Security update for python-Jinja2

SUSE Security Update: Security update for python-Jinja2
Announcement ID: SUSE-SU-2015:1336-1
Rating: moderate
References: #858239
Affected Products:
  • SUSE OpenStack Cloud Compute 5
  • SUSE Enterprise Storage 1.0

  • An update that fixes one vulnerability is now available.

    Description:

    The python-Jinja2 package was updated to version 2.7.3 to fix a security
    issues and some build problems.

    The following vulnerabilities were fixed:
    - Update to 2.7.3 (bnc#858239, CVE-2014-0012)
    - Security issue: Corrected the security fix for the cache folder. This
    fix was provided by RedHat.

    The following build issues were fixed:
    - run testsuite during build
    - adjust dependency to use up to date package name for python-MarkupSafe
    - fix package build (file selection missing)

    Patch Instructions:

    To install this SUSE Security Update use YaST online_update.
    Alternatively you can run the command listed for your product:

    • SUSE OpenStack Cloud Compute 5:
      zypper in -t patch SUSE-SLE12-CLOUD-5-2015-363=1
    • SUSE Enterprise Storage 1.0:
      zypper in -t patch SUSE-Storage-1.0-2015-363=1

    To bring your system up-to-date, use "zypper patch".

    Package List:

    • SUSE OpenStack Cloud Compute 5 (noarch):
      • python-Jinja2-2.7.3-4.1
    • SUSE Enterprise Storage 1.0 (noarch):
      • python-Jinja2-2.7.3-4.1

    References: