Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

openSUSE: 2023:0001-1 Important: Minetest Bug Fix for High Severity Issue

opensuse
Calendar Grey January 3, 2023
Dist Opensuse Esm H88
Communicating crucial revisions and patches for Minetest on openSUSE, aimed at improving security and optimizing performance.
An update that solves one vulnerability and has two fixes is now available

Description

This update for minetest fixes the following issues:

Update to version 5.6.0

* Fix CVE-2022-35978 ( boo#1202423 ): Mod scripts can escape sandbox in

single player mode

* `name` in game.conf is deprecated for the game title, use `title`

instead

* Add depth sorting for node faces

* Various bug fixes

* Full changes: https://docs.luanti.org/Changelog/

- Introduced mbranch-protection=none CXX flag to resolve boo#1193141

(aarch64).

Update to version 5.5.0 & 5.5.1:

* Full log for version 5.5.0:

https://docs.luanti.org/Changelog/

* This release switches from Irrlicht to our own fork called IrrlichtMt.

* Full log for version 5.5.1:

https://docs.luanti.org/Changelog/

* This is a maintenance release based on 5.5.0, it contains bugfixes but

no new features.

- Added hardening to systemd service(s) (boo#1181400).

- Update to version 5.4.1:

* This is a maintenance release based on...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Backports SLE-15-SP4:

zypper in -t patch openSUSE-2023-1=1

- openSUSE Backports SLE-15-SP3:

zypper in -t patch openSUSE-2023-1=1

Package List

- openSUSE Backports SLE-15-SP4 (aarch64 ppc64le s390x x86_64):

minetest-5.6.0-bp154.2.3.5

minetest-debuginfo-5.6.0-bp154.2.3.5

minetest-debugsource-5.6.0-bp154.2.3.5

minetestserver-5.6.0-bp154.2.3.5

minetestserver-debuginfo-5.6.0-bp154.2.3.5

- openSUSE Backports SLE-15-SP4 (noarch):

minetest-data-5.6.0-bp154.2.3.5

minetest-lang-5.6.0-bp154.2.3.5

- openSUSE Backports SLE-15-SP3 (aarch64 ppc64le s390x x86_64):

minetest-5.6.0-bp153.2.3.1

minetestserver-5.6.0-bp153.2.3.1

- openSUSE Backports SLE-15-SP3 (noarch):

minetest-data-5.6.0-bp153.2.3.1

minetest-lang-5.6.0-bp153.2.3.1

References

https://www.suse.com/security/cve/CVE-2022-35978.html

https://bugzilla.suse.com/1181400

https://bugzilla.suse.com/1193141

https://bugzilla.suse.com/1202423

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2023:0001-1
Rating: important
Affected Products: openSUSE Backports SLE-15-SP3 openSUSE Backports SLE-15-SP4 ble.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here