SUSE-SU-2020:0540-1: moderate: Security Beta update for Salt

sle-updates at lists.suse.com sle-updates at lists.suse.com
Fri Feb 28 10:13:39 MST 2020


   SUSE Security Update: Security Beta update for Salt
______________________________________________________________________________

Announcement ID:    SUSE-SU-2020:0540-1
Rating:             moderate
References:         #1163981 
Cross-References:   CVE-2019-17361
Affected Products:
                    SUSE Manager Tools 15-BETA
______________________________________________________________________________

   An update that fixes one vulnerability is now available.

Description:


   This update fixes the following issues:

   salt:

   - Fix 'os_family' grain for Astra Linux Common Edition
   - Update to Salt version 2019.2.3 (CVE-2019-17361) (bsc#1163981) See
     release notes:
     https://docs.saltstack.com/en/latest/topics/releases/2019.2.3.html
   - Enable passing grains to start event based on 'start_event_grains'
     configuration parameter


Patch Instructions:

   To install this SUSE Security Update use the SUSE recommended installation methods
   like YaST online_update or "zypper patch".

   Alternatively you can run the command listed for your product:

   - SUSE Manager Tools 15-BETA:

      zypper in -t patch SUSE-SLE-Manager-Tools-15-2020-540=1



Package List:

   - SUSE Manager Tools 15-BETA (aarch64 ppc64le s390x x86_64):

      python2-salt-2019.2.3-8.9.1
      python3-salt-2019.2.3-8.9.1
      salt-2019.2.3-8.9.1
      salt-api-2019.2.3-8.9.1
      salt-cloud-2019.2.3-8.9.1
      salt-doc-2019.2.3-8.9.1
      salt-master-2019.2.3-8.9.1
      salt-minion-2019.2.3-8.9.1
      salt-proxy-2019.2.3-8.9.1
      salt-ssh-2019.2.3-8.9.1
      salt-standalone-formulas-configuration-2019.2.3-8.9.1
      salt-syndic-2019.2.3-8.9.1

   - SUSE Manager Tools 15-BETA (noarch):

      salt-bash-completion-2019.2.3-8.9.1
      salt-fish-completion-2019.2.3-8.9.1
      salt-zsh-completion-2019.2.3-8.9.1


References:

   https://www.suse.com/security/cve/CVE-2019-17361.html
   https://bugzilla.suse.com/1163981



More information about the sle-updates mailing list