SUSE-SU-2017:2964-1
Dashboard / Vulnerabilities / SUSE-SU-2017:2964-1
SUSE-SU-2017:2964-1
Summary: Security update for SUSE Manager Server 3.0
Details: This update fixes the following issues: nutch: - Log Hadoop into proper log dir (bsc#1061574): change-default-log-location.patch salt-netapi-client: See: https://github.com/SUSE/salt-netapi-client/releases/tag/v0.13.0 spacecmd: - Configchannel export binary flag to json (bsc#1044719) spacewalk: - Support postgresql 9.6 (bsc#1045152) spacewalk-backend: - Add hostname to duplicate machine_id email (bsc#1055292) - Fix link to manual and described procedure - Fix SP migration for traditional clients which were registered by a currently disabled user (bsc#1057126) spacewalk-branding: - Disallow entering multiple identical mirror credentials (bsc#971785) - Fix ISE error with invalid custom key id (bsc#1048294) spacewalk-certs-tools: - Do not use registration keys from last autoinstallation (bsc#1057599) spacewalk-java: - Disallow entering multiple identical mirror credentials (bsc#971785) - Fix ISE error with invalid custom key id (bsc#1048294) - Skip the server if no channel can be guessed (bsc#1040420) - Keep the GPG Check value if validation fails (bsc#1061548) - Make systems in system group list selectable by the group admins (bsc#1021432) - Hide non-relevant typed systems in SystemCurrency (bsc#1019097) - Exclude salt systems from the list of target systems for traditional configuration stack installation - Start registration for accepted minions only on the minion start event, not automatically on any event (bsc#1054044) - Extract proxy version from named installed product (bsc#1055467) - Install update stack erratas as a package list (bsc#1049139) - Schedule one action for all selected patches on RHEL (bsc#1038862) - Improve duplicate hostname and transaction handling in minion registration - Display GUI message after successfully deleting custom key (bsc#1048295) - Harmonize presentation of patch information (bsc#1032065) - Fix links on schedule pages (bsc#1059201) - Fix duplicate machine id in event history on minion restart (bsc#1059388) - Show link in message when rescheduling actions (bsc#1032122) - Prevent ISE when distribution does not exist (bsc#1059524) - Do not store registration-keys during autoinstallation (bsc#1057599) - Fix cloning Kickstart Profiles with Custom Options (bsc#1061576) - Checkin the foreign host if a s390 minion finished a job (bsc#971916) - Increase max length of hardware address to 32 bytes (bsc#989991) - Adapt Salt runner and wheel calls to the new error handling introduced in salt-netapi-client-0.12.0 - Change log level and event history for duplicate machine id (bsc#1041489) - Trim spaces around the target expression in the Salt remote command page (bsc#1056678) - Fix a ConstraintViolationException when refreshing hardware with changed network interfaces or IP addresses - Check entitlement usage based on grains when onboarding a minion (bsc#1043880) - Escape failure-text of failed-actions (CVE-2017-7514, bsc#1042265) - Fix minor UI issues on overview page (bsc#1063590) spacewalk-reports: - Add machine_id and minion_id to system-profiles and inventory report (bsc#1054902) spacewalk-web: - Disallow entering multiple identical mirror credentials (bsc#971785) supportutils-plugin-susemanager: - Use correct function validate_rpm for supportconfig (bsc#1062094) susemanager: - Add 'yum-plugin-security' package to RES6 bootstrap rep (bsc#1059319) - Ensure postgres db template uses unicode (bsc#1062476) susemanager-docs_en: - Update text and image files. - Fix some version strings (bsc#1065085) release-notes-susemanager: - Enable SUSE Linux Enterprise 12 SP3 as base OS susemanager-schema: - Re-create unique index on minion_id (bsc#1059568, bsc#1056358) - Increase max length of hardware address to 32 bytes (bsc#989991) susemanager-sls: - Targeting patches instead of packages for non Zypper patch installation (bsc#1038862) - Support xccdf 1.2 namespace in openscap result file (bsc#1059319) - Fix create empty top.sls with no-op (bsc#1053038) - Enabling certificate deployment for Leap 42.3 clients which is needed for bootstrapping How to apply this update: 1. Log in as root user to the SUSE Manager server. 2. Stop the Spacewalk service: spacewalk-service stop 3. Apply the patch using either zypper patch or YaST Online Update. 4. Upgrade the database schema: spacewalk-schema-upgrade 5. Start the Spacewalk service: spacewalk-service start
References: https://www.suse.com/support/update/announcement/2017/suse-su-20172964-1/, https://bugzilla.suse.com/1019097, https://bugzilla.suse.com/1021432, https://bugzilla.suse.com/1032065, https://bugzilla.suse.com/1032122, https://bugzilla.suse.com/1038862, https://bugzilla.suse.com/1040420, https://bugzilla.suse.com/1041489, https://bugzilla.suse.com/1042265, https://bugzilla.suse.com/1043880, https://bugzilla.suse.com/1044719, https://bugzilla.suse.com/1045152, https://bugzilla.suse.com/1048294, https://bugzilla.suse.com/1048295, https://bugzilla.suse.com/1049139, https://bugzilla.suse.com/1053038, https://bugzilla.suse.com/1054044, https://bugzilla.suse.com/1054902, https://bugzilla.suse.com/1055292, https://bugzilla.suse.com/1055467, https://bugzilla.suse.com/1056358, https://bugzilla.suse.com/1056678, https://bugzilla.suse.com/1057126, https://bugzilla.suse.com/1057599, https://bugzilla.suse.com/1059201, https://bugzilla.suse.com/1059319, https://bugzilla.suse.com/1059388, https://bugzilla.suse.com/1059524, https://bugzilla.suse.com/1059568, https://bugzilla.suse.com/1061548, https://bugzilla.suse.com/1061574, https://bugzilla.suse.com/1061576, https://bugzilla.suse.com/1062094, https://bugzilla.suse.com/1062476, https://bugzilla.suse.com/1063590, https://bugzilla.suse.com/1065085, https://bugzilla.suse.com/729910, https://bugzilla.suse.com/971785, https://bugzilla.suse.com/971916, https://bugzilla.suse.com/989991, https://www.suse.com/security/cve/CVE-2017-7514
Affected packages
Package
Name: nutch
Purl: pkg:rpm/suse/nutch&distro=SUSE%20Manager%20Server%203.0
Affected ranges
Type: ECOSYSTEM
Events:
