Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2024:1973-1

Опубликовано: 11 июн. 2024
Источник: suse-cvrf

Описание

Security update for rmt-server

This update for rmt-server fixes the following issues:

  • Update to version 2.17
  • CVE-2024-28103: Fixed Permissions-Policy that was only served on responses with an HTML related Content-Type. (bsc#1225997)

Список пакетов

SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
rmt-server-2.17-150200.3.45.1
rmt-server-config-2.17-150200.3.45.1
SUSE Linux Enterprise Module for Public Cloud 15 SP2
rmt-server-pubcloud-2.17-150200.3.45.1
SUSE Linux Enterprise Server 15 SP2-LTSS
rmt-server-2.17-150200.3.45.1
rmt-server-config-2.17-150200.3.45.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
rmt-server-2.17-150200.3.45.1
rmt-server-config-2.17-150200.3.45.1

Описание

Action Pack is a framework for handling and responding to web requests. Since 6.1.0, the application configurable Permissions-Policy is only served on responses with an HTML related Content-Type. This vulnerability is fixed in 6.1.7.8, 7.0.8.2, and 7.1.3.3.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:rmt-server-2.17-150200.3.45.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:rmt-server-config-2.17-150200.3.45.1
SUSE Linux Enterprise Module for Public Cloud 15 SP2:rmt-server-pubcloud-2.17-150200.3.45.1
SUSE Linux Enterprise Server 15 SP2-LTSS:rmt-server-2.17-150200.3.45.1

Ссылки