SLES 12

SLES 12 — python-py — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — python-py — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 21 March 2022 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-CU-2023:338-1 (see also SUSE bugzilla) Related CVEs: CVE-2022-42969 CVE-2020-29651 Upstream summary: The py library through 1.11.0 for Python allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via […]

Read more
SLES 12 — caribou — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — caribou — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 18 March 2022 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2021:1943-1 (see also SUSE bugzilla) Related CVEs: CVE-2021-3567 Upstream summary: A flaw was found in Caribou due to a regression of CVE-2020-25712 fix. An attacker could use this flaw to bypass screen-locking […]

Read more
SLES 12 — telnet — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — telnet — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 17 March 2022 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2022:3471-1 (see also SUSE bugzilla) Related CVEs: CVE-2022-39028 Upstream summary: telnetd in GNU Inetutils through 2.3, MIT krb5-appl through 1.0.3, and derivative works has a NULL pointer dereference via 0xff 0xf7 or […]

Read more
SLES 12 — python-paramiko — multiple vulnerabilities (4 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — python-paramiko — multiple vulnerabilities (4 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 15 March 2022 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2019:0174-1 (see also SUSE bugzilla) Related CVEs: CVE-2018-1000805 CVE-2018-7750 CVE-2022-24302 CVE-2013-7459 Upstream summary: Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that […]

Read more
How to Configure AppArmor Enforcement on SLES 12 — step-by-step SUSE Linux Enterprise 12 tutorial on Progressive Robot

How to Configure AppArmor Enforcement on SLES 12

Introduction This tutorial covers How to Configure AppArmor Enforcement on SLES 12 on SLES 12. SLES 12 (SUSE Linux Enterprise Server 16) is SUSE’s enterprise-grade Linux distribution. It uses the zypper package manager, AppArmor for mandatory access control, and systemctl for service management. Step 1 — Check AppArmor Status systemctl status apparmor aa-status Step 2 […]

Read more
SLES 12 — colord — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — colord — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 10 March 2022 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2022:3496-1 (see also SUSE bugzilla) Related CVEs: CVE-2021-42523 CVE-2011-4349 Upstream summary: There are two Information Disclosure vulnerabilities in colord, and they lie in colord/src/cd-device-db.c and colord/src/cd-profile-db.c separately. They exist because the 'err_msg' […]

Read more
How to Set Up a Flask Application on SLES 12 — step-by-step SUSE Linux Enterprise 12 tutorial on Progressive Robot

How to Set Up a Flask Application on SLES 12

Introduction This tutorial covers How to Set Up a Flask Application on SLES 12 on SLES 12. SLES 12 (SUSE Linux Enterprise Server 16) is SUSE’s enterprise-grade Linux distribution. It uses the zypper package manager, AppArmor for mandatory access control, and systemctl for service management. Prerequisites Ensure your SLES 12 system is up to date: […]

Read more
How to Install Nginx on SLES 12 — step-by-step SUSE Linux Enterprise 12 tutorial on Progressive Robot

How to Install Nginx on SLES 12

Introduction This tutorial covers How to Install Nginx on SLES 12 on SLES 12. SLES 12 (SUSE Linux Enterprise Server 16) is SUSE’s enterprise-grade Linux distribution. It uses the zypper package manager, AppArmor for mandatory access control, and systemctl for service management. Step 1 — Install Nginx zypper install -y nginx Step 2 — Enable […]

Read more
SLES 12 — u-boot-rpi3 — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — u-boot-rpi3 — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 8 March 2022 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2022:2052-1 (see also SUSE bugzilla) Related CVEs: CVE-2022-30790 CVE-2022-34835 CVE-2022-30552 CVE-2020-8432 CVE-2022-30767 CVE-2019-13103 CVE-2019-14192 CVE-2019-14193  +12 more Upstream summary: Das U-Boot 2022.01 has a Buffer Overflow, a different issue than CVE-2022-30552. Table […]

Read more
SLES 12 — tk — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — tk — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 7 March 2022 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-FU-2022:0484-1 (see also SUSE bugzilla) Related CVEs: CVE-2021-35331 Upstream summary: In Tcl 8.6.11, a format string vulnerability in nmakehlp.c might allow code execution via a crafted file. NOTE: multiple third parties dispute […]

Read more
CHAT