Recommended update for cfengine

SUSE Recommended Update: Recommended update for cfengine
Announcement ID: SUSE-RU-2015:1427-1
Rating: moderate
References: #922571 #923417
Affected Products:
  • SUSE Linux Enterprise Software Development Kit 12
  • SUSE Linux Enterprise Module for Advanced Systems Management 12

  • An update that has two recommended fixes can now be installed.

    Description:


    cfengine was using too small RSA exponents, making use in FIPS mode not
    possible. The code was changed to create RSA keys with exponent 65537.
    (bsc#922571) It was also using MD5, which is also not allowed in FIPS
    mode. (bsc#923417)

    Patch Instructions:

    To install this SUSE Recommended Update use YaST online_update.
    Alternatively you can run the command listed for your product:

    • SUSE Linux Enterprise Software Development Kit 12:
      zypper in -t patch SUSE-SLE-SDK-12-2015-430=1
    • SUSE Linux Enterprise Module for Advanced Systems Management 12:
      zypper in -t patch SUSE-SLE-Module-Adv-Systems-Management-12-2015-430=1

    To bring your system up-to-date, use "zypper patch".

    Package List:

    • SUSE Linux Enterprise Software Development Kit 12 (ppc64le s390x x86_64):
      • cfengine-debuginfo-3.6.1-5.1
      • cfengine-debugsource-3.6.1-5.1
      • libpromises-devel-3.6.1-5.1
    • SUSE Linux Enterprise Module for Advanced Systems Management 12 (ppc64le s390x x86_64):
      • cfengine-3.6.1-5.1
      • cfengine-debuginfo-3.6.1-5.1
      • cfengine-debugsource-3.6.1-5.1
      • cfengine-doc-3.6.1-5.1
      • libpromises3-3.6.1-5.1
      • libpromises3-debuginfo-3.6.1-5.1

    References: