SUSE Security Update: Security update for resource-agents
______________________________________________________________________________

Announcement ID:    SUSE-SU-2020:14348-1
Rating:             important
References:         #1021689 #1146687 #1146690 #1146784 #1146785 
                    #1146787 
Affected Products:
                    SUSE Linux Enterprise High Availability Extension 11-SP4
______________________________________________________________________________

   An update that contains security fixes can now be installed.

Description:

   This update for resource-agents fixes the following issues:

   - Fixed multiple vulnerabilities related to unsafe tempfile usage.
     (bsc#1146690 bsc#1146784 bsc#1146785 bsc#1146787)
   - Fixed issues where the ocfmon user was created with a default password
     (bsc#1021689, bsc#1146687).


Patch Instructions:

   To install this SUSE Security Update use the SUSE recommended installation methods
   like YaST online_update or "zypper patch".

   Alternatively you can run the command listed for your product:

   - SUSE Linux Enterprise High Availability Extension 11-SP4:

      zypper in -t patch slehasp4-resource-agents-14348=1



Package List:

   - SUSE Linux Enterprise High Availability Extension 11-SP4 (i586 ppc64 s390x x86_64):

      ldirectord-3.9.5-50.19.1
      nagios-plugins-metadata-3.9.5-50.19.1
      resource-agents-3.9.5-50.19.1


References:

   https://bugzilla.suse.com/1021689
   https://bugzilla.suse.com/1146687
   https://bugzilla.suse.com/1146690
   https://bugzilla.suse.com/1146784
   https://bugzilla.suse.com/1146785
   https://bugzilla.suse.com/1146787

_______________________________________________
sle-security-updates mailing list
sle-security-updates@lists.suse.com
http://lists.suse.com/mailman/listinfo/sle-security-updates

SUSE: 2020:14348-1 important: resource-agents

April 24, 2020
An update that contains security fixes can now be installed

Summary

This update for resource-agents fixes the following issues: - Fixed multiple vulnerabilities related to unsafe tempfile usage. (bsc#1146690 bsc#1146784 bsc#1146785 bsc#1146787) - Fixed issues where the ocfmon user was created with a default password (bsc#1021689, bsc#1146687). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise High Availability Extension 11-SP4: zypper in -t patch slehasp4-resource-agents-14348=1 Package List: - SUSE Linux Enterprise High Availability Extension 11-SP4 (i586 ppc64 s390x x86_64): ldirectord-3.9.5-50.19.1 nagios-plugins-metadata-3.9.5-50.19.1 resource-agents-3.9.5-50.19.1

References

#1021689 #1146687 #1146690 #1146784 #1146785

#1146787

Affected Products:

SUSE Linux Enterprise High Availability Extension 11-SP4

https://bugzilla.suse.com/1021689

https://bugzilla.suse.com/1146687

https://bugzilla.suse.com/1146690

https://bugzilla.suse.com/1146784

https://bugzilla.suse.com/1146785

https://bugzilla.suse.com/1146787

Severity
Announcement ID: SUSE-SU-2020:14348-1
Rating: important

Related News