SUSE Updates
2816Warning Date
Severity Level
Warning Number
Target Sector
25 August, 2020
● High
2020-1675
All
Description:
SUSE has released security updates to address multiple vulnerabilities in the following products:
- gettext-runtime
- SUSE Linux Enterprise Module for Basesystem 15-SP2
- SUSE Linux Enterprise Module for Basesystem 15-SP1
- squid3
- SUSE Linux Enterprise Server 11-SP4-LTSS
- SUSE Linux Enterprise Point of Sale 11-SP3
- SUSE Linux Enterprise Debuginfo 11-SP4
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Denial of service (DoS).
- Cross-site scripting (XSS) attack.
- Cross-site request forgery (CSRF).
- Buffer overflow.
- Remote code execution.
Best practice and Recommendations:
The CERT team encourages users to review SUSE security advisory and apply the necessary updates: