SLES 15

SLES 15 — python3-python-gnupg — vulnerability — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — python3-python-gnupg — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 21 June 2020 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2019:0143-1 (see also SUSE bugzilla) Related CVEs: CVE-2019-6690 Upstream summary: python-gnupg 0.4.3 allows context-dependent attackers to trick gnupg to decrypt other ciphertext than intended. To perform the attack, the passphrase to gnupg […]

Read more
SLES 15 — python2-py — vulnerability — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — python2-py — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 17 June 2020 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-CU-2021:245-1 (see also SUSE bugzilla) Related CVEs: CVE-2020-29651 Upstream summary: A denial of service via regular expression in the py.path.svnwc component of py (aka python-py) through 1.9.0 could be used by attackers […]

Read more
SLES 15 — mutt — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — mutt — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 17 June 2020 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2018:2084-1 (see also SUSE bugzilla) Related CVEs: CVE-2018-14354 CVE-2018-14360 CVE-2018-14361 CVE-2018-14351 CVE-2018-14357 CVE-2018-14363 CVE-2020-14093 CVE-2020-14154  +12 more Upstream summary: An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They […]

Read more
How to Configure Multipath I/O on SLES 15 — step-by-step SUSE Linux Enterprise 15 tutorial on Progressive Robot

How to Configure Multipath I/O on SLES 15

Introduction This tutorial covers How to Configure Multipath I/O on SLES 15 on SLES 15. SLES 15 (SUSE Linux Enterprise Server 16) is SUSE’s enterprise-grade Linux distribution. It uses the zypper package manager, AppArmor for mandatory access control, and systemctl for service management. Prerequisites Ensure your SLES 15 system is up to date: zypper refresh […]

Read more
SLES 15 — libwsman3 — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — libwsman3 — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 13 June 2020 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2019:0654-1 (see also SUSE bugzilla) Related CVEs: CVE-2019-3816 CVE-2019-3833 Upstream summary: Openwsman, versions up to and including 2.6.9, are vulnerable to arbitrary file disclosure because the working directory of openwsmand daemon was […]

Read more
SLES 15 — php7-pear — vulnerability — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — php7-pear — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 12 June 2020 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2021:2926-1 (see also SUSE bugzilla) Related CVEs: CVE-2020-36193 Upstream summary: Tar.php in Archive_Tar through 1.4.11 allows write operations with Directory Traversal due to inadequate checking of symbolic links, a related issue to […]

Read more
How to Install Lighttpd on SLES 15 — step-by-step SUSE Linux Enterprise 15 tutorial on Progressive Robot

How to Install Lighttpd on SLES 15

Introduction This tutorial covers How to Install Lighttpd on SLES 15 on SLES 15. SLES 15 (SUSE Linux Enterprise Server 16) is SUSE’s enterprise-grade Linux distribution. It uses the zypper package manager, AppArmor for mandatory access control, and systemctl for service management. Prerequisites Ensure your SLES 15 system is up to date: zypper refresh && […]

Read more
SLES 15 — oddjob — vulnerability — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — oddjob — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 10 June 2020 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE security advisory (see also SUSE bugzilla) Related CVEs: CVE-2020-10737 Upstream summary: A race condition was found in the mkhomedir tool shipped with the oddjob package in versions before 0.34.5 and 0.34.6 wherein, during […]

Read more
SLES 15 — libtomcrypt0 — vulnerability — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — libtomcrypt0 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 9 June 2020 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2019:2808-1 (see also SUSE bugzilla) Related CVEs: CVE-2019-17362 Upstream summary: In LibTomCrypt through 1.18.2, the der_decode_utf8_string function (in der_decode_utf8_string.c) does not properly detect certain invalid UTF-8 sequences. This allows context-dependent attackers to […]

Read more
How to Monitor System Resources on SLES 15 — step-by-step SUSE Linux Enterprise 15 tutorial on Progressive Robot

How to Monitor System Resources on SLES 15

Introduction This tutorial covers How to Monitor System Resources on SLES 15 on SLES 15. SLES 15 (SUSE Linux Enterprise Server 16) is SUSE’s enterprise-grade Linux distribution. It uses the zypper package manager, AppArmor for mandatory access control, and systemctl for service management. Prerequisites Ensure your SLES 15 system is up to date: zypper refresh […]

Read more
CHAT