Security update for salt
This update for salt fixes the following issues: - Fix regression on cmd.run when passing tuples as cmd (bsc#1182740) - Allow `extra_filerefs` as sanitized `kwargs` for SSH client - Fix errors with virt.update - Fix for multiple for security issues (CVE-2020-28243) (CVE-2020-28972) (CVE-2020-35662) (CVE-2021-3148) (CVE-2021-3144) (CVE-2021-25281) (CVE-2021-25282) (CVE-2021-25283) (CVE-2021-25284) (CVE-2021-3197) (bsc#1181550) (bsc#1181556) (bsc#1181557) (bsc#1181558) (bsc#1181559) (bsc#1181560) (bsc#1181561) (bsc#1181562) (bsc#1181563) (bsc#1181564) (bsc#1181565) - virt: search for `grub.xen` path - Xen spicevmc, DNS SRV records backports: - Fix virtual network generated DNS XML for SRV records - Don't add spicevmc channel to xen VMs - virt UEFI fix: virt.update when `efi=True` This update was imported from the SUSE:SLE-15-SP2:Update update project.
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for salt fixes the following issues: - Fix regression on cmd.run when passing tuples as cmd (bsc#1182740) - Allow `extra_filerefs` as sanitized `kwargs` for SSH client - Fix errors with virt.update - Fix for multiple for security issues (CVE-2020-28243) (CVE-2020-28972) (CVE-2020-35662) (CVE-2021-3148) (CVE-2021-3144) (CVE-2021-25281) (CVE-2021-25282) (CVE-2021-25283) (CVE-2021-25284) (CVE-2021-3197) (bsc#1181550) (bsc#1181556) (bsc#1181557) (bsc#1181558) (bsc#1181559) (bsc#1181560) (bsc#1181561) (bsc#1181562) (bsc#1181563) (bsc#1181564) (bsc#1181565) - virt: search for `grub.xen` path - Xen spicevmc, DNS SRV records backports: - Fix virtual network generated DNS XML for SRV records - Don't add spicevmc channel to xen VMs - virt UEFI fix: virt.update when `efi=True` This update was imported from the SUSE:SLE-15-SP2:Update update project.
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1181550
- https://bugzilla.suse.com/1181556
- https://bugzilla.suse.com/1181557
- https://bugzilla.suse.com/1181558
- https://bugzilla.suse.com/1181559
- https://bugzilla.suse.com/1181560
- https://bugzilla.suse.com/1181561
- https://bugzilla.suse.com/1181562
- https://bugzilla.suse.com/1181563
- https://bugzilla.suse.com/1181564
- https://bugzilla.suse.com/1181565
- https://bugzilla.suse.com/1182740
- https://lists.opensuse.org/archives/list/[email protected]/thread/CYH7ONK65HNBANHLED5R64OBSM2EORYI/
- https://www.suse.com/security/cve/CVE-2020-28243
- https://www.suse.com/security/cve/CVE-2020-28972
- https://www.suse.com/security/cve/CVE-2020-35662
- https://www.suse.com/security/cve/CVE-2021-25281
- https://www.suse.com/security/cve/CVE-2021-25282
- https://www.suse.com/security/cve/CVE-2021-25283
- https://www.suse.com/security/cve/CVE-2021-25284
- https://www.suse.com/security/cve/CVE-2021-3144
- https://www.suse.com/security/cve/CVE-2021-3148
- https://www.suse.com/security/cve/CVE-2021-3197