Upstream information

CVE-2013-7285 at MITRE

Description

Xstream API versions up to 1.4.6 and version 1.4.10, if the security framework has not been initialized, may allow a remote attacker to run arbitrary shell commands by manipulating the processed input stream when unmarshaling XML or any supported format. e.g. JSON.

SUSE information

Overall state of this security issue: Resolved

This issue is currently rated as having important severity.

CVSS v2 Scores
  National Vulnerability Database
Base Score 7.5
Vector AV:N/AC:L/Au:N/C:P/I:P/A:P
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact Partial
Integrity Impact Partial
Availability Impact Partial
CVSS v3 Scores
  National Vulnerability Database
Base Score 9.8
Vector CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Access Vector Network
Access Complexity Low
Privileges Required None
User Interaction None
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact High
CVSSv3 Version 3
SUSE Bugzilla entries: 1142383 [NEW], 875241 [RESOLVED / FIXED]

No SUSE Security Announcements cross referenced.


Status of this issue by product and package

Please note that this evaluation state might be work in progress, incomplete or outdated. Also information for service packs in the LTSS phase is only included for issues meeting the LTSS criteria. If in doubt, feel free to contact us for clarification.

Product(s) Source package State
HPE Helion OpenStack 8 apache-commons-beanutils Already fixed
HPE Helion OpenStack 8 apache-commons-httpclient Released
HPE Helion OpenStack 8 jakarta-commons-fileupload Already fixed
HPE Helion OpenStack 8 java-1_7_0-openjdk Released
HPE Helion OpenStack 8 java-1_7_1-ibm Released
HPE Helion OpenStack 8 java-1_8_0-ibm Released
HPE Helion OpenStack 8 java-1_8_0-openjdk Released
HPE Helion OpenStack 8 mariadb In progress
HPE Helion OpenStack 8 pcre In progress
HPE Helion OpenStack 8 pcre2 In progress
HPE Helion OpenStack 8 tomcat In progress
HPE Helion OpenStack 8 xalan-j2 Already fixed
SLES for SAP Applications kernel-default Ignore
SLES for SAP Applications kernel-source Ignore
SLES for SAP Applications tomcat6 Released
SUSE CaaS Platform 4.0 apache-commons-httpclient In progress
SUSE CaaS Platform 4.0 java-10-openjdk Released
SUSE CaaS Platform 4.0 java-11-openjdk Released
SUSE CaaS Platform 4.0 java-1_8_0-ibm In progress
SUSE CaaS Platform 4.0 java-1_8_0-openjdk In progress
SUSE CaaS Platform 4.0 ruby2.5 Released
SUSE Enterprise Storage 5 apache-commons-httpclient Released
SUSE Enterprise Storage 5 jakarta-commons-fileupload Released
SUSE Enterprise Storage 5 java-1_7_0-openjdk Released
SUSE Enterprise Storage 5 java-1_7_1-ibm Released
SUSE Enterprise Storage 5 java-1_8_0-ibm Released
SUSE Enterprise Storage 5 java-1_8_0-openjdk Released
SUSE Enterprise Storage 6 apache-commons-httpclient In progress
SUSE Enterprise Storage 6 java-10-openjdk Released
SUSE Enterprise Storage 6 java-11-openjdk Released
SUSE Enterprise Storage 6 java-1_8_0-ibm In progress
SUSE Enterprise Storage 6 java-1_8_0-openjdk In progress
SUSE Enterprise Storage 6 ruby2.5 Released
SUSE Linux Enterprise Desktop 11 SP1 xalan-j2 Released
SUSE Linux Enterprise Desktop 11 SP3 xalan-j2 Released
SUSE Linux Enterprise Desktop 12 SP3 java-1_7_0-openjdk Released
SUSE Linux Enterprise Desktop 12 SP3 java-1_8_0-openjdk Not affected
SUSE Linux Enterprise Desktop 12 SP3 kernel-default Ignore
SUSE Linux Enterprise Desktop 12 SP3 kernel-source Ignore
SUSE Linux Enterprise Desktop 12 SP4 java-1_7_0-openjdk Released
SUSE Linux Enterprise Desktop 12 SP4 kernel-default Released
SUSE Linux Enterprise Desktop 12 SP4 kernel-source Released
SUSE Linux Enterprise High Availability Extension 12 SP3 pcre Released
SUSE Linux Enterprise High Availability Extension 12 SP4 pcre Released
SUSE Linux Enterprise High Availability Extension 12 SP5 pcre Released
SUSE Linux Enterprise High Performance Computing 12 SP4 java-1_7_0-openjdk Released
SUSE Linux Enterprise High Performance Computing 12 SP4 java-1_7_1-ibm Affected
SUSE Linux Enterprise High Performance Computing 12 SP4 java-1_8_0-ibm Released
SUSE Linux Enterprise High Performance Computing 12 SP4 kernel-default Released
SUSE Linux Enterprise High Performance Computing 12 SP4 kernel-source Released
SUSE Linux Enterprise High Performance Computing 12 SP4 tomcat Analysis
SUSE Linux Enterprise High Performance Computing 12 SP5 apache-commons-beanutils Already fixed
SUSE Linux Enterprise High Performance Computing 12 SP5 apache-commons-httpclient Released
SUSE Linux Enterprise High Performance Computing 12 SP5 jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise High Performance Computing 12 SP5 jasper Released
SUSE Linux Enterprise High Performance Computing 12 SP5 java-11-openjdk Already fixed
SUSE Linux Enterprise High Performance Computing 12 SP5 java-1_7_0-openjdk Released
SUSE Linux Enterprise High Performance Computing 12 SP5 java-1_7_1-ibm Released
SUSE Linux Enterprise High Performance Computing 12 SP5 java-1_8_0-ibm Released
SUSE Linux Enterprise High Performance Computing 12 SP5 java-1_8_0-openjdk Released
SUSE Linux Enterprise High Performance Computing 12 SP5 mariadb-100 Already fixed
SUSE Linux Enterprise High Performance Computing 12 SP5 pcre Released
SUSE Linux Enterprise High Performance Computing 12 SP5 pcre2 In progress
SUSE Linux Enterprise High Performance Computing 12 SP5 tomcat In progress
SUSE Linux Enterprise High Performance Computing 12 SP5 xalan-j2 Already fixed
SUSE Linux Enterprise High Performance Computing 15 LTSS apache-commons-httpclient In progress
SUSE Linux Enterprise High Performance Computing 15 LTSS java-10-openjdk Released
SUSE Linux Enterprise High Performance Computing 15 LTSS java-11-openjdk Released
SUSE Linux Enterprise High Performance Computing 15 LTSS ruby2.5 Released
SUSE Linux Enterprise High Performance Computing 15 SP1 LTSS apache-commons-httpclient In progress
SUSE Linux Enterprise High Performance Computing 15 SP1 LTSS java-11-openjdk Released
SUSE Linux Enterprise High Performance Computing 15 SP1 LTSS ruby2.5 Released
SUSE Linux Enterprise Module for Basesystem 15 java-10-openjdk Not affected
SUSE Linux Enterprise Module for Basesystem 15 kernel-default Ignore
SUSE Linux Enterprise Module for Basesystem 15 kernel-source Ignore
SUSE Linux Enterprise Module for Basesystem 15 SP1 apache-commons-httpclient Released
SUSE Linux Enterprise Module for Basesystem 15 SP1 java-11-openjdk Released
SUSE Linux Enterprise Module for Basesystem 15 SP1 ruby2.5 Released
SUSE Linux Enterprise Module for Basesystem 15 SP2 apache-commons-httpclient Released
SUSE Linux Enterprise Module for Basesystem 15 SP2 java-11-openjdk Released
SUSE Linux Enterprise Module for Basesystem 15 SP2 ruby2.5 Released
SUSE Linux Enterprise Module for Containers 12 sles12-docker-image Released
SUSE Linux Enterprise Module for Containers 12 sles12sp1-docker-image Released
SUSE Linux Enterprise Module for Development Tools 15 kernel-default Ignore
SUSE Linux Enterprise Module for Development Tools 15 kernel-source Ignore
SUSE Linux Enterprise Module for Legacy 15 java-1_8_0-ibm Released
SUSE Linux Enterprise Module for Legacy 15 java-1_8_0-openjdk Not affected
SUSE Linux Enterprise Module for Legacy 15 SP1 java-10-openjdk Released
SUSE Linux Enterprise Module for Legacy 15 SP2 java-1_8_0-ibm In progress
SUSE Linux Enterprise Module for Legacy 15 SP2 java-1_8_0-openjdk In progress
SUSE Linux Enterprise Module for Web and Scripting 12 php5 In progress
SUSE Linux Enterprise Module for Web and Scripting 12 php7 In progress
SUSE Linux Enterprise Module for Web and Scripting 12 php72 In progress
SUSE Linux Enterprise Module for Web and Scripting 12 php74 In progress
SUSE Linux Enterprise Module for Web and Scripting 15 jakarta-commons-fileupload Released
SUSE Linux Enterprise Module for Web and Scripting 15 tomcat Analysis
SUSE Linux Enterprise Module for Web and Scripting 15 SP1 jakarta-commons-fileupload Released
SUSE Linux Enterprise Module for Web and Scripting 15 SP2 apache-commons-fileupload Already fixed
SUSE Linux Enterprise Point of Service 11 SP3 java-1_7_0-ibm Released
SUSE Linux Enterprise Point of Service 11 SP3 mysql In progress
SUSE Linux Enterprise Point of Service 11 SP3 php53 In progress
SUSE Linux Enterprise Point of Service 11 SP3 tomcat6 In progress
SUSE Linux Enterprise Point of Service Image Server 12 SP2 apache-commons-httpclient Released
SUSE Linux Enterprise Point of Service Image Server 12 SP2 jakarta-commons-fileupload Released
SUSE Linux Enterprise Point of Service Image Server 12 SP2 java-1_7_0-openjdk Released
SUSE Linux Enterprise Point of Service Image Server 12 SP2 java-1_7_1-ibm Released
SUSE Linux Enterprise Point of Service Image Server 12 SP2 java-1_8_0-ibm Released
SUSE Linux Enterprise Point of Service Image Server 12 SP2 java-1_8_0-openjdk Released
SUSE Linux Enterprise Server 11 SP1 libtcnative-1-0 Released
SUSE Linux Enterprise Server 11 SP1 tomcat6 Released
SUSE Linux Enterprise Server 11 SP1 xalan-j2 Released
SUSE Linux Enterprise Server 11 SP1 LTSS libtcnative-1-0 Released
SUSE Linux Enterprise Server 11 SP1 LTSS tomcat6 Released
SUSE Linux Enterprise Server 11 SP1 LTSS xalan-j2 Released
SUSE Linux Enterprise Server 11 SP2 tomcat6 Released
SUSE Linux Enterprise Server 11 SP2 LTSS tomcat6 Released
SUSE Linux Enterprise Server 11 SP2 for VMware kernel-default Ignore
SUSE Linux Enterprise Server 11 SP2 for VMware kernel-source Ignore
SUSE Linux Enterprise Server 11 SP2 for VMware tomcat6 Released
SUSE Linux Enterprise Server 11 SP3 jakarta-commons-fileupload Released
SUSE Linux Enterprise Server 11 SP3 libtcnative-1-0 Released
SUSE Linux Enterprise Server 11 SP3 tomcat6 Released
SUSE Linux Enterprise Server 11 SP3 xalan-j2 Released
SUSE Linux Enterprise Server 11 SP3 LTSS java-1_7_0-ibm Already fixed
SUSE Linux Enterprise Server 11 SP3 LTSS kernel-default Ignore
SUSE Linux Enterprise Server 11 SP3 LTSS kernel-source Ignore
SUSE Linux Enterprise Server 11 SP3 LTSS tomcat6 Not affected
SUSE Linux Enterprise Server 11 SP3 for VMware jakarta-commons-fileupload Released
SUSE Linux Enterprise Server 11 SP3 for VMware kernel-default Ignore
SUSE Linux Enterprise Server 11 SP3 for VMware kernel-source Ignore
SUSE Linux Enterprise Server 11 SP3 for VMware libtcnative-1-0 Released
SUSE Linux Enterprise Server 11 SP3 for VMware tomcat6 Released
SUSE Linux Enterprise Server 11 SP3 for VMware xalan-j2 Released
SUSE Linux Enterprise Server 11 SP4 java-1_7_1-ibm Already fixed
SUSE Linux Enterprise Server 11 SP4 kernel-default Ignore
SUSE Linux Enterprise Server 11 SP4 kernel-source Ignore
SUSE Linux Enterprise Server 11 SP4 tomcat6 Released
SUSE Linux Enterprise Server 11 SP4 LTSS java-1_7_1-ibm In progress
SUSE Linux Enterprise Server 11 SP4 LTSS kernel-default Ignore
SUSE Linux Enterprise Server 11 SP4 LTSS kernel-source Ignore
SUSE Linux Enterprise Server 11 SP4 LTSS mysql Released
SUSE Linux Enterprise Server 11 SP4 LTSS php53 In progress
SUSE Linux Enterprise Server 11 SP4 LTSS tomcat6 In progress
SUSE Linux Enterprise Server 12 tomcat Not affected
SUSE Linux Enterprise Server 12 LTSS java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 LTSS java-1_7_1-ibm Unsupported
SUSE Linux Enterprise Server 12 LTSS kernel-default Ignore
SUSE Linux Enterprise Server 12 LTSS kernel-source Ignore
SUSE Linux Enterprise Server 12 LTSS tomcat Released
SUSE Linux Enterprise Server 12 SP1 LTSS java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 SP1 LTSS java-1_7_1-ibm Unsupported
SUSE Linux Enterprise Server 12 SP1 LTSS java-1_8_0-ibm Released
SUSE Linux Enterprise Server 12 SP1 LTSS java-1_8_0-openjdk Not affected
SUSE Linux Enterprise Server 12 SP1 LTSS tomcat Released
SUSE Linux Enterprise Server 12 SP2 tomcat Released
SUSE Linux Enterprise Server 12 SP2 ESPOS apache-commons-httpclient Released
SUSE Linux Enterprise Server 12 SP2 ESPOS jakarta-commons-fileupload Released
SUSE Linux Enterprise Server 12 SP2 ESPOS java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 SP2 ESPOS java-1_7_1-ibm Released
SUSE Linux Enterprise Server 12 SP2 ESPOS java-1_8_0-ibm Released
SUSE Linux Enterprise Server 12 SP2 ESPOS java-1_8_0-openjdk Released
SUSE Linux Enterprise Server 12 SP2 LTSS apache-commons-httpclient Released
SUSE Linux Enterprise Server 12 SP2 LTSS jakarta-commons-fileupload Released
SUSE Linux Enterprise Server 12 SP2 LTSS java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 SP2 LTSS java-1_7_1-ibm Unsupported
SUSE Linux Enterprise Server 12 SP2 LTSS java-1_8_0-ibm Released
SUSE Linux Enterprise Server 12 SP2 LTSS java-1_8_0-openjdk Released
SUSE Linux Enterprise Server 12 SP2 LTSS kernel-default Ignore
SUSE Linux Enterprise Server 12 SP2 LTSS kernel-source Ignore
SUSE Linux Enterprise Server 12 SP2 LTSS tomcat Analysis
SUSE Linux Enterprise Server 12 SP3 java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 SP3 java-1_7_1-ibm Affected
SUSE Linux Enterprise Server 12 SP3 java-1_8_0-ibm Released
SUSE Linux Enterprise Server 12 SP3 java-1_8_0-openjdk Not affected
SUSE Linux Enterprise Server 12 SP3 kernel-default Ignore
SUSE Linux Enterprise Server 12 SP3 kernel-source Ignore
SUSE Linux Enterprise Server 12 SP3 tomcat Released
SUSE Linux Enterprise Server 12 SP3 ESPOS apache-commons-beanutils Already fixed
SUSE Linux Enterprise Server 12 SP3 ESPOS apache-commons-httpclient Released
SUSE Linux Enterprise Server 12 SP3 ESPOS jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise Server 12 SP3 ESPOS java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 SP3 ESPOS java-1_7_1-ibm Released
SUSE Linux Enterprise Server 12 SP3 ESPOS java-1_8_0-ibm Released
SUSE Linux Enterprise Server 12 SP3 ESPOS java-1_8_0-openjdk Released
SUSE Linux Enterprise Server 12 SP3 ESPOS mariadb In progress
SUSE Linux Enterprise Server 12 SP3 ESPOS pcre In progress
SUSE Linux Enterprise Server 12 SP3 ESPOS pcre2 In progress
SUSE Linux Enterprise Server 12 SP3 ESPOS tomcat In progress
SUSE Linux Enterprise Server 12 SP3 ESPOS xalan-j2 Already fixed
SUSE Linux Enterprise Server 12 SP3 LTSS apache-commons-beanutils Already fixed
SUSE Linux Enterprise Server 12 SP3 LTSS apache-commons-httpclient Released
SUSE Linux Enterprise Server 12 SP3 LTSS jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise Server 12 SP3 LTSS java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 SP3 LTSS java-1_7_1-ibm Released
SUSE Linux Enterprise Server 12 SP3 LTSS java-1_8_0-ibm Released
SUSE Linux Enterprise Server 12 SP3 LTSS java-1_8_0-openjdk Released
SUSE Linux Enterprise Server 12 SP3 LTSS mariadb In progress
SUSE Linux Enterprise Server 12 SP3 LTSS pcre In progress
SUSE Linux Enterprise Server 12 SP3 LTSS pcre2 In progress
SUSE Linux Enterprise Server 12 SP3 LTSS tomcat In progress
SUSE Linux Enterprise Server 12 SP3 LTSS xalan-j2 Already fixed
SUSE Linux Enterprise Server 12 SP4 java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 SP4 java-1_7_1-ibm Affected
SUSE Linux Enterprise Server 12 SP4 java-1_8_0-ibm Released
SUSE Linux Enterprise Server 12 SP4 kernel-default Released
SUSE Linux Enterprise Server 12 SP4 kernel-source Released
SUSE Linux Enterprise Server 12 SP4 tomcat Analysis
SUSE Linux Enterprise Server 12 SP4 ESPOS apache-commons-beanutils Already fixed
SUSE Linux Enterprise Server 12 SP4 ESPOS apache-commons-httpclient Released
SUSE Linux Enterprise Server 12 SP4 ESPOS jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise Server 12 SP4 ESPOS java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 SP4 ESPOS java-1_7_1-ibm Released
SUSE Linux Enterprise Server 12 SP4 ESPOS java-1_8_0-ibm Released
SUSE Linux Enterprise Server 12 SP4 ESPOS java-1_8_0-openjdk Released
SUSE Linux Enterprise Server 12 SP4 ESPOS mariadb-100 Already fixed
SUSE Linux Enterprise Server 12 SP4 ESPOS pcre In progress
SUSE Linux Enterprise Server 12 SP4 ESPOS pcre2 In progress
SUSE Linux Enterprise Server 12 SP4 ESPOS tomcat In progress
SUSE Linux Enterprise Server 12 SP4 ESPOS xalan-j2 Already fixed
SUSE Linux Enterprise Server 12 SP4 LTSS apache-commons-beanutils Already fixed
SUSE Linux Enterprise Server 12 SP4 LTSS apache-commons-httpclient Released
SUSE Linux Enterprise Server 12 SP4 LTSS jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise Server 12 SP4 LTSS java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 SP4 LTSS java-1_7_1-ibm Affected
SUSE Linux Enterprise Server 12 SP4 LTSS java-1_8_0-ibm Released
SUSE Linux Enterprise Server 12 SP4 LTSS java-1_8_0-openjdk Released
SUSE Linux Enterprise Server 12 SP4 LTSS mariadb-100 Already fixed
SUSE Linux Enterprise Server 12 SP4 LTSS pcre In progress
SUSE Linux Enterprise Server 12 SP4 LTSS pcre2 In progress
SUSE Linux Enterprise Server 12 SP4 LTSS tomcat In progress
SUSE Linux Enterprise Server 12 SP4 LTSS xalan-j2 Already fixed
SUSE Linux Enterprise Server 12 SP5 apache-commons-beanutils Already fixed
SUSE Linux Enterprise Server 12 SP5 apache-commons-httpclient Released
SUSE Linux Enterprise Server 12 SP5 jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise Server 12 SP5 jasper Released
SUSE Linux Enterprise Server 12 SP5 java-11-openjdk Already fixed
SUSE Linux Enterprise Server 12 SP5 java-1_7_0-openjdk Released
SUSE Linux Enterprise Server 12 SP5 java-1_7_1-ibm Released
SUSE Linux Enterprise Server 12 SP5 java-1_8_0-ibm Released
SUSE Linux Enterprise Server 12 SP5 java-1_8_0-openjdk Released
SUSE Linux Enterprise Server 12 SP5 mariadb-100 Already fixed
SUSE Linux Enterprise Server 12 SP5 pcre Released
SUSE Linux Enterprise Server 12 SP5 pcre2 In progress
SUSE Linux Enterprise Server 12 SP5 tomcat In progress
SUSE Linux Enterprise Server 12 SP5 xalan-j2 Already fixed
SUSE Linux Enterprise Server 15 ESPOS apache-commons-httpclient In progress
SUSE Linux Enterprise Server 15 ESPOS java-10-openjdk Released
SUSE Linux Enterprise Server 15 ESPOS java-11-openjdk Released
SUSE Linux Enterprise Server 15 ESPOS ruby2.5 Released
SUSE Linux Enterprise Server 15 LTSS apache-commons-httpclient In progress
SUSE Linux Enterprise Server 15 LTSS java-10-openjdk Released
SUSE Linux Enterprise Server 15 LTSS java-11-openjdk Released
SUSE Linux Enterprise Server 15 LTSS java-1_8_0-ibm In progress
SUSE Linux Enterprise Server 15 LTSS java-1_8_0-openjdk In progress
SUSE Linux Enterprise Server 15 LTSS ruby2.5 Released
SUSE Linux Enterprise Server 15 SP1 LTSS apache-commons-httpclient In progress
SUSE Linux Enterprise Server 15 SP1 LTSS java-10-openjdk Released
SUSE Linux Enterprise Server 15 SP1 LTSS java-11-openjdk Released
SUSE Linux Enterprise Server 15 SP1 LTSS java-1_8_0-ibm In progress
SUSE Linux Enterprise Server 15 SP1 LTSS java-1_8_0-openjdk In progress
SUSE Linux Enterprise Server 15 SP1 LTSS ruby2.5 Released
SUSE Linux Enterprise Server BCL 12 SP2 apache-commons-beanutils Already fixed
SUSE Linux Enterprise Server BCL 12 SP2 apache-commons-httpclient Released
SUSE Linux Enterprise Server BCL 12 SP2 jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise Server BCL 12 SP2 java-1_7_0-openjdk Released
SUSE Linux Enterprise Server BCL 12 SP2 java-1_7_1-ibm Analysis
SUSE Linux Enterprise Server BCL 12 SP2 java-1_8_0-ibm Released
SUSE Linux Enterprise Server BCL 12 SP2 java-1_8_0-openjdk Released
SUSE Linux Enterprise Server BCL 12 SP2 mariadb In progress
SUSE Linux Enterprise Server BCL 12 SP2 pcre In progress
SUSE Linux Enterprise Server BCL 12 SP2 pcre2 In progress
SUSE Linux Enterprise Server BCL 12 SP2 tomcat In progress
SUSE Linux Enterprise Server BCL 12 SP2 xalan-j2 Already fixed
SUSE Linux Enterprise Server BCL 12 SP3 apache-commons-beanutils Already fixed
SUSE Linux Enterprise Server BCL 12 SP3 apache-commons-httpclient Released
SUSE Linux Enterprise Server BCL 12 SP3 jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise Server BCL 12 SP3 java-1_7_0-openjdk Released
SUSE Linux Enterprise Server BCL 12 SP3 java-1_7_1-ibm Analysis
SUSE Linux Enterprise Server BCL 12 SP3 java-1_8_0-ibm Released
SUSE Linux Enterprise Server BCL 12 SP3 java-1_8_0-openjdk Released
SUSE Linux Enterprise Server BCL 12 SP3 mariadb In progress
SUSE Linux Enterprise Server BCL 12 SP3 pcre In progress
SUSE Linux Enterprise Server BCL 12 SP3 pcre2 In progress
SUSE Linux Enterprise Server BCL 12 SP3 tomcat In progress
SUSE Linux Enterprise Server BCL 12 SP3 xalan-j2 Already fixed
SUSE Linux Enterprise Server Business Critical Linux 15 SP1 apache-commons-httpclient In progress
SUSE Linux Enterprise Server Business Critical Linux 15 SP1 java-10-openjdk Released
SUSE Linux Enterprise Server Business Critical Linux 15 SP1 java-11-openjdk Released
SUSE Linux Enterprise Server Business Critical Linux 15 SP1 java-1_8_0-ibm In progress
SUSE Linux Enterprise Server Business Critical Linux 15 SP1 java-1_8_0-openjdk In progress
SUSE Linux Enterprise Server Business Critical Linux 15 SP1 ruby2.5 Released
SUSE Linux Enterprise Server for SAP Applications 12 kernel-default Ignore
SUSE Linux Enterprise Server for SAP Applications 12 kernel-source Ignore
SUSE Linux Enterprise Server for SAP Applications 12 tomcat Analysis
SUSE Linux Enterprise Server for SAP Applications 12 SP2 apache-commons-httpclient Released
SUSE Linux Enterprise Server for SAP Applications 12 SP2 jakarta-commons-fileupload Released
SUSE Linux Enterprise Server for SAP Applications 12 SP2 java-1_7_0-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 12 SP2 java-1_7_1-ibm Unsupported
SUSE Linux Enterprise Server for SAP Applications 12 SP2 java-1_8_0-ibm Released
SUSE Linux Enterprise Server for SAP Applications 12 SP2 java-1_8_0-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 12 SP2 kernel-default Unsupported
SUSE Linux Enterprise Server for SAP Applications 12 SP2 kernel-source Unsupported
SUSE Linux Enterprise Server for SAP Applications 12 SP2 tomcat Analysis
SUSE Linux Enterprise Server for SAP Applications 12 SP3 apache-commons-beanutils Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP3 apache-commons-httpclient Released
SUSE Linux Enterprise Server for SAP Applications 12 SP3 jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP3 java-1_7_0-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 12 SP3 java-1_7_1-ibm Affected
SUSE Linux Enterprise Server for SAP Applications 12 SP3 java-1_8_0-ibm Released
SUSE Linux Enterprise Server for SAP Applications 12 SP3 java-1_8_0-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 12 SP3 kernel-default Ignore
SUSE Linux Enterprise Server for SAP Applications 12 SP3 kernel-source Ignore
SUSE Linux Enterprise Server for SAP Applications 12 SP3 mariadb In progress
SUSE Linux Enterprise Server for SAP Applications 12 SP3 pcre Released
SUSE Linux Enterprise Server for SAP Applications 12 SP3 pcre2 In progress
SUSE Linux Enterprise Server for SAP Applications 12 SP3 tomcat In progress
SUSE Linux Enterprise Server for SAP Applications 12 SP3 xalan-j2 Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP4 apache-commons-beanutils Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP4 apache-commons-httpclient Released
SUSE Linux Enterprise Server for SAP Applications 12 SP4 jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP4 java-1_7_0-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 12 SP4 java-1_7_1-ibm Affected
SUSE Linux Enterprise Server for SAP Applications 12 SP4 java-1_8_0-ibm Released
SUSE Linux Enterprise Server for SAP Applications 12 SP4 java-1_8_0-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 12 SP4 kernel-default Released
SUSE Linux Enterprise Server for SAP Applications 12 SP4 kernel-source Released
SUSE Linux Enterprise Server for SAP Applications 12 SP4 mariadb-100 Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP4 pcre Released
SUSE Linux Enterprise Server for SAP Applications 12 SP4 pcre2 In progress
SUSE Linux Enterprise Server for SAP Applications 12 SP4 tomcat In progress
SUSE Linux Enterprise Server for SAP Applications 12 SP4 xalan-j2 Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP5 apache-commons-beanutils Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP5 apache-commons-httpclient Released
SUSE Linux Enterprise Server for SAP Applications 12 SP5 jakarta-commons-fileupload Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP5 jasper Released
SUSE Linux Enterprise Server for SAP Applications 12 SP5 java-11-openjdk Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP5 java-1_7_0-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 12 SP5 java-1_7_1-ibm Released
SUSE Linux Enterprise Server for SAP Applications 12 SP5 java-1_8_0-ibm Released
SUSE Linux Enterprise Server for SAP Applications 12 SP5 java-1_8_0-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 12 SP5 mariadb-100 Already fixed
SUSE Linux Enterprise Server for SAP Applications 12 SP5 pcre Released
SUSE Linux Enterprise Server for SAP Applications 12 SP5 pcre2 In progress
SUSE Linux Enterprise Server for SAP Applications 12 SP5 tomcat In progress
SUSE Linux Enterprise Server for SAP Applications 12 SP5 xalan-j2 Already fixed
SUSE Linux Enterprise Server for SAP Applications 15 apache-commons-httpclient In progress
SUSE Linux Enterprise Server for SAP Applications 15 java-10-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 15 java-11-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 15 java-1_8_0-ibm In progress
SUSE Linux Enterprise Server for SAP Applications 15 java-1_8_0-openjdk In progress
SUSE Linux Enterprise Server for SAP Applications 15 ruby2.5 Released
SUSE Linux Enterprise Server for SAP Applications 15 SP1 apache-commons-httpclient In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP1 java-10-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 15 SP1 java-11-openjdk Released
SUSE Linux Enterprise Server for SAP Applications 15 SP1 java-1_8_0-ibm In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP1 java-1_8_0-openjdk In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP1 ruby2.5 Released
SUSE Linux Enterprise Server for SAP Business All-in-One 11 SP1 libtcnative-1-0 Released
SUSE Linux Enterprise Server for SAP Business All-in-One 11 SP1 tomcat6 Released
SUSE Linux Enterprise Server for SAP Business All-in-One 11 SP1 xalan-j2 Released
SUSE Linux Enterprise Software Development Kit 11 SP1 xalan-j2 Released
SUSE Linux Enterprise Software Development Kit 11 SP3 xalan-j2 Released
SUSE Linux Enterprise Software Development Kit 11 SP4 java-1_7_1-ibm Already fixed
SUSE Linux Enterprise Software Development Kit 12 SP3 java-1_7_1-ibm Affected
SUSE Linux Enterprise Software Development Kit 12 SP3 java-1_8_0-ibm Released
SUSE Linux Enterprise Software Development Kit 12 SP4 java-1_7_1-ibm Affected
SUSE Linux Enterprise Software Development Kit 12 SP4 java-1_8_0-ibm Released
SUSE Linux Enterprise Software Development Kit 12 SP5 java-1_7_1-ibm Released
SUSE Linux Enterprise Software Development Kit 12 SP5 java-1_8_0-ibm Released
SUSE Linux Enterprise Workstation Extension 12 SP5 mariadb-100 Already fixed
SUSE Linux Enterprise Workstation Extension 12 SP5 pcre Released
SUSE Manager Proxy 4.0 apache-commons-httpclient In progress
SUSE Manager Proxy 4.0 java-10-openjdk Released
SUSE Manager Proxy 4.0 java-11-openjdk Released
SUSE Manager Proxy 4.0 java-1_8_0-ibm In progress
SUSE Manager Proxy 4.0 java-1_8_0-openjdk In progress
SUSE Manager Proxy 4.0 ruby2.5 Released
SUSE Manager Retail Branch Server 4.0 apache-commons-httpclient In progress
SUSE Manager Retail Branch Server 4.0 java-10-openjdk Released
SUSE Manager Retail Branch Server 4.0 java-11-openjdk Released
SUSE Manager Retail Branch Server 4.0 java-1_8_0-ibm In progress
SUSE Manager Retail Branch Server 4.0 java-1_8_0-openjdk In progress
SUSE Manager Retail Branch Server 4.0 ruby2.5 Released
SUSE Manager Server 1.2 tomcat6 Released
SUSE Manager Server 4.0 apache-commons-httpclient In progress
SUSE Manager Server 4.0 java-10-openjdk Released
SUSE Manager Server 4.0 java-11-openjdk Released
SUSE Manager Server 4.0 java-1_8_0-ibm In progress
SUSE Manager Server 4.0 java-1_8_0-openjdk In progress
SUSE Manager Server 4.0 ruby2.5 Released
SUSE OpenStack Cloud 7 apache-commons-httpclient Released
SUSE OpenStack Cloud 7 jakarta-commons-fileupload Released
SUSE OpenStack Cloud 7 java-1_7_0-openjdk Released
SUSE OpenStack Cloud 7 java-1_7_1-ibm Released
SUSE OpenStack Cloud 7 java-1_8_0-ibm Released
SUSE OpenStack Cloud 7 java-1_8_0-openjdk Released
SUSE OpenStack Cloud 7 mariadb In progress
SUSE OpenStack Cloud 8 apache-commons-beanutils Already fixed
SUSE OpenStack Cloud 8 apache-commons-httpclient Released
SUSE OpenStack Cloud 8 jakarta-commons-fileupload Already fixed
SUSE OpenStack Cloud 8 java-1_7_0-openjdk Released
SUSE OpenStack Cloud 8 java-1_7_1-ibm Released
SUSE OpenStack Cloud 8 java-1_8_0-ibm Released
SUSE OpenStack Cloud 8 java-1_8_0-openjdk Released
SUSE OpenStack Cloud 8 mariadb In progress
SUSE OpenStack Cloud 8 pcre In progress
SUSE OpenStack Cloud 8 pcre2 In progress
SUSE OpenStack Cloud 8 tomcat In progress
SUSE OpenStack Cloud 8 xalan-j2 Already fixed
SUSE OpenStack Cloud 9 apache-commons-beanutils Already fixed
SUSE OpenStack Cloud 9 apache-commons-httpclient Released
SUSE OpenStack Cloud 9 jakarta-commons-fileupload Already fixed
SUSE OpenStack Cloud 9 java-1_7_0-openjdk Released
SUSE OpenStack Cloud 9 java-1_7_1-ibm Released
SUSE OpenStack Cloud 9 java-1_8_0-ibm Released
SUSE OpenStack Cloud 9 java-1_8_0-openjdk Released
SUSE OpenStack Cloud 9 mariadb-100 Already fixed
SUSE OpenStack Cloud 9 pcre In progress
SUSE OpenStack Cloud 9 pcre2 In progress
SUSE OpenStack Cloud 9 tomcat In progress
SUSE OpenStack Cloud 9 xalan-j2 Already fixed
SUSE OpenStack Cloud Crowbar 8 apache-commons-beanutils Already fixed
SUSE OpenStack Cloud Crowbar 8 apache-commons-httpclient Released
SUSE OpenStack Cloud Crowbar 8 jakarta-commons-fileupload Already fixed
SUSE OpenStack Cloud Crowbar 8 java-1_7_0-openjdk Released
SUSE OpenStack Cloud Crowbar 8 java-1_7_1-ibm Released
SUSE OpenStack Cloud Crowbar 8 java-1_8_0-ibm Released
SUSE OpenStack Cloud Crowbar 8 java-1_8_0-openjdk Released
SUSE OpenStack Cloud Crowbar 8 mariadb In progress
SUSE OpenStack Cloud Crowbar 8 pcre In progress
SUSE OpenStack Cloud Crowbar 8 pcre2 In progress
SUSE OpenStack Cloud Crowbar 8 tomcat In progress
SUSE OpenStack Cloud Crowbar 8 xalan-j2 Already fixed
SUSE OpenStack Cloud Crowbar 9 apache-commons-beanutils Already fixed
SUSE OpenStack Cloud Crowbar 9 apache-commons-httpclient Released
SUSE OpenStack Cloud Crowbar 9 jakarta-commons-fileupload Already fixed
SUSE OpenStack Cloud Crowbar 9 java-1_7_0-openjdk Released
SUSE OpenStack Cloud Crowbar 9 java-1_7_1-ibm Released
SUSE OpenStack Cloud Crowbar 9 java-1_8_0-ibm Released
SUSE OpenStack Cloud Crowbar 9 java-1_8_0-openjdk Released
SUSE OpenStack Cloud Crowbar 9 mariadb-100 Already fixed
SUSE OpenStack Cloud Crowbar 9 pcre In progress
SUSE OpenStack Cloud Crowbar 9 pcre2 In progress
SUSE OpenStack Cloud Crowbar 9 tomcat In progress
SUSE OpenStack Cloud Crowbar 9 xalan-j2 Already fixed
SUSE Package Hub 15 SP1 java-11-openjdk Released
SUSE Package Hub 15 SP2 java-11-openjdk Released