Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

openSUSE 2024:0342-1 moderate: lxc security patch for CVE-2022-47952

opensuse
Calendar Grey October 30, 2024
Dist Opensuse Esm H88
A new release for lxc addresses vulnerabilities in security protocols. This update contains detailed guidance and links to effective measures.
An update that solves one vulnerability and has one errata is now available

Description

This update for lxc fixes the following issues:

lxc was updated to 6.0.2:

The LXC team is pleased to announce the release of LXC 6.0.2! This is

the second bugfix release for LXC 6.0 which is supported until June 2029.

As usual this bugfix releases focus on stability and hardening.

* Some of the highlights for this release are:

- Reduced log level on some common messages

- Fix compilation error on aarch64

* Detailed changelog

- Remove unused function

- idmap: Lower logging level of newXidmap tools to INFO

- Exit 0 when there's no error

- doc: Fix definitions of get_config_path and set_config_path

- README: Update security contact

- fix possible clang compile error in AARCH

Update to 6.0.1:

The LXC team is pleased to announce the release of LXC 6.0.1! This is

the first bugfix release for LXC 6.0 which is supported until June 2029.

As usual this bugfix releases focus on...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Backports SLE-15-SP6:

zypper in -t patch openSUSE-2024-342=1

- openSUSE Backports SLE-15-SP5:

zypper in -t patch openSUSE-2024-342=1

Package List

- openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64):

liblxc-devel-6.0.2-bp156.2.3.1

liblxc1-6.0.2-bp156.2.3.1

lxc-6.0.2-bp156.2.3.1

pam_cgfs-6.0.2-bp156.2.3.1

- openSUSE Backports SLE-15-SP6 (noarch):

lxc-bash-completion-6.0.2-bp156.2.3.1

lxc-ja-doc-6.0.2-bp156.2.3.1

lxc-ko-doc-6.0.2-bp156.2.3.1

- openSUSE Backports SLE-15-SP5 (aarch64 i586 ppc64le s390x x86_64):

liblxc-devel-6.0.2-bp155.4.3.1

liblxc1-6.0.2-bp155.4.3.1

liblxc1-debuginfo-6.0.2-bp155.4.3.1

lxc-6.0.2-bp155.4.3.1

lxc-debuginfo-6.0.2-bp155.4.3.1

lxc-debugsource-6.0.2-bp155.4.3.1

pam_cgfs-6.0.2-bp155.4.3.1

pam_cgfs-debuginfo-6.0.2-bp155.4.3.1

- openSUSE Backports SLE-15-SP5 (noarch):

lxc-bash-completion-6.0.2-bp155.4.3.1

lxc-ja-doc-6.0.2-bp155.4.3.1

lxc-ko-doc-6.0.2-bp155.4.3.1

References

https://www.suse.com/security/cve/CVE-2022-47952.html

https://bugzilla.suse.com/1204842

https://bugzilla.suse.com/1206779

Announcement ID: openSUSE-SU-2024:0342-1
Rating: moderate
Affected Products: openSUSE Backports SLE-15-SP5 openSUSE Backports SLE-15-SP6 ble.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here