{"affected":[{"ecosystem_specific":{"binaries":[{"grafana":"9.5.18-159000.4.33.4","mgr-push":"5.0.2-159000.4.24.5","mgrctl":"0.1.9-159000.3.11.5","mgrctl-bash-completion":"0.1.9-159000.3.11.5","mgrctl-lang":"0.1.9-159000.3.11.5","mgrctl-zsh-completion":"0.1.9-159000.3.11.5","python3-mgr-push":"5.0.2-159000.4.24.5","python3-uyuni-common-libs":"5.0.3-159000.3.39.3","spacecmd":"5.0.6-159000.6.51.4"}]},"package":{"ecosystem":"SUSE:Manager Client Tools 15-BETA","name":"grafana","purl":"pkg:rpm/suse/grafana&distro=SUSE%20Manager%20Client%20Tools%2015-BETA"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"9.5.18-159000.4.33.4"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"9.5.18-159000.4.33.4","mgr-push":"5.0.2-159000.4.24.5","mgrctl":"0.1.9-159000.3.11.5","mgrctl-bash-completion":"0.1.9-159000.3.11.5","mgrctl-lang":"0.1.9-159000.3.11.5","mgrctl-zsh-completion":"0.1.9-159000.3.11.5","python3-mgr-push":"5.0.2-159000.4.24.5","python3-uyuni-common-libs":"5.0.3-159000.3.39.3","spacecmd":"5.0.6-159000.6.51.4"}]},"package":{"ecosystem":"SUSE:Manager Client Tools 15-BETA","name":"mgr-push","purl":"pkg:rpm/suse/mgr-push&distro=SUSE%20Manager%20Client%20Tools%2015-BETA"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.0.2-159000.4.24.5"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"9.5.18-159000.4.33.4","mgr-push":"5.0.2-159000.4.24.5","mgrctl":"0.1.9-159000.3.11.5","mgrctl-bash-completion":"0.1.9-159000.3.11.5","mgrctl-lang":"0.1.9-159000.3.11.5","mgrctl-zsh-completion":"0.1.9-159000.3.11.5","python3-mgr-push":"5.0.2-159000.4.24.5","python3-uyuni-common-libs":"5.0.3-159000.3.39.3","spacecmd":"5.0.6-159000.6.51.4"}]},"package":{"ecosystem":"SUSE:Manager Client Tools 15-BETA","name":"spacecmd","purl":"pkg:rpm/suse/spacecmd&distro=SUSE%20Manager%20Client%20Tools%2015-BETA"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.0.6-159000.6.51.4"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"9.5.18-159000.4.33.4","mgr-push":"5.0.2-159000.4.24.5","mgrctl":"0.1.9-159000.3.11.5","mgrctl-bash-completion":"0.1.9-159000.3.11.5","mgrctl-lang":"0.1.9-159000.3.11.5","mgrctl-zsh-completion":"0.1.9-159000.3.11.5","python3-mgr-push":"5.0.2-159000.4.24.5","python3-uyuni-common-libs":"5.0.3-159000.3.39.3","spacecmd":"5.0.6-159000.6.51.4"}]},"package":{"ecosystem":"SUSE:Manager Client Tools 15-BETA","name":"uyuni-common-libs","purl":"pkg:rpm/suse/uyuni-common-libs&distro=SUSE%20Manager%20Client%20Tools%2015-BETA"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.0.3-159000.3.39.3"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"9.5.18-159000.4.33.4","mgr-push":"5.0.2-159000.4.24.5","mgrctl":"0.1.9-159000.3.11.5","mgrctl-bash-completion":"0.1.9-159000.3.11.5","mgrctl-lang":"0.1.9-159000.3.11.5","mgrctl-zsh-completion":"0.1.9-159000.3.11.5","python3-mgr-push":"5.0.2-159000.4.24.5","python3-uyuni-common-libs":"5.0.3-159000.3.39.3","spacecmd":"5.0.6-159000.6.51.4"}]},"package":{"ecosystem":"SUSE:Manager Client Tools 15-BETA","name":"uyuni-tools","purl":"pkg:rpm/suse/uyuni-tools&distro=SUSE%20Manager%20Client%20Tools%2015-BETA"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"0.1.9-159000.3.11.5"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"golang-github-prometheus-node_exporter":"1.7.0-159000.6.5.5","mgrctl":"0.1.9-159000.3.11.5","mgrctl-bash-completion":"0.1.9-159000.3.11.5","mgrctl-lang":"0.1.9-159000.3.11.5","mgrctl-zsh-completion":"0.1.9-159000.3.11.5"}]},"package":{"ecosystem":"SUSE:Manager Client Tools Beta for SLE Micro 5","name":"golang-github-prometheus-node_exporter","purl":"pkg:rpm/suse/golang-github-prometheus-node_exporter&distro=SUSE%20Manager%20Client%20Tools%20Beta%20for%20SLE%20Micro%205"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0-159000.6.5.5"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"golang-github-prometheus-node_exporter":"1.7.0-159000.6.5.5","mgrctl":"0.1.9-159000.3.11.5","mgrctl-bash-completion":"0.1.9-159000.3.11.5","mgrctl-lang":"0.1.9-159000.3.11.5","mgrctl-zsh-completion":"0.1.9-159000.3.11.5"}]},"package":{"ecosystem":"SUSE:Manager Client Tools Beta for SLE Micro 5","name":"uyuni-tools","purl":"pkg:rpm/suse/uyuni-tools&distro=SUSE%20Manager%20Client%20Tools%20Beta%20for%20SLE%20Micro%205"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"0.1.9-159000.3.11.5"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update fixes the following issues:\n\ngolang-github-prometheus-node_exporter:\n\n- Add `device_error` label for filesystem metrics.\n- Update rtnetlink library to fix errors during ARP metrics collection.\n- update to 1.7.0 (jsc#PED-7893, jsc#PED-7928):\n  * [FEATURE] Add ZFS freebsd per dataset stats #2753\n  * [FEATURE] Add cpu vulnerabilities reporting from sysfs #2721\n  * [ENHANCEMENT] Parallelize stat calls in Linux filesystem collector #1772\n  * [ENHANCEMENT] Add missing linkspeeds to ethtool collector #2711\n  * [ENHANCEMENT] Add CPU MHz as the value for node_cpu_info metric  #2778\n  * [ENHANCEMENT] Improve qdisc collector performance #2779\n  * [ENHANCEMENT] Add include and exclude filter for hwmon collector #2699\n  * [ENHANCEMENT] Optionally fetch ARP stats via rtnetlink instead of procfs #2777\n  * [BUGFIX] Fallback to 32-bit stats in netdev #2757\n  * [BUGFIX] Close btrfs.FS handle after use #2780\n  * [BUGFIX] Move RO status before error return #2807\n  * [BUFFIX] Fix promhttp_metric_handler_errors_total being always active #2808\n  * [BUGFIX] Fix nfsd v4 index miss #2824\n- update to 1.6.1:\n  - Rebuild with updated Go version, no source code changes in this release.\n- update to 1.6.0:\n  * [CHANGE] Fix cpustat when some cpus are offline #2318\n  * [CHANGE] Remove metrics of offline CPUs in CPU collector #2605\n  * [CHANGE] Deprecate ntp collector #2603\n  * [CHANGE] Remove bcache `cache_readaheads_totals` metrics #2583\n  * [CHANGE] Deprecate supervisord collector #2685\n  * [FEATURE] Add softirqs collector #2669\n  * [ENHANCEMENT] Add suspended as a `node_zfs_zpool_state` #2449\n  * [ENHANCEMENT] Add administrative state of Linux network interfaces #2515\n  * [ENHANCEMENT] Log current value of GOMAXPROCS #2537\n  * [ENHANCEMENT] Add profiler options for perf collector #2542\n  * [ENHANCEMENT] Allow root path as metrics path #2590\n  * [ENHANCEMENT] Add cpu frequency governor metrics #2569\n  * [ENHANCEMENT] Add new landing page #2622\n  * [ENHANCEMENT] Reduce privileges needed for btrfs device stats #2634\n  * [ENHANCEMENT] Add ZFS `memory_available_bytes` #2687\n  * [ENHANCEMENT] Use `SCSI_IDENT_SERIAL` as serial in diskstats #2612\n  * [ENHANCEMENT] Read missing from netlink netclass attributes from sysfs #2669\n  * [BUGFIX] perf: fixes for automatically detecting the correct tracefs mountpoints #2553\n  * [BUGFIX] Fix `thermal_zone` collector noise #2554\n  * [BUGFIX] interrupts: Fix fields on linux aarch64 #2631\n  * [BUGFIX] Remove metrics of offline CPUs in CPU collector #2605\n\ngrafana:\n\n- Packaging improvements:\n  * Changed deprecated `disabled` service mode to `manual`\n  * Drop golang-packaging macros\n  * Drop explicit mod=vendor as it is enabled automatically\n- Update to version 9.5.18:\n  * [SECURITY] CVE-2024-1313: Require same organisation when\n    deleting snapshots (bsc#1222155)\n- Update to version 9.5.17:\n  * [FEATURE] Alerting: Backport use Alertmanager API v2\n\nmgr-push:\n\n- Version 5.0.2-0\n  * Remove unused code from the traditional stack\n  * Use bundle CA certificate in rhnpush (bsc#1222731)\n\nspacecmd:\n\n- Version 5.0.6-0\n  * Update translations\n\nuyuni-common-libs:\n\n- Version 5.0.3-0\n  * Add support for package signature type V4 RSA/SHA384\n  * Add support for package signature type V4 RSA/SHA512\n    (bsc#1221465)\n\nuyuni-tools:\n\n- Version 0.1.9-0\n  * Redact passwords from the API payload in traces\n  * Fix build on Ubuntu 20.04 due to version change\n- Version 0.1.8-0\n  * Add 'mgradm support sql' command\n  * Improve GPG help\n  * podman-mount* flag should be used only on Server installation\n    and migration\n  * Add flag groups in help text\n  * Attach Proxy pod to our Podman network\n  * Create support ptf commands\n  * Create mgrpxy upgrade command\n  * Add domain for internal container network\n  * Stop the Server if first user creation failed\n  * Add localization support\n  * Require Podman 4.5.0 for its --shm-size-systemd parameter\n  * Add --podman-mount-www flag for install and migration\n  * Only colorize output if outputting to a terminal\n  * Fix output missing newlines due to the spinner\n  * Add product version and commit id to the version output\n  * Add missing whitespace between podman common arguments and\n    additional ones\n  * Bump the push tag to 5.0.0-RC\n  * Add gpg command to mgradm\n  * Hide message in stdout if SCCcredentials is missing\n    (bsc#1222277)\n  * Redact password in stdout and uyuni-tools.log\n  * Rework distribution mapping to work with distros without\n    .treeinfo data\n  * Add initial installation support for Confidental Computing\n    attestation container\n  * Allow PAM and LDAP authentication using SSSD\n  * Change pull policy default to Always during upgrade\n  * Allow migration with non-root user on source server\n\n","id":"SUSE-SU-2024:1814-1","modified":"2024-05-29T08:21:07Z","published":"2024-05-29T08:21:07Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2024/suse-su-20241814-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1221465"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222155"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222277"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222731"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-1313"}],"related":["CVE-2024-1313"],"summary":"Security Beta update for SUSE Manager Client Tools and Salt","upstream":["CVE-2024-1313"]}