SUSE Security Advisories · August 2015 — SUSE Security Advisories
8 advisories 8 CVEs

SUSE-SU-* / openSUSE-SU-* / Rancher errata for 2015-08. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

Advisories

OPENSUSE-SU-2024:10064-1

openSUSE2015-08-25

libvlc5-2.2.4-11.1 on GA media

CVEs:CVE-2015-5949

Affected products

ProductStatusVendorPackageEcosystem
libvlc5-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libvlc5-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libvlc5-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
libvlc5-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libvlccore8-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libvlccore8-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libvlccore8-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
libvlccore8-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-codec-gstreamer-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-codec-gstreamer-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-codec-gstreamer-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-codec-gstreamer-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-devel-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-devel-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-devel-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-devel-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-lang-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-lang-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-lang-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-lang-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-noX-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-noX-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-noX-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-noX-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-qt-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-qt-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-qt-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-qt-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10088-1

openSUSE2015-08-24

libmbedcrypto0-2.4.0-1.2 on GA media

CVEs:CVE-2014-8628

Affected products

ProductStatusVendorPackageEcosystem
libmbedcrypto0-2.4.0-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
libmbedcrypto0-2.4.0-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
libmbedcrypto0-2.4.0-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
libmbedcrypto0-2.4.0-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
libmbedcrypto0-32bit-2.4.0-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
libmbedcrypto0-32bit-2.4.0-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
libmbedcrypto0-32bit-2.4.0-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
libmbedcrypto0-32bit-2.4.0-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
libmbedtls10-2.4.0-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
libmbedtls10-2.4.0-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
libmbedtls10-2.4.0-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
libmbedtls10-2.4.0-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
libmbedtls10-32bit-2.4.0-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
libmbedtls10-32bit-2.4.0-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
libmbedtls10-32bit-2.4.0-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
libmbedtls10-32bit-2.4.0-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
libmbedx509-0-2.4.0-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
libmbedx509-0-2.4.0-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
libmbedx509-0-2.4.0-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
libmbedx509-0-2.4.0-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
libmbedx509-0-32bit-2.4.0-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
libmbedx509-0-32bit-2.4.0-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
libmbedx509-0-32bit-2.4.0-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
libmbedx509-0-32bit-2.4.0-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
mbedtls-devel-2.4.0-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
mbedtls-devel-2.4.0-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
mbedtls-devel-2.4.0-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
mbedtls-devel-2.4.0-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2023:0077-1

openSUSEHIGH2015-08-24

Security update for python-Django

CVEs:CVE-2015-5963

Affected products

ProductStatusVendorPackageEcosystem
python-Django-1.11.15-2.1.noarch as component of SUSE Package Hub 12 SP1 affected SUSE
python-Django-1.9.12-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
python-Django-1.9.12-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
python-Django-1.9.12-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
python-Django-1.9.12-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10003-1

openSUSE2015-08-11

ghostscript-9.20-2.1 on GA media

CVEs:CVE-2015-3228

Affected products

ProductStatusVendorPackageEcosystem
ghostscript-9.20-2.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
ghostscript-9.20-2.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
ghostscript-9.20-2.1.s390x as component of openSUSE Tumbleweed affected SUSE
ghostscript-9.20-2.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
ghostscript-devel-9.20-2.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
ghostscript-devel-9.20-2.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
ghostscript-devel-9.20-2.1.s390x as component of openSUSE Tumbleweed affected SUSE
ghostscript-devel-9.20-2.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
ghostscript-x11-9.20-2.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
ghostscript-x11-9.20-2.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
ghostscript-x11-9.20-2.1.s390x as component of openSUSE Tumbleweed affected SUSE
ghostscript-x11-9.20-2.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10084-1

openSUSE2015-08-11

cacti-0.8.8h-1.2 on GA media

CVEs:CVE-2015-4634

Affected products

ProductStatusVendorPackageEcosystem
cacti-0.8.8h-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
cacti-0.8.8h-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
cacti-0.8.8h-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
cacti-0.8.8h-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
cacti-doc-0.8.8h-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
cacti-doc-0.8.8h-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
cacti-doc-0.8.8h-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
cacti-doc-0.8.8h-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10037-1

openSUSEMEDIUM2015-08-04

libgcrypt-cavs-1.7.3-1.3 on GA media

CVEs:CVE-2014-3591

Affected products

ProductStatusVendorPackageEcosystem
libgcrypt20-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-32bit-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-32bit-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-32bit-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-32bit-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-32bit-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-32bit-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-32bit-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-32bit-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-cavs-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-cavs-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt-cavs-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt-cavs-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-32bit-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-32bit-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-32bit-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-32bit-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10037-1

openSUSEMEDIUM2015-08-04

libgcrypt-cavs-1.7.3-1.3 on GA media

CVEs:CVE-2015-0837

Affected products

ProductStatusVendorPackageEcosystem
libgcrypt20-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-32bit-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-32bit-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-32bit-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-32bit-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-32bit-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-32bit-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-32bit-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt20-hmac-32bit-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-cavs-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-cavs-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt-cavs-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt-cavs-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-32bit-1.7.3-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-32bit-1.7.3-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-32bit-1.7.3-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libgcrypt-devel-32bit-1.7.3-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10056-1

openSUSECRITICAL2015-08-04

libXvnc-devel-1.7.0-2.1 on GA media

CVEs:CVE-2014-0011

Affected products

ProductStatusVendorPackageEcosystem
libXvnc1-1.7.0-2.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libXvnc1-1.7.0-2.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libXvnc1-1.7.0-2.1.s390x as component of openSUSE Tumbleweed affected SUSE
libXvnc1-1.7.0-2.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libXvnc-devel-1.7.0-2.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libXvnc-devel-1.7.0-2.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libXvnc-devel-1.7.0-2.1.s390x as component of openSUSE Tumbleweed affected SUSE
libXvnc-devel-1.7.0-2.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
tigervnc-1.7.0-2.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
tigervnc-1.7.0-2.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
tigervnc-1.7.0-2.1.s390x as component of openSUSE Tumbleweed affected SUSE
tigervnc-1.7.0-2.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
xorg-x11-Xvnc-1.7.0-2.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
xorg-x11-Xvnc-1.7.0-2.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
xorg-x11-Xvnc-1.7.0-2.1.s390x as component of openSUSE Tumbleweed affected SUSE
xorg-x11-Xvnc-1.7.0-2.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.