File _patchinfo of Package patchinfo.35092

<patchinfo incident="35092">
  <issue tracker="ijsc" id="MSQA-848"/>
  <issue tracker="bnc" id="1220136">mgrctl should display an error if the container is not running</issue>
  <issue tracker="bnc" id="1224349">`mgrpxy upgrade podman` changes to the podman network should not occur</issue>
  <issue tracker="bnc" id="1225349">mgradm uninstall with mounted volume report an error</issue>
  <issue tracker="bnc" id="1226191">Missing architecture in the buildtag of helm charts</issue>
  <issue tracker="bnc" id="1226284">"mgradm distro copy" requires the "distribution-name" parameter, although it is supposed to be optional</issue>
  <issue tracker="bnc" id="1226437">mgradm install podman, step "Confirm the password", ask for a double "Intro"</issue>
  <issue tracker="bnc" id="1226759">"failed to find container supportconfig tarball" when trying to extract supportconfig with mgradm</issue>
  <issue tracker="bnc" id="1226793">mgradm --registry flag asks for more than a registry</issue>
  <issue tracker="bnc" id="1226847">mgradm server installation returns cleanly when settings up Cobbler and it reports FQDN errors</issue>
  <issue tracker="bnc" id="1226914">mgradm support sql has no pager set</issue>
  <issue tracker="bnc" id="1227038">VUL-0: CVE-2024-6104: golang-github-prometheus-prometheus: hashicorp/go-retryablehttp: url might write sensitive information to log file</issue>
  <issue tracker="bnc" id="1227195">Importing custom gpg key with mgradm gpg add failed</issue>
  <issue tracker="bnc" id="1227244">Migration with RPM images tries to download from remote registry</issue>
  <issue tracker="bnc" id="1227245">Import CA certificate to host OS fails during migration</issue>
  <issue tracker="bnc" id="1227505">mgradm support sql does not accept path to SQL file</issue>
  <issue tracker="bnc" id="1227584">Installation doesn't prepare service for XMLRPC-API</issue>
  <issue tracker="bnc" id="1227586">Installation from offline registry - CoCo attestation not using local image</issue>
  <issue tracker="bnc" id="1227588">Migrate command doesn't create the needed system units for coco and hub services</issue>
  <issue tracker="bnc" id="1227718">mgradm is dropping TZ from Service.conf dropin of uyuni-server.service on upgrade</issue>
  <issue tracker="bnc" id="1227951">There is no way to use IPv6 with the containerised depoyment of Server or Proxy</issue>
  <issue tracker="bnc" id="1228026">mgrpxy install podman --registry must behave as mgradm</issue>
  <issue tracker="bnc" id="1228183">Tomcat fails to start after migration due to unsupported options "java.annotation,com.sun.xml.bind" and "-XX:-UseConcMarkSweepGC"</issue>
  <issue tracker="bnc" id="1228556">VUL-0: CVE-2023-45142: golang-github-prometheus-prometheus: DoS vulnerability</issue>
  <issue tracker="bnc" id="1228198">SLES 12 SP5 - no repositories after update to python2-rhnlib-5.0.3-21.49.1.noarch.rpm</issue>
  <issue tracker="jsc" id="PED-3577"/>
  <issue tracker="cve" id="2024-6104"/>
  <issue tracker="cve" id="2023-45142"/>
  <packager>deneb_alpha</packager>
  <rating>important</rating>
  <category>security</category>
  <summary>Security update for SUSE Manager Client Tools</summary>
  <description>This update fixes the following issues:

golang-github-prometheus-prometheus:

- Security issues fixed:

  * CVE-2024-6104: Update go-retryablehttp to version 0.7.7 (bsc#1227038)
  * CVE-2023-45142: Updated otelhttp to version 0.46.1 (bsc#1228556)

- Require Go &gt; 1.20 for building
- Migrate from `disabled` to `manual` service mode
- Update to 2.45.6 (jsc#PED-3577):
  * Security fixes in dependencies
- Update to 2.45.5:
  * [BUGFIX] tsdb/agent: ensure that new series get written to WAL
    on rollback.
  * [BUGFIX] Remote write: Avoid a race condition when applying
    configuration.
- Update to 2.45.4:
  * [BUGFIX] Remote read: Release querier resources before encoding
    the results.
- Update to 2.45.3:
  * [BUGFIX] TSDB: Remove double memory snapshot on shutdown.
- Update to 2.45.2:
  * [BUGFIX] TSDB: Fix PostingsForMatchers race with creating new
    series.
- Update to 2.45.1:
  * [ENHANCEMENT] Hetzner SD: Support larger ID's that will be used
    by Hetzner in September.
  * [BUGFIX] Linode SD: Cast InstanceSpec values to int64 to avoid
    overflows on 386 architecture.
  * [BUGFIX] TSDB: Handle TOC parsing failures.

rhnlib:
    
- Version 5.0.4-0
  * Add the old TLS code for very old traditional clients still on
    python 2.7 (bsc#1228198)

spacecmd:

- Version 5.0.9-0
  * Update translation strings

uyuni-tools:

- Version 0.1.21-0
  * mgrpxy: Fix typo on Systemd template
- Version 0.1.20-0
  * Update the push tag to 5.0.1
  * mgrpxy: expose port on IPv6 network (bsc#1227951)
- Version 0.1.19-0
  * Skip updating Tomcat remote debug if conf file is not present
- Version 0.1.18-0
  * Setup Confidential Computing container during migration
    (bsc#1227588)
  * Add the /etc/uyuni/uyuni-tools.yaml path to the config help
  * Split systemd config files to not loose configuration at upgrade
    (bsc#1227718)
  * Use the same logic for image computation in mgradm and mgrpxy
    (bsc#1228026)
  * Allow building with different Helm and container default
    registry paths (bsc#1226191)
  * Fix recursion in mgradm upgrade podman list --help
  * Setup hub xmlrpc API service in migration to Podman (bsc#1227588)
  * Setup disabled hub xmlrpc API service in all cases (bsc#1227584)
  * Clean the inspection code to make it faster
  * Properly detect IPv6 enabled on Podman network (bsc#1224349)
  * Fix the log file path generation
  * Write scripts output to uyuni-tools.log file
  * Add uyuni-hubxml-rpc to the list of values in
    mgradm scale --help
  * Use path in mgradm support sql file input (bsc#1227505)
  * On Ubuntu build with go1.21 instead of go1.20
  * Enforce Cobbler setup (bsc#1226847)
  * Expose port on IPv6 network (bsc#1227951)
  * show output of podman image search --list-tags command
  * Implement mgrpxy support config command
  * During migration, ignore /etc/sysconfig/tomcat and
    /etc/tomcat/tomcat.conf (bsc#1228183)
  * During migration, remove java.annotation,com.sun.xml.bind and
    UseConcMarkSweepGC settings
  * Disable node exporter port for Kubernetes
  * Fix start, stop and restart in Kubernetes
  * Increase start timeout in Kubernetes
  * Fix traefik query
  * Fix password entry usability (bsc#1226437)
  * Add --prepare option to migrate command
  * Fix random error during installation of CA certificate
    (bsc#1227245)
  * Clarify and fix distro name guessing when not provided
    (bsc#1226284)
  * Replace not working Fatal error by plain error return
    (bsc#1220136)
  * Allow server installation with preexisting storage volumes
  * Do not report error when purging mounted volume (bsc#1225349)
  * Preserve PAGER settings from the host for interactive sql
    usage (bsc#1226914)
  * Add mgrpxy command to clear the Squid cache
  * Use local images for Confidential Computing and
    Hub containers (bsc#1227586)
- Version 0.1.17-0
  * Allow GPG files to be loaded from the local file (bsc#1227195)
- Version 0.1.16-0
  * Prefer local images in all migration steps (bsc#1227244)
- Version 0.1.15-0
  * Define --registry flag behaviour (bsc#1226793)
- Version 0.1.14-0
  * Do not rely on hardcoded registry, remove any FQDN
- Version 0.1.13-0
  * Fix mgradm support config tarball creation (bsc#1226759)
- Version 0.1.12-0
  * Detection of k8s on Proxy was wrongly influenced by Server
    setting
</description>
</patchinfo>
openSUSE Build Service is sponsored by