FlawAtlas
Search the atlas
SUSE-SU-2021:14833-1 Not scored

Security update for SUSE Manager Client Tools

This update fixes the following issues: salt: - Exclude the full path of a download URL to prevent injection of malicious code (bsc#1190265) (CVE-2021-21996) spacecmd: - Version 4.2.13-1 * Update translation strings * configchannel_updatefile handles directory properly (bsc#1190512) * Add schedule_archivecompleted to mass archive actions (bsc#1181223) * Remove whoami from the list of unauthenticated commands (bsc#1188977) spacewalk-client-tools: - Version 4.2.14-1 * Update translation strings

Exploit probability Not scored
Published October 27, 2021
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Server 11 SP3-CLIENT-TOOLS salt
SUSE:Linux Enterprise Server 11 SP3-CLIENT-TOOLS spacecmd
SUSE:Linux Enterprise Server 11 SP3-CLIENT-TOOLS spacewalk-client-tools
SUSE:Linux Enterprise Server 11 SP4-CLIENT-TOOLS salt
SUSE:Linux Enterprise Server 11 SP4-CLIENT-TOOLS spacecmd
SUSE:Linux Enterprise Server 11 SP4-CLIENT-TOOLS spacewalk-client-tools

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2021:14833-1

This update fixes the following issues: salt: - Exclude the full path of a download URL to prevent injection of malicious code (bsc#1190265) (CVE-2021-21996) spacecmd: - Version 4.2.13-1 * Update translation strings * configchannel_updatefile handles directory properly (bsc#1190512) * Add schedule_archivecompleted to mass archive actions (bsc#1181223) * Remove whoami from the list of unauthenticated commands (bsc#1188977) spacewalk-client-tools: - Version 4.2.14-1 * Update translation strings

View original source

05 / REFERENCES

Further evidence