SUSE Updates
2650Warning Date
Severity Level
Warning Number
Target Sector
23 April, 2020
● High
2020-1172
All
Description:
SUSE has released security updates to address vulnerabilities in the following products:
- pacemaker
- SUSE Linux Enterprise High Availability 12-SP2
- ardana-ansible, ardana-barbican, ardana-db, ardana-monasca, ardana-mq, ardana-neutron, ardana-octavia, ardana-tempest, crowbar-core, crowbar-ha, crowbar-openstack, documentation-suse-openstack-cloud, memcached, openstack-manila, openstack-neutron, openstack-nova, pdns, python-amqp, rubygem-puma, zookeeper
- SUSE OpenStack Cloud Crowbar 8
- SUSE OpenStack Cloud 8
- HPE Helion Openstack 8
- ovmf
- SUSE Linux Enterprise Server 12-SP5
- SUSE Linux Enterprise Server 12-SP4
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Unauthorized disclosure of information
- Authentication bypass
- Denial of Service (DoS)
Best practice and Recommendations:
The CERT team encourages users to review SUSE security advisory and apply the necessary updates: