suse-su-2020:0856-1
Vulnerability from csaf_suse
Published
2020-04-02 14:48
Modified
2020-04-02 14:48
Summary
Security update for SUSE Manager Server 3.2
Notes
Title of the patch
Security update for SUSE Manager Server 3.2
Description of the patch
This update fixes the following issues:
py26-compat-salt:
- Replace pycrypto with M2Crypto as dependency for SLE15+ (bsc#1165425)
redstone-xmlrpc:
- Disable external entity parsing (1790381, bsc#1164120, CVE-2020-1693)
- Do not download external entities (1555429, bsc#1085414, CVE-2018-1077)
spacecmd:
- Bugfix: attempt to purge SSM when it is empty (bsc#1155372)
spacewalk-admin:
- Spell correctly 'successful' and 'successfully'
spacewalk-backend:
- When downloading repo metadata, don't add '/' to the repo url if it already ends with one (bsc#1158899)
- Enhance suseProducts via ISS to fix SP migration on slave server (bsc#1159184)
spacewalk-certs-tools:
- Add minion option in config file to disable salt mine when generated by
bootstrap script (bsc#1163001)
spacewalk-client-tools:
- Do not crash 'mgr-update-status' because 'long' type is not defined in Python 3
- Add workaround for uptime overflow to spacewalk-update-status as well (bsc#1165921)
- Spell correctly 'successful' and 'successfully'
spacewalk-java:
- Fix error when adding systems to ssm with 'add to ssm' button (bsc#1160246)
- Validate the suseproductchannel table and update missing date when running mgr-sync refresh (bsc#1163538)
- Read the subscriptions from the output instead of input (bsc#1140332)
- Show additional headers and dependencies for deb packages
- Use channel name from product tree instead of constructing it (bsc#1157317)
spacewalk-setup:
- Spell correctly 'successful' and 'successfully'
spacewalk-utils:
- Check for delimiter as well when detecting current phase (bsc#1164771)
spacewalk-web:
- Report merge_subscriptions message in a readable way (bsc#1140332)
subscription-matcher:
- Add missing library for SLE15 SP2 (slf4j-log4j12)
- Make the code usable with Math3 on SLES
- Use log4j12 package on newer SLE versions
- Aggregate stackable subscriptions with same parameters
- Implement new 'swap move' used in optaplanner (bsc#1140332)
- Enable aarch64 builds, except for SLE < 15
susemanager:
- Fix salt bootstrapping on SLE15 (require python3-pycrypto or
python3-M2Crypto to support all variants) (bsc#1164563)
- Add bootstrap-repo data for OES 2018 SP2 (bsc#1161862)
- Add bootstrap-repo data for SLE15 SP2 Family
susemanager-sls:
- Adapt 'mgractionchains' module to work with Salt 3000
- Do not workaround util.syncmodules for SSH minions (bsc#1162609)
- Force to run util.synccustomall when triggering action chains on SSH minions (bsc#1162683).
susemanager-sync-data:
- Add OES 2018 SP2 (bsc#1161862)
- Rename RHEL 8 Base product
- Change channel family name according to SCC data
How to apply this update:
1. Log in as root user to the SUSE Manager server.
2. Stop the Spacewalk service:
spacewalk-service stop
3. Apply the patch using either zypper patch or YaST Online Update.
4. Upgrade the database schema:
spacewalk-schema-upgrade
5. Start the Spacewalk service:
spacewalk-service start
Patchnames
SUSE-2020-856,SUSE-SUSE-Manager-Server-3.2-2020-856
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "moderate" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Security update for SUSE Manager Server 3.2", "title": "Title of the patch" }, { "category": "description", "text": "\nThis update fixes the following issues:\n\npy26-compat-salt:\n\n- Replace pycrypto with M2Crypto as dependency for SLE15+ (bsc#1165425)\n\nredstone-xmlrpc:\n\n- Disable external entity parsing (1790381, bsc#1164120, CVE-2020-1693)\n- Do not download external entities (1555429, bsc#1085414, CVE-2018-1077)\n\nspacecmd:\n\n- Bugfix: attempt to purge SSM when it is empty (bsc#1155372)\n\nspacewalk-admin:\n\n- Spell correctly \u0027successful\u0027 and \u0027successfully\u0027\n\nspacewalk-backend:\n\n- When downloading repo metadata, don\u0027t add \u0027/\u0027 to the repo url if it already ends with one (bsc#1158899)\n- Enhance suseProducts via ISS to fix SP migration on slave server (bsc#1159184)\n\nspacewalk-certs-tools:\n\n- Add minion option in config file to disable salt mine when generated by\n bootstrap script (bsc#1163001)\n\nspacewalk-client-tools:\n\n- Do not crash \u0027mgr-update-status\u0027 because \u0027long\u0027 type is not defined in Python 3\n- Add workaround for uptime overflow to spacewalk-update-status as well (bsc#1165921)\n- Spell correctly \u0027successful\u0027 and \u0027successfully\u0027\n\nspacewalk-java:\n\n- Fix error when adding systems to ssm with \u0027add to ssm\u0027 button (bsc#1160246)\n- Validate the suseproductchannel table and update missing date when running mgr-sync refresh (bsc#1163538)\n- Read the subscriptions from the output instead of input (bsc#1140332)\n- Show additional headers and dependencies for deb packages\n- Use channel name from product tree instead of constructing it (bsc#1157317)\n\nspacewalk-setup:\n\n- Spell correctly \u0027successful\u0027 and \u0027successfully\u0027\n\nspacewalk-utils:\n\n- Check for delimiter as well when detecting current phase (bsc#1164771)\n\nspacewalk-web:\n\n- Report merge_subscriptions message in a readable way (bsc#1140332)\n\nsubscription-matcher:\n\n- Add missing library for SLE15 SP2 (slf4j-log4j12)\n- Make the code usable with Math3 on SLES\n- Use log4j12 package on newer SLE versions\n- Aggregate stackable subscriptions with same parameters\n- Implement new \u0027swap move\u0027 used in optaplanner (bsc#1140332)\n- Enable aarch64 builds, except for SLE \u003c 15 \n\nsusemanager:\n\n- Fix salt bootstrapping on SLE15 (require python3-pycrypto or\n python3-M2Crypto to support all variants) (bsc#1164563)\n- Add bootstrap-repo data for OES 2018 SP2 (bsc#1161862)\n- Add bootstrap-repo data for SLE15 SP2 Family\n\nsusemanager-sls:\n\n- Adapt \u0027mgractionchains\u0027 module to work with Salt 3000\n- Do not workaround util.syncmodules for SSH minions (bsc#1162609)\n- Force to run util.synccustomall when triggering action chains on SSH minions (bsc#1162683).\n\nsusemanager-sync-data:\n\n- Add OES 2018 SP2 (bsc#1161862)\n- Rename RHEL 8 Base product\n- Change channel family name according to SCC data\n\nHow to apply this update:\n1. Log in as root user to the SUSE Manager server.\n2. Stop the Spacewalk service:\nspacewalk-service stop\n3. Apply the patch using either zypper patch or YaST Online Update.\n4. Upgrade the database schema:\nspacewalk-schema-upgrade\n5. Start the Spacewalk service:\nspacewalk-service start\n", "title": "Description of the patch" }, { "category": "details", "text": "SUSE-2020-856,SUSE-SUSE-Manager-Server-3.2-2020-856", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2020_0856-1.json" }, { "category": "self", "summary": "URL for SUSE-SU-2020:0856-1", "url": "https://www.suse.com/support/update/announcement/2020/suse-su-20200856-1/" }, { "category": "self", "summary": "E-Mail link for SUSE-SU-2020:0856-1", "url": "https://lists.suse.com/pipermail/sle-security-updates/2020-April/006669.html" }, { "category": "self", "summary": "SUSE Bug 1085414", "url": "https://bugzilla.suse.com/1085414" }, { "category": "self", "summary": "SUSE Bug 1140332", "url": "https://bugzilla.suse.com/1140332" }, { "category": "self", "summary": "SUSE Bug 1155372", "url": "https://bugzilla.suse.com/1155372" }, { "category": "self", "summary": "SUSE Bug 1157317", "url": "https://bugzilla.suse.com/1157317" }, { "category": "self", "summary": "SUSE Bug 1158899", "url": "https://bugzilla.suse.com/1158899" }, { "category": "self", "summary": "SUSE Bug 1159184", "url": "https://bugzilla.suse.com/1159184" }, { "category": "self", "summary": "SUSE Bug 1160246", "url": "https://bugzilla.suse.com/1160246" }, { "category": "self", "summary": "SUSE Bug 1161862", "url": "https://bugzilla.suse.com/1161862" }, { "category": "self", "summary": "SUSE Bug 1162609", "url": "https://bugzilla.suse.com/1162609" }, { "category": "self", "summary": "SUSE Bug 1162683", "url": "https://bugzilla.suse.com/1162683" }, { "category": "self", "summary": "SUSE Bug 1163001", "url": "https://bugzilla.suse.com/1163001" }, { "category": "self", "summary": "SUSE Bug 1163538", "url": "https://bugzilla.suse.com/1163538" }, { "category": "self", "summary": "SUSE Bug 1164120", "url": "https://bugzilla.suse.com/1164120" }, { "category": "self", "summary": "SUSE Bug 1164563", "url": "https://bugzilla.suse.com/1164563" }, { "category": "self", "summary": "SUSE Bug 1164771", "url": "https://bugzilla.suse.com/1164771" }, { "category": "self", "summary": "SUSE Bug 1165425", "url": "https://bugzilla.suse.com/1165425" }, { "category": "self", "summary": "SUSE Bug 1165921", "url": "https://bugzilla.suse.com/1165921" }, { "category": "self", "summary": "SUSE CVE CVE-2018-1077 page", "url": "https://www.suse.com/security/cve/CVE-2018-1077/" }, { "category": "self", "summary": "SUSE CVE CVE-2020-1693 page", "url": "https://www.suse.com/security/cve/CVE-2020-1693/" } ], "title": "Security update for SUSE Manager Server 3.2", "tracking": { "current_release_date": "2020-04-02T14:48:30Z", "generator": { "date": "2020-04-02T14:48:30Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "SUSE-SU-2020:0856-1", "initial_release_date": "2020-04-02T14:48:30Z", "revision_history": [ { "date": "2020-04-02T14:48:30Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "susemanager-3.2.23-3.40.2.aarch64", "product": { "name": "susemanager-3.2.23-3.40.2.aarch64", "product_id": "susemanager-3.2.23-3.40.2.aarch64" } }, { "category": "product_version", "name": "susemanager-tools-3.2.23-3.40.2.aarch64", "product": { "name": "susemanager-tools-3.2.23-3.40.2.aarch64", "product_id": "susemanager-tools-3.2.23-3.40.2.aarch64" } } ], "category": "architecture", "name": "aarch64" }, { "branches": [ { "category": "product_version", "name": "py26-compat-salt-2016.11.10-6.35.1.noarch", "product": { "name": "py26-compat-salt-2016.11.10-6.35.1.noarch", "product_id": "py26-compat-salt-2016.11.10-6.35.1.noarch" } }, { "category": "product_version", "name": "python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "product": { "name": "python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "product_id": "python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch" } }, { "category": "product_version", "name": "python2-spacewalk-check-2.8.22.7-3.12.1.noarch", "product": { "name": "python2-spacewalk-check-2.8.22.7-3.12.1.noarch", "product_id": "python2-spacewalk-check-2.8.22.7-3.12.1.noarch" } }, { "category": "product_version", "name": "python2-spacewalk-client-setup-2.8.22.7-3.12.1.noarch", "product": { "name": "python2-spacewalk-client-setup-2.8.22.7-3.12.1.noarch", "product_id": "python2-spacewalk-client-setup-2.8.22.7-3.12.1.noarch" } }, { "category": "product_version", "name": "python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "product": { "name": "python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "product_id": "python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch" } }, { "category": "product_version", "name": "redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch", "product": { "name": "redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch", "product_id": "redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch" } }, { "category": "product_version", "name": "spacecmd-2.8.25.14-3.32.1.noarch", "product": { "name": "spacecmd-2.8.25.14-3.32.1.noarch", "product_id": "spacecmd-2.8.25.14-3.32.1.noarch" } }, { "category": "product_version", "name": "spacewalk-admin-2.8.4.6-3.12.1.noarch", "product": { "name": "spacewalk-admin-2.8.4.6-3.12.1.noarch", "product_id": "spacewalk-admin-2.8.4.6-3.12.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-app-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-app-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-app-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-applet-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-applet-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-applet-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-cdn-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-cdn-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-cdn-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-iss-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-iss-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-iss-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-libs-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-libs-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-libs-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-server-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-server-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-server-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-sql-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-sql-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-sql-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-tools-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-tools-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-tools-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch", "product": { "name": "spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch", "product_id": "spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch" } }, { "category": "product_version", "name": "spacewalk-base-2.8.7.23-3.45.1.noarch", "product": { "name": "spacewalk-base-2.8.7.23-3.45.1.noarch", "product_id": "spacewalk-base-2.8.7.23-3.45.1.noarch" } }, { "category": "product_version", "name": "spacewalk-base-minimal-2.8.7.23-3.45.1.noarch", "product": { "name": "spacewalk-base-minimal-2.8.7.23-3.45.1.noarch", "product_id": "spacewalk-base-minimal-2.8.7.23-3.45.1.noarch" } }, { "category": "product_version", "name": "spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch", "product": { "name": "spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch", "product_id": "spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch" } }, { "category": "product_version", "name": "spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "product": { "name": "spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "product_id": "spacewalk-certs-tools-2.8.8.14-3.23.1.noarch" } }, { "category": "product_version", "name": "spacewalk-check-2.8.22.7-3.12.1.noarch", "product": { "name": "spacewalk-check-2.8.22.7-3.12.1.noarch", "product_id": "spacewalk-check-2.8.22.7-3.12.1.noarch" } }, { "category": "product_version", "name": "spacewalk-client-setup-2.8.22.7-3.12.1.noarch", "product": { "name": "spacewalk-client-setup-2.8.22.7-3.12.1.noarch", "product_id": "spacewalk-client-setup-2.8.22.7-3.12.1.noarch" } }, { "category": "product_version", "name": "spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "product": { "name": "spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "product_id": "spacewalk-client-tools-2.8.22.7-3.12.1.noarch" } }, { "category": "product_version", "name": "spacewalk-dobby-2.8.7.23-3.45.1.noarch", "product": { "name": "spacewalk-dobby-2.8.7.23-3.45.1.noarch", "product_id": "spacewalk-dobby-2.8.7.23-3.45.1.noarch" } }, { "category": "product_version", "name": "spacewalk-html-2.8.7.23-3.45.1.noarch", "product": { "name": "spacewalk-html-2.8.7.23-3.45.1.noarch", "product_id": "spacewalk-html-2.8.7.23-3.45.1.noarch" } }, { "category": "product_version", "name": "spacewalk-java-2.8.78.28-3.47.1.noarch", "product": { "name": "spacewalk-java-2.8.78.28-3.47.1.noarch", "product_id": "spacewalk-java-2.8.78.28-3.47.1.noarch" } }, { "category": "product_version", "name": "spacewalk-java-apidoc-sources-2.8.78.28-3.47.1.noarch", "product": { "name": "spacewalk-java-apidoc-sources-2.8.78.28-3.47.1.noarch", "product_id": "spacewalk-java-apidoc-sources-2.8.78.28-3.47.1.noarch" } }, { "category": "product_version", "name": "spacewalk-java-config-2.8.78.28-3.47.1.noarch", "product": { "name": "spacewalk-java-config-2.8.78.28-3.47.1.noarch", "product_id": "spacewalk-java-config-2.8.78.28-3.47.1.noarch" } }, { "category": "product_version", "name": "spacewalk-java-lib-2.8.78.28-3.47.1.noarch", "product": { "name": "spacewalk-java-lib-2.8.78.28-3.47.1.noarch", "product_id": "spacewalk-java-lib-2.8.78.28-3.47.1.noarch" } }, { "category": "product_version", "name": "spacewalk-java-oracle-2.8.78.28-3.47.1.noarch", "product": { "name": "spacewalk-java-oracle-2.8.78.28-3.47.1.noarch", "product_id": "spacewalk-java-oracle-2.8.78.28-3.47.1.noarch" } }, { "category": "product_version", "name": "spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch", "product": { "name": "spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch", "product_id": "spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch" } }, { "category": "product_version", "name": "spacewalk-setup-2.8.7.10-3.25.1.noarch", "product": { "name": "spacewalk-setup-2.8.7.10-3.25.1.noarch", "product_id": "spacewalk-setup-2.8.7.10-3.25.1.noarch" } }, { "category": "product_version", "name": "spacewalk-taskomatic-2.8.78.28-3.47.1.noarch", "product": { "name": "spacewalk-taskomatic-2.8.78.28-3.47.1.noarch", "product_id": "spacewalk-taskomatic-2.8.78.28-3.47.1.noarch" } }, { "category": "product_version", "name": "spacewalk-utils-2.8.18.6-3.12.1.noarch", "product": { "name": "spacewalk-utils-2.8.18.6-3.12.1.noarch", "product_id": "spacewalk-utils-2.8.18.6-3.12.1.noarch" } }, { "category": "product_version", "name": "subscription-matcher-0.25-4.15.1.noarch", "product": { "name": "subscription-matcher-0.25-4.15.1.noarch", "product_id": "subscription-matcher-0.25-4.15.1.noarch" } }, { "category": "product_version", "name": "subscription-matcher-kit-ace4a108348a0be2f81ecd121d16dc26401f424c-3.6.1.noarch", "product": { "name": "subscription-matcher-kit-ace4a108348a0be2f81ecd121d16dc26401f424c-3.6.1.noarch", "product_id": "subscription-matcher-kit-ace4a108348a0be2f81ecd121d16dc26401f424c-3.6.1.noarch" } }, { "category": "product_version", "name": "susemanager-sls-3.2.30-3.44.1.noarch", "product": { "name": "susemanager-sls-3.2.30-3.44.1.noarch", "product_id": "susemanager-sls-3.2.30-3.44.1.noarch" } }, { "category": "product_version", "name": "susemanager-sync-data-3.2.19-3.35.1.noarch", "product": { "name": "susemanager-sync-data-3.2.19-3.35.1.noarch", "product_id": "susemanager-sync-data-3.2.19-3.35.1.noarch" } }, { "category": "product_version", "name": "susemanager-web-libs-2.8.7.23-3.45.1.noarch", "product": { "name": "susemanager-web-libs-2.8.7.23-3.45.1.noarch", "product_id": "susemanager-web-libs-2.8.7.23-3.45.1.noarch" } } ], "category": "architecture", "name": "noarch" }, { "branches": [ { "category": "product_version", "name": "susemanager-3.2.23-3.40.2.ppc64le", "product": { "name": "susemanager-3.2.23-3.40.2.ppc64le", "product_id": "susemanager-3.2.23-3.40.2.ppc64le" } }, { "category": "product_version", "name": "susemanager-tools-3.2.23-3.40.2.ppc64le", "product": { "name": "susemanager-tools-3.2.23-3.40.2.ppc64le", "product_id": "susemanager-tools-3.2.23-3.40.2.ppc64le" } } ], "category": "architecture", "name": "ppc64le" }, { "branches": [ { "category": "product_version", "name": "susemanager-3.2.23-3.40.2.s390x", "product": { "name": "susemanager-3.2.23-3.40.2.s390x", "product_id": "susemanager-3.2.23-3.40.2.s390x" } }, { "category": "product_version", "name": "susemanager-tools-3.2.23-3.40.2.s390x", "product": { "name": "susemanager-tools-3.2.23-3.40.2.s390x", "product_id": "susemanager-tools-3.2.23-3.40.2.s390x" } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "susemanager-3.2.23-3.40.2.x86_64", "product": { "name": "susemanager-3.2.23-3.40.2.x86_64", "product_id": "susemanager-3.2.23-3.40.2.x86_64" } }, { "category": "product_version", "name": "susemanager-tools-3.2.23-3.40.2.x86_64", "product": { "name": "susemanager-tools-3.2.23-3.40.2.x86_64", "product_id": "susemanager-tools-3.2.23-3.40.2.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "SUSE Manager Server 3.2", "product": { "name": "SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2", "product_identification_helper": { "cpe": "cpe:/o:suse:suse-manager-server:3.2" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "py26-compat-salt-2016.11.10-6.35.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:py26-compat-salt-2016.11.10-6.35.1.noarch" }, "product_reference": "py26-compat-salt-2016.11.10-6.35.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch" }, "product_reference": "python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch" }, "product_reference": "python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch" }, "product_reference": "redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacecmd-2.8.25.14-3.32.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacecmd-2.8.25.14-3.32.1.noarch" }, "product_reference": "spacecmd-2.8.25.14-3.32.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-admin-2.8.4.6-3.12.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-admin-2.8.4.6-3.12.1.noarch" }, "product_reference": "spacewalk-admin-2.8.4.6-3.12.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-app-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-app-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-app-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-applet-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-applet-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-applet-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-iss-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-iss-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-iss-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-libs-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-libs-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-libs-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-server-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-server-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-server-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-sql-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-sql-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-sql-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-tools-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-tools-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-tools-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch" }, "product_reference": "spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-base-2.8.7.23-3.45.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-base-2.8.7.23-3.45.1.noarch" }, "product_reference": "spacewalk-base-2.8.7.23-3.45.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-base-minimal-2.8.7.23-3.45.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-base-minimal-2.8.7.23-3.45.1.noarch" }, "product_reference": "spacewalk-base-minimal-2.8.7.23-3.45.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch" }, "product_reference": "spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-certs-tools-2.8.8.14-3.23.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-certs-tools-2.8.8.14-3.23.1.noarch" }, "product_reference": "spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-client-tools-2.8.22.7-3.12.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-client-tools-2.8.22.7-3.12.1.noarch" }, "product_reference": "spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-html-2.8.7.23-3.45.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-html-2.8.7.23-3.45.1.noarch" }, "product_reference": "spacewalk-html-2.8.7.23-3.45.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-java-2.8.78.28-3.47.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-java-2.8.78.28-3.47.1.noarch" }, "product_reference": "spacewalk-java-2.8.78.28-3.47.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-java-config-2.8.78.28-3.47.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-java-config-2.8.78.28-3.47.1.noarch" }, "product_reference": "spacewalk-java-config-2.8.78.28-3.47.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-java-lib-2.8.78.28-3.47.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-java-lib-2.8.78.28-3.47.1.noarch" }, "product_reference": "spacewalk-java-lib-2.8.78.28-3.47.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-java-oracle-2.8.78.28-3.47.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-java-oracle-2.8.78.28-3.47.1.noarch" }, "product_reference": "spacewalk-java-oracle-2.8.78.28-3.47.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch" }, "product_reference": "spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-setup-2.8.7.10-3.25.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-setup-2.8.7.10-3.25.1.noarch" }, "product_reference": "spacewalk-setup-2.8.7.10-3.25.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-taskomatic-2.8.78.28-3.47.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-taskomatic-2.8.78.28-3.47.1.noarch" }, "product_reference": "spacewalk-taskomatic-2.8.78.28-3.47.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "spacewalk-utils-2.8.18.6-3.12.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:spacewalk-utils-2.8.18.6-3.12.1.noarch" }, "product_reference": "spacewalk-utils-2.8.18.6-3.12.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "subscription-matcher-0.25-4.15.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:subscription-matcher-0.25-4.15.1.noarch" }, "product_reference": "subscription-matcher-0.25-4.15.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "susemanager-3.2.23-3.40.2.ppc64le as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.ppc64le" }, "product_reference": "susemanager-3.2.23-3.40.2.ppc64le", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "susemanager-3.2.23-3.40.2.s390x as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.s390x" }, "product_reference": "susemanager-3.2.23-3.40.2.s390x", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "susemanager-3.2.23-3.40.2.x86_64 as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.x86_64" }, "product_reference": "susemanager-3.2.23-3.40.2.x86_64", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "susemanager-sls-3.2.30-3.44.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:susemanager-sls-3.2.30-3.44.1.noarch" }, "product_reference": "susemanager-sls-3.2.30-3.44.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "susemanager-sync-data-3.2.19-3.35.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:susemanager-sync-data-3.2.19-3.35.1.noarch" }, "product_reference": "susemanager-sync-data-3.2.19-3.35.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "susemanager-tools-3.2.23-3.40.2.ppc64le as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.ppc64le" }, "product_reference": "susemanager-tools-3.2.23-3.40.2.ppc64le", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "susemanager-tools-3.2.23-3.40.2.s390x as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.s390x" }, "product_reference": "susemanager-tools-3.2.23-3.40.2.s390x", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "susemanager-tools-3.2.23-3.40.2.x86_64 as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.x86_64" }, "product_reference": "susemanager-tools-3.2.23-3.40.2.x86_64", "relates_to_product_reference": "SUSE Manager Server 3.2" }, { "category": "default_component_of", "full_product_name": { "name": "susemanager-web-libs-2.8.7.23-3.45.1.noarch as component of SUSE Manager Server 3.2", "product_id": "SUSE Manager Server 3.2:susemanager-web-libs-2.8.7.23-3.45.1.noarch" }, "product_reference": "susemanager-web-libs-2.8.7.23-3.45.1.noarch", "relates_to_product_reference": "SUSE Manager Server 3.2" } ] }, "vulnerabilities": [ { "cve": "CVE-2018-1077", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2018-1077" } ], "notes": [ { "category": "general", "text": "Spacewalk 2.6 contains an API which has an XXE flaw allowing for the disclosure of potentially sensitive information from the server.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Manager Server 3.2:py26-compat-salt-2016.11.10-6.35.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch", "SUSE Manager Server 3.2:spacecmd-2.8.25.14-3.32.1.noarch", "SUSE Manager Server 3.2:spacewalk-admin-2.8.4.6-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-app-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-applet-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-tools-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-html-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-config-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-lib-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-oracle-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-setup-2.8.7.10-3.25.1.noarch", "SUSE Manager Server 3.2:spacewalk-taskomatic-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-utils-2.8.18.6-3.12.1.noarch", "SUSE Manager Server 3.2:subscription-matcher-0.25-4.15.1.noarch", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-sls-3.2.30-3.44.1.noarch", "SUSE Manager Server 3.2:susemanager-sync-data-3.2.19-3.35.1.noarch", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-web-libs-2.8.7.23-3.45.1.noarch" ] }, "references": [ { "category": "external", "summary": "CVE-2018-1077", "url": "https://www.suse.com/security/cve/CVE-2018-1077" }, { "category": "external", "summary": "SUSE Bug 1085414 for CVE-2018-1077", "url": "https://bugzilla.suse.com/1085414" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Manager Server 3.2:py26-compat-salt-2016.11.10-6.35.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch", "SUSE Manager Server 3.2:spacecmd-2.8.25.14-3.32.1.noarch", "SUSE Manager Server 3.2:spacewalk-admin-2.8.4.6-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-app-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-applet-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-tools-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-html-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-config-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-lib-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-oracle-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-setup-2.8.7.10-3.25.1.noarch", "SUSE Manager Server 3.2:spacewalk-taskomatic-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-utils-2.8.18.6-3.12.1.noarch", "SUSE Manager Server 3.2:subscription-matcher-0.25-4.15.1.noarch", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-sls-3.2.30-3.44.1.noarch", "SUSE Manager Server 3.2:susemanager-sync-data-3.2.19-3.35.1.noarch", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-web-libs-2.8.7.23-3.45.1.noarch" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N", "version": "3.0" }, "products": [ "SUSE Manager Server 3.2:py26-compat-salt-2016.11.10-6.35.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch", "SUSE Manager Server 3.2:spacecmd-2.8.25.14-3.32.1.noarch", "SUSE Manager Server 3.2:spacewalk-admin-2.8.4.6-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-app-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-applet-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-tools-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-html-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-config-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-lib-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-oracle-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-setup-2.8.7.10-3.25.1.noarch", "SUSE Manager Server 3.2:spacewalk-taskomatic-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-utils-2.8.18.6-3.12.1.noarch", "SUSE Manager Server 3.2:subscription-matcher-0.25-4.15.1.noarch", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-sls-3.2.30-3.44.1.noarch", "SUSE Manager Server 3.2:susemanager-sync-data-3.2.19-3.35.1.noarch", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-web-libs-2.8.7.23-3.45.1.noarch" ] } ], "threats": [ { "category": "impact", "date": "2020-04-02T14:48:30Z", "details": "moderate" } ], "title": "CVE-2018-1077" }, { "cve": "CVE-2020-1693", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2020-1693" } ], "notes": [ { "category": "general", "text": "A flaw was found in Spacewalk up to version 2.9 where it was vulnerable to XML internal entity attacks via the /rpc/api endpoint. An unauthenticated remote attacker could use this flaw to retrieve the content of certain files and trigger a denial of service, or in certain circumstances, execute arbitrary code on the Spacewalk server.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Manager Server 3.2:py26-compat-salt-2016.11.10-6.35.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch", "SUSE Manager Server 3.2:spacecmd-2.8.25.14-3.32.1.noarch", "SUSE Manager Server 3.2:spacewalk-admin-2.8.4.6-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-app-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-applet-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-tools-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-html-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-config-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-lib-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-oracle-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-setup-2.8.7.10-3.25.1.noarch", "SUSE Manager Server 3.2:spacewalk-taskomatic-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-utils-2.8.18.6-3.12.1.noarch", "SUSE Manager Server 3.2:subscription-matcher-0.25-4.15.1.noarch", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-sls-3.2.30-3.44.1.noarch", "SUSE Manager Server 3.2:susemanager-sync-data-3.2.19-3.35.1.noarch", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-web-libs-2.8.7.23-3.45.1.noarch" ] }, "references": [ { "category": "external", "summary": "CVE-2020-1693", "url": "https://www.suse.com/security/cve/CVE-2020-1693" }, { "category": "external", "summary": "SUSE Bug 1164120 for CVE-2020-1693", "url": "https://bugzilla.suse.com/1164120" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Manager Server 3.2:py26-compat-salt-2016.11.10-6.35.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch", "SUSE Manager Server 3.2:spacecmd-2.8.25.14-3.32.1.noarch", "SUSE Manager Server 3.2:spacewalk-admin-2.8.4.6-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-app-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-applet-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-tools-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-html-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-config-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-lib-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-oracle-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-setup-2.8.7.10-3.25.1.noarch", "SUSE Manager Server 3.2:spacewalk-taskomatic-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-utils-2.8.18.6-3.12.1.noarch", "SUSE Manager Server 3.2:subscription-matcher-0.25-4.15.1.noarch", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-sls-3.2.30-3.44.1.noarch", "SUSE Manager Server 3.2:susemanager-sync-data-3.2.19-3.35.1.noarch", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-web-libs-2.8.7.23-3.45.1.noarch" ] } ], "scores": [ { "cvss_v3": { "baseScore": 8.6, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Manager Server 3.2:py26-compat-salt-2016.11.10-6.35.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:python2-spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:redstone-xmlrpc-1.1_20071120-0.11.3.1.noarch", "SUSE Manager Server 3.2:spacecmd-2.8.25.14-3.32.1.noarch", "SUSE Manager Server 3.2:spacewalk-admin-2.8.4.6-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-app-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-applet-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-common-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-config-files-tool-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-iss-export-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-package-push-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-server-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-oracle-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-sql-postgresql-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-tools-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xml-export-libs-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-backend-xmlrpc-2.8.57.22-3.48.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-base-minimal-config-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-certs-tools-2.8.8.14-3.23.1.noarch", "SUSE Manager Server 3.2:spacewalk-client-tools-2.8.22.7-3.12.1.noarch", "SUSE Manager Server 3.2:spacewalk-html-2.8.7.23-3.45.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-config-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-lib-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-oracle-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-java-postgresql-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-setup-2.8.7.10-3.25.1.noarch", "SUSE Manager Server 3.2:spacewalk-taskomatic-2.8.78.28-3.47.1.noarch", "SUSE Manager Server 3.2:spacewalk-utils-2.8.18.6-3.12.1.noarch", "SUSE Manager Server 3.2:subscription-matcher-0.25-4.15.1.noarch", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-sls-3.2.30-3.44.1.noarch", "SUSE Manager Server 3.2:susemanager-sync-data-3.2.19-3.35.1.noarch", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.ppc64le", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.s390x", "SUSE Manager Server 3.2:susemanager-tools-3.2.23-3.40.2.x86_64", "SUSE Manager Server 3.2:susemanager-web-libs-2.8.7.23-3.45.1.noarch" ] } ], "threats": [ { "category": "impact", "date": "2020-04-02T14:48:30Z", "details": "important" } ], "title": "CVE-2020-1693" } ] }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…