FlawAtlas
Search the atlas
SUSE-SU-2020:14538-1 Not scored

Security update for SUSE Manager Client Tools

This update fixes the following issues: cobbler: - Fix parsing cobbler dictionary options with values containing '=', e.g. kernel params containing '=' (bsc#1176978) mgr-daemon: - Update translation strings salt: - Properly validate eauth credentials and tokens on SSH calls made by Salt API (bsc#1178319, bsc#1178362, bsc#1178361, CVE-2020-25592, CVE-2020-17490, CVE-2020-16846) spacecmd: - Python3 fixes for errata in spacecmd (bsc#1169664) - Added support for i18n of user-facing strings - Python3 fix for sorted usage (bsc#1167907) spacewalk-client-tools: - Remove RH references in Python/Ruby localization and use the product name instead

Exploit probability Not scored
Published November 6, 2020
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Server 11 SP3-CLIENT-TOOLS cobbler
SUSE:Linux Enterprise Server 11 SP3-CLIENT-TOOLS mgr-daemon
SUSE:Linux Enterprise Server 11 SP3-CLIENT-TOOLS salt
SUSE:Linux Enterprise Server 11 SP3-CLIENT-TOOLS spacecmd
SUSE:Linux Enterprise Server 11 SP3-CLIENT-TOOLS spacewalk-client-tools
SUSE:Linux Enterprise Server 11 SP4-CLIENT-TOOLS cobbler
SUSE:Linux Enterprise Server 11 SP4-CLIENT-TOOLS mgr-daemon
SUSE:Linux Enterprise Server 11 SP4-CLIENT-TOOLS salt
SUSE:Linux Enterprise Server 11 SP4-CLIENT-TOOLS spacecmd
SUSE:Linux Enterprise Server 11 SP4-CLIENT-TOOLS spacewalk-client-tools

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2020:14538-1

This update fixes the following issues: cobbler: - Fix parsing cobbler dictionary options with values containing '=', e.g. kernel params containing '=' (bsc#1176978) mgr-daemon: - Update translation strings salt: - Properly validate eauth credentials and tokens on SSH calls made by Salt API (bsc#1178319, bsc#1178362, bsc#1178361, CVE-2020-25592, CVE-2020-17490, CVE-2020-16846) spacecmd: - Python3 fixes for errata in spacecmd (bsc#1169664) - Added support for i18n of user-facing strings - Python3 fix for sorted usage (bsc#1167907) spacewalk-client-tools: - Remove RH references in Python/Ruby localization and use the product name instead

View original source

05 / REFERENCES

Further evidence