FlawAtlas
Search the atlas
SUSE-RU-2017:0169-1 Not scored

Recommended update for Salt

This update for Salt fixes one security issue and several non-security issues. The following security issue has been fixed: - Fix possible information leak due to revoked keys still being used. (bsc#1012398, CVE-2016-9639) The following non-security issues have been fixed: - Update to 2015.8.12 - Add pre-require to salt for minions. - Do not restart salt-minion in salt package. - Add try-restart to sys-v init scripts. - Add 'Restart=on-failure' for salt-minion systemd service. - Various fixes for signal handling. - Successfully exit of salt-api child processes when SIGTERM is received. - Re-introduce 'KillMode=process' for salt-minion systemd service. - Fix changing default-timezone. (bsc#1008933)

Exploit probability Not scored
Published January 17, 2017
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Enterprise Storage 3 salt
SUSE:Linux Enterprise Point of Sale 12 SP2 salt
SUSE:Manager Client Tools 12 salt
SUSE:Manager Proxy 3.0 salt
SUSE:Manager Server 3.0 salt

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-RU-2017:0169-1

This update for Salt fixes one security issue and several non-security issues. The following security issue has been fixed: - Fix possible information leak due to revoked keys still being used. (bsc#1012398, CVE-2016-9639) The following non-security issues have been fixed: - Update to 2015.8.12 - Add pre-require to salt for minions. - Do not restart salt-minion in salt package. - Add try-restart to sys-v init scripts. - Add 'Restart=on-failure' for salt-minion systemd service. - Various fixes for signal handling. - Successfully exit of salt-api child processes when SIGTERM is received. - Re-introduce 'KillMode=process' for salt-minion systemd service. - Fix changing default-timezone. (bsc#1008933)

View original source

05 / REFERENCES

Further evidence