Security update for hawk

SUSE Security Update: Security update for hawk
Announcement ID: SUSE-SU-2017:2039-1
Rating: moderate
References: #1042963 #984619
Affected Products:
  • SUSE Linux Enterprise High Availability 12-SP3
  • SUSE Linux Enterprise High Availability 12-SP2

  • An update that contains security fixes can now be installed.

    Description:

    This update for hawk fixes the following issues:

    Security issue fixed:

    - Set Content-Security-Policy to frame-ancestors 'self' (bsc#984619)

    Bug fixes:

    - Improve ACL rule quoting (bsc#1042963)

    Patch Instructions:

    To install this SUSE Security Update use YaST online_update.
    Alternatively you can run the command listed for your product:

    • SUSE Linux Enterprise High Availability 12-SP3:
      zypper in -t patch SUSE-SLE-HA-12-SP3-2017-1253=1
    • SUSE Linux Enterprise High Availability 12-SP2:
      zypper in -t patch SUSE-SLE-HA-12-SP2-2017-1253=1

    To bring your system up-to-date, use "zypper patch".

    Package List:

    • SUSE Linux Enterprise High Availability 12-SP3 (ppc64le s390x x86_64):
      • hawk-debuginfo-1.0.0+git.1448981395.15fb8b9-4.3.1
      • hawk-debugsource-1.0.0+git.1448981395.15fb8b9-4.3.1
      • hawk-templates-1.0.0+git.1448981395.15fb8b9-4.3.1
    • SUSE Linux Enterprise High Availability 12-SP2 (ppc64le s390x x86_64):
      • hawk-debuginfo-1.0.0+git.1448981395.15fb8b9-4.3.1
      • hawk-debugsource-1.0.0+git.1448981395.15fb8b9-4.3.1
      • hawk-templates-1.0.0+git.1448981395.15fb8b9-4.3.1

    References: