SUSE Security Advisories · June 2016 — SUSE Security Advisories
10 advisories 10 CVEs

SUSE-SU-* / openSUSE-SU-* / Rancher errata for 2016-06. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

Advisories

OPENSUSE-SU-2019:1398-1

openSUSECRITICAL2016-06-30

Security update for bzip2

CVEs:CVE-2016-3189

Affected products

ProductStatusVendorPackageEcosystem
bzip2-1.0.6-lp150.4.3.1.i586 as component of openSUSE Leap 15.0 affected SUSE
bzip2-1.0.6-lp150.4.3.1.x86_64 as component of openSUSE Leap 15.0 affected SUSE
bzip2-1.0.6-lp151.5.3.1.i586 as component of openSUSE Leap 15.1 affected SUSE
bzip2-1.0.6-lp151.5.3.1.x86_64 as component of openSUSE Leap 15.1 affected SUSE
bzip2-doc-1.0.6-lp150.4.3.1.noarch as component of openSUSE Leap 15.0 affected SUSE
bzip2-doc-1.0.6-lp151.5.3.1.noarch as component of openSUSE Leap 15.1 affected SUSE
libbz2-1-1.0.6-lp150.4.3.1.i586 as component of openSUSE Leap 15.0 affected SUSE
libbz2-1-1.0.6-lp150.4.3.1.x86_64 as component of openSUSE Leap 15.0 affected SUSE
libbz2-1-1.0.6-lp151.5.3.1.i586 as component of openSUSE Leap 15.1 affected SUSE
libbz2-1-1.0.6-lp151.5.3.1.x86_64 as component of openSUSE Leap 15.1 affected SUSE
libbz2-1-32bit-1.0.6-lp150.4.3.1.x86_64 as component of openSUSE Leap 15.0 affected SUSE
libbz2-1-32bit-1.0.6-lp151.5.3.1.x86_64 as component of openSUSE Leap 15.1 affected SUSE
libbz2-devel-1.0.6-lp150.4.3.1.i586 as component of openSUSE Leap 15.0 affected SUSE
libbz2-devel-1.0.6-lp150.4.3.1.x86_64 as component of openSUSE Leap 15.0 affected SUSE
libbz2-devel-1.0.6-lp151.5.3.1.i586 as component of openSUSE Leap 15.1 affected SUSE
libbz2-devel-1.0.6-lp151.5.3.1.x86_64 as component of openSUSE Leap 15.1 affected SUSE
libbz2-devel-32bit-1.0.6-lp150.4.3.1.x86_64 as component of openSUSE Leap 15.0 affected SUSE
libbz2-devel-32bit-1.0.6-lp151.5.3.1.x86_64 as component of openSUSE Leap 15.1 affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10042-1

openSUSEHIGH2016-06-13

libndp-1.6-2.3 on GA media

CVEs:CVE-2016-3698

Affected products

ProductStatusVendorPackageEcosystem
libndp0-1.6-2.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libndp0-1.6-2.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libndp0-1.6-2.3.s390x as component of openSUSE Tumbleweed affected SUSE
libndp0-1.6-2.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libndp-1.6-2.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libndp-1.6-2.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libndp-1.6-2.3.s390x as component of openSUSE Tumbleweed affected SUSE
libndp-1.6-2.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libndp-devel-1.6-2.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libndp-devel-1.6-2.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libndp-devel-1.6-2.3.s390x as component of openSUSE Tumbleweed affected SUSE
libndp-devel-1.6-2.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10119-1

openSUSEHIGH2016-06-13

quassel-base-0.12.4-3.3 on GA media

CVEs:CVE-2016-4414

Affected products

ProductStatusVendorPackageEcosystem
quassel-base-0.12.4-3.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
quassel-base-0.12.4-3.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
quassel-base-0.12.4-3.3.s390x as component of openSUSE Tumbleweed affected SUSE
quassel-base-0.12.4-3.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
quassel-client-0.12.4-3.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
quassel-client-0.12.4-3.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
quassel-client-0.12.4-3.3.s390x as component of openSUSE Tumbleweed affected SUSE
quassel-client-0.12.4-3.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
quassel-client-qt5-0.12.4-3.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
quassel-client-qt5-0.12.4-3.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
quassel-client-qt5-0.12.4-3.3.s390x as component of openSUSE Tumbleweed affected SUSE
quassel-client-qt5-0.12.4-3.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
quassel-core-0.12.4-3.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
quassel-core-0.12.4-3.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
quassel-core-0.12.4-3.3.s390x as component of openSUSE Tumbleweed affected SUSE
quassel-core-0.12.4-3.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
quassel-mono-0.12.4-3.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
quassel-mono-0.12.4-3.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
quassel-mono-0.12.4-3.3.s390x as component of openSUSE Tumbleweed affected SUSE
quassel-mono-0.12.4-3.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2016:1769-1

openSUSECRITICAL2016-06-13

Security update for Mozilla Thunderbird

CVEs:CVE-2016-2815

Affected products

ProductStatusVendorPackageEcosystem
MozillaThunderbird-45.2-6.1.aarch64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-45.2-6.1.s390x as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-45.2-6.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-buildsymbols-45.2-6.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-devel-45.2-6.1.aarch64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-devel-45.2-6.1.s390x as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-devel-45.2-6.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-common-45.2-6.1.aarch64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-common-45.2-6.1.s390x as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-common-45.2-6.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-other-45.2-6.1.aarch64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-other-45.2-6.1.s390x as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-other-45.2-6.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
Upstream advisory

OPENSUSE-SU-2016:1769-1

openSUSECRITICAL2016-06-13

Security update for Mozilla Thunderbird

CVEs:CVE-2016-2818

Affected products

ProductStatusVendorPackageEcosystem
MozillaThunderbird-45.2-6.1.aarch64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-45.2-6.1.s390x as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-45.2-6.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-buildsymbols-45.2-6.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-devel-45.2-6.1.aarch64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-devel-45.2-6.1.s390x as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-devel-45.2-6.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-common-45.2-6.1.aarch64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-common-45.2-6.1.s390x as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-common-45.2-6.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-other-45.2-6.1.aarch64 as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-other-45.2-6.1.s390x as component of SUSE Package Hub 12 affected SUSE
MozillaThunderbird-translations-other-45.2-6.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10040-1

openSUSECRITICAL2016-06-10

ImageMagick-6.9.6.6-1.1 on GA media

CVEs:CVE-2016-5118

Affected products

ProductStatusVendorPackageEcosystem
ImageMagick-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
ImageMagick-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
ImageMagick-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
ImageMagick-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
ImageMagick-devel-32bit-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
ImageMagick-devel-32bit-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
ImageMagick-devel-32bit-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
ImageMagick-devel-32bit-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
ImageMagick-devel-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
ImageMagick-devel-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
ImageMagick-devel-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
ImageMagick-devel-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
ImageMagick-doc-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
ImageMagick-doc-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
ImageMagick-doc-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
ImageMagick-doc-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
ImageMagick-extra-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
ImageMagick-extra-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
ImageMagick-extra-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
ImageMagick-extra-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libMagick++-6_Q16-6-32bit-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libMagick++-6_Q16-6-32bit-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libMagick++-6_Q16-6-32bit-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
libMagick++-6_Q16-6-32bit-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libMagick++-6_Q16-6-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libMagick++-6_Q16-6-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libMagick++-6_Q16-6-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
libMagick++-6_Q16-6-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libMagickCore-6_Q16-2-32bit-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libMagickCore-6_Q16-2-32bit-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libMagickCore-6_Q16-2-32bit-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
libMagickCore-6_Q16-2-32bit-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libMagickCore-6_Q16-2-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libMagickCore-6_Q16-2-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libMagickCore-6_Q16-2-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
libMagickCore-6_Q16-2-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libMagick++-devel-32bit-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libMagick++-devel-32bit-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libMagick++-devel-32bit-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
libMagick++-devel-32bit-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libMagick++-devel-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libMagick++-devel-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libMagick++-devel-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
libMagick++-devel-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libMagickWand-6_Q16-2-32bit-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libMagickWand-6_Q16-2-32bit-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libMagickWand-6_Q16-2-32bit-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
libMagickWand-6_Q16-2-32bit-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libMagickWand-6_Q16-2-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libMagickWand-6_Q16-2-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libMagickWand-6_Q16-2-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
libMagickWand-6_Q16-2-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
perl-PerlMagick-6.9.6.6-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
perl-PerlMagick-6.9.6.6-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
perl-PerlMagick-6.9.6.6-1.1.s390x as component of openSUSE Tumbleweed affected SUSE
perl-PerlMagick-6.9.6.6-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10064-1

openSUSECRITICAL2016-06-08

libvlc5-2.2.4-11.1 on GA media

CVEs:CVE-2016-5108

Affected products

ProductStatusVendorPackageEcosystem
libvlc5-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libvlc5-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libvlc5-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
libvlc5-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
libvlccore8-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
libvlccore8-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
libvlccore8-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
libvlccore8-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-codec-gstreamer-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-codec-gstreamer-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-codec-gstreamer-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-codec-gstreamer-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-devel-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-devel-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-devel-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-devel-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-lang-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-lang-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-lang-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-lang-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-noX-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-noX-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-noX-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-noX-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
vlc-qt-2.2.4-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
vlc-qt-2.2.4-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
vlc-qt-2.2.4-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
vlc-qt-2.2.4-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2017:0361-1

openSUSEHIGH2016-06-07

Security update for nginx

CVEs:CVE-2016-4450

Affected products

ProductStatusVendorPackageEcosystem
nginx-1.11.4-2.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
nginx-1.11.4-2.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
nginx-1.11.4-2.5.s390x as component of openSUSE Tumbleweed affected SUSE
nginx-1.11.4-2.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
nginx-1.8.1-9.1.aarch64 as component of SUSE Package Hub 12 affected SUSE
nginx-1.8.1-9.1.ppc64le as component of SUSE Package Hub 12 affected SUSE
nginx-1.8.1-9.1.s390x as component of SUSE Package Hub 12 affected SUSE
nginx-1.8.1-9.1.x86_64 as component of SUSE Package Hub 12 affected SUSE
vim-plugin-nginx-1.11.4-2.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
vim-plugin-nginx-1.11.4-2.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
vim-plugin-nginx-1.11.4-2.5.s390x as component of openSUSE Tumbleweed affected SUSE
vim-plugin-nginx-1.11.4-2.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10126-1

openSUSEHIGH2016-06-02

libksba-devel-1.3.5-1.3 on GA media

CVEs:CVE-2016-4574

Affected products

ProductStatusVendorPackageEcosystem
libksba8-1.3.5-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libksba8-1.3.5-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libksba8-1.3.5-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libksba8-1.3.5-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libksba-devel-1.3.5-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libksba-devel-1.3.5-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libksba-devel-1.3.5-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libksba-devel-1.3.5-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10126-1

openSUSEHIGH2016-06-02

libksba-devel-1.3.5-1.3 on GA media

CVEs:CVE-2016-4579

Affected products

ProductStatusVendorPackageEcosystem
libksba8-1.3.5-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libksba8-1.3.5-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libksba8-1.3.5-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libksba8-1.3.5-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libksba-devel-1.3.5-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libksba-devel-1.3.5-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libksba-devel-1.3.5-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libksba-devel-1.3.5-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.