openSUSE Security Update : python-apache-libcloud (openSUSE-SU-2014:0198-1)

Low Nessus Plugin ID 75250


The remote openSUSE host is missing a security update.


- Updated to 0.13.3 (bnc#857209, CVE-2013-6480)

+ Security fix release, for destroying nodes on digitalOcean 'data_scrub' method is always invoked

- Require python-setuptools instead of distribute (upstreams merged)

- Updated to 0.13.2

- General :

- Don't sent Content-Length: 0 header with POST and PUT request if 'raw' mode is used. This fixes a regression which could cause broken behavior in some storage driver when uploading a file from disk.

- Compute :

- Added Ubuntu Linux 12.04 image to ElasticHost driver image list. (LIBCLOUD-364)

- Update ElasticHosts driver to store drive UUID in the node 'extra' field. (LIBCLOUD-357)

- Storage :

- Store last_modified timestamp in the Object extra dictionary in the S3 driver. (LIBCLOUD-373)

- Load Balancer :

- Expose CloudStack driver directly through the Provider.CLOUDSTACK constant.

- DNS :

- Modify Zerigo driver to include record TTL in the record 'extra' attribute if a record has a TTL set.

- Modify values in the Record 'extra' dictionary attribute in the Zerigo DNS driver to be set to None instead of an empty string ('') if a value for the provided key is not set.


Update the affected python-apache-libcloud package.

See Also

Plugin Details

Severity: Low

ID: 75250

File Name: openSUSE-2014-112.nasl

Version: $Revision: 1.1 $

Type: local

Agent: unix

Published: 2014/06/13

Modified: 2014/06/13

Dependencies: 12634

Risk Information

Risk Factor: Low


Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:python-apache-libcloud, cpe:/o:novell:opensuse:13.1

Required KB Items: Host/local_checks_enabled, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 2014/01/29

Reference Information

CVE: CVE-2013-6480