Operating System:

[SUSE]

Published:

27 August 2019

Protect yourself against future threats.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

===========================================================================
             AUSCERT External Security Bulletin Redistribution

                               ESB-2019.3244
    SUSE-SU-2019:2219-1 Security update for ardana-ansible, ardana-db,
      ardana-freezer, ardana-glance, ardana-input-model, ardana-nova,
     ardana-osconfig, ardana-tempest, caasp-openstack-heat-templates,
         crowbar-core, crowbar-ha, crowbar-openstack, crowbar-ui,
                          documentation-suse-ope
                              27 August 2019

===========================================================================

        AusCERT Security Bulletin Summary
        ---------------------------------

Product:           venv-openstack-neutron
Publisher:         SUSE
Operating System:  SUSE
Impact/Access:     Denial of Service        -- Existing Account
                   Access Confidential Data -- Existing Account
Resolution:        Patch/Upgrade
CVE Names:         CVE-2019-9735 CVE-2017-17051 CVE-2015-3448

Reference:         ESB-2019.2300
                   ESB-2019.1498
                   ESB-2019.1492
                   ESB-2019.0863

Original Bulletin: 
   https://www.suse.com/support/update/announcement/2019/suse-su-20192219-1.html

- --------------------------BEGIN INCLUDED TEXT--------------------

SUSE Security Update: Security update for ardana-ansible, ardana-db,
ardana-freezer, ardana-glance, ardana-input-model, ardana-nova,
ardana-osconfig, ardana-tempest, caasp-openstack-heat-templates, crowbar-core,
crowbar-ha, crowbar-openstack, crowbar-ui, documentation-suse-openstack-cloud,
galera-python-clustercheck, openstack-cinder, openstack-glance, openstack-heat,
openstack-horizon-plugin-monasca-ui, openstack-horizon-plugin-neutron-fwaas-ui,
openstack-ironic, openstack-keystone, openstack-manila,
openstack-monasca-agent, openstack-monasca-api, openstack-monasca-persister,
openstack-monasca-persister-java, openstack-murano, openstack-neutron,
openstack-neutron-gbp, openstack-neutron-lbaas, openstack-nova,
openstack-octavia, python-Beaver, python-oslo.db, python-osprofiler,
python-swiftlm, venv-openstack-magnum, venv-openstack-monasca,
venv-openstack-monasca-ceilometer, venv-openstack-murano,

______________________________________________________________________________

Announcement ID:   SUSE-SU-2019:2219-1
Rating:            moderate
References:        #1070500 #1108818 #1118159 #1120657 #1122053 #1122825
                   #1124170 #1128382 #1128453 #1128783 #1129729 #1132654
                   #1132852 #1133719 #1134495 #1134589 #1136569 #1137377
                   #1137817 #1138124 #1138187 #1138489 #1138967 #1139750
                   #1140512 #1140663 #1142032 #1142521 #1142686 #1143310
Cross-References:  CVE-2015-3448 CVE-2017-17051 CVE-2019-9735
Affected Products:
                   SUSE OpenStack Cloud Crowbar 8
                   SUSE OpenStack Cloud 8
                   HPE Helion Openstack 8
______________________________________________________________________________

venv-openstack-neutron

An update that solves three vulnerabilities and has 27 fixes is now available.

Description:

This update for ardana-ansible, ardana-db, ardana-freezer, ardana-glance,
ardana-input-model, ardana-nova, ardana-osconfig, ardana-tempest,
caasp-openstack-heat-templates, crowbar-core, crowbar-ha, crowbar-openstack,
crowbar-ui, documentation-suse-openstack-cloud, galera-python-clustercheck,
openstack-cinder, openstack-glance, openstack-heat,
openstack-horizon-plugin-monasca-ui, openstack-horizon-plugin-neutron-fwaas-ui,
openstack-ironic, openstack-keystone, openstack-manila,
openstack-monasca-agent, openstack-monasca-api, openstack-monasca-persister,
openstack-monasca-persister-java, openstack-murano, openstack-neutron,
openstack-neutron-gbp, openstack-neutron-lbaas, openstack-nova,
openstack-octavia, python-Beaver, python-oslo.db, python-osprofiler,
python-swiftlm, venv-openstack-magnum, venv-openstack-monasca,
venv-openstack-monasca-ceilometer, venv-openstack-murano,
venv-openstack-neutron fixes the following issues:

  o Update to version 8.0+git.1560208949.67048e3: * Adds repository list
    parameter (bsc#1122825)


  o Update to version 8.0+git.1564410318.f0cca2c: * Don't use 'latest' with
    'zypper' (SOC-9997)


  o Update to version 8.0+git.1564164977.ef9baeb: * Freezer Config file is
    mixed case (SOC-9700)


  o Update to version 8.0+git.1564491709.349d78e: * Default
    glance_default_store to rbd if SES enabled (SOC-8749)


  o Update to version 8.0+git.1562848601.c3daff0: * Include memcached in the
    minimal ardana-ci model (SOC-9800)


  o Update to version 8.0+git.1565388406.c6abb8d: * Make default/
    rpc_response_timeout configurable (SOC-9285)


  o Update to version 8.0+git.1562943864.e04a92f: * Resolves nova-novncproxy
    random status failures (SOC-9574)


  o Update to version 8.0+git.1560180700.bd26898: * Adding support for
    qemu-ovmf to ardana (SOC-8985)


  o Update to version 8.0+git.1563383198.c7fd9b4: * Add an global_filter entry
    to lvm.conf (bsc#1140512)


  o Update to version 8.0+git.1559761021.5605746: * Enable FCOE for SUSE
    platform family (SCRD-8562)


  o Update to version 8.0+git.1562849010.73bc517: * Fix Keystone only
    deployment tempest testing (SOC-9800)


  o Update to version 8.0+git.1560764545.6c8d2dc: * Install manila tempest
    tests package (SOC-7496)


  o Update to version 8.0+git.1560330843.b7d807c: * Add configuration for
    manila-tempest-plugin (SOC-7496)


  o Update to version 1.0+git.1560518045.ad7dc6d: * Patching node before
    bootstraping


  o Update to version 5.0+git.1565280360.01fed6905: * batch: Fix
    get_proposal_json (SOC-9954) * batch: Format crowbar batch error output
    (SOC-9954) * batch: Format crowbar batch error output (SOC-9954)


  o Update to version 5.0+git.1564657662.75174c965: * travis: Whitelist
    CVE-2015-3448 (SOC-9911) * travis: Use env variable for commit range
    (SOC-9911) * Use proper names for the Travis Tests (SOC-9565) * Replace
    Danger with Gitlint (SOC-9565) * Switch from Travis dist from Trusty to
    Xenial (SOC-9565)


  o Update to version 5.0+git.1563983933.03880f1c8: * dns: fix migration for
    designate


  o Update to version 5.0+git.1562080799.f2dd7d0dd: * network: Don't set
    datapath-ids on ovs-bridges anymore * crowbar: Save sync_mark attributes in
    databag


  o Update to version 5.0+git.1561648142.b6be652e9: * dns: forwards dns queries
    to dns-master when using desingate * dns: write admin network in ip/mask
    notation for bind9 * dns: skip installing designate-rndc-key on non-master
    nodes * dns: fix designate migration * dns: allow using dns-server as
    designate target * bind: Allow new zones configured via rndc * bind:
    Disable listening on IPv6 addresses for now


  o Update to version 5.0+git.1561465092.4dc67a7fa: * travis: pin
    sexp_processor to 4.12.0


  o Update to version 5.0+git.1561380950.b4e37c0e2: * deployer: Use dhcp on
    crowbar_register only when enable_pxe is set (bsc#1132654) * network: Allow
    locking down the network config for nodes (bsc#1120657)


  o Update to version 5.0+git.1562069707.e2de18c: * Add timeout multiplier *
    Make default sync_mark timeout configurable


  o Update to version 5.0+git.1565270683.ea6e63d87: * designate: Use server
    node for VIP look ups (SOC-9631)


  o Update to version 5.0+git.1565081678.e15f2c9a9: * nova: add
    max_threads_per_process tuneable (SOC-10001, bsc#1133719)


  o Update to version 5.0+git.1562911219.f22efd5c2: * designate: allow worker
    on cluster (SOC-9632) * swift: Sync HA nodes (SOC-9683)


  o Update to version 5.0+git.1562731577.aefaf8a6d: * Improve Mnesia IO
    performances


  o Update to version 5.0+git.1562650331.0e86ce8ba: * cinder: Set cinder pool
    to exclusive by default when using embedded ceph


  o Update to version 5.0+git.1561984197.a675e8c50: * designate: do not install
    the keystone_authtoken on worker nodes * neutron: enable designate
    integration * designate: rely on dns-master entirely * designate: Fix
    variables initialization in mdns * designate: start and run the mdns
    service * designate: Finish rename of role to designate-worker * designate:
    address most hound comments. * designate: update monasca monitoring. *
    neutron: add floating_dns_domain setting * designate: Add initial designate
    barclamp


  o Update to version 5.0+git.1559857295.d68afb38f: * rabbitmq: Fix ACL of SSL
    key after uid/gid change


  o Update to version 5.0+git.1559536094.a9cc7f312: * nova: Don't retry
    creating existing flavors


  o Update to version 1.2.0+git.1563181545.65360af5: * upgrade: Update
    repocheck keys * Update texts for 8-9 upgrade (SOC-9689)


  o Update to version 1.2.0+git.1562579063.5690a1bc: * Pin
    gulp-angular-templatecache version


  o Update to version 8.20190805: * DC files: Align profiling, throw out
    unnecessary attributes * Rename DCs: "hos-imported" to "clm-all" & "-all"
    to "crowbar-all" * Fix styleroot of Helion set * add ardana prompt, add
    ardana-init step (bsc#1143310) * New ID format (noref)
  o Update packaging to deal with new IDs


  o Update to version 8.20190729: * add image-volume cache instructions for SES
    (bsc#1140663)


  o Update to version 8.20190725: * warning about .j2 file comments (bsc#
    1142521) * MANAGEMENT network group name cannot be changed (bsc#1142686)


  o Update to version 8.20190724: * replace SUSE ca-certificate instructions
    for Crowbar (bsc#1136569) * replace SUSE ca-certificate instructions (bsc#
    1136569)


  o Update to version 8.20190723: * update MariaDB manually with CLI (bsc#
    1132852, SOC-9022) * clarify No Maintenance Mode (bsc#1108818) * replace
    empty ESX compatibility guide (noref) * delete cache volume before trying
    to use source volume (bsc#1142032) * delete cache volume when source volume
    is changed (bsc#1142032) * replace empty ESX compatibility guide (noref)


  o Update to version 8.20190719: * add hostnamectl to ardana-update-pkgs
    process (bsc#1138967)


  o Update to version 8.20190718: * correct repo URL (bsc#1134589) * remove
    duplicate content (bsc#1138489)


  o Update to version 8.20190717: * corrections from Scott Wulf (bsc#1128453) *
    replace SLES 12 SP2 with SLES 12 SP3 (bsc#1128382) * add information about
    image-volume-cache (bsc#1140663) * remove deprecated parameters (bsc#
    1138124) * correct file reference (bsc#1137377) * change SES URL (bsc#
    1137817) * manually set br-int(bsc#1139750) * update MariaDB manually with
    CLI (bsc#1132852, SOC-9022)


  o Update to version 8.20190717: * Fix DC file


  o Update to version 8.20190621: * minor grammar fixups * add external
    reference to Deploy Keystone * add LDAP integration troubleshooting (bsc#
    1134495) * clarify LDAP manual vs GUI (bsc#1134495) * address requested
    changes * SOC8 alarm table restructure ((SCRD-7710, bsc#1124170)


  o Update to version 8.20190620: * Update
    installation-installation-ses_integration.xml * Adding copy-on-write
    cloning backport - BSC#1138187 * move fernet token to supported Keystone
    feature * Remove obsolete DC/DEF file * Fix title * CLM - update MariaDB
    manually (bsc#1132852, SOC-9022) * update MariaDB manually (bsc#1132852,
    SOC-9022) * Fix command to create external network * Remove sudo from
    commands in "Setting Up Multiple External Networks" * address requested
    changes * SOC8 alarm table restructure ((SCRD-7710, bsc#1124170) * add
    scottwulf content * address recommended changes * change PTF deploy
    instructions (bsc#1128453)


  o Update to version 8.20190613: * Update
    installation-installation-ses_integration.xml * Adding copy-on-write
    cloning backport - BSC#1138187


  o Update to version 8.20190605: * move fernet token to supported Keystone
    feature


  o Add 0001-Use-strings-when-setting-X-Cache-header.patch Fixes a problem with
    Twisted versions where headers values must be strings, not bools.


  o Update to version 0.0+git.1562242499.36b8b64 (bsc#1122053): * Add optional
    systemd ready and watchdog support * Drop unneeded check for "conn" * Reset
    last_query_response when the cache needs to be updated * Drop unneeded
    "conn" var initialization * Move respone header generation to own function
    * Use None as default result * Drop opts.being_updated variable * Use
    contextmanager for DB connection * Refactor DB method to get WSREP local
    state * Refactor method to get readonly DB status * pep8: Fix E712
    comparison to False should be 'if cond is False:' * pep8: Fix E305 expected
    2 blank lines after class or function def * pep8: Fix E124 closing bracket
    does not match visual indentation * pep8: Fix E251 unexpected spaces around
    keyword / parameter equals * pep8: Fix E262 inline comment should start
    with '# ' * pep8: Fix E261 at least two spaces before inline comment *
    pep8: Fix F841 local variable is assigned to but never used * pep8: Fix
    E302 expected 2 blank lines, found 1 * pep8: Fix E265 block comment should
    start with '# ' * pep8: Fix E231 missing whitespace after ',' * pep8: Fix
    E999 SyntaxError: invalid syntax * pep8: Fix F821 undefined name * pep8:
    Fix E225 missing whitespace around operator * pep8: Fix E221 multiple
    spaces before operator * pep8: Fix F401 module imported but unused * Add
    clustercheck to console_scripts * Add basic test infrastructure and a first
    pep8 job * Fix exception handling for pymysql exception * Readd argparse
    usage * Fix installation requirements * Add read timeout to prevent
    connection hanging forever * Exclude benchmark/ directory when creating
    sdist tarball * Use argparse instead of optparse * Add basic logging
    infrastructure * Add a standard setup.py file * Catch all query exceptions
    * Switch to PyMySQL
  o Drop pymysql.patch and readtimeout.patch. Both merged upstream.
  o Use systemd service type=notify which is now supported upstream
  o Use systemd watchdog which is now supported upstream


  o Update to version cinder-11.2.3.dev7: * [VNX] Fix test case issue


  o Update to version cinder-11.2.3.dev6: * VMAX Pike docs - clarifying
    supported software in Pike


  o Update to version cinder-11.2.3.dev7: * [VNX] Fix test case issue


  o Update to version cinder-11.2.3.dev6: * VMAX Pike docs - clarifying
    supported software in Pike


  o Update to version glance-15.0.3.dev2: * Add a local bindep.txt override *
    OpenDev Migration Patch 15.0.2


  o Update to version glance-15.0.3.dev2: * Add a local bindep.txt override *
    OpenDev Migration Patch 15.0.2


  o Update to version heat-9.0.8.dev11: * Retry on DB deadlock in event\_create
    ()


  o Update to version heat-9.0.8.dev10: * Add local bindep.txt and limit bandit
    version


  o Update to version heat-9.0.8.dev9: * Fix regression with SW deployments
    when region not configured * Return None for attributes of sd with no
    actions * Fix multi region issue for software deployment


  o Update to version heat-9.0.8.dev4: * Blacklist bandit 1.6.0 and cap Sphinx
    on Python2


  o Update to version heat-9.0.8.dev11: * Retry on DB deadlock in event\_create
    ()


  o Update to version heat-9.0.8.dev10: * Add local bindep.txt and limit bandit
    version


  o Update to version heat-9.0.8.dev9: * Fix regression with SW deployments
    when region not configured * Return None for attributes of sd with no
    actions * Fix multi region issue for software deployment


  o Update to version heat-9.0.8.dev4: * Blacklist bandit 1.6.0 and cap Sphinx
    on Python2


  o update to version 1.8.1~dev39 - Convert README.md to ReStructuredText
    format - OpenDev Migration Patch


  o don't exclude *pyc files to fix update/upgrade (SOC-9339)


  o Update to version ironic-9.1.8.dev7: * Add bindep.txt


  o Update to version ironic-9.1.8.dev6: * Update sphinx requirements


  o Update to version ironic-9.1.8.dev7: * Add bindep.txt


  o Update to version ironic-9.1.8.dev6: * Update sphinx requirements


  o 0001-Allow-domain-admin-to-list-projest-assignments.patch * bsc#1118159 *
    forward-port from SOC 7


  o Update to version manila-5.1.1.dev2: * [CI] Add bindep.txt * OpenDev
    Migration Patch 5.1.0


  o Update to version manila-5.1.1.dev2: * [CI] Add bindep.txt * OpenDev
    Migration Patch 5.1.0


  o update to version 2.2.5~dev5 - Convert README to reStructuredText - OpenDev
    Migration Patch


  o update to version 2.2.2~dev1 - OpenDev Migration Patch - Fix test_metrics
    tempest-test encoding - Convert README.md to ReStructuredText format


  o update to version 1.7.1~dev10 - OpenDev Migration Patch - Convert README.md
    to ReStructuredTest format


  o Add 0001-Update-all-columns-in-metrics-on-an-update-to-refres.patch (bsc#
    1128783)


  o Add java-persister-defaults.patch
  o Update to version murano-4.0.2.dev2: * Add local bindep.txt * OpenDev
    Migration Patch 4.0.1


  o Update to version murano-4.0.2.dev2: * Add local bindep.txt * OpenDev
    Migration Patch 4.0.1


  o Update to version neutron-11.0.9.dev42: * Yield control to other
    greenthreads while processing trusted ports


  o Update to version neutron-11.0.9.dev41: * DVR: on new port only send router
    update on port's host


  o Update to version neutron-11.0.9.dev40: * Reset MAC on unbinding
    direct-physical port


  o Update to version neutron-11.0.9.dev38: * SRIOV agent: wait VFs
    initialization on embedded switch create


  o Update to version neutron-11.0.9.dev36: * Make OVS controller inactivity\
    _probe configurable


  o Update to version neutron-11.0.9.dev34: * Packets getting lost during SNAT
    with too many connections * [DVR] Block ARP to dvr router's port instead of
    subnet's gateway


  o Update to version neutron-11.0.9.dev30: * improve dvr port update under
    large scale deployment


  o Update to version neutron-11.0.9.dev29: * cap bandit in
    test-requirements.txt


  o Update to version neutron-11.0.9.dev42: * Yield control to other
    greenthreads while processing trusted ports


  o Update to version neutron-11.0.9.dev41: * DVR: on new port only send router
    update on port's host


  o Update to version neutron-11.0.9.dev40: * Reset MAC on unbinding
    direct-physical port


  o Update to version neutron-11.0.9.dev38: * SRIOV agent: wait VFs
    initialization on embedded switch create


  o Update to version neutron-11.0.9.dev36: * Make OVS controller inactivity\
    _probe configurable


  o Update to version neutron-11.0.9.dev34: * Packets getting lost during SNAT
    with too many connections * [DVR] Block ARP to dvr router's port instead of
    subnet's gateway


  o Update to version neutron-11.0.9.dev30: * improve dvr port update under
    large scale deployment


  o Update to version neutron-11.0.9.dev29: * cap bandit in
    test-requirements.txt


* When converting sg rules to iptables, do not emit dport if not supported
(CVE-2019-9735, bsc#1129729)

  o Update to version group-based-policy-7.3.1.dev45: * Adding icmp\_code and
    icmp\_type for SG rule


  o Update to version group-based-policy-7.3.1.dev43: * A VM could be
    associated with multiple ports * Optimize the extend\_router\_dict() call


  o Update to version group-based-policy-7.3.1.dev40: * [AIM] Enhance
    gbp-validate to detect routed subnet overlap * [AIM] Prevent overlapping
    CIDRs in routed VRF


  o Update to version group-based-policy-7.3.1.dev37: * Disallow external
    subnets as router interfaces * Make DHCP provisioning blocks conditional


  o Update to version group-based-policy-7.3.1.dev34: * Fix issues on sync\
    _state display on neutron based on AIM status * Send the port updates for
    the SNAT case if needed


  o Update to version group-based-policy-7.3.1.dev32: * Pull the upper
    constraint file also from the opendev.org site


  o Update to version group-based-policy-7.3.1.dev31: * Fix the thread
    concurrency issue while calling gbp purge


  o Update to version group-based-policy-7.3.1.dev30: * [AIM] Fix handling of
    missing PortSecurityBinding


  o Update to version group-based-policy-7.3.1.dev29: * [AIM] Don't override
    loading of SG rules when validating


  o add 0001-neutron-lbaas-haproxy-agent-prevent-vif-unplug-when-.patch and
    0001-Fix-memory-leak-in-the-haproxy-provider-driver.patch


  o Update to version nova-16.1.9.dev4: * Implement power\_off/power\_on for
    the FakeDriver


  o Update to version nova-16.1.9.dev4: * Implement power\_off/power\_on for
    the FakeDriver


* Fix doubling allocations on rebuild (CVE-2017-17051, bsc#1070500)

  o Update to version octavia-1.0.6.dev2: * Add bindep.txt and ignore sha1
    warning * OpenDev Migration Patch 1.0.5


  o Switch to new Gerrit Server


  o added 0001-exc_filters-fix-deadlock-detection-for-MariaDB-Galer.patch


  o added 0001-Add-sqlalchemy-collector.patch
  o added 0001-Don-t-fail-if-sqlalchemy-driver-fails-to-initialize.patch
  o update to version 1.11.1 - Update .gitreview for stable/pike - import zuul
    job settings from project-config


  o Switch to new Gerrit Server


  o Fix lower version numver after inheriting the version from main component
    (SCRD-8523)


  o Do not relocate shebang in make-cert.py (SCRD-8594)


  o Inherit version number of venv from main component (SCRD-8523)


  o Inherit version number of venv from main component (SCRD-8523)


  o Fix lower version numver after inheriting the version from main component
    (SCRD-8523)


  o Inherit version number of venv from main component (SCRD-8523)


  o Inherit version number of venv from main component (SCRD-8523)


  o Remove openstack-neutron-opflex-agent, python-aci-integration-module,
    python-acitoolkit, python-apicapi and python-networking-cisco as they pull
    in new requirements into the product


  o Inherit version number of venv from main component (SCRD-8523)


  o Added to the neutron virtual environment: * python-aci-integration-module *
    python-acitoolkit * python-apicapi * python-networking-cisco *
    openstack-neutron-gbp * openstack-neutron-opflex-agent


  o Inherit version number of venv from main component (SCRD-8523)

Patch Instructions:

To install this SUSE Security Update use the SUSE recommended installation
methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:

  o SUSE OpenStack Cloud Crowbar 8:
    zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-8-2019-2219=1
  o SUSE OpenStack Cloud 8:
    zypper in -t patch SUSE-OpenStack-Cloud-8-2019-2219=1
  o HPE Helion Openstack 8:
    zypper in -t patch HPE-Helion-OpenStack-8-2019-2219=1

Package List:

  o SUSE OpenStack Cloud Crowbar 8 (x86_64):
       crowbar-core-5.0+git.1565280360.01fed6905-3.26.1
       crowbar-core-branding-upstream-5.0+git.1565280360.01fed6905-3.26.1
  o SUSE OpenStack Cloud Crowbar 8 (noarch):
       caasp-openstack-heat-templates-1.0+git.1560518045.ad7dc6d-4.15.1
       crowbar-ha-5.0+git.1562069707.e2de18c-3.20.1
       crowbar-openstack-5.0+git.1565270683.ea6e63d87-4.28.1
       crowbar-ui-1.2.0+git.1563181545.65360af5-3.9.1
       documentation-suse-openstack-cloud-deployment-8.20190805-1.20.1
       documentation-suse-openstack-cloud-supplement-8.20190805-1.20.1
       documentation-suse-openstack-cloud-upstream-admin-8.20190805-1.20.1
       documentation-suse-openstack-cloud-upstream-user-8.20190805-1.20.1
       galera-python-clustercheck-0.0+git.1562242499.36b8b64-4.6.1
       grafana-monasca-ui-drilldown-1.8.1~dev39-3.9.2
       openstack-cinder-11.2.3~dev7-3.18.2
       openstack-cinder-api-11.2.3~dev7-3.18.2
       openstack-cinder-backup-11.2.3~dev7-3.18.2
       openstack-cinder-doc-11.2.3~dev7-3.18.1
       openstack-cinder-scheduler-11.2.3~dev7-3.18.2
       openstack-cinder-volume-11.2.3~dev7-3.18.2
       openstack-glance-15.0.3~dev2-3.9.2
       openstack-glance-api-15.0.3~dev2-3.9.2
       openstack-glance-doc-15.0.3~dev2-3.9.1
       openstack-glance-registry-15.0.3~dev2-3.9.2
       openstack-heat-9.0.8~dev11-3.21.2
       openstack-heat-api-9.0.8~dev11-3.21.2
       openstack-heat-api-cfn-9.0.8~dev11-3.21.2
       openstack-heat-api-cloudwatch-9.0.8~dev11-3.21.2
       openstack-heat-doc-9.0.8~dev11-3.21.1
       openstack-heat-engine-9.0.8~dev11-3.21.2
       openstack-heat-plugin-heat_docker-9.0.8~dev11-3.21.2
       openstack-heat-test-9.0.8~dev11-3.21.2
       openstack-horizon-plugin-monasca-ui-1.8.1~dev39-3.9.2
       openstack-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6.2
       openstack-ironic-9.1.8~dev7-3.21.2
       openstack-ironic-api-9.1.8~dev7-3.21.2
       openstack-ironic-conductor-9.1.8~dev7-3.21.2
       openstack-ironic-doc-9.1.8~dev7-3.21.1
       openstack-keystone-12.0.4~dev2-5.22.2
       openstack-keystone-doc-12.0.4~dev2-5.22.1
       openstack-manila-5.1.1~dev2-3.18.2
       openstack-manila-api-5.1.1~dev2-3.18.2
       openstack-manila-data-5.1.1~dev2-3.18.2
       openstack-manila-doc-5.1.1~dev2-3.18.1
       openstack-manila-scheduler-5.1.1~dev2-3.18.2
       openstack-manila-share-5.1.1~dev2-3.18.2
       openstack-monasca-agent-2.2.5~dev5-3.12.1
       openstack-monasca-api-2.2.2~dev1-3.15.2
       openstack-monasca-persister-1.7.1~dev10-3.9.1
       openstack-monasca-persister-java-1.7.1~a0~dev2-3.3.1
       openstack-murano-4.0.2~dev2-3.9.2
       openstack-murano-api-4.0.2~dev2-3.9.2
       openstack-murano-doc-4.0.2~dev2-3.9.1
       openstack-murano-engine-4.0.2~dev2-3.9.2
       openstack-neutron-11.0.9~dev42-3.21.2
       openstack-neutron-dhcp-agent-11.0.9~dev42-3.21.2
       openstack-neutron-doc-11.0.9~dev42-3.21.1
       openstack-neutron-gbp-7.3.1~dev45-3.6.1
       openstack-neutron-ha-tool-11.0.9~dev42-3.21.2
       openstack-neutron-l3-agent-11.0.9~dev42-3.21.2
       openstack-neutron-lbaas-11.0.4~dev6-3.12.1
       openstack-neutron-lbaas-agent-11.0.4~dev6-3.12.1
       openstack-neutron-lbaas-doc-11.0.4~dev6-3.12.1
       openstack-neutron-linuxbridge-agent-11.0.9~dev42-3.21.2
       openstack-neutron-macvtap-agent-11.0.9~dev42-3.21.2
       openstack-neutron-metadata-agent-11.0.9~dev42-3.21.2
       openstack-neutron-metering-agent-11.0.9~dev42-3.21.2
       openstack-neutron-openvswitch-agent-11.0.9~dev42-3.21.2
       openstack-neutron-server-11.0.9~dev42-3.21.2
       openstack-nova-16.1.9~dev4-3.26.2
       openstack-nova-api-16.1.9~dev4-3.26.2
       openstack-nova-cells-16.1.9~dev4-3.26.2
       openstack-nova-compute-16.1.9~dev4-3.26.2
       openstack-nova-conductor-16.1.9~dev4-3.26.2
       openstack-nova-console-16.1.9~dev4-3.26.2
       openstack-nova-consoleauth-16.1.9~dev4-3.26.2
       openstack-nova-doc-16.1.9~dev4-3.26.1
       openstack-nova-novncproxy-16.1.9~dev4-3.26.2
       openstack-nova-placement-api-16.1.9~dev4-3.26.2
       openstack-nova-scheduler-16.1.9~dev4-3.26.2
       openstack-nova-serialproxy-16.1.9~dev4-3.26.2
       openstack-nova-vncproxy-16.1.9~dev4-3.26.2
       openstack-octavia-1.0.6~dev2-4.18.1
       openstack-octavia-amphora-agent-1.0.6~dev2-4.18.1
       openstack-octavia-api-1.0.6~dev2-4.18.1
       openstack-octavia-health-manager-1.0.6~dev2-4.18.1
       openstack-octavia-housekeeping-1.0.6~dev2-4.18.1
       openstack-octavia-worker-1.0.6~dev2-4.18.1
       python-cinder-11.2.3~dev7-3.18.2
       python-glance-15.0.3~dev2-3.9.2
       python-heat-9.0.8~dev11-3.21.2
       python-horizon-plugin-monasca-ui-1.8.1~dev39-3.9.2
       python-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6.2
       python-ironic-9.1.8~dev7-3.21.2
       python-keystone-12.0.4~dev2-5.22.2
       python-manila-5.1.1~dev2-3.18.2
       python-monasca-agent-2.2.5~dev5-3.12.1
       python-monasca-api-2.2.2~dev1-3.15.2
       python-monasca-persister-1.7.1~dev10-3.9.1
       python-murano-4.0.2~dev2-3.9.2
       python-neutron-11.0.9~dev42-3.21.2
       python-neutron-gbp-7.3.1~dev45-3.6.1
       python-neutron-lbaas-11.0.4~dev6-3.12.1
       python-nova-16.1.9~dev4-3.26.2
       python-octavia-1.0.6~dev2-4.18.1
       python-oslo.db-4.25.2-3.6.1
       python-osprofiler-1.11.1-3.3.1
  o SUSE OpenStack Cloud 8 (noarch):
       ardana-ansible-8.0+git.1560208949.67048e3-3.64.1
       ardana-db-8.0+git.1564410318.f0cca2c-3.28.1
       ardana-freezer-8.0+git.1564164977.ef9baeb-3.18.1
       ardana-glance-8.0+git.1564491709.349d78e-3.14.1
       ardana-input-model-8.0+git.1562848601.c3daff0-3.30.1
       ardana-nova-8.0+git.1565388406.c6abb8d-3.32.1
       ardana-osconfig-8.0+git.1563383198.c7fd9b4-3.39.1
       ardana-swiftlm-drive-provision-8.0+git.1541434883.e0ebe69-5.9.1
       ardana-swiftlm-log-tailer-8.0+git.1541434883.e0ebe69-5.9.1
       ardana-swiftlm-uptime-mon-8.0+git.1541434883.e0ebe69-5.9.1
       ardana-tempest-8.0+git.1562849010.73bc517-3.24.1
       caasp-openstack-heat-templates-1.0+git.1560518045.ad7dc6d-4.15.1
       documentation-suse-openstack-cloud-installation-8.20190805-1.20.1
       documentation-suse-openstack-cloud-operations-8.20190805-1.20.1
       documentation-suse-openstack-cloud-opsconsole-8.20190805-1.20.1
       documentation-suse-openstack-cloud-planning-8.20190805-1.20.1
       documentation-suse-openstack-cloud-security-8.20190805-1.20.1
       documentation-suse-openstack-cloud-supplement-8.20190805-1.20.1
       documentation-suse-openstack-cloud-upstream-admin-8.20190805-1.20.1
       documentation-suse-openstack-cloud-upstream-user-8.20190805-1.20.1
       documentation-suse-openstack-cloud-user-8.20190805-1.20.1
       galera-python-clustercheck-0.0+git.1562242499.36b8b64-4.6.1
       grafana-monasca-ui-drilldown-1.8.1~dev39-3.9.2
       openstack-cinder-11.2.3~dev7-3.18.2
       openstack-cinder-api-11.2.3~dev7-3.18.2
       openstack-cinder-backup-11.2.3~dev7-3.18.2
       openstack-cinder-doc-11.2.3~dev7-3.18.1
       openstack-cinder-scheduler-11.2.3~dev7-3.18.2
       openstack-cinder-volume-11.2.3~dev7-3.18.2
       openstack-glance-15.0.3~dev2-3.9.2
       openstack-glance-api-15.0.3~dev2-3.9.2
       openstack-glance-doc-15.0.3~dev2-3.9.1
       openstack-glance-registry-15.0.3~dev2-3.9.2
       openstack-heat-9.0.8~dev11-3.21.2
       openstack-heat-api-9.0.8~dev11-3.21.2
       openstack-heat-api-cfn-9.0.8~dev11-3.21.2
       openstack-heat-api-cloudwatch-9.0.8~dev11-3.21.2
       openstack-heat-doc-9.0.8~dev11-3.21.1
       openstack-heat-engine-9.0.8~dev11-3.21.2
       openstack-heat-plugin-heat_docker-9.0.8~dev11-3.21.2
       openstack-heat-test-9.0.8~dev11-3.21.2
       openstack-horizon-plugin-monasca-ui-1.8.1~dev39-3.9.2
       openstack-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6.2
       openstack-ironic-9.1.8~dev7-3.21.2
       openstack-ironic-api-9.1.8~dev7-3.21.2
       openstack-ironic-conductor-9.1.8~dev7-3.21.2
       openstack-ironic-doc-9.1.8~dev7-3.21.1
       openstack-keystone-12.0.4~dev2-5.22.2
       openstack-keystone-doc-12.0.4~dev2-5.22.1
       openstack-manila-5.1.1~dev2-3.18.2
       openstack-manila-api-5.1.1~dev2-3.18.2
       openstack-manila-data-5.1.1~dev2-3.18.2
       openstack-manila-doc-5.1.1~dev2-3.18.1
       openstack-manila-scheduler-5.1.1~dev2-3.18.2
       openstack-manila-share-5.1.1~dev2-3.18.2
       openstack-monasca-agent-2.2.5~dev5-3.12.1
       openstack-monasca-api-2.2.2~dev1-3.15.2
       openstack-monasca-persister-1.7.1~dev10-3.9.1
       openstack-monasca-persister-java-1.7.1~a0~dev2-3.3.1
       openstack-murano-4.0.2~dev2-3.9.2
       openstack-murano-api-4.0.2~dev2-3.9.2
       openstack-murano-doc-4.0.2~dev2-3.9.1
       openstack-murano-engine-4.0.2~dev2-3.9.2
       openstack-neutron-11.0.9~dev42-3.21.2
       openstack-neutron-dhcp-agent-11.0.9~dev42-3.21.2
       openstack-neutron-doc-11.0.9~dev42-3.21.1
       openstack-neutron-gbp-7.3.1~dev45-3.6.1
       openstack-neutron-ha-tool-11.0.9~dev42-3.21.2
       openstack-neutron-l3-agent-11.0.9~dev42-3.21.2
       openstack-neutron-lbaas-11.0.4~dev6-3.12.1
       openstack-neutron-lbaas-agent-11.0.4~dev6-3.12.1
       openstack-neutron-lbaas-doc-11.0.4~dev6-3.12.1
       openstack-neutron-linuxbridge-agent-11.0.9~dev42-3.21.2
       openstack-neutron-macvtap-agent-11.0.9~dev42-3.21.2
       openstack-neutron-metadata-agent-11.0.9~dev42-3.21.2
       openstack-neutron-metering-agent-11.0.9~dev42-3.21.2
       openstack-neutron-openvswitch-agent-11.0.9~dev42-3.21.2
       openstack-neutron-server-11.0.9~dev42-3.21.2
       openstack-nova-16.1.9~dev4-3.26.2
       openstack-nova-api-16.1.9~dev4-3.26.2
       openstack-nova-cells-16.1.9~dev4-3.26.2
       openstack-nova-compute-16.1.9~dev4-3.26.2
       openstack-nova-conductor-16.1.9~dev4-3.26.2
       openstack-nova-console-16.1.9~dev4-3.26.2
       openstack-nova-consoleauth-16.1.9~dev4-3.26.2
       openstack-nova-doc-16.1.9~dev4-3.26.1
       openstack-nova-novncproxy-16.1.9~dev4-3.26.2
       openstack-nova-placement-api-16.1.9~dev4-3.26.2
       openstack-nova-scheduler-16.1.9~dev4-3.26.2
       openstack-nova-serialproxy-16.1.9~dev4-3.26.2
       openstack-nova-vncproxy-16.1.9~dev4-3.26.2
       openstack-octavia-1.0.6~dev2-4.18.1
       openstack-octavia-amphora-agent-1.0.6~dev2-4.18.1
       openstack-octavia-api-1.0.6~dev2-4.18.1
       openstack-octavia-health-manager-1.0.6~dev2-4.18.1
       openstack-octavia-housekeeping-1.0.6~dev2-4.18.1
       openstack-octavia-worker-1.0.6~dev2-4.18.1
       python-Beaver-8.0+git.1502900605.3e0068a-4.3.1
       python-cinder-11.2.3~dev7-3.18.2
       python-glance-15.0.3~dev2-3.9.2
       python-heat-9.0.8~dev11-3.21.2
       python-horizon-plugin-monasca-ui-1.8.1~dev39-3.9.2
       python-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6.2
       python-ironic-9.1.8~dev7-3.21.2
       python-keystone-12.0.4~dev2-5.22.2
       python-manila-5.1.1~dev2-3.18.2
       python-monasca-agent-2.2.5~dev5-3.12.1
       python-monasca-api-2.2.2~dev1-3.15.2
       python-monasca-persister-1.7.1~dev10-3.9.1
       python-murano-4.0.2~dev2-3.9.2
       python-neutron-11.0.9~dev42-3.21.2
       python-neutron-gbp-7.3.1~dev45-3.6.1
       python-neutron-lbaas-11.0.4~dev6-3.12.1
       python-nova-16.1.9~dev4-3.26.2
       python-octavia-1.0.6~dev2-4.18.1
       python-oslo.db-4.25.2-3.6.1
       python-osprofiler-1.11.1-3.3.1
       python-swiftlm-8.0+git.1541434883.e0ebe69-5.9.1
       venv-openstack-magnum-x86_64-5.0.2_5.0.2_5.0.2~dev31-11.18.1
       venv-openstack-monasca-ceilometer-x86_64-1.5.1_1.5.1_1.5.1~dev3-8.14.1
       venv-openstack-monasca-x86_64-2.2.2~dev1-11.16.1
       venv-openstack-murano-x86_64-4.0.2~dev2-12.14.1
       venv-openstack-neutron-x86_64-11.0.9~dev42-13.22.1
  o HPE Helion Openstack 8 (noarch):
       ardana-ansible-8.0+git.1560208949.67048e3-3.64.1
       ardana-db-8.0+git.1564410318.f0cca2c-3.28.1
       ardana-freezer-8.0+git.1564164977.ef9baeb-3.18.1
       ardana-glance-8.0+git.1564491709.349d78e-3.14.1
       ardana-input-model-8.0+git.1562848601.c3daff0-3.30.1
       ardana-nova-8.0+git.1565388406.c6abb8d-3.32.1
       ardana-osconfig-8.0+git.1563383198.c7fd9b4-3.39.1
       ardana-swiftlm-drive-provision-8.0+git.1541434883.e0ebe69-5.9.1
       ardana-swiftlm-log-tailer-8.0+git.1541434883.e0ebe69-5.9.1
       ardana-swiftlm-uptime-mon-8.0+git.1541434883.e0ebe69-5.9.1
       ardana-tempest-8.0+git.1562849010.73bc517-3.24.1
       caasp-openstack-heat-templates-1.0+git.1560518045.ad7dc6d-4.15.1
       documentation-hpe-helion-openstack-installation-8.20190805-1.20.1
       documentation-hpe-helion-openstack-operations-8.20190805-1.20.1
       documentation-hpe-helion-openstack-opsconsole-8.20190805-1.20.1
       documentation-hpe-helion-openstack-planning-8.20190805-1.20.1
       documentation-hpe-helion-openstack-security-8.20190805-1.20.1
       documentation-hpe-helion-openstack-user-8.20190805-1.20.1
       galera-python-clustercheck-0.0+git.1562242499.36b8b64-4.6.1
       grafana-monasca-ui-drilldown-1.8.1~dev39-3.9.2
       openstack-cinder-11.2.3~dev7-3.18.2
       openstack-cinder-api-11.2.3~dev7-3.18.2
       openstack-cinder-backup-11.2.3~dev7-3.18.2
       openstack-cinder-doc-11.2.3~dev7-3.18.1
       openstack-cinder-scheduler-11.2.3~dev7-3.18.2
       openstack-cinder-volume-11.2.3~dev7-3.18.2
       openstack-glance-15.0.3~dev2-3.9.2
       openstack-glance-api-15.0.3~dev2-3.9.2
       openstack-glance-doc-15.0.3~dev2-3.9.1
       openstack-glance-registry-15.0.3~dev2-3.9.2
       openstack-heat-9.0.8~dev11-3.21.2
       openstack-heat-api-9.0.8~dev11-3.21.2
       openstack-heat-api-cfn-9.0.8~dev11-3.21.2
       openstack-heat-api-cloudwatch-9.0.8~dev11-3.21.2
       openstack-heat-doc-9.0.8~dev11-3.21.1
       openstack-heat-engine-9.0.8~dev11-3.21.2
       openstack-heat-plugin-heat_docker-9.0.8~dev11-3.21.2
       openstack-heat-test-9.0.8~dev11-3.21.2
       openstack-horizon-plugin-monasca-ui-1.8.1~dev39-3.9.2
       openstack-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6.2
       openstack-ironic-9.1.8~dev7-3.21.2
       openstack-ironic-api-9.1.8~dev7-3.21.2
       openstack-ironic-conductor-9.1.8~dev7-3.21.2
       openstack-ironic-doc-9.1.8~dev7-3.21.1
       openstack-keystone-12.0.4~dev2-5.22.2
       openstack-keystone-doc-12.0.4~dev2-5.22.1
       openstack-manila-5.1.1~dev2-3.18.2
       openstack-manila-api-5.1.1~dev2-3.18.2
       openstack-manila-data-5.1.1~dev2-3.18.2
       openstack-manila-doc-5.1.1~dev2-3.18.1
       openstack-manila-scheduler-5.1.1~dev2-3.18.2
       openstack-manila-share-5.1.1~dev2-3.18.2
       openstack-monasca-agent-2.2.5~dev5-3.12.1
       openstack-monasca-api-2.2.2~dev1-3.15.2
       openstack-monasca-persister-1.7.1~dev10-3.9.1
       openstack-monasca-persister-java-1.7.1~a0~dev2-3.3.1
       openstack-murano-4.0.2~dev2-3.9.2
       openstack-murano-api-4.0.2~dev2-3.9.2
       openstack-murano-doc-4.0.2~dev2-3.9.1
       openstack-murano-engine-4.0.2~dev2-3.9.2
       openstack-neutron-11.0.9~dev42-3.21.2
       openstack-neutron-dhcp-agent-11.0.9~dev42-3.21.2
       openstack-neutron-doc-11.0.9~dev42-3.21.1
       openstack-neutron-gbp-7.3.1~dev45-3.6.1
       openstack-neutron-ha-tool-11.0.9~dev42-3.21.2
       openstack-neutron-l3-agent-11.0.9~dev42-3.21.2
       openstack-neutron-lbaas-11.0.4~dev6-3.12.1
       openstack-neutron-lbaas-agent-11.0.4~dev6-3.12.1
       openstack-neutron-lbaas-doc-11.0.4~dev6-3.12.1
       openstack-neutron-linuxbridge-agent-11.0.9~dev42-3.21.2
       openstack-neutron-macvtap-agent-11.0.9~dev42-3.21.2
       openstack-neutron-metadata-agent-11.0.9~dev42-3.21.2
       openstack-neutron-metering-agent-11.0.9~dev42-3.21.2
       openstack-neutron-openvswitch-agent-11.0.9~dev42-3.21.2
       openstack-neutron-server-11.0.9~dev42-3.21.2
       openstack-nova-16.1.9~dev4-3.26.2
       openstack-nova-api-16.1.9~dev4-3.26.2
       openstack-nova-cells-16.1.9~dev4-3.26.2
       openstack-nova-compute-16.1.9~dev4-3.26.2
       openstack-nova-conductor-16.1.9~dev4-3.26.2
       openstack-nova-console-16.1.9~dev4-3.26.2
       openstack-nova-consoleauth-16.1.9~dev4-3.26.2
       openstack-nova-doc-16.1.9~dev4-3.26.1
       openstack-nova-novncproxy-16.1.9~dev4-3.26.2
       openstack-nova-placement-api-16.1.9~dev4-3.26.2
       openstack-nova-scheduler-16.1.9~dev4-3.26.2
       openstack-nova-serialproxy-16.1.9~dev4-3.26.2
       openstack-nova-vncproxy-16.1.9~dev4-3.26.2
       openstack-octavia-1.0.6~dev2-4.18.1
       openstack-octavia-amphora-agent-1.0.6~dev2-4.18.1
       openstack-octavia-api-1.0.6~dev2-4.18.1
       openstack-octavia-health-manager-1.0.6~dev2-4.18.1
       openstack-octavia-housekeeping-1.0.6~dev2-4.18.1
       openstack-octavia-worker-1.0.6~dev2-4.18.1
       python-Beaver-8.0+git.1502900605.3e0068a-4.3.1
       python-cinder-11.2.3~dev7-3.18.2
       python-glance-15.0.3~dev2-3.9.2
       python-heat-9.0.8~dev11-3.21.2
       python-horizon-plugin-monasca-ui-1.8.1~dev39-3.9.2
       python-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6.2
       python-ironic-9.1.8~dev7-3.21.2
       python-keystone-12.0.4~dev2-5.22.2
       python-manila-5.1.1~dev2-3.18.2
       python-monasca-agent-2.2.5~dev5-3.12.1
       python-monasca-api-2.2.2~dev1-3.15.2
       python-monasca-persister-1.7.1~dev10-3.9.1
       python-murano-4.0.2~dev2-3.9.2
       python-neutron-11.0.9~dev42-3.21.2
       python-neutron-gbp-7.3.1~dev45-3.6.1
       python-neutron-lbaas-11.0.4~dev6-3.12.1
       python-nova-16.1.9~dev4-3.26.2
       python-octavia-1.0.6~dev2-4.18.1
       python-oslo.db-4.25.2-3.6.1
       python-osprofiler-1.11.1-3.3.1
       python-swiftlm-8.0+git.1541434883.e0ebe69-5.9.1
       venv-openstack-magnum-x86_64-5.0.2_5.0.2_5.0.2~dev31-11.18.1
       venv-openstack-monasca-ceilometer-x86_64-1.5.1_1.5.1_1.5.1~dev3-8.14.1
       venv-openstack-monasca-x86_64-2.2.2~dev1-11.16.1
       venv-openstack-murano-x86_64-4.0.2~dev2-12.14.1
       venv-openstack-neutron-x86_64-11.0.9~dev42-13.22.1


References:

  o https://www.suse.com/security/cve/CVE-2015-3448.html
  o https://www.suse.com/security/cve/CVE-2017-17051.html
  o https://www.suse.com/security/cve/CVE-2019-9735.html
  o https://bugzilla.suse.com/1070500
  o https://bugzilla.suse.com/1108818
  o https://bugzilla.suse.com/1118159
  o https://bugzilla.suse.com/1120657
  o https://bugzilla.suse.com/1122053
  o https://bugzilla.suse.com/1122825
  o https://bugzilla.suse.com/1124170
  o https://bugzilla.suse.com/1128382
  o https://bugzilla.suse.com/1128453
  o https://bugzilla.suse.com/1128783
  o https://bugzilla.suse.com/1129729
  o https://bugzilla.suse.com/1132654
  o https://bugzilla.suse.com/1132852
  o https://bugzilla.suse.com/1133719
  o https://bugzilla.suse.com/1134495
  o https://bugzilla.suse.com/1134589
  o https://bugzilla.suse.com/1136569
  o https://bugzilla.suse.com/1137377
  o https://bugzilla.suse.com/1137817
  o https://bugzilla.suse.com/1138124
  o https://bugzilla.suse.com/1138187
  o https://bugzilla.suse.com/1138489
  o https://bugzilla.suse.com/1138967
  o https://bugzilla.suse.com/1139750
  o https://bugzilla.suse.com/1140512
  o https://bugzilla.suse.com/1140663
  o https://bugzilla.suse.com/1142032
  o https://bugzilla.suse.com/1142521
  o https://bugzilla.suse.com/1142686
  o https://bugzilla.suse.com/1143310

- --------------------------END INCLUDED TEXT--------------------

You have received this e-mail bulletin as a result of your organisation's
registration with AusCERT. The mailing list you are subscribed to is
maintained within your organisation, so if you do not wish to continue
receiving these bulletins you should contact your local IT manager. If
you do not know who that is, please send an email to auscert@auscert.org.au
and we will forward your request to the appropriate person.

NOTE: Third Party Rights
This security bulletin is provided as a service to AusCERT's members.  As
AusCERT did not write the document quoted above, AusCERT has had no control
over its content. The decision to follow or act on information or advice
contained in this security bulletin is the responsibility of each user or
organisation, and should be considered in accordance with your organisation's
site policies and procedures. AusCERT takes no responsibility for consequences
which may arise from following or acting on information or advice contained in
this security bulletin.

NOTE: This is only the original release of the security bulletin.  It may
not be updated when updates to the original are made.  If downloading at
a later date, it is recommended that the bulletin is retrieved directly
from the author's website to ensure that the information is still current.

Contact information for the authors of the original document is included
in the Security Bulletin above.  If you have any questions or need further
information, please contact them directly.

Previous advisories and external security bulletins can be retrieved from:

        https://www.auscert.org.au/bulletins/

===========================================================================
Australian Computer Emergency Response Team
The University of Queensland
Brisbane
Qld 4072

Internet Email: auscert@auscert.org.au
Facsimile:      (07) 3365 7031
Telephone:      (07) 3365 4417 (International: +61 7 3365 4417)
                AusCERT personnel answer during Queensland business hours
                which are GMT+10:00 (AEST).
                On call after hours for member emergencies only.
===========================================================================
-----BEGIN PGP SIGNATURE-----
Comment: http://www.auscert.org.au/render.html?it=1967
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=GDIc
-----END PGP SIGNATURE-----