimes not properly determine the flags they should use when mounting - Fixed a bug where Podman was not propagating $PATH to Conmon and the OCI runtime, causing issues for some OCI runtimes that required it - Fixed a bug where rootless Podman would print error messages about missing support for systemd cgroups when run in a container with no cgroup support - Fixed a bug where podman play kube would not properly handle container-only port mappings (#5610) - Fixed a bug where the podman container prune command was not pruning containers in the created and configured states - Fixed a bug where Podman was not properly removing CNI IP address allocations after a reboot (#5433) - Fixed a bug where Podman was not properly applying the default Seccomp profile when --security-opt was not given at the command line

    - Many Libpod API endpoints have been added, including Changes, Checkpoint, Init, and Restore - Resolved issues where the podman system service command would time out and exit while there were still active connections - Stability overall has greatly improved as we prepare the API for a beta release soon with Podman 2.0

    - The default infra image for pods has been upgraded to k8s.gcr.io/pause:3.2 (from 3.1) to address a bug in the architecture metadata for non-AMD64 images - The slirp4netns networking utility in rootless Podman now uses Seccomp filtering where available for improved security - Updated Buildah to v1.14.8 - Updated containers/storage to v1.18.2 - Updated containers/image to v5.4.3 - Updated containers/common to v0.8.1

    Update podman to v1.8.2:

    - Initial support for automatically updating containers managed via Systemd unit files has been merged. This allows containers to automatically upgrade if a newer version of their image becomes available

    - Fixed a bug where unit files generated by podman generate systemd --new would not force containers to detach, causing the unit to time out when trying to start - Fixed a bug where podman system reset could delete important system directories if run as rootless on installations created by older Podman (#4831) - Fixed a bug where image built by podman build would not properly set the OS and Architecture they were built with (#5503) - Fixed a bug where attached podman run with --sig-proxy enabled (the default), when built with Go 1.14, would repeatedly send signal 23 to the process in the container and could generate errors when the container stopped (#5483) - Fixed a bug where rootless podman run commands could hang when forwarding ports - Fixed a bug where rootless Podman would not work when /proc was mounted with the hidepid option set - Fixed a bug where the podman system service command would use large amounts of CPU when --timeout was set to 0 (#5531)

    - Initial support for Libpod endpoints related to creating and operating on image manifest lists has been added - The Libpod Healthcheck and Events API endpoints are now supported - The Swagger endpoint can now handle cases where no Swagger documentation has been generated
    Update podman to v1.8.1:

    - Many networking-related flags have been added to podman pod create to enable customization of pod networks, including --add-host, --dns, --dns-opt, --dns-search, --ip, --mac-address, --network, and --no-hosts - The podman ps --format=json command now includes the ID of the image containers were created with - The podman run and podman create commands now feature an --rmi flag to remove the image the container was using after it exits (if no other containers are using said image) ([#4628](https://github.com/containers/libpod/issues/4628)) - The podman create and podman run commands now support the --device-cgroup-rule flag (#4876) - While the HTTP API remains in alpha, many fixes and additions have landed. These are documented in a separate subsection below - The podman create and podman run commands now feature a --no-healthcheck flag to disable healthchecks for a container (#5299) - Containers now recognize the io.containers.capabilities label, which specifies a list of capabilities required by the image to run. These capabilities will be used as long as they are more restrictive than the default capabilities used - YAML produced by the podman generate kube command now includes SELinux configuration passed into the container via --security-opt label=... (#4950)

    - Fixed CVE-2020-1726, a security issue where volumes manually populated before first being mounted into a container could have those contents overwritten on first being mounted into a container - Fixed a bug where Podman containers with user namespaces in CNI networks with the DNS plugin enabled would not have the DNS plugin's nameserver added to their resolv.conf ([#5256](https://github.com/containers/libpod/issues/5256)) - Fixed a bug where trailing / characters in image volume definitions could cause them to not be overridden by a user-specified mount at the same location ([#5219](https://github.com/containers/libpod/issues/5219)) - Fixed a bug where the label option in libpod.conf, used to disable SELinux by default, was not being respected (#5087) - Fixed a bug where the podman login and podman logout commands required the registry to log into be specified (#5146) - Fixed a bug where detached rootless Podman containers could not forward ports (#5167) - Fixed a bug where rootless Podman could fail to run if the pause process had died - Fixed a bug where Podman ignored labels that were specified with only a key and no value (#3854) - Fixed a bug where Podman would fail to create named volumes when the backing filesystem did not support SELinux labelling (#5200) - Fixed a bug where --detach-keys='' would not disable detaching from a container (#5166) - Fixed a bug where the podman ps command was too aggressive when filtering containers and would force --all on in too many situations - Fixed a bug where the podman play kube command was ignoring image configuration, including volumes, working directory, labels, and stop signal (#5174) - Fixed a bug where the Created and CreatedTime fields in podman images --format=json were misnamed, which also broke Go template output for those fields ([#5110](https://github.com/containers/libpod/issues/5110)) - Fixed a bug where rootless Podman containers with ports forwarded could hang when started (#5182) - Fixed a bug where podman pull could fail to parse registry names including port numbers - Fixed a bug where Podman would incorrectly attempt to validate image OS and architecture when starting containers - Fixed a bug where Bash completion for podman build -f would not list available files that could be built (#3878) - Fixed a bug where podman commit --change would perform incorrect validation, resulting in valid changes being rejected (#5148) - Fixed a bug where podman logs --tail could take large amounts of memory when the log file for a container was large (#5131) - Fixed a bug where Podman would sometimes incorrectly generate firewall rules on systems using firewalld - Fixed a bug where the podman inspect command would not display network information for containers properly if a container joined multiple CNI networks ([#4907](https://github.com/containers/libpod/issues/4907)) - Fixed a bug where the --uts flag to podman create and podman run would only allow specifying containers by full ID (#5289) - Fixed a bug where rootless Podman could segfault when passed a large number of file descriptors - Fixed a bug where the podman port command was incorrectly interpreting additional arguments as container names, instead of port numbers - Fixed a bug where units created by podman generate systemd did not depend on network targets, and so could start before the system network was ready (#4130) - Fixed a bug where exec sessions in containers which did not specify a user would not inherit supplemental groups added to the container via --group-add - Fixed a bug where Podman would not respect the $TMPDIR environment variable for placing large temporary files during some operations (e.g. podman pull) ([#5411](https://github.com/containers/libpod/issues/5411))

    - Initial support for secure connections to servers via SSH tunneling has been added - Initial support for the libpod create and logs endpoints for containers has been added - Added a /swagger/ endpoint to serve API documentation - The json endpoint for containers has received many fixes - Filtering images and containers has been greatly improved, with many bugs fixed and documentation improved - Image creation endpoints (commit, pull, etc) have seen many fixes - Server timeout has been fixed so that long operations will no longer trigger the timeout and shut the server down - The stats endpoint for containers has seen major fixes and now provides accurate output - Handling the HTTP 304 status code has been fixed for all endpoints - Many fixes have been made to API documentation to ensure it matches the code

    - The Created field to podman images --format=json has been renamed to CreatedSince as part of the fix for (#5110). Go templates using the old name shou ld still work - The CreatedTime field to podman images --format=json has been renamed to CreatedAt as part of the fix for (#5110). Go templates using the old name should still work - The before filter to podman images has been renamed to since for Docker compatibility. Using before will still work, but documentation has been changed to use the new since filter - Using the --password flag to podman login now warns that passwords are being passed in plaintext - Some common cases where Podman would deadlock have been fixed to warn the user that podman system renumber must be run to resolve the deadlock

    conmon was update to v2.0.20 (bsc#1175821)


    - Add option to delay execution of exit command

    - tty: flush pending data when fd is ready

    - store status while waiting for pid

    - drop usage of splice(2) - avoid hanging on stdin - stdio: sometimes quit main loop after io is done - ignore sigpipe

    - oom: fix potential race between verification steps

    - log: reject --log-tag with k8s-file - chmod std files pipes - adjust score to -1000 to prevent conmon from ever being OOM killed - container OOM: verify cgroup hasn't been cleaned up before reporting OOM - journal logging: write to /dev/null instead of -1
    fuse-overlayfs was updated to 1.1.2 (bsc#1175821):

    libcontainers-common was updated to fix:






    Advisory IDSUSE-RU-2020:2735-1
    ReleasedThu Sep 24 13:32:25 2020
    SummaryRecommended update for systemd-rpm-macros
    Typerecommended
    Severitymoderate
    References1173034
    Description:

    This update for systemd-rpm-macros fixes the following issues:


    Advisory IDSUSE-SU-2020:2744-1
    ReleasedThu Sep 24 17:56:23 2020
    SummarySecurity update for tiff
    Typesecurity
    Severitymoderate
    References1146608,CVE-2019-14973
    Description:

    This update for tiff fixes the following issues:


    Advisory IDSUSE-SU-2020:2749-1
    ReleasedFri Sep 25 11:10:33 2020
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1167976,1173986,1173991,1174284,1174420,1175686,1176756,CVE-2020-15663,CVE-2020-15664,CVE-2020-15670,CVE-2020-15673,CVE-2020-15676,CVE-2020-15677,CVE-2020-15678
    Description:

    This update for MozillaFirefox fixes the following issues:




    Advisory IDSUSE-OU-2020:2758-1
    ReleasedFri Sep 25 19:46:16 2020
    SummaryOptional update for pyzy
    Typeoptional
    Severitylow
    References
    Description:

    This update for pyzy doesn't fix any user visible issues, but improves the building of the package from its source.


    Advisory IDSUSE-RU-2020:2773-1
    ReleasedTue Sep 29 08:15:31 2020
    SummaryRecommended update for python3-susepubliccloudinfo
    Typerecommended
    Severitymoderate
    References1176102,1176103
    Description:

    This update for python3-susepubliccloudinfo contains the following fixes:


    Advisory IDSUSE-RU-2020:2782-1
    ReleasedTue Sep 29 11:40:22 2020
    SummaryRecommended update for systemd-rpm-macros
    Typerecommended
    Severityimportant
    References1176932
    Description:

    This update for systemd-rpm-macros fixes the following issues:



    Advisory IDSUSE-RU-2020:2613-1
    ReleasedTue Sep 29 14:06:01 2020
    SummaryRecommended update for certification-sles-eal4, installation-images, patterns-certification, system-role-common-criteria
    Typerecommended
    Severitymoderate
    References1172898,1176112
    Description:

    This update for certification-sles-eal4, installation-images, patterns-certification, system-role-common-criteria fixes the following issues:
    This updates provided various packages required for Common Criteria certification.
    certification-sles-eal4:


    patterns-certification:

    system-role-common-criteria:


    Advisory IDSUSE-RU-2020:2796-1
    ReleasedTue Sep 29 14:30:55 2020
    SummaryRecommended update for hyper-v
    Typerecommended
    Severitymoderate
    References1116957
    Description:

    This update for hyper-v fixes the following issues:


    Advisory IDSUSE-RU-2020:2804-1
    ReleasedWed Sep 30 11:43:16 2020
    SummaryRecommended update for xiterm
    Typerecommended
    Severitymoderate
    References1158271
    Description:

    This update for xiterm fixes the following issues:


    Advisory IDSUSE-OU-2020:2811-1
    ReleasedThu Oct 1 09:19:57 2020
    SummaryOptional update for adding Grafana dashboards to SLES for SAP
    Typeoptional
    Severitymoderate
    References
    Description:

    This update adds grafana-ha-cluster-dashboards, grafana-sap-hana-dashboards, grafana-sap-netweaver-dashboards, grafana-sap-providers to SLES for SAP (jsc#ECO-2237)
    grafana-ha-cluster-dashboards:


    grafana-sap-providers:

    grafana-sap-hana-dashboards:

    grafana-sap-netweaver-dashboards:


    Advisory IDSUSE-RU-2020:2825-1
    ReleasedFri Oct 2 08:44:28 2020
    SummaryRecommended update for suse-build-key
    Typerecommended
    Severitymoderate
    References1170347,1176759
    Description:

    This update for suse-build-key fixes the following issues:



    Advisory IDSUSE-SU-2020:2828-1
    ReleasedFri Oct 2 10:33:22 2020
    SummarySecurity update for perl-DBI
    Typesecurity
    Severityimportant
    References1176764,CVE-2019-20919
    Description:

    This update for perl-DBI fixes the following issues:


    Advisory IDSUSE-RU-2020:2842-1
    ReleasedFri Oct 2 12:17:55 2020
    SummaryRecommended update for golang-github-prometheus-node_exporter
    Typerecommended
    Severitymoderate
    References1151557
    Description:

    This update for golang-github-prometheus-node_exporter fixes the following issues:





    Breaking changes * The netdev collector CLI argument --collector.netdev.ignored-devices was renamed to --collector.netdev.device-blacklist in order to conform with the systemd collector. #1279 * The label named state on node_systemd_service_restart_total metrics was changed to name to better describe the metric. #1393 * Refactoring of the mdadm collector changes several metrics node_md_disks_active is removed node_md_disks now has a state label for 'fail', 'spare', 'active' disks. node_md_is_active is replaced by node_md_state with a state set of 'active', 'inactive', 'recovering', 'resync'. * Additional label mountaddr added to NFS device metrics to distinguish mounts from the same URL, but different IP addresses. #1417 * Metrics node_cpu_scaling_frequency_min_hrts and node_cpu_scaling_frequency_max_hrts of the cpufreq collector were renamed to node_cpu_scaling_frequency_min_hertz and node_cpu_scaling_frequency_max_hertz. #1510 * Collectors that are enabled, but are unable to find data to collect, now return 0 for node_scrape_collector_success.


    Advisory IDSUSE-RU-2020:2863-1
    ReleasedTue Oct 6 09:28:41 2020
    SummaryRecommended update for efivar
    Typerecommended
    Severitymoderate
    References1175989
    Description:

    This update for efivar fixes the following issues:


    Advisory IDSUSE-RU-2020:2885-1
    ReleasedFri Oct 9 14:50:51 2020
    SummaryRecommended update for xmlsec1
    Typerecommended
    Severitymoderate
    References1177233
    Description:


    This update for xmlsec1 fixes the following issue:


    Advisory IDSUSE-SU-2020:2899-1
    ReleasedTue Oct 13 14:18:03 2020
    SummarySecurity update for rubygem-activesupport-5_1
    Typesecurity
    Severitycritical
    References1172186,CVE-2020-8165
    Description:

    This update for rubygem-activesupport-5_1 fixes the following issues:


    Advisory IDSUSE-RU-2020:2910-1
    ReleasedTue Oct 13 16:02:04 2020
    SummaryRecommended update for cloud-regionsrv-client
    Typerecommended
    Severitymoderate
    References1176858,1176859
    Description:

    This update for cloud-regionsrv-client contains the following fixes:


    Advisory IDSUSE-RU-2020:2945-1
    ReleasedFri Oct 16 10:06:06 2020
    SummaryRecommended update for python-azure-agent
    Typerecommended
    Severitycritical
    References1176368,1176369,1177161,1177257
    Description:

    This update for python-azure-agent fixes the following issues:


    Update to version 2.2.49.2 (bsc#1176368, bsc#1176369)
    + Do not use --unit with systemd-cgls (#1910) + Report processes that do not belong to the agent's cgroup (#1908) + Use controller mount point for extension cgroup path (#1899) + Improvements in setup of cgroups (#1896) + Remove ExtensionsMetricsData and per-process Memory data (#1884) + Fix return value of start_extension_command (#1927) + Remove import * (#1900) + Fix flaky ExtensionCleanupTest class (#1898) + Fix codecov badge (#1883) + Changed codecov to run on py3.8 (#1875) + Update documentation on /dev/random (#1909) + Mount options are in mount(8) (#1893) + Remove ssh host key thumbprint in report ready (#1913) + Emit AutoUpdate value at service start only (#1907) + Add logging for version mismatch (#1895) + Send telemetry event if libdir changes (#1897) + Add log collector utility (#1847) + Move AutoUpdate reporting to HeartBeat event (#1919) + Removing infinite download of extension manifest without a new GS (#1874) + Fix wrongful dir deletion (#1873) + Fix the cleanup-outdated-handlers to only delete handlers that are not present in the GS (#1889) + Expose periods of environment thread in waagent.conf (#1891) + Added user @kevinclark19a as Contributor. (#1906)

    + [#1741] Do not update goal state when refreshing the host plugin + [#1731] Fix upgrade sequence when update command fails + [#1725] Initialize CPU usage + [#1716, #1737] Added UTC logging and correcting the format + [#1651, #1729] Start sending PerformanceCounter metrics and additional memory information for Cgroups


    Advisory IDSUSE-SU-2020:2947-1
    ReleasedFri Oct 16 15:23:07 2020
    SummarySecurity update for gcc10, nvptx-tools
    Typesecurity
    Severitymoderate
    References1172798,1172846,1173972,1174753,1174817,1175168,CVE-2020-13844
    Description:

    This update for gcc10, nvptx-tools fixes the following issues:
    This update provides the GCC10 compiler suite and runtime libraries.
    The base SUSE Linux Enterprise libraries libgcc_s1, libstdc++6 are replaced by the gcc10 variants.
    The new compiler variants are available with '-10' suffix, you can specify them via:
    CC=gcc-10 CXX=g++-10
    or similar commands.
    For a detailed changelog check out https://gcc.gnu.org/gcc-10/changes.html
    Changes in nvptx-tools:


    Advisory IDSUSE-RU-2020:2950-1
    ReleasedFri Oct 16 15:49:51 2020
    SummaryRecommended update for python-aliyun-python-sdk, python-aliyun-python-sdk-aas, python-aliyun-python-sdk-acm, python-aliyun-python-sdk-acms-open, python-aliyun-python-sdk-actiontrail, python-aliyun-python-sdk-adb, python-aliyun-python-sdk-address-purification, python-aliyun-python-sdk-aegis, python-aliyun-python-sdk-afs, python-aliyun-python-sdk-airec, python-aliyun-python-sdk-alidns, python-aliyun-python-sdk-aligreen-console, python-aliyun-python-sdk-alimt, python-aliyun-python-sdk-alinlp, python-aliyun-python-sdk-aliyuncvc, python-aliyun-python-sdk-amqp-open, python-aliyun-python-sdk-appmallsservice, python-aliyun-python-sdk-arms, python-aliyun-python-sdk-arms4finance, python-aliyun-python-sdk-baas, python-aliyun-python-sdk-brinekingdom, python-aliyun-python-sdk-bss, python-aliyun-python-sdk-bssopenapi, python-aliyun-python-sdk-cams, python-aliyun-python-sdk-cas, python-aliyun-python-sdk-cassandra, python-aliyun-python-sdk-cbn, python-aliyun-python-sdk-ccc, python-aliyun-python-sdk-ccs, python-aliyun-python-sdk-cdn, python-aliyun-python-sdk-chatbot, python-aliyun-python-sdk-clickhouse, python-aliyun-python-sdk-cloudapi, python-aliyun-python-sdk-cloudauth, python-aliyun-python-sdk-cloudesl, python-aliyun-python-sdk-cloudgame, python-aliyun-python-sdk-cloudmarketing, python-aliyun-python-sdk-cloudphoto, python-aliyun-python-sdk-cloudwf, python-aliyun-python-sdk-cms, python-aliyun-python-sdk-codeup, python-aliyun-python-sdk-companyreg, python-aliyun-python-sdk-core, python-aliyun-python-sdk-cr, python-aliyun-python-sdk-crm, python-aliyun-python-sdk-cs, python-aliyun-python-sdk-csb, python-aliyun-python-sdk-cspro, python-aliyun-python-sdk-cusanalytic_sc_online, python-aliyun-python-sdk-das, python-aliyun-python-sdk-dataworks-public, python-aliyun-python-sdk-dbfs, python-aliyun-python-sdk-dbs, python-aliyun-python-sdk-dcdn, python-aliyun-python-sdk-dds, python-aliyun-python-sdk-democenter, python-aliyun-python-sdk-devops-rdc, python-aliyun-python-sdk-dms-enterprise, python-aliyun-python-sdk-domain, python-aliyun-python-sdk-domain-intl, python-aliyun-python-sdk-drds, python-aliyun-python-sdk-dts, python-aliyun-python-sdk-dybaseapi, python-aliyun-python-sdk-dyplsapi, python-aliyun-python-sdk-dypnsapi, python-aliyun-python-sdk-dysmsapi, python-aliyun-python-sdk-dyvmsapi, python-aliyun-python-sdk-eas, python-aliyun-python-sdk-eci, python-aliyun-python-sdk-ecs, python-aliyun-python-sdk-edas, python-aliyun-python-sdk-ehpc, python-aliyun-python-sdk-elasticsearch, python-aliyun-python-sdk-emr, python-aliyun-python-sdk-ens, python-aliyun-python-sdk-ess, python-aliyun-python-sdk-faas, python-aliyun-python-sdk-facebody, python-aliyun-python-sdk-fnf, python-aliyun-python-sdk-foas, python-aliyun-python-sdk-ft, python-aliyun-python-sdk-geoip, python-aliyun-python-sdk-goodstech, python-aliyun-python-sdk-gpdb, python-aliyun-python-sdk-green, python-aliyun-python-sdk-gts-phd, python-aliyun-python-sdk-hbase, python-aliyun-python-sdk-hbr, python-aliyun-python-sdk-highddos, python-aliyun-python-sdk-hiknoengine, python-aliyun-python-sdk-hivisengine, python-aliyun-python-sdk-hpc, python-aliyun-python-sdk-hsm, python-aliyun-python-sdk-httpdns, python-aliyun-python-sdk-imageaudit, python-aliyun-python-sdk-imageenhan, python-aliyun-python-sdk-imageprocess, python-aliyun-python-sdk-imagerecog, python-aliyun-python-sdk-imagesearch, python-aliyun-python-sdk-imageseg, python-aliyun-python-sdk-imgsearch, python-aliyun-python-sdk-imm, python-aliyun-python-sdk-industry-brain, python-aliyun-python-sdk-iot, python-aliyun-python-sdk-iqa, python-aliyun-python-sdk-ivision, python-aliyun-python-sdk-ivpd, python-aliyun-python-sdk-jaq, python-aliyun-python-sdk-jarvis, python-aliyun-python-sdk-jarvis-public, python-aliyun-python-sdk-kms, python-aliyun-python-sdk-ledgerdb, python-aliyun-python-sdk-linkedmall, python-aliyun-python-sdk-linkface, python-aliyun-python-sdk-linkwan, python-aliyun-python-sdk-live, python-aliyun-python-sdk-lubancloud, python-aliyun-python-sdk-market, python-aliyun-python-sdk-mopen, python-aliyun-python-sdk-mts, python-aliyun-python-sdk-multimediaai, python-aliyun-python-sdk-nas, python-aliyun-python-sdk-netana, python-aliyun-python-sdk-nlp-automl, python-aliyun-python-sdk-nls-cloud-meta, python-aliyun-python-sdk-objectdet, python-aliyun-python-sdk-ocr, python-aliyun-python-sdk-ocs, python-aliyun-python-sdk-oms, python-aliyun-python-sdk-ons, python-aliyun-python-sdk-onsmqtt, python-aliyun-python-sdk-oos, python-aliyun-python-sdk-openanalytics, python-aliyun-python-sdk-openanalytics-open, python-aliyun-python-sdk-opensearch, python-aliyun-python-sdk-ossadmin, python-aliyun-python-sdk-ots, python-aliyun-python-sdk-outboundbot, python-aliyun-python-sdk-paistudio, python-aliyun-python-sdk-petadata, python-aliyun-python-sdk-polardb, python-aliyun-python-sdk-productcatalog, python-aliyun-python-sdk-pts, python-aliyun-python-sdk-push, python-aliyun-python-sdk-pvtz, python-aliyun-python-sdk-qualitycheck, python-aliyun-python-sdk-quickbi-public, python-aliyun-python-sdk-r-kvstore, python-aliyun-python-sdk-ram, python-aliyun-python-sdk-rdc, python-aliyun-python-sdk-rds, python-aliyun-python-sdk-reid, python-aliyun-python-sdk-resourcemanager, python-aliyun-python-sdk-retailcloud, python-aliyun-python-sdk-risk, python-aliyun-python-sdk-ros, python-aliyun-python-sdk-rtc, python-aliyun-python-sdk-sae, python-aliyun-python-sdk-saf, python-aliyun-python-sdk-sas, python-aliyun-python-sdk-sas-api, python-aliyun-python-sdk-scdn, python-aliyun-python-sdk-schedulerx2, python-aliyun-python-sdk-sddp, python-aliyun-python-sdk-slb, python-aliyun-python-sdk-smartag, python-aliyun-python-sdk-smc, python-aliyun-python-sdk-snsuapi, python-aliyun-python-sdk-status, python-aliyun-python-sdk-sts, python-aliyun-python-sdk-tag, python-aliyun-python-sdk-tesladam, python-aliyun-python-sdk-teslamaxcompute, python-aliyun-python-sdk-teslastream, python-aliyun-python-sdk-trademark, python-aliyun-python-sdk-ubsms, python-aliyun-python-sdk-uis, python-aliyun-python-sdk-unimkt, python-aliyun-python-sdk-vcs, python-aliyun-python-sdk-viapiutils, python-aliyun-python-sdk-videoenhan, python-aliyun-python-sdk-videorecog, python-aliyun-python-sdk-videosearch, python-aliyun-python-sdk-videoseg, python-aliyun-python-sdk-visionai, python-aliyun-python-sdk-visionai-poc, python-aliyun-python-sdk-vod, python-aliyun-python-sdk-voicenavigator, python-aliyun-python-sdk-vpc, python-aliyun-python-sdk-vs, python-aliyun-python-sdk-waf-openapi, python-aliyun-python-sdk-webplus, python-aliyun-python-sdk-welfare-inner, python-aliyun-python-sdk-workorder, python-aliyun-python-sdk-xspace, python-aliyun-python-sdk-xtrace, python-aliyun-python-sdk-yundun, python-aliyun-python-sdk-yundun-ds, python-pycryptodome
    Typerecommended
    Severitymoderate
    References1175230
    Description:

    This update for python-aliyun-python-sdk, python-aliyun-python-sdk-aas, python-aliyun-python-sdk-acm, python-aliyun-python-sdk-acms-open, python-aliyun-python-sdk-actiontrail, python-aliyun-python-sdk-adb, python-aliyun-python-sdk-address-purification, python-aliyun-python-sdk-aegis, python-aliyun-python-sdk-afs, python-aliyun-python-sdk-airec, python-aliyun-python-sdk-alidns, python-aliyun-python-sdk-aligreen-console, python-aliyun-python-sdk-alimt, python-aliyun-python-sdk-alinlp, python-aliyun-python-sdk-aliyuncvc, python-aliyun-python-sdk-amqp-open, python-aliyun-python-sdk-appmallsservice, python-aliyun-python-sdk-arms, python-aliyun-python-sdk-arms4finance, python-aliyun-python-sdk-baas, python-aliyun-python-sdk-brinekingdom, python-aliyun-python-sdk-bss, python-aliyun-python-sdk-bssopenapi, python-aliyun-python-sdk-cams, python-aliyun-python-sdk-cas, python-aliyun-python-sdk-cassandra, python-aliyun-python-sdk-cbn, python-aliyun-python-sdk-ccc, python-aliyun-python-sdk-ccs, python-aliyun-python-sdk-cdn, python-aliyun-python-sdk-chatbot, python-aliyun-python-sdk-clickhouse, python-aliyun-python-sdk-cloudapi, python-aliyun-python-sdk-cloudauth, python-aliyun-python-sdk-cloudesl, python-aliyun-python-sdk-cloudgame, python-aliyun-python-sdk-cloudmarketing, python-aliyun-python-sdk-cloudphoto, python-aliyun-python-sdk-cloudwf, python-aliyun-python-sdk-cms, python-aliyun-python-sdk-codeup, python-aliyun-python-sdk-companyreg, python-aliyun-python-sdk-core, python-aliyun-python-sdk-cr, python-aliyun-python-sdk-crm, python-aliyun-python-sdk-cs, python-aliyun-python-sdk-csb, python-aliyun-python-sdk-cspro, python-aliyun-python-sdk-cusanalytic_sc_online, python-aliyun-python-sdk-das, python-aliyun-python-sdk-dataworks-public, python-aliyun-python-sdk-dbfs, python-aliyun-python-sdk-dbs, python-aliyun-python-sdk-dcdn, python-aliyun-python-sdk-dds, python-aliyun-python-sdk-democenter, python-aliyun-python-sdk-devops-rdc, python-aliyun-python-sdk-dms-enterprise, python-aliyun-python-sdk-domain, python-aliyun-python-sdk-domain-intl, python-aliyun-python-sdk-drds, python-aliyun-python-sdk-dts, python-aliyun-python-sdk-dybaseapi, python-aliyun-python-sdk-dyplsapi, python-aliyun-python-sdk-dypnsapi, python-aliyun-python-sdk-dysmsapi, python-aliyun-python-sdk-dyvmsapi, python-aliyun-python-sdk-eas, python-aliyun-python-sdk-eci, python-aliyun-python-sdk-ecs, python-aliyun-python-sdk-edas, python-aliyun-python-sdk-ehpc, python-aliyun-python-sdk-elasticsearch, python-aliyun-python-sdk-emr, python-aliyun-python-sdk-ens, python-aliyun-python-sdk-ess, python-aliyun-python-sdk-faas, python-aliyun-python-sdk-facebody, python-aliyun-python-sdk-fnf, python-aliyun-python-sdk-foas, python-aliyun-python-sdk-ft, python-aliyun-python-sdk-geoip, python-aliyun-python-sdk-goodstech, python-aliyun-python-sdk-gpdb, python-aliyun-python-sdk-green, python-aliyun-python-sdk-gts-phd, python-aliyun-python-sdk-hbase, python-aliyun-python-sdk-hbr, python-aliyun-python-sdk-highddos, python-aliyun-python-sdk-hiknoengine, python-aliyun-python-sdk-hivisengine, python-aliyun-python-sdk-hpc, python-aliyun-python-sdk-hsm, python-aliyun-python-sdk-httpdns, python-aliyun-python-sdk-imageaudit, python-aliyun-python-sdk-imageenhan, python-aliyun-python-sdk-imageprocess, python-aliyun-python-sdk-imagerecog, python-aliyun-python-sdk-imagesearch, python-aliyun-python-sdk-imageseg, python-aliyun-python-sdk-imgsearch, python-aliyun-python-sdk-imm, python-aliyun-python-sdk-industry-brain, python-aliyun-python-sdk-iot, python-aliyun-python-sdk-iqa, python-aliyun-python-sdk-ivision, python-aliyun-python-sdk-ivpd, python-aliyun-python-sdk-jaq, python-aliyun-python-sdk-jarvis, python-aliyun-python-sdk-jarvis-public, python-aliyun-python-sdk-kms, python-aliyun-python-sdk-ledgerdb, python-aliyun-python-sdk-linkedmall, python-aliyun-python-sdk-linkface, python-aliyun-python-sdk-linkwan, python-aliyun-python-sdk-live, python-aliyun-python-sdk-lubancloud, python-aliyun-python-sdk-market, python-aliyun-python-sdk-mopen, python-aliyun-python-sdk-mts, python-aliyun-python-sdk-multimediaai, python-aliyun-python-sdk-nas, python-aliyun-python-sdk-netana, python-aliyun-python-sdk-nlp-automl, python-aliyun-python-sdk-nls-cloud-meta, python-aliyun-python-sdk-objectdet, python-aliyun-python-sdk-ocr, python-aliyun-python-sdk-ocs, python-aliyun-python-sdk-oms, python-aliyun-python-sdk-ons, python-aliyun-python-sdk-onsmqtt, python-aliyun-python-sdk-oos, python-aliyun-python-sdk-openanalytics, python-aliyun-python-sdk-openanalytics-open, python-aliyun-python-sdk-opensearch, python-aliyun-python-sdk-ossadmin, python-aliyun-python-sdk-ots, python-aliyun-python-sdk-outboundbot, python-aliyun-python-sdk-paistudio, python-aliyun-python-sdk-petadata, python-aliyun-python-sdk-polardb, python-aliyun-python-sdk-productcatalog, python-aliyun-python-sdk-pts, python-aliyun-python-sdk-push, python-aliyun-python-sdk-pvtz, python-aliyun-python-sdk-qualitycheck, python-aliyun-python-sdk-quickbi-public, python-aliyun-python-sdk-r-kvstore, python-aliyun-python-sdk-ram, python-aliyun-python-sdk-rdc, python-aliyun-python-sdk-rds, python-aliyun-python-sdk-reid, python-aliyun-python-sdk-resourcemanager, python-aliyun-python-sdk-retailcloud, python-aliyun-python-sdk-risk, python-aliyun-python-sdk-ros, python-aliyun-python-sdk-rtc, python-aliyun-python-sdk-sae, python-aliyun-python-sdk-saf, python-aliyun-python-sdk-sas, python-aliyun-python-sdk-sas-api, python-aliyun-python-sdk-scdn, python-aliyun-python-sdk-schedulerx2, python-aliyun-python-sdk-sddp, python-aliyun-python-sdk-slb, python-aliyun-python-sdk-smartag, python-aliyun-python-sdk-smc, python-aliyun-python-sdk-snsuapi, python-aliyun-python-sdk-status, python-aliyun-python-sdk-sts, python-aliyun-python-sdk-tag, python-aliyun-python-sdk-tesladam, python-aliyun-python-sdk-teslamaxcompute, python-aliyun-python-sdk-teslastream, python-aliyun-python-sdk-trademark, python-aliyun-python-sdk-ubsms, python-aliyun-python-sdk-uis, python-aliyun-python-sdk-unimkt, python-aliyun-python-sdk-vcs, python-aliyun-python-sdk-viapiutils, python-aliyun-python-sdk-videoenhan, python-aliyun-python-sdk-videorecog, python-aliyun-python-sdk-videosearch, python-aliyun-python-sdk-videoseg, python-aliyun-python-sdk-visionai, python-aliyun-python-sdk-visionai-poc, python-aliyun-python-sdk-vod, python-aliyun-python-sdk-voicenavigator, python-aliyun-python-sdk-vpc, python-aliyun-python-sdk-vs, python-aliyun-python-sdk-waf-openapi, python-aliyun-python-sdk-webplus, python-aliyun-python-sdk-welfare-inner, python-aliyun-python-sdk-workorder, python-aliyun-python-sdk-xspace, python-aliyun-python-sdk-xtrace, python-aliyun-python-sdk-yundun, python-aliyun-python-sdk-yundun-ds, python-pycryptodome contains the following changes:
    Initial shipment for Alibaba Cloud SDK and dependencies. (bsc#1175230, jsc#ECO-2011, jsc#PM-1919)
    The following packages are being added: python-aliyun-python-sdk-aas python-aliyun-python-sdk-acms-open python-aliyun-python-sdk-acm python-aliyun-python-sdk-actiontrail python-aliyun-python-sdk-adb python-aliyun-python-sdk-address-purification python-aliyun-python-sdk-aegis python-aliyun-python-sdk-afs python-aliyun-python-sdk-airec python-aliyun-python-sdk-alidns python-aliyun-python-sdk-aligreen-console python-aliyun-python-sdk-alimt python-aliyun-python-sdk-alinlp python-aliyun-python-sdk-aliyuncvc python-aliyun-python-sdk-amqp-open python-aliyun-python-sdk-appmallsservice python-aliyun-python-sdk-arms4finance python-aliyun-python-sdk-arms python-aliyun-python-sdk-baas python-aliyun-python-sdk-brinekingdom python-aliyun-python-sdk-bssopenapi python-aliyun-python-sdk-bss python-aliyun-python-sdk-cams python-aliyun-python-sdk-cassandra python-aliyun-python-sdk-cas python-aliyun-python-sdk-cbn python-aliyun-python-sdk-ccc python-aliyun-python-sdk-ccs python-aliyun-python-sdk-cdn python-aliyun-python-sdk-chatbot python-aliyun-python-sdk-clickhouse python-aliyun-python-sdk-cloudapi python-aliyun-python-sdk-cloudauth python-aliyun-python-sdk-cloudesl python-aliyun-python-sdk-cloudgame python-aliyun-python-sdk-cloudmarketing python-aliyun-python-sdk-cloudphoto python-aliyun-python-sdk-cloudwf python-aliyun-python-sdk-cms python-aliyun-python-sdk-codeup python-aliyun-python-sdk-companyreg python-aliyun-python-sdk-core python-aliyun-python-sdk-crm python-aliyun-python-sdk-cr python-aliyun-python-sdk-csb python-aliyun-python-sdk-cspro python-aliyun-python-sdk-cs python-aliyun-python-sdk-cusanalytic_sc_online python-aliyun-python-sdk-das python-aliyun-python-sdk-dataworks-public python-aliyun-python-sdk-dbfs python-aliyun-python-sdk-dbs python-aliyun-python-sdk-dcdn python-aliyun-python-sdk-dds python-aliyun-python-sdk-democenter python-aliyun-python-sdk-devops-rdc python-aliyun-python-sdk-dms-enterprise python-aliyun-python-sdk-domain-intl python-aliyun-python-sdk-domain python-aliyun-python-sdk-drds python-aliyun-python-sdk-dts python-aliyun-python-sdk-dybaseapi python-aliyun-python-sdk-dyplsapi python-aliyun-python-sdk-dypnsapi python-aliyun-python-sdk-dysmsapi python-aliyun-python-sdk-dyvmsapi python-aliyun-python-sdk-eas python-aliyun-python-sdk-eci python-aliyun-python-sdk-ecs python-aliyun-python-sdk-edas python-aliyun-python-sdk-ehpc python-aliyun-python-sdk-elasticsearch python-aliyun-python-sdk-emr python-aliyun-python-sdk-ens python-aliyun-python-sdk-ess python-aliyun-python-sdk-faas python-aliyun-python-sdk-facebody python-aliyun-python-sdk-fnf python-aliyun-python-sdk-foas python-aliyun-python-sdk-ft python-aliyun-python-sdk-geoip python-aliyun-python-sdk-goodstech python-aliyun-python-sdk-gpdb python-aliyun-python-sdk-green python-aliyun-python-sdk-gts-phd python-aliyun-python-sdk-hbase python-aliyun-python-sdk-hbr python-aliyun-python-sdk-highddos python-aliyun-python-sdk-hiknoengine python-aliyun-python-sdk-hivisengine python-aliyun-python-sdk-hpc python-aliyun-python-sdk-hsm python-aliyun-python-sdk-httpdns python-aliyun-python-sdk-imageaudit python-aliyun-python-sdk-imageenhan python-aliyun-python-sdk-imageprocess python-aliyun-python-sdk-imagerecog python-aliyun-python-sdk-imagesearch python-aliyun-python-sdk-imageseg python-aliyun-python-sdk-imgsearch python-aliyun-python-sdk-imm python-aliyun-python-sdk-industry-brain python-aliyun-python-sdk-iot python-aliyun-python-sdk-iqa python-aliyun-python-sdk-ivision python-aliyun-python-sdk-ivpd python-aliyun-python-sdk-jaq python-aliyun-python-sdk-jarvis-public python-aliyun-python-sdk-jarvis python-aliyun-python-sdk-kms python-aliyun-python-sdk-ledgerdb python-aliyun-python-sdk-linkedmall python-aliyun-python-sdk-linkface python-aliyun-python-sdk-linkwan python-aliyun-python-sdk-live python-aliyun-python-sdk-lubancloud python-aliyun-python-sdk-market python-aliyun-python-sdk-mopen python-aliyun-python-sdk-mts python-aliyun-python-sdk-multimediaai python-aliyun-python-sdk-nas python-aliyun-python-sdk-netana python-aliyun-python-sdk-nlp-automl python-aliyun-python-sdk-nls-cloud-meta python-aliyun-python-sdk-objectdet python-aliyun-python-sdk-ocr python-aliyun-python-sdk-ocs python-aliyun-python-sdk-oms python-aliyun-python-sdk-onsmqtt python-aliyun-python-sdk-ons python-aliyun-python-sdk-oos python-aliyun-python-sdk-openanalytics-open python-aliyun-python-sdk-openanalytics python-aliyun-python-sdk-opensearch python-aliyun-python-sdk-ossadmin python-aliyun-python-sdk-ots python-aliyun-python-sdk-outboundbot python-aliyun-python-sdk-paistudio python-aliyun-python-sdk-petadata python-aliyun-python-sdk-polardb python-aliyun-python-sdk-productcatalog python-aliyun-python-sdk-pts python-aliyun-python-sdk-push python-aliyun-python-sdk-pvtz python-aliyun-python-sdk-qualitycheck python-aliyun-python-sdk-quickbi-public python-aliyun-python-sdk-ram python-aliyun-python-sdk-rdc python-aliyun-python-sdk-rds python-aliyun-python-sdk-reid python-aliyun-python-sdk-resourcemanager python-aliyun-python-sdk-retailcloud python-aliyun-python-sdk-risk python-aliyun-python-sdk-r-kvstore python-aliyun-python-sdk-ros python-aliyun-python-sdk-rtc python-aliyun-python-sdk-sae python-aliyun-python-sdk-saf python-aliyun-python-sdk-sas-api python-aliyun-python-sdk-sas python-aliyun-python-sdk-scdn python-aliyun-python-sdk-schedulerx2 python-aliyun-python-sdk-sddp python-aliyun-python-sdk-slb python-aliyun-python-sdk-smartag python-aliyun-python-sdk-smc python-aliyun-python-sdk-snsuapi python-aliyun-python-sdk-status python-aliyun-python-sdk-sts python-aliyun-python-sdk python-aliyun-python-sdk-tag python-aliyun-python-sdk-tesladam python-aliyun-python-sdk-teslamaxcompute python-aliyun-python-sdk-teslastream python-aliyun-python-sdk-trademark python-aliyun-python-sdk-ubsms python-aliyun-python-sdk-uis python-aliyun-python-sdk-unimkt python-aliyun-python-sdk-vcs python-aliyun-python-sdk-viapiutils python-aliyun-python-sdk-videoenhan python-aliyun-python-sdk-videorecog python-aliyun-python-sdk-videosearch python-aliyun-python-sdk-videoseg python-aliyun-python-sdk-visionai-poc python-aliyun-python-sdk-visionai python-aliyun-python-sdk-vod python-aliyun-python-sdk-voicenavigator python-aliyun-python-sdk-vpc python-aliyun-python-sdk-vs python-aliyun-python-sdk-waf-openapi python-aliyun-python-sdk-webplus python-aliyun-python-sdk-welfare-inner python-aliyun-python-sdk-workorder python-aliyun-python-sdk-xspace python-aliyun-python-sdk-xtrace python-aliyun-python-sdk-yundun-ds python-aliyun-python-sdk-yundun python-pycryptodome


    Advisory IDSUSE-SU-2020:2951-1
    ReleasedFri Oct 16 16:09:38 2020
    SummarySecurity update for transfig
    Typesecurity
    Severitymoderate
    References1143650,CVE-2019-14275
    Description:

    This update for transfig fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-RU-2020:2958-1
    ReleasedTue Oct 20 12:24:55 2020
    SummaryRecommended update for procps
    Typerecommended
    Severitymoderate
    References1158830
    Description:

    This update for procps fixes the following issues:


    Advisory IDSUSE-SU-2020:2966-1
    ReleasedTue Oct 20 16:03:58 2020
    SummarySecurity update for hunspell
    Typesecurity
    Severitylow
    References1151867,CVE-2019-16707
    Description:

    This update for hunspell fixes the following issues:


    Advisory IDSUSE-RU-2020:2971-1
    ReleasedTue Oct 20 16:41:36 2020
    SummaryRecommended update for shim-susesigned
    Typerecommended
    Severitymoderate
    References1177315
    Description:



    This update contains changes needed for Common criteria certification.
    shim:


    The Common Criteria system role for 15-SP2 was adjusted:


    Advisory IDSUSE-RU-2020:2983-1
    ReleasedWed Oct 21 15:03:03 2020
    SummaryRecommended update for file
    Typerecommended
    Severitymoderate
    References1176123
    Description:

    This update for file fixes the following issues:


    Advisory IDSUSE-RU-2020:2985-1
    ReleasedWed Oct 21 15:11:39 2020
    SummaryRecommended update for prometheus-ha_cluster_exporter
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for prometheus-ha_cluster_exporter fixes the following issues:


    Advisory IDSUSE-RU-2020:2992-1
    ReleasedThu Oct 22 09:10:59 2020
    SummaryRecommended update for prometheus-hanadb_exporter
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for prometheus-hanadb_exporter fixes the following issue:
    Release 0.7.2


    Advisory IDSUSE-RU-2020:2994-1
    ReleasedThu Oct 22 09:11:50 2020
    SummaryRecommended update for grafana-sap-netweaver-dashboards
    Typerecommended
    Severitymoderate
    References1177229
    Description:

    This update for grafana-sap-netweaver-dashboards fixes the following issue:
    Release 1.0.3


    Advisory IDSUSE-SU-2020:2995-1
    ReleasedThu Oct 22 10:03:09 2020
    SummarySecurity update for freetype2
    Typesecurity
    Severityimportant
    References1177914,CVE-2020-15999
    Description:

    This update for freetype2 fixes the following issues:


    Advisory IDSUSE-RU-2020:3004-1
    ReleasedThu Oct 22 17:44:31 2020
    SummaryRecommended update for python-shaptools, salt-shaptools, habootstrap-formula, saphanabootstrap-formula, sapnwbootstrap-formula
    Typerecommended
    Severitymoderate
    References1174994,1175709
    Description:



    python-shaptools:


    salt-shaptools:

    habootstrap-formula:

    saphanabootstrap-formula:

    sapnwbootstrap-formula:


    Advisory IDSUSE-RU-2020:3007-1
    ReleasedThu Oct 22 17:51:48 2020
    SummaryRecommended update for lifecycle-data-sle-module-live-patching
    Typerecommended
    Severitymoderate
    References1020320
    Description:

    This update for lifecycle-data-sle-module-live-patching fixes the following issues:


    Advisory IDSUSE-RU-2020:3012-1
    ReleasedThu Oct 22 22:36:57 2020
    SummaryRecommended update for sysstat
    Typerecommended
    Severitymoderate
    References1174227
    Description:

    This update for sysstat fixes the following issues:


    Advisory IDSUSE-SU-2020:3021-1
    ReleasedFri Oct 23 14:20:03 2020
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1176756,1177872,CVE-2020-15683,CVE-2020-15969
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-RU-2020:3025-1
    ReleasedFri Oct 23 15:33:09 2020
    SummaryRecommended update for myspell-dictionaries
    Typerecommended
    Severitymoderate
    References1176716
    Description:


    This update of myspell-dictionaries provides the following fix:


    Advisory IDSUSE-OU-2020:3026-1
    ReleasedFri Oct 23 15:35:51 2020
    SummaryOptional update for the Public Cloud Module
    Typeoptional
    Severitymoderate
    References
    Description:


    This update adds the Google Cloud Storage packages to the Public Cloud module (jsc#ECO-2398). The following packages were included:


    Advisory IDSUSE-RU-2020:3041-1
    ReleasedTue Oct 27 09:25:30 2020
    SummaryRecommended update for java-1_8_0-ibm
    Typerecommended
    Severitymoderate
    References1175295
    Description:

    This update for java-1_8_0-ibm fixes the following issues:


    Advisory IDSUSE-RU-2020:3046-1
    ReleasedTue Oct 27 14:41:21 2020
    SummaryRecommended update for shim-susesigned
    Typerecommended
    Severitymoderate
    References1177315
    Description:

    This update for shim-susesigned fixes the following issues:


    Advisory IDSUSE-RU-2020:3059-1
    ReleasedWed Oct 28 06:11:23 2020
    SummaryRecommended update for sysconfig
    Typerecommended
    Severitymoderate
    References1173391,1176285,1176325
    Description:

    This update for sysconfig fixes the following issues:


    Advisory IDSUSE-SU-2020:3060-1
    ReleasedWed Oct 28 08:09:21 2020
    SummarySecurity update for binutils
    Typesecurity
    Severitymoderate
    References1126826,1126829,1126831,1140126,1142649,1143609,1153768,1153770,1157755,1160254,1160590,1163333,1163744,CVE-2019-12972,CVE-2019-14250,CVE-2019-14444,CVE-2019-17450,CVE-2019-17451,CVE-2019-9074,CVE-2019-9075,CVE-2019-9077
    Description:

    This update for binutils fixes the following issues:
    binutils was updated to version 2.35. (jsc#ECO-2373)
    Update to binutils 2.35:




    Update to binutils 2.34:



    Update to binutils 2.33.1:



    Advisory IDSUSE-RU-2020:3063-1
    ReleasedWed Oct 28 08:45:07 2020
    SummaryRecommended update for rubygem-railties-5_1
    Typerecommended
    Severitymoderate
    References1174315
    Description:

    This update for rubygem-railties-5_1 fixes the following issue:


    Advisory IDSUSE-SU-2020:3068-1
    ReleasedWed Oct 28 11:46:10 2020
    SummarySecurity update for tomcat
    Typesecurity
    Severitymoderate
    References1177582,CVE-2020-13943
    Description:

    This update for tomcat fixes the following issues:


    Advisory IDSUSE-RU-2020:3074-1
    ReleasedThu Oct 29 08:27:49 2020
    SummaryRecommended update for certification-sles-eal4
    Typerecommended
    Severitymoderate
    References1178169
    Description:

    This update for certification-sles-eal4 fixes the following issues:


    Advisory IDSUSE-SU-2020:3091-1
    ReleasedThu Oct 29 16:35:37 2020
    SummarySecurity update for MozillaThunderbird and mozilla-nspr
    Typesecurity
    Severityimportant
    References1174230,1176384,1176756,1176899,1177977,CVE-2020-15673,CVE-2020-15676,CVE-2020-15677,CVE-2020-15678,CVE-2020-15683,CVE-2020-15969
    Description:

    This update for MozillaThunderbird and mozilla-nspr fixes the following issues:



    Advisory IDSUSE-RU-2020:3099-1
    ReleasedThu Oct 29 19:33:41 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2020:3101-1
    ReleasedThu Oct 29 19:35:22 2020
    SummaryRecommended update for p7zip
    Typerecommended
    Severitymoderate
    References1177648
    Description:

    This update for p7zip provides the following fix:


    Advisory IDSUSE-RU-2020:3116-1
    ReleasedMon Nov 2 13:45:14 2020
    SummaryRecommended update for dash
    Typerecommended
    Severitymoderate
    References1160260,1177691
    Description:

    This update for dash fixes the following issues:


    Advisory IDSUSE-RU-2020:3123-1
    ReleasedTue Nov 3 09:48:13 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severityimportant
    References1177460,1178346,1178350,1178353
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2020:3148-1
    ReleasedWed Nov 4 11:04:22 2020
    SummaryRecommended update for dbxtool
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for dbxtool fixes the following issues:
    dbxtool version 8 is included in SUSE Linux Enterprise. (jsc#ECO-2560 jsc#PM-2042 jsc#SLE-16062)
    This contains the dbxtool for handling and storing the UEFI DBX database, to deploy deny lists of UEFI binaries e.g. in regards to the BootHole security issue.


    Advisory IDSUSE-SU-2020:3152-1
    ReleasedWed Nov 4 11:07:07 2020
    SummarySecurity update for apache-commons-httpclient
    Typesecurity
    Severityimportant
    References1178171,945190,CVE-2014-3577,CVE-2015-5262
    Description:

    This update for apache-commons-httpclient fixes the following issues:


    Advisory IDSUSE-RU-2020:3157-1
    ReleasedWed Nov 4 15:37:05 2020
    SummaryRecommended update for ca-certificates-mozilla
    Typerecommended
    Severitymoderate
    References1177864
    Description:

    This update for ca-certificates-mozilla fixes the following issues:
    The SSL Root CA store was updated to the 2.44 state of the Mozilla NSS Certificate store (bsc#1177864)


    - EE Certification Centre Root CA - Taiwan GRCA

    - Trustwave Global Certification Authority - Trustwave Global ECC P256 Certification Authority - Trustwave Global ECC P384 Certification Authority


    Advisory IDSUSE-SU-2020:3166-1
    ReleasedThu Nov 5 10:37:34 2020
    SummarySecurity update for wireshark
    Typesecurity
    Severitymoderate
    References1175204,1176908,1176909,1176910,CVE-2020-17498,CVE-2020-25862,CVE-2020-25863,CVE-2020-25866
    Description:

    This update for wireshark fixes the following issues:


    Advisory IDSUSE-RU-2020:3248-1
    ReleasedFri Nov 6 17:02:05 2020
    SummaryRecommended update for SUSE Manager Client Tools
    Typerecommended
    Severitymoderate
    References1167907,1169664
    Description:


    This update fixes the following issues:
    dracut-saltboot:


    grafana:

    grafana-ha-cluster-dashboards:

    grafana-sap-hana-dashboards:

    grafana-sap-netweaver-dashboards:

    grafana-sap-providers:

    mgr-daemon:

    spacecmd:

    spacewalk-client-tools:


    Advisory IDSUSE-SU-2020:3261-1
    ReleasedTue Nov 10 09:45:30 2020
    SummarySecurity update for SDL
    Typesecurity
    Severitymoderate
    References1141844,CVE-2019-13616
    Description:

    This update for SDL fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-SU-2020:3264-1
    ReleasedTue Nov 10 09:50:29 2020
    SummarySecurity update for zeromq
    Typesecurity
    Severitymoderate
    References1176116,1176256,1176257,1176258,1176259,CVE-2020-15166
    Description:

    This update for zeromq fixes the following issues:


    Advisory IDSUSE-SU-2020:3269-1
    ReleasedTue Nov 10 15:57:24 2020
    SummarySecurity update for python-waitress
    Typesecurity
    Severitymoderate
    References1160790,1161088,1161089,1161670,CVE-2019-16785,CVE-2019-16786,CVE-2019-16789,CVE-2019-16792
    Description:

    This update for python-waitress to 1.4.3 fixes the following security issues:


    Advisory IDSUSE-SU-2020:3271-1
    ReleasedTue Nov 10 19:05:17 2020
    SummarySecurity update for ucode-intel
    Typesecurity
    Severitymoderate
    References1170446,1173594,CVE-2020-8695,CVE-2020-8698
    Description:

    This update for ucode-intel fixes the following issues:


    # New Platforms: | Processor | Stepping | F-M-S/PI | Old Ver | New Ver | Products |:---------------|:---------|:------------|:---------|:---------|:--------- | TGL | B1 | 06-8c-01/80 | | 00000068 | Core Gen11 Mobile | CPX-SP | A1 | 06-55-0b/bf | | 0700001e | Xeon Scalable Gen3 | CML-H | R1 | 06-a5-02/20 | | 000000e0 | Core Gen10 Mobile | CML-S62 | G1 | 06-a5-03/22 | | 000000e0 | Core Gen10 | CML-S102 | Q0 | 06-a5-05/22 | | 000000e0 | Core Gen10 | CML-U62 V2 | K0 | 06-a6-01/80 | | 000000e0 | Core Gen10 Mobile # Updated Platforms: | Processor | Stepping | F-M-S/PI | Old Ver | New Ver | Products |:---------------|:---------|:------------|:---------|:---------|:--------- | GKL-R | R0 | 06-7a-08/01 | 00000016 | 00000018 | Pentium J5040/N5030, Celeron J4125/J4025/N4020/N4120 | SKL-U/Y | D0 | 06-4e-03/c0 | 000000d6 | 000000e2 | Core Gen6 Mobile | SKL-U23e | K1 | 06-4e-03/c0 | 000000d6 | 000000e2 | Core Gen6 Mobile | APL | D0 | 06-5c-09/03 | 00000038 | 00000040 | Pentium N/J4xxx, Celeron N/J3xxx, Atom x5/7-E39xx | APL | E0 | 06-5c-0a/03 | 00000016 | 0000001e | Atom x5-E39xx | SKL-H/S | R0/N0 | 06-5e-03/36 | 000000d6 | 000000e2 | Core Gen6; Xeon E3 v5 | HSX-E/EP | Cx/M1 | 06-3f-02/6f | 00000043 | 00000044 | Core Gen4 X series; Xeon E5 v3 | SKX-SP | B1 | 06-55-03/97 | 01000157 | 01000159 | Xeon Scalable | SKX-SP | H0/M0/U0 | 06-55-04/b7 | 02006906 | 02006a08 | Xeon Scalable | SKX-D | M1 | 06-55-04/b7 | 02006906 | 02006a08 | Xeon D-21xx | CLX-SP | B0 | 06-55-06/bf | 04002f01 | 04003003 | Xeon Scalable Gen2 | CLX-SP | B1 | 06-55-07/bf | 05002f01 | 05003003 | Xeon Scalable Gen2 | ICL-U/Y | D1 | 06-7e-05/80 | 00000078 | 000000a0 | Core Gen10 Mobile | AML-Y22 | H0 | 06-8e-09/10 | 000000d6 | 000000de | Core Gen8 Mobile | KBL-U/Y | H0 | 06-8e-09/c0 | 000000d6 | 000000de | Core Gen7 Mobile | CFL-U43e | D0 | 06-8e-0a/c0 | 000000d6 | 000000e0 | Core Gen8 Mobile | WHL-U | W0 | 06-8e-0b/d0 | 000000d6 | 000000de | Core Gen8 Mobile | AML-Y42 | V0 | 06-8e-0c/94 | 000000d6 | 000000de | Core Gen10 Mobile | CML-Y42 | V0 | 06-8e-0c/94 | 000000d6 | 000000de | Core Gen10 Mobile | WHL-U | V0 | 06-8e-0c/94 | 000000d6 | 000000de | Core Gen8 Mobile | KBL-G/H/S/E3 | B0 | 06-9e-09/2a | 000000d6 | 000000de | Core Gen7; Xeon E3 v6 | CFL-H/S/E3 | U0 | 06-9e-0a/22 | 000000d6 | 000000de | Core Gen8 Desktop, Mobile, Xeon E | CFL-S | B0 | 06-9e-0b/02 | 000000d6 | 000000de | Core Gen8 | CFL-H/S | P0 | 06-9e-0c/22 | 000000d6 | 000000de | Core Gen9 | CFL-H | R0 | 06-9e-0d/22 | 000000d6 | 000000de | Core Gen9 Mobile | CML-U62 | A0 | 06-a6-00/80 | 000000ca | 000000e0 | Core Gen10 Mobile


    Advisory IDSUSE-RU-2020:3277-1
    ReleasedWed Nov 11 09:06:52 2020
    SummaryRecommended update for google-osconfig-agent
    Typerecommended
    Severitymoderate
    References1176427,1178249
    Description:

    This update for google-osconfig-agent fixes the following issues:
    This update ships the google-osconfig-agent in version 20200929.00 (bsc#1176427, bsc#1178249, jsc#ECO-2702, jsc#PM-2203)


    Advisory IDSUSE-RU-2020:3308-1
    ReleasedThu Nov 12 14:20:07 2020
    SummaryRecommended update for sysstat
    Typerecommended
    Severitymoderate
    References1177747
    Description:

    This update for sysstat fixes the following issues:


    Advisory IDSUSE-SU-2020:3312-1
    ReleasedThu Nov 12 16:05:57 2020
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1178588,CVE-2020-26950
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-RU-2020:3317-1
    ReleasedFri Nov 13 08:53:23 2020
    SummaryRecommended update for SAPHanaSR-ScaleOut
    Typerecommended
    Severitymoderate
    References1144729,1174610,1176330
    Description:

    This update for SAPHanaSR-ScaleOut fixes the following issues:


    Advisory IDSUSE-RU-2020:3321-1
    ReleasedFri Nov 13 13:16:01 2020
    SummaryRecommended update for rpmlint
    Typerecommended
    Severitymoderate
    References1176676,1177684
    Description:

    This update for rpmlint fixes the following issues:


    Advisory IDSUSE-RU-2020:3323-1
    ReleasedFri Nov 13 15:25:55 2020
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1174443,1174444,1177526
    Description:

    This update for cloud-init contains the following fixes:


    Update to version 20.2 (bsc#1174443, bsc#1174444)
    + doc/format: reference make-mime.py instead of an inline script (#334) + Add docs about creating parent folders (#330) [Adrian Wilkins] + DataSourceNoCloud/OVF: drop claim to support FTP (#333) (LP: #1875470) + schema: ignore spurious pylint error (#332) + schema: add json schema for write_files module (#152) + BSD: find_devs_with_ refactoring (#298) [Gonéri Le Bouder] + nocloud: drop work around for Linux 2.6 (#324) [Gonéri Le Bouder] + cloudinit: drop dependencies on unittest2 and contextlib2 (#322) + distros: handle a potential mirror filtering error case (#328) + log: remove unnecessary import fallback logic (#327) + .travis.yml: don't run integration test on ubuntu/* branches (#321) + More unit test documentation (#314) + conftest: introduce disable_subp_usage autouse fixture (#304) + YAML align indent sizes for docs readability (#323) [Tak Nishigori] + network_state: add missing space to log message (#325) + tests: add missing mocks for get_interfaces_by_mac (#326) (LP: #1873910) + test_mounts: expand happy path test for both happy paths (#319) + cc_mounts: fix incorrect format specifiers (#316) (LP: #1872836) + swap file 'size' being used before checked if str (#315) [Eduardo Otubo] + HACKING.rst: add pytest version gotchas section (#311) + docs: Add steps to re-run cloud-id and cloud-init (#313) [Joshua Powers] + readme: OpenBSD is now supported (#309) [Gonéri Le Bouder] + net: ignore 'renderer' key in netplan config (#306) (LP: #1870421) + Add support for NFS/EFS mounts (#300) [Andrew Beresford] (LP: #1870370) + openbsd: set_passwd should not unlock user (#289) [Gonéri Le Bouder] + tools/.github-cla-signers: add beezly as CLA signer (#301) + util: remove unnecessary lru_cache import fallback (#299) + HACKING.rst: reorganise/update CLA signature info (#297) + distros: drop leading/trailing hyphens from mirror URL labels (#296) + HACKING.rst: add note about variable annotations (#295) + CiTestCase: stop using and remove sys_exit helper (#283) + distros: replace invalid characters in mirror URLs with hyphens (#291) (LP: #1868232) + rbxcloud: gracefully handle arping errors (#262) [Adam Dobrawy] + Fix cloud-init ignoring some misdeclared mimetypes in user-data. [Kurt Garloff] + net: ubuntu focal prioritize netplan over eni even if both present (#267) (LP: #1867029) + cloudinit: refactor util.is_ipv4 to net.is_ipv4_address (#292) + net/cmdline: replace type comments with annotations (#294) + HACKING.rst: add Type Annotations design section (#293) + net: introduce is_ip_address function (#288) + CiTestCase: remove now-unneeded parse_and_read helper method (#286) + .travis.yml: allow 30 minutes of inactivity in cloud tests (#287) + sources/tests/test_init: drop use of deprecated inspect.getargspec (#285) + setup.py: drop NIH check_output implementation (#282) + Identify SAP Converged Cloud as OpenStack [Silvio Knizek] + add Openbsd support (#147) [Gonéri Le Bouder] + HACKING.rst: add examples of the two test class types (#278) + VMWware: support to update guest info gc status if enabled (#261) [xiaofengw-vmware] + Add lp-to-git mapping for kgarloff (#279) + set_passwords: avoid chpasswd on BSD (#268) [Gonéri Le Bouder] + HACKING.rst: add Unit Testing design section (#277) + util: read_cc_from_cmdline handle urlencoded yaml content (#275) + distros/tests/test_init: add tests for _get_package_mirror_info (#272) + HACKING.rst: add links to new Code Review Process doc (#276) + freebsd: ensure package update works (#273) [Gonéri Le Bouder] + doc: introduce Code Review Process documentation (#160) + tools: use python3 (#274) + cc_disk_setup: fix RuntimeError (#270) (LP: #1868327) + cc_apt_configure/util: combine search_for_mirror implementations (#271) + bsd: boottime does not depend on the libc soname (#269) [Gonéri Le Bouder] + test_oracle,DataSourceOracle: sort imports (#266) + DataSourceOracle: update .network_config docstring (#257) + cloudinit/tests: remove unneeded with_logs configuration (#263) + .travis.yml: drop stale comment (#255) + .gitignore: add more common directories (#258) + ec2: render network on all NICs and add secondary IPs as static (#114) (LP: #1866930) + ec2 json validation: fix the reference to the 'merged_cfg' key (#256) [Paride Legovini] + releases.yaml: quote the Ubuntu version numbers (#254) [Paride Legovini] + cloudinit: remove six from packaging/tooling (#253) + util/netbsd: drop six usage (#252) + workflows: introduce stale pull request workflow (#125) + cc_resolv_conf: introduce tests and stabilise output across Python versions (#251) + fix minor issue with resolv_conf template (#144) [andreaf74] + doc: CloudInit also support NetBSD (#250) [Gonéri Le Bouder] + Add Netbsd support (#62) [Gonéri Le Bouder] + tox.ini: avoid substition syntax that causes a traceback on xenial (#245) + Add pub_key_ed25519 to cc_phone_home (#237) [Daniel Hensby] + Introduce and use of a list of GitHub usernames that have signed CLA (#244) + workflows/cla.yml: use correct username for CLA check (#243) + tox.ini: use xenial version of jsonpatch in CI (#242) + workflows: CLA validation altered to fail status on pull_request (#164) + tox.ini: bump pyflakes version to 2.1.1 (#239) + cloudinit: move to pytest for running tests (#211) + instance-data: add cloud-init merged_cfg and sys_info keys to json (#214) (LP: #1865969) + ec2: Do not fallback to IMDSv1 on EC2 (#216) + instance-data: write redacted cfg to instance-data.json (#233) (LP: #1865947) + net: support network-config:disabled on the kernel commandline (#232) (LP: #1862702) + ec2: only redact token request headers in logs, avoid altering request (#230) (LP: #1865882) + docs: typo fixed: dta → data [Alexey Vazhnov] + Fixes typo on Amazon Web Services (#217) [Nick Wales] + Fix docs for OpenStack DMI Asset Tag (#228) [Mark T. Voelker] (LP: #1669875) + Add physical network type: cascading to openstack helpers (#200) [sab-systems] + tests: add focal integration tests for ubuntu (#225)


    Advisory IDSUSE-RU-2020:3327-1
    ReleasedSat Nov 14 07:22:33 2020
    SummaryRecommended update for sap-suse-cluster-connector
    Typerecommended
    Severitymoderate
    References1136933,1166647,1177507
    Description:

    This update for sap-suse-cluster-connector fixes the following issues:


    Advisory IDSUSE-RU-2020:3338-1
    ReleasedMon Nov 16 13:11:28 2020
    SummaryRecommended update for prometheus-hanadb_exporter
    Typerecommended
    Severitymoderate
    References1178339
    Description:

    This update for prometheus-hanadb_exporter fixes the following issues:


    Advisory IDSUSE-SU-2020:3352-1
    ReleasedTue Nov 17 09:31:48 2020
    SummarySecurity update for raptor
    Typesecurity
    Severityimportant
    References1178593,CVE-2017-18926
    Description:

    This update for raptor fixes the following issues:


    Advisory IDSUSE-SU-2020:3359-1
    ReleasedTue Nov 17 13:18:30 2020
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severitymoderate
    References1177943,CVE-2020-14779,CVE-2020-14781,CVE-2020-14782,CVE-2020-14792,CVE-2020-14796,CVE-2020-14797,CVE-2020-14798,CVE-2020-14803
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-SU-2020:3373-1
    ReleasedThu Nov 19 09:27:44 2020
    SummarySecurity update for ucode-intel
    Typesecurity
    Severitymoderate
    References1170446,1173592,1173594,CVE-2020-8695,CVE-2020-8696,CVE-2020-8698
    Description:

    This update for ucode-intel fixes the following issues:



    ### New Platforms | Processor | Stepping | F-M-S/PI | Old Ver | New Ver | Products |:---------------|:---------|:------------|:---------|:---------|:--------- | CPX-SP | A1 | 06-55-0b/bf | | 0700001e | Xeon Scalable Gen3 | LKF | B2/B3 | 06-8a-01/10 | | 00000028 | Core w/Hybrid Technology | TGL | B1 | 06-8c-01/80 | | 00000068 | Core Gen11 Mobile | CML-H | R1 | 06-a5-02/20 | | 000000e0 | Core Gen10 Mobile | CML-S62 | G1 | 06-a5-03/22 | | 000000e0 | Core Gen10 | CML-S102 | Q0 | 06-a5-05/22 | | 000000e0 | Core Gen10 | CML-U62 V2 | K0 | 06-a6-01/80 | | 000000e0 | Core Gen10 Mobile ### Updated Platforms | Processor | Stepping | F-M-S/PI | Old Ver | New Ver | Products |:---------------|:---------|:------------|:---------|:---------|:--------- | HSX-E/EP | Cx/M1 | 06-3f-02/6f | 00000043 | 00000044 | Core Gen4 X series; Xeon E5 v3 | SKL-U/Y | D0 | 06-4e-03/c0 | 000000d6 | 000000e2 | Core Gen6 Mobile | SKL-U23e | K1 | 06-4e-03/c0 | 000000d6 | 000000e2 | Core Gen6 Mobile | SKX-SP | B1 | 06-55-03/97 | 01000157 | 01000159 | Xeon Scalable | SKX-SP | H0/M0/U0 | 06-55-04/b7 | 02006906 | 02006a08 | Xeon Scalable | SKX-D | M1 | 06-55-04/b7 | 02006906 | 02006a08 | Xeon D-21xx | CLX-SP | B0 | 06-55-06/bf | 04002f01 | 04003003 | Xeon Scalable Gen2 | CLX-SP | B1 | 06-55-07/bf | 05002f01 | 05003003 | Xeon Scalable Gen2 | APL | D0 | 06-5c-09/03 | 00000038 | 00000040 | Pentium N/J4xxx, Celeron N/J3xxx, Atom x5/7-E39xx | APL | E0 | 06-5c-0a/03 | 00000016 | 0000001e | Atom x5-E39xx | SKL-H/S | R0/N0 | 06-5e-03/36 | 000000d6 | 000000e2 | Core Gen6; Xeon E3 v5 | GKL-R | R0 | 06-7a-08/01 | 00000016 | 00000018 | Pentium J5040/N5030, Celeron J4125/J4025/N4020/N4120 | ICL-U/Y | D1 | 06-7e-05/80 | 00000078 | 000000a0 | Core Gen10 Mobile | AML-Y22 | H0 | 06-8e-09/10 | 000000d6 | 000000de | Core Gen8 Mobile | KBL-U/Y | H0 | 06-8e-09/c0 | 000000d6 | 000000de | Core Gen7 Mobile | CFL-U43e | D0 | 06-8e-0a/c0 | 000000d6 | 000000e0 | Core Gen8 Mobile | WHL-U | W0 | 06-8e-0b/d0 | 000000d6 | 000000de | Core Gen8 Mobile | AML-Y42 | V0 | 06-8e-0c/94 | 000000d6 | 000000de | Core Gen10 Mobile | CML-Y42 | V0 | 06-8e-0c/94 | 000000d6 | 000000de | Core Gen10 Mobile | WHL-U | V0 | 06-8e-0c/94 | 000000d6 | 000000de | Core Gen8 Mobile | KBL-G/H/S/E3 | B0 | 06-9e-09/2a | 000000d6 | 000000de | Core Gen7; Xeon E3 v6 | CFL-H/S/E3 | U0 | 06-9e-0a/22 | 000000d6 | 000000de | Core Gen8 Desktop, Mobile, Xeon E | CFL-S | B0 | 06-9e-0b/02 | 000000d6 | 000000de | Core Gen8 | CFL-H/S | P0 | 06-9e-0c/22 | 000000d6 | 000000de | Core Gen9 | CFL-H | R0 | 06-9e-0d/22 | 000000d6 | 000000de | Core Gen9 Mobile | CML-U62 | A0 | 06-a6-00/80 | 000000ca | 000000e0 | Core Gen10 Mobile


    Advisory IDSUSE-SU-2020:3376-1
    ReleasedThu Nov 19 09:29:13 2020
    SummarySecurity update for wireshark
    Typesecurity
    Severitymoderate
    References1177406,1178291,CVE-2020-26575,CVE-2020-28030
    Description:

    This update for wireshark fixes the following issues:


    Advisory IDSUSE-SU-2020:3384-1
    ReleasedThu Nov 19 11:33:53 2020
    SummarySecurity update for perl-DBI
    Typesecurity
    Severitymoderate
    References1176492,CVE-2014-10401,CVE-2014-10402
    Description:

    This update for perl-DBI fixes the following issues:


    Advisory IDSUSE-RU-2020:3450-1
    ReleasedThu Nov 19 17:39:23 2020
    SummaryRecommended update for hawk-apiserver
    Typerecommended
    Severitymoderate
    References1178228
    Description:

    This update for hawk-apiserver fixes the following issues:


    Advisory IDSUSE-RU-2020:3452-1
    ReleasedThu Nov 19 19:42:47 2020
    SummaryRecommended update for tomcat
    Typerecommended
    Severitymoderate
    References1178396
    Description:

    This update for tomcat fixes the following issues:


    Advisory IDSUSE-SU-2020:3458-1
    ReleasedFri Nov 20 11:09:46 2020
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1178824,CVE-2020-15999,CVE-2020-16012,CVE-2020-26951,CVE-2020-26953,CVE-2020-26956,CVE-2020-26958,CVE-2020-26959,CVE-2020-26960,CVE-2020-26961,CVE-2020-26965,CVE-2020-26966,CVE-2020-26968
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-SU-2020:3460-1
    ReleasedFri Nov 20 12:41:23 2020
    SummarySecurity update for java-1_8_0-openjdk
    Typesecurity
    Severitymoderate
    References1174157,1177943,CVE-2020-14556,CVE-2020-14577,CVE-2020-14578,CVE-2020-14579,CVE-2020-14581,CVE-2020-14583,CVE-2020-14593,CVE-2020-14621,CVE-2020-14779,CVE-2020-14781,CVE-2020-14782,CVE-2020-14792,CVE-2020-14796,CVE-2020-14797,CVE-2020-14798,CVE-2020-14803
    Description:

    This update for java-1_8_0-openjdk fixes the following issues:



    Advisory IDSUSE-RU-2020:3462-1
    ReleasedFri Nov 20 13:14:35 2020
    SummaryRecommended update for pam and sudo
    Typerecommended
    Severitymoderate
    References1174593,1177858,1178727
    Description:

    This update for pam and sudo fixes the following issue:
    pam:


    sudo:


    Advisory IDSUSE-SU-2020:3463-1
    ReleasedFri Nov 20 13:49:58 2020
    SummarySecurity update for postgresql12
    Typesecurity
    Severityimportant
    References1178666,1178667,1178668,CVE-2020-25694,CVE-2020-25695,CVE-2020-25696
    Description:

    This update for postgresql12 fixes the following issues:



    Advisory IDSUSE-RU-2020:3470-1
    ReleasedFri Nov 20 17:42:57 2020
    SummaryRecommended update for monitoring-plugins
    Typerecommended
    Severitymoderate
    References1175828
    Description:

    This update for monitoring-plugins fixes the following issues:


    Advisory IDSUSE-OU-2020:3471-1
    ReleasedFri Nov 20 17:43:45 2020
    SummaryOptional update for brp-check-suse
    Typeoptional
    Severitylow
    References1074711
    Description:

    This update for brp-check-suse doesn't fix any runtime specific errors, but improves the packaging related build procedure (bsc#1074711)


    Advisory IDSUSE-SU-2020:3478-1
    ReleasedMon Nov 23 09:33:17 2020
    SummarySecurity update for c-ares
    Typesecurity
    Severitymoderate
    References1178882,CVE-2020-8277
    Description:

    This update for c-ares fixes the following issues:


    Advisory IDSUSE-SU-2020:3480-1
    ReleasedMon Nov 23 10:34:36 2020
    SummarySecurity update for dash
    Typesecurity
    Severitymoderate
    References1178978
    Description:

    This update for dash fixes the following issues:


    Advisory IDSUSE-OU-2020:3495-1
    ReleasedTue Nov 24 06:22:06 2020
    SummaryOptional update for ec2-instance-connect
    Typeoptional
    Severitylow
    References1131916,1152806
    Description:

    This patch ships the package ec2-instance-connect for the first time. It enables support for the AWS EC2 instance connect.


    Advisory IDSUSE-SU-2020:3500-1
    ReleasedTue Nov 24 13:49:59 2020
    SummarySecurity update for mariadb
    Typesecurity
    Severitymoderate
    References1175596,1177472,1178428,CVE-2020-14765,CVE-2020-14776,CVE-2020-14789,CVE-2020-14812,CVE-2020-15180
    Description:

    This update for mariadb and mariadb-connector-c fixes the following issues:



    Advisory IDSUSE-RU-2020:3525-1
    ReleasedWed Nov 25 17:00:31 2020
    SummaryRecommended update for ucode-intel
    Typerecommended
    Severityimportant
    References1178971
    Description:

    This update for ucode-intel fixes the following issues:


    - Removed TGL/06-8c-01/80 due to functional issues with some OEM platforms.


    Advisory IDSUSE-RU-2020:3535-1
    ReleasedThu Nov 26 15:14:08 2020
    SummaryRecommended update for python-kiwi
    Typerecommended
    Severitymoderate
    References1170863,1175729,1176129,1176134,1176977
    Description:

    This update for python-kiwi fixes the following issues:
    Update from version 9.21.7 to version 9.21.23


    - On s390 the boot process is based on zipl which boots into an initrd from which a userspace grub process is started to support the grub capabilities. The implementation of this concept is provided via the grub2-s390x-emu package. Once installed the setup of the bootloader is done via the grub2-mkconfig and grub2-install commands and therefore from a caller perspective the same as with any other grub2 setup process. For kiwi this means no extra zipl bootloader target code is needed. Therefore this commit deletes the zipl setup from kiwi and puts on the standard grub2 process. - To support different targettypes the grub2-s390x-emu provided zipl template must be adapted. Parts of the former zipl bootloader setup therefore now applies to an update of the zipl2grub template file - Support for CDL/LDL DASD targets has been disabled in the schema When testing 4k devices and a respective zipl2grub template setup for CDL/LDL targettype it has turned out that grub2-install is not able to run on such a device. My assumption is that the device code in grub2-install does not work for 4k devices with an fdasd created partition table. As this needs further investigations and most probably adaptions on the grub toolchain for s390, we disabled the setup of these modes for now. emulated DASD (FBA) and SCSI targets stays supported. - Fix compat link for rpmdb location Fix the symlink creation for `/var/lib/rpm`. More specific or derived container images in which the base root tree already included the `/var/lib/rpm` the link, the `ln` command was creating a symlink inside the `/var/lib/rpm` folder given that it was following the already existing symlink. Adding the `--no-target-directory` force `ln` command to treat `/var/lib/rpm` path as the fully qualified symlink name. - Fixed s390/sle15 Virtual disk integration test The integration test used FBA mode as target. As the target is expected to be KVM this is the wrong setting. SCSI should be used instead. - Support dynamic linux/linuxefi in any case Instead of restricting the dynamic linux vs. linuxefi setup to a specific grub version, support this setup for any version of grub.


    Advisory IDSUSE-RU-2020:3547-1
    ReleasedFri Nov 27 11:21:56 2020
    SummaryRecommended update for xrdp
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for xrdp fixes the following issues:


    Advisory IDSUSE-SU-2020:3551-1
    ReleasedFri Nov 27 14:54:37 2020
    SummarySecurity update for libssh2_org
    Typesecurity
    Severitymoderate
    References1130103,1178083,CVE-2019-17498,CVE-2019-3855,CVE-2019-3856,CVE-2019-3857,CVE-2019-3858,CVE-2019-3859,CVE-2019-3860,CVE-2019-3861,CVE-2019-3862,CVE-2019-3863
    Description:

    This update for libssh2_org fixes the following issues:



    Advisory IDSUSE-SU-2020:3568-1
    ReleasedMon Nov 30 16:58:38 2020
    SummarySecurity update for mutt
    Typesecurity
    Severityimportant
    References1179035,1179113,CVE-2020-28896
    Description:

    This update for mutt fixes the following issues:


    Advisory IDSUSE-RU-2020:3576-1
    ReleasedTue Dec 1 09:34:12 2020
    SummaryRecommended update for lifecycle-data-sle-module-live-patching
    Typerecommended
    Severitymoderate
    References1020320
    Description:

    This update for lifecycle-data-sle-module-live-patching fixes the following issues:


    Advisory IDSUSE-SU-2020:3588-1
    ReleasedTue Dec 1 16:31:58 2020
    SummarySecurity update for xorg-x11-server
    Typesecurity
    Severityimportant
    References1174908,1177596,CVE-2020-14360,CVE-2020-25712
    Description:

    This update for xorg-x11-server fixes the following issues:


    Advisory IDSUSE-RU-2020:3590-1
    ReleasedTue Dec 1 18:09:24 2020
    SummaryRecommended update for hawk2
    Typerecommended
    Severitymoderate
    References1163381
    Description:

    This update for hawk2 fixes the following issues:


    Advisory IDSUSE-SU-2020:3591-1
    ReleasedWed Dec 2 09:58:31 2020
    SummarySecurity update for java-1_8_0-openjdk
    Typesecurity
    Severityimportant
    References1179441
    Description:

    This update for java-1_8_0-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2020:3603-1
    ReleasedWed Dec 2 15:11:46 2020
    SummaryRecommended update for lifecycle-data-sle-module-development-tools
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for lifecycle-data-sle-module-development-tools fixes the following issues:


    Advisory IDSUSE-RU-2020:3608-1
    ReleasedWed Dec 2 18:16:12 2020
    SummaryRecommended update for cloud-init
    Typerecommended
    Severityimportant
    References1177526,1179150,1179151
    Description:

    This update for cloud-init contains the following fixes:




    Advisory IDSUSE-SU-2020:3613-1
    ReleasedThu Dec 3 09:34:21 2020
    SummarySecurity update for rpmlint
    Typesecurity
    Severitymoderate
    References1169614
    Description:

    This update for rpmlint fixes the following issues:


    Advisory IDSUSE-RU-2020:3616-1
    ReleasedThu Dec 3 10:56:12 2020
    SummaryRecommended update for c-ares
    Typerecommended
    Severitymoderate
    References1178882
    Description:




    Advisory IDSUSE-RU-2020:3620-1
    ReleasedThu Dec 3 17:03:55 2020
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2020:3633-1
    ReleasedMon Dec 7 11:51:47 2020
    SummaryRecommended update for mutt
    Typerecommended
    Severityimportant
    References1179461
    Description:

    This update for mutt fixes the following issue:


    Advisory IDSUSE-RU-2020:3640-1
    ReleasedMon Dec 7 13:24:41 2020
    SummaryRecommended update for binutils
    Typerecommended
    Severityimportant
    References1179036,1179341
    Description:

    This update for binutils fixes the following issues:
    Update binutils 2.35 branch to commit 1c5243df:


    Update binutils to 2.35.1 and rebased branch diff:


    Advisory IDSUSE-RU-2020:3708-1
    ReleasedTue Dec 8 10:22:36 2020
    SummaryRecommended update for python-shaptools, salt-shaptools
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for python-shaptools, salt-shaptools fixes the following issues:
    python-shaptools:
    Update from version 0.3.10+git.1600699158.46fca28 to version 0.3.11+git.1605798399.b036435


    salt-shaptools:
    Update from version 0.3.10+git.1600699854.f5950bc to version 0.3.11+git.1605797958.ae2f08a


    Advisory IDSUSE-RU-2020:3731-1
    ReleasedWed Dec 9 15:52:32 2020
    SummaryRecommended update for realmd
    Typerecommended
    Severitymoderate
    References1175617
    Description:

    This update for realmd fixes the following issues:


    Advisory IDSUSE-SU-2020:3737-1
    ReleasedWed Dec 9 18:21:04 2020
    SummarySecurity update for python-pip, python-scripttest
    Typesecurity
    Severitymoderate
    References1175297,1176262,CVE-2019-20916
    Description:

    This update for python-pip, python-scripttest fixes the following issues:


    python-pip was updated to 20.0.2:

    --find-links --constraint, -c --requirement, -r --editable, -e


    Advisory IDSUSE-RU-2020:3744-1
    ReleasedThu Dec 10 11:32:41 2020
    SummaryRecommended update for enigmail
    Typerecommended
    Severitymoderate
    References1179505
    Description:

    This update for enigmail fixes the following issues:
    Update from version 2.1.5 to version 2.2.4


    Fixes included from version 2.1.5 to 2.1.8:


    Advisory IDSUSE-SU-2020:3749-1
    ReleasedThu Dec 10 14:39:28 2020
    SummarySecurity update for gcc7
    Typesecurity
    Severitymoderate
    References1150164,1161913,1167939,1172798,1178577,1178614,1178624,1178675,CVE-2020-13844
    Description:

    This update for gcc7 fixes the following issues:


    Advisory IDSUSE-SU-2020:3762-1
    ReleasedFri Dec 11 14:12:48 2020
    SummarySecurity update for openssl-1_0_0
    Typesecurity
    Severityimportant
    References1155346,1176029,1177479,1177575,1177673,1177793,1179491,CVE-2020-1971
    Description:

    This update for openssl-1_0_0 fixes the following issues:


    Advisory IDSUSE-RU-2020:3772-1
    ReleasedMon Dec 14 11:11:29 2020
    SummaryRecommended update for hamcrest
    Typerecommended
    Severitymoderate
    References1174544
    Description:

    This update for hamcrest fixes the following issue:


    Advisory IDSUSE-RU-2020:3773-1
    ReleasedMon Dec 14 11:12:18 2020
    SummaryRecommended update for cdrtools and schily-libs
    Typerecommended
    Severitymoderate
    References1178692
    Description:

    This update for cdrtools and schily-libs fixes the following issues:
    cdrtools:


    schily-libs:


    Advisory IDSUSE-SU-2020:3790-1
    ReleasedMon Dec 14 15:01:22 2020
    SummarySecurity update for clamav
    Typesecurity
    Severitymoderate
    References1104457,1118459,1130721,1144504,1149458,1157763,CVE-2019-12625,CVE-2019-12900,CVE-2019-15961,CVE-2019-1785,CVE-2019-1786,CVE-2019-1787,CVE-2019-1788,CVE-2019-1789,CVE-2019-1798,CVE-2020-3123,CVE-2020-3327,CVE-2020-3341,CVE-2020-3350,CVE-2020-3481
    Description:

    This update for clamav fixes the following issues:
    clamav was updated to the new major release 0.103.0. (jsc#ECO-3010,bsc#1118459)
    Note that libclamav was changed incompatible, if you have a 3rd party application that uses libclamav, it needs to be rebuilt.
    Update to 0.103.0


    - Non-blocking database reloads are now the default behavior. Some systems that are more constrained on RAM may need to disable non-blocking reloads as it will temporarily consume two times as much memory. We added a new clamd config option ConcurrentDatabaseReload, which may be set to no.
    * Fix clamav-milter.service (requires clamd.service to run)
    Update to 0.102.4
    * CVE-2020-3350: Fix a vulnerability wherein a malicious user could replace a scan target's directory with a symlink to another path to trick clamscan, clamdscan, or clamonacc into removing or moving a different file (eg. a critical system file). The issue would affect users that use the --move or --remove options for clamscan, clamdscan, and clamonacc. * CVE-2020-3327: Fix a vulnerability in the ARJ archive parsing module in ClamAV 0.102.3 that could cause a Denial-of-Service (DoS) condition. Improper bounds checking results in an out-of-bounds read which could cause a crash. The previous fix for this CVE in 0.102.3 was incomplete. This fix correctly resolves the issue. * CVE-2020-3481: Fix a vulnerability in the EGG archive module in ClamAV 0.102.0 - 0.102.3 could cause a Denial-of-Service (DoS) condition. Improper error handling may result in a crash due to a NULL pointer dereference. This vulnerability is mitigated for those using the official ClamAV signature databases because the file type signatures in daily.cvd will not enable the EGG archive parser in versions affected by the vulnerability.
    Update to 0.102.3
    * CVE-2020-3327: Fix a vulnerability in the ARJ archive parsing module in ClamAV 0.102.2 that could cause a Denial-of-Service (DoS) condition. Improper bounds checking of an unsigned variable results in an out-of-bounds read which causes a crash. * CVE-2020-3341: Fix a vulnerability in the PDF parsing module in ClamAV 0.101 - 0.102.2 that could cause a Denial-of-Service (DoS) condition. Improper size checking of a buffer used to initialize AES decryption routines results in an out-of-bounds read which may cause a crash. * Fix 'Attempt to allocate 0 bytes' error when parsing some PDF documents. * Fix a couple of minor memory leaks. * Updated libclamunrar to UnRAR 5.9.2.
    Update to 0.102.2:
    * CVE-2020-3123: A denial-of-service (DoS) condition may occur when using the optional credit card data-loss-prevention (DLP) feature. Improper bounds checking of an unsigned variable resulted in an out-of-bounds read, which causes a crash. * Significantly improved the scan speed of PDF files on Windows. * Re-applied a fix to alleviate file access issues when scanning RAR files in downstream projects that use libclamav where the scanning engine is operating in a low-privilege process. This bug was originally fixed in 0.101.2 and the fix was mistakenly omitted from 0.102.0. * Fixed an issue where freshclam failed to update if the database version downloaded is one version older than advertised. This situation may occur after a new database version is published. The issue affected users downloading the whole CVD database file. * Changed the default freshclam ReceiveTimeout setting to 0 (infinite). The ReceiveTimeout had caused needless database update failures for users with slower internet connections. * Correctly display the number of kilobytes (KiB) in progress bar and reduced the size of the progress bar to accommodate 80-character width terminals. * Fixed an issue where running freshclam manually causes a daemonized freshclam process to fail when it updates because the manual instance deletes the temporary download directory. The freshclam temporary files will now download to a unique directory created at the time of an update instead of using a hardcoded directory created/destroyed at the program start/exit. * Fix for freshclam's OnOutdatedExecute config option. * Fixes a memory leak in the error condition handling for the email parser. * Improved bound checking and error handling in ARJ archive parser. * Improved error handling in PDF parser. * Fix for memory leak in byte-compare signature handler.

    Update to 0.102.1:
    * CVE-2019-15961, bsc#1157763: A Denial-of-Service (DoS) vulnerability may occur when scanning a specially crafted email file as a result of excessively long scan times. The issue is resolved by implementing several maximums in parsing MIME messages and by optimizing use of memory allocation. * Build system fixes to build clamav-milter, to correctly link with libxml2 when detected, and to correctly detect fanotify for on-access scanning feature support. * Signature load time is significantly reduced by changing to a more efficient algorithm for loading signature patterns and allocating the AC trie. Patch courtesy of Alberto Wu. * Introduced a new configure option to statically link libjson-c with libclamav. Static linking with libjson is highly recommended to prevent crashes in applications that use libclamav alongside another JSON parsing library. * Null-dereference fix in email parser when using the --gen-json metadata option. * Fixes for Authenticode parsing and certificate signature (.crb database) bugs.
    Update to 0.102.0:
    * The On-Access Scanning feature has been migrated out of clamd and into a brand new utility named clamonacc. This utility is similar to clamdscan and clamav-milter in that it acts as a client to clamd. This separation from clamd means that clamd no longer needs to run with root privileges while scanning potentially malicious files. Instead, clamd may drop privileges to run under an account that does not have super-user. In addition to improving the security posture of running clamd with On-Access enabled, this update fixed a few outstanding defects: - On-Access scanning for created and moved files (Extra-Scanning) is fixed. - VirusEvent for On-Access scans is fixed. - With clamonacc, it is now possible to copy, move, or remove a file if the scan triggered an alert, just like with clamdscan. * The freshclam database update utility has undergone a significant update. This includes: - Added support for HTTPS. - Support for database mirrors hosted on ports other than 80. - Removal of the mirror management feature (mirrors.dat). - An all new libfreshclam library API.
    Update to 0.101.4:
    * CVE-2019-12900: An out of bounds write in the NSIS bzip2 (bsc#1149458) * CVE-2019-12625: Introduce a configurable time limit to mitigate zip bomb vulnerability completely. Default is 2 minutes, configurable useing the clamscan --max-scantime and for clamd using the MaxScanTime config option (bsc#1144504)
    Update to version 0.101.3:
    * bsc#1144504: ZIP bomb causes extreme CPU spikes
    Update to version 0.101.2 (bsc#1130721)
    * CVE-2019-1787: An out-of-bounds heap read condition may occur when scanning PDF documents. The defect is a failure to correctly keep track of the number of bytes remaining in a buffer when indexing file data. * CVE-2019-1789: An out-of-bounds heap read condition may occur when scanning PE files (i.e. Windows EXE and DLL files) that have been packed using Aspack as a result of inadequate bound-checking. * CVE-2019-1788: An out-of-bounds heap write condition may occur when scanning OLE2 files such as Microsoft Office 97-2003 documents. The invalid write happens when an invalid pointer is mistakenly used to initialize a 32bit integer to zero. This is likely to crash the application. * CVE-2019-1786: An out-of-bounds heap read condition may occur when scanning malformed PDF documents as a result of improper bounds-checking. * CVE-2019-1785: A path-traversal write condition may occur as a result of improper input validation when scanning RAR archives. * CVE-2019-1798: A use-after-free condition may occur as a result of improper error handling when scanning nested RAR archives.


    Advisory IDSUSE-RU-2020:3791-1
    ReleasedMon Dec 14 17:39:19 2020
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for gzip fixes the following issue:


    Advisory IDSUSE-RU-2020:3793-1
    ReleasedMon Dec 14 17:39:29 2020
    SummaryRecommended update for sblim-sfcb
    Typerecommended
    Severitymoderate
    References1178415
    Description:

    This update for sblim-sfcb fixes the following issues:


    When the protocol version is disabled, the connection will fail and the error will be recorded in the logs.


    Advisory IDSUSE-OU-2020:3795-1
    ReleasedMon Dec 14 17:43:26 2020
    SummaryOptional update for systemd-rpm-macros
    Typeoptional
    Severitylow
    References1059627,1178481,1179020
    Description:

    This update for systemd-rpm-macros fixes the following issues:


    Advisory IDSUSE-RU-2020:3619-1
    ReleasedTue Dec 15 13:41:16 2020
    SummaryRecommended update for cloud-netconfig, google-guest-agent
    Typerecommended
    Severitymoderate
    References1159460,1178486,1179031,1179032
    Description:

    This update for cloud-netconfig, google-guest-agent fixes the following issues:
    cloud-netconfig:


    google-guest-agent:



    Advisory IDSUSE-RU-2020:3812-1
    ReleasedTue Dec 15 15:23:59 2020
    SummaryRecommended update for grafana-ha-cluster-dashboards
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for grafana-ha-cluster-dashboards fixes the following issue:


    Advisory IDSUSE-RU-2020:3840-1
    ReleasedWed Dec 16 10:32:03 2020
    SummaryRecommended update for llvm7
    Typerecommended
    Severitymoderate
    References1176964,1179155
    Description:

    This update for llvm7 fixes the following issues:


    Advisory IDSUSE-RU-2020:3856-1
    ReleasedWed Dec 16 17:56:03 2020
    SummaryRecommended update for ucode-intel
    Typerecommended
    Severityimportant
    References1179224
    Description:

    This update for ucode-intel fixes the following issues:


    - SKX-SP | H0/M0/U0 | 06-55-04/b7 | 02006906 | Xeon Scalable - SKX-D | M1 | 06-55-04/b7 | 02006906 | Xeon D-21xx - CLX-SP | B0 | 06-55-06/bf | 04002f01 | Xeon Scalable Gen2 - CLX-SP | B1 | 06-55-07/bf | 05002f01 | Xeon Scalable Gen2


    Advisory IDSUSE-RU-2020:3868-1
    ReleasedThu Dec 17 12:44:47 2020
    SummaryRecommended update for perl-Test-Warnings
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for perl-Test-Warnings fixes the following issues:
    Update from version 0.026 to version 0.030


    Advisory IDSUSE-SU-2020:3901-1
    ReleasedMon Dec 21 20:07:56 2020
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severitycritical
    References1180039,CVE-2020-16042,CVE-2020-26971,CVE-2020-26973,CVE-2020-26974,CVE-2020-26978,CVE-2020-35111,CVE-2020-35112,CVE-2020-35113
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-SU-2020:3917-1
    ReleasedTue Dec 22 14:16:53 2020
    SummarySecurity update for groovy
    Typesecurity
    Severitymoderate
    References1179729,CVE-2020-17521
    Description:

    This update for groovy fixes the following issues:


    Advisory IDSUSE-RU-2020:3920-1
    ReleasedTue Dec 22 15:16:47 2020
    SummaryRecommended update for mutt
    Typerecommended
    Severitymoderate
    References1179461
    Description:

    This update for mutt fixes the following issues:


    Advisory IDSUSE-SU-2020:3922-1
    ReleasedTue Dec 22 15:20:46 2020
    SummarySecurity update for jetty-minimal
    Typesecurity
    Severitymoderate
    References1179727,CVE-2020-27218
    Description:

    This update for jetty-minimal fixes the following issues:


    Advisory IDSUSE-RU-2020:3929-1
    ReleasedWed Dec 23 10:06:31 2020
    SummaryRecommended update for lifecycle-data-sle-module-live-patching
    Typerecommended
    Severitymoderate
    References1020320
    Description:

    This update for lifecycle-data-sle-module-live-patching fixes the following issue:


    Advisory IDSUSE-SU-2020:3932-1
    ReleasedWed Dec 23 18:21:59 2020
    SummarySecurity update for java-1_8_0-ibm
    Typesecurity
    Severitymoderate
    References1177943,1180063,CVE-2020-14779,CVE-2020-14781,CVE-2020-14792,CVE-2020-14796,CVE-2020-14797,CVE-2020-14798,CVE-2020-14803
    Description:

    This update for java-1_8_0-ibm fixes the following issues:


    * Class Libraries: - z15 high utilization following Z/VM and Linux migration from z14 To z15 * Java Virtual Machine: - Assertion failed when trying to write a class file - Assertion failure at modronapi.cpp - Improve the performance of defining and finding classes * JIT Compiler: - An assert in ppcbinaryencoding.cpp may trigger when running with traps disabled on power - AOT field offset off by n bytes - Segmentation fault in jit module on ibm z platform


    Advisory IDSUSE-SU-2020:3933-1
    ReleasedThu Dec 24 12:35:40 2020
    SummarySecurity update for flac
    Typesecurity
    Severitymoderate
    References1180099,1180112,CVE-2020-0487,CVE-2020-0499
    Description:

    This update for flac fixes the following issues:


    Advisory IDSUSE-SU-2020:3934-1
    ReleasedThu Dec 24 12:37:11 2020
    SummarySecurity update for openexr
    Typesecurity
    Severitymoderate
    References1179879,CVE-2020-16587,CVE-2020-16588,CVE-2020-16589
    Description:

    This update for openexr fixes the following issues:
    Security issues fixed:


    Advisory IDSUSE-SU-2020:3935-1
    ReleasedFri Dec 25 09:26:54 2020
    SummarySecurity update for MozillaThunderbird
    Typesecurity
    Severitycritical
    References1179530,1180039,CVE-2020-16042,CVE-2020-26970,CVE-2020-26971,CVE-2020-26973,CVE-2020-26974,CVE-2020-26978,CVE-2020-35111,CVE-2020-35112,CVE-2020-35113
    Description:

    This update for MozillaThunderbird fixes the following issues:


    Mozilla Thunderbird 78.5.1

    MFSA 2020-53 (bsc#1179530)


    Advisory IDSUSE-RU-2020:3942-1
    ReleasedTue Dec 29 12:22:01 2020
    SummaryRecommended update for libidn2
    Typerecommended
    Severitymoderate
    References1180138
    Description:

    This update for libidn2 fixes the following issues:


    Advisory IDSUSE-SU-2021:28-1
    ReleasedTue Jan 5 15:57:44 2021
    SummarySecurity update for dovecot23
    Typesecurity
    Severityimportant
    References1174920,1174922,1174923,1180405,1180406,CVE-2020-12100,CVE-2020-12673,CVE-2020-12674,CVE-2020-24386,CVE-2020-25275
    Description:

    This update for dovecot23 fixes the following issues:
    Security issues fixed:


    Non-security issues fixed:


    Advisory IDSUSE-RU-2021:35-1
    ReleasedWed Jan 6 12:31:37 2021
    SummaryRecommended update for taglib
    Typerecommended
    Severitymoderate
    References1179817
    Description:

    This update for taglib fixes the following issues:


    Advisory IDSUSE-SU-2021:41-1
    ReleasedThu Jan 7 11:51:31 2021
    SummarySecurity update for tomcat
    Typesecurity
    Severitymoderate
    References1179602,CVE-2020-17527
    Description:

    This update for tomcat fixes the following issue:


    Advisory IDSUSE-RU-2021:65-1
    ReleasedMon Jan 11 15:11:49 2021
    SummaryRecommended update for hamcrest
    Typerecommended
    Severitylow
    References1120493,1179994
    Description:

    This update for hamcrest fixes the following issues:


    Advisory IDSUSE-SU-2021:71-1
    ReleasedTue Jan 12 08:30:53 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1180623,CVE-2020-16044
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-RU-2021:79-1
    ReleasedTue Jan 12 10:49:34 2021
    SummaryRecommended update for gcc7
    Typerecommended
    Severitymoderate
    References1167939
    Description:

    This update for gcc7 fixes the following issues:


    Advisory IDSUSE-SU-2021:88-1
    ReleasedTue Jan 12 14:33:31 2021
    SummarySecurity update for hawk2
    Typesecurity
    Severityimportant
    References1179998,CVE-2020-35458
    Description:

    This update for hawk2 fixes the following security issue:


    Advisory IDSUSE-RU-2021:105-1
    ReleasedTue Jan 12 19:50:06 2021
    SummaryRecommended update for postgresql12
    Typerecommended
    Severitylow
    References1178961
    Description:

    This update for postgresql12 fixes the following issues:


    Advisory IDSUSE-RU-2021:111-1
    ReleasedWed Jan 13 11:47:54 2021
    SummaryRecommended update for prometheus-ha_cluster_exporter
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for prometheus-ha_cluster_exporter fixes the following issue:
    Update to version 1.2.1


    Advisory IDSUSE-SU-2021:123-1
    ReleasedThu Jan 14 10:28:40 2021
    SummarySecurity update for MozillaThunderbird
    Typesecurity
    Severityimportant
    References1180623,CVE-2020-16044
    Description:

    This update for MozillaThunderbird fixes the following issues:


    Advisory IDSUSE-RU-2021:130-1
    ReleasedThu Jan 14 13:08:01 2021
    SummaryRecommended update for aide
    Typerecommended
    Severitymoderate
    References1180165
    Description:

    This update for aide fixes the following issue:


    Advisory IDSUSE-RU-2021:134-1
    ReleasedFri Jan 15 10:30:56 2021
    SummaryRecommended update for gnu-compilers-hpc
    Typerecommended
    Severityimportant
    References1174439
    Description:

    This update for gnu-compilers-hpc fixes the following issues:


    Advisory IDSUSE-SU-2021:175-1
    ReleasedWed Jan 20 09:23:50 2021
    SummarySecurity update for postgresql, postgresql13
    Typesecurity
    Severitymoderate
    References1178666,1178667,1178668,1178961,CVE-2020-25694,CVE-2020-25695,CVE-2020-25696
    Description:

    This update for postgresql, postgresql13 fixes the following issues:
    This update ships postgresql13.
    Upgrade to version 13.1:


    Initial packaging of PostgreSQL 13:


    Changes in postgresql wrapper package:


    Advisory IDSUSE-SU-2021:176-1
    ReleasedWed Jan 20 09:49:05 2021
    SummarySecurity update for xstream
    Typesecurity
    Severityimportant
    References1180145,1180146,1180994,CVE-2020-26217,CVE-2020-26258,CVE-2020-26259
    Description:

    This update for xstream fixes the following issues:
    xstream was updated to version 1.4.15.


    Advisory IDSUSE-RU-2021:179-1
    ReleasedWed Jan 20 13:38:51 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:





    Advisory IDSUSE-SU-2021:183-1
    ReleasedThu Jan 21 11:35:36 2021
    SummarySecurity update for perl-Convert-ASN1
    Typesecurity
    Severitymoderate
    References1168934,CVE-2013-7488
    Description:

    This update for perl-Convert-ASN1 fixes the following issue:


    Advisory IDSUSE-SU-2021:186-1
    ReleasedThu Jan 21 14:55:16 2021
    SummarySecurity update for wavpack
    Typesecurity
    Severitymoderate
    References1091340,1091341,1091342,1091343,1091344,1180414,CVE-2018-10536,CVE-2018-10537,CVE-2018-10538,CVE-2018-10539,CVE-2018-10540,CVE-2018-19840,CVE-2018-19841,CVE-2018-6767,CVE-2018-7253,CVE-2018-7254,CVE-2019-1010319,CVE-2019-11498,CVE-2020-35738
    Description:

    This update for wavpack fixes the following issues:


    Advisory IDSUSE-SU-2021:194-1
    ReleasedFri Jan 22 13:31:01 2021
    SummarySecurity update for stunnel
    Typesecurity
    Severitymoderate
    References1177580,1178533
    Description:

    This update for stunnel fixes the following issues:
    Security issue fixed:


    Non-security issues fixed:





    Advisory IDSUSE-SU-2021:195-1
    ReleasedFri Jan 22 15:17:17 2021
    SummarySecurity update for mutt
    Typesecurity
    Severitymoderate
    References1181221,CVE-2021-3181
    Description:

    This update for mutt fixes the following issue:


    Advisory IDSUSE-SU-2021:200-1
    ReleasedFri Jan 22 15:39:33 2021
    SummarySecurity update for hawk2
    Typesecurity
    Severitycritical
    References1179998,CVE-2020-35458
    Description:

    This update for hawk2 fixes the following issues:
    hawk2 was updated to version 2.4.0+git.1611141202.2fe6369e.
    Security issue fixed:


    Advisory IDSUSE-RU-2021:207-1
    ReleasedMon Jan 25 16:16:05 2021
    SummaryRecommended update for python-websockify
    Typerecommended
    Severitymoderate
    References1163513
    Description:

    This update for python-websockify fixes the following issues:


    Advisory IDSUSE-RU-2021:220-1
    ReleasedTue Jan 26 14:00:51 2021
    SummaryRecommended update for keyutils
    Typerecommended
    Severitymoderate
    References1180603
    Description:

    This update for keyutils fixes the following issues:


    Advisory IDSUSE-RU-2021:228-1
    ReleasedTue Jan 26 23:05:38 2021
    SummaryRecommended update for python-kiwi
    Typerecommended
    Severitymoderate
    References1179562,1180781
    Description:

    This update for python-kiwi fixes the following issues:


    Advisory IDSUSE-RU-2021:237-1
    ReleasedThu Jan 28 18:22:24 2021
    SummaryRecommended update for habootstrap-formula
    Typerecommended
    Severitymoderate
    References1177860
    Description:

    This update for drbd-formula, habootstrap-formula, iscsi-formula, saphanabootstrap-formula, sapnwbootstrap-formula fixes the following issues:
    drbd-formula:


    habootstrap-formula:
    iscsi-formula:

    saphanabootstrap-formula:

    sapnwbootstrap-formula:



    Advisory IDSUSE-SU-2021:243-1
    ReleasedFri Jan 29 09:37:29 2021
    SummarySecurity update for jackson-databind
    Typesecurity
    Severitymoderate
    References1177616,1180391,1181118,CVE-2020-25649,CVE-2020-35728,CVE-2021-20190
    Description:

    This update for jackson-databind fixes the following issues:
    jackson-databind was updated to 2.10.5.1: * #2589: `DOMDeserializer`: setExpandEntityReferences(false) may not prevent external entity expansion in all cases (CVE-2020-25649, bsc#1177616) * #2787 (partial fix): NPE after add mixin for enum * #2679: 'ObjectMapper.readValue('123', Void.TYPE)' throws 'should never occur'


    Advisory IDSUSE-SU-2021:257-1
    ReleasedMon Feb 1 14:46:06 2021
    SummarySecurity update for MozillaThunderbird
    Typesecurity
    Severityimportant
    References1181414,CVE-2020-15685,CVE-2020-26976,CVE-2021-23953,CVE-2021-23954,CVE-2021-23960,CVE-2021-23964
    Description:

    This update for MozillaThunderbird fixes the following issues:


    Advisory IDSUSE-SU-2021:259-1
    ReleasedMon Feb 1 14:50:33 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1181414,CVE-2020-26976,CVE-2021-23953,CVE-2021-23954,CVE-2021-23960,CVE-2021-23964
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-SU-2021:263-1
    ReleasedMon Feb 1 15:01:07 2021
    SummarySecurity update for terraform
    Typesecurity
    Severitymoderate
    References1168921,1170264,1177421,CVE-2020-14039
    Description:

    This update for terraform fixes the following issues:


    * Many features, bug fixes, and enhancements were made during this update. Please refer to the terraform rpm changelog, for a full list of all changes.

    * terraform-provider-aws * terraform-provider-azurerm * terraform-provider-external * terraform-provider-google * terraform-provider-helm * terraform-provider-kubernetes * terraform-provider-local * terraform-provider-null * terraform-provider-random * terraform-provider-tls


    Advisory IDSUSE-RU-2021:271-1
    ReleasedMon Feb 1 21:04:13 2021
    SummaryRecommended update for lshw
    Typerecommended
    Severitymoderate
    References1181411
    Description:

    This update for lshw fixes the following issues:


    Advisory IDSUSE-SU-2021:285-1
    ReleasedTue Feb 2 13:08:54 2021
    SummarySecurity update for cups
    Typesecurity
    Severitymoderate
    References1170671,1180520,CVE-2019-8842,CVE-2020-10001
    Description:

    This update for cups fixes the following issues:


    Advisory IDSUSE-RU-2021:289-1
    ReleasedTue Feb 2 15:20:09 2021
    SummaryRecommended update for arpwatch
    Typerecommended
    Severitylow
    References
    Description:

    This update for arpwatch fixes the following issues:


    Advisory IDSUSE-RU-2021:292-1
    ReleasedWed Feb 3 11:46:32 2021
    SummaryRecommended update for python-azure-agent
    Typerecommended
    Severitymoderate
    References1180719,1181600,1181601
    Description:

    This update for python-azure-agent contains the following fix:


    Advisory IDSUSE-RU-2021:293-1
    ReleasedWed Feb 3 12:52:34 2021
    SummaryRecommended update for gmp
    Typerecommended
    Severitymoderate
    References1180603
    Description:

    This update for gmp fixes the following issues:


    Advisory IDSUSE-RU-2021:294-1
    ReleasedWed Feb 3 12:54:28 2021
    SummaryRecommended update for libprotobuf
    Typerecommended
    Severitymoderate
    References
    Description:


    libprotobuf was updated to fix:


    Advisory IDSUSE-RU-2021:301-1
    ReleasedThu Feb 4 08:46:27 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:



    Advisory IDSUSE-RU-2021:337-1
    ReleasedMon Feb 8 13:14:24 2021
    SummaryRecommended update for build
    Typerecommended
    Severitylow
    References1181646
    Description:

    This update for build fixes the following issues:
    Features:


    A lot of fixes came with this update, please refer to this rpm's changelog to obtain a full list of all changes.


    Advisory IDSUSE-OU-2021:339-1
    ReleasedMon Feb 8 13:16:07 2021
    SummaryOptional update for pam
    Typeoptional
    Severitylow
    References
    Description:

    This update for pam fixes the following issues:


    This patch is optional to be installed - it doesn't fix any bugs.


    Advisory IDSUSE-SU-2021:352-1
    ReleasedTue Feb 9 15:02:05 2021
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1181239
    Description:

    This update for java-11-openjdk fixes the following issues:
    java-11-openjdk was upgraded to include January 2021 CPU (bsc#1181239)


    Advisory IDSUSE-RU-2021:417-1
    ReleasedWed Feb 10 12:02:41 2021
    SummaryRecommended update for osc
    Typerecommended
    Severitymoderate
    References235071
    Description:

    This update for osc fixes the following issues:


    Advisory IDSUSE-RU-2021:421-1
    ReleasedWed Feb 10 12:05:23 2021
    SummaryRecommended update for hwdata
    Typerecommended
    Severitylow
    References1180422,1180482
    Description:

    This update for hwdata fixes the following issues:


    Advisory IDSUSE-SU-2021:430-1
    ReleasedWed Feb 10 19:21:55 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severitylow
    References1181848
    Description:

    This update for MozillaFirefox fixes the following issues:
    Firefox Extended Support Release 78.7.1 ESR (bsc#1181848)


    Advisory IDSUSE-SU-2021:435-1
    ReleasedThu Feb 11 14:47:25 2021
    SummarySecurity update for containerd, docker, docker-runc, golang-github-docker-libnetwork
    Typesecurity
    Severityimportant
    References1174075,1176708,1178801,1178969,1180243,1180401,1181730,1181732,CVE-2020-15257,CVE-2021-21284,CVE-2021-21285
    Description:

    This update for containerd, docker, docker-runc, golang-github-docker-libnetwork fixes the following issues:
    Security issues fixed:


    Non-security issues fixed:













    Advisory IDSUSE-RU-2021:450-1
    ReleasedFri Feb 12 11:38:29 2021
    SummaryRecommended update for drbd-formula, habootstrap-formula, saphanabootstrap-formula, sapnwbootstrap-formula
    Typerecommended
    Severitymoderate
    References1177860,1181453
    Description:

    This update for drbd-formula, habootstrap-formula, saphanabootstrap-formula, sapnwbootstrap-formula fixes the following issues:
    habootstrap-formula:


    saphanabootstrap-formula:

    sapnwbootstrap-formula:

    drbd-formula:


    Advisory IDSUSE-SU-2021:483-1
    ReleasedTue Feb 16 10:04:38 2021
    SummarySecurity update for python-bottle
    Typesecurity
    Severityimportant
    References1182181,CVE-2020-28473
    Description:

    This update for python-bottle fixes the following issues:


    Advisory IDSUSE-SU-2021:488-1
    ReleasedTue Feb 16 12:42:38 2021
    SummarySecurity update for jasper
    Typesecurity
    Severityimportant
    References1179748,1181483,CVE-2020-27828,CVE-2021-3272
    Description:

    This update for jasper fixes the following issues:


    Advisory IDSUSE-SU-2021:492-1
    ReleasedWed Feb 17 09:40:06 2021
    SummarySecurity update for screen
    Typesecurity
    Severityimportant
    References1182092,CVE-2021-26937
    Description:

    This update for screen fixes the following issues:


    Advisory IDSUSE-RU-2021:493-1
    ReleasedWed Feb 17 11:25:46 2021
    SummaryRecommended update for python-kiwi
    Typerecommended
    Severitymoderate
    References1170863,1175729,1176129,1176134,1176977,1179562,1180781
    Description:

    This update for python-kiwi fixes the following issues:
    Update to version 9.21.23



    - This update fixes the symbolic link creation for `/var/lib/rpm`. More specific for derived container images in which the base root tree already included the `/var/lib/rpm` the link, the `ln` command was creating a symbolic link inside the `/var/lib/rpm` folder givent that it was following the already existing symbolic link. Adding the `--no-target-directory` force `ln` command to treat `/var/lib/rpm` path as the fully qualified symlink name.


    Advisory IDSUSE-RU-2021:499-1
    ReleasedWed Feb 17 19:07:44 2021
    SummaryRecommended update for MozillaThunderbird
    Typerecommended
    Severitymoderate
    References1181848
    Description:

    This update for MozillaThunderbird fixes the following issues:


    Advisory IDSUSE-RU-2021:509-1
    ReleasedThu Feb 18 12:11:19 2021
    SummaryRecommended update for ucode-intel
    Typerecommended
    Severityimportant
    References1179224,1182347
    Description:

    This update for ucode-intel fixes the following issues:
    Updated Intel CPU Microcode to 20210216 official release. (bsc#1182347 bsc#1179224)


    Advisory IDSUSE-RU-2021:516-1
    ReleasedThu Feb 18 14:42:51 2021
    SummaryRecommended update for docker, golang-github-docker-libnetwork
    Typerecommended
    Severitymoderate
    References1178801,1180401,1182168
    Description:

    This update for docker, golang-github-docker-libnetwork fixes the following issues:


    Advisory IDSUSE-RU-2021:518-1
    ReleasedThu Feb 18 17:57:56 2021
    SummaryRecommended update for highlight
    Typerecommended
    Severitymoderate
    References1142155
    Description:

    This update for highlight fixes the following issues:
    Update from version 3.42 to 3.59:


    Advisory IDSUSE-RU-2021:526-1
    ReleasedFri Feb 19 12:46:27 2021
    SummaryRecommended update for python-distro
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for python-distro fixes the following issues:
    Upgrade from version 1.2.0 to 1.5.0 (jsc#ECO-3212)




    Advisory IDSUSE-SU-2021:531-1
    ReleasedFri Feb 19 14:54:06 2021
    SummarySecurity update for tomcat
    Typesecurity
    Severitymoderate
    References1180947,CVE-2021-24122
    Description:

    This update for tomcat fixes the following issues:


    Advisory IDSUSE-RU-2021:542-1
    ReleasedMon Feb 22 12:14:19 2021
    SummaryRecommended update for poppler
    Typerecommended
    Severitymoderate
    References1181551
    Description:

    This update for poppler fixes the following issues:


    Advisory IDSUSE-SU-2021:543-1
    ReleasedMon Feb 22 13:54:49 2021
    SummarySecurity update for postgresql13
    Typesecurity
    Severitymoderate
    References1179765,1182039,1182040,CVE-2021-20229,CVE-2021-3393
    Description:

    This update for postgresql13 fixes the following issues:
    Upgrade to version 13.2:
    * Updating stored views and reindexing might be needed after applying this update. * CVE-2021-3393, bsc#1182040: Fix information leakage in constraint-violation error messages. * CVE-2021-20229, bsc#1182039: Fix failure to check per-column SELECT privileges in some join queries.


    Advisory IDSUSE-RU-2021:554-1
    ReleasedTue Feb 23 11:14:46 2021
    SummaryRecommended update for lifecycle-data-sle-module-live-patching
    Typerecommended
    Severitymoderate
    References1020320
    Description:

    This update for lifecycle-data-sle-module-live-patching fixes the following issue:


    Advisory IDSUSE-RU-2021:571-1
    ReleasedTue Feb 23 16:11:33 2021
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1180176
    Description:

    This update for cloud-init contains the following fixes:



    Advisory IDSUSE-RU-2021:577-1
    ReleasedWed Feb 24 10:00:26 2021
    SummaryRecommended update for fio
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for fio fixes the following issues:


    For a full list of changes, please refer to this rpm's changelog.


    Advisory IDSUSE-RU-2021:579-1
    ReleasedWed Feb 24 10:38:22 2021
    SummaryRecommended update for arpwatch
    Typerecommended
    Severitymoderate
    References1181936
    Description:

    This update for arpwatch fixes the following issues:


    Advisory IDSUSE-OU-2021:582-1
    ReleasedWed Feb 24 11:24:09 2021
    SummaryOptional update for netpbm
    Typeoptional
    Severitylow
    References1181571
    Description:

    This update for netpbm fixes the following issues:


    This patch is optional to install. It doesn't fix any issues for users.


    Advisory IDSUSE-RU-2021:589-1
    ReleasedThu Feb 25 06:11:06 2021
    SummaryRecommended update for hawk2
    Typerecommended
    Severitymoderate
    References1181436,1182163
    Description:

    This update for hawk2 fixes the following issues:


    Advisory IDSUSE-RU-2021:596-1
    ReleasedThu Feb 25 10:26:30 2021
    SummaryRecommended update for gcc7
    Typerecommended
    Severitymoderate
    References1181618
    Description:

    This update for gcc7 fixes the following issues:


    Advisory IDSUSE-RU-2021:598-1
    ReleasedThu Feb 25 10:30:23 2021
    SummaryRecommended update for go
    Typerecommended
    Severitymoderate
    References1164903,1172608,1175132
    Description:

    This update for go fixes the following issues:
    Update to current stable go1.15 (bsc#1175132)



    Update to current stable go1.14 (bsc#1164903)


    Advisory IDSUSE-OU-2021:612-1
    ReleasedFri Feb 26 04:55:47 2021
    SummaryOptional update for m4
    Typeoptional
    Severitylow
    References1181571
    Description:

    This update for m4 fixes the following issues:


    Advisory IDSUSE-SU-2021:654-1
    ReleasedFri Feb 26 20:01:10 2021
    SummarySecurity update for python-Jinja2
    Typesecurity
    Severityimportant
    References1181944,1182244,CVE-2020-28493
    Description:

    This update for python-Jinja2 fixes the following issues:


    Advisory IDSUSE-RU-2021:656-1
    ReleasedMon Mar 1 09:34:21 2021
    SummaryRecommended update for protobuf
    Typerecommended
    Severitymoderate
    References1177127
    Description:

    This update for protobuf fixes the following issues:


    Advisory IDSUSE-SU-2021:659-1
    ReleasedMon Mar 1 13:41:20 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1182357,1182614,CVE-2021-23968,CVE-2021-23969,CVE-2021-23973,CVE-2021-23978
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-SU-2021:661-1
    ReleasedMon Mar 1 16:12:47 2021
    SummarySecurity update for MozillaThunderbird
    Typesecurity
    Severityimportant
    References1182357,1182614,CVE-2021-23968,CVE-2021-23969,CVE-2021-23973,CVE-2021-23978
    Description:

    This update for MozillaThunderbird fixes the following issues:


    Advisory IDSUSE-SU-2021:665-1
    ReleasedMon Mar 1 16:15:47 2021
    SummarySecurity update for java-1_8_0-openjdk
    Typesecurity
    Severitymoderate
    References1181239,CVE-2020-14803
    Description:

    This update for java-1_8_0-openjdk fixes the following issues:


    Advisory IDSUSE-SU-2021:670-1
    ReleasedMon Mar 1 17:35:51 2021
    SummarySecurity update for java-1_8_0-ibm
    Typesecurity
    Severityimportant
    References1181239,1182186,CVE-2020-14803,CVE-2020-27221
    Description:

    This update for java-1_8_0-ibm fixes the following issues:


    Advisory IDSUSE-RU-2021:690-1
    ReleasedWed Mar 3 17:14:42 2021
    SummaryRecommended update for scap-security-guide
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for scap-security-guide fixes the following issues:
    This update ships the ComplianceAsCode build version 0.1.54, containing the following supported file:


    It can be evaluated using 'oscap' from 'openscap-utils', e.g. by doing on SUSE Linux Enterprise 12:

    or the community supplied CIS on SUSE Linux Enterprise 15:

    More content will be added in future updates.
    Also supplied are Red Hat, CentOS, Fedora, Debian, Ubuntu and related builds from ComplianceAsCode.


    Advisory IDSUSE-RU-2021:707-1
    ReleasedThu Mar 4 09:19:36 2021
    SummaryRecommended update for systemd-rpm-macros
    Typerecommended
    Severitymoderate
    References1177039
    Description:

    This update for systemd-rpm-macros fixes the following issues:




    Advisory IDSUSE-RU-2021:716-1
    ReleasedFri Mar 5 17:22:27 2021
    SummaryRecommended update for go
    Typerecommended
    Severitymoderate
    References1182345
    Description:

    This update for go fixes the following issues:


    Advisory IDSUSE-RU-2021:717-1
    ReleasedFri Mar 5 17:22:41 2021
    SummaryRecommended update for stunnel
    Typerecommended
    Severitymoderate
    References1182376
    Description:

    This update for stunnel fixes the following issues:


    Advisory IDSUSE-RU-2021:726-1
    ReleasedMon Mar 8 17:16:33 2021
    SummaryRecommended update for regionServiceClientConfigEC2
    Typerecommended
    Severitymoderate
    References1176005,1176007
    Description:

    This update for regionServiceClientConfigEC2 contains the following fixes:


    Advisory IDSUSE-RU-2021:734-1
    ReleasedTue Mar 9 14:40:17 2021
    SummaryRecommended update for dehydrated
    Typerecommended
    Severitymoderate
    References1154167,1178927
    Description:

    This update for dehydrated fixes the following issues:
    Update to dehydrated 0.7.0 (jsc#SLE-15909)


    - Support for external account bindings - Special support for ZeroSSL - Support presets for some CAs instead of requiring URLs - Allow requesting preferred chain (--preferred-chain) - Added method to show CAs current terms of service (--display-terms) - Allow setting path to domains.txt using cli arguments (--domains-txt) - Added new cli command --cleanupdelete which deletes old files instead of archiving them

    - No more silent failures on broken hook-scripts - Better error-handling with KEEP_GOING enabled - Check actual order status instead of assuming it's valid - Don't include keyAuthorization in challenge validation (RFC compliance)

    - Using EC secp384r1 as default certificate type - Use JSON.sh to parse JSON - Use account URL instead of account ID (RFC compliance) - Dehydrated now has a new home: https://github.com/dehydrated-io/dehydrated - Added OCSP_FETCH and OCSP_DAYS to per-certificate configurable options




    Advisory IDSUSE-RU-2021:746-1
    ReleasedTue Mar 9 16:57:49 2021
    SummaryRecommended update for xorg-x11-server
    Typerecommended
    Severitymoderate
    References1182884
    Description:

    This update for xorg-x11-server fixes the following issues:


    Advisory IDSUSE-RU-2021:761-1
    ReleasedWed Mar 10 12:26:54 2021
    SummaryRecommended update for libX11
    Typerecommended
    Severitymoderate
    References1181963
    Description:

    This update for libX11 fixes the following issues:
    - Fixes a race condition in 'libX11' that causes various applications to crash randomly. (bsc#1181963)


    Advisory IDSUSE-SU-2021:769-1
    ReleasedThu Mar 11 20:22:29 2021
    SummarySecurity update for openssl-1_0_0
    Typesecurity
    Severitymoderate
    References1182331,1182333,CVE-2021-23840,CVE-2021-23841
    Description:

    This update for openssl-1_0_0 fixes the following issues:


    Advisory IDSUSE-SU-2021:772-1
    ReleasedFri Mar 12 11:56:21 2021
    SummarySecurity update for stunnel
    Typesecurity
    Severityimportant
    References1177580,1182529,CVE-2021-20230
    Description:

    This update for stunnel fixes the following issues:


    Advisory IDSUSE-RU-2021:784-1
    ReleasedMon Mar 15 11:19:08 2021
    SummaryRecommended update for efivar
    Typerecommended
    Severitymoderate
    References1181967
    Description:

    This update for efivar fixes the following issues:


    Advisory IDSUSE-RU-2021:795-1
    ReleasedTue Mar 16 10:28:02 2021
    SummaryRecommended update for systemd-rpm-macros
    Typerecommended
    Severitylow
    References1182661,1183012,1183051
    Description:

    This update for systemd-rpm-macros fixes the following issues:


    Advisory IDSUSE-SU-2021:800-1
    ReleasedTue Mar 16 12:53:08 2021
    SummarySecurity update for velocity
    Typesecurity
    Severityimportant
    References1183360,CVE-2020-13936
    Description:

    This update for velocity fixes the following issues:


    Advisory IDSUSE-RU-2021:873-1
    ReleasedThu Mar 18 09:40:58 2021
    SummaryRecommended update for xorg-x11-server
    Typerecommended
    Severitymoderate
    References1182510
    Description:

    This update for xorg-x11-server fixes the following issues:


    Advisory IDSUSE-RU-2021:880-1
    ReleasedFri Mar 19 04:14:38 2021
    SummaryRecommended update for hwdata
    Typerecommended
    Severitylow
    References1170160,1182482
    Description:

    This update for hwdata fixes the following issues:


    Advisory IDSUSE-RU-2021:906-1
    ReleasedFri Mar 19 16:18:34 2021
    SummaryRecommended maintenance update for SUSE Manager 4.1: Server and Proxy
    Typerecommended
    Severitymoderate
    References1157711,1173893,1175660,1177508,1179579,1180145,1180146,1180224,1180439,1180547,1180558,1180757,1180994,1181048,1181165,1181228,1181290,1181416,1181423,1181635,1181807,1181814,1182001,1182006,1182008,1182071,1182200,1182492,1182685,CVE-2020-26217,CVE-2020-26258,CVE-2020-26259,CVE-2020-28477
    Description:

    Maintenance update for SUSE Manager 4.1: Server and Proxy
    This is a codestream only patchinfo.


    Advisory IDSUSE-RU-2021:924-1
    ReleasedTue Mar 23 10:00:49 2021
    SummaryRecommended update for filesystem
    Typerecommended
    Severitymoderate
    References1078466,1146705,1175519,1178775,1180020,1180083,1180596,1181011,1181831,1183094
    Description:

    This update for filesystem the following issues:


    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2021:925-1
    ReleasedTue Mar 23 10:39:19 2021
    SummaryRecommended update for fetchmail
    Typerecommended
    Severitymoderate
    References1136538,1182807
    Description:

    This update for fetchmail fixes the following issues:


    Advisory IDSUSE-RU-2021:927-1
    ReleasedTue Mar 23 14:07:06 2021
    SummaryRecommended update for libreoffice
    Typerecommended
    Severitymoderate
    References1041090,1049382,1116658,1136234,1155141,1173404,1173409,1173410,1173471,1174465,1176547,1177955,1178807,1178943,1178944,1179025,1179203,1181122,1181644,1181872,1182790
    Description:

    This update for libreoffice provides the upgrade from version 6.4.5.2 to 7.1.1.2 (jsc#ECO-3150, bsc#1182790)

    libreoffice:


    libixion:
    Update to 0.16.1:

    libmwaw:
    Update to 0.3.17:

    libnumbertext:
    Update to 1.0.6
    liborcus:
    Update to 0.16.1

    libstaroffice:
    Update to 0.0.7:

    libwps:
    Update to 0.4.11:

    glfw:
    New package provided on version 3.3.2:

    Box2D:
    New package provided on version 2.4.1:
    * Extended distance joint to have a minimum and maximum limit. * `B2_USER_SETTINGS` and `b2_user_settings.h` can control user data, length units, and maximum polygon vertices. * Default user data is now uintptr_t instead of void* * b2FixtureDef::restitutionThreshold lets you set the restitution velocity threshold per fixture. * Collision * Chain and edge shape must now be one-sided to eliminate ghost collisions * Broad-phase optimizations * Added b2ShapeCast for linear shape casting * Dynamics * Joint limits are now predictive and not stateful * Experimental 2D cloth (rope) * b2Body::SetActive -> b2Body::SetEnabled * Better support for running multiple worlds * Handle zero density better * The body behaves like a static body * The body is drawn with a red color * Added translation limit to wheel joint * World dump now writes to box2d_dump.inl * Static bodies are never awake * All joints with spring-dampers now use stiffness and damping * Added utility functions to convert frequency and damping ratio to stiffness and damping * Polygon creation now computes the convex hull. * The convex hull code will merge vertices closer than dm_linearSlop.


    Advisory IDSUSE-SU-2021:930-1
    ReleasedWed Mar 24 12:09:23 2021
    SummarySecurity update for nghttp2
    Typesecurity
    Severityimportant
    References1172442,1181358,CVE-2020-11080
    Description:

    This update for nghttp2 fixes the following issues:


    Advisory IDSUSE-SU-2021:933-1
    ReleasedWed Mar 24 12:16:14 2021
    SummarySecurity update for ruby2.5
    Typesecurity
    Severityimportant
    References1177125,1177222,CVE-2020-25613
    Description:

    This update for ruby2.5 fixes the following issues:


    Advisory IDSUSE-SU-2021:936-1
    ReleasedWed Mar 24 12:21:17 2021
    SummarySecurity update for libass
    Typesecurity
    Severityimportant
    References1177862,CVE-2020-26682
    Description:

    This update for libass fixes the following issues:


    Advisory IDSUSE-SU-2021:940-1
    ReleasedWed Mar 24 12:25:20 2021
    SummarySecurity update for jetty-minimal
    Typesecurity
    Severityimportant
    References1182898,CVE-2020-27223
    Description:

    This update for jetty-minimal fixes the following issues:


    Advisory IDSUSE-SU-2021:941-1
    ReleasedWed Mar 24 12:25:53 2021
    SummarySecurity update for hawk2
    Typesecurity
    Severityimportant
    References1179999,1182165,1182166,CVE-2020-35459,CVE-2021-25314
    Description:

    This update for hawk2 fixes the following issues:


    Advisory IDSUSE-SU-2021:949-1
    ReleasedWed Mar 24 14:32:00 2021
    SummarySecurity update for evolution-data-server
    Typesecurity
    Severitymoderate
    References1173910,1174712,1182882,CVE-2020-14928,CVE-2020-16117
    Description:

    This update for evolution-data-server fixes the following issues:


    This update for evolution-ews fixes the following issue:


    Advisory IDSUSE-RU-2021:952-1
    ReleasedThu Mar 25 14:36:56 2021
    SummaryRecommended update for libunwind
    Typerecommended
    Severitymoderate
    References1160876,1171549
    Description:

    This update for libunwind fixes the following issues:


    Advisory IDSUSE-RU-2021:953-1
    ReleasedThu Mar 25 14:37:26 2021
    SummaryRecommended update for psmisc
    Typerecommended
    Severitymoderate
    References1178407
    Description:

    This update for psmisc fixes the following issues:


    Advisory IDSUSE-RU-2021:960-1
    ReleasedMon Mar 29 11:16:28 2021
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1181283
    Description:

    This update for cloud-init fixes the following issues:


    Advisory IDSUSE-feature-2021:961-1
    ReleasedMon Mar 29 11:19:46 2021
    SummaryFeature providing sapstartsrv-resource-agents
    Typefeature
    Severitymoderate
    References
    Description:

    This update for sapstartsrv-resource-agents provides the following changes:
    Simplified Cluster FS architecture for S/4HANA and NetWeaver (jsc#ECO-3341):


    Advisory IDSUSE-RU-2021:964-1
    ReleasedMon Mar 29 11:31:30 2021
    SummaryRecommended update for clamsap
    Typerecommended
    Severitymoderate
    References1181586
    Description:

    This update for clamsap fixes the following issues:


    Advisory IDSUSE-SU-2021:966-1
    ReleasedMon Mar 29 13:06:24 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1183942,CVE-2021-23981,CVE-2021-23982,CVE-2021-23984,CVE-2021-23987
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-RU-2021:967-1
    ReleasedMon Mar 29 13:48:07 2021
    SummaryRecommended update for scap-security-guide
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for scap-security-guide fixes the following issues:


    Advisory IDSUSE-SU-2021:974-1
    ReleasedMon Mar 29 19:31:27 2021
    SummarySecurity update for tar
    Typesecurity
    Severitylow
    References1181131,CVE-2021-20193
    Description:

    This update for tar fixes the following issues:
    CVE-2021-20193: Memory leak in read_header() in list.c (bsc#1181131)


    Advisory IDSUSE-RU-2021:981-1
    ReleasedTue Mar 30 10:59:43 2021
    SummaryRecommended update for cloud-regionsrv
    Typerecommended
    Severitymoderate
    References1029162,1171232,1171233
    Description:

    This update for cloud-regionsrv fixes the following issues:


    Advisory IDSUSE-RU-2021:985-1
    ReleasedTue Mar 30 14:43:43 2021
    SummaryRecommended update for the Azure SDK and CLI
    Typerecommended
    Severitymoderate
    References1125671,1140565,1154393,1174514,1175289,1176784,1176785,1178168,CVE-2020-14343,CVE-2020-25659
    Description:


    This update for the Azure SDK and CLI adds support for the AHB (Azure Hybrid Benefit). (bsc#1176784, jsc#ECO=3105)


    Advisory IDSUSE-RU-2021:996-1
    ReleasedWed Mar 31 15:17:03 2021
    SummaryRecommended update for mariadb-connector-c
    Typerecommended
    Severitymoderate
    References1182739
    Description:

    This update for mariadb-connector-c fixes the following issues:


    Advisory IDSUSE-RU-2021:1002-1
    ReleasedThu Apr 1 13:59:48 2021
    SummaryRecommended update for wireguard-tools
    Typerecommended
    Severitylow
    References1181334
    Description:

    This update for wireguard-tools fixes the following issues:


    Advisory IDSUSE-SU-2021:1007-1
    ReleasedThu Apr 1 17:47:20 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1183942,CVE-2021-23981,CVE-2021-23982,CVE-2021-23984,CVE-2021-23987
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-SU-2021:1008-1
    ReleasedThu Apr 1 17:49:05 2021
    SummarySecurity update for tomcat
    Typesecurity
    Severityimportant
    References1182909,1182912,CVE-2021-25122,CVE-2021-25329
    Description:

    This update for tomcat fixes the following issues:
    CVE-2021-25122: Apache Tomcat h2c request mix-up (bsc#1182912) CVE-2021-25329: Complete fix for CVE-2020-9484 (bsc#1182909)


    Advisory IDSUSE-RU-2021:1017-1
    ReleasedTue Apr 6 14:27:58 2021
    SummaryRecommended update for dehydrated
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for dehydrated fixes the following issues:


    Advisory IDSUSE-RU-2021:1018-1
    ReleasedTue Apr 6 14:29:13 2021
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References1180713
    Description:

    This update for gzip fixes the following issues:


    Advisory IDSUSE-RU-2021:1021-1
    ReleasedTue Apr 6 14:30:30 2021
    SummaryRecommended update for cups
    Typerecommended
    Severitymoderate
    References1175960
    Description:

    This update for cups fixes the following issues:


    Advisory IDSUSE-SU-2021:1029-1
    ReleasedTue Apr 6 18:26:20 2021
    SummarySecurity update for gssproxy
    Typesecurity
    Severitymoderate
    References1180515,CVE-2020-12658
    Description:

    This update for gssproxy fixes the following issues:


    Advisory IDSUSE-SU-2021:1097-1
    ReleasedWed Apr 7 18:06:54 2021
    SummarySecurity update for openexr
    Typesecurity
    Severitymoderate
    References1184172,1184173,1184174,CVE-2021-3474,CVE-2021-3475,CVE-2021-3476
    Description:

    This update for openexr fixes the following issues:


    Advisory IDSUSE-RU-2021:1100-1
    ReleasedThu Apr 8 08:44:13 2021
    SummaryRecommended update for sapconf
    Typerecommended
    Severitymoderate
    References1176061,1179524,1182314,1182906
    Description:

    This update for sapconf fixes the following issues:


    Advisory IDSUSE-SU-2021:1104-1
    ReleasedThu Apr 8 10:32:42 2021
    SummarySecurity update for fwupdate
    Typesecurity
    Severityimportant
    References1182057
    Description:

    This update for fwupdate fixes the following issues:


    Advisory IDSUSE-SU-2021:1116-1
    ReleasedFri Apr 9 10:56:55 2021
    SummarySecurity update for umoci
    Typesecurity
    Severityimportant
    References1184147,CVE-2021-29136
    Description:

    This update for umoci fixes the following issues:


    Advisory IDSUSE-RU-2021:1137-1
    ReleasedMon Apr 12 13:09:53 2021
    SummaryRecommended update for lifecycle-data-sle-live-patching
    Typerecommended
    Severitylow
    References1020320
    Description:

    This update for lifecycle-data-sle-live-patching fixes the following issues:


    Advisory IDSUSE-RU-2021:1155-1
    ReleasedTue Apr 13 04:42:54 2021
    SummaryRecommended update for sblim-sfcb
    Typerecommended
    Severityimportant
    References1180753
    Description:

    This update for sblim-sfcb fixes the following issue:


    Advisory IDSUSE-SU-2021:1163-1
    ReleasedTue Apr 13 13:42:38 2021
    SummarySecurity update for spamassassin
    Typesecurity
    Severityimportant
    References1159133,1184221,CVE-2019-12420,CVE-2020-1946
    Description:

    This update for spamassassin fixes the following issues:


    Advisory IDSUSE-SU-2021:1167-1
    ReleasedTue Apr 13 14:04:14 2021
    SummarySecurity update for MozillaThunderbird
    Typesecurity
    Severityimportant
    References1177542,1183942,1184536,CVE-2021-23981,CVE-2021-23982,CVE-2021-23984,CVE-2021-23987,CVE-2021-23991,CVE-2021-23992
    Description:

    This update for MozillaThunderbird fixes the following issues:


    Advisory IDSUSE-RU-2021:1169-1
    ReleasedTue Apr 13 15:01:42 2021
    SummaryRecommended update for procps
    Typerecommended
    Severitylow
    References1181976
    Description:

    This update for procps fixes the following issues:


    Advisory IDSUSE-SU-2021:1182-1
    ReleasedTue Apr 13 18:38:05 2021
    SummarySecurity update for xorg-x11-server
    Typesecurity
    Severityimportant
    References1180128,CVE-2021-3472
    Description:

    This update for xorg-x11-server fixes the following issues:


    Advisory IDSUSE-SU-2021:1190-1
    ReleasedWed Apr 14 14:08:13 2021
    SummarySecurity update for clamav
    Typesecurity
    Severityimportant
    References1181256,1184532,1184533,1184534,CVE-2021-1252,CVE-2021-1404,CVE-2021-1405
    Description:

    This update for clamav fixes the following issues:


    Advisory IDSUSE-RU-2021:1230-1
    ReleasedThu Apr 15 17:09:58 2021
    SummaryRecommended update for SUSE Manager Client Tools
    Typerecommended
    Severitymoderate
    References1131670,1178072,1181124,1181474,1182339,1182603,1183959
    Description:


    This update fixes the following issues:
    golang-github-boynux-squid_exporter:


    golang-github-lusitaniae-apache_exporter:

    golang-github-prometheus-prometheus:

    grafana:

    rhnlib:

    spacecmd:

    spacewalk-client-tools:

    supportutils-plugin-salt:

    zypp-plugin-spacewalk:


    Advisory IDSUSE-RU-2021:1234-1
    ReleasedThu Apr 15 17:21:44 2021
    SummaryRecommended update for python-kiwi
    Typerecommended
    Severitymoderate
    References1178670,1182211,1182264,1182963,1183059
    Description:

    This update for python-kiwi fixes the following issues:
    Upgrade from version 9.23.19 to version 9.23.20


    Advisory IDSUSE-RU-2021:1236-1
    ReleasedFri Apr 16 08:13:51 2021
    SummaryRecommended update for tcsh
    Typerecommended
    Severityimportant
    References1179316
    Description:

    This update for tcsh fixes the following issues:


    Advisory IDSUSE-SU-2021:1280-1
    ReleasedTue Apr 20 14:34:19 2021
    SummarySecurity update for ruby2.5
    Typesecurity
    Severitymoderate
    References1184644,CVE-2021-28965
    Description:

    This update for ruby2.5 fixes the following issues:


    Advisory IDSUSE-SU-2021:1282-1
    ReleasedTue Apr 20 14:47:17 2021
    SummarySecurity update for apache-commons-io
    Typesecurity
    Severitymoderate
    References1184755,CVE-2021-29425
    Description:

    This update for apache-commons-io fixes the following issues:


    Advisory IDSUSE-RU-2021:1289-1
    ReleasedWed Apr 21 14:02:46 2021
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References1177047
    Description:

    This update for gzip fixes the following issues:


    Advisory IDSUSE-RU-2021:1291-1
    ReleasedWed Apr 21 14:04:06 2021
    SummaryRecommended update for mpfr
    Typerecommended
    Severitymoderate
    References1141190
    Description:

    This update for mpfr fixes the following issues:


    Technical library fixes:


    Advisory IDSUSE-SU-2021:1307-1
    ReleasedFri Apr 23 09:15:01 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1184960,CVE-2021-23961,CVE-2021-23994,CVE-2021-23995,CVE-2021-23998,CVE-2021-23999,CVE-2021-24002,CVE-2021-29945,CVE-2021-29946
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-SU-2021:1313-1
    ReleasedMon Apr 26 09:12:07 2021
    SummarySecurity update for python-aiohttp
    Typesecurity
    Severityimportant
    References1184745,CVE-2021-21330
    Description:

    This update for python-aiohttp fixes the following issues:


    Advisory IDSUSE-RU-2021:1320-1
    ReleasedMon Apr 26 15:07:58 2021
    SummaryRecommended update for xorg-x11-server
    Typerecommended
    Severitymoderate
    References1184072,1184543
    Description:

    This update for xorg-x11-server fixes the following issues:


    Advisory IDSUSE-RU-2021:1327-1
    ReleasedTue Apr 27 13:41:31 2021
    SummaryRecommended update for sapstartsrv-resource-agents
    Typerecommended
    Severitymoderate
    References1183969
    Description:

    This update for sapstartsrv-resource-agents fixes the following issues:


    Advisory IDSUSE-RU-2021:1335-1
    ReleasedTue Apr 27 17:01:57 2021
    SummaryRecommended update for hawk2
    Typerecommended
    Severityimportant
    References1184274
    Description:

    This update for hawk2 fixes the following issue:
    Update to version 2.6.4:


    Advisory IDSUSE-RU-2021:1405-1
    ReleasedWed Apr 28 15:09:07 2021
    SummaryRecommended update for brp-check-suse
    Typerecommended
    Severitymoderate
    References1184555
    Description:

    This update for brp-check-suse fixes the following issues:


    Advisory IDSUSE-SU-2021:1409-1
    ReleasedWed Apr 28 16:32:50 2021
    SummarySecurity update for giflib
    Typesecurity
    Severitylow
    References1184123
    Description:

    This update for giflib fixes the following issues:


    Advisory IDSUSE-RU-2021:1414-1
    ReleasedWed Apr 28 18:32:11 2021
    SummaryRecommended update for boost-legacy
    Typerecommended
    Severityimportant
    References1006584,1038083,1076640,1082318,1175886,401964,439805,457699,461372,477603,479659,544958,621140,655747,714373,765443,951902,958150,994378,994381,994382,994383,996917,CVE-2008-0171
    Description:

    This update for boost-legacy fixes the following issues:

    Create a new boost-legacy package with version 1.66.0. (bsc#1175886, jsc#SLE-17304, jsc#ECO-3147)


    Changes in version 1.66.0:


    Advisory IDSUSE-RU-2021:1416-1
    ReleasedThu Apr 29 06:19:16 2021
    SummaryRecommended update for kyotocabinet
    Typerecommended
    Severitylow
    References1185033
    Description:

    This update for kyotocabinet fixes the following issues:


    Advisory IDSUSE-RU-2021:1417-1
    ReleasedThu Apr 29 06:19:47 2021
    SummaryRecommended update for ntp
    Typerecommended
    Severitymoderate
    References1185171
    Description:

    This update for ntp fixes the following issues:


    Advisory IDSUSE-RU-2021:1424-1
    ReleasedThu Apr 29 06:22:32 2021
    SummaryRecommended update for openslp
    Typerecommended
    Severitymoderate
    References1166637,1184008
    Description:

    This update for openslp fixes the following issues:


    Advisory IDSUSE-RU-2021:1427-1
    ReleasedThu Apr 29 06:24:32 2021
    SummaryRecommended update for scap-security-guide
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for scap-security-guide fixes the following issues:
    This update ships the ComplianceAsCode build version 0.1.55+git containing the following supported file:


    It can be evaluated using 'oscap' from 'openscap-utils', e.g. by doing on SUSE Linux Enterprise 12:

    On SUSE Linux Enterprise 15:

    or the community supplied CIS on SUSE Linux Enterprise 15:

    More content will be added in future updates.


    Advisory IDSUSE-SU-2021:1432-1
    ReleasedThu Apr 29 10:06:47 2021
    SummarySecurity update for MozillaThunderbird
    Typesecurity
    Severityimportant
    References1184960,CVE-2021-23961,CVE-2021-23994,CVE-2021-23995,CVE-2021-23998,CVE-2021-23999,CVE-2021-24002,CVE-2021-29945,CVE-2021-29946,CVE-2021-29948
    Description:

    This update for MozillaThunderbird fixes the following issues:


    Advisory IDSUSE-RU-2021:1448-1
    ReleasedFri Apr 30 08:08:17 2021
    SummaryRecommended update for pidentd
    Typerecommended
    Severitymoderate
    References1185070
    Description:

    This update for pidentd fixes the following issues:


    Advisory IDSUSE-RU-2021:1449-1
    ReleasedFri Apr 30 08:08:25 2021
    SummaryRecommended update for systemd-presets-branding-SLE
    Typerecommended
    Severitymoderate
    References1165780
    Description:

    This update for systemd-presets-branding-SLE fixes the following issues:


    Advisory IDSUSE-RU-2021:1451-1
    ReleasedFri Apr 30 08:08:45 2021
    SummaryRecommended update for dhcp
    Typerecommended
    Severitymoderate
    References1185157
    Description:

    This update for dhcp fixes the following issues:


    Advisory IDSUSE-SU-2021:1454-1
    ReleasedFri Apr 30 09:22:26 2021
    SummarySecurity update for cups
    Typesecurity
    Severityimportant
    References1184161,CVE-2021-25317
    Description:

    This update for cups fixes the following issues:


    Advisory IDSUSE-RU-2021:1462-1
    ReleasedFri Apr 30 14:54:23 2021
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1181283,1184085
    Description:

    This update for cloud-init fixes the following issues:


    Advisory IDSUSE-RU-2021:1476-1
    ReleasedTue May 4 13:58:52 2021
    SummaryRecommended update for cups-filters
    Typerecommended
    Severitymoderate
    References1182893
    Description:

    This update for cups-filters fixes the following issues:


    Advisory IDSUSE-RU-2021:1478-1
    ReleasedTue May 4 14:05:38 2021
    SummaryRecommended update for libhugetlbfs
    Typerecommended
    Severitymoderate
    References1184123
    Description:

    This update for libhugetlbfs fixes the following issues:


    Advisory IDSUSE-RU-2021:1487-1
    ReleasedTue May 4 15:31:45 2021
    SummaryRecommended update for python-yarl
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for python-yarl contains the following fixes:



    Advisory IDSUSE-SU-2021:1489-1
    ReleasedTue May 4 17:10:15 2021
    SummarySecurity update for openexr
    Typesecurity
    Severityimportant
    References1184353,1184354,1184355,1185216,1185217,CVE-2021-20296,CVE-2021-23215,CVE-2021-26260,CVE-2021-3477,CVE-2021-3479
    Description:

    This update for openexr fixes the following issues:


    Advisory IDSUSE-SU-2021:1491-1
    ReleasedTue May 4 17:11:03 2021
    SummarySecurity update for p7zip
    Typesecurity
    Severitymoderate
    References1184699,CVE-2021-3465
    Description:

    This update for p7zip fixes the following issues:


    Advisory IDSUSE-RU-2021:1532-1
    ReleasedThu May 6 15:32:21 2021
    SummaryRecommended update for python-shaptools
    Typerecommended
    Severitymoderate
    References1185090
    Description:

    This update for python-shaptools fixes the following issues:


    Advisory IDSUSE-RU-2021:1533-1
    ReleasedThu May 6 17:04:28 2021
    SummaryRecommended update for google-guest-agent, google-guest-configs, google-guest-oslogin, google-osconfig-agent
    Typerecommended
    Severitymoderate
    References1174304,1174306,1175740,1175741,1179031,1179032,1180304,1182793,1183414,1183415
    Description:

    This update for google-guest-agent, google-guest-configs, google-guest-oslogin, google-osconfig-agent contains the following fixes:
    Changes in google-guest-agent:



    Changes in google-guest-configs:

    Changes in google-guest-oslogin:

    * add getpwnam,getpwuid,getgrnam,getgrgid (#42) * Change requires to not require the python library for policycoreutils. (#44) * add dial and recvline (#41) * PR feedback * new client component and tests
    Changes in google-osconfig-agent:






    Advisory IDSUSE-RU-2021:1535-1
    ReleasedThu May 6 17:05:42 2021
    SummaryRecommended update for spamassassin
    Typerecommended
    Severitylow
    References1185184
    Description:

    This update for spamassassin fixes the following issues:


    Advisory IDSUSE-RU-2021:1536-1
    ReleasedThu May 6 17:05:59 2021
    SummaryRecommended update for dovecot
    Typerecommended
    Severitymoderate
    References1185074
    Description:

    This update for dovecot fixes the following issues:


    Advisory IDSUSE-RU-2021:1543-1
    ReleasedFri May 7 15:16:33 2021
    SummaryRecommended update for patterns-microos
    Typerecommended
    Severitymoderate
    References1184435
    Description:

    This update for patterns-microos provides the following fix:


    Advisory IDSUSE-RU-2021:1549-1
    ReleasedMon May 10 13:48:00 2021
    SummaryRecommended update for procps
    Typerecommended
    Severitymoderate
    References1185417
    Description:

    This update for procps fixes the following issues:


    Advisory IDSUSE-SU-2021:1554-1
    ReleasedTue May 11 09:43:41 2021
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1184606,1185055,1185056,CVE-2021-2161,CVE-2021-2163
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2021:1562-1
    ReleasedTue May 11 11:12:51 2021
    SummaryRecommended update for amazon-ecs-init
    Typerecommended
    Severitymoderate
    References1182343,1182344
    Description:

    This update for amazon-ecs-init contains the following fixes:


    Advisory IDSUSE-RU-2021:1563-1
    ReleasedTue May 11 11:16:00 2021
    SummaryRecommended update for maven
    Typerecommended
    Severitymoderate
    References1184022
    Description:

    This update for systemtap fixes the following issues:


    Advisory IDSUSE-RU-2021:1570-1
    ReleasedWed May 12 11:59:39 2021
    SummaryRecommended update for python-paramiko
    Typerecommended
    Severitymoderate
    References1178341
    Description:

    This update for python-paramiko fixes the following issue:


    Advisory IDSUSE-RU-2021:1583-1
    ReleasedWed May 12 13:40:35 2021
    SummaryRecommended update for sensors
    Typerecommended
    Severitymoderate
    References1185183
    Description:

    This update for sensors fixes the following issues:


    Advisory IDSUSE-RU-2021:1587-1
    ReleasedWed May 12 13:43:48 2021
    SummaryRecommended update for cloud-regionsrv-client
    Typerecommended
    Severitymoderate
    References1182779,1185198,1185234
    Description:

    This update for cloud-regionsrv-client fixes the following issues:


    Advisory IDSUSE-RU-2021:1588-1
    ReleasedWed May 12 13:44:31 2021
    SummaryRecommended update for python3-azuremetadata
    Typerecommended
    Severitymoderate
    References1172581,1184720
    Description:

    This update for python3-azuremetadata fixes the following issues:


    Advisory IDSUSE-OU-2021:1591-1
    ReleasedWed May 12 13:46:23 2021
    SummaryOptional update for apache2-mod_auth_openidc
    Typeoptional
    Severitylow
    References
    Description:

    This update for apache2-mod_auth_openidc fixes the following issues:


    This patch is optional to install and does not address any user visible issues.


    Advisory IDSUSE-SU-2021:1599-1
    ReleasedThu May 13 13:15:20 2021
    SummarySecurity update for ipvsadm
    Typesecurity
    Severitylow
    References1184988
    Description:

    This update for ipvsadm fixes the following issues:


    Advisory IDSUSE-RU-2021:1601-1
    ReleasedThu May 13 16:34:34 2021
    SummaryRecommended update for brp-check-suse
    Typerecommended
    Severitymoderate
    References1184555
    Description:

    This update for brp-check-suse fixes the following issues:


    Advisory IDSUSE-RU-2021:1603-1
    ReleasedThu May 13 16:35:55 2021
    SummaryRecommended update for gssproxy
    Typerecommended
    Severitylow
    References1185161
    Description:

    This update for gssproxy fixes the following issues:


    Advisory IDSUSE-RU-2021:1604-1
    ReleasedThu May 13 16:36:13 2021
    SummaryRecommended update for autofs
    Typerecommended
    Severitylow
    References1185155
    Description:

    This update for autofs fixes the following issues:


    Advisory IDSUSE-RU-2021:1618-1
    ReleasedMon May 17 13:11:28 2021
    SummaryRecommended update for llvm7 and libqt5-qttools
    Typerecommended
    Severitymoderate
    References1067478,1109367,1145085,1184920
    Description:

    This update for llvm7 and libqt5-qttools fixes the following issues:
    libqt5-qttools:


    llvm7:


    - The library is unusable without the builtin headers. Currently consumers of `libclang` have to require `clang` as well, although only the headers are needed.


    Advisory IDSUSE-SU-2021:1641-1
    ReleasedWed May 19 13:48:59 2021
    SummarySecurity update for djvulibre
    Typesecurity
    Severityimportant
    References1185895,1185900,1185904,1185905,CVE-2021-32490,CVE-2021-32491,CVE-2021-32492,CVE-2021-32493
    Description:

    This update for djvulibre fixes the following issues:


    Advisory IDSUSE-RU-2021:1643-1
    ReleasedWed May 19 13:51:48 2021
    SummaryRecommended update for pam
    Typerecommended
    Severityimportant
    References1181443,1184358,1185562
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2021:1660-1
    ReleasedWed May 19 18:46:53 2021
    SummaryRecommended update for python-kiwi
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for python-kiwi fixes the following issues:



    Advisory IDSUSE-RU-2021:1662-1
    ReleasedWed May 19 22:24:31 2021
    SummaryRecommended update for saphanabootstrap-formula
    Typerecommended
    Severitymoderate
    References1185090
    Description:

    This update for saphanabootstrap-formula fixes the following issues:


    Advisory IDSUSE-RU-2021:1663-1
    ReleasedWed May 19 22:25:14 2021
    SummaryRecommended update for drbd-formula
    Typerecommended
    Severitymoderate
    References1179529
    Description:

    This update for drbd-formula fixes the following issues:


    Advisory IDSUSE-SU-2021:1664-1
    ReleasedThu May 20 08:03:30 2021
    SummarySecurity update for libass
    Typesecurity
    Severitymoderate
    References1184153,CVE-2020-24994
    Description:

    This update for libass fixes the following issues:


    Advisory IDSUSE-RU-2021:1675-1
    ReleasedThu May 20 15:00:23 2021
    SummaryRecommended update for snappy
    Typerecommended
    Severitymoderate
    References1080040,1184507
    Description:

    This update for snappy fixes the following issues:
    Update from version 1.1.3 to 1.1.8


    Advisory IDSUSE-RU-2021:1677-1
    ReleasedThu May 20 15:29:32 2021
    SummaryRecommended update for purge-kernels-service
    Typerecommended
    Severitylow
    References1184399
    Description:

    This update for purge-kernels-service fixes the following issues:


    Advisory IDSUSE-RU-2021:1678-1
    ReleasedThu May 20 15:30:01 2021
    SummaryRecommended update for prometheus-ha_cluster_exporter
    Typerecommended
    Severitymoderate
    References1184422
    Description:

    This update for prometheus-ha_cluster_exporter fixes the following issues:


    Advisory IDSUSE-RU-2021:1679-1
    ReleasedThu May 20 15:31:35 2021
    SummaryRecommended update for ddclient
    Typerecommended
    Severitymoderate
    References1185069
    Description:

    This update for ddclient fixes the following issues:


    Advisory IDSUSE-RU-2021:1681-1
    ReleasedThu May 20 16:49:23 2021
    SummaryRecommended update for sapstartsrv-resource-agents
    Typerecommended
    Severitymoderate
    References1185152
    Description:

    This update for sapstartsrv-resource-agents fixes the following issues:


    Advisory IDSUSE-RU-2021:1698-1
    ReleasedFri May 21 19:46:59 2021
    SummaryRecommended update for SAPHanaSR-ScaleOut
    Typerecommended
    Severitymoderate
    References1144442,1182115,1182545
    Description:

    This update for SAPHanaSR-ScaleOut fixes the following issues:


    Advisory IDSUSE-RU-2021:1700-1
    ReleasedMon May 24 16:39:35 2021
    SummaryRecommended update for google-guest-agent, google-guest-oslogin, google-osconfig-agent
    Typerecommended
    Severitymoderate
    References1185848,1185849
    Description:

    This update for google-guest-agent, google-guest-oslogin, google-osconfig-agent contains the following fixes:




    Advisory IDSUSE-RU-2021:1752-1
    ReleasedTue May 25 13:26:10 2021
    SummaryRecommended update for expect
    Typerecommended
    Severitymoderate
    References1172681,1183904,1184122
    Description:

    This update for expect fixes the following issues:


    Advisory IDSUSE-SU-2021:1755-1
    ReleasedTue May 25 13:29:57 2021
    SummarySecurity update for libu2f-host
    Typesecurity
    Severitymoderate
    References1124781,1128140,1184648,CVE-2018-20340,CVE-2019-9578
    Description:

    This update for libu2f-host fixes the following issues:
    This update ships the u2f-host package (jsc#ECO-3687 bsc#1184648)
    Version 1.1.10 (released 2019-05-15)


    Version 1.1.9 (released 2019-03-06)
    some devices.
    Version 1.1.8 (released 2019-03-05)

    Version 1.1.7 (released 2019-01-08)


    Advisory IDSUSE-SU-2021:1759-1
    ReleasedWed May 26 11:16:44 2021
    SummarySecurity update for rubygem-actionpack-5_1
    Typesecurity
    Severityimportant
    References1185715,CVE-2021-22885
    Description:

    This update for rubygem-actionpack-5_1 fixes the following issues:


    Advisory IDSUSE-SU-2021:1765-1
    ReleasedWed May 26 12:36:38 2021
    SummarySecurity update for libX11
    Typesecurity
    Severitymoderate
    References1182506,CVE-2021-31535
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-RU-2021:1772-1
    ReleasedWed May 26 17:21:45 2021
    SummaryRecommended update for motif
    Typerecommended
    Severitymoderate
    References1184184
    Description:

    This update for motif fixes the following issues:


    Advisory IDSUSE-SU-2021:1785-1
    ReleasedThu May 27 16:44:19 2021
    SummarySecurity update for postgresql13
    Typesecurity
    Severitymoderate
    References1179945,1183118,1183168,1185924,1185925,1185926,CVE-2021-32027,CVE-2021-32028,CVE-2021-32029
    Description:

    This update for postgresql13 fixes the following issues:



    Advisory IDSUSE-RU-2021:1794-1
    ReleasedThu May 27 19:25:29 2021
    SummaryRecommended update for radvd
    Typerecommended
    Severitymoderate
    References1185066
    Description:

    This update for radvd fixes the following issues:


    Advisory IDSUSE-RU-2021:1797-1
    ReleasedFri May 28 12:56:31 2021
    SummaryRecommended update for python-aliyun-img-utils, python-click-man, python-crcmod, python-oss2
    Typerecommended
    Severitymoderate
    References1181995
    Description:

    This update for python-aliyun-img-utils, python-click-man, python-crcmod, python-oss2 fixes the following issues:



    Advisory IDSUSE-RU-2021:1805-1
    ReleasedMon May 31 15:34:37 2021
    SummaryRecommended update for amazon-ssm-agent and amazon-ecs-init
    Typerecommended
    Severitymoderate
    References1186239,1186262
    Description:

    This update for amazon-ssm-agent and amazon-ecs-init fixes the following issues:


    The amazon-ssm-agent package provides a RELEASENOTES.md file with a more detailed list of all changes.


    Advisory IDSUSE-SU-2021:1806-1
    ReleasedMon May 31 16:23:04 2021
    SummarySecurity update for python-httplib2
    Typesecurity
    Severitymoderate
    References1171998,1182053,CVE-2020-11078,CVE-2021-21240
    Description:

    This update for python-httplib2 fixes the following issues:


    Advisory IDSUSE-RU-2021:1817-1
    ReleasedTue Jun 1 10:09:53 2021
    SummaryRecommended update for google-poppins-fonts
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update of google-poppins-fonts releases it in a higher version than on SLES 15 SP2, to allow better migration and solve a openSUSE Leap 15.3 patch problem. (bsc#1186642)


    Advisory IDSUSE-SU-2021:1826-1
    ReleasedTue Jun 1 16:40:26 2021
    SummarySecurity update for bind
    Typesecurity
    Severityimportant
    References1183453,1185073,CVE-2021-25214,CVE-2021-25215
    Description:

    This update for bind fixes the following issues:


    Advisory IDSUSE-SU-2021:1840-1
    ReleasedWed Jun 2 16:29:28 2021
    SummarySecurity update for xstream
    Typesecurity
    Severityimportant
    References1184372,1184373,1184374,1184375,1184376,1184377,1184378,1184379,1184380,1184796,1184797,CVE-2021-21341,CVE-2021-21342,CVE-2021-21343,CVE-2021-21344,CVE-2021-21345,CVE-2021-21346,CVE-2021-21347,CVE-2021-21348,CVE-2021-21349,CVE-2021-21350,CVE-2021-21351
    Description:

    This update for xstream fixes the following issues:


    Advisory IDSUSE-SU-2021:1841-1
    ReleasedWed Jun 2 16:30:17 2021
    SummarySecurity update for dhcp
    Typesecurity
    Severityimportant
    References1186382,CVE-2021-25217
    Description:

    This update for dhcp fixes the following issues:


    Advisory IDSUSE-OU-2021:1847-1
    ReleasedFri Jun 4 08:47:12 2021
    SummaryOptional update for bison
    Typeoptional
    Severitylow
    References1183777
    Description:

    This update for bison fixes the following issues:


    This update does not fix any user visible issues, thus it is optional to install.


    Advisory IDSUSE-RU-2021:1848-1
    ReleasedFri Jun 4 08:48:03 2021
    SummaryRecommended update for libraw
    Typerecommended
    Severitylow
    References1184123
    Description:

    This update for libraw fixes the following issues:


    Advisory IDSUSE-RU-2021:1849-1
    ReleasedFri Jun 4 08:48:14 2021
    SummaryRecommended update for fltk
    Typerecommended
    Severitylow
    References1184122
    Description:

    This update for fltk fixes the following issues:


    Advisory IDSUSE-RU-2021:1850-1
    ReleasedFri Jun 4 08:48:41 2021
    SummaryRecommended update for doxygen
    Typerecommended
    Severitylow
    References1184122
    Description:

    This update for doxygen fixes the following issues:


    Advisory IDSUSE-RU-2021:1852-1
    ReleasedFri Jun 4 08:49:00 2021
    SummaryRecommended update for libstoragemgmt
    Typerecommended
    Severitylow
    References1185067
    Description:

    This update for libstoragemgmt fixes the following issues:


    Advisory IDSUSE-RU-2021:1853-1
    ReleasedFri Jun 4 08:49:13 2021
    SummaryRecommended update for exfatprogs
    Typerecommended
    Severitymoderate
    References1184882
    Description:

    This update for exfatprogs fixes the following issue:


    bitmap data is not written normally in bitmap location s390x (64bit big endian system) and this fix makes it 64-bit compatible.


    Advisory IDSUSE-SU-2021:1854-1
    ReleasedFri Jun 4 08:54:10 2021
    SummarySecurity update for MozillaThunderbird
    Typesecurity
    Severitymoderate
    References1185086,1185633,1186198,1186199,CVE-2021-29950,CVE-2021-29951,CVE-2021-29956,CVE-2021-29957
    Description:

    This update for MozillaThunderbird fixes the following issues:


    Advisory IDSUSE-SU-2021:1859-1
    ReleasedFri Jun 4 09:02:38 2021
    SummarySecurity update for python-py
    Typesecurity
    Severitymoderate
    References1179805,1184505,CVE-2020-29651
    Description:

    This update for python-py fixes the following issues:


    Advisory IDSUSE-SU-2021:1860-1
    ReleasedFri Jun 4 09:04:05 2021
    SummarySecurity update for libwebp
    Typesecurity
    Severitycritical
    References1185652,1185654,1185673,1185674,1185685,1185686,1185688,1185690,1185691,1186247,CVE-2018-25009,CVE-2018-25010,CVE-2018-25011,CVE-2018-25012,CVE-2018-25013,CVE-2020-36328,CVE-2020-36329,CVE-2020-36330,CVE-2020-36331,CVE-2020-36332
    Description:

    This update for libwebp fixes the following issues:


    Advisory IDSUSE-RU-2021:1861-1
    ReleasedFri Jun 4 09:59:40 2021
    SummaryRecommended update for gcc10
    Typerecommended
    Severitymoderate
    References1029961,1106014,1178577,1178624,1178675,1182016
    Description:

    This update for gcc10 fixes the following issues:


    Advisory IDSUSE-SU-2021:1863-1
    ReleasedFri Jun 4 11:16:23 2021
    SummarySecurity update for umoci
    Typesecurity
    Severityimportant
    References1184147,CVE-2021-29136
    Description:

    This update for umoci fixes the following issues:
    Update to v0.4.7 (bsc#1184147).


    Advisory IDSUSE-SU-2021:1876-1
    ReleasedMon Jun 7 14:01:09 2021
    SummarySecurity update for snakeyaml
    Typesecurity
    Severityimportant
    References1159488,1186088,CVE-2017-18640
    Description:

    This update for snakeyaml fixes the following issues:


    Advisory IDSUSE-RU-2021:1877-1
    ReleasedMon Jun 7 15:33:46 2021
    SummaryRecommended update for gpm
    Typerecommended
    Severitylow
    References1160873,1182147
    Description:

    This update for gpm fixes the following issues:


    Advisory IDSUSE-SU-2021:1884-1
    ReleasedTue Jun 8 15:05:25 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1185633,1186696,CVE-2021-29951,CVE-2021-29964,CVE-2021-29967
    Description:

    This update for MozillaFirefox fixes the following issues:
    Firefox Extended Support Release 78.11.0 ESR (bsc#1186696)
    * CVE-2021-29964: Out of bounds-read when parsing a `WM_COPYDATA` message * CVE-2021-29967: Memory safety bugs fixed in Firefox


    Advisory IDSUSE-SU-2021:1896-1
    ReleasedTue Jun 8 16:08:27 2021
    SummarySecurity update for pam_radius
    Typesecurity
    Severitymoderate
    References1163933,CVE-2015-9542
    Description:

    This update for pam_radius fixes the following issues:


    Advisory IDSUSE-SU-2021:1897-1
    ReleasedTue Jun 8 16:15:17 2021
    SummarySecurity update for libX11
    Typesecurity
    Severityimportant
    References1186643,CVE-2021-31535
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-SU-2021:1914-1
    ReleasedWed Jun 9 14:29:32 2021
    SummarySecurity update for libopenmpt
    Typesecurity
    Severitymoderate
    References1186663
    Description:

    This update for libopenmpt fixes the following issues:
    Various bugfix and stability issues were fixed, some of those might have security impact.
    libopenmpt was updated to 0.3.28:


    Changes in 0.3.27:

    Changes in 0.3.26:

    Changes in 0.3.25:

    Changes in 0.3.24:

    Changes in 0.3.23:

    Changes in 0.3.22:

    Changes in 0.3.21:


    Advisory IDSUSE-RU-2021:1926-1
    ReleasedThu Jun 10 08:38:14 2021
    SummaryRecommended update for gcc
    Typerecommended
    Severitymoderate
    References1096677
    Description:

    This update for gcc fixes the following issues:


    Advisory IDSUSE-SU-2021:1933-1
    ReleasedThu Jun 10 10:28:41 2021
    SummarySecurity update for ucode-intel
    Typesecurity
    Severityimportant
    References1179833,1179836,1179837,1179839,CVE-2020-24489,CVE-2020-24511,CVE-2020-24512,CVE-2020-24513
    Description:

    This update for ucode-intel fixes the following issues:
    Updated to Intel CPU Microcode 20210608 release.



    See also https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00464.html)

    See also https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00464.html)
    - CVE-2020-24489: Fixed Intel VT-d device pass through potential local privilege escalation (INTEL-SA-00442 bsc#1179839)
    See also https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00442.html
    Other fixes:


    | Processor | Stepping | F-M-S/PI | Old Ver | New Ver | Products |:---------------|:---------|:------------|:---------|:---------|:--------- | CLX-SP | A0 | 06-55-05/b7 | | 03000010 | Xeon Scalable Gen2 | ICX-SP | C0 | 06-6a-05/87 | | 0c0002f0 | Xeon Scalable Gen3 | ICX-SP | D0 | 06-6a-06/87 | | 0d0002a0 | Xeon Scalable Gen3 | SNR | B0 | 06-86-04/01 | | 0b00000f | Atom P59xxB | SNR | B1 | 06-86-05/01 | | 0b00000f | Atom P59xxB | TGL | B1 | 06-8c-01/80 | | 00000088 | Core Gen11 Mobile | TGL-R | C0 | 06-8c-02/c2 | | 00000016 | Core Gen11 Mobile | TGL-H | R0 | 06-8d-01/c2 | | 0000002c | Core Gen11 Mobile | EHL | B1 | 06-96-01/01 | | 00000011 | Pentium J6426/N6415, Celeron J6412/J6413/N6210/N6211, Atom x6000E | JSL | A0/A1 | 06-9c-00/01 | | 0000001d | Pentium N6000/N6005, Celeron N4500/N4505/N5100/N5105 | RKL-S | B0 | 06-a7-01/02 | | 00000040 | Core Gen11

    | Processor | Stepping | F-M-S/PI | Old Ver | New Ver | Products |:---------------|:---------|:------------|:---------|:---------|:--------- | HSX-E/EP | Cx/M1 | 06-3f-02/6f | 00000044 | 00000046 | Core Gen4 X series; Xeon E5 v3 | HSX-EX | E0 | 06-3f-04/80 | 00000016 | 00000019 | Xeon E7 v3 | SKL-U/Y | D0 | 06-4e-03/c0 | 000000e2 | 000000ea | Core Gen6 Mobile | SKL-U23e | K1 | 06-4e-03/c0 | 000000e2 | 000000ea | Core Gen6 Mobile | BDX-ML | B0/M0/R0 | 06-4f-01/ef | 0b000038 | 0b00003e | Xeon E5/E7 v4; Core i7-69xx/68xx | SKX-SP | B1 | 06-55-03/97 | 01000159 | 0100015b | Xeon Scalable | SKX-SP | H0/M0/U0 | 06-55-04/b7 | 02006a0a | 02006b06 | Xeon Scalable | SKX-D | M1 | 06-55-04/b7 | 02006a0a | 02006b06 | Xeon D-21xx | CLX-SP | B0 | 06-55-06/bf | 04003006 | 04003102 | Xeon Scalable Gen2 | CLX-SP | B1 | 06-55-07/bf | 05003006 | 05003102 | Xeon Scalable Gen2 | CPX-SP | A1 | 06-55-0b/bf | 0700001e | 07002302 | Xeon Scalable Gen3 | BDX-DE | V2/V3 | 06-56-03/10 | 07000019 | 0700001b | Xeon D-1518/19/21/27/28/31/33/37/41/48, Pentium D1507/08/09/17/19 | BDX-DE | Y0 | 06-56-04/10 | 0f000017 | 0f000019 | Xeon D-1557/59/67/71/77/81/87 | BDX-NS | A0 | 06-56-05/10 | 0e00000f | 0e000012 | Xeon D-1513N/23/33/43/53 | APL | D0 | 06-5c-09/03 | 00000040 | 00000044 | Pentium N/J4xxx, Celeron N/J3xxx, Atom x5/7-E39xx | APL | E0 | 06-5c-0a/03 | 0000001e | 00000020 | Atom x5-E39xx | SKL-H/S | R0/N0 | 06-5e-03/36 | 000000e2 | 000000ea | Core Gen6; Xeon E3 v5 | DNV | B0 | 06-5f-01/01 | 0000002e | 00000034 | Atom C Series | GLK | B0 | 06-7a-01/01 | 00000034 | 00000036 | Pentium Silver N/J5xxx, Celeron N/J4xxx | GKL-R | R0 | 06-7a-08/01 | 00000018 | 0000001a | Pentium J5040/N5030, Celeron J4125/J4025/N4020/N4120 | ICL-U/Y | D1 | 06-7e-05/80 | 000000a0 | 000000a6 | Core Gen10 Mobile | LKF | B2/B3 | 06-8a-01/10 | 00000028 | 0000002a | Core w/Hybrid Technology | AML-Y22 | H0 | 06-8e-09/10 | 000000de | 000000ea | Core Gen8 Mobile | KBL-U/Y | H0 | 06-8e-09/c0 | 000000de | 000000ea | Core Gen7 Mobile | CFL-U43e | D0 | 06-8e-0a/c0 | 000000e0 | 000000ea | Core Gen8 Mobile | WHL-U | W0 | 06-8e-0b/d0 | 000000de | 000000ea | Core Gen8 Mobile | AML-Y42 | V0 | 06-8e-0c/94 | 000000de | 000000ea | Core Gen10 Mobile | CML-Y42 | V0 | 06-8e-0c/94 | 000000de | 000000ea | Core Gen10 Mobile | WHL-U | V0 | 06-8e-0c/94 | 000000de | 000000ea | Core Gen8 Mobile | KBL-G/H/S/E3 | B0 | 06-9e-09/2a | 000000de | 000000ea | Core Gen7; Xeon E3 v6 | CFL-H/S/E3 | U0 | 06-9e-0a/22 | 000000de | 000000ea | Core Gen8 Desktop, Mobile, Xeon E | CFL-S | B0 | 06-9e-0b/02 | 000000de | 000000ea | Core Gen8 | CFL-H/S | P0 | 06-9e-0c/22 | 000000de | 000000ea | Core Gen9 | CFL-H | R0 | 06-9e-0d/22 | 000000de | 000000ea | Core Gen9 Mobile | CML-H | R1 | 06-a5-02/20 | 000000e0 | 000000ea | Core Gen10 Mobile | CML-S62 | G1 | 06-a5-03/22 | 000000e0 | 000000ea | Core Gen10 | CML-S102 | Q0 | 06-a5-05/22 | 000000e0 | 000000ec | Core Gen10 | CML-U62 | A0 | 06-a6-00/80 | 000000e0 | 000000e8 | Core Gen10 Mobile | CML-U62 V2 | K0 | 06-a6-01/80 | 000000e0 | 000000ea | Core Gen10 Mobile


    Advisory IDSUSE-RU-2021:1934-1
    ReleasedThu Jun 10 10:35:09 2021
    SummaryRecommended update for xorg-x11-server
    Typerecommended
    Severitymoderate
    References1184906,1186092
    Description:

    This update for xorg-x11-server fixes the following issues:


    Advisory IDSUSE-RU-2021:1935-1
    ReleasedThu Jun 10 10:45:09 2021
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for gzip fixes the following issue:


    Advisory IDSUSE-RU-2021:1937-1
    ReleasedThu Jun 10 10:47:09 2021
    SummaryRecommended update for nghttp2
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for nghttp2 fixes the following issue:


    Advisory IDSUSE-RU-2021:1941-1
    ReleasedThu Jun 10 10:49:52 2021
    SummaryRecommended update for sysconfig
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for sysconfig fixes the following issue:


    Advisory IDSUSE-SU-2021:1948-1
    ReleasedThu Jun 10 12:32:08 2021
    SummarySecurity update for djvulibre
    Typesecurity
    Severityimportant
    References1186253,CVE-2021-3500
    Description:

    This update for djvulibre fixes the following issues:


    Advisory IDSUSE-RU-2021:1950-1
    ReleasedThu Jun 10 14:42:00 2021
    SummaryRecommended update for hwdata
    Typerecommended
    Severitymoderate
    References1170160,1182482,1185697
    Description:

    This update for hwdata fixes the following issues:



    Advisory IDSUSE-SU-2021:1954-1
    ReleasedFri Jun 11 10:45:09 2021
    SummarySecurity update for containerd, docker, runc
    Typesecurity
    Severityimportant
    References1168481,1175081,1175821,1181594,1181641,1181677,1181730,1181732,1181749,1182451,1182476,1182947,1183024,1183855,1184768,1184962,1185405,CVE-2021-21284,CVE-2021-21285,CVE-2021-21334,CVE-2021-30465
    Description:

    This update for containerd, docker, runc fixes the following issues:
    Docker was updated to 20.10.6-ce (bsc#1184768, bsc#1182947, bsc#1181594)


    runc was updated to v1.0.0~rc93 (bsc#1182451, bsc#1175821 bsc#1184962).

    containerd was updated to v1.4.4


    Advisory IDSUSE-RU-2021:1955-1
    ReleasedFri Jun 11 12:50:54 2021
    SummaryRecommended update for webkit2gtk3
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for webkit2gtk3 fixes the following issue:


    Advisory IDSUSE-RU-2021:1973-1
    ReleasedTue Jun 15 12:10:55 2021
    SummaryRecommended update for libreoffice and xmlsec1
    Typerecommended
    Severityimportant
    References1184527,1184961,1185505,1185797,1186110,1186706
    Description:

    This update for libreoffice and xmlsec1 fixes the following issues:
    libreoffice:
    Update from version 7.1.2.2 to version 7.1.3.2


    The issue occurred only while trying to close the document via shortcuts. In this case LibreOffice Math was closed without asking to save the document.
    xmlsec1:

    myspell-dictionaries:


    Advisory IDSUSE-SU-2021:1989-1
    ReleasedThu Jun 17 09:51:26 2021
    SummarySecurity update for java-1_8_0-openjdk
    Typesecurity
    Severitymoderate
    References1185055,CVE-2021-2163
    Description:

    This update for java-1_8_0-openjdk fixes the following issues:


    Advisory IDSUSE-SU-2021:1995-1
    ReleasedThu Jun 17 15:11:40 2021
    SummarySecurity update for xstream
    Typesecurity
    Severityimportant
    References1186651,CVE-2021-29505
    Description:

    This update for xstream fixes the following issues:
    Upgrade to 1.4.17


    Advisory IDSUSE-RU-2021:2000-1
    ReleasedThu Jun 17 16:50:00 2021
    SummaryRecommended update for tomcat
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for tomcat fixes the following issue:


    Advisory IDSUSE-RU-2021:2001-1
    ReleasedThu Jun 17 16:54:07 2021
    SummaryRecommended update for python-pycryptodome
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for python-pycryptodome fixes the following issue:


    Advisory IDSUSE-RU-2021:2002-1
    ReleasedThu Jun 17 17:27:47 2021
    SummaryRecommended update for open-vm-tools
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for open-vm-tools fixes the following issue:


    Advisory IDSUSE-SU-2021:2003-1
    ReleasedThu Jun 17 18:03:10 2021
    SummarySecurity update for MozillaThunderbird
    Typesecurity
    Severityimportant
    References1186696,CVE-2021-29964,CVE-2021-29967
    Description:

    This update for MozillaThunderbird fixes the following issues:
    Mozilla Thunderbird 78.11 (bsc#1186696)
    Security issues fixed:


    General improvements:


    Advisory IDSUSE-SU-2021:2005-1
    ReleasedThu Jun 17 18:04:06 2021
    SummarySecurity update for jetty-minimal
    Typesecurity
    Severityimportant
    References1184366,1184367,1184368,1187117,CVE-2021-28163,CVE-2021-28164,CVE-2021-28165,CVE-2021-28169
    Description:

    This update for jetty-minimal fixes the following issues:
    Update to version 9.4.42.v20210604


    Advisory IDSUSE-SU-2021:2008-1
    ReleasedThu Jun 17 18:07:45 2021
    SummarySecurity update for python-rsa
    Typesecurity
    Severityimportant
    References1172389,CVE-2020-13757
    Description:

    This update for python-rsa fixes the following issues:


    Advisory IDSUSE-SU-2021:2011-1
    ReleasedFri Jun 18 09:14:39 2021
    SummarySecurity update for xterm
    Typesecurity
    Severityimportant
    References1182091,CVE-2021-27135
    Description:

    This update for xterm fixes the following issues:


    Advisory IDSUSE-SU-2021:2012-1
    ReleasedFri Jun 18 09:15:13 2021
    SummarySecurity update for python-urllib3
    Typesecurity
    Severityimportant
    References1187045,CVE-2021-33503
    Description:

    This update for python-urllib3 fixes the following issues:


    Advisory IDSUSE-RU-2021:2076-1
    ReleasedFri Jun 18 13:47:19 2021
    SummaryRecommended update for dovecot23
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for dovecot23 fixes the following issue:


    Advisory IDSUSE-RU-2021:2079-1
    ReleasedFri Jun 18 14:39:49 2021
    SummaryRecommended update for build
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for build fixes the following issue:


    Advisory IDSUSE-OU-2021:2090-1
    ReleasedMon Jun 21 10:43:56 2021
    SummaryOptional update for p7zip
    Typeoptional
    Severitylow
    References1185910
    Description:

    This update for p7zip fixes the following issues:


    Advisory IDSUSE-RU-2021:2091-1
    ReleasedMon Jun 21 10:45:13 2021
    SummaryRecommended update for wget
    Typerecommended
    Severitymoderate
    References1181173
    Description:

    This update for wget fixes the following issue:


    Advisory IDSUSE-RU-2021:2095-1
    ReleasedMon Jun 21 13:35:08 2021
    SummaryRecommended update for ntp
    Typerecommended
    Severitylow
    References
    Description:

    This update for ntp fixes the following issues:


    Advisory IDSUSE-RU-2021:2096-1
    ReleasedMon Jun 21 13:35:38 2021
    SummaryRecommended update for python-six
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for python-six fixes the following issue:


    Advisory IDSUSE-RU-2021:2103-1
    ReleasedMon Jun 21 19:23:28 2021
    SummaryRecommended update for SUSE Manager Client Tools
    Typerecommended
    Severitymoderate
    References1173557,1177884,1177928,1180583,1180584,1180585,1185178
    Description:

    This update fixes the following issues:
    POS_Image-Graphical7:


    POS_Image-JeOS7:

    golang-github-prometheus-prometheus:

    mgr-cfg:

    mgr-custom-info:

    mgr-daemon:

    mgr-osad:

    mgr-push:

    mgr-virtualization:

    python-hwdata:

    rhnlib:

    spacecmd:

    spacewalk-client-tools:

    spacewalk-koan:

    spacewalk-oscap:

    spacewalk-remote-utils:

    supportutils-plugin-susemanager-client:

    suseRegisterInfo:

    uyuni-common-libs:


    Advisory IDSUSE-SU-2021:2106-1
    ReleasedMon Jun 21 19:26:19 2021
    SummarySecurity update for salt
    Typesecurity
    Severitycritical
    References1171257,1176293,1179831,1181368,1182281,1182293,1182382,1185092,1185281,1186674,CVE-2018-15750,CVE-2018-15751,CVE-2020-11651,CVE-2020-11652,CVE-2020-25592,CVE-2021-25315,CVE-2021-31607
    Description:

    This update for salt fixes the following issues:
    Update to Salt release version 3002.2 (jsc#ECO-3212, jsc#SLE-18033, jsc#SLE-18028)


    Advisory IDSUSE-RU-2021:2107-1
    ReleasedMon Jun 21 19:29:09 2021
    SummaryRecommended update for golang-github-prometheus-node_exporter
    Typerecommended
    Severitymoderate
    References1151558
    Description:

    This update for golang-github-prometheus-node_exporter fixes the following issues:
    Update from version 1.0.1 to version 1.1.2



    Advisory IDSUSE-SU-2021:2123-1
    ReleasedTue Jun 22 14:29:43 2021
    SummarySecurity update for dovecot23
    Typesecurity
    Severityimportant
    References1187418,1187419,CVE-2021-29157,CVE-2021-33515
    Description:

    This update for dovecot23 fixes the following issues:


    Advisory IDSUSE-SU-2021:2125-1
    ReleasedTue Jun 22 14:41:26 2021
    SummarySecurity update for wireshark
    Typesecurity
    Severityimportant
    References1179930,1179931,1179932,1179933,1180102,1180232,1181598,1181599,1183353,1184110,1185128,CVE-2020-26418,CVE-2020-26419,CVE-2020-26420,CVE-2020-26421,CVE-2020-26422,CVE-2021-22173,CVE-2021-22174,CVE-2021-22191,CVE-2021-22207
    Description:

    This update for wireshark, libvirt, sbc and libqt5-qtmultimedia fixes the following issues:
    Update wireshark to version 3.4.5


    Including security fixes for:

    libqt5-qtmultimedia and sbc are necessary dependencies. libvirt is needed to rebuild wireshark-plugin-libvirt.


    Advisory IDSUSE-SU-2021:2136-1
    ReleasedWed Jun 23 13:40:13 2021
    SummarySecurity update for cryptctl
    Typesecurity
    Severityimportant
    References1186226,CVE-2019-18906
    Description:

    This update for cryptctl fixes the following issues:
    Update to version 2.4:


    Advisory IDSUSE-RU-2021:2140-1
    ReleasedWed Jun 23 14:53:09 2021
    SummaryRecommended update for prometheus-ha_cluster_exporter
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for prometheus-ha_cluster_exporter fixes the following issues:
    Update from version 1.2.2 to version 1.2.3:


    Advisory IDSUSE-RU-2021:2146-1
    ReleasedWed Jun 23 17:55:14 2021
    SummaryRecommended update for openssh
    Typerecommended
    Severitymoderate
    References1115550,1174162
    Description:

    This update for openssh fixes the following issues:


    Advisory IDSUSE-RU-2021:2148-1
    ReleasedWed Jun 23 21:11:07 2021
    SummaryRecommended update for csync2
    Typerecommended
    Severitymoderate
    References1187080
    Description:

    This update for csync2 fixes the following issues:


    Advisory IDSUSE-RU-2021:2150-1
    ReleasedThu Jun 24 09:59:44 2021
    SummaryRecommended update for x3270
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for x3270 fixes the following issue:


    Advisory IDSUSE-RU-2021:2154-1
    ReleasedThu Jun 24 13:49:13 2021
    SummaryRecommended update for python-Cython
    Typerecommended
    Severitymoderate
    References1186642,1187450
    Description:


    This update for python-Cython fixes the following issue:


    Advisory IDSUSE-SU-2021:2158-1
    ReleasedThu Jun 24 15:40:57 2021
    SummarySecurity update for openexr
    Typesecurity
    Severityimportant
    References1187310,1187395,CVE-2021-3598,CVE-2021-3605
    Description:

    This update for openexr fixes the following issues:


    Advisory IDSUSE-SU-2021:2163-1
    ReleasedFri Jun 25 18:03:45 2021
    SummarySecurity update for bouncycastle
    Typesecurity
    Severitymoderate
    References1186328,CVE-2020-15522
    Description:

    This update for bouncycastle fixes the following issues:


    Advisory IDSUSE-RU-2021:2169-1
    ReleasedMon Jun 28 13:19:09 2021
    SummaryRecommended update for hexchat
    Typerecommended
    Severitymoderate
    References1187587
    Description:

    This update for hexchat fixes the following issues:


    Advisory IDSUSE-RU-2021:2171-1
    ReleasedMon Jun 28 14:06:45 2021
    SummaryRecommended update for btrfsmaintenance
    Typerecommended
    Severitymoderate
    References1178874
    Description:

    This update for btrfsmaintenance fixes the following issues:


    Advisory IDSUSE-RU-2021:2173-1
    ReleasedMon Jun 28 14:59:45 2021
    SummaryRecommended update for automake
    Typerecommended
    Severitymoderate
    References1040589,1047218,1182604,1185540,1186049
    Description:

    This update for automake fixes the following issues:


    This update for pcre fixes the following issues:

    This update for brp-check-suse fixes the following issues:


    Advisory IDSUSE-SU-2021:2177-1
    ReleasedMon Jun 28 15:47:27 2021
    SummarySecurity update for arpwatch
    Typesecurity
    Severityimportant
    References1186240,CVE-2021-25321
    Description:

    This update for arpwatch fixes the following issues:


    Advisory IDSUSE-RU-2021:2179-1
    ReleasedMon Jun 28 17:36:37 2021
    SummaryRecommended update for thin-provisioning-tools
    Typerecommended
    Severitymoderate
    References1184124
    Description:

    This update for thin-provisioning-tools fixes the following issues:


    Advisory IDSUSE-RU-2021:2191-1
    ReleasedMon Jun 28 18:38:12 2021
    SummaryRecommended update for patterns-microos
    Typerecommended
    Severitymoderate
    References1186791
    Description:

    This update for patterns-microos provides the following fix:


    Advisory IDSUSE-RU-2021:2193-1
    ReleasedMon Jun 28 18:38:43 2021
    SummaryRecommended update for tar
    Typerecommended
    Severitymoderate
    References1184124
    Description:

    This update for tar fixes the following issues:


    Advisory IDSUSE-SU-2021:2196-1
    ReleasedTue Jun 29 09:41:39 2021
    SummarySecurity update for lua53
    Typesecurity
    Severitymoderate
    References1175448,1175449,CVE-2020-24370,CVE-2020-24371
    Description:

    This update for lua53 fixes the following issues:
    Update to version 5.3.6:


    Advisory IDSUSE-RU-2021:2215-1
    ReleasedWed Jun 30 17:13:30 2021
    SummaryRecommended update for scap-security-guide
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for scap-security-guide fixes the following issues:
    The scap-security-guide was updated to 0.1.56 release (jsc#ECO-3319)


    This update brings the following SUSE Linux Enterprise STIG SCAP automations:

    It can be evaluated using 'oscap' from 'openscap-utils', e.g. by doing on SUSE Linux Enterprise 12:

    On SUSE Linux Enterprise 15:

    or the community supplied CIS on SUSE Linux Enterprise 15:

    More content will be added in future updates.


    Advisory IDSUSE-RU-2021:2217-1
    ReleasedWed Jun 30 17:17:50 2021
    SummaryRecommended update for supportutils-plugin-ha-sap
    Typerecommended
    Severitymoderate
    References1187373
    Description:

    This update for supportutils-plugin-ha-sap fixes the following issues:
    Update to version 0.0.2+git.1623772960.fed5aa7 (bsc#1187373)


    Advisory IDSUSE-RU-2021:2219-1
    ReleasedWed Jun 30 17:19:34 2021
    SummaryRecommended update for lifecycle-data-sle-module-live-patching
    Typerecommended
    Severitymoderate
    References1020320
    Description:

    This update for lifecycle-data-sle-module-live-patching fixes the following issue:


    Advisory IDSUSE-RU-2021:2224-1
    ReleasedThu Jul 1 13:48:44 2021
    SummaryRecommended update for psmisc
    Typerecommended
    Severityimportant
    References1185208
    Description:

    This update for psmisc fixes the following issues:


    Advisory IDSUSE-RU-2021:2234-1
    ReleasedFri Jul 2 13:56:08 2021
    SummaryRecommended update for ntp
    Typerecommended
    Severitymoderate
    References1186431
    Description:

    This update for ntp fixes the following issues:


    Advisory IDSUSE-RU-2021:2245-1
    ReleasedMon Jul 5 12:14:52 2021
    SummaryRecommended update for lifecycle-data-sle-module-development-tools
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for lifecycle-data-sle-module-development-tools fixes the following issues:


    Advisory IDSUSE-OU-2021:2248-1
    ReleasedMon Jul 5 15:40:28 2021
    SummaryRecommended update for sysstat
    Typeoptional
    Severitylow
    References1186827
    Description:

    This update for sysstat fixes the following issues:


    Advisory IDSUSE-RU-2021:2254-1
    ReleasedTue Jul 6 09:23:54 2021
    SummaryRecommended update for raptor
    Typerecommended
    Severitymoderate
    References1186642,1187464
    Description:


    This update for raptor fixes the following issue:


    Advisory IDSUSE-RU-2021:2255-1
    ReleasedTue Jul 6 10:27:54 2021
    SummaryRecommended update for myspell-dictionaries, ucpp
    Typerecommended
    Severitymoderate
    References1186642,1187464
    Description:


    This update rereleases myspell-dictionaries and ucpp for SUSE Linux Enterprise 15 sp3 to fix a migration issue.


    Advisory IDSUSE-RU-2021:2261-1
    ReleasedTue Jul 6 13:34:21 2021
    SummaryRecommended update for xmlsec1
    Typerecommended
    Severitymoderate
    References1177233,1186642,1186706
    Description:

    This update rereleases xmlsec1 for SUSE Linux Enterprise 15 SP3 to fix a migration issue.


    Advisory IDSUSE-RU-2021:2265-1
    ReleasedTue Jul 6 17:13:10 2021
    SummaryRecommended update for mariadb-connector-c
    Typerecommended
    Severitymoderate
    References1179921,1183878,1185868,1185870,1185872,1187459
    Description:

    This update for mariadb-connector-c fixes the following issues:
    Update to release 3.1.13 [bsc#1185870], [bsc#1185872], [bsc#1185868]


    Advisory IDSUSE-RU-2021:2266-1
    ReleasedTue Jul 6 22:38:01 2021
    SummaryRecommended update for clamav
    Typerecommended
    Severityimportant
    References1187509
    Description:

    This update for clamav fixes the following issue:


    Advisory IDSUSE-RU-2021:2270-1
    ReleasedWed Jul 7 17:20:31 2021
    SummaryRecommended update for migrate-sles-to-sles4sap
    Typerecommended
    Severityimportant
    References1171033,1187433
    Description:

    This update for migrate-sles-to-sles4sap fixes the following issues:


    Advisory IDSUSE-RU-2021:2286-1
    ReleasedFri Jul 9 17:38:53 2021
    SummaryRecommended update for dosfstools
    Typerecommended
    Severitymoderate
    References1172863
    Description:

    This update for dosfstools fixes the following issue:


    Advisory IDSUSE-RU-2021:2287-1
    ReleasedFri Jul 9 18:08:31 2021
    SummaryRecommended update for xorg-x11-server
    Typerecommended
    Severitymoderate
    References1182955
    Description:

    This update for xorg-x11-server fixes the following issues:


    Advisory IDSUSE-RU-2021:2290-1
    ReleasedFri Jul 9 19:03:39 2021
    SummaryRecommended update for postgresql13
    Typerecommended
    Severitymoderate
    References1183118,1187751
    Description:


    This update for postgresql13 fixes the following issue:


    Advisory IDSUSE-SU-2021:2293-1
    ReleasedMon Jul 12 08:26:26 2021
    SummarySecurity update for jdom2
    Typesecurity
    Severityimportant
    References1187446,CVE-2021-33813
    Description:

    This update for jdom2 fixes the following issues:


    Advisory IDSUSE-RU-2021:2314-1
    ReleasedWed Jul 14 13:07:21 2021
    SummaryRecommended update for netcontrol
    Typerecommended
    Severitymoderate
    References1179144
    Description:

    This update for netcontrol fixes the following issues:


    Advisory IDSUSE-SU-2021:2320-1
    ReleasedWed Jul 14 17:01:06 2021
    SummarySecurity update for sqlite3
    Typesecurity
    Severityimportant
    References1157818,1158812,1158958,1158959,1158960,1159491,1159715,1159847,1159850,1160309,1160438,1160439,1164719,1172091,1172115,1172234,1172236,1172240,1173641,928700,928701,CVE-2015-3414,CVE-2015-3415,CVE-2019-19244,CVE-2019-19317,CVE-2019-19603,CVE-2019-19645,CVE-2019-19646,CVE-2019-19880,CVE-2019-19923,CVE-2019-19924,CVE-2019-19925,CVE-2019-19926,CVE-2019-19959,CVE-2019-20218,CVE-2020-13434,CVE-2020-13435,CVE-2020-13630,CVE-2020-13631,CVE-2020-13632,CVE-2020-15358,CVE-2020-9327
    Description:

    This update for sqlite3 fixes the following issues:


    Advisory IDSUSE-SU-2021:2322-1
    ReleasedWed Jul 14 17:03:03 2021
    SummarySecurity update for ffmpeg
    Typesecurity
    Severityimportant
    References1172640,1186406,1186583,1186586,1186587,1186596,1186597,1186598,1186600,1186603,1186604,1186605,1186613,1186614,1186615,1186616,1186658,1186660,1186757,1186758,1186762,1186763,CVE-2019-17539,CVE-2020-13904,CVE-2020-20448,CVE-2020-20451,CVE-2020-21041,CVE-2020-22015,CVE-2020-22016,CVE-2020-22017,CVE-2020-22019,CVE-2020-22020,CVE-2020-22021,CVE-2020-22022,CVE-2020-22023,CVE-2020-22025,CVE-2020-22026,CVE-2020-22031,CVE-2020-22032,CVE-2020-22033,CVE-2020-22034,CVE-2020-22038,CVE-2020-22039,CVE-2020-22043,CVE-2020-22044
    Description:

    This update for ffmpeg fixes the following issues:


    Advisory IDSUSE-RU-2021:2351-1
    ReleasedThu Jul 15 13:48:23 2021
    SummaryRecommended update for mgetty
    Typerecommended
    Severitylow
    References1184124
    Description:

    This update for mgetty fixes the following issues:


    Advisory IDSUSE-SU-2021:2393-1
    ReleasedMon Jul 19 09:01:49 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1188275,CVE-2021-29970,CVE-2021-29976,CVE-2021-30547
    Description:

    This update for MozillaFirefox fixes the following issues:
    Firefox Extended Support Release 78.12.0 ESR


    MFSA 2021-29 (bsc#1188275)


    Advisory IDSUSE-RU-2021:2395-1
    ReleasedMon Jul 19 12:08:34 2021
    SummaryRecommended update for efivar
    Typerecommended
    Severitymoderate
    References1187386
    Description:

    This update for efivar provides the following fix:


    Advisory IDSUSE-SU-2021:2412-1
    ReleasedTue Jul 20 15:25:21 2021
    SummarySecurity update for containerd
    Typesecurity
    Severitymoderate
    References1188282,CVE-2021-32760
    Description:

    This update for containerd fixes the following issues:


    Advisory IDSUSE-RU-2021:2444-1
    ReleasedWed Jul 21 15:53:37 2021
    SummaryRecommended update for autogen
    Typerecommended
    Severitylow
    References1047218
    Description:

    This update for autogen fixes the following issue:
    This update doesn't solve any visible issue to final users but it makes the builds reproducible. (bsc#1047218)
    In particular:


    Advisory IDSUSE-RU-2021:2447-1
    ReleasedThu Jul 22 08:26:29 2021
    SummaryRecommended update for hwdata
    Typerecommended
    Severitymoderate
    References1186749,1187948
    Description:

    This update for hwdata fixes the following issue:


    Advisory IDSUSE-SU-2021:2454-1
    ReleasedThu Jul 22 13:16:58 2021
    SummarySecurity update for transfig
    Typesecurity
    Severitymoderate
    References1143650,1159130,1159293,1161698,1186329,CVE-2019-14275,CVE-2019-19555,CVE-2019-19746,CVE-2019-19797,CVE-2021-3561
    Description:

    This update for transfig fixes the following issues:
    Update to version 3.2.8, including fixes for


    Advisory IDSUSE-RU-2021:2455-1
    ReleasedThu Jul 22 15:28:19 2021
    SummaryRecommended update for php7-pear
    Typerecommended
    Severitymoderate
    References1187372
    Description:

    This update for php7-pear fixes the following issues:


    Advisory IDSUSE-RU-2021:2456-1
    ReleasedThu Jul 22 15:28:39 2021
    SummaryRecommended update for pam-config
    Typerecommended
    Severitymoderate
    References1187091
    Description:

    This update for pam-config fixes the following issues:


    Advisory IDSUSE-SU-2021:2457-1
    ReleasedThu Jul 22 18:05:53 2021
    SummarySecurity update for wireshark
    Typesecurity
    Severitymoderate
    References1186790
    Description:

    This update for wireshark fixes the following issues:
    Update wireshark to 3.4.6.
    Including a fix for:


    Advisory IDSUSE-SU-2021:2458-1
    ReleasedThu Jul 22 18:08:47 2021
    SummarySecurity update for MozillaThunderbird
    Typesecurity
    Severityimportant
    References1188275,CVE-2021-29969,CVE-2021-29970,CVE-2021-29976,CVE-2021-30547
    Description:

    This update for MozillaThunderbird fixes the following issues:
    Mozilla Thunderbird 78.12
    * fixed: Sending an email containing HTML links with spaces in the URL sometimes resulted in broken links * fixed: Folder Pane display theme fixes for macOS * fixed: Chat account settings did not always save as expected * fixed: RSS feed subscriptions sometimes lost * fixed: Calendar: A parsing error for alarm triggers of type 'DURATION' caused sync problems for some users * fixed: Various security fixes
    MFSA 2021-30 (bsc#1188275)


    Advisory IDSUSE-RU-2021:2463-1
    ReleasedFri Jul 23 12:56:22 2021
    SummaryRecommended update for python-pyzmq
    Typerecommended
    Severitymoderate
    References1186945
    Description:

    This update for python-pyzmq fixes the following issues:


    Advisory IDSUSE-RU-2021:2464-1
    ReleasedFri Jul 23 14:20:23 2021
    SummaryRecommended update for shim
    Typerecommended
    Severitymoderate
    References1185232,1185261,1185441,1185464,1185961,1187071,1187260,1187696
    Description:

    This update for shim fixes the following issues:


    Advisory IDSUSE-RU-2021:2467-1
    ReleasedMon Jul 26 11:57:11 2021
    SummaryRecommended update for jsch
    Typerecommended
    Severitylow
    References
    Description:

    This update for jsch fixes the following issues:


    Advisory IDSUSE-RU-2021:2475-1
    ReleasedTue Jul 27 13:03:29 2021
    SummaryRecommended update for novnc
    Typerecommended
    Severityimportant
    References1183291
    Description:

    This update for novnc fixes the following issues:



    Advisory IDSUSE-RU-2021:2477-1
    ReleasedTue Jul 27 13:32:50 2021
    SummaryRecommended update for growpart-rootgrow
    Typerecommended
    Severityimportant
    References1165198,1188179
    Description:

    This update for growpart-rootgrow fixes the following issues:











    Advisory IDSUSE-RU-2021:2481-1
    ReleasedTue Jul 27 14:20:27 2021
    SummaryRecommended update for sysconfig
    Typerecommended
    Severitymoderate
    References1184124
    Description:

    This update for sysconfig fixes the following issues:


    Advisory IDSUSE-SU-2021:2555-1
    ReleasedThu Jul 29 08:29:55 2021
    SummarySecurity update for git
    Typesecurity
    Severitymoderate
    References1168930,1183026,1183580,CVE-2021-21300
    Description:

    This update for git fixes the following issues:
    Update from version 2.26.2 to version 2.31.1 (jsc#SLE-18152)
    Security fixes:


    Non security changes:


    Advisory IDSUSE-RU-2021:2558-1
    ReleasedThu Jul 29 12:05:03 2021
    SummaryRecommended update for python-pytz
    Typerecommended
    Severitymoderate
    References1185748
    Description:

    This update for python-pytz fixes the following issues:


    Advisory IDSUSE-RU-2021:2568-1
    ReleasedThu Jul 29 14:18:37 2021
    SummaryRecommended update for open-vm-tools
    Typerecommended
    Severitymoderate
    References1029961,1185103,1185175,1187567
    Description:

    This update for open-vm-tools fixes the following issues:
    Update to 11.3.0 (bsc#1187567)


    Advisory IDSUSE-RU-2021:2573-1
    ReleasedThu Jul 29 14:21:52 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1188127
    Description:

    This update for timezone fixes the following issue:

    the IANA time zone database package, in addition to 'zone1970.tab', as before. This makes sure time zone aliases are now correctly supported. This update adds the 'tzdata.zi' file (bsc#1188127).


    Advisory IDSUSE-RU-2021:2579-1
    ReleasedSun Aug 1 15:57:01 2021
    SummaryRecommended update for rust, rust1.43, rust1.53
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for rust, rust1.43, rust1.53 fixes the following issues:
    This will ship multiple rust versions.


    The 'rust' package itself will be a wrapper package.


    Advisory IDSUSE-RU-2021:2602-1
    ReleasedWed Aug 4 08:45:01 2021
    SummaryRecommended update for amazon-ecs-init
    Typerecommended
    Severitymoderate
    References1187662
    Description:

    This update for amazon-ecs-init fixes the following issues:


    Advisory IDSUSE-RU-2021:2606-1
    ReleasedWed Aug 4 13:16:09 2021
    SummaryRecommended update for libcbor
    Typerecommended
    Severitymoderate
    References1102408
    Description:

    This update for libcbor fixes the following issues:


    Advisory IDSUSE-SU-2021:2612-1
    ReleasedThu Aug 5 10:17:44 2021
    SummarySecurity update for apache-commons-compress
    Typesecurity
    Severityimportant
    References1188463,1188464,1188465,1188466,CVE-2021-35515,CVE-2021-35516,CVE-2021-35517,CVE-2021-36090
    Description:

    This update for apache-commons-compress fixes the following issues:


    Advisory IDSUSE-SU-2021:2619-1
    ReleasedThu Aug 5 10:35:15 2021
    SummarySecurity update for djvulibre
    Typesecurity
    Severityimportant
    References1187869,CVE-2021-3630
    Description:

    This update for djvulibre fixes the following issues:


    Advisory IDSUSE-RU-2021:2625-1
    ReleasedThu Aug 5 12:10:27 2021
    SummaryRecommended update for supportutils
    Typerecommended
    Severitymoderate
    References1185991,1185993,1186347,1186397,1186687,1188348
    Description:

    This update for supportutils fixes the following issues:
    ethtool was updated to version 3.1.17:


    Advisory IDSUSE-RU-2021:2627-1
    ReleasedThu Aug 5 12:10:46 2021
    SummaryRecommended maintenance update for systemd-default-settings
    Typerecommended
    Severitymoderate
    References1188348
    Description:

    This update for systemd-default-settings fixes the following issue:


    Advisory IDSUSE-RU-2021:2640-1
    ReleasedFri Aug 6 13:25:58 2021
    SummaryRecommended update for cloud-regionsrv-client
    Typerecommended
    Severitymoderate
    References1029162
    Description:

    This update for cloud-regionsrv-client contains the following fix:


    Advisory IDSUSE-RU-2021:2652-1
    ReleasedWed Aug 11 13:25:42 2021
    SummaryRecommended update for cloud-regionsrv
    Typerecommended
    Severitymoderate
    References1029162
    Description:

    This update for cloud-regionsrv contains the following fix:


    Advisory IDSUSE-RU-2021:2681-1
    ReleasedThu Aug 12 14:59:06 2021
    SummaryRecommended update for growpart-rootgrow
    Typerecommended
    Severityimportant
    References1188868,1188904
    Description:

    This update for growpart-rootgrow fixes the following issues:


    Advisory IDSUSE-SU-2021:2682-1
    ReleasedThu Aug 12 20:06:19 2021
    SummarySecurity update for rpm
    Typesecurity
    Severityimportant
    References1179416,1181805,1183543,1183545,CVE-2021-20266,CVE-2021-20271,CVE-2021-3421
    Description:

    This update for rpm fixes the following issues:


    Security fixes:



    Advisory IDSUSE-RU-2021:2688-1
    ReleasedSat Aug 14 10:18:12 2021
    SummaryRecommended update for patterns-base, patterns-server-enterprise, sles15-image
    Typerecommended
    Severitymoderate
    References1183154
    Description:

    This update for patterns-base, patterns-server-enterprise, sles15-image fixes the following issues:


    Advisory IDSUSE-SU-2021:2760-1
    ReleasedTue Aug 17 17:11:14 2021
    SummarySecurity update for c-ares
    Typesecurity
    Severityimportant
    References1188881,CVE-2021-3672
    Description:

    This update for c-ares fixes the following issues:
    Version update to git snapshot 1.17.1+20200724:


    Advisory IDSUSE-SU-2021:2764-1
    ReleasedTue Aug 17 17:17:17 2021
    SummarySecurity update for libsndfile
    Typesecurity
    Severitycritical
    References1100167,1116993,1117954,1188540,CVE-2018-13139,CVE-2018-19432,CVE-2018-19758,CVE-2021-3246
    Description:

    This update for libsndfile fixes the following issues:


    Advisory IDSUSE-SU-2021:2774-1
    ReleasedThu Aug 19 13:49:30 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1188891,CVE-2021-29980,CVE-2021-29984,CVE-2021-29985,CVE-2021-29986,CVE-2021-29988,CVE-2021-29989
    Description:

    This update for MozillaFirefox fixes the following issues:
    Firefox Extended Support Release 78.13.0 ESR (MFSA 2021-34, bsc#1188891):


    Advisory IDSUSE-RU-2021:2778-1
    ReleasedThu Aug 19 15:19:52 2021
    SummaryRecommended update for compat-libpthread-nonshared
    Typerecommended
    Severitymoderate
    References1188004
    Description:

    This update for compat-libpthread-nonshared fixes the following issues:


    Advisory IDSUSE-RU-2021:2781-1
    ReleasedThu Aug 19 18:54:14 2021
    SummaryRecommended update for psqlODBC
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for psqlODBC fixes the following issues:




    Advisory IDSUSE-SU-2021:2791-1
    ReleasedFri Aug 20 10:14:13 2021
    SummarySecurity update for fetchmail
    Typesecurity
    Severitymoderate
    References1188034,1188875,CVE-2021-36386
    Description:

    This update for fetchmail fixes the following issues:


    Advisory IDSUSE-SU-2021:2792-1
    ReleasedFri Aug 20 10:18:15 2021
    SummarySecurity update for libass
    Typesecurity
    Severityimportant
    References1188539,CVE-2020-36430
    Description:

    This update for libass fixes the following issues:


    Advisory IDSUSE-SU-2021:2793-1
    ReleasedFri Aug 20 10:22:53 2021
    SummarySecurity update for openexr
    Typesecurity
    Severityimportant
    References1188457,1188458,1188459,1188460,1188461,1188462,CVE-2021-20298,CVE-2021-20299,CVE-2021-20300,CVE-2021-20302,CVE-2021-20303,CVE-2021-20304,CVE-2021-3476
    Description:

    This update for openexr fixes the following issues:


    Advisory IDSUSE-SU-2021:2794-1
    ReleasedFri Aug 20 10:25:35 2021
    SummarySecurity update for aspell
    Typesecurity
    Severityimportant
    References1177523,1188576,CVE-2019-25051
    Description:

    This update for aspell fixes the following issues:


    Advisory IDSUSE-SU-2021:2798-1
    ReleasedFri Aug 20 10:37:58 2021
    SummarySecurity update for java-1_8_0-openjdk
    Typesecurity
    Severityimportant
    References1185056,1188564,1188565,1188566,CVE-2021-2161,CVE-2021-2341,CVE-2021-2369,CVE-2021-2388
    Description:

    This update for java-1_8_0-openjdk fixes the following issues:


    Advisory IDSUSE-SU-2021:2802-1
    ReleasedFri Aug 20 10:47:08 2021
    SummarySecurity update for libmspack
    Typesecurity
    Severitymoderate
    References1103032,CVE-2018-14679,CVE-2018-14681,CVE-2018-14682
    Description:

    This update for libmspack fixes the following issues:


    Advisory IDSUSE-SU-2021:2812-1
    ReleasedMon Aug 23 12:17:44 2021
    SummarySecurity update for libvirt
    Typesecurity
    Severitymoderate
    References1184253,1187871,1188232,1188843,CVE-2021-3631,CVE-2021-3667
    Description:

    This update for libvirt fixes the following issues:
    Security issues fixed:


    Non-security issues fixed:


    Advisory IDSUSE-OU-2021:2816-1
    ReleasedMon Aug 23 14:17:28 2021
    SummaryOptional update for python-kubernetes
    Typeoptional
    Severitylow
    References
    Description:

    This patch provides the python3-kubernetes package to the following modules:


    Advisory IDSUSE-SU-2021:2817-1
    ReleasedMon Aug 23 15:05:18 2021
    SummarySecurity update for aws-cli, python-boto3, python-botocore, python-service_identity, python-trustme, python-urllib3
    Typesecurity
    Severitymoderate
    References1102408,1138715,1138746,1176389,1177120,1182421,1182422,CVE-2020-26137
    Description:

    This patch updates the Python AWS SDK stack in SLE 15:
    General:
    # aws-cli


    # python-boto3

    # python-botocore

    # python-urllib3

    # python-service_identity

    # python-trustme

    Security fixes:
    # python-urllib3:


    Advisory IDSUSE-RU-2021:2821-1
    ReleasedTue Aug 24 10:53:01 2021
    SummaryRecommended update for ClusterTools2
    Typerecommended
    Severitymoderate
    References1166943,1186119
    Description:

    This update for ClusterTools2 fixes the following issues:


    Advisory IDSUSE-SU-2021:2827-1
    ReleasedTue Aug 24 16:16:26 2021
    SummarySecurity update for openssl-1_0_0
    Typesecurity
    Severityimportant
    References1189521,CVE-2021-3712
    Description:

    This update for openssl-1_0_0 fixes the following issues:


    Advisory IDSUSE-SU-2021:2838-1
    ReleasedWed Aug 25 12:34:01 2021
    SummarySecurity update for jetty-minimal
    Typesecurity
    Severitymoderate
    References1188438,CVE-2021-34429
    Description:

    This update for jetty-minimal fixes the following issues:


    Advisory IDSUSE-SU-2021:2861-1
    ReleasedFri Aug 27 14:41:03 2021
    SummarySecurity update for spectre-meltdown-checker
    Typesecurity
    Severitymoderate
    References1189477,CVE-2017-5753
    Description:

    This update for spectre-meltdown-checker fixes the following issues:
    spectre-meltdown-checker was updated to version 0.44 (bsc#1189477)


    Advisory IDSUSE-RU-2021:2863-1
    ReleasedMon Aug 30 08:18:50 2021
    SummaryRecommended update for python-dbus-python
    Typerecommended
    Severitymoderate
    References1183818
    Description:

    This update for python-dbus-python fixes the following issues:








    Advisory IDSUSE-SU-2021:2874-1
    ReleasedMon Aug 30 15:54:34 2021
    SummarySecurity update for MozillaThunderbird
    Typesecurity
    Severityimportant
    References1188891,CVE-2021-29980,CVE-2021-29984,CVE-2021-29985,CVE-2021-29986,CVE-2021-29988,CVE-2021-29989
    Description:

    This update for MozillaThunderbird fixes the following issues:
    Update to version 78.13 (MFSA 2021-35, bsc#1188891)


    Advisory IDSUSE-RU-2021:2885-1
    ReleasedTue Aug 31 12:21:17 2021
    SummaryRecommended update for publicsuffix
    Typerecommended
    Severitylow
    References1189124
    Description:

    This update for publicsuffix fixes the following issues:


    Advisory IDSUSE-RU-2021:2886-1
    ReleasedTue Aug 31 13:21:20 2021
    SummaryRecommended update for bind
    Typerecommended
    Severitymoderate
    References1187921
    Description:

    This update for bind fixes the following issues:


    Advisory IDSUSE-RU-2021:2887-1
    ReleasedTue Aug 31 13:31:19 2021
    SummaryRecommended update for cloud-init
    Typerecommended
    Severitymoderate
    References1183939,1184758
    Description:

    This update for cloud-init contains the following:


    Advisory IDSUSE-SU-2021:2892-1
    ReleasedTue Aug 31 16:38:22 2021
    SummarySecurity update for dovecot23
    Typesecurity
    Severitymoderate
    References1187418,1187419,1187420,CVE-2020-28200,CVE-2021-29157
    Description:

    This update for dovecot23 fixes the following issues:
    Update dovecot to version 2.3.15 (jsc#SLE-19970):
    Security issues fixed:



    Update pigeonhole to version 0.5.15


    Advisory IDSUSE-RU-2021:2895-1
    ReleasedTue Aug 31 19:40:32 2021
    SummaryRecommended update for unixODBC
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for unixODBC fixes the following issues:




    Advisory IDSUSE-RU-2021:2899-1
    ReleasedWed Sep 1 08:30:58 2021
    SummaryRecommended update for systemd-rpm-macros
    Typerecommended
    Severitymoderate
    References1186282,1187332
    Description:

    This update for systemd-rpm-macros fixes the following issues:


    Advisory IDSUSE-RU-2021:2901-1
    ReleasedWed Sep 1 10:34:50 2021
    SummaryRecommended update for insserv-compat
    Typerecommended
    Severitymoderate
    References1187941
    Description:

    This update for insserv-compat fixes the following issues:


    Advisory IDSUSE-RU-2021:2905-1
    ReleasedWed Sep 1 14:18:41 2021
    SummaryRecommended update for corosync
    Typerecommended
    Severityimportant
    References1189680
    Description:

    This update for corosync fixes the following issue:


    Advisory IDSUSE-SU-2021:2919-1
    ReleasedThu Sep 2 10:04:41 2021
    SummarySecurity update for ffmpeg
    Typesecurity
    Severityimportant
    References1129714,1186849,1186859,1186861,1186863,1189142,1189348,1189350,CVE-2019-9721,CVE-2020-21688,CVE-2020-21697,CVE-2020-22046,CVE-2020-22048,CVE-2020-22049,CVE-2020-22054,CVE-2021-38114
    Description:

    This update for ffmpeg fixes the following issues:


    Advisory IDSUSE-RU-2021:2934-1
    ReleasedThu Sep 2 18:29:50 2021
    SummaryRecommended update for SAPHanaSR-ScaleOut
    Typerecommended
    Severityimportant
    References1144312,1144442,1173581,1182115,1182545
    Description:

    This update for SAPHanaSR-ScaleOut fixes the following issues:


    Advisory IDSUSE-SU-2021:2937-1
    ReleasedFri Sep 3 09:18:45 2021
    SummarySecurity update for libesmtp
    Typesecurity
    Severityimportant
    References1160462,1189097,CVE-2019-19977
    Description:

    This update for libesmtp fixes the following issues:


    Advisory IDSUSE-RU-2021:2947-1
    ReleasedFri Sep 3 09:49:40 2021
    SummaryRecommended update for lifecycle-data-sle-module-live-patching
    Typerecommended
    Severitymoderate
    References1020320
    Description:

    This update for lifecycle-data-sle-module-live-patching fixes the following issues:


    Advisory IDSUSE-RU-2021:2951-1
    ReleasedFri Sep 3 14:18:50 2021
    SummaryRecommended update for scap-security-guide
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for scap-security-guide fixes the following issues:
    Updated to 0.1.57 release (jsc#ECO-3319)


    Advisory IDSUSE-SU-2021:2952-1
    ReleasedFri Sep 3 14:38:44 2021
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1185476,1188564,1188565,1188566,CVE-2021-2341,CVE-2021-2369,CVE-2021-2388
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2021:2960-1
    ReleasedMon Sep 6 13:35:58 2021
    SummaryRecommended update for habootstrap-formula
    Typerecommended
    Severitymoderate
    References1181731
    Description:

    This update for habootstrap-formula fixes the following issue:


    Advisory IDSUSE-RU-2021:2962-1
    ReleasedMon Sep 6 18:23:01 2021
    SummaryRecommended update for runc
    Typerecommended
    Severitycritical
    References1189743
    Description:

    This update for runc fixes the following issues:


    Advisory IDSUSE-SU-2021:2971-1
    ReleasedTue Sep 7 10:45:21 2021
    SummarySecurity update for ntfs-3g_ntfsprogs
    Typesecurity
    Severityimportant
    References1189720,CVE-2019-9755,CVE-2021-33285,CVE-2021-33286,CVE-2021-33287,CVE-2021-33289,CVE-2021-35266,CVE-2021-35267,CVE-2021-35268,CVE-2021-35269,CVE-2021-39251,CVE-2021-39252,CVE-2021-39253,CVE-2021-39255,CVE-2021-39256,CVE-2021-39257,CVE-2021-39258,CVE-2021-39259,CVE-2021-39260,CVE-2021-39261,CVE-2021-39262,CVE-2021-39263
    Description:

    This update for ntfs-3g_ntfsprogs fixes the following issues:
    Update to version 2021.8.22 (bsc#1189720):




    Advisory IDSUSE-RU-2021:2973-1
    ReleasedTue Sep 7 16:56:08 2021
    SummaryRecommended update for hwdata
    Typerecommended
    Severitymoderate
    References1190091
    Description:

    This update for hwdata fixes the following issue:


    Advisory IDSUSE-RU-2021:2974-1
    ReleasedTue Sep 7 17:17:23 2021
    SummaryRecommended update for librdkafka
    Typerecommended
    Severityimportant
    References1189792
    Description:

    This update for librdkafka fixes the following issue:


    Advisory IDSUSE-RU-2021:2977-1
    ReleasedWed Sep 8 11:54:32 2021
    SummaryRecommended update for usbutils
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for usbutils fixes the following issue:


    Advisory IDSUSE-RU-2021:2987-1
    ReleasedThu Sep 9 00:00:13 2021
    SummaryRecommended update for pesign
    Typerecommended
    Severitylow
    References1184124
    Description:

    This update for pesign fixes the following issues:


    Advisory IDSUSE-RU-2021:2993-1
    ReleasedThu Sep 9 14:31:33 2021
    SummaryRecommended update for gcc
    Typerecommended
    Severitymoderate
    References1185348
    Description:

    This update for gcc fixes the following issues:


    Advisory IDSUSE-SU-2021:2994-1
    ReleasedThu Sep 9 14:33:21 2021
    SummarySecurity update for openssl-1_0_0
    Typesecurity
    Severitylow
    References1189521,CVE-2021-3712
    Description:

    This update for openssl-1_0_0 fixes the following issues:


    Advisory IDSUSE-RU-2021:2997-1
    ReleasedThu Sep 9 14:37:34 2021
    SummaryRecommended update for python3
    Typerecommended
    Severitymoderate
    References1187338,1189659
    Description:

    This update for python3 fixes the following issues:


    Advisory IDSUSE-RU-2021:3000-1
    ReleasedThu Sep 9 15:08:04 2021
    SummaryRecommended update for vncmanager-controller
    Typerecommended
    Severitymoderate
    References1188118
    Description:

    This update for vncmanager-controller fixes the following issues:


    Advisory IDSUSE-RU-2021:3001-1
    ReleasedThu Sep 9 15:08:13 2021
    SummaryRecommended update for netcfg
    Typerecommended
    Severitymoderate
    References1189683
    Description:

    This update for netcfg fixes the following issues:


    Advisory IDSUSE-SU-2021:3004-1
    ReleasedThu Sep 9 15:20:43 2021
    SummarySecurity update for libtpms
    Typesecurity
    Severityimportant
    References1189935,CVE-2021-3746
    Description:

    This update for libtpms fixes the following issues:


    Advisory IDSUSE-SU-2021:3017-1
    ReleasedMon Sep 13 09:13:11 2021
    SummarySecurity update for wireshark
    Typesecurity
    Severitymoderate
    References1188375,CVE-2021-22235
    Description:

    This update for wireshark fixes the following issues:



    Advisory IDSUSE-SU-2021:3018-1
    ReleasedMon Sep 13 09:13:56 2021
    SummarySecurity update for php7-pear
    Typesecurity
    Severityimportant
    References1189591,CVE-2020-36193
    Description:

    This update for php7-pear fixes the following issues:


    Advisory IDSUSE-SU-2021:3020-1
    ReleasedMon Sep 13 09:17:14 2021
    SummarySecurity update for apache2-mod_auth_openidc
    Typesecurity
    Severitymoderate
    References1188638,1188639,1188848,1188849,CVE-2021-32785,CVE-2021-32786,CVE-2021-32791,CVE-2021-32792
    Description:

    This update for apache2-mod_auth_openidc fixes the following issues:


    Advisory IDSUSE-RU-2021:3022-1
    ReleasedMon Sep 13 10:48:16 2021
    SummaryRecommended update for c-ares
    Typerecommended
    Severityimportant
    References1190225
    Description:

    This update for c-ares fixes the following issue:


    Advisory IDSUSE-feature-2021:3027-1
    ReleasedMon Sep 13 14:53:51 2021
    SummaryFeature providing NVIDIA GPU utilities
    Typefeature
    Severitymoderate
    References
    Description:

    This feature provides NVIDIA GPU utilities (jsc#SLE-18750, jsc#SLE-19341):
    Provide:


    Advisory IDSUSE-RU-2021:3028-1
    ReleasedMon Sep 13 14:55:33 2021
    SummaryRecommended update for wxWidgets-3_0
    Typerecommended
    Severitymoderate
    References1162418,1180492
    Description:

    This update for wxWidgets-3_0 fixes the following issues:
    Update from version 3.0.3 to 3.0.5.1 (bsc#1180492, jsc#ECO-3376)


    Advisory IDSUSE-RU-2021:3029-1
    ReleasedTue Sep 14 07:32:31 2021
    SummaryRecommended update for sapconf
    Typerecommended
    Severitymoderate
    References1189496
    Description:

    This update for sapconf fixes the following issues:


    Advisory IDSUSE-RU-2021:3036-1
    ReleasedTue Sep 14 15:21:53 2021
    SummaryRecommended update for ocl-icd
    Typerecommended
    Severitymoderate
    References1172303
    Description:


    This update for ocl-icd fixes the following issue:


    Advisory IDSUSE-RU-2021:3040-1
    ReleasedTue Sep 14 17:35:59 2021
    SummaryRecommended update for lifecycle-data-sle-module-live-patching
    Typerecommended
    Severitymoderate
    References1020320
    Description:

    This update for lifecycle-data-sle-module-live-patching fixes the following issue:
    Lifecycle data updates. (bsc#1020320)

    5_3_18-59_19.


    Advisory IDSUSE-SU-2021:3044-1
    ReleasedWed Sep 15 10:17:23 2021
    SummarySecurity update for ghostscript
    Typesecurity
    Severitycritical
    References1184123,1190381,CVE-2021-3781
    Description:

    This update for ghostscript fixes the following issues:
    Security issue fixed:


    Also a hardening fix was added:


    Advisory IDSUSE-RU-2021:3045-1
    ReleasedWed Sep 15 10:32:15 2021
    SummaryRecommended update for golang-github-vpenso-prometheus_slurm_exporter
    Typerecommended
    Severityimportant
    References1188619
    Description:

    This update for golang-github-vpenso-prometheus_slurm_exporter fixes the following issues:


    Advisory IDSUSE-RU-2021:3052-1
    ReleasedThu Sep 16 10:05:24 2021
    SummaryRecommended update for lshw
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for lshw fixes the following issues:


    Advisory IDSUSE-RU-2021:3115-1
    ReleasedThu Sep 16 14:04:26 2021
    SummaryRecommended update for mozilla-nspr, mozilla-nss
    Typerecommended
    Severitymoderate
    References1029961,1174697,1176206,1176934,1179382,1188891,CVE-2020-12400,CVE-2020-12401,CVE-2020-12403,CVE-2020-25648,CVE-2020-6829
    Description:

    This update for mozilla-nspr fixes the following issues:
    mozilla-nspr was updated to version 4.32:



    Mozilla NSS was updated to version 3.68:

    update to NSS 3.67

    update to NSS 3.66

    update to NSS 3.65

    update to NSS 3.64
    disable_crypto_vsx.
  • bmo#1698320 - replace __builtin_cpu_supports('vsx') with
  • ppc_crypto_support() for clang.
  • bmo#1613235 - Add POWER ChaCha20 stream cipher vector
  • acceleration.
    Fixed in 3.63
    initialization to prevent build isses with GCC 4.8.
  • bmo#1683520 - [lib/freebl/ecl] P-384: allow zero scalars in dual
  • scalar multiplication.
  • bmo#1683520 - ECCKiila P521, change syntax of nested structs
  • initialization to prevent build isses with GCC 4.8.
  • bmo#1683520 - [lib/freebl/ecl] P-521: allow zero scalars in dual
  • scalar multiplication.
  • bmo#1696800 - HACL* update March 2021 - c95ab70fcb2bc21025d8845281bc4bc8987ca683.
  • bmo#1694214 - tstclnt can't enable middlebox compat mode.
  • bmo#1694392 - NSS does not work with PKCS #11 modules not supporting
  • profiles.
  • bmo#1685880 - Minor fix to prevent unused variable on early return.
  • bmo#1685880 - Fix for the gcc compiler version 7 to support setenv
  • with nss build.
  • bmo#1693217 - Increase nssckbi.h version number for March 2021 batch
  • of root CA changes, CA list version 2.48.
  • bmo#1692094 - Set email distrust after to 21-03-01 for Camerfirma's
  • 'Chambers of Commerce' and 'Global Chambersign' roots.
  • bmo#1618407 - Symantec root certs - Set CKA_NSS_EMAIL_DISTRUST_AFTER.
  • bmo#1693173 - Add GlobalSign R45, E45, R46, and E46 root certs to NSS.
  • bmo#1683738 - Add AC RAIZ FNMT-RCM SERVIDORES SEGUROS root cert to NSS.
  • bmo#1686854 - Remove GeoTrust PCA-G2 and VeriSign Universal root certs
  • from NSS.
  • bmo#1687822 - Turn off Websites trust bit for the “Staat der
  • Nederlanden Root CA - G3” root cert in NSS.
  • bmo#1692094 - Turn off Websites Trust Bit for 'Chambers of Commerce
  • Root - 2008' and 'Global Chambersign Root - 2008’.
  • bmo#1694291 - Tracing fixes for ECH.

  • update to NSS 3.62
    can corrupt 'cachedCertTable'
  • bmo#1690583 - Fix CH padding extension size calculation
  • bmo#1690421 - Adjust 3.62 ABI report formatting for new libabigail
  • bmo#1690421 - Install packaged libabigail in docker-builds image
  • bmo#1689228 - Minor ECH -09 fixes for interop testing, fuzzing
  • bmo#1674819 - Fixup a51fae403328, enum type may be signed
  • bmo#1681585 - Add ECH support to selfserv
  • bmo#1681585 - Update ECH to Draft-09
  • bmo#1678398 - Add Export/Import functions for HPKE context
  • bmo#1678398 - Update HPKE to draft-07

  • update to NSS 3.61
    values under certain conditions.
  • bmo#1684300 - Fix default PBE iteration count when NSS is compiled
  • with NSS_DISABLE_DBM.
  • bmo#1651411 - Improve constant-timeness in RSA operations.
  • bmo#1677207 - Upgrade Google Test version to latest release.
  • bmo#1654332 - Add aarch64-make target to nss-try.

  • Update to NSS 3.60.1:
    Notable changes in NSS 3.60:
    Update to NSS 3.59.1:
    PKCS11 modules
    Update to NSS 3.59:
    Notable changes:

    Bugfixes
    root certs when SHA1 signatures are disabled.
  • bmo#1644209 - Fix broken SelectedCipherSuiteReplacer filter to
  • solve some test intermittents
  • bmo#1672703 - Tolerate the first CCS in TLS 1.3 to fix a regression in
  • our CVE-2020-25648 fix that broke purple-discord (boo#1179382)
  • bmo#1666891 - Support key wrap/unwrap with RSA-OAEP
  • bmo#1667989 - Fix gyp linking on Solaris
  • bmo#1668123 - Export CERT_AddCertToListHeadWithData and
  • CERT_AddCertToListTailWithData from libnss
  • bmo#1634584 - Set CKA_NSS_SERVER_DISTRUST_AFTER for Trustis FPS Root CA
  • bmo#1663091 - Remove unnecessary assertions in the streaming
  • ASN.1 decoder that affected decoding certain PKCS8 private keys when using NSS debug builds
  • bmo#670839 - Use ARM crypto extension for AES, SHA1 and SHA2 on MacOS.

  • update to NSS 3.58
    Bugs fixed:

    update to NSS 3.57

    update to NSS 3.56
    Notable changes
    detection.
  • bmo#1652729 - Add build flag to disable RC2 and relocate to
  • lib/freebl/deprecated.
  • bmo#1656429 - Correct RTT estimate used in 0-RTT anti-replay.
  • bmo#1588941 - Send empty certificate message when scheme selection
  • fails.
  • bmo#1652032 - Fix failure to build in Windows arm64 makefile
  • cross-compilation.
  • bmo#1625791 - Fix deadlock issue in nssSlot_IsTokenPresent.
  • bmo#1653975 - Fix 3.53 regression by setting 'all' as the default
  • makefile target.
  • bmo#1659792 - Fix broken libpkix tests with unexpired PayPal cert.
  • bmo#1659814 - Fix interop.sh failures with newer tls-interop
  • commit and dependencies.
  • bmo#1656519 - NSPR dependency updated to 4.28

  • update to NSS 3.55
    Notable changes
    Relevant Bugfixes

    update to NSS 3.54
    Notable changes


    Bugs fixed
    Root Certification Authority; C=TW' root.
  • bmo#1645199 - Remove AddTrust root certificates.
  • bmo#1641718 - Remove 'LuxTrust Global Root 2' root certificate.
  • bmo#1639987 - Remove 'Staat der Nederlanden Root CA - G2' root
  • certificate.
  • bmo#1618402 - Remove Symantec root certificates and disable email trust
  • bit.
  • bmo#1640516 - NSS 3.54 should depend on NSPR 4.26.
  • bmo#1642146 - Fix undefined reference to `PORT_ZAlloc_stub' in seed.c.
  • bmo#1642153 - Fix infinite recursion building NSS.
  • bmo#1642638 - Fix fuzzing assertion crash.
  • bmo#1642871 - Enable SSL_SendSessionTicket after resumption.
  • bmo#1643123 - Support SSL_ExportEarlyKeyingMaterial with External PSKs.
  • bmo#1643557 - Fix numerous compile warnings in NSS.
  • bmo#1644774 - SSL gtests to use ClearServerCache when resetting
  • self-encrypt keys.
  • bmo#1645479 - Don't use SECITEM_MakeItem in secutil.c.
  • bmo#1646520 - Stricter enforcement of ASN.1 INTEGER encoding.

  • Advisory IDSUSE-RU-2021:3128-1
    ReleasedFri Sep 17 16:23:21 2021
    SummaryRecommended update for rpmlint
    Typerecommended
    Severitymoderate
    References1169494,1189106
    Description:

    This update for rpmlint fixes the following issues:


    Advisory IDSUSE-RU-2021:3131-1
    ReleasedFri Sep 17 16:36:55 2021
    SummaryRecommended update for xorg-x11-fonts
    Typerecommended
    Severitymoderate
    References1174895
    Description:

    This update for xorg-x11-fonts fixes the following issues:


    This update for fonttosfnt fixes the following issues:


    Advisory IDSUSE-RU-2021:3132-1
    ReleasedFri Sep 17 16:37:37 2021
    SummaryRecommended update for google-guest-oslogin
    Typerecommended
    Severitymoderate
    References1188992,1189041
    Description:

    This update for google-guest-oslogin contains the following fixes:





    Advisory IDSUSE-RU-2021:3171-1
    ReleasedMon Sep 20 17:26:34 2021
    SummaryRecommended update for java-11-openjdk
    Typerecommended
    Severityimportant
    References1189201,1190252
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2021:3182-1
    ReleasedTue Sep 21 17:04:26 2021
    SummaryRecommended update for file
    Typerecommended
    Severitymoderate
    References1189996
    Description:

    This update for file fixes the following issues:


    Advisory IDSUSE-SU-2021:3187-1
    ReleasedWed Sep 22 15:09:23 2021
    SummarySecurity update for samba
    Typesecurity
    Severityimportant
    References1182830,1183572,1183574,1184677,1189875,CVE-2020-27840,CVE-2021-20254,CVE-2021-20277
    Description:

    This update for samba fixes the following issues:



    Advisory IDSUSE-RU-2021:3188-1
    ReleasedWed Sep 22 15:45:22 2021
    SummaryRecommended update for sapnwbootstrap-formula
    Typerecommended
    Severitymoderate
    References1181541,1185093,1185627,1186236
    Description:

    This update for sapnwbootstrap-formula fixes the following issues:
    Update to version 0.6.4+git.1621842068.a86c37c:


    Advisory IDSUSE-SU-2021:3193-1
    ReleasedThu Sep 23 11:24:50 2021
    SummarySecurity update for ffmpeg
    Typesecurity
    Severityimportant
    References1189724,CVE-2021-38171
    Description:

    This update for ffmpeg fixes the following issues:


    Advisory IDSUSE-RU-2021:3203-1
    ReleasedThu Sep 23 14:41:35 2021
    SummaryRecommended update for kmod
    Typerecommended
    Severitymoderate
    References1189537,1190190
    Description:

    This update for kmod fixes the following issues:



    Advisory IDSUSE-RU-2021:3221-1
    ReleasedFri Sep 24 10:20:35 2021
    SummaryRecommended update for apache2-mod_wsgi
    Typerecommended
    Severitymoderate
    References1189467
    Description:

    This update for apache2-mod_wsgi fixes the following issue:


    Advisory IDSUSE-RU-2021:3224-1
    ReleasedFri Sep 24 11:34:33 2021
    SummaryRecommended update for shim-susesigned
    Typerecommended
    Severitymoderate
    References1177315,1177789,1182057,1184454,1185232,1185261,1185441,1185464,1185621,1185961,1187260,1187696
    Description:

    This update for shim-susesigned fixes the following issues:
    Sync with Microsoft signed shim to Thu Jul 15 08:13:26 UTC 2021.
    This update addresses the 'susesigned' shim component.
    shim was updated to 15.4 (bsc#1182057)


    Advisory IDSUSE-RU-2021:3227-1
    ReleasedMon Sep 27 09:50:51 2021
    SummaryRecommended update for createrepo_c, libmodulemd, and zchunk
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for createrepo_c fixes the following issues:
    createrepo_c:


    libmodulemd:

    zchunk:


    Advisory IDSUSE-SU-2021:3236-1
    ReleasedMon Sep 27 16:37:22 2021
    SummarySecurity update for gd
    Typesecurity
    Severitymoderate
    References1190400,CVE-2021-40812
    Description:

    This update for gd fixes the following issues:


    Advisory IDSUSE-RU-2021:3242-1
    ReleasedTue Sep 28 10:50:36 2021
    SummaryRecommended update for apache2-mod_auth_mellon, lasso
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for lasso fixes the following issues:


    Advisory IDSUSE-SU-2021:3244-1
    ReleasedTue Sep 28 13:17:04 2021
    SummarySecurity update for shibboleth-sp
    Typesecurity
    Severitylow
    References1184222
    Description:

    This update for shibboleth-sp fixes the following issues:


    Advisory IDSUSE-RU-2021:3245-1
    ReleasedTue Sep 28 13:54:31 2021
    SummaryRecommended update for docker
    Typerecommended
    Severityimportant
    References1190670
    Description:

    This update for docker fixes the following issues:


    Advisory IDSUSE-SU-2021:3255-1
    ReleasedWed Sep 29 16:29:48 2021
    SummarySecurity update for postgresql13
    Typesecurity
    Severitymoderate
    References1179945,1185952,1187751,1189748,CVE-2021-3677
    Description:

    This update for postgresql13 fixes the following issues:



    Advisory IDSUSE-RU-2021:3274-1
    ReleasedFri Oct 1 10:34:17 2021
    SummaryRecommended update for ca-certificates-mozilla
    Typerecommended
    Severityimportant
    References1190858
    Description:

    This update for ca-certificates-mozilla fixes the following issues:


    Advisory IDSUSE-SU-2021:3291-1
    ReleasedWed Oct 6 16:45:36 2021
    SummarySecurity update for glibc
    Typesecurity
    Severitymoderate
    References1186489,1187911,CVE-2021-33574,CVE-2021-35942
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-SU-2021:3293-1
    ReleasedWed Oct 6 16:47:31 2021
    SummarySecurity update for ffmpeg
    Typesecurity
    Severitymoderate
    References1186761,CVE-2020-22042
    Description:

    This update for ffmpeg fixes the following issues:


    Advisory IDSUSE-RU-2021:3307-1
    ReleasedWed Oct 6 18:12:07 2021
    SummaryRecommended update for virt-what
    Typerecommended
    Severitymoderate
    References1161850,1176132
    Description:

    This update for virt-what fixes the following issues:


    Advisory IDSUSE-SU-2021:3325-1
    ReleasedSat Oct 9 19:45:01 2021
    SummarySecurity update for rabbitmq-server
    Typesecurity
    Severitymoderate
    References1185075,1186203,1187818,1187819,CVE-2021-22116,CVE-2021-32718,CVE-2021-32719
    Description:

    This update for rabbitmq-server fixes the following issues:



    Advisory IDSUSE-RU-2021:3349-1
    ReleasedTue Oct 12 13:21:48 2021
    SummaryRecommended update for libgphoto2
    Typerecommended
    Severitymoderate
    References1172301
    Description:

    This update for libgphoto2 fixes the following issues:
    libgphoto2 was updated to the 2.5.27 release (jsc#SLE-21615)


    Advisory IDSUSE-RU-2021:3382-1
    ReleasedTue Oct 12 14:30:17 2021
    SummaryRecommended update for ca-certificates-mozilla
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for ca-certificates-mozilla fixes the following issues:


    Advisory IDSUSE-RU-2021:3390-1
    ReleasedTue Oct 12 18:53:38 2021
    SummaryRecommended update for fcoe-utils
    Typerecommended
    Severitymoderate
    References1010047,1182804
    Description:

    This update for fcoe-utils fixes the following issues:
    Update to version 1.0.34 (bsc#1182804)


    Advisory IDSUSE-RU-2021:3406-1
    ReleasedWed Oct 13 10:40:44 2021
    SummaryRecommended update for ServiceReport
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for ServiceReport fixes the following issues:


    Advisory IDSUSE-RU-2021:3409-1
    ReleasedWed Oct 13 10:41:02 2021
    SummaryRecommended update for libGLw
    Typerecommended
    Severitylow
    References1191122
    Description:

    This update for libGLw fixes the following issue:


    Advisory IDSUSE-RU-2021:3410-1
    ReleasedWed Oct 13 10:41:36 2021
    SummaryRecommended update for xkeyboard-config
    Typerecommended
    Severitymoderate
    References1191242
    Description:

    This update for xkeyboard-config fixes the following issue:


    Advisory IDSUSE-SU-2021:3445-1
    ReleasedFri Oct 15 09:03:39 2021
    SummarySecurity update for rpm
    Typesecurity
    Severityimportant
    References1183659,1185299,1187670,1188548
    Description:

    This update for rpm fixes the following issues:
    Security issues fixed:


    Maintaince issues fixed:


    Advisory IDSUSE-RU-2021:3448-1
    ReleasedFri Oct 15 09:12:28 2021
    SummaryRecommended update for scap-security-guide
    Typerecommended
    Severitymoderate
    References1191431,1191432
    Description:

    This update for scap-security-guide fixes the following issues:
    The scap-security-guide was updated to 0.1.58 release (jsc#ECO-3319)


    Advisory IDSUSE-SU-2021:3451-1
    ReleasedSat Oct 16 10:49:25 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1188891,1189547,1190269,1190274,1190710,1191332,CVE-2021-29980,CVE-2021-29981,CVE-2021-29982,CVE-2021-29983,CVE-2021-29984,CVE-2021-29985,CVE-2021-29986,CVE-2021-29987,CVE-2021-29988,CVE-2021-29989,CVE-2021-29990,CVE-2021-29991,CVE-2021-32810,CVE-2021-38492,CVE-2021-38495,CVE-2021-38496,CVE-2021-38497,CVE-2021-38498,CVE-2021-38500,CVE-2021-38501
    Description:

    This update for MozillaFirefox fixes the following issues:
    This update contains the Firefox Extended Support Release 91.2.0 ESR.
    Release 91.2.0 ESR:


    MFSA 2021-45 (bsc#1191332):


    Release 91.1.0 ESR:

    MFSA 2021-40 (bsc#1190269, bsc#1190274):

    Release 91.0.1esr ESR:

    Firefox Extended Support Release 91.0 ESR

    - A number of user interface changes. For more information, see the Firefox 89 release notes. - Firefox now supports logging into Microsoft, work, and school accounts using Windows single sign-on. Learn more - On Windows, updates can now be applied in the background while Firefox is not running. - Firefox for Windows now offers a new page about:third-party to help identify compatibility issues caused by third-party applications - Version 2 of Firefox's SmartBlock feature further improves private browsing. Third party Facebook scripts are blocked to prevent you from being tracked, but are now automatically loaded 'just in time' if you decide to 'Log in with Facebook' on any website. - Enhanced the privacy of the Firefox Browser's Private Browsing mode with Total Cookie Protection, which confines cookies to the site where they were created, preventing companis from using cookies to track your browsing across sites. This feature was originally launched in Firefox's ETP Strict mode. - PDF forms now support JavaScript embedded in PDF files. Some PDF forms use JavaScript for validation and other interactive features. - You'll encounter less website breakage in Private Browsing and Strict Enhanced Tracking Protection with SmartBlock, which provides stand-in scripts so that websites load properly. - Improved Print functionality with a cleaner design and better integration with your computer's printer settings. - Firefox now protects you from supercookies, a type of tracker that can stay hidden in your browser and track you online, even after you clear cookies. By isolating supercookies, Firefox prevents them from tracking your web browsing from one site to the next. - Firefox now remembers your preferred location for saved bookmarks, displays the bookmarks toolbar by default on new tabs, and gives you easy access to all of your bookmarks via a toolbar folder. - Native support for macOS devices built with Apple Silicon CPUs brings dramatic performance improvements over the non- native build that was shipped in Firefox 83: Firefox launches over 2.5 times faster and web apps are now twice as responsive (per the SpeedoMeter 2.0 test). If you are on a new Apple device, follow these steps to upgrade to the latest Firefox. - Pinch zooming will now be supported for our users with Windows touchscreen devices and touchpads on Mac devices. Firefox users may now use pinch to zoom on touch-capable devices to zoom in and out of webpages. - We’ve improved functionality and design for a number of Firefox search features: * Selecting a search engine at the bottom of the search panel now enters search mode for that engine, allowing you to see suggestions (if available) for your search terms. The old behavior (immediately performing a search) is available with a shift-click. * When Firefox autocompletes the URL of one of your search engines, you can now search with that engine directly in the address bar by selecting the shortcut in the address bar results. * We’ve added buttons at the bottom of the search panel to allow you to search your bookmarks, open tabs, and history. - Firefox supports AcroForm, which will allow you to fill in, print, and save supported PDF forms and the PDF viewer also has a new fresh look. - For our users in the US and Canada, Firefox can now save, manage, and auto-fill credit card information for you, making shopping on Firefox ever more convenient. - In addition to our default, dark and light themes, with this release, Firefox introduces the Alpenglow theme: a colorful appearance for buttons, menus, and windows. You can update your Firefox themes under settings or preferences.
    MFSA 2021-33 (bsc#1188891):


    Advisory IDSUSE-RU-2021:3465-1
    ReleasedTue Oct 19 13:12:46 2021
    SummaryRecommended update for cloud-regionsrv
    Typerecommended
    Severitymoderate
    References1190250
    Description:

    This update for cloud-regionsrv contains the following fixes:



    Advisory IDSUSE-RU-2021:3471-1
    ReleasedWed Oct 20 08:39:41 2021
    SummaryRecommended update for habootstrap-formula
    Typerecommended
    Severitymoderate
    References1190940
    Description:

    This update for habootstrap-formula fixes the following issues:
    Update to version 0.4.4


    Advisory IDSUSE-SU-2021:3476-1
    ReleasedWed Oct 20 08:42:00 2021
    SummarySecurity update for xstream
    Typesecurity
    Severityimportant
    References1189798,CVE-2021-39139,CVE-2021-39140,CVE-2021-39141,CVE-2021-39144,CVE-2021-39145,CVE-2021-39146,CVE-2021-39147,CVE-2021-39148,CVE-2021-39149,CVE-2021-39150,CVE-2021-39151,CVE-2021-39152,CVE-2021-39153,CVE-2021-39154
    Description:

    This update for xstream fixes the following issues:


    Advisory IDSUSE-feature-2021:3483-1
    ReleasedWed Oct 20 16:08:18 2021
    SummaryFeature update for saptune
    Typefeature
    Severitymoderate
    References1149205,1164720,1167213,1167416,1167618,1170672,1176243,1178207,1179275,1182009,1182287,1182289,1185702
    Description:

    This update for saptune fixes the following issues:
    Update saptune from version 2.0.3 to version 3.0.0 (jsc#SLE-20985)

    'ugly' control sequences for the colorized output. - Add enable/disable for systemd units and support all systemd unit types in section [service] (jsc#TEAM-1701) - remove script '/usr/share/doc/packages/saptune/sapconf2saptune' and the associated man page (jsc#TEAM-1707) - implement staging of Note definition file and solution definitions. (jsc#TEAM-1844) - The idea is to freeze the saptune configuration to avoid config changes on package update when adding/removing/changing notes or solutions within the package - support custom solutions and override files for solutions. (jsc#TEAM-1706) - Partners and customers will now be able to define their own solution definitions by using files in '/etc/saptune/extra' or to override the shipped solution definitions by using override files in '/etc/saptune/override' - support for device specific configurations (jsc#TEAM-1728) - only supported for the [block] section, tags are 'vendor' and 'model' to support special block devices of a dedicated hardware vendor or a dedicated hardware model - add support for AZURE cloud (SAP Note 2993054) (jsc#TEAM-2676) - add support for AWS cloud (SAP Note 1656250) (jsc#TEAM-1754, jsc#TEAM-1755) - add NVMe support to the block device handling to support AWS (jsc#TEAM-2675) - add SAP Note 3024346 (a NetApp note) (jsc#TEAM-3454) - rework daemon and service actions (jsc#TEAM-3154) - add support for 'read_ahead_kb' and 'max_sectors_kb' to the [block] section (jsc#TEAM-1699) - add a warning to the reminder section of SAP Note 2382421 regarding iSCSI devices and setting of 'net.ipv4.tcp_syn_retries' (jsc#TEAM-1705) - For the actions 'note customise' and 'note create' check, if the customer has changed something during the editor session. If not, remove the temporary created note definition file. (jsc#TEAM-825) - add support for [sys] section and handle double configurations for parameters defined in the [sys] section (jsc#TEAM-3342) - check system sysctl config files as mentioned in the comments of '/etc/sysctl.conf' and in man page 'sysctl.conf(5)' for 'sysctl' parameters currently set by saptune notes. Print a warning and a footnote for 'verify' and 'customize'. (jsc#TEAM-1696) - add support for [filesystem] section only check filesystem mount options, not modify. Starting with filesystem type 'xfs' (jsc#TEAM-4093) - add SAP Note 900929 for SAP Netweaver workloads. (jsc#TEAM-4386) - It's the equivalent to the HANA Note 1980196. - move state files from '/var/lib/saptune' to '/run/saptune' to solve the problem of state files surviving a reboot. - add '/sbin/saptune_check' - add the description of the solution definitions shipped with saptune to the man page saptune(8) (jsc#TEAM-4260)


    Advisory IDSUSE-SU-2021:3490-1
    ReleasedWed Oct 20 16:31:55 2021
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1190793,CVE-2021-39537
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-SU-2021:3493-1
    ReleasedWed Oct 20 16:37:44 2021
    SummarySecurity update for fetchmail
    Typesecurity
    Severitymoderate
    References1190069,CVE-2021-39272
    Description:

    This update for fetchmail fixes the following issues:


    Advisory IDSUSE-RU-2021:3494-1
    ReleasedWed Oct 20 16:48:46 2021
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1190052
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2021:3500-1
    ReleasedFri Oct 22 09:42:21 2021
    SummaryRecommended update for open-vm-tools
    Typerecommended
    Severitymoderate
    References1190987
    Description:

    This update for open-vm-tools fixes the following issues:


    Advisory IDSUSE-RU-2021:3501-1
    ReleasedFri Oct 22 10:42:46 2021
    SummaryRecommended update for libzypp, zypper, libsolv, protobuf
    Typerecommended
    Severitymoderate
    References1186503,1186602,1187224,1187425,1187466,1187738,1187760,1188156,1188435,1189031,1190059,1190199,1190465,1190712,1190815
    Description:

    This update for libzypp, zypper, libsolv and protobuf fixes the following issues:


    Advisory IDSUSE-SU-2021:3506-1
    ReleasedMon Oct 25 10:20:22 2021
    SummarySecurity update for containerd, docker, runc
    Typesecurity
    Severityimportant
    References1102408,1185405,1187704,1188282,1190826,1191015,1191121,1191334,1191355,1191434,CVE-2021-30465,CVE-2021-32760,CVE-2021-41089,CVE-2021-41091,CVE-2021-41092,CVE-2021-41103
    Description:

    This update for containerd, docker, runc fixes the following issues:
    Docker was updated to 20.10.9-ce. (bsc#1191355)
    See upstream changelog in the packaged /usr/share/doc/packages/docker/CHANGELOG.md.
    CVE-2021-41092 CVE-2021-41089 CVE-2021-41091 CVE-2021-41103
    container was updated to v1.4.11, to fix CVE-2021-41103. bsc#1191355



    Update to runc v1.0.2. Upstream changelog is available from
    https://github.com/opencontainers/runc/releases/tag/v1.0.2

    Update to runc v1.0.1. Upstream changelog is available from
    https://github.com/opencontainers/runc/releases/tag/v1.0.1

    Update to runc v1.0.0. Upstream changelog is available from
    https://github.com/opencontainers/runc/releases/tag/v1.0.0
    ! The usage of relative paths for mountpoints will now produce a warning (such configurations are outside of the spec, and in future runc will produce an error when given such configurations).
    Update to runc v1.0.0~rc95. Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.0.0-rc95
    This release of runc contains a fix for CVE-2021-30465, and users are strongly recommended to update (especially if you are providing semi-limited access to spawn containers to untrusted users). (bsc#1185405)
    Update to runc v1.0.0~rc94. Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.0.0-rc94
    Breaking Changes:
    Regression Fixes:


    Advisory IDSUSE-RU-2021:3510-1
    ReleasedTue Oct 26 11:22:15 2021
    SummaryRecommended update for pam
    Typerecommended
    Severityimportant
    References1191987
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2021:3512-1
    ReleasedTue Oct 26 13:33:17 2021
    SummaryRecommended update for MozillaFirefox
    Typerecommended
    Severitymoderate
    References1190141,1191815
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-RU-2021:3516-1
    ReleasedTue Oct 26 14:42:44 2021
    SummaryRecommended update for azure-cli, azure-cli-core, python-azure-mgmt, python-azure-mgmt-billing, python-azure-mgmt-cdn, python-azure-mgmt-hdinsight, python-azure-mgmt-netapp, python-azure-mgmt-resource, python-azure-mgmt-synapse
    Typerecommended
    Severityimportant
    References1187880,1188178
    Description:

    This update for azure-cli, azure-cli-core, python-azure-mgmt, python-azure-mgmt-billing, python-azure-mgmt-cdn, python-azure-mgmt-hdinsight, python-azure-mgmt-netapp, python-azure-mgmt-resource, python-azure-mgmt-synapse contains the following fixes:
    Changes in python-azure-mgmt:


    Changes in azure-cli-core:


    Changes in azure-cli:



    Changes in python-azure-mgmt-billing:

    Changes in python-azure-mgmt-cdn:

    Changes in python-azure-mgmt-hdinsight:

    Changes in python-azure-mgmt-netapp:

    Changes in python-azure-mgmt-resource:

    Changes in python-azure-mgmt-synapse:


    Advisory IDSUSE-SU-2021:3521-1
    ReleasedTue Oct 26 15:38:44 2021
    SummarySecurity update for ffmpeg
    Typesecurity
    Severitymoderate
    References1186756,1187852,1189166,1190718,1190719,1190722,1190723,1190726,1190729,1190733,1190734,1190735,CVE-2020-20891,CVE-2020-20892,CVE-2020-20895,CVE-2020-20896,CVE-2020-20899,CVE-2020-20902,CVE-2020-22037,CVE-2020-35965,CVE-2021-3566,CVE-2021-38092,CVE-2021-38093,CVE-2021-38094
    Description:

    This update for ffmpeg fixes the following issues:


    Advisory IDSUSE-SU-2021:3527-1
    ReleasedTue Oct 26 17:03:06 2021
    SummarySecurity update for wireguard-tools
    Typesecurity
    Severitymoderate
    References1191224
    Description:

    This update for wireguard-tools fixes the following issues:


    Advisory IDSUSE-SU-2021:3529-1
    ReleasedWed Oct 27 09:23:32 2021
    SummarySecurity update for pcre
    Typesecurity
    Severitymoderate
    References1172973,1172974,CVE-2019-20838,CVE-2020-14155
    Description:

    This update for pcre fixes the following issues:
    Update pcre to version 8.45:


    Advisory IDSUSE-RU-2021:3574-1
    ReleasedThu Oct 28 12:50:07 2021
    SummaryRecommended update for rpmlint
    Typerecommended
    Severitymoderate
    References1190790,1191821
    Description:

    This update for rpmlint fixes the following issues:


    Advisory IDSUSE-RU-2021:3578-1
    ReleasedFri Oct 29 11:36:22 2021
    SummaryRecommended update for migrate-sles-to-sles4sap
    Typerecommended
    Severitymoderate
    References1189481
    Description:

    This update for migrate-sles-to-sles4sap fixes the following issues:


    Advisory IDSUSE-RU-2021:3579-1
    ReleasedFri Oct 29 14:56:48 2021
    SummaryRecommended update for cloud-regionsrv-client
    Typerecommended
    Severitymoderate
    References1182026,1189362
    Description:

    This update for cloud-regionsrv-client fixes the following issues:



    Advisory IDSUSE-SU-2021:3584-1
    ReleasedFri Oct 29 16:27:43 2021
    SummarySecurity update for transfig
    Typesecurity
    Severityimportant
    References1189325,1189343,1189345,1189346,1190607,1190611,1190612,1190615,1190616,1190617,1190618,1192019,CVE-2020-21529,CVE-2020-21530,CVE-2020-21531,CVE-2020-21532,CVE-2020-21533,CVE-2020-21534,CVE-2020-21535,CVE-2020-21680,CVE-2020-21681,CVE-2020-21682,CVE-2020-21683,CVE-2021-32280
    Description:

    This update for transfig fixes the following issues:
    Update to fig2dev version 3.2.8 Patchlevel 8b (Aug 2021)


    Advisory IDSUSE-RU-2021:3591-1
    ReleasedTue Nov 2 06:26:33 2021
    SummaryRecommended update for man-pages
    Typerecommended
    Severitymoderate
    References1185534
    Description:

    This update for man-pages fixes the following issues:


    Advisory IDSUSE-RU-2021:3599-1
    ReleasedWed Nov 3 10:29:54 2021
    SummaryRecommended update for postgresql, postgresql13, postgresql14
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for postgresql, postgresql13, postgresql14 fixes the following issues:
    This update ships postgresql14. (jsc#SLE-20675 jsc#SLE-20676)
    Feature changes in postgresql14:


    Changes in postgresql13:

    Changes in postgresql:


    Advisory IDSUSE-SU-2021:3616-1
    ReleasedThu Nov 4 12:29:16 2021
    SummarySecurity update for binutils
    Typesecurity
    Severitymoderate
    References1179898,1179899,1179900,1179901,1179902,1179903,1180451,1180454,1180461,1181452,1182252,1183511,1184620,1184794,CVE-2020-16590,CVE-2020-16591,CVE-2020-16592,CVE-2020-16593,CVE-2020-16598,CVE-2020-16599,CVE-2020-35448,CVE-2020-35493,CVE-2020-35496,CVE-2020-35507,CVE-2021-20197,CVE-2021-20284,CVE-2021-3487
    Description:

    This update for binutils fixes the following issues:
    Update to binutils 2.37:


    The semantics of the =follow-links option have also been slightly changed. When enabled, the option allows for the loading of symbol tables and string tables from the separate files which can be used to enhance the information displayed when dumping other sections, but it does not automatically imply that information from the separate files should be displayed.
    If other debug section display options are also enabled (eg '--debug-dump=info') then the contents of matching sections in both the main file and the separate debuginfo file *will* be displayed. This is because in most cases the debug section will only be present in one of the files.
    If however non-debug section display options are enabled (eg '--sections') then the contents of matching parts of the separate debuginfo file will *not* be displayed. This is because in most cases the user probably only wanted to load the symbol information from the separate debuginfo file. In order to change this behaviour a new command line option --process-links can be used. This will allow di0pslay options to applied to both the main file and any separate debuginfo files.

    Update to binutils 2.36:
    New features in the Assembler:

    * When setting the link order attribute of ELF sections, it is now possible to use a numeric section index instead of symbol name. * Added a .nop directive to generate a single no-op instruction in a target neutral manner. This instruction does have an effect on DWARF line number generation, if that is active. * Removed --reduce-memory-overheads and --hash-size as gas now uses hash tables that can be expand and shrink automatically.

    * Add support for AVX VNNI, HRESET, UINTR, TDX, AMX and Key Locker instructions. * Support non-absolute segment values for lcall and ljmp. * Add {disp16} pseudo prefix to x86 assembler. * Configure with --enable-x86-used-note by default for Linux/x86.

    * Add support for Cortex-A78, Cortex-A78AE and Cortex-X1, Cortex-R82, Neoverse V1, and Neoverse N2 cores. * Add support for ETMv4 (Embedded Trace Macrocell), ETE (Embedded Trace Extension), TRBE (Trace Buffer Extension), CSRE (Call Stack Recorder Extension) and BRBE (Branch Record Buffer Extension) system registers. * Add support for Armv8-R and Armv8.7-A ISA extensions. * Add support for DSB memory nXS barrier, WFET and WFIT instruction for Armv8.7. * Add support for +csre feature for -march. Add CSR PDEC instruction for CSRE feature in AArch64. * Add support for +flagm feature for -march in Armv8.4 AArch64. * Add support for +ls64 feature for -march in Armv8.7 AArch64. Add atomic 64-byte load/store instructions for this feature. * Add support for +pauth (Pointer Authentication) feature for -march in AArch64.
    New features in the Linker:
    * Add --error-handling-script= command line option to allow a helper script to be invoked when an undefined symbol or a missing library is encountered. This option can be suppressed via the configure time switch: --enable-error-handling-script=no. * Add -z x86-64-{baseline|v[234]} to the x86 ELF linker to mark x86-64-{baseline|v[234]} ISA level as needed. * Add -z unique-symbol to avoid duplicated local symbol names. * The creation of PE format DLLs now defaults to using a more secure set of DLL characteristics. * The linker now deduplicates the types in .ctf sections. The new command-line option --ctf-share-types describes how to do this: its default value, share-unconflicted, produces the most compact output. * The linker now omits the 'variable section' from .ctf sections by default, saving space. This is almost certainly what you want unless you are working on a project that has its own analogue of symbol tables that are not reflected in the ELF symtabs.
    New features in other binary tools:
    * The ar tool's previously unused l modifier is now used for specifying dependencies of a static library. The arguments of this option (or --record-libdeps long form option) will be stored verbatim in the __.LIBDEP member of the archive, which the linker may read at link time. * Readelf can now display the contents of LTO symbol table sections when asked to do so via the --lto-syms command line option. * Readelf now accepts the -C command line option to enable the demangling of symbol names. In addition the --demangle=