openSUSE-SU-2022:0727-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2022:0727-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/openSUSE-SU-2022:0727-1
Related
Published
2022-03-04T09:39:38Z
Modified
2025-05-08T17:47:56.170619Z
Upstream
Summary
Security update for libeconf, shadow and util-linux
Details

This security update for libeconf, shadow and util-linux fix the following issues:

libeconf:

  • Add libeconf to SLE-Module-Basesystem_15-SP3 because needed by 'util-linux' and 'shadow' to fix autoyast handling of security related parameters (bsc#1192954, jsc#SLE-23384, jsc#SLE-23402)

Issues fixed in libeconf: - Reading numbers with different bases (e.g. oktal) (bsc#1193632) (#157) - Fixed different issues while writing string values to file. - Writing comments to file too. - Fixed crash while merging values. - Added econftool cat option (#146) - new API call: econfreadDirsHistory (showing ALL locations) - new API call: econfgetPath (absolute path of the configuration file) - Man pages libeconf.3 and econftool.8. - Handling multiline strings. - Added libeconfext which returns more information like linenr, comments, path of the configuration file,... - Econftool, an command line interface for handling configuration files. - Generating HTML API documentation with doxygen. - Improving error handling and semantic file check. - Joining entries with the same key to one single entry if env variable ECONFJOINSAME_ENTRIES has been set.

shadow:

  • The legacy code does not support /etc/login.defs.d used by YaST. Enable libeconf to read it (bsc#1192954, jsc#SLE-23384, jsc#SLE-23402)

util-linux:

  • The legacy code does not support /etc/login.defs.d used by YaST. Enable libeconf to read it (bsc#1192954, jsc#SLE-23384, jsc#SLE-23402)
  • Allow use of larger values for start sector to prevent blockdev --report aborting (bsc#1188507)
  • Fixed blockdev --report using non-space characters as a field separator (bsc#1188507)
  • CVE-2021-3995: Fixed unauthorized unmount in util-linux's libmount. (bsc#1194976)
  • CVE-2021-3996: Fixed unauthorized unmount in util-linux's libmount. (bsc#1194976)
References

Affected packages

openSUSE:Leap 15.3 / libeconf

Package

Name
libeconf
Purl
pkg:rpm/opensuse/libeconf&distro=openSUSE%20Leap%2015.3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.4.4+git20220104.962774f-150300.3.6.2

Ecosystem specific

{
    "binaries": [
        {
            "libfdisk-devel-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel": "2.36.2-150300.4.14.3",
            "util-linux": "2.36.2-150300.4.14.3",
            "libeconf0": "0.4.4+git20220104.962774f-150300.3.6.2",
            "libuuid1": "2.36.2-150300.4.14.3",
            "util-linux-lang": "2.36.2-150300.4.14.3",
            "libfdisk-devel": "2.36.2-150300.4.14.3",
            "libmount-devel": "2.36.2-150300.4.14.3",
            "libsmartcols-devel-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel-32bit": "2.36.2-150300.4.14.3",
            "libmount-devel-32bit": "2.36.2-150300.4.14.3",
            "libmount1-32bit": "2.36.2-150300.4.14.3",
            "libsmartcols-devel": "2.36.2-150300.4.14.3",
            "libfdisk1-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel-static": "2.36.2-150300.4.14.3",
            "libuuid1-32bit": "2.36.2-150300.4.14.3",
            "login_defs": "4.8.1-150300.4.3.8",
            "libblkid-devel-static": "2.36.2-150300.4.14.3",
            "libmount-devel-static": "2.36.2-150300.4.14.3",
            "libsmartcols1": "2.36.2-150300.4.14.3",
            "libeconf-devel": "0.4.4+git20220104.962774f-150300.3.6.2",
            "shadow": "4.8.1-150300.4.3.8",
            "libblkid1-32bit": "2.36.2-150300.4.14.3",
            "uuidd": "2.36.2-150300.4.14.2",
            "libfdisk-devel-static": "2.36.2-150300.4.14.3",
            "libmount1": "2.36.2-150300.4.14.3",
            "libblkid-devel-32bit": "2.36.2-150300.4.14.3",
            "libfdisk1": "2.36.2-150300.4.14.3",
            "libeconf0-32bit": "0.4.4+git20220104.962774f-150300.3.6.2",
            "libblkid-devel": "2.36.2-150300.4.14.3",
            "libsmartcols1-32bit": "2.36.2-150300.4.14.3",
            "libsmartcols-devel-static": "2.36.2-150300.4.14.3",
            "python3-libmount": "2.36.2-150300.4.14.2",
            "libblkid1": "2.36.2-150300.4.14.3",
            "util-linux-systemd": "2.36.2-150300.4.14.2"
        }
    ]
}

openSUSE:Leap 15.3 / python3-libmount

Package

Name
python3-libmount
Purl
pkg:rpm/opensuse/python3-libmount&distro=openSUSE%20Leap%2015.3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.36.2-150300.4.14.2

Ecosystem specific

{
    "binaries": [
        {
            "libfdisk-devel-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel": "2.36.2-150300.4.14.3",
            "util-linux": "2.36.2-150300.4.14.3",
            "libeconf0": "0.4.4+git20220104.962774f-150300.3.6.2",
            "libuuid1": "2.36.2-150300.4.14.3",
            "util-linux-lang": "2.36.2-150300.4.14.3",
            "libfdisk-devel": "2.36.2-150300.4.14.3",
            "libmount-devel": "2.36.2-150300.4.14.3",
            "libsmartcols-devel-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel-32bit": "2.36.2-150300.4.14.3",
            "libmount-devel-32bit": "2.36.2-150300.4.14.3",
            "libmount1-32bit": "2.36.2-150300.4.14.3",
            "libsmartcols-devel": "2.36.2-150300.4.14.3",
            "libfdisk1-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel-static": "2.36.2-150300.4.14.3",
            "libuuid1-32bit": "2.36.2-150300.4.14.3",
            "login_defs": "4.8.1-150300.4.3.8",
            "libblkid-devel-static": "2.36.2-150300.4.14.3",
            "libmount-devel-static": "2.36.2-150300.4.14.3",
            "libsmartcols1": "2.36.2-150300.4.14.3",
            "libeconf-devel": "0.4.4+git20220104.962774f-150300.3.6.2",
            "shadow": "4.8.1-150300.4.3.8",
            "libblkid1-32bit": "2.36.2-150300.4.14.3",
            "uuidd": "2.36.2-150300.4.14.2",
            "libfdisk-devel-static": "2.36.2-150300.4.14.3",
            "libmount1": "2.36.2-150300.4.14.3",
            "libblkid-devel-32bit": "2.36.2-150300.4.14.3",
            "libfdisk1": "2.36.2-150300.4.14.3",
            "libeconf0-32bit": "0.4.4+git20220104.962774f-150300.3.6.2",
            "libblkid-devel": "2.36.2-150300.4.14.3",
            "libsmartcols1-32bit": "2.36.2-150300.4.14.3",
            "libsmartcols-devel-static": "2.36.2-150300.4.14.3",
            "python3-libmount": "2.36.2-150300.4.14.2",
            "libblkid1": "2.36.2-150300.4.14.3",
            "util-linux-systemd": "2.36.2-150300.4.14.2"
        }
    ]
}

openSUSE:Leap 15.3 / shadow

Package

Name
shadow
Purl
pkg:rpm/opensuse/shadow&distro=openSUSE%20Leap%2015.3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.8.1-150300.4.3.8

Ecosystem specific

{
    "binaries": [
        {
            "libfdisk-devel-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel": "2.36.2-150300.4.14.3",
            "util-linux": "2.36.2-150300.4.14.3",
            "libeconf0": "0.4.4+git20220104.962774f-150300.3.6.2",
            "libuuid1": "2.36.2-150300.4.14.3",
            "util-linux-lang": "2.36.2-150300.4.14.3",
            "libfdisk-devel": "2.36.2-150300.4.14.3",
            "libmount-devel": "2.36.2-150300.4.14.3",
            "libsmartcols-devel-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel-32bit": "2.36.2-150300.4.14.3",
            "libmount-devel-32bit": "2.36.2-150300.4.14.3",
            "libmount1-32bit": "2.36.2-150300.4.14.3",
            "libsmartcols-devel": "2.36.2-150300.4.14.3",
            "libfdisk1-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel-static": "2.36.2-150300.4.14.3",
            "libuuid1-32bit": "2.36.2-150300.4.14.3",
            "login_defs": "4.8.1-150300.4.3.8",
            "libblkid-devel-static": "2.36.2-150300.4.14.3",
            "libmount-devel-static": "2.36.2-150300.4.14.3",
            "libsmartcols1": "2.36.2-150300.4.14.3",
            "libeconf-devel": "0.4.4+git20220104.962774f-150300.3.6.2",
            "shadow": "4.8.1-150300.4.3.8",
            "libblkid1-32bit": "2.36.2-150300.4.14.3",
            "uuidd": "2.36.2-150300.4.14.2",
            "libfdisk-devel-static": "2.36.2-150300.4.14.3",
            "libmount1": "2.36.2-150300.4.14.3",
            "libblkid-devel-32bit": "2.36.2-150300.4.14.3",
            "libfdisk1": "2.36.2-150300.4.14.3",
            "libeconf0-32bit": "0.4.4+git20220104.962774f-150300.3.6.2",
            "libblkid-devel": "2.36.2-150300.4.14.3",
            "libsmartcols1-32bit": "2.36.2-150300.4.14.3",
            "libsmartcols-devel-static": "2.36.2-150300.4.14.3",
            "python3-libmount": "2.36.2-150300.4.14.2",
            "libblkid1": "2.36.2-150300.4.14.3",
            "util-linux-systemd": "2.36.2-150300.4.14.2"
        }
    ]
}

openSUSE:Leap 15.3 / util-linux

Package

Name
util-linux
Purl
pkg:rpm/opensuse/util-linux&distro=openSUSE%20Leap%2015.3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.36.2-150300.4.14.3

Ecosystem specific

{
    "binaries": [
        {
            "libfdisk-devel-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel": "2.36.2-150300.4.14.3",
            "util-linux": "2.36.2-150300.4.14.3",
            "libeconf0": "0.4.4+git20220104.962774f-150300.3.6.2",
            "libuuid1": "2.36.2-150300.4.14.3",
            "util-linux-lang": "2.36.2-150300.4.14.3",
            "libfdisk-devel": "2.36.2-150300.4.14.3",
            "libmount-devel": "2.36.2-150300.4.14.3",
            "libsmartcols-devel-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel-32bit": "2.36.2-150300.4.14.3",
            "libmount-devel-32bit": "2.36.2-150300.4.14.3",
            "libmount1-32bit": "2.36.2-150300.4.14.3",
            "libsmartcols-devel": "2.36.2-150300.4.14.3",
            "libfdisk1-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel-static": "2.36.2-150300.4.14.3",
            "libuuid1-32bit": "2.36.2-150300.4.14.3",
            "login_defs": "4.8.1-150300.4.3.8",
            "libblkid-devel-static": "2.36.2-150300.4.14.3",
            "libmount-devel-static": "2.36.2-150300.4.14.3",
            "libsmartcols1": "2.36.2-150300.4.14.3",
            "libeconf-devel": "0.4.4+git20220104.962774f-150300.3.6.2",
            "shadow": "4.8.1-150300.4.3.8",
            "libblkid1-32bit": "2.36.2-150300.4.14.3",
            "uuidd": "2.36.2-150300.4.14.2",
            "libfdisk-devel-static": "2.36.2-150300.4.14.3",
            "libmount1": "2.36.2-150300.4.14.3",
            "libblkid-devel-32bit": "2.36.2-150300.4.14.3",
            "libfdisk1": "2.36.2-150300.4.14.3",
            "libeconf0-32bit": "0.4.4+git20220104.962774f-150300.3.6.2",
            "libblkid-devel": "2.36.2-150300.4.14.3",
            "libsmartcols1-32bit": "2.36.2-150300.4.14.3",
            "libsmartcols-devel-static": "2.36.2-150300.4.14.3",
            "python3-libmount": "2.36.2-150300.4.14.2",
            "libblkid1": "2.36.2-150300.4.14.3",
            "util-linux-systemd": "2.36.2-150300.4.14.2"
        }
    ]
}

openSUSE:Leap 15.3 / util-linux-systemd

Package

Name
util-linux-systemd
Purl
pkg:rpm/opensuse/util-linux-systemd&distro=openSUSE%20Leap%2015.3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.36.2-150300.4.14.2

Ecosystem specific

{
    "binaries": [
        {
            "libfdisk-devel-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel": "2.36.2-150300.4.14.3",
            "util-linux": "2.36.2-150300.4.14.3",
            "libeconf0": "0.4.4+git20220104.962774f-150300.3.6.2",
            "libuuid1": "2.36.2-150300.4.14.3",
            "util-linux-lang": "2.36.2-150300.4.14.3",
            "libfdisk-devel": "2.36.2-150300.4.14.3",
            "libmount-devel": "2.36.2-150300.4.14.3",
            "libsmartcols-devel-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel-32bit": "2.36.2-150300.4.14.3",
            "libmount-devel-32bit": "2.36.2-150300.4.14.3",
            "libmount1-32bit": "2.36.2-150300.4.14.3",
            "libsmartcols-devel": "2.36.2-150300.4.14.3",
            "libfdisk1-32bit": "2.36.2-150300.4.14.3",
            "libuuid-devel-static": "2.36.2-150300.4.14.3",
            "libuuid1-32bit": "2.36.2-150300.4.14.3",
            "login_defs": "4.8.1-150300.4.3.8",
            "libblkid-devel-static": "2.36.2-150300.4.14.3",
            "libmount-devel-static": "2.36.2-150300.4.14.3",
            "libsmartcols1": "2.36.2-150300.4.14.3",
            "libeconf-devel": "0.4.4+git20220104.962774f-150300.3.6.2",
            "shadow": "4.8.1-150300.4.3.8",
            "libblkid1-32bit": "2.36.2-150300.4.14.3",
            "uuidd": "2.36.2-150300.4.14.2",
            "libfdisk-devel-static": "2.36.2-150300.4.14.3",
            "libmount1": "2.36.2-150300.4.14.3",
            "libblkid-devel-32bit": "2.36.2-150300.4.14.3",
            "libfdisk1": "2.36.2-150300.4.14.3",
            "libeconf0-32bit": "0.4.4+git20220104.962774f-150300.3.6.2",
            "libblkid-devel": "2.36.2-150300.4.14.3",
            "libsmartcols1-32bit": "2.36.2-150300.4.14.3",
            "libsmartcols-devel-static": "2.36.2-150300.4.14.3",
            "python3-libmount": "2.36.2-150300.4.14.2",
            "libblkid1": "2.36.2-150300.4.14.3",
            "util-linux-systemd": "2.36.2-150300.4.14.2"
        }
    ]
}