Security update for several packages related to SUSE Manger 3.2

Announcement ID: SUSE-SU-2019:1006-1
Rating: moderate
References:
Cross-References:
CVSS scores:
  • CVE-2017-7957 ( SUSE ): 7.5 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
  • CVE-2017-7957 ( NVD ): 7.5 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products:
  • SUSE Linux Enterprise High Performance Computing 12 SP3
  • SUSE Linux Enterprise High Performance Computing 12 SP4
  • SUSE Linux Enterprise Server 12 SP3
  • SUSE Linux Enterprise Server 12 SP4
  • SUSE Manager Proxy 3.2
  • SUSE Manager Server 3.2

An update that solves one vulnerability and has 23 security fixes can now be installed.

Description:

This consolidated update includes multiple patchinfos for SUSE Manager Server and Proxy

Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:

  • SUSE Manager Proxy 3.2
    zypper in -t patch SUSE-SUSE-Manager-Proxy-3.2-2019-1006=1
  • SUSE Manager Server 3.2
    zypper in -t patch SUSE-SUSE-Manager-Server-3.2-2019-1006=1

Package List:

  • SUSE Manager Proxy 3.2 (noarch)
    • spacewalk-base-minimal-2.8.7.15-3.24.3
    • spacewalk-backend-2.8.57.14-3.25.3
    • python2-spacewalk-certs-tools-2.8.8.7-3.6.3
    • spacewalk-backend-libs-2.8.57.14-3.25.3
    • susemanager-web-libs-2.8.7.15-3.24.3
    • spacewalk-certs-tools-2.8.8.7-3.6.3
    • spacewalk-base-minimal-config-2.8.7.15-3.24.3
  • SUSE Manager Server 3.2 (noarch)
    • spacecmd-2.8.25.10-3.20.3
    • spacewalk-base-minimal-2.8.7.15-3.24.3
    • spacewalk-taskomatic-2.8.78.21-3.29.1
    • spacewalk-java-postgresql-2.8.78.21-3.29.1
    • python2-spacewalk-certs-tools-2.8.8.7-3.6.3
    • spacewalk-backend-config-files-2.8.57.14-3.25.3
    • susemanager-schema-3.2.18-3.22.3
    • spacewalk-admin-2.8.4.4-3.6.3
    • spacewalk-backend-app-2.8.57.14-3.25.3
    • spacewalk-backend-iss-export-2.8.57.14-3.25.3
    • spacewalk-java-oracle-2.8.78.21-3.29.1
    • jade4j-1.0.7-3.3.3
    • spacewalk-base-minimal-config-2.8.7.15-3.24.3
    • spacewalk-backend-xml-export-libs-2.8.57.14-3.25.3
    • spacewalk-backend-config-files-tool-2.8.57.14-3.25.3
    • spacewalk-backend-server-2.8.57.14-3.25.3
    • spacewalk-java-lib-2.8.78.21-3.29.1
    • kie-soup-7.17.0.Final-2.3.3
    • subscription-matcher-0.23-4.12.3
    • spacewalk-java-config-2.8.78.21-3.29.1
    • spacewalk-backend-sql-2.8.57.14-3.25.3
    • guava-27.0.1-3.3.3
    • spacewalk-html-2.8.7.15-3.24.3
    • spacewalk-backend-2.8.57.14-3.25.3
    • spacewalk-base-2.8.7.15-3.24.3
    • spacewalk-backend-iss-2.8.57.14-3.25.3
    • spacewalk-java-2.8.78.21-3.29.1
    • susemanager-sls-3.2.23-3.26.3
    • spacewalk-backend-libs-2.8.57.14-3.25.3
    • spacewalk-backend-package-push-server-2.8.57.14-3.25.3
    • drools-7.17.0-3.3.3
    • py26-compat-salt-2016.11.10-6.21.3
    • spacewalk-backend-tools-2.8.57.14-3.25.3
    • spacewalk-backend-applet-2.8.57.14-3.25.3
    • spacewalk-certs-tools-2.8.8.7-3.6.3
    • spacewalk-backend-config-files-common-2.8.57.14-3.25.3
    • spacewalk-backend-sql-oracle-2.8.57.14-3.25.3
    • susemanager-sync-data-3.2.14-3.20.3
    • susemanager-web-libs-2.8.7.15-3.24.3
    • apache-commons-lang3-3.4-3.3.3
    • spacewalk-backend-xmlrpc-2.8.57.14-3.25.3
    • kie-api-7.17.0-3.3.3
    • spacewalk-backend-sql-postgresql-2.8.57.14-3.25.3
    • cobbler-2.6.6-6.16.3
    • optaplanner-7.17.0-3.3.3
    • xstream-1.4.10-4.3.3
  • SUSE Manager Server 3.2 (ppc64le s390x x86_64)
    • smdba-1.6.4-0.3.9.3
    • reprepro-5.3.0-2.3.3
    • spacewalk-branding-2.8.5.15-3.19.3
    • susemanager-tools-3.2.17-3.22.4
    • susemanager-3.2.17-3.22.4

References: