Security update for gnutls
| Announcement ID: | SUSE-SU-2015:1526-1 | 
|---|---|
| Rating: | moderate | 
| References: | |
| Cross-References: | |
| CVSS scores: | 
                    
  | 
            
| Affected Products: | 
                
  | 
        
An update that solves one vulnerability and has one security fix can now be installed.
Description:
This security update of gnutls fixes the following issues:
- use minimal padding for CBC, the default random length padding causes problems with some servers (bsc#925499)
 - added gnutls-use_minimal_cbc_padding.patch
 - use the default DH minimum for gnutls-cli instead of hardcoding 512
 - CVE-2015-4000 (Logjam) (bsc#932026)
 - added gnutls-CVE-2015-4000-logjam-use_the_default_DH_min_for_cli.patch
 
Patch Instructions:
        To install this SUSE  update use the SUSE recommended
        installation methods like YaST online_update or "zypper patch".
        Alternatively you can run the command listed for your product:
    
- 
                SUSE Linux Enterprise Desktop 11 SP3
                
                    
                        
zypper in -t patch sledsp3-gnutls-12081=1 - 
                SUSE Linux Enterprise Desktop 11 SP4
                
                    
                        
zypper in -t patch sledsp4-gnutls-12081=1 - 
                SUSE Linux Enterprise High Availability Extension 11 SP3
                
                    
                        
zypper in -t patch slehasp3-gnutls-12081=1 - 
                SLES for SAP Applications 11-SP3
                
                    
                        
zypper in -t patch slehasp3-gnutls-12081=1 slessp3-gnutls-12081=1 - 
                SUSE Linux Enterprise High Availability Extension 11 SP4
                
                    
                        
zypper in -t patch slehasp4-gnutls-12081=1 - 
                SLES for SAP Applications 11-SP4
                
                    
                        
zypper in -t patch slessp4-gnutls-12081=1 slehasp4-gnutls-12081=1 - 
                SUSE Linux Enterprise Server 11 SP3 for VMware 11-SP3
                
                    
                        
zypper in -t patch slessp3-gnutls-12081=1 - 
                SUSE Linux Enterprise Server 11 SP3
                
                    
                        
zypper in -t patch slessp3-gnutls-12081=1 - 
                SUSE Linux Enterprise Software Development Kit 11 SP3
                
                    
                        
zypper in -t patch sdksp3-gnutls-12081=1 - 
                SUSE Linux Enterprise Software Development Kit 11 SP4
                
                    
                        
zypper in -t patch sdksp4-gnutls-12081=1 - 
                SUSE Linux Enterprise Server 11 SP4
                
                    
                        
zypper in -t patch slessp4-gnutls-12081=1 
Package List:
- 
                    SUSE Linux Enterprise Desktop 11 SP3 (x86_64 i586)
                    
- libgnutls26-2.4.1-24.39.57.1
 - gnutls-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Desktop 11 SP3 (x86_64)
                    
- libgnutls26-32bit-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Desktop 11 SP4 (x86_64 i586)
                    
- libgnutls26-2.4.1-24.39.57.1
 - gnutls-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Desktop 11 SP4 (x86_64)
                    
- libgnutls26-32bit-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise High Availability Extension 11 SP3 (s390x x86_64 i586 ppc64 ia64)
                    
- libgnutls-extra26-2.4.1-24.39.57.1
 
 - 
                    SLES for SAP Applications 11-SP3 (x86_64)
                    
- libgnutls26-2.4.1-24.39.57.1
 - gnutls-2.4.1-24.39.57.1
 - libgnutls-extra26-2.4.1-24.39.57.1
 - libgnutls26-32bit-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise High Availability Extension 11 SP4 (s390x x86_64 i586 ppc64 ia64)
                    
- libgnutls-extra26-2.4.1-24.39.57.1
 
 - 
                    SLES for SAP Applications 11-SP4 (ppc64 x86_64)
                    
- libgnutls26-2.4.1-24.39.57.1
 - gnutls-2.4.1-24.39.57.1
 - libgnutls-extra26-2.4.1-24.39.57.1
 - libgnutls26-32bit-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Server 11 SP3 for VMware 11-SP3 (x86_64 i586)
                    
- libgnutls26-2.4.1-24.39.57.1
 - gnutls-2.4.1-24.39.57.1
 - libgnutls-extra26-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Server 11 SP3 for VMware 11-SP3 (x86_64)
                    
- libgnutls26-32bit-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Server 11 SP3 (s390x x86_64 i586 ppc64 ia64)
                    
- libgnutls26-2.4.1-24.39.57.1
 - gnutls-2.4.1-24.39.57.1
 - libgnutls-extra26-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Server 11 SP3 (ia64)
                    
- libgnutls26-x86-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Server 11 SP3 (ppc64 s390x x86_64)
                    
- libgnutls26-32bit-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Software Development Kit 11 SP3 (s390x x86_64 i586 ppc64 ia64)
                    
- libgnutls-extra-devel-2.4.1-24.39.57.1
 - libgnutls-extra26-2.4.1-24.39.57.1
 - libgnutls-devel-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Software Development Kit 11 SP4 (s390x x86_64 i586 ppc64 ia64)
                    
- libgnutls-extra-devel-2.4.1-24.39.57.1
 - libgnutls-extra26-2.4.1-24.39.57.1
 - libgnutls-devel-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Server 11 SP4 (s390x x86_64 i586 ppc64 ia64)
                    
- libgnutls26-2.4.1-24.39.57.1
 - gnutls-2.4.1-24.39.57.1
 - libgnutls-extra26-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Server 11 SP4 (ia64)
                    
- libgnutls26-x86-2.4.1-24.39.57.1
 
 - 
                    SUSE Linux Enterprise Server 11 SP4 (ppc64 s390x x86_64)
                    
- libgnutls26-32bit-2.4.1-24.39.57.1