SUSE Security Update: Security update for Containment-Studio
______________________________________________________________________________

Announcement ID:    SUSE-SU-2014:1287-1
Rating:             important
References:         #898604 
Cross-References:   CVE-2014-6271 CVE-2014-6277 CVE-2014-6278
                    CVE-2014-7169
Affected Products:
                    SUSE Studio Onsite 1.3
______________________________________________________________________________

   An update that fixes four vulnerabilities is now available.

Description:


   SUSE Studio uses a pre-built containment RPM for testing purposes.

   This update contains a rebuild with current security fixes like e.g. bash
   shellshock fixes included.

   Security Issues:

       * CVE-2014-6271
         
       * CVE-2014-7169
         
       * CVE-2014-6277
         
       * CVE-2014-6278
         


Patch Instructions:

   To install this SUSE Security Update use YaST online_update.
   Alternatively you can run the command listed for your product:

   - SUSE Studio Onsite 1.3:

      zypper in -t patch slestso13-Containment-201410-9833

   To bring your system up-to-date, use "zypper patch".


Package List:

   - SUSE Studio Onsite 1.3 (x86_64):

      Containment-Studio-SLE11_SP3-5.04.108-20141006122525

   - SUSE Studio Onsite 1.3 (noarch):

      Containment-Studio-SLE11_SP1-4.85.108-20141006120850


References:

   https://www.suse.com/security/cve/CVE-2014-6271.html
   https://www.suse.com/security/cve/CVE-2014-6277.html
   https://www.suse.com/security/cve/CVE-2014-6278.html
   https://www.suse.com/security/cve/CVE-2014-7169.html
   https://bugzilla.suse.com/show_bug.cgi?id=898604
   https://scc.suse.com:443/patches/

SuSE: 2014:1287-1: important: Containment-Studio

October 14, 2014
An update that fixes four vulnerabilities is now available

Summary

SUSE Studio uses a pre-built containment RPM for testing purposes. This update contains a rebuild with current security fixes like e.g. bash shellshock fixes included. Security Issues: * CVE-2014-6271 * CVE-2014-7169 * CVE-2014-6277 * CVE-2014-6278 Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Studio Onsite 1.3: zypper in -t patch slestso13-Containment-201410-9833 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Studio Onsite 1.3 (x86_64): Containment-Studio-SLE11_SP3-5.04.108-20141006122525 - SUSE Studio Onsite 1.3 (noarch): Containment-Studio-SLE11_SP1-4.85.108-20141006120850

References

#898604

Cross- CVE-2014-6271 CVE-2014-6277 CVE-2014-6278

CVE-2014-7169

Affected Products:

SUSE Studio Onsite 1.3

https://www.suse.com/security/cve/CVE-2014-6271.html

https://www.suse.com/security/cve/CVE-2014-6277.html

https://www.suse.com/security/cve/CVE-2014-6278.html

https://www.suse.com/security/cve/CVE-2014-7169.html

https://bugzilla.suse.com/show_bug.cgi?id=898604

https://scc.suse.com:443/patches/

Severity
Announcement ID: SUSE-SU-2014:1287-1
Rating: important

Related News