SUSE Updates
2760Warning Date
Severity Level
Warning Number
Target Sector
3 November, 2020
● High
2020-2005
All
Description:
SUSE has released security updates to address a vulnerability in the following product:
- python
- SUSE Enterprise Storage 5
- SUSE Linux Enterprise Module for Basesystem 15-SP1
- SUSE Linux Enterprise Module for Basesystem 15-SP2
- SUSE Linux Enterprise Module for Desktop Applications 15-SP1
- SUSE Linux Enterprise Module for Desktop Applications 15-SP2
- SUSE Linux Enterprise Module for Python2 15-SP1
- SUSE Linux Enterprise Module for Python2 15-SP2
- SUSE Linux Enterprise Server 12-SP5
- SUSE Linux Enterprise Workstation Extension 12-SP5
Threats:
Attacker could exploit this vulnerability by doing the following:
- CRLF injection
Best practice and Recommendations:
The CERT team encourages users to review SUSE security advisory and apply the necessary updates: