Recommended update for scap-security-guide

Announcement ID: SUSE-RU-2022:4604-1
Rating: moderate
References:
Affected Products:
  • SUSE Linux Enterprise High Performance Computing 12 SP5
  • SUSE Linux Enterprise Server 12 SP5
  • SUSE Linux Enterprise Server for SAP Applications 12 SP5

An update that contains one feature and has two fixes can now be installed.

Description:

This update for scap-security-guide fixes the following issues:

scap-security-guide was updated to 0.1.65 (jsc#ECO-3319)

  • Introduce cui profile for OL9
  • Remove Support for OVAL 5.10
  • Rename account_passwords_pam_faillock_audit
  • CI ansible hardening and rename of existing Bash hardening
  • Update contributors list for v0.1.65 release
  • various SUSE profile specific fixes

Local fixes:

  • fixed building of shell and ansible mitigations (bsc#1205761)
  • require sudo, as remediations touch sudo config or use sudo. (bsc#1203602)

Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:

  • SUSE Linux Enterprise High Performance Computing 12 SP5
    zypper in -t patch SUSE-SLE-SERVER-12-SP5-2022-4604=1
  • SUSE Linux Enterprise Server 12 SP5
    zypper in -t patch SUSE-SLE-SERVER-12-SP5-2022-4604=1
  • SUSE Linux Enterprise Server for SAP Applications 12 SP5
    zypper in -t patch SUSE-SLE-SERVER-12-SP5-2022-4604=1

Package List:

  • SUSE Linux Enterprise High Performance Computing 12 SP5 (noarch)
    • scap-security-guide-redhat-0.1.65-9.3.1
    • scap-security-guide-ubuntu-0.1.65-9.3.1
    • scap-security-guide-debian-0.1.65-9.3.1
    • scap-security-guide-0.1.65-9.3.1
  • SUSE Linux Enterprise Server 12 SP5 (noarch)
    • scap-security-guide-redhat-0.1.65-9.3.1
    • scap-security-guide-ubuntu-0.1.65-9.3.1
    • scap-security-guide-debian-0.1.65-9.3.1
    • scap-security-guide-0.1.65-9.3.1
  • SUSE Linux Enterprise Server for SAP Applications 12 SP5 (noarch)
    • scap-security-guide-redhat-0.1.65-9.3.1
    • scap-security-guide-ubuntu-0.1.65-9.3.1
    • scap-security-guide-debian-0.1.65-9.3.1
    • scap-security-guide-0.1.65-9.3.1

References: