Bug 1178168 (CVE-2020-25659) - VUL-0: CVE-2020-25659: python-cryptography: bleichenbacher timing oracle attack against RSA decryption
Summary: VUL-0: CVE-2020-25659: python-cryptography: bleichenbacher timing oracle atta...
Status: RESOLVED FIXED
Alias: CVE-2020-25659
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other Other
: P3 - Medium : Normal
Target Milestone: ---
Assignee: Security Team bot
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/270230/
Whiteboard: CVSSv3.1:SUSE:CVE-2020-25659:5.9:(AV:...
Keywords:
Depends on:
Blocks:
 
Reported: 2020-10-27 09:16 UTC by Alexandros Toptsoglou
Modified: 2024-06-18 17:09 UTC (History)
12 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Alexandros Toptsoglou 2020-10-27 09:16:04 UTC
CVE-2020-25659

python-cryptography is vulnerable to Bleichenbacher timing attacks in the RSA decryption API, via timed processing of valid PKCS#1 v1.5 ciphertext.

References:
https://bugzilla.redhat.com/show_bug.cgi?id=1889988
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2020-25659
https://access.redhat.com/security/cve/CVE-2020-25659
Comment 1 Alexandros Toptsoglou 2020-10-27 09:19:21 UTC
Tracked as affected SLE12-SP2, Cloud 8 and 9, SLE15 and SLE15-SP2. The fix can be found at [1]. 


[1] https://github.com/pyca/cryptography/commit/58494b41d6ecb0f56b7c5f05d5f5e3ca0320d494
Comment 6 Swamp Workflow Management 2020-12-02 14:19:49 UTC
SUSE-SU-2020:3592-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1178168
CVE References: CVE-2020-25659
JIRA References: 
Sources used:
SUSE Linux Enterprise Module for Python2 15-SP2 (src):    python-cryptography-2.8-3.3.1
SUSE Linux Enterprise Module for Basesystem 15-SP2 (src):    python-cryptography-2.8-3.3.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 7 Swamp Workflow Management 2020-12-04 20:19:53 UTC
SUSE-SU-2020:3629-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1178168
CVE References: CVE-2020-25659
JIRA References: 
Sources used:
SUSE OpenStack Cloud Crowbar 9 (src):    python-cryptography-2.1.4-7.31.1
SUSE OpenStack Cloud Crowbar 8 (src):    python-cryptography-2.1.4-7.31.1
SUSE OpenStack Cloud 9 (src):    python-cryptography-2.1.4-7.31.1
SUSE OpenStack Cloud 8 (src):    python-cryptography-2.1.4-7.31.1
SUSE OpenStack Cloud 7 (src):    python-cryptography-2.1.4-7.31.1
SUSE Linux Enterprise Server for SAP 12-SP4 (src):    python-cryptography-2.1.4-7.31.1
SUSE Linux Enterprise Server for SAP 12-SP3 (src):    python-cryptography-2.1.4-7.31.1
SUSE Linux Enterprise Server for SAP 12-SP2 (src):    python-cryptography-2.1.4-7.31.1
SUSE Linux Enterprise Server 12-SP5 (src):    python-cryptography-2.1.4-7.31.1
SUSE Linux Enterprise Server 12-SP4-LTSS (src):    python-cryptography-2.1.4-7.31.1
SUSE Linux Enterprise Server 12-SP3-LTSS (src):    python-cryptography-2.1.4-7.31.1
SUSE Linux Enterprise Server 12-SP3-BCL (src):    python-cryptography-2.1.4-7.31.1
SUSE Linux Enterprise Server 12-SP2-LTSS (src):    python-cryptography-2.1.4-7.31.1
SUSE Linux Enterprise Server 12-SP2-BCL (src):    python-cryptography-2.1.4-7.31.1
SUSE Enterprise Storage 5 (src):    python-cryptography-2.1.4-7.31.1
HPE Helion Openstack 8 (src):    python-cryptography-2.1.4-7.31.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 8 Matej Cepl 2020-12-05 09:03:59 UTC
From private correspondence with the original reporter of the bug, he DOESN’T consider this patch to be solution of the problem.
Comment 9 Swamp Workflow Management 2020-12-06 14:14:51 UTC
openSUSE-SU-2020:2173-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1178168
CVE References: CVE-2020-25659
JIRA References: 
Sources used:
openSUSE Leap 15.2 (src):    python-cryptography-2.8-lp152.2.3.1
Comment 10 Andreas Taschner 2020-12-07 13:14:49 UTC
(In reply to Matej Cepl from comment #8)
> From private correspondence with the original reporter of the bug, he
> DOESN’T consider this patch to be solution of the problem.

I see.
Will we correcting https://www.suse.com/security/cve/CVE-2020-25659/ and re-issue the right fix ?
Comment 16 Swamp Workflow Management 2021-03-30 16:18:26 UTC
SUSE-RU-2021:0985-1: An update that solves two vulnerabilities, contains two features and has 6 fixes is now available.

Category: recommended (moderate)
Bug References: 1125671,1140565,1154393,1174514,1175289,1176784,1176785,1178168
CVE References: CVE-2020-14343,CVE-2020-25659
JIRA References: ECO-1257,ECO-3105
Sources used:
SUSE MicroOS 5.0 (src):    python-PyYAML-5.3.1-6.10.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2
SUSE Manager Server 4.0 (src):    python-Cython-0.29.1-7.3.1, python-PyJWT-1.7.1-6.4.1, python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-cryptography-2.8-7.4.1, python-ecdsa-0.13.3-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-six-1.14.0-7.3.1, python-websocket-client-0.57.0-6.4.1
SUSE Manager Retail Branch Server 4.0 (src):    python-Cython-0.29.1-7.3.1, python-PyJWT-1.7.1-6.4.1, python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-cryptography-2.8-7.4.1, python-ecdsa-0.13.3-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-six-1.14.0-7.3.1, python-websocket-client-0.57.0-6.4.1
SUSE Manager Proxy 4.0 (src):    python-Cython-0.29.1-7.3.1, python-PyJWT-1.7.1-6.4.1, python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-cryptography-2.8-7.4.1, python-ecdsa-0.13.3-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-six-1.14.0-7.3.1, python-websocket-client-0.57.0-6.4.1
SUSE Linux Enterprise Server for SAP 15-SP1 (src):    python-Cython-0.29.1-7.3.1, python-PyJWT-1.7.1-6.4.1, python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-cryptography-2.8-7.4.1, python-ecdsa-0.13.3-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-six-1.14.0-7.3.1, python-websocket-client-0.57.0-6.4.1
SUSE Linux Enterprise Server 15-SP1-LTSS (src):    python-Cython-0.29.1-7.3.1, python-PyJWT-1.7.1-6.4.1, python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-cryptography-2.8-7.4.1, python-ecdsa-0.13.3-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-six-1.14.0-7.3.1, python-websocket-client-0.57.0-6.4.1
SUSE Linux Enterprise Server 15-SP1-BCL (src):    python-Cython-0.29.1-7.3.1, python-PyJWT-1.7.1-6.4.1, python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-cryptography-2.8-7.4.1, python-ecdsa-0.13.3-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-six-1.14.0-7.3.1, python-websocket-client-0.57.0-6.4.1
SUSE Linux Enterprise Module for Python2 15-SP2 (src):    python-PyYAML-5.3.1-6.10.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2
SUSE Linux Enterprise Module for Public Cloud 15-SP2 (src):    azure-cli-2.14.2-6.4.1, azure-cli-command-modules-nspkg-2.0.3-6.4.1, azure-cli-core-2.14.2-6.7.1, azure-cli-nspkg-3.0.4-6.4.1, azure-cli-telemetry-1.0.6-3.4.1, azure-cli-test-2.14.2-6.4.1, python-Fabric-2.5.0-3.3.1, python-PyJWT-1.7.1-6.4.1, python-adal-1.2.4-7.4.1, python-aiohttp-3.4.4-3.3.3, python-aiohttp-theme-0.1.4-3.3.1, python-antlr4-python3-runtime-4.8-3.3.1, python-applicationinsights-0.11.9-6.4.1, python-async_generator-1.9-3.3.1, python-async_timeout-3.0.0-3.3.1, python-azure-ai-anomalydetector-3.0.0b2-3.3.1, python-azure-ai-metricsadvisor-1.0.0b1-3.3.1, python-azure-ai-nspkg-1.0.0-3.3.1, python-azure-ai-textanalytics-5.0.0-3.3.1, python-azure-appconfiguration-1.1.1-3.3.1, python-azure-applicationinsights-0.1.0-3.4.1, python-azure-batch-9.0.0-7.4.1, python-azure-cognitiveservices-anomalydetector-0.3.0-3.3.1, python-azure-cognitiveservices-formrecognizer-0.1.1-3.3.1, python-azure-cognitiveservices-inkrecognizer-1.0.0b1-3.3.1, python-azure-cognitiveservices-knowledge-nspkg-3.0.0-3.3.1, python-azure-cognitiveservices-knowledge-qnamaker-0.2.0-3.3.1, python-azure-cognitiveservices-language-luis-0.7.0-3.4.1, python-azure-cognitiveservices-language-nspkg-3.0.1-3.4.1, python-azure-cognitiveservices-language-spellcheck-2.0.0-3.4.1, python-azure-cognitiveservices-language-textanalytics-0.2.0-3.4.1, python-azure-cognitiveservices-nspkg-3.0.1-3.4.1, python-azure-cognitiveservices-personalizer-0.1.0-3.3.1, python-azure-cognitiveservices-search-autosuggest-0.2.0-3.4.1, python-azure-cognitiveservices-search-customimagesearch-0.2.0-3.3.1, python-azure-cognitiveservices-search-customsearch-0.3.0-3.4.1, python-azure-cognitiveservices-search-entitysearch-2.0.0-3.4.1, python-azure-cognitiveservices-search-imagesearch-2.0.0-3.4.1, python-azure-cognitiveservices-search-newssearch-2.0.0-3.4.1, python-azure-cognitiveservices-search-nspkg-3.0.1-3.4.1, python-azure-cognitiveservices-search-videosearch-2.0.0-3.4.1, python-azure-cognitiveservices-search-visualsearch-0.2.0-3.4.1, python-azure-cognitiveservices-search-websearch-2.0.0-3.4.1, python-azure-cognitiveservices-vision-computervision-0.7.0-3.4.1, python-azure-cognitiveservices-vision-contentmoderator-1.0.0-3.4.1, python-azure-cognitiveservices-vision-customvision-3.0.0-3.4.1, python-azure-cognitiveservices-vision-face-0.4.1-3.3.1, python-azure-cognitiveservices-vision-nspkg-3.0.1-3.4.1, python-azure-common-1.1.25-6.4.1, python-azure-communication-administration-1.0.0b2-3.3.1, python-azure-communication-chat-1.0.0b2-3.3.1, python-azure-communication-nspkg-0.0.0b1-3.3.1, python-azure-communication-sms-1.0.0b3-3.3.1, python-azure-core-1.9.0-3.3.1, python-azure-cosmos-4.2.0-3.3.1, python-azure-data-nspkg-1.0.0-3.3.1, python-azure-data-tables-12.0.0b2-3.3.1, python-azure-datalake-store-0.0.51-6.4.1, python-azure-devops-6.0.0b4-3.3.1, python-azure-eventgrid-1.3.0-3.4.1, python-azure-eventhub-5.2.0-3.3.1, python-azure-eventhub-checkpointstoreblob-1.1.1-3.3.1, python-azure-eventhub-checkpointstoreblob-aio-1.1.1-3.3.1, python-azure-functions-devops-build-0.0.22-3.3.1, python-azure-graphrbac-0.61.1-6.4.1, python-azure-identity-1.5.0-3.3.1, python-azure-keyvault-4.1.0-6.4.1, python-azure-keyvault-administration-4.0.0b2-3.3.1, python-azure-keyvault-certificates-4.2.1-3.3.1, python-azure-keyvault-keys-4.3.0-3.3.1, python-azure-keyvault-nspkg-1.0.0-3.3.1, python-azure-keyvault-secrets-4.2.0-3.3.1, python-azure-loganalytics-0.1.0-3.4.1, python-azure-mgmt-4.0.0-6.4.1, python-azure-mgmt-advisor-4.0.0-3.4.1, python-azure-mgmt-alertsmanagement-0.2.0rc2-3.3.1, python-azure-mgmt-apimanagement-0.2.0-3.3.1, python-azure-mgmt-appconfiguration-1.0.1-3.3.1, python-azure-mgmt-applicationinsights-0.3.0-3.4.1, python-azure-mgmt-appplatform-1.0.0-3.3.1, python-azure-mgmt-attestation-0.1.0.0-3.3.1, python-azure-mgmt-authorization-0.61.0-6.4.1, python-azure-mgmt-automanage-1.0.0b1-3.3.1, python-azure-mgmt-automation-0.1.1-3.3.1, python-azure-mgmt-azurestack-0.1.0-3.3.1, python-azure-mgmt-azurestackhci-1.0.0rc1-3.3.1, python-azure-mgmt-baremetalinfrastructure-1.0.0b1-3.3.1, python-azure-mgmt-batch-9.0.0-6.4.1, python-azure-mgmt-batchai-2.0.0-3.4.1, python-azure-mgmt-billing-0.2.0-6.4.1, python-azure-mgmt-botservice-0.2.0-3.4.1, python-azure-mgmt-cdn-5.1.0-6.4.1, python-azure-mgmt-cognitiveservices-6.3.0-6.4.1, python-azure-mgmt-commerce-1.0.1-6.4.1, python-azure-mgmt-communication-1.0.0b2-3.3.1, python-azure-mgmt-compute-17.0.0-6.7.1, python-azure-mgmt-consumption-3.0.0-6.4.1, python-azure-mgmt-containerinstance-2.0.0-6.4.1, python-azure-mgmt-containerregistry-3.0.0rc15-6.4.1, python-azure-mgmt-containerservice-9.4.0-6.4.1, python-azure-mgmt-core-1.2.2-3.3.1, python-azure-mgmt-cosmosdb-1.0.0-6.4.1, python-azure-mgmt-costmanagement-0.2.0-3.3.1, python-azure-mgmt-databoxedge-0.1.0-3.3.1, python-azure-mgmt-databricks-0.1.0-3.3.1, python-azure-mgmt-datafactory-0.13.0-3.4.1, python-azure-mgmt-datalake-analytics-0.6.0-6.4.1, python-azure-mgmt-datalake-nspkg-3.0.1-6.4.1, python-azure-mgmt-datalake-store-0.5.0-6.4.1, python-azure-mgmt-datamigration-4.0.0-3.4.1, python-azure-mgmt-datashare-0.2.0-3.3.1, python-azure-mgmt-deploymentmanager-0.2.0-3.3.1, python-azure-mgmt-devspaces-0.2.0-3.4.1, python-azure-mgmt-devtestlabs-4.0.0-6.4.1, python-azure-mgmt-dns-3.0.0-6.4.1, python-azure-mgmt-documentdb-0.1.3-6.4.1, python-azure-mgmt-edgegateway-0.1.0-3.3.1, python-azure-mgmt-eventgrid-3.0.0rc8-6.4.1, python-azure-mgmt-eventhub-8.0.0-6.4.1, python-azure-mgmt-frontdoor-0.3.0-3.3.1, python-azure-mgmt-hanaonazure-0.14.0-3.4.1, python-azure-mgmt-hdinsight-1.7.0-3.4.1, python-azure-mgmt-healthcareapis-0.1.0-3.3.1, python-azure-mgmt-hybridcompute-2.0.0-3.3.1, python-azure-mgmt-imagebuilder-0.4.0-3.3.1, python-azure-mgmt-iotcentral-3.1.0-3.4.1, python-azure-mgmt-iothub-0.12.0-6.4.1, python-azure-mgmt-iothubprovisioningservices-0.2.0-3.4.1, python-azure-mgmt-keyvault-8.0.0-7.4.1, python-azure-mgmt-kubernetesconfiguration-0.2.0-3.3.1, python-azure-mgmt-kusto-0.9.0-3.4.1, python-azure-mgmt-labservices-0.1.1-3.3.1, python-azure-mgmt-loganalytics-1.0.0-3.4.1, python-azure-mgmt-logic-4.0.0rc2-7.4.1, python-azure-mgmt-machinelearningcompute-0.4.1-3.4.1, python-azure-mgmt-machinelearningservices-0.1.0-3.3.1, python-azure-mgmt-managedservices-1.0.0-3.3.1, python-azure-mgmt-managementgroups-0.2.0-3.4.1, python-azure-mgmt-managementpartner-0.1.1-3.4.1, python-azure-mgmt-maps-0.1.0-3.4.1, python-azure-mgmt-marketplaceordering-0.2.1-3.4.1, python-azure-mgmt-media-2.2.0-7.4.1, python-azure-mgmt-mixedreality-0.2.0-3.3.1, python-azure-mgmt-monitor-1.0.1-6.4.1, python-azure-mgmt-msi-1.0.0-3.4.1, python-azure-mgmt-netapp-0.13.0-3.3.1, python-azure-mgmt-network-16.0.0-6.4.1, python-azure-mgmt-notificationhubs-2.1.0-7.4.1, python-azure-mgmt-nspkg-3.0.2-6.4.1, python-azure-mgmt-peering-0.2.0-3.3.1, python-azure-mgmt-policyinsights-0.5.0-3.4.1, python-azure-mgmt-powerbiembedded-2.0.0-7.4.1, python-azure-mgmt-privatedns-0.1.0-3.3.1, python-azure-mgmt-rdbms-3.1.0rc1-6.4.1, python-azure-mgmt-recoveryservices-0.5.0-6.4.1, python-azure-mgmt-recoveryservicesbackup-0.8.0-7.4.1, python-azure-mgmt-redhatopenshift-0.1.0-3.3.1, python-azure-mgmt-redis-7.0.0rc1-6.4.1, python-azure-mgmt-regionmove-1.0.0b1-3.3.1, python-azure-mgmt-relay-0.2.0-3.4.1, python-azure-mgmt-reservations-0.8.0-3.4.1, python-azure-mgmt-resource-10.2.0-6.4.1, python-azure-mgmt-resourcegraph-2.0.0-3.3.1, python-azure-mgmt-resourcemover-1.0.1b1-3.3.1, python-azure-mgmt-scheduler-2.0.0-7.4.1, python-azure-mgmt-search-3.0.0-6.4.1, python-azure-mgmt-security-0.4.1-3.3.1, python-azure-mgmt-serialconsole-0.1.0-3.3.1, python-azure-mgmt-servermanager-2.0.0-6.4.1, python-azure-mgmt-servicebus-1.0.0-6.4.1, python-azure-mgmt-servicefabric-0.5.0-6.4.1, python-azure-mgmt-signalr-0.4.0-3.4.1, python-azure-mgmt-sql-0.24.0-6.4.1, python-azure-mgmt-sqlvirtualmachine-0.5.0-3.3.1, python-azure-mgmt-storage-16.0.0-6.4.1, python-azure-mgmt-storagecache-0.3.0-3.3.1, python-azure-mgmt-storageimportexport-0.1.0-3.3.1, python-azure-mgmt-storagesync-0.2.0-3.3.1, python-azure-mgmt-streamanalytics-1.0.0rc1-3.3.1, python-azure-mgmt-subscription-0.7.0-3.4.1, python-azure-mgmt-synapse-0.4.0-3.3.1, python-azure-mgmt-trafficmanager-0.51.0-7.4.1, python-azure-mgmt-vmwarecloudsimple-0.2.0-3.3.1, python-azure-mgmt-web-0.48.0-6.4.1, python-azure-monitor-0.3.1-7.4.1, python-azure-multiapi-storage-0.5.2-6.4.1, python-azure-nspkg-3.0.2-6.4.1, python-azure-sdk-4.0.0-3.4.1, python-azure-search-documents-11.0.0-3.3.1, python-azure-search-nspkg-1.0.0-3.3.1, python-azure-servicebus-0.50.3-7.4.1, python-azure-servicefabric-7.1.0.45-6.4.1, python-azure-servicemanagement-legacy-0.20.7-7.4.1, python-azure-storage-blob-12.5.0-3.4.1, python-azure-storage-common-2.1.0-3.4.1, python-azure-storage-file-2.1.0-3.4.1, python-azure-storage-file-datalake-12.1.2-3.3.1, python-azure-storage-file-share-12.2.0-3.3.1, python-azure-storage-nspkg-3.1.0-3.4.1, python-azure-storage-queue-12.1.3-3.4.1, python-azure-synapse-accesscontrol-0.3.0-3.3.1, python-azure-synapse-artifacts-0.3.0-3.3.1, python-azure-synapse-nspkg-1.0.0-3.3.1, python-azure-synapse-spark-0.3.0-3.3.1, python-blinker-1.4-3.4.1, python-brotlipy-0.7.0-3.3.1, python-colorama-0.4.4-5.4.1, python-cryptography-vectors-2.8-3.3.1, python-ecdsa-0.13.3-3.7.1, python-fluidity-sm-0.2.0-3.3.1, python-gunicorn-19.7.1-3.4.1, python-idna_ssl-1.0.0-3.3.1, python-invoke-1.3.0-3.3.1, python-isodate-0.6.0-3.7.1, python-javaproperties-0.7.0-3.3.1, python-jsmin-2.2.2-3.3.1, python-jsondiff-1.2.0-3.3.1, python-knack-0.7.2-3.4.2, python-lexicon-1.0.0-3.3.1, python-msal-1.6.0-3.3.1, python-msal-extensions-0.3.0-3.3.1, python-msrest-0.6.19-6.4.1, python-msrestazure-0.6.4-6.4.1, python-multidict-4.5.2-3.3.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pathlib2-2.3.2-3.8.1, python-pkginfo-1.5.0.1-5.4.1, python-portalocker-1.4.0-3.6.1, python-pydocumentdb-2.3.5-3.4.1, python-requests-oauthlib-0.8.0-3.4.1, python-scandir-1.10.0-3.16.1, python-scp-0.13.2-5.4.1, python-spec-1.4.1-3.3.1, python-uamqp-1.2.12-4.4.1, python-vcrpy-2.1.1-3.3.1, python-vsts-0.1.25-3.3.2, python-vsts-cd-manager-1.0.2-4.4.1, python-xmltodict-0.12.0-5.4.1, python-yarl-1.3.0-3.3.1
SUSE Linux Enterprise Module for Public Cloud 15-SP1 (src):    azure-cli-2.14.2-6.4.1, azure-cli-command-modules-nspkg-2.0.3-6.4.1, azure-cli-core-2.14.2-6.7.1, azure-cli-nspkg-3.0.4-6.4.1, azure-cli-telemetry-1.0.6-3.4.1, azure-cli-test-2.14.2-6.4.1, python-Fabric-2.5.0-3.3.1, python-PyJWT-1.7.1-6.4.1, python-adal-1.2.4-7.4.1, python-aiohttp-3.4.4-3.3.3, python-aiohttp-theme-0.1.4-3.3.1, python-antlr4-python3-runtime-4.8-3.3.1, python-applicationinsights-0.11.9-6.4.1, python-async_generator-1.9-3.3.1, python-async_timeout-3.0.0-3.3.1, python-attrs-17.4.0-3.4.2, python-azure-ai-anomalydetector-3.0.0b2-3.3.1, python-azure-ai-metricsadvisor-1.0.0b1-3.3.1, python-azure-ai-nspkg-1.0.0-3.3.1, python-azure-ai-textanalytics-5.0.0-3.3.1, python-azure-appconfiguration-1.1.1-3.3.1, python-azure-applicationinsights-0.1.0-3.4.1, python-azure-batch-9.0.0-7.4.1, python-azure-cognitiveservices-anomalydetector-0.3.0-3.3.1, python-azure-cognitiveservices-formrecognizer-0.1.1-3.3.1, python-azure-cognitiveservices-inkrecognizer-1.0.0b1-3.3.1, python-azure-cognitiveservices-knowledge-nspkg-3.0.0-3.3.1, python-azure-cognitiveservices-knowledge-qnamaker-0.2.0-3.3.1, python-azure-cognitiveservices-language-luis-0.7.0-3.4.1, python-azure-cognitiveservices-language-nspkg-3.0.1-3.4.1, python-azure-cognitiveservices-language-spellcheck-2.0.0-3.4.1, python-azure-cognitiveservices-language-textanalytics-0.2.0-3.4.1, python-azure-cognitiveservices-nspkg-3.0.1-3.4.1, python-azure-cognitiveservices-personalizer-0.1.0-3.3.1, python-azure-cognitiveservices-search-autosuggest-0.2.0-3.4.1, python-azure-cognitiveservices-search-customimagesearch-0.2.0-3.3.1, python-azure-cognitiveservices-search-customsearch-0.3.0-3.4.1, python-azure-cognitiveservices-search-entitysearch-2.0.0-3.4.1, python-azure-cognitiveservices-search-imagesearch-2.0.0-3.4.1, python-azure-cognitiveservices-search-newssearch-2.0.0-3.4.1, python-azure-cognitiveservices-search-nspkg-3.0.1-3.4.1, python-azure-cognitiveservices-search-videosearch-2.0.0-3.4.1, python-azure-cognitiveservices-search-visualsearch-0.2.0-3.4.1, python-azure-cognitiveservices-search-websearch-2.0.0-3.4.1, python-azure-cognitiveservices-vision-computervision-0.7.0-3.4.1, python-azure-cognitiveservices-vision-contentmoderator-1.0.0-3.4.1, python-azure-cognitiveservices-vision-customvision-3.0.0-3.4.1, python-azure-cognitiveservices-vision-face-0.4.1-3.3.1, python-azure-cognitiveservices-vision-nspkg-3.0.1-3.4.1, python-azure-common-1.1.25-6.4.1, python-azure-communication-administration-1.0.0b2-3.3.1, python-azure-communication-chat-1.0.0b2-3.3.1, python-azure-communication-nspkg-0.0.0b1-3.3.1, python-azure-communication-sms-1.0.0b3-3.3.1, python-azure-core-1.9.0-3.3.1, python-azure-cosmos-4.2.0-3.3.1, python-azure-data-nspkg-1.0.0-3.3.1, python-azure-data-tables-12.0.0b2-3.3.1, python-azure-datalake-store-0.0.51-6.4.1, python-azure-devops-6.0.0b4-3.3.1, python-azure-eventgrid-1.3.0-3.4.1, python-azure-eventhub-5.2.0-3.3.1, python-azure-eventhub-checkpointstoreblob-1.1.1-3.3.1, python-azure-eventhub-checkpointstoreblob-aio-1.1.1-3.3.1, python-azure-functions-devops-build-0.0.22-3.3.1, python-azure-graphrbac-0.61.1-6.4.1, python-azure-identity-1.5.0-3.3.1, python-azure-keyvault-4.1.0-6.4.1, python-azure-keyvault-administration-4.0.0b2-3.3.1, python-azure-keyvault-certificates-4.2.1-3.3.1, python-azure-keyvault-keys-4.3.0-3.3.1, python-azure-keyvault-nspkg-1.0.0-3.3.1, python-azure-keyvault-secrets-4.2.0-3.3.1, python-azure-loganalytics-0.1.0-3.4.1, python-azure-mgmt-4.0.0-6.4.1, python-azure-mgmt-advisor-4.0.0-3.4.1, python-azure-mgmt-alertsmanagement-0.2.0rc2-3.3.1, python-azure-mgmt-apimanagement-0.2.0-3.3.1, python-azure-mgmt-appconfiguration-1.0.1-3.3.1, python-azure-mgmt-applicationinsights-0.3.0-3.4.1, python-azure-mgmt-appplatform-1.0.0-3.3.1, python-azure-mgmt-attestation-0.1.0.0-3.3.1, python-azure-mgmt-authorization-0.61.0-6.4.1, python-azure-mgmt-automanage-1.0.0b1-3.3.1, python-azure-mgmt-automation-0.1.1-3.3.1, python-azure-mgmt-azurestack-0.1.0-3.3.1, python-azure-mgmt-azurestackhci-1.0.0rc1-3.3.1, python-azure-mgmt-baremetalinfrastructure-1.0.0b1-3.3.1, python-azure-mgmt-batch-9.0.0-6.4.1, python-azure-mgmt-batchai-2.0.0-3.4.1, python-azure-mgmt-billing-0.2.0-6.4.1, python-azure-mgmt-botservice-0.2.0-3.4.1, python-azure-mgmt-cdn-5.1.0-6.4.1, python-azure-mgmt-cognitiveservices-6.3.0-6.4.1, python-azure-mgmt-commerce-1.0.1-6.4.1, python-azure-mgmt-communication-1.0.0b2-3.3.1, python-azure-mgmt-compute-17.0.0-6.7.1, python-azure-mgmt-consumption-3.0.0-6.4.1, python-azure-mgmt-containerinstance-2.0.0-6.4.1, python-azure-mgmt-containerregistry-3.0.0rc15-6.4.1, python-azure-mgmt-containerservice-9.4.0-6.4.1, python-azure-mgmt-core-1.2.2-3.3.1, python-azure-mgmt-cosmosdb-1.0.0-6.4.1, python-azure-mgmt-costmanagement-0.2.0-3.3.1, python-azure-mgmt-databoxedge-0.1.0-3.3.1, python-azure-mgmt-databricks-0.1.0-3.3.1, python-azure-mgmt-datafactory-0.13.0-3.4.1, python-azure-mgmt-datalake-analytics-0.6.0-6.4.1, python-azure-mgmt-datalake-nspkg-3.0.1-6.4.1, python-azure-mgmt-datalake-store-0.5.0-6.4.1, python-azure-mgmt-datamigration-4.0.0-3.4.1, python-azure-mgmt-datashare-0.2.0-3.3.1, python-azure-mgmt-deploymentmanager-0.2.0-3.3.1, python-azure-mgmt-devspaces-0.2.0-3.4.1, python-azure-mgmt-devtestlabs-4.0.0-6.4.1, python-azure-mgmt-dns-3.0.0-6.4.1, python-azure-mgmt-documentdb-0.1.3-6.4.1, python-azure-mgmt-edgegateway-0.1.0-3.3.1, python-azure-mgmt-eventgrid-3.0.0rc8-6.4.1, python-azure-mgmt-eventhub-8.0.0-6.4.1, python-azure-mgmt-frontdoor-0.3.0-3.3.1, python-azure-mgmt-hanaonazure-0.14.0-3.4.1, python-azure-mgmt-hdinsight-1.7.0-3.4.1, python-azure-mgmt-healthcareapis-0.1.0-3.3.1, python-azure-mgmt-hybridcompute-2.0.0-3.3.1, python-azure-mgmt-imagebuilder-0.4.0-3.3.1, python-azure-mgmt-iotcentral-3.1.0-3.4.1, python-azure-mgmt-iothub-0.12.0-6.4.1, python-azure-mgmt-iothubprovisioningservices-0.2.0-3.4.1, python-azure-mgmt-keyvault-8.0.0-7.4.1, python-azure-mgmt-kubernetesconfiguration-0.2.0-3.3.1, python-azure-mgmt-kusto-0.9.0-3.4.1, python-azure-mgmt-labservices-0.1.1-3.3.1, python-azure-mgmt-loganalytics-1.0.0-3.4.1, python-azure-mgmt-logic-4.0.0rc2-7.4.1, python-azure-mgmt-machinelearningcompute-0.4.1-3.4.1, python-azure-mgmt-machinelearningservices-0.1.0-3.3.1, python-azure-mgmt-managedservices-1.0.0-3.3.1, python-azure-mgmt-managementgroups-0.2.0-3.4.1, python-azure-mgmt-managementpartner-0.1.1-3.4.1, python-azure-mgmt-maps-0.1.0-3.4.1, python-azure-mgmt-marketplaceordering-0.2.1-3.4.1, python-azure-mgmt-media-2.2.0-7.4.1, python-azure-mgmt-mixedreality-0.2.0-3.3.1, python-azure-mgmt-monitor-1.0.1-6.4.1, python-azure-mgmt-msi-1.0.0-3.4.1, python-azure-mgmt-netapp-0.13.0-3.3.1, python-azure-mgmt-network-16.0.0-6.4.1, python-azure-mgmt-notificationhubs-2.1.0-7.4.1, python-azure-mgmt-nspkg-3.0.2-6.4.1, python-azure-mgmt-peering-0.2.0-3.3.1, python-azure-mgmt-policyinsights-0.5.0-3.4.1, python-azure-mgmt-powerbiembedded-2.0.0-7.4.1, python-azure-mgmt-privatedns-0.1.0-3.3.1, python-azure-mgmt-rdbms-3.1.0rc1-6.4.1, python-azure-mgmt-recoveryservices-0.5.0-6.4.1, python-azure-mgmt-recoveryservicesbackup-0.8.0-7.4.1, python-azure-mgmt-redhatopenshift-0.1.0-3.3.1, python-azure-mgmt-redis-7.0.0rc1-6.4.1, python-azure-mgmt-regionmove-1.0.0b1-3.3.1, python-azure-mgmt-relay-0.2.0-3.4.1, python-azure-mgmt-reservations-0.8.0-3.4.1, python-azure-mgmt-resource-10.2.0-6.4.1, python-azure-mgmt-resourcegraph-2.0.0-3.3.1, python-azure-mgmt-resourcemover-1.0.1b1-3.3.1, python-azure-mgmt-scheduler-2.0.0-7.4.1, python-azure-mgmt-search-3.0.0-6.4.1, python-azure-mgmt-security-0.4.1-3.3.1, python-azure-mgmt-serialconsole-0.1.0-3.3.1, python-azure-mgmt-servermanager-2.0.0-6.4.1, python-azure-mgmt-servicebus-1.0.0-6.4.1, python-azure-mgmt-servicefabric-0.5.0-6.4.1, python-azure-mgmt-signalr-0.4.0-3.4.1, python-azure-mgmt-sql-0.24.0-6.4.1, python-azure-mgmt-sqlvirtualmachine-0.5.0-3.3.1, python-azure-mgmt-storage-16.0.0-6.4.1, python-azure-mgmt-storagecache-0.3.0-3.3.1, python-azure-mgmt-storageimportexport-0.1.0-3.3.1, python-azure-mgmt-storagesync-0.2.0-3.3.1, python-azure-mgmt-streamanalytics-1.0.0rc1-3.3.1, python-azure-mgmt-subscription-0.7.0-3.4.1, python-azure-mgmt-synapse-0.4.0-3.3.1, python-azure-mgmt-trafficmanager-0.51.0-7.4.1, python-azure-mgmt-vmwarecloudsimple-0.2.0-3.3.1, python-azure-mgmt-web-0.48.0-6.4.1, python-azure-monitor-0.3.1-7.4.1, python-azure-multiapi-storage-0.5.2-6.4.1, python-azure-nspkg-3.0.2-6.4.1, python-azure-sdk-4.0.0-3.4.1, python-azure-search-documents-11.0.0-3.3.1, python-azure-search-nspkg-1.0.0-3.3.1, python-azure-servicebus-0.50.3-7.4.1, python-azure-servicefabric-7.1.0.45-6.4.1, python-azure-servicemanagement-legacy-0.20.7-7.4.1, python-azure-storage-blob-12.5.0-3.4.1, python-azure-storage-common-2.1.0-3.4.1, python-azure-storage-file-2.1.0-3.4.1, python-azure-storage-file-datalake-12.1.2-3.3.1, python-azure-storage-file-share-12.2.0-3.3.1, python-azure-storage-nspkg-3.1.0-3.4.1, python-azure-storage-queue-12.1.3-3.4.1, python-azure-synapse-accesscontrol-0.3.0-3.3.1, python-azure-synapse-artifacts-0.3.0-3.3.1, python-azure-synapse-nspkg-1.0.0-3.3.1, python-azure-synapse-spark-0.3.0-3.3.1, python-blinker-1.4-3.4.1, python-brotlipy-0.7.0-3.3.1, python-colorama-0.4.4-5.4.1, python-cryptography-vectors-2.8-3.3.1, python-ecdsa-0.13.3-3.7.1, python-fluidity-sm-0.2.0-3.3.1, python-gunicorn-19.7.1-3.4.1, python-idna_ssl-1.0.0-3.3.1, python-invoke-1.3.0-3.3.1, python-isodate-0.6.0-3.7.1, python-javaproperties-0.7.0-3.3.1, python-jsmin-2.2.2-3.3.1, python-jsondiff-1.2.0-3.3.1, python-knack-0.7.2-3.4.2, python-lexicon-1.0.0-3.3.1, python-msal-1.6.0-3.3.1, python-msal-extensions-0.3.0-3.3.1, python-msrest-0.6.19-6.4.1, python-msrestazure-0.6.4-6.4.1, python-multidict-4.5.2-3.3.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pathlib2-2.3.2-3.8.1, python-pkginfo-1.5.0.1-5.4.1, python-portalocker-1.4.0-3.6.1, python-pydocumentdb-2.3.5-3.4.1, python-requests-oauthlib-0.8.0-3.4.1, python-scandir-1.10.0-3.16.1, python-scp-0.13.2-5.4.1, python-spec-1.4.1-3.3.1, python-uamqp-1.2.12-4.4.1, python-vcrpy-2.1.1-3.3.1, python-vsts-0.1.25-3.3.2, python-vsts-cd-manager-1.0.2-4.4.1, python-xmltodict-0.12.0-5.4.1, python-yarl-1.3.0-3.3.1
SUSE Linux Enterprise Module for Public Cloud 15 (src):    python-blinker-1.4-3.4.1, python-ecdsa-0.13.3-3.7.1, python-isodate-0.6.0-3.7.1, python-oauthlib-2.0.6-3.4.1, python-requests-oauthlib-0.8.0-3.4.1
SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP2 (src):    python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-colorama-0.4.4-5.4.1, python-ecdsa-0.13.3-3.7.1, python-isodate-0.6.0-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pathlib2-2.3.2-3.8.1, python-requests-oauthlib-0.8.0-3.4.1, python-scandir-1.10.0-3.16.1, python-scp-0.13.2-5.4.1, python-websocket-client-0.57.0-6.4.1, python-xmltodict-0.12.0-5.4.1
SUSE Linux Enterprise Module for Development Tools 15-SP2 (src):    python-nose-1.3.7-7.4.1
SUSE Linux Enterprise Module for Basesystem 15-SP2 (src):    python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-ecdsa-0.13.3-3.7.1, python-isodate-0.6.0-3.7.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-websocket-client-0.57.0-6.4.1
SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS (src):    python-Cython-0.29.1-7.3.1, python-PyJWT-1.7.1-6.4.1, python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-cryptography-2.8-7.4.1, python-ecdsa-0.13.3-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-six-1.14.0-7.3.1, python-websocket-client-0.57.0-6.4.1
SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS (src):    python-Cython-0.29.1-7.3.1, python-PyJWT-1.7.1-6.4.1, python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-cryptography-2.8-7.4.1, python-ecdsa-0.13.3-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-six-1.14.0-7.3.1, python-websocket-client-0.57.0-6.4.1
SUSE Enterprise Storage 6 (src):    python-Cython-0.29.1-7.3.1, python-PyJWT-1.7.1-6.4.1, python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-colorama-0.4.4-5.4.1, python-cryptography-2.8-7.4.1, python-ecdsa-0.13.3-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-six-1.14.0-7.3.1, python-websocket-client-0.57.0-6.4.1
SUSE CaaS Platform 4.0 (src):    python-Cython-0.29.1-7.3.1, python-PyJWT-1.7.1-6.4.1, python-PyYAML-5.3.1-6.10.1, python-Pygments-2.6.1-7.4.1, python-adal-1.2.4-7.4.1, python-blinker-1.4-3.4.1, python-cryptography-2.8-7.4.1, python-ecdsa-0.13.3-3.7.1, python-nose-1.3.7-7.4.1, python-oauthlib-2.0.6-3.4.1, python-pytz-2019.1-6.4.1, python-requests-2.24.0-6.10.2, python-requests-oauthlib-0.8.0-3.4.1, python-six-1.14.0-7.3.1, python-websocket-client-0.57.0-6.4.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 17 Swamp Workflow Management 2021-04-04 22:26:56 UTC
openSUSE-RU-2021:0508-1: An update that solves two vulnerabilities and has 6 fixes is now available.

Category: recommended (moderate)
Bug References: 1125671,1140565,1154393,1174514,1175289,1176784,1176785,1178168
CVE References: CVE-2020-14343,CVE-2020-25659
JIRA References: 
Sources used:
openSUSE Leap 15.2 (src):    azure-cli-2.14.2-lp152.3.3.1, azure-cli-command-modules-nspkg-2.0.3-lp152.5.3.1, azure-cli-core-2.14.2-lp152.4.3.1, azure-cli-nspkg-3.0.4-lp152.3.3.1, azure-cli-telemetry-1.0.6-lp152.3.3.1, azure-cli-test-2.14.2-lp152.3.3.1, python-Cython-0.29.1-lp152.2.3.1, python-Fabric-2.5.0-lp152.4.3.1, python-PyJWT-1.7.1-lp152.2.3.1, python-PyYAML-5.3.1-lp152.3.3.1, python-Pygments-2.6.1-lp152.5.6.1, python-adal-1.2.4-lp152.4.3.1, python-aiohttp-3.4.4-lp152.2.3.2, python-aiohttp-theme-0.1.4-lp152.2.3.1, python-antlr4-python3-runtime-4.8-lp152.2.1, python-applicationinsights-0.11.9-lp152.3.3.1, python-async_generator-1.9-lp152.2.3.1, python-async_timeout-3.0.0-lp152.3.3.1, python-azure-appconfiguration-1.1.1-lp152.2.1, python-azure-applicationinsights-0.1.0-lp152.3.3.1, python-azure-batch-9.0.0-lp152.3.3.1, python-azure-cognitiveservices-anomalydetector-0.3.0-lp152.2.1, python-azure-cognitiveservices-formrecognizer-0.1.1-lp152.2.1, python-azure-cognitiveservices-inkrecognizer-1.0.0b1-lp152.2.1, python-azure-cognitiveservices-knowledge-nspkg-3.0.0-lp152.2.1, python-azure-cognitiveservices-knowledge-qnamaker-0.2.0-lp152.2.1, python-azure-cognitiveservices-language-luis-0.7.0-lp152.3.3.1, python-azure-cognitiveservices-language-nspkg-3.0.1-lp152.5.3.1, python-azure-cognitiveservices-language-spellcheck-2.0.0-lp152.3.3.1, python-azure-cognitiveservices-language-textanalytics-0.2.0-lp152.3.3.1, python-azure-cognitiveservices-nspkg-3.0.1-lp152.5.3.1, python-azure-cognitiveservices-personalizer-0.1.0-lp152.2.1, python-azure-cognitiveservices-search-autosuggest-0.2.0-lp152.3.3.1, python-azure-cognitiveservices-search-customimagesearch-0.2.0-lp152.2.1, python-azure-cognitiveservices-search-customsearch-0.3.0-lp152.3.3.1, python-azure-cognitiveservices-search-entitysearch-2.0.0-lp152.3.3.1, python-azure-cognitiveservices-search-imagesearch-2.0.0-lp152.3.3.1, python-azure-cognitiveservices-search-newssearch-2.0.0-lp152.3.3.1, python-azure-cognitiveservices-search-nspkg-3.0.1-lp152.5.3.1, python-azure-cognitiveservices-search-videosearch-2.0.0-lp152.3.3.1, python-azure-cognitiveservices-search-visualsearch-0.2.0-lp152.3.3.1, python-azure-cognitiveservices-search-websearch-2.0.0-lp152.3.3.1, python-azure-cognitiveservices-vision-computervision-0.7.0-lp152.3.3.1, python-azure-cognitiveservices-vision-contentmoderator-1.0.0-lp152.3.3.1, python-azure-cognitiveservices-vision-customvision-3.0.0-lp152.3.3.1, python-azure-cognitiveservices-vision-face-0.4.1-lp152.2.1, python-azure-cognitiveservices-vision-nspkg-3.0.1-lp152.5.3.1, python-azure-common-1.1.25-lp152.3.3.1, python-azure-core-1.9.0-lp152.2.1, python-azure-cosmos-4.2.0-lp152.2.1, python-azure-datalake-store-0.0.51-lp152.3.3.1, python-azure-eventgrid-1.3.0-lp152.3.3.1, python-azure-eventhub-5.2.0-lp152.2.1, python-azure-eventhub-checkpointstoreblob-1.1.1-lp152.2.1, python-azure-functions-devops-build-0.0.22-lp152.2.1, python-azure-graphrbac-0.61.1-lp152.3.3.1, python-azure-keyvault-4.1.0-lp152.3.3.1, python-azure-keyvault-administration-4.0.0b2-lp152.2.1, python-azure-keyvault-certificates-4.2.1-lp152.2.1, python-azure-keyvault-keys-4.3.0-lp152.2.1, python-azure-keyvault-nspkg-1.0.0-lp152.2.1, python-azure-keyvault-secrets-4.2.0-lp152.2.1, python-azure-loganalytics-0.1.0-lp152.3.3.1, python-azure-mgmt-4.0.0-lp152.3.3.1, python-azure-mgmt-advisor-4.0.0-lp152.3.3.1, python-azure-mgmt-alertsmanagement-0.2.0rc2-lp152.2.1, python-azure-mgmt-apimanagement-0.2.0-lp152.2.1, python-azure-mgmt-appconfiguration-1.0.1-lp152.2.1, python-azure-mgmt-applicationinsights-0.3.0-lp152.3.3.1, python-azure-mgmt-appplatform-1.0.0-lp152.2.1, python-azure-mgmt-attestation-0.1.0.0-lp152.2.1, python-azure-mgmt-authorization-0.61.0-lp152.3.3.1, python-azure-mgmt-automanage-1.0.0b1-lp152.2.1, python-azure-mgmt-automation-0.1.1-lp152.2.1, python-azure-mgmt-azurestackhci-1.0.0rc1-lp152.2.1, python-azure-mgmt-baremetalinfrastructure-1.0.0b1-lp152.2.1, python-azure-mgmt-batch-9.0.0-lp152.3.3.1, python-azure-mgmt-batchai-2.0.0-lp152.3.3.1, python-azure-mgmt-billing-0.2.0-lp152.3.3.1, python-azure-mgmt-botservice-0.2.0-lp152.3.3.1, python-azure-mgmt-cdn-5.1.0-lp152.3.3.1, python-azure-mgmt-cognitiveservices-6.3.0-lp152.3.3.1, python-azure-mgmt-commerce-1.0.1-lp152.3.3.1, python-azure-mgmt-communication-1.0.0b2-lp152.2.1, python-azure-mgmt-compute-17.0.0-lp152.2.3.1, python-azure-mgmt-consumption-3.0.0-lp152.3.3.1, python-azure-mgmt-containerinstance-2.0.0-lp152.3.3.1, python-azure-mgmt-containerregistry-3.0.0rc15-lp152.3.3.1, python-azure-mgmt-containerservice-9.4.0-lp152.3.3.1, python-azure-mgmt-core-1.2.2-lp152.2.1, python-azure-mgmt-cosmosdb-1.0.0-lp152.3.3.1, python-azure-mgmt-costmanagement-0.2.0-lp152.2.1, python-azure-mgmt-databricks-0.1.0-lp152.2.1, python-azure-mgmt-datafactory-0.13.0-lp152.3.3.1, python-azure-mgmt-datalake-analytics-0.6.0-lp152.3.3.1, python-azure-mgmt-datalake-nspkg-3.0.1-lp152.5.3.1, python-azure-mgmt-datalake-store-0.5.0-lp152.3.3.1, python-azure-mgmt-datamigration-4.0.0-lp152.3.3.1, python-azure-mgmt-datashare-0.2.0-lp152.2.1, python-azure-mgmt-deploymentmanager-0.2.0-lp152.2.1, python-azure-mgmt-devspaces-0.2.0-lp152.3.3.1, python-azure-mgmt-devtestlabs-4.0.0-lp152.3.3.1, python-azure-mgmt-dns-3.0.0-lp152.3.3.1, python-azure-mgmt-documentdb-0.1.3-lp152.5.3.1, python-azure-mgmt-edgegateway-0.1.0-lp152.2.1, python-azure-mgmt-eventgrid-3.0.0rc8-lp152.3.3.1, python-azure-mgmt-eventhub-8.0.0-lp152.3.3.1, python-azure-mgmt-frontdoor-0.3.0-lp152.2.1, python-azure-mgmt-hanaonazure-0.14.0-lp152.3.3.1, python-azure-mgmt-hdinsight-1.7.0-lp152.3.3.1, python-azure-mgmt-healthcareapis-0.1.0-lp152.2.1, python-azure-mgmt-hybridcompute-2.0.0-lp152.2.1, python-azure-mgmt-imagebuilder-0.4.0-lp152.2.1, python-azure-mgmt-iotcentral-3.1.0-lp152.3.3.1, python-azure-mgmt-iothub-0.12.0-lp152.3.3.1, python-azure-mgmt-iothubprovisioningservices-0.2.0-lp152.3.3.1, python-azure-mgmt-keyvault-8.0.0-lp152.3.3.1, python-azure-mgmt-kubernetesconfiguration-0.2.0-lp152.2.1, python-azure-mgmt-kusto-0.9.0-lp152.3.3.1, python-azure-mgmt-labservices-0.1.1-lp152.2.1, python-azure-mgmt-loganalytics-1.0.0-lp152.3.3.1, python-azure-mgmt-logic-4.0.0rc2-lp152.3.3.1, python-azure-mgmt-machinelearningcompute-0.4.1-lp152.3.3.1, python-azure-mgmt-machinelearningservices-0.1.0-lp152.2.1, python-azure-mgmt-managedservices-1.0.0-lp152.2.1, python-azure-mgmt-managementgroups-0.2.0-lp152.3.3.1, python-azure-mgmt-managementpartner-0.1.1-lp152.3.3.1, python-azure-mgmt-maps-0.1.0-lp152.3.3.1, python-azure-mgmt-marketplaceordering-0.2.1-lp152.3.3.1, python-azure-mgmt-media-2.2.0-lp152.3.3.1, python-azure-mgmt-mixedreality-0.2.0-lp152.2.1, python-azure-mgmt-monitor-1.0.1-lp152.3.3.1, python-azure-mgmt-msi-1.0.0-lp152.3.3.1, python-azure-mgmt-netapp-0.13.0-lp152.2.1, python-azure-mgmt-network-16.0.0-lp152.3.3.1, python-azure-mgmt-notificationhubs-2.1.0-lp152.3.3.1, python-azure-mgmt-nspkg-3.0.2-lp152.5.3.1, python-azure-mgmt-peering-0.2.0-lp152.2.1, python-azure-mgmt-policyinsights-0.5.0-lp152.3.3.1, python-azure-mgmt-powerbiembedded-2.0.0-lp152.3.3.1, python-azure-mgmt-privatedns-0.1.0-lp152.2.1, python-azure-mgmt-rdbms-3.1.0rc1-lp152.3.3.1, python-azure-mgmt-recoveryservices-0.5.0-lp152.3.3.1, python-azure-mgmt-recoveryservicesbackup-0.8.0-lp152.3.3.1, python-azure-mgmt-redhatopenshift-0.1.0-lp152.2.1, python-azure-mgmt-redis-7.0.0rc1-lp152.3.3.1, python-azure-mgmt-regionmove-1.0.0b1-lp152.2.1, python-azure-mgmt-relay-0.2.0-lp152.3.3.1, python-azure-mgmt-reservations-0.8.0-lp152.3.3.1, python-azure-mgmt-resource-10.2.0-lp152.3.3.1, python-azure-mgmt-resourcegraph-2.0.0-lp152.2.1, python-azure-mgmt-resourcemover-1.0.1b1-lp152.2.1, python-azure-mgmt-scheduler-2.0.0-lp152.3.3.1, python-azure-mgmt-search-3.0.0-lp152.3.3.1, python-azure-mgmt-security-0.4.1-lp152.2.1, python-azure-mgmt-serialconsole-0.1.0-lp152.2.1, python-azure-mgmt-servermanager-2.0.0-lp152.3.3.1, python-azure-mgmt-servicebus-1.0.0-lp152.3.3.1, python-azure-mgmt-servicefabric-0.5.0-lp152.3.3.1, python-azure-mgmt-signalr-0.4.0-lp152.3.3.1, python-azure-mgmt-sql-0.24.0-lp152.3.3.1, python-azure-mgmt-sqlvirtualmachine-0.5.0-lp152.2.1, python-azure-mgmt-storage-16.0.0-lp152.3.3.1, python-azure-mgmt-storagecache-0.3.0-lp152.2.1, python-azure-mgmt-storageimportexport-0.1.0-lp152.2.1, python-azure-mgmt-storagesync-0.2.0-lp152.2.1, python-azure-mgmt-streamanalytics-1.0.0rc1-lp152.2.1, python-azure-mgmt-subscription-0.7.0-lp152.3.3.1, python-azure-mgmt-synapse-0.4.0-lp152.2.1, python-azure-mgmt-trafficmanager-0.51.0-lp152.3.3.1, python-azure-mgmt-web-0.48.0-lp152.3.3.1, python-azure-monitor-0.3.1-lp152.6.3.1, python-azure-multiapi-storage-0.5.2-lp152.3.3.1, python-azure-nspkg-3.0.2-lp152.5.3.1, python-azure-sdk-4.0.0-lp152.3.3.1, python-azure-servicebus-0.50.3-lp152.6.3.1, python-azure-servicefabric-7.1.0.45-lp152.3.3.1, python-azure-servicemanagement-legacy-0.20.7-lp152.6.3.1, python-azure-storage-blob-12.5.0-lp152.3.3.1, python-azure-storage-common-2.1.0-lp152.3.3.1, python-azure-storage-file-2.1.0-lp152.3.3.1, python-azure-storage-nspkg-3.1.0-lp152.3.3.1, python-azure-storage-queue-12.1.3-lp152.3.3.1, python-azure-synapse-accesscontrol-0.3.0-lp152.2.1, python-azure-synapse-artifacts-0.3.0-lp152.2.1, python-azure-synapse-nspkg-1.0.0-lp152.2.1, python-azure-synapse-spark-0.3.0-lp152.2.1, python-blockdiag-1.5.3-lp152.3.3.1, python-brotlipy-0.7.0-lp152.6.3.1, python-colorama-0.4.4-lp152.4.3.1, python-cryptography-2.8-lp152.2.9.1, python-cryptography-vectors-2.8-lp152.2.3.1, python-fluidity-sm-0.2.0-lp152.3.3.1, python-funcparserlib-0.3.6+repack-lp152.5.3.1, python-idna_ssl-1.0.0-lp152.2.3.1, python-invoke-1.3.0-lp152.2.3.1, python-javaproperties-0.7.0-lp152.2.3.1, python-jsmin-2.2.2-lp152.2.3.1, python-jsondiff-1.2.0-lp152.3.3.1, python-knack-0.7.2-lp152.3.3.1, python-lexicon-1.0.0-lp152.6.3.1, python-msal-extensions-0.3.0-lp152.2.3.1, python-msrest-0.6.19-lp152.4.3.1, python-msrestazure-0.6.4-lp152.4.3.1, python-multidict-4.5.2-lp152.2.3.1, python-pathlib2-2.3.2-lp152.3.3.1, python-pkginfo-1.5.0.1-lp152.2.3.1, python-portalocker-1.4.0-lp152.3.3.1, python-pydocumentdb-2.3.5-lp152.3.3.1, python-pytest-timeout-1.3.3-lp152.2.3.1, python-pytz-2019.1-lp152.3.3.1, python-requests-2.24.0-lp152.3.3.1, python-requests-test-2.24.0-lp152.3.3.3, python-scandir-1.10.0-lp152.2.3.1, python-scp-0.13.2-lp152.4.3.1, python-six-1.14.0-lp152.4.6.1, python-six-test-1.14.0-lp152.4.6.1, python-spec-1.4.1-lp152.5.3.1, python-sphinxcontrib-asyncio-0.2.0-lp152.5.3.1, python-sphinxcontrib-blockdiag-1.5.5-lp152.5.3.1, python-sphinxcontrib-newsfeed-0.1.4-lp152.5.3.1, python-uamqp-1.2.12-lp152.2.3.1, python-vcrpy-2.1.1-lp152.2.3.1, python-vsts-0.1.25-lp152.2.1, python-vsts-cd-manager-1.0.2-lp152.2.3.1, python-webcolors-1.7-lp152.3.3.1, python-websocket-client-0.57.0-lp152.5.3.1, python-xmltodict-0.12.0-lp152.4.3.1, python-yarl-1.3.0-lp152.2.3.1
Comment 18 Swamp Workflow Management 2021-05-14 22:16:22 UTC
openSUSE-RU-2021:0726-1: An update that solves two vulnerabilities and has 6 fixes is now available.

Category: recommended (moderate)
Bug References: 1125671,1140565,1154393,1174514,1175289,1176784,1176785,1178168
CVE References: CVE-2020-14343,CVE-2020-25659
JIRA References: 
Sources used:
openSUSE Backports SLE-15-SP2 (src):    python-Fabric-2.5.0-bp152.4.3.1, python-aiohttp-3.4.4-bp152.2.3.1, python-aiohttp-theme-0.1.4-bp152.2.3.1, python-async_generator-1.9-bp152.2.3.1, python-async_timeout-3.0.0-bp152.4.3.1, python-blockdiag-1.5.3-bp152.3.3.1, python-brotlipy-0.7.0-bp152.6.3.1, python-fluidity-sm-0.2.0-bp152.4.3.1, python-funcparserlib-0.3.6+repack-bp152.5.3.1, python-idna_ssl-1.0.0-bp152.2.3.1, python-invoke-1.3.0-bp152.2.3.1, python-jsondiff-1.2.0-bp152.2.1, python-lexicon-1.0.0-bp152.5.3.1, python-multidict-4.5.2-bp152.2.3.1, python-pytest-timeout-1.3.3-bp152.2.3.1, python-spec-1.4.1-bp152.5.3.1, python-sphinxcontrib-asyncio-0.2.0-bp152.5.3.1, python-sphinxcontrib-blockdiag-1.5.5-bp152.5.3.1, python-sphinxcontrib-newsfeed-0.1.4-bp152.5.3.1, python-vcrpy-2.1.1-bp152.2.3.1, python-webcolors-1.7-bp152.3.3.1, python-yarl-1.3.0-bp152.2.3.1
Comment 29 Swamp Workflow Management 2022-02-16 20:35:10 UTC
SUSE-FU-2022:0454-1: An update that solves 54 vulnerabilities, contains 6 features and has 247 fixes is now available.

Category: feature (moderate)
Bug References: 1000080,1000117,1000194,1000742,1002895,1003091,1005246,1010874,1010966,1011936,1015549,1027610,1027705,1029902,1030038,1032118,1032119,1035604,1039469,1040164,1040256,1041090,1042670,1049186,1049304,1050653,1050665,1055478,1055542,1056951,1057496,1062237,1066873,1068790,1070737,1070738,1070853,1071941,1073310,1073845,1073879,1074247,1076519,1077096,1077230,1078329,1079761,1080301,1081005,1081750,1081751,1082155,1082163,1082318,1083826,1084117,1084157,1085276,1085529,1085661,1087104,1088573,1090427,1090953,1093518,1093917,1094788,1094814,1094883,1095267,1096738,1096937,1097531,1098535,1099308,1099569,1102868,1108508,1109882,1109998,1110435,1110869,1110871,1111493,1111622,1111657,1112357,1115769,1118611,1119376,1119416,1119792,1121717,1121852,1122191,1123064,1123185,1123186,1123558,1124885,1125815,1126283,1126318,1127173,1128146,1128323,1128355,1129071,1129566,1130840,1132174,1132323,1132455,1132663,1132900,1135009,1136444,1138666,1138715,1138746,1139915,1140255,1141168,1142899,1143033,1143454,1143893,1144506,1149686,1149792,1150190,1150895,1153830,1155815,1156677,1156694,1156908,1157104,1157354,1159235,1159538,1161557,1161770,1162224,1162367,1162743,1163978,1164310,1165439,1165578,1165730,1165823,1165960,1166139,1166758,1167008,1167501,1167732,1167746,1168480,1168973,1169489,1170175,1170863,1171368,1171561,1172226,1172908,1172928,1173226,1173356,1174009,1174091,1174514,1175729,1176116,1176129,1176134,1176232,1176256,1176257,1176258,1176259,1176262,1176389,1176785,1176977,1177120,1177127,1178168,1178341,1178670,1179562,1179630,1179805,1180125,1180781,1181126,1181324,1181944,1182066,1182211,1182244,1182264,1182379,1182963,1183059,1183374,1183858,1184505,1185588,1185706,1185748,1186738,1187045,1190781,1193357,428177,431945,589441,613497,637176,657698,658604,673071,715423,743787,747125,750618,751718,754447,754677,761500,784670,787526,799119,809831,811890,825221,828513,831629,834601,835687,839107,84331,855666,858239,867887,871152,885662,885882,889363,892480,898917,907584,912460,913229,915479,917607,917759,917815,922448,929736,930189,931978,935856,937912,939456,940608,942385,942751,944204,945455,946648,947357,947679,948198,954486,954690,961334,962291,963974,964204,964472,964474,965830,967128,968270,968601,975875,981848,988086,992988,992989,992992,993130,993825,993968,994910,996255,997614
CVE References: CVE-2011-3389,CVE-2011-4944,CVE-2012-0845,CVE-2012-1150,CVE-2013-1437,CVE-2013-1752,CVE-2013-4238,CVE-2013-4314,CVE-2014-0012,CVE-2014-1829,CVE-2014-1830,CVE-2014-2667,CVE-2014-4650,CVE-2014-7202,CVE-2014-7203,CVE-2014-9721,CVE-2015-2296,CVE-2016-10745,CVE-2016-1238,CVE-2016-9015,CVE-2017-18342,CVE-2017-6512,CVE-2018-18074,CVE-2018-20060,CVE-2018-7750,CVE-2019-10906,CVE-2019-11236,CVE-2019-11324,CVE-2019-13132,CVE-2019-20907,CVE-2019-20916,CVE-2019-5010,CVE-2019-6250,CVE-2019-8341,CVE-2019-9740,CVE-2019-9947,CVE-2020-14343,CVE-2020-15166,CVE-2020-15523,CVE-2020-15801,CVE-2020-1747,CVE-2020-25659,CVE-2020-26137,CVE-2020-27783,CVE-2020-28493,CVE-2020-29651,CVE-2020-36242,CVE-2020-8492,CVE-2021-23336,CVE-2021-28957,CVE-2021-29921,CVE-2021-3177,CVE-2021-33503,CVE-2021-3426
JIRA References: ECO-3105,SLE-12986,SLE-17532,SLE-17957,SLE-7686,SLE-9135
Sources used:

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 30 Swamp Workflow Management 2022-02-16 21:05:51 UTC
SUSE-FU-2022:0445-1: An update that solves 183 vulnerabilities, contains 21 features and has 299 fixes is now available.

Category: feature (moderate)
Bug References: 1000080,1000117,1000194,1000677,1000742,1001148,1001912,1002585,1002895,1003091,1005246,1009528,1010874,1010966,1011936,1015549,1019637,1021641,1022085,1022086,1022271,1027079,1027610,1027688,1027705,1027908,1028281,1028723,1029523,1029902,1030038,1032118,1032119,1035604,1039469,1040164,1040256,1041090,1042392,1042670,1044095,1044107,1044175,1049186,1049304,1050653,1050665,1055478,1055542,1055825,1056058,1056951,1057496,1062237,1065363,1066242,1066873,1068790,1070737,1070738,1070853,1071905,1071906,1071941,1073310,1073845,1073879,1074247,1076519,1077096,1077230,1078329,1079761,1080301,1081005,1081750,1081751,1082155,1082163,1082318,1083826,1084117,1084157,1085276,1085529,1085661,1087102,1087104,1088573,1089039,1090427,1090765,1090953,1093518,1093917,1094788,1094814,1094883,1095267,1096738,1096937,1097158,1097531,1097624,1098535,1098592,1099308,1099569,1100078,1101246,1101470,1102868,1104789,1106197,1108508,1109882,1109998,1110435,1110869,1110871,1111493,1111622,1111657,1112209,1112357,1113534,1113652,1113742,1113975,1115769,1117951,1118611,1119376,1119416,1119792,1121717,1121852,1122191,1123064,1123185,1123186,1123558,1124885,1125815,1126283,1126318,1127080,1127173,1128146,1128323,1128355,1129071,1129566,1130840,1131291,1132174,1132323,1132455,1132663,1132900,1135009,1136444,1138666,1138715,1138746,1139915,1140255,1141168,1142899,1143033,1143454,1143893,1144506,1149686,1149792,1150003,1150190,1150250,1150895,1153830,1155815,1156677,1156694,1156908,1157104,1157354,1158809,1159235,1159538,1160163,1161557,1161770,1162224,1162367,1162743,1163978,1164310,1165439,1165578,1165730,1165823,1165960,1166139,1166758,1167008,1167501,1167732,1167746,1168480,1168973,1169489,1170175,1170863,1171368,1171561,1172226,1172908,1172928,1173226,1173356,1174009,1174091,1174514,1175729,1176116,1176129,1176134,1176232,1176256,1176257,1176258,1176259,1176262,1176389,1176785,1176977,1177120,1177127,1177559,1178168,1178341,1178670,1179491,1179562,1179630,1179805,1180125,1180781,1181126,1181324,1181944,1182066,1182211,1182244,1182264,1182331,1182333,1182379,1182963,1183059,1183374,1183858,1184505,1185588,1185706,1185748,1186738,1187045,1189521,1190781,1193357,356549,381844,394317,408865,428177,430141,431945,437293,442740,459468,489641,504687,509031,526319,590833,610223,610642,629905,637176,651003,657698,658604,670526,673071,693027,715423,720601,743787,747125,748738,749210,749213,749735,750618,751718,751946,751977,754447,754677,761500,774710,784670,784994,787526,793420,799119,802184,803004,809831,811890,822642,825221,828513,831629,832833,834601,835687,839107,84331,849377,855666,855676,856687,857203,857850,858239,867887,869945,871152,872299,873351,876282,876710,876712,876748,880891,885662,885882,889013,889363,892477,892480,895129,898917,901223,901277,901902,902364,906878,907584,908362,908372,912014,912015,912018,912292,912293,912294,912296,912460,913229,915479,917607,917759,917815,919648,920236,922448,922488,922496,922499,922500,926597,929678,929736,930189,931698,931978,933898,933911,934487,934489,934491,934493,935856,937085,937212,937492,937634,937912,939456,940608,942385,942751,943421,944204,945455,946648,947104,947357,947679,948198,952871,954256,954486,954690,957812,957813,957815,958501,961334,962291,963415,963974,964204,964472,964474,965830,967128,968046,968047,968048,968050,968265,968270,968374,968601,975875,976942,977584,977614,977615,977616,977663,978224,981848,982268,982575,983249,984323,985054,988086,990207,990392,990419,990428,991193,991877,992120,992988,992989,992992,993130,993819,993825,993968,994749,994844,994910,995075,995324,995359,995377,995959,996255,997043,997614,998190,999665,999666,999668
CVE References: CVE-2006-2937,CVE-2006-2940,CVE-2006-3738,CVE-2006-4339,CVE-2006-4343,CVE-2006-7250,CVE-2007-3108,CVE-2007-4995,CVE-2007-5135,CVE-2008-0891,CVE-2008-1672,CVE-2008-5077,CVE-2009-0590,CVE-2009-0591,CVE-2009-0789,CVE-2009-1377,CVE-2009-1378,CVE-2009-1379,CVE-2009-1386,CVE-2009-1387,CVE-2010-0740,CVE-2010-0742,CVE-2010-1633,CVE-2010-2939,CVE-2010-3864,CVE-2010-5298,CVE-2011-0014,CVE-2011-3207,CVE-2011-3210,CVE-2011-3389,CVE-2011-4108,CVE-2011-4576,CVE-2011-4577,CVE-2011-4619,CVE-2011-4944,CVE-2012-0027,CVE-2012-0050,CVE-2012-0845,CVE-2012-0884,CVE-2012-1150,CVE-2012-1165,CVE-2012-2110,CVE-2012-2686,CVE-2012-4929,CVE-2013-0166,CVE-2013-0169,CVE-2013-1752,CVE-2013-4238,CVE-2013-4314,CVE-2013-4353,CVE-2013-6449,CVE-2013-6450,CVE-2014-0012,CVE-2014-0076,CVE-2014-0160,CVE-2014-0195,CVE-2014-0198,CVE-2014-0221,CVE-2014-0224,CVE-2014-1829,CVE-2014-1830,CVE-2014-2667,CVE-2014-3470,CVE-2014-3505,CVE-2014-3506,CVE-2014-3507,CVE-2014-3508,CVE-2014-3509,CVE-2014-3510,CVE-2014-3511,CVE-2014-3512,CVE-2014-3513,CVE-2014-3566,CVE-2014-3567,CVE-2014-3568,CVE-2014-3570,CVE-2014-3571,CVE-2014-3572,CVE-2014-4650,CVE-2014-5139,CVE-2014-7202,CVE-2014-7203,CVE-2014-8275,CVE-2014-9721,CVE-2015-0204,CVE-2015-0205,CVE-2015-0206,CVE-2015-0209,CVE-2015-0286,CVE-2015-0287,CVE-2015-0288,CVE-2015-0289,CVE-2015-0293,CVE-2015-1788,CVE-2015-1789,CVE-2015-1790,CVE-2015-1791,CVE-2015-1792,CVE-2015-2296,CVE-2015-3194,CVE-2015-3195,CVE-2015-3196,CVE-2015-3197,CVE-2015-3216,CVE-2015-4000,CVE-2016-0702,CVE-2016-0705,CVE-2016-0797,CVE-2016-0798,CVE-2016-0799,CVE-2016-0800,CVE-2016-10745,CVE-2016-2105,CVE-2016-2106,CVE-2016-2107,CVE-2016-2109,CVE-2016-2176,CVE-2016-2177,CVE-2016-2178,CVE-2016-2179,CVE-2016-2180,CVE-2016-2181,CVE-2016-2182,CVE-2016-2183,CVE-2016-6302,CVE-2016-6303,CVE-2016-6304,CVE-2016-6306,CVE-2016-7052,CVE-2016-7055,CVE-2016-9015,CVE-2017-18342,CVE-2017-3731,CVE-2017-3732,CVE-2017-3735,CVE-2017-3736,CVE-2017-3737,CVE-2017-3738,CVE-2018-0732,CVE-2018-0734,CVE-2018-0737,CVE-2018-0739,CVE-2018-18074,CVE-2018-20060,CVE-2018-5407,CVE-2018-7750,CVE-2019-10906,CVE-2019-11236,CVE-2019-11324,CVE-2019-13132,CVE-2019-1547,CVE-2019-1551,CVE-2019-1559,CVE-2019-1563,CVE-2019-20907,CVE-2019-20916,CVE-2019-5010,CVE-2019-6250,CVE-2019-8341,CVE-2019-9740,CVE-2019-9947,CVE-2020-14343,CVE-2020-15166,CVE-2020-15523,CVE-2020-15801,CVE-2020-1747,CVE-2020-1971,CVE-2020-25659,CVE-2020-26137,CVE-2020-27783,CVE-2020-28493,CVE-2020-29651,CVE-2020-36242,CVE-2020-8492,CVE-2021-23336,CVE-2021-23840,CVE-2021-23841,CVE-2021-28957,CVE-2021-29921,CVE-2021-3177,CVE-2021-33503,CVE-2021-3426,CVE-2021-3712
JIRA References: ECO-3105,SLE-11435,SLE-12684,SLE-12986,SLE-13688,SLE-14253,SLE-15159,SLE-15860,SLE-15861,SLE-16754,SLE-17532,SLE-17957,SLE-18260,SLE-18354,SLE-18446,SLE-19264,SLE-3887,SLE-4480,SLE-4577,SLE-7686,SLE-9135
Sources used:
SUSE Manager Tools 12-BETA (src):    venv-salt-minion-3002.2-3.3.2

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 31 Swamp Workflow Management 2022-02-16 21:44:20 UTC
SUSE-FU-2022:0456-1: An update that solves 54 vulnerabilities, contains 6 features and has 247 fixes is now available.

Category: feature (moderate)
Bug References: 1000080,1000117,1000194,1000742,1002895,1003091,1005246,1010874,1010966,1011936,1015549,1027610,1027705,1029902,1030038,1032118,1032119,1035604,1039469,1040164,1040256,1041090,1042670,1049186,1049304,1050653,1050665,1055478,1055542,1056951,1057496,1062237,1066873,1068790,1070737,1070738,1070853,1071941,1073310,1073845,1073879,1074247,1076519,1077096,1077230,1078329,1079761,1080301,1081005,1081750,1081751,1082155,1082163,1082318,1083826,1084117,1084157,1085276,1085529,1085661,1087104,1088573,1090427,1090953,1093518,1093917,1094788,1094814,1094883,1095267,1096738,1096937,1097531,1098535,1099308,1099569,1102868,1108508,1109882,1109998,1110435,1110869,1110871,1111493,1111622,1111657,1112357,1115769,1118611,1119376,1119416,1119792,1121717,1121852,1122191,1123064,1123185,1123186,1123558,1124885,1125815,1126283,1126318,1127173,1128146,1128323,1128355,1129071,1129566,1130840,1132174,1132323,1132455,1132663,1132900,1135009,1136444,1138666,1138715,1138746,1139915,1140255,1141168,1142899,1143033,1143454,1143893,1144506,1149686,1149792,1150190,1150895,1153830,1155815,1156677,1156694,1156908,1157104,1157354,1159235,1159538,1161557,1161770,1162224,1162367,1162743,1163978,1164310,1165439,1165578,1165730,1165823,1165960,1166139,1166758,1167008,1167501,1167732,1167746,1168480,1168973,1169489,1170175,1170863,1171368,1171561,1172226,1172908,1172928,1173226,1173356,1174009,1174091,1174514,1175729,1176116,1176129,1176134,1176232,1176256,1176257,1176258,1176259,1176262,1176389,1176785,1176977,1177120,1177127,1178168,1178341,1178670,1179562,1179630,1179805,1180125,1180781,1181126,1181324,1181944,1182066,1182211,1182244,1182264,1182379,1182963,1183059,1183374,1183858,1184505,1185588,1185706,1185748,1186738,1187045,1190781,1193357,428177,431945,589441,613497,637176,657698,658604,673071,715423,743787,747125,750618,751718,754447,754677,761500,784670,787526,799119,809831,811890,825221,828513,831629,834601,835687,839107,84331,855666,858239,867887,871152,885662,885882,889363,892480,898917,907584,912460,913229,915479,917607,917759,917815,922448,929736,930189,931978,935856,937912,939456,940608,942385,942751,944204,945455,946648,947357,947679,948198,954486,954690,961334,962291,963974,964204,964472,964474,965830,967128,968270,968601,975875,981848,988086,992988,992989,992992,993130,993825,993968,994910,996255,997614
CVE References: CVE-2011-3389,CVE-2011-4944,CVE-2012-0845,CVE-2012-1150,CVE-2013-1437,CVE-2013-1752,CVE-2013-4238,CVE-2013-4314,CVE-2014-0012,CVE-2014-1829,CVE-2014-1830,CVE-2014-2667,CVE-2014-4650,CVE-2014-7202,CVE-2014-7203,CVE-2014-9721,CVE-2015-2296,CVE-2016-10745,CVE-2016-1238,CVE-2016-9015,CVE-2017-18342,CVE-2017-6512,CVE-2018-18074,CVE-2018-20060,CVE-2018-7750,CVE-2019-10906,CVE-2019-11236,CVE-2019-11324,CVE-2019-13132,CVE-2019-20907,CVE-2019-20916,CVE-2019-5010,CVE-2019-6250,CVE-2019-8341,CVE-2019-9740,CVE-2019-9947,CVE-2020-14343,CVE-2020-15166,CVE-2020-15523,CVE-2020-15801,CVE-2020-1747,CVE-2020-25659,CVE-2020-26137,CVE-2020-27783,CVE-2020-28493,CVE-2020-29651,CVE-2020-36242,CVE-2020-8492,CVE-2021-23336,CVE-2021-28957,CVE-2021-29921,CVE-2021-3177,CVE-2021-33503,CVE-2021-3426
JIRA References: ECO-3105,SLE-12986,SLE-17532,SLE-17957,SLE-7686,SLE-9135
Sources used:

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 32 Swamp Workflow Management 2022-02-16 22:10:58 UTC
SUSE-FU-2022:0450-1: An update that solves 54 vulnerabilities, contains 6 features and has 247 fixes is now available.

Category: feature (moderate)
Bug References: 1000080,1000117,1000194,1000742,1002895,1003091,1005246,1010874,1010966,1011936,1015549,1027610,1027705,1029902,1030038,1032118,1032119,1035604,1039469,1040164,1040256,1041090,1042670,1049186,1049304,1050653,1050665,1055478,1055542,1056951,1057496,1062237,1066873,1068790,1070737,1070738,1070853,1071941,1073310,1073845,1073879,1074247,1076519,1077096,1077230,1078329,1079761,1080301,1081005,1081750,1081751,1082155,1082163,1082318,1083826,1084117,1084157,1085276,1085529,1085661,1087104,1088573,1090427,1090953,1093518,1093917,1094788,1094814,1094883,1095267,1096738,1096937,1097531,1098535,1099308,1099569,1102868,1108508,1109882,1109998,1110435,1110869,1110871,1111493,1111622,1111657,1112357,1115769,1118611,1119376,1119416,1119792,1121717,1121852,1122191,1123064,1123185,1123186,1123558,1124885,1125815,1126283,1126318,1127173,1128146,1128323,1128355,1129071,1129566,1130840,1132174,1132323,1132455,1132663,1132900,1135009,1136444,1138666,1138715,1138746,1139915,1140255,1141168,1142899,1143033,1143454,1143893,1144506,1149686,1149792,1150190,1150895,1153830,1155815,1156677,1156694,1156908,1157104,1157354,1159235,1159538,1161557,1161770,1162224,1162367,1162743,1163978,1164310,1165439,1165578,1165730,1165823,1165960,1166139,1166758,1167008,1167501,1167732,1167746,1168480,1168973,1169489,1170175,1170863,1171368,1171561,1172226,1172908,1172928,1173226,1173356,1174009,1174091,1174514,1175729,1176116,1176129,1176134,1176232,1176256,1176257,1176258,1176259,1176262,1176389,1176785,1176977,1177120,1177127,1178168,1178341,1178670,1179562,1179630,1179805,1180125,1180781,1181126,1181324,1181944,1182066,1182211,1182244,1182264,1182379,1182963,1183059,1183374,1183858,1184505,1185588,1185706,1185748,1186738,1187045,1190781,1193357,428177,431945,589441,613497,637176,657698,658604,673071,715423,743787,747125,750618,751718,754447,754677,761500,784670,787526,799119,809831,811890,825221,828513,831629,834601,835687,839107,84331,855666,858239,867887,871152,885662,885882,889363,892480,898917,907584,912460,913229,915479,917607,917759,917815,922448,929736,930189,931978,935856,937912,939456,940608,942385,942751,944204,945455,946648,947357,947679,948198,954486,954690,961334,962291,963974,964204,964472,964474,965830,967128,968270,968601,975875,981848,988086,992988,992989,992992,993130,993825,993968,994910,996255,997614
CVE References: CVE-2011-3389,CVE-2011-4944,CVE-2012-0845,CVE-2012-1150,CVE-2013-1437,CVE-2013-1752,CVE-2013-4238,CVE-2013-4314,CVE-2014-0012,CVE-2014-1829,CVE-2014-1830,CVE-2014-2667,CVE-2014-4650,CVE-2014-7202,CVE-2014-7203,CVE-2014-9721,CVE-2015-2296,CVE-2016-10745,CVE-2016-1238,CVE-2016-9015,CVE-2017-18342,CVE-2017-6512,CVE-2018-18074,CVE-2018-20060,CVE-2018-7750,CVE-2019-10906,CVE-2019-11236,CVE-2019-11324,CVE-2019-13132,CVE-2019-20907,CVE-2019-20916,CVE-2019-5010,CVE-2019-6250,CVE-2019-8341,CVE-2019-9740,CVE-2019-9947,CVE-2020-14343,CVE-2020-15166,CVE-2020-15523,CVE-2020-15801,CVE-2020-1747,CVE-2020-25659,CVE-2020-26137,CVE-2020-27783,CVE-2020-28493,CVE-2020-29651,CVE-2020-36242,CVE-2020-8492,CVE-2021-23336,CVE-2021-28957,CVE-2021-29921,CVE-2021-3177,CVE-2021-33503,CVE-2021-3426
JIRA References: ECO-3105,SLE-12986,SLE-17532,SLE-17957,SLE-7686,SLE-9135
Sources used:

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 33 Swamp Workflow Management 2022-02-16 22:37:42 UTC
SUSE-FU-2022:0444-1: An update that solves 51 vulnerabilities, contains 21 features and has 249 fixes is now available.

Category: feature (moderate)
Bug References: 1000080,1000117,1000194,1000742,1002895,1003091,1005246,1010874,1010966,1011936,1015549,1027610,1027705,1029902,1030038,1032118,1032119,1035604,1039469,1040164,1040256,1041090,1042670,1049186,1049304,1050653,1050665,1055478,1055542,1056951,1057496,1062237,1066873,1068790,1070737,1070738,1070853,1071941,1073310,1073845,1073879,1074247,1076519,1077096,1077230,1078329,1079761,1080301,1081005,1081750,1081751,1082155,1082163,1082318,1083826,1084117,1084157,1085276,1085529,1085661,1087104,1088573,1090427,1090953,1093518,1093917,1094788,1094814,1094883,1095267,1096738,1096937,1097531,1098535,1099308,1099569,1102868,1108508,1109882,1109998,1110435,1110869,1110871,1111493,1111622,1111657,1112357,1115769,1118611,1119376,1119416,1119792,1121717,1121852,1122191,1123064,1123185,1123186,1123558,1124885,1125815,1126283,1126318,1127173,1128146,1128323,1128355,1129071,1129566,1130840,1132174,1132323,1132455,1132663,1132900,1135009,1136444,1138666,1138715,1138746,1139915,1140255,1141168,1142899,1143033,1143454,1143893,1144506,1149686,1149792,1150190,1150895,1153830,1155815,1156677,1156694,1156908,1157104,1157354,1159235,1159538,1161557,1161770,1162224,1162367,1162743,1163978,1164310,1165439,1165578,1165730,1165823,1165960,1166139,1166758,1167008,1167501,1167732,1167746,1168480,1168973,1169489,1170175,1170863,1171368,1171561,1172226,1172908,1172928,1173226,1173356,1174009,1174091,1174514,1175729,1176116,1176129,1176134,1176232,1176256,1176257,1176258,1176259,1176262,1176389,1176785,1176977,1177120,1177127,1177559,1178168,1178341,1178670,1179562,1179630,1179805,1180125,1180781,1181126,1181324,1181944,1182066,1182211,1182244,1182264,1182379,1182963,1183059,1183374,1183858,1184505,1185588,1185706,1185748,1186738,1187045,1190781,1193357,428177,431945,637176,657698,658604,673071,715423,743787,747125,750618,751718,754447,754677,761500,784670,787526,799119,809831,811890,825221,828513,831629,834601,835687,839107,84331,855666,858239,867887,871152,885662,885882,889363,892480,898917,907584,912460,913229,915479,917607,917759,917815,922448,929736,930189,931978,935856,937912,939456,940608,942385,942751,944204,945455,946648,947357,947679,948198,954486,954690,961334,962291,963974,964204,964472,964474,965830,967128,968270,968601,975875,981848,988086,992988,992989,992992,993130,993825,993968,994910,996255,997614
CVE References: CVE-2011-3389,CVE-2011-4944,CVE-2012-0845,CVE-2012-1150,CVE-2013-1752,CVE-2013-4238,CVE-2013-4314,CVE-2014-0012,CVE-2014-1829,CVE-2014-1830,CVE-2014-2667,CVE-2014-4650,CVE-2014-7202,CVE-2014-7203,CVE-2014-9721,CVE-2015-2296,CVE-2016-10745,CVE-2016-9015,CVE-2017-18342,CVE-2018-18074,CVE-2018-20060,CVE-2018-7750,CVE-2019-10906,CVE-2019-11236,CVE-2019-11324,CVE-2019-13132,CVE-2019-20907,CVE-2019-20916,CVE-2019-5010,CVE-2019-6250,CVE-2019-8341,CVE-2019-9740,CVE-2019-9947,CVE-2020-14343,CVE-2020-15166,CVE-2020-15523,CVE-2020-15801,CVE-2020-1747,CVE-2020-25659,CVE-2020-26137,CVE-2020-27783,CVE-2020-28493,CVE-2020-29651,CVE-2020-36242,CVE-2020-8492,CVE-2021-23336,CVE-2021-28957,CVE-2021-29921,CVE-2021-3177,CVE-2021-33503,CVE-2021-3426
JIRA References: ECO-3105,SLE-11435,SLE-12684,SLE-12986,SLE-13688,SLE-14253,SLE-15159,SLE-15860,SLE-15861,SLE-16754,SLE-17532,SLE-17957,SLE-18260,SLE-18354,SLE-18446,SLE-19264,SLE-3887,SLE-4480,SLE-4577,SLE-7686,SLE-9135
Sources used:
SUSE Manager Tools 15-BETA (src):    venv-salt-minion-3002.2-159000.3.3.2

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 34 Swamp Workflow Management 2022-02-16 23:04:29 UTC
SUSE-FU-2022:0452-1: An update that solves 54 vulnerabilities, contains 6 features and has 247 fixes is now available.

Category: feature (moderate)
Bug References: 1000080,1000117,1000194,1000742,1002895,1003091,1005246,1010874,1010966,1011936,1015549,1027610,1027705,1029902,1030038,1032118,1032119,1035604,1039469,1040164,1040256,1041090,1042670,1049186,1049304,1050653,1050665,1055478,1055542,1056951,1057496,1062237,1066873,1068790,1070737,1070738,1070853,1071941,1073310,1073845,1073879,1074247,1076519,1077096,1077230,1078329,1079761,1080301,1081005,1081750,1081751,1082155,1082163,1082318,1083826,1084117,1084157,1085276,1085529,1085661,1087104,1088573,1090427,1090953,1093518,1093917,1094788,1094814,1094883,1095267,1096738,1096937,1097531,1098535,1099308,1099569,1102868,1108508,1109882,1109998,1110435,1110869,1110871,1111493,1111622,1111657,1112357,1115769,1118611,1119376,1119416,1119792,1121717,1121852,1122191,1123064,1123185,1123186,1123558,1124885,1125815,1126283,1126318,1127173,1128146,1128323,1128355,1129071,1129566,1130840,1132174,1132323,1132455,1132663,1132900,1135009,1136444,1138666,1138715,1138746,1139915,1140255,1141168,1142899,1143033,1143454,1143893,1144506,1149686,1149792,1150190,1150895,1153830,1155815,1156677,1156694,1156908,1157104,1157354,1159235,1159538,1161557,1161770,1162224,1162367,1162743,1163978,1164310,1165439,1165578,1165730,1165823,1165960,1166139,1166758,1167008,1167501,1167732,1167746,1168480,1168973,1169489,1170175,1170863,1171368,1171561,1172226,1172908,1172928,1173226,1173356,1174009,1174091,1174514,1175729,1176116,1176129,1176134,1176232,1176256,1176257,1176258,1176259,1176262,1176389,1176785,1176977,1177120,1177127,1178168,1178341,1178670,1179562,1179630,1179805,1180125,1180781,1181126,1181324,1181944,1182066,1182211,1182244,1182264,1182379,1182963,1183059,1183374,1183858,1184505,1185588,1185706,1185748,1186738,1187045,1190781,1193357,428177,431945,589441,613497,637176,657698,658604,673071,715423,743787,747125,750618,751718,754447,754677,761500,784670,787526,799119,809831,811890,825221,828513,831629,834601,835687,839107,84331,855666,858239,867887,871152,885662,885882,889363,892480,898917,907584,912460,913229,915479,917607,917759,917815,922448,929736,930189,931978,935856,937912,939456,940608,942385,942751,944204,945455,946648,947357,947679,948198,954486,954690,961334,962291,963974,964204,964472,964474,965830,967128,968270,968601,975875,981848,988086,992988,992989,992992,993130,993825,993968,994910,996255,997614
CVE References: CVE-2011-3389,CVE-2011-4944,CVE-2012-0845,CVE-2012-1150,CVE-2013-1437,CVE-2013-1752,CVE-2013-4238,CVE-2013-4314,CVE-2014-0012,CVE-2014-1829,CVE-2014-1830,CVE-2014-2667,CVE-2014-4650,CVE-2014-7202,CVE-2014-7203,CVE-2014-9721,CVE-2015-2296,CVE-2016-10745,CVE-2016-1238,CVE-2016-9015,CVE-2017-18342,CVE-2017-6512,CVE-2018-18074,CVE-2018-20060,CVE-2018-7750,CVE-2019-10906,CVE-2019-11236,CVE-2019-11324,CVE-2019-13132,CVE-2019-20907,CVE-2019-20916,CVE-2019-5010,CVE-2019-6250,CVE-2019-8341,CVE-2019-9740,CVE-2019-9947,CVE-2020-14343,CVE-2020-15166,CVE-2020-15523,CVE-2020-15801,CVE-2020-1747,CVE-2020-25659,CVE-2020-26137,CVE-2020-27783,CVE-2020-28493,CVE-2020-29651,CVE-2020-36242,CVE-2020-8492,CVE-2021-23336,CVE-2021-28957,CVE-2021-29921,CVE-2021-3177,CVE-2021-33503,CVE-2021-3426
JIRA References: ECO-3105,SLE-12986,SLE-17532,SLE-17957,SLE-7686,SLE-9135
Sources used:

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 35 Swamp Workflow Management 2022-02-16 23:31:22 UTC
SUSE-FU-2022:0447-1: An update that solves 54 vulnerabilities, contains 6 features and has 247 fixes is now available.

Category: feature (moderate)
Bug References: 1000080,1000117,1000194,1000742,1002895,1003091,1005246,1010874,1010966,1011936,1015549,1027610,1027705,1029902,1030038,1032118,1032119,1035604,1039469,1040164,1040256,1041090,1042670,1049186,1049304,1050653,1050665,1055478,1055542,1056951,1057496,1062237,1066873,1068790,1070737,1070738,1070853,1071941,1073310,1073845,1073879,1074247,1076519,1077096,1077230,1078329,1079761,1080301,1081005,1081750,1081751,1082155,1082163,1082318,1083826,1084117,1084157,1085276,1085529,1085661,1087104,1088573,1090427,1090953,1093518,1093917,1094788,1094814,1094883,1095267,1096738,1096937,1097531,1098535,1099308,1099569,1102868,1108508,1109882,1109998,1110435,1110869,1110871,1111493,1111622,1111657,1112357,1115769,1118611,1119376,1119416,1119792,1121717,1121852,1122191,1123064,1123185,1123186,1123558,1124885,1125815,1126283,1126318,1127173,1128146,1128323,1128355,1129071,1129566,1130840,1132174,1132323,1132455,1132663,1132900,1135009,1136444,1138666,1138715,1138746,1139915,1140255,1141168,1142899,1143033,1143454,1143893,1144506,1149686,1149792,1150190,1150895,1153830,1155815,1156677,1156694,1156908,1157104,1157354,1159235,1159538,1161557,1161770,1162224,1162367,1162743,1163978,1164310,1165439,1165578,1165730,1165823,1165960,1166139,1166758,1167008,1167501,1167732,1167746,1168480,1168973,1169489,1170175,1170863,1171368,1171561,1172226,1172908,1172928,1173226,1173356,1174009,1174091,1174514,1175729,1176116,1176129,1176134,1176232,1176256,1176257,1176258,1176259,1176262,1176389,1176785,1176977,1177120,1177127,1178168,1178341,1178670,1179562,1179630,1179805,1180125,1180781,1181126,1181324,1181944,1182066,1182211,1182244,1182264,1182379,1182963,1183059,1183374,1183858,1184505,1185588,1185706,1185748,1186738,1187045,1190781,1193357,428177,431945,589441,613497,637176,657698,658604,673071,715423,743787,747125,750618,751718,754447,754677,761500,784670,787526,799119,809831,811890,825221,828513,831629,834601,835687,839107,84331,855666,858239,867887,871152,885662,885882,889363,892480,898917,907584,912460,913229,915479,917607,917759,917815,922448,929736,930189,931978,935856,937912,939456,940608,942385,942751,944204,945455,946648,947357,947679,948198,954486,954690,961334,962291,963974,964204,964472,964474,965830,967128,968270,968601,975875,981848,988086,992988,992989,992992,993130,993825,993968,994910,996255,997614
CVE References: CVE-2011-3389,CVE-2011-4944,CVE-2012-0845,CVE-2012-1150,CVE-2013-1437,CVE-2013-1752,CVE-2013-4238,CVE-2013-4314,CVE-2014-0012,CVE-2014-1829,CVE-2014-1830,CVE-2014-2667,CVE-2014-4650,CVE-2014-7202,CVE-2014-7203,CVE-2014-9721,CVE-2015-2296,CVE-2016-10745,CVE-2016-1238,CVE-2016-9015,CVE-2017-18342,CVE-2017-6512,CVE-2018-18074,CVE-2018-20060,CVE-2018-7750,CVE-2019-10906,CVE-2019-11236,CVE-2019-11324,CVE-2019-13132,CVE-2019-20907,CVE-2019-20916,CVE-2019-5010,CVE-2019-6250,CVE-2019-8341,CVE-2019-9740,CVE-2019-9947,CVE-2020-14343,CVE-2020-15166,CVE-2020-15523,CVE-2020-15801,CVE-2020-1747,CVE-2020-25659,CVE-2020-26137,CVE-2020-27783,CVE-2020-28493,CVE-2020-29651,CVE-2020-36242,CVE-2020-8492,CVE-2021-23336,CVE-2021-28957,CVE-2021-29921,CVE-2021-3177,CVE-2021-33503,CVE-2021-3426
JIRA References: ECO-3105,SLE-12986,SLE-17532,SLE-17957,SLE-7686,SLE-9135
Sources used:

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 36 OBSbugzilla Bot 2022-04-11 16:50:04 UTC
This is an autogenerated message for OBS integration:
This bug (1178168) was mentioned in
https://build.opensuse.org/request/show/969246 Factory / python-cryptography
Comment 49 Maintenance Automation 2023-03-02 16:30:01 UTC
SUSE-SU-2023:0604-1: An update that solves two vulnerabilities, contains one feature and has two fixes can now be installed.

Category: security (important)
Bug References: 1178168, 1182066, 1198331, 1199282
CVE References: CVE-2020-25659, CVE-2020-36242
Jira References: SLE-24629
Sources used:
SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (src): python-cryptography-3.3.2-150200.16.1
SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (src): python-cryptography-3.3.2-150200.16.1
SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (src): python-cryptography-3.3.2-150200.16.1
SUSE Linux Enterprise Real Time 15 SP3 (src): python-cryptography-3.3.2-150200.16.1
SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (src): python-cryptography-3.3.2-150200.16.1
SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (src): python-cryptography-3.3.2-150200.16.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2 (src): python-cryptography-3.3.2-150200.16.1
SUSE Linux Enterprise Server for SAP Applications 15 SP3 (src): python-cryptography-3.3.2-150200.16.1
SUSE Manager Proxy 4.2 (src): python-cryptography-3.3.2-150200.16.1
SUSE Manager Retail Branch Server 4.2 (src): python-cryptography-3.3.2-150200.16.1
SUSE Manager Server 4.2 (src): python-cryptography-3.3.2-150200.16.1
SUSE Enterprise Storage 7.1 (src): python-cryptography-3.3.2-150200.16.1
SUSE Enterprise Storage 7 (src): python-cryptography-3.3.2-150200.16.1
SUSE Linux Enterprise Micro 5.1 (src): python-cryptography-3.3.2-150200.16.1
SUSE Linux Enterprise Micro 5.2 (src): python-cryptography-3.3.2-150200.16.1
SUSE Linux Enterprise Micro for Rancher 5.2 (src): python-cryptography-3.3.2-150200.16.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 51 Maintenance Automation 2023-07-05 08:30:05 UTC
SUSE-SU-2023:2783-1: An update that solves seven vulnerabilities, contains two features and has seven fixes can now be installed.

Category: security (important)
Bug References: 1099269, 1133277, 1144068, 1162343, 1177127, 1178168, 1182066, 1184753, 1194530, 1197726, 1198331, 1199282, 1203681, 1204256
CVE References: CVE-2018-1000518, CVE-2020-25659, CVE-2020-36242, CVE-2021-22569, CVE-2021-22570, CVE-2022-1941, CVE-2022-3171
Jira References: PM-3243, SLE-24629
Sources used:
openSUSE Leap 15.4 (src): python-zope.interface-4.4.2-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1, python-humanfriendly-10.0-150100.6.3.3, python-websocket-client-1.3.2-150100.6.7.3, python-jsondiff-1.3.0-150100.3.6.3, python-knack-0.9.0-150100.3.7.3, python-hyperlink-17.2.1-150000.3.4.1, azure-cli-core-2.17.1-150100.6.18.1
SUSE Linux Enterprise Server 15 SP1 (src): protobuf-3.9.2-150100.8.3.3
Basesystem Module 15-SP4 (src): python-websocket-client-1.3.2-150100.6.7.3
Basesystem Module 15-SP5 (src): python-websocket-client-1.3.2-150100.6.7.3
SUSE Package Hub 15 15-SP5 (src): python-humanfriendly-10.0-150100.6.3.3
Public Cloud Module 15-SP1 (src): python-pytest-asyncio-0.8.0-150100.3.3.3, python-grpcio-gcp-0.2.2-150100.3.3.3, python-zope.interface-4.4.2-150000.3.4.1, grpc-1.25.0-150100.3.3.3, python-aiocontextvars-0.2.2-150100.3.3.3, protobuf-3.9.2-150100.8.3.3, python-humanfriendly-10.0-150100.6.3.3, python-cryptography-3.3.2-150100.7.15.3, python-cryptography-vectors-3.3.2-150100.3.11.3, python-jsondiff-1.3.0-150100.3.6.3, python-avro-1.11.0-150100.3.3.3, python-knack-0.9.0-150100.3.7.3, python-websockets-9.1-150100.3.3.3, python-opencensus-context-0.1.2-150100.3.3.3, python-opencensus-0.8.0-150100.3.3.3, python-pytest-3.10.1-150000.7.5.1, python-Twisted-17.9.0-150000.3.8.1, python-psutil-5.9.1-150100.6.6.3, python-requests-2.25.1-150100.6.13.3, python-websocket-client-1.3.2-150100.6.7.3, python-opencensus-ext-threading-0.1.2-150100.3.3.3, python-googleapis-common-protos-1.6.0-150100.3.3.3, python-Deprecated-1.2.13-150100.3.3.3, python-PyGithub-1.43.5-150100.3.3.3, azure-cli-core-2.17.1-150100.6.18.1, python-opentelemetry-api-1.5.0-150100.3.3.3, python-google-api-core-1.14.2-150100.3.3.3
Public Cloud Module 15-SP2 (src): python-opencensus-context-0.1.2-150100.3.3.3, python-pytest-asyncio-0.8.0-150100.3.3.3, python-opencensus-0.8.0-150100.3.3.3, python-pytest-3.10.1-150000.7.5.1, python-knack-0.9.0-150100.3.7.3, python-aiocontextvars-0.2.2-150100.3.3.3, python-humanfriendly-10.0-150100.6.3.3, python-opencensus-ext-threading-0.1.2-150100.3.3.3, python-jsondiff-1.3.0-150100.3.6.3, python-avro-1.11.0-150100.3.3.3, python-Deprecated-1.2.13-150100.3.3.3, python-PyGithub-1.43.5-150100.3.3.3, azure-cli-core-2.17.1-150100.6.18.1, python-opentelemetry-api-1.5.0-150100.3.3.3, python-websockets-9.1-150100.3.3.3
Public Cloud Module 15-SP3 (src): python-opencensus-context-0.1.2-150100.3.3.3, python-opencensus-0.8.0-150100.3.3.3, python-knack-0.9.0-150100.3.7.3, python-aiocontextvars-0.2.2-150100.3.3.3, python-humanfriendly-10.0-150100.6.3.3, python-opencensus-ext-threading-0.1.2-150100.3.3.3, python-jsondiff-1.3.0-150100.3.6.3, python-avro-1.11.0-150100.3.3.3, python-Deprecated-1.2.13-150100.3.3.3, python-PyGithub-1.43.5-150100.3.3.3, azure-cli-core-2.17.1-150100.6.18.1, python-opentelemetry-api-1.5.0-150100.3.3.3, python-websockets-9.1-150100.3.3.3
Public Cloud Module 15-SP4 (src): python-opencensus-context-0.1.2-150100.3.3.3, python-opencensus-0.8.0-150100.3.3.3, python-knack-0.9.0-150100.3.7.3, python-aiocontextvars-0.2.2-150100.3.3.3, python-humanfriendly-10.0-150100.6.3.3, python-opencensus-ext-threading-0.1.2-150100.3.3.3, python-cryptography-vectors-3.3.2-150100.3.11.3, python-jsondiff-1.3.0-150100.3.6.3, python-avro-1.11.0-150100.3.3.3, python-Deprecated-1.2.13-150100.3.3.3, python-PyGithub-1.43.5-150100.3.3.3, azure-cli-core-2.17.1-150100.6.18.1, python-opentelemetry-api-1.5.0-150100.3.3.3, python-websockets-9.1-150100.3.3.3
Public Cloud Module 15-SP5 (src): python-humanfriendly-10.0-150100.6.3.3, python-knack-0.9.0-150100.3.7.3, azure-cli-core-2.17.1-150100.6.18.1, python-jsondiff-1.3.0-150100.3.6.3
Server Applications Module 15-SP4 (src): python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
Server Applications Module 15-SP5 (src): python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
SUSE Linux Enterprise High Performance Computing 15 SP1 LTSS 15-SP1 (src): python-psutil-5.9.1-150100.6.6.3, python-requests-2.25.1-150100.6.13.3, python-cryptography-3.3.2-150100.7.15.3, python-websocket-client-1.3.2-150100.6.7.3
SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (src): python-zope.interface-4.4.2-150000.3.4.1, python-psutil-5.9.1-150100.6.6.3, python-requests-2.25.1-150100.6.13.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1, python-Automat-0.6.0-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3
SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (src): python-Automat-0.6.0-150000.3.4.1, python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (src): python-Automat-0.6.0-150000.3.4.1, python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
SUSE Linux Enterprise Real Time 15 SP3 (src): python-Automat-0.6.0-150000.3.4.1, python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
SUSE Linux Enterprise Server 15 SP1 LTSS 15-SP1 (src): python-Twisted-17.9.0-150000.3.8.1, python-zope.interface-4.4.2-150000.3.4.1, python-psutil-5.9.1-150100.6.6.3, python-requests-2.25.1-150100.6.13.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1, protobuf-3.9.2-150100.8.3.3, python-Automat-0.6.0-150000.3.4.1, python-cryptography-3.3.2-150100.7.15.3, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3
SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (src): python-zope.interface-4.4.2-150000.3.4.1, python-psutil-5.9.1-150100.6.6.3, python-requests-2.25.1-150100.6.13.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1, python-Automat-0.6.0-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3
SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (src): python-Automat-0.6.0-150000.3.4.1, python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
SUSE Linux Enterprise Server for SAP Applications 15 SP1 (src): python-Twisted-17.9.0-150000.3.8.1, python-zope.interface-4.4.2-150000.3.4.1, python-psutil-5.9.1-150100.6.6.3, python-requests-2.25.1-150100.6.13.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1, protobuf-3.9.2-150100.8.3.3, python-Automat-0.6.0-150000.3.4.1, python-cryptography-3.3.2-150100.7.15.3, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3
SUSE Linux Enterprise Server for SAP Applications 15 SP2 (src): python-zope.interface-4.4.2-150000.3.4.1, python-psutil-5.9.1-150100.6.6.3, python-requests-2.25.1-150100.6.13.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1, python-Automat-0.6.0-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3
SUSE Linux Enterprise Server for SAP Applications 15 SP3 (src): python-Automat-0.6.0-150000.3.4.1, python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
SUSE Manager Proxy 4.2 (src): python-Automat-0.6.0-150000.3.4.1, python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
SUSE Manager Retail Branch Server 4.2 (src): python-Automat-0.6.0-150000.3.4.1, python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
SUSE Manager Server 4.2 (src): python-Automat-0.6.0-150000.3.4.1, python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
SUSE Enterprise Storage 7.1 (src): python-Automat-0.6.0-150000.3.4.1, python-zope.interface-4.4.2-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1
SUSE Enterprise Storage 7 (src): python-zope.interface-4.4.2-150000.3.4.1, python-psutil-5.9.1-150100.6.6.3, python-requests-2.25.1-150100.6.13.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1, python-Automat-0.6.0-150000.3.4.1, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3
SUSE CaaS Platform 4.0 (src): python-Twisted-17.9.0-150000.3.8.1, python-zope.interface-4.4.2-150000.3.4.1, python-psutil-5.9.1-150100.6.6.3, python-requests-2.25.1-150100.6.13.3, python-incremental-17.5.0-150000.3.4.1, python-constantly-15.1.0-150000.3.4.1, protobuf-3.9.2-150100.8.3.3, python-Automat-0.6.0-150000.3.4.1, python-cryptography-3.3.2-150100.7.15.3, python-hyperlink-17.2.1-150000.3.4.1, python-websocket-client-1.3.2-150100.6.7.3

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 52 Maintenance Automation 2023-09-20 08:30:14 UTC
SUSE-SU-2023:2783-2: An update that solves seven vulnerabilities, contains two features and has seven security fixes can now be installed.

Category: security (important)
Bug References: 1099269, 1133277, 1144068, 1162343, 1177127, 1178168, 1182066, 1184753, 1194530, 1197726, 1198331, 1199282, 1203681, 1204256
CVE References: CVE-2018-1000518, CVE-2020-25659, CVE-2020-36242, CVE-2021-22569, CVE-2021-22570, CVE-2022-1941, CVE-2022-3171
Jira References: PM-3243, SLE-24629
Sources used:
SUSE Linux Enterprise High Performance Computing 15 SP1 LTSS 15-SP1 (src): python-websocket-client-1.3.2-150100.6.7.3, python-cryptography-3.3.2-150100.7.15.3, protobuf-3.9.2-150100.8.3.3, python-requests-2.25.1-150100.6.13.3, python-psutil-5.9.1-150100.6.6.3

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 56 Matej Cepl 2024-02-14 13:21:49 UTC
Shouldn’t this be long closed, and isn’t this a duplicate of bug 1218043?