[SUSE-SU-2023:1859-1] Security update for golang-github-prometheus-prometheus

Severity Important
Affected Packages 8
CVEs 1

Security update for golang-github-prometheus-prometheus

This update for golang-github-prometheus-prometheus fixes the following issues:

  • CVE-2022-46146: Fixed authentication bypass via cache poisoning in Prometheus Exporter Toolkit (bsc#1208049).
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/golang-github-prometheus-prometheus?arch=x86_64&distro=opensuse-leap-15.4 suse golang-github-prometheus-prometheus < 2.32.1-150100.4.12.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/golang-github-prometheus-prometheus?arch=s390x&distro=opensuse-leap-15.4 suse golang-github-prometheus-prometheus < 2.32.1-150100.4.12.1 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/golang-github-prometheus-prometheus?arch=ppc64le&distro=opensuse-leap-15.4 suse golang-github-prometheus-prometheus < 2.32.1-150100.4.12.1 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/golang-github-prometheus-prometheus?arch=aarch64&distro=opensuse-leap-15.4 suse golang-github-prometheus-prometheus < 2.32.1-150100.4.12.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/firewalld-prometheus-config?arch=x86_64&distro=opensuse-leap-15.4 suse firewalld-prometheus-config < 0.1-150100.4.12.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/firewalld-prometheus-config?arch=s390x&distro=opensuse-leap-15.4 suse firewalld-prometheus-config < 0.1-150100.4.12.1 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/firewalld-prometheus-config?arch=ppc64le&distro=opensuse-leap-15.4 suse firewalld-prometheus-config < 0.1-150100.4.12.1 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/firewalld-prometheus-config?arch=aarch64&distro=opensuse-leap-15.4 suse firewalld-prometheus-config < 0.1-150100.4.12.1 opensuse-leap-15.4 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...