openSUSE-SU-2023:0001-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2023:0001-1.json
JSON Data
https://api.osv.dev/v1/vulns/openSUSE-SU-2023:0001-1
Related
Published
2023-01-03T09:15:50Z
Modified
2025-05-07T18:14:12.915983Z
Upstream
Summary
Security update for minetest
Details

This update for minetest fixes the following issues:

Update to version 5.6.0

  • Fix CVE-2022-35978 ( boo#1202423 ): Mod scripts can escape sandbox in single player mode
  • name in game.conf is deprecated for the game title, use title instead
  • Add depth sorting for node faces
  • Various bug fixes
  • Full changes: https://dev.minetest.net/Changelog#5.5.0.E2.86.925.6.0

    • Introduced mbranch-protection=none CXX flag to resolve boo#1193141 (aarch64).

Update to version 5.5.0 & 5.5.1:

  • Full log for version 5.5.0: https://dev.minetest.net/Changelog#5.4.0.E2.86.925.5.0
  • This release switches from Irrlicht to our own fork called IrrlichtMt.
  • Full log for version 5.5.1: https://dev.minetest.net/Changelog#5.5.0.E2.86.925.5.1
  • This is a maintenance release based on 5.5.0, it contains bugfixes but no new features.

    • Added hardening to systemd service(s) (boo#1181400).

    • Update to version 5.4.1:

  • This is a maintenance release based on 5.4.0, it contains bugfixes but no new features.

    • Update to version 5.4.0
  • Full log: https://dev.minetest.net/Changelog#5.3.0.E2.86.925.4.0
  • Removed support for bumpmapping, generated normal maps and parallax occlusion
  • By default, the crosshair will now change to an 'X' when pointing to objects
  • Prevent players accessing inventories of other players
  • Prevent interacting with items out of the hotbar
  • Prevent players from being able to modify ItemStack meta

    • Update to version 5.3.0. (see https://dev.minetest.net/Changelog#5.2.0.E2.86.925.3.0)
  • Formspec improvements, including a scrolling GUI element
  • Performance improvements to the Server and API
  • Many bug fixes and small features
    • Now requires desktop-file-utils version >= 0.25.
References

Affected packages

SUSE:Package Hub 15 SP3 / minetest

Package

Name
minetest
Purl
pkg:rpm/suse/minetest&distro=SUSE%20Package%20Hub%2015%20SP3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.6.0-bp154.2.3.5

Ecosystem specific

{
    "binaries": [
        {
            "minetest-lang": "5.6.0-bp154.2.3.5",
            "minetest": "5.6.0-bp154.2.3.5",
            "minetestserver": "5.6.0-bp154.2.3.5",
            "minetest-data": "5.6.0-bp154.2.3.5"
        }
    ]
}

SUSE:Package Hub 15 SP4 / minetest

Package

Name
minetest
Purl
pkg:rpm/suse/minetest&distro=SUSE%20Package%20Hub%2015%20SP4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.6.0-bp154.2.3.5

Ecosystem specific

{
    "binaries": [
        {
            "minetest-lang": "5.6.0-bp154.2.3.5",
            "minetest": "5.6.0-bp154.2.3.5",
            "minetestserver": "5.6.0-bp154.2.3.5",
            "minetest-data": "5.6.0-bp154.2.3.5"
        }
    ]
}

openSUSE:Leap 15.3 / minetest

Package

Name
minetest
Purl
pkg:rpm/opensuse/minetest&distro=openSUSE%20Leap%2015.3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.6.0-bp154.2.3.5

Ecosystem specific

{
    "binaries": [
        {
            "minetest-lang": "5.6.0-bp154.2.3.5",
            "minetest": "5.6.0-bp154.2.3.5",
            "minetestserver": "5.6.0-bp154.2.3.5",
            "minetest-data": "5.6.0-bp154.2.3.5"
        }
    ]
}

openSUSE:Leap 15.4 / minetest

Package

Name
minetest
Purl
pkg:rpm/opensuse/minetest&distro=openSUSE%20Leap%2015.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.6.0-bp154.2.3.5

Ecosystem specific

{
    "binaries": [
        {
            "minetest-lang": "5.6.0-bp154.2.3.5",
            "minetest": "5.6.0-bp154.2.3.5",
            "minetestserver": "5.6.0-bp154.2.3.5",
            "minetest-data": "5.6.0-bp154.2.3.5"
        }
    ]
}