[SUSE-SU-2024:0487-1] Security update for SUSE Manager Client Tools

Severity Moderate
Affected Packages 9
CVEs 8

Security update for SUSE Manager Client Tools

This update fixes the following issues:

golang-github-lusitaniae-apache_exporter:

  • Do not strip if SUSE Linux Enterprise 15 SP3
  • Exclude debug for Red Hat Enterprise Linux >= 8
  • Build with Go >= 1.20 when the OS is not Red Hat Enterprise Linux

mgr-daemon:

  • Version 4.3.8-1
    • Update translation strings

prometheus-postgres_exporter:

  • Remove duplicated call to systemd requirements
  • Do not build debug if Red Hat Enterprise Linux >= 8
  • Do not strip if SUSE Linux Enterprise 15 SP3
  • Build at least with with Go >= 1.18 on Red Hat Enterprise Linux
  • Build with Go >= 1.20 elsewhere

spacecmd:

  • Version 4.3.26-1
    • Update translation strings

spacewalk-client-tools:

  • Version 4.3.18-1
    • Update translation strings

uyuni-proxy-systemd-services:

  • Version 4.3.10-1
    • Update the image version
  • Version 4.3.9-1
    • Integrate the containerized proxy into the usual rel-eng workflow
ID
SUSE-SU-2024:0487-1
Severity
moderate
URL
https://www.suse.com/support/update/announcement/2024/suse-su-20240487-1/
Published
2024-02-15T13:36:26
(7 months ago)
Modified
2024-02-15T13:36:26
(7 months ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Source # ID Name URL
Suse SUSE ratings https://www.suse.com/support/security/rating/
Suse URL of this CSAF notice https://ftp.suse.com/pub/projects/security/csaf/suse-su-2024_0487-1.json
Suse URL for SUSE-SU-2024:0487-1 https://www.suse.com/support/update/announcement/2024/suse-su-20240487-1/
Suse E-Mail link for SUSE-SU-2024:0487-1 https://lists.suse.com/pipermail/sle-security-updates/2024-February/017931.html
Bugzilla SUSE Bug 1192154 https://bugzilla.suse.com/1192154
Bugzilla SUSE Bug 1192696 https://bugzilla.suse.com/1192696
Bugzilla SUSE Bug 1193492 https://bugzilla.suse.com/1193492
Bugzilla SUSE Bug 1193686 https://bugzilla.suse.com/1193686
Bugzilla SUSE Bug 1200480 https://bugzilla.suse.com/1200480
Bugzilla SUSE Bug 1204023 https://bugzilla.suse.com/1204023
Bugzilla SUSE Bug 1218843 https://bugzilla.suse.com/1218843
Bugzilla SUSE Bug 1218844 https://bugzilla.suse.com/1218844
CVE SUSE CVE CVE-2020-7753 page https://www.suse.com/security/cve/CVE-2020-7753/
CVE SUSE CVE CVE-2021-3807 page https://www.suse.com/security/cve/CVE-2021-3807/
CVE SUSE CVE CVE-2021-3918 page https://www.suse.com/security/cve/CVE-2021-3918/
CVE SUSE CVE CVE-2021-43138 page https://www.suse.com/security/cve/CVE-2021-43138/
CVE SUSE CVE CVE-2021-43798 page https://www.suse.com/security/cve/CVE-2021-43798/
CVE SUSE CVE CVE-2021-43815 page https://www.suse.com/security/cve/CVE-2021-43815/
CVE SUSE CVE CVE-2022-0155 page https://www.suse.com/security/cve/CVE-2022-0155/
CVE SUSE CVE CVE-2022-41715 page https://www.suse.com/security/cve/CVE-2022-41715/
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/spacecmd?arch=noarch&distro=opensuse-leap-15.5 suse spacecmd < 4.3.26-150000.3.113.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/prometheus-postgres_exporter?arch=x86_64&distro=opensuse-leap-15.5 suse prometheus-postgres_exporter < 0.10.1-150000.1.17.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/prometheus-postgres_exporter?arch=s390x&distro=opensuse-leap-15.5 suse prometheus-postgres_exporter < 0.10.1-150000.1.17.1 opensuse-leap-15.5 s390x
Affected pkg:rpm/suse/prometheus-postgres_exporter?arch=ppc64le&distro=opensuse-leap-15.5 suse prometheus-postgres_exporter < 0.10.1-150000.1.17.1 opensuse-leap-15.5 ppc64le
Affected pkg:rpm/suse/prometheus-postgres_exporter?arch=aarch64&distro=opensuse-leap-15.5 suse prometheus-postgres_exporter < 0.10.1-150000.1.17.1 opensuse-leap-15.5 aarch64
Affected pkg:rpm/suse/golang-github-lusitaniae-apache_exporter?arch=x86_64&distro=opensuse-leap-15.5 suse golang-github-lusitaniae-apache_exporter < 1.0.0-150000.1.20.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/golang-github-lusitaniae-apache_exporter?arch=s390x&distro=opensuse-leap-15.5 suse golang-github-lusitaniae-apache_exporter < 1.0.0-150000.1.20.1 opensuse-leap-15.5 s390x
Affected pkg:rpm/suse/golang-github-lusitaniae-apache_exporter?arch=ppc64le&distro=opensuse-leap-15.5 suse golang-github-lusitaniae-apache_exporter < 1.0.0-150000.1.20.1 opensuse-leap-15.5 ppc64le
Affected pkg:rpm/suse/golang-github-lusitaniae-apache_exporter?arch=aarch64&distro=opensuse-leap-15.5 suse golang-github-lusitaniae-apache_exporter < 1.0.0-150000.1.20.1 opensuse-leap-15.5 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...