SUSE-RU-2020:3462-1: moderate: Recommended update for pam and sudo

sle-updates at lists.suse.com sle-updates at lists.suse.com
Fri Nov 20 10:18:17 MST 2020


   SUSE Recommended Update: Recommended update for pam and sudo
______________________________________________________________________________

Announcement ID:    SUSE-RU-2020:3462-1
Rating:             moderate
References:         #1174593 #1177858 #1178727 
Affected Products:
                    SUSE Linux Enterprise Module for Development Tools 15-SP2
                    SUSE Linux Enterprise Module for Development Tools 15-SP1
                    SUSE Linux Enterprise Module for Basesystem 15-SP2
                    SUSE Linux Enterprise Module for Basesystem 15-SP1
______________________________________________________________________________

   An update that has three recommended fixes can now be
   installed.

Description:

   This update for pam and sudo fixes the following issue:

   pam:

   - pam_xauth: do not *free* a string which has been successfully passed to
     *putenv*. (bsc#1177858)
   - Initialize the local variable *daysleft* to avoid a misleading warning
     for password expire days. (bsc#1178727)
   - Run /usr/bin/xauth using the old user's and group's identifiers.
     (bsc#1174593)

   sudo:

   - Fix a problem with pam_xauth which checks effective and real uids to get
     the real identity of the user. (bsc#1174593)


Patch Instructions:

   To install this SUSE Recommended Update use the SUSE recommended installation methods
   like YaST online_update or "zypper patch".

   Alternatively you can run the command listed for your product:

   - SUSE Linux Enterprise Module for Development Tools 15-SP2:

      zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP2-2020-3462=1

   - SUSE Linux Enterprise Module for Development Tools 15-SP1:

      zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP1-2020-3462=1

   - SUSE Linux Enterprise Module for Basesystem 15-SP2:

      zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP2-2020-3462=1

   - SUSE Linux Enterprise Module for Basesystem 15-SP1:

      zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP1-2020-3462=1



Package List:

   - SUSE Linux Enterprise Module for Development Tools 15-SP2 (x86_64):

      pam-32bit-debuginfo-1.3.0-6.23.1
      pam-debugsource-1.3.0-6.23.1
      pam-devel-32bit-1.3.0-6.23.1

   - SUSE Linux Enterprise Module for Development Tools 15-SP1 (x86_64):

      pam-32bit-debuginfo-1.3.0-6.23.1
      pam-debugsource-1.3.0-6.23.1
      pam-devel-32bit-1.3.0-6.23.1

   - SUSE Linux Enterprise Module for Basesystem 15-SP2 (aarch64 ppc64le s390x x86_64):

      pam-1.3.0-6.23.1
      pam-debuginfo-1.3.0-6.23.1
      pam-debugsource-1.3.0-6.23.1
      pam-devel-1.3.0-6.23.1
      pam-extra-1.3.0-6.23.1
      pam-extra-debuginfo-1.3.0-6.23.1
      sudo-1.8.22-4.12.2
      sudo-debuginfo-1.8.22-4.12.2
      sudo-debugsource-1.8.22-4.12.2
      sudo-devel-1.8.22-4.12.2

   - SUSE Linux Enterprise Module for Basesystem 15-SP2 (noarch):

      pam-doc-1.3.0-6.23.1

   - SUSE Linux Enterprise Module for Basesystem 15-SP2 (x86_64):

      pam-32bit-1.3.0-6.23.1
      pam-32bit-debuginfo-1.3.0-6.23.1
      pam-extra-32bit-1.3.0-6.23.1
      pam-extra-32bit-debuginfo-1.3.0-6.23.1

   - SUSE Linux Enterprise Module for Basesystem 15-SP1 (aarch64 ppc64le s390x x86_64):

      pam-1.3.0-6.23.1
      pam-debuginfo-1.3.0-6.23.1
      pam-debugsource-1.3.0-6.23.1
      pam-devel-1.3.0-6.23.1
      pam-extra-1.3.0-6.23.1
      pam-extra-debuginfo-1.3.0-6.23.1
      sudo-1.8.22-4.12.2
      sudo-debuginfo-1.8.22-4.12.2
      sudo-debugsource-1.8.22-4.12.2
      sudo-devel-1.8.22-4.12.2

   - SUSE Linux Enterprise Module for Basesystem 15-SP1 (noarch):

      pam-doc-1.3.0-6.23.1

   - SUSE Linux Enterprise Module for Basesystem 15-SP1 (x86_64):

      pam-32bit-1.3.0-6.23.1
      pam-32bit-debuginfo-1.3.0-6.23.1
      pam-extra-32bit-1.3.0-6.23.1
      pam-extra-32bit-debuginfo-1.3.0-6.23.1


References:

   https://bugzilla.suse.com/1174593
   https://bugzilla.suse.com/1177858
   https://bugzilla.suse.com/1178727



More information about the sle-updates mailing list