[SUSE-SU-2024:1838-1] Security update for warewulf4
Severity
Important
CVEs
1
Security update for warewulf4
This update for warewulf4 fixes the following issues:
fixed wwctl configure --all doesn't configure ssh (bsc#1225402)
update to 4.5.2 with following changes:
- Reorder dnsmasq config to put iPXE last
- Update go-digest dependency to fix CVE-2024-3727: digest values not always validated (bsc#1224124)
updated to version 4.5.1 with following changes
- wwctl [profile|node] list -a handles now slices correclty
- Fix a locking issue with concurrent read/writes for node status
Remove API package as use of this wasn't documented
use tftp.socket for activation (bsc#1216994)
- ID
- SUSE-SU-2024:1838-1
- Severity
- important
- URL
- https://www.suse.com/support/update/announcement/2024/suse-su-20241838-1/
- Published
-
2024-05-29T12:28:12
(3 months ago) - Modified
-
2024-05-29T12:28:12
(3 months ago) - Rights
- Copyright 2024 SUSE LLC. All rights reserved.
- Other Advisories
-
- ALPINE:CVE-2024-3727
- ALSA-2024:5258
- ELSA-2024-5258
- FEDORA-2024-1bae1999ba
- FEDORA-2024-20393c122f
- FEDORA-2024-2f8a62d6d6
- FEDORA-2024-500c653b4c
- FEDORA-2024-77a0ab280f
- FEDORA-2024-c56e6ff1b5
- FEDORA-2024-c95d3199c5
- FEDORA-2024-e383f723a9
- FEDORA-2024-f4a65623e7
- GO-2024-2842
- RHSA-2024:5258
- SUSE-SU-2024:1987-1
- SUSE-SU-2024:1987-2
- SUSE-SU-2024:1988-1
- SUSE-SU-2024:1989-1
- SUSE-SU-2024:2031-1
- SUSE-SU-2024:2050-1
- SUSE-SU-2024:2050-2
- SUSE-SU-2024:2090-1
- SUSE-SU-2024:2383-1
- SUSE-SU-2024:2548-1
- SUSE-SU-2024:3120-1
- SUSE-SU-2024:3151-1
- SUSE-SU-2024:3186-1
Source | # ID | Name | URL |
---|---|---|---|
Suse | SUSE ratings | https://www.suse.com/support/security/rating/ | |
Suse | URL of this CSAF notice | https://ftp.suse.com/pub/projects/security/csaf/suse-su-2024_1838-1.json | |
Suse | URL for SUSE-SU-2024:1838-1 | https://www.suse.com/support/update/announcement/2024/suse-su-20241838-1/ | |
Suse | E-Mail link for SUSE-SU-2024:1838-1 | https://lists.suse.com/pipermail/sle-updates/2024-May/035406.html | |
Bugzilla | SUSE Bug 1216994 | https://bugzilla.suse.com/1216994 | |
Bugzilla | SUSE Bug 1224124 | https://bugzilla.suse.com/1224124 | |
Bugzilla | SUSE Bug 1225402 | https://bugzilla.suse.com/1225402 | |
CVE | SUSE CVE CVE-2024-3727 page | https://www.suse.com/security/cve/CVE-2024-3727/ |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |