SUSE-SU-2020:14348-1: important: Security update for resource-agents

sle-security-updates at lists.suse.com sle-security-updates at lists.suse.com
Fri Apr 24 13:18:52 MDT 2020


   SUSE Security Update: Security update for resource-agents
______________________________________________________________________________

Announcement ID:    SUSE-SU-2020:14348-1
Rating:             important
References:         #1021689 #1146687 #1146690 #1146784 #1146785 
                    #1146787 
Affected Products:
                    SUSE Linux Enterprise High Availability Extension 11-SP4
______________________________________________________________________________

   An update that contains security fixes can now be installed.

Description:

   This update for resource-agents fixes the following issues:

   - Fixed multiple vulnerabilities related to unsafe tempfile usage.
     (bsc#1146690 bsc#1146784 bsc#1146785 bsc#1146787)
   - Fixed issues where the ocfmon user was created with a default password
     (bsc#1021689, bsc#1146687).


Patch Instructions:

   To install this SUSE Security Update use the SUSE recommended installation methods
   like YaST online_update or "zypper patch".

   Alternatively you can run the command listed for your product:

   - SUSE Linux Enterprise High Availability Extension 11-SP4:

      zypper in -t patch slehasp4-resource-agents-14348=1



Package List:

   - SUSE Linux Enterprise High Availability Extension 11-SP4 (i586 ppc64 s390x x86_64):

      ldirectord-3.9.5-50.19.1
      nagios-plugins-metadata-3.9.5-50.19.1
      resource-agents-3.9.5-50.19.1


References:

   https://bugzilla.suse.com/1021689
   https://bugzilla.suse.com/1146687
   https://bugzilla.suse.com/1146690
   https://bugzilla.suse.com/1146784
   https://bugzilla.suse.com/1146785
   https://bugzilla.suse.com/1146787



More information about the sle-security-updates mailing list