SUSE-SU-2014:1287-1: important: Security update for Containment-Studio

sle-security-updates at lists.suse.com sle-security-updates at lists.suse.com
Mon Oct 13 17:04:57 MDT 2014


   SUSE Security Update: Security update for Containment-Studio
______________________________________________________________________________

Announcement ID:    SUSE-SU-2014:1287-1
Rating:             important
References:         #898604 
Cross-References:   CVE-2014-6271 CVE-2014-6277 CVE-2014-6278
                    CVE-2014-7169
Affected Products:
                    SUSE Studio Onsite 1.3
______________________________________________________________________________

   An update that fixes four vulnerabilities is now available.

Description:


   SUSE Studio uses a pre-built containment RPM for testing purposes.

   This update contains a rebuild with current security fixes like e.g. bash
   shellshock fixes included.

   Security Issues:

       * CVE-2014-6271
         <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6271>
       * CVE-2014-7169
         <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7169>
       * CVE-2014-6277
         <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6277>
       * CVE-2014-6278
         <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6278>


Patch Instructions:

   To install this SUSE Security Update use YaST online_update.
   Alternatively you can run the command listed for your product:

   - SUSE Studio Onsite 1.3:

      zypper in -t patch slestso13-Containment-201410-9833

   To bring your system up-to-date, use "zypper patch".


Package List:

   - SUSE Studio Onsite 1.3 (x86_64):

      Containment-Studio-SLE11_SP3-5.04.108-20141006122525

   - SUSE Studio Onsite 1.3 (noarch):

      Containment-Studio-SLE11_SP1-4.85.108-20141006120850


References:

   http://support.novell.com/security/cve/CVE-2014-6271.html
   http://support.novell.com/security/cve/CVE-2014-6277.html
   http://support.novell.com/security/cve/CVE-2014-6278.html
   http://support.novell.com/security/cve/CVE-2014-7169.html
   https://bugzilla.suse.com/show_bug.cgi?id=898604
   http://download.suse.com/patch/finder/?keywords=1867dc0f69170864bf05a7d68cec1234



More information about the sle-security-updates mailing list