shield Security update for permissions
SUSE-SLE-SERVER-12-SP5-2019-3183


This update for permissions fixes the following issues: Security issues fixed: - CVE-2019-3688: Changed wrong ownership in /usr/sbin/pinger to root:squid which could have allowed a squid user to gain persistence by changing the binary (bsc#1093414). - CVE-2019-3690: Fixed a privilege escalation through untrusted symbolic links (bsc#1150734). Other issue addressed: - Corrected a badly constracted file which could have allowed treating of the shell environment as permissions files (bsc#1097665,bsc#1047247). - Fixed a regression which caused sagmentation fault (bsc#1157198).


cloud_download Downloads

SUSE Linux Enterprise Server 12.5 s390x
  • Packages
    permissions
    SUSE Linux Default Permissions
    20170707-3.14.1
    lock rpm
    lock src
SUSE Linux Enterprise Server 12.5 aarch64
  • Packages
    permissions
    SUSE Linux Default Permissions
    20170707-3.14.1
    lock rpm
    lock src
    20170707-3.14.1
    lock rpm
    lock src
SUSE Linux Enterprise Server 12.5 ppc64le
  • Packages
    permissions
    SUSE Linux Default Permissions
    20170707-3.14.1
    lock rpm
    lock src
SUSE Linux Enterprise Server 12.5 x86_64
  • Packages
    permissions
    SUSE Linux Default Permissions
    20170707-3.14.1
    lock rpm
    lock src