Описание
Security update for targetcli-fb
This update for targetcli-fb fixes the following issues:
- CVE-2020-13867: Fixed the permissions in /etc/target (bsc#1172743)
Список пакетов
Image SLES15-SP1-Azure-BYOS
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-Azure-HPC-BYOS
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-EC2-HPC-HVM-BYOS
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-EC2-HVM-BYOS
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-GCE-BYOS
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-Manager-4-0-Azure-BYOS-Proxy
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-Manager-4-0-Azure-BYOS-Server
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-Manager-4-0-EC2-HVM-BYOS-Proxy
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-Manager-4-0-EC2-HVM-BYOS-Server
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-Manager-4-0-GCE-BYOS-Proxy
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-Manager-4-0-GCE-BYOS-Server
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-OCI-BYOS
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAP-Azure
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAP-Azure-BYOS
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAP-Azure-LI-BYOS-Production
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAP-EC2-HVM
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAP-EC2-HVM-BYOS
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAP-GCE
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAP-GCE-BYOS
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAP-OCI-BYOS
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAPCAL-Azure
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAPCAL-EC2-HVM
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-SAPCAL-GCE
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
SUSE Linux Enterprise Module for Basesystem 15 SP1
python3-targetcli-fb-2.1.49-10.9.1
targetcli-fb-common-2.1.49-10.9.1
SUSE Linux Enterprise Module for Python 2 15 SP1
python2-targetcli-fb-2.1.49-10.9.1
Ссылки
- Link for SUSE-SU-2020:2086-1
- E-Mail link for SUSE-SU-2020:2086-1
- SUSE Security Ratings
- SUSE Bug 1172743
- SUSE CVE CVE-2020-13867 page
Описание
Open-iSCSI targetcli-fb through 2.1.52 has weak permissions for /etc/target (and for the backup directory and backup files).
Затронутые продукты
Image SLES15-SP1-Azure-BYOS:python3-targetcli-fb-2.1.49-10.9.1
Image SLES15-SP1-Azure-BYOS:targetcli-fb-common-2.1.49-10.9.1
Image SLES15-SP1-Azure-HPC-BYOS:python3-targetcli-fb-2.1.49-10.9.1
Image SLES15-SP1-Azure-HPC-BYOS:targetcli-fb-common-2.1.49-10.9.1
Ссылки
- CVE-2020-13867
- SUSE Bug 1172743