Alerts This Week
Warning Icon 1 566
Alerts This Week
Warning Icon 1 566

SUSE Linux 12: 2017:2699-1 Important: Fixes Container Security Issues

suse
Calendar Grey October 11, 2017
Dist Suse Esm H88
Significant release addresses problems found in SLES 12 Docker container. New security updates implemented resolving 140 distinct threats.
An update that fixes 140 vulnerabilities is now available

Summary

The SUSE Linux Enterprise Server 12 container image has been updated to include security and stability fixes. The following issues related to building of the container images have been fixed: - Included krb5 package to avoid the inclusion of krb5-mini which gets selected as a dependency by the Build Service solver. (bsc#1056193) - Do not install recommended packages when building container images. (bsc#975726) A number of security issues that have been already fixed by updates released for SUSE Linux Enterprise Server 12 are now included in the base image. A package/CVE cross-reference is available below. pam: - CVE-2015-3238 libtasn1: - CVE-2015-3622 - CVE-2016-4008 libidn: - CVE-2015-2059 - CVE-2015-8948 - CVE-2016-6261 - CVE-2016-6262 - CVE-2016-6263 zlib: - CVE-2016-9840 - CVE-2016-9841 - CVE-2016-9842

References

#1056193 #975726

Cross- CVE-2012-6702 CVE-2014-0191 CVE-2014-6271

CVE-2014-6277 CVE-2014-6278 CVE-2014-7169

CVE-2014-7187 CVE-2014-7824 CVE-2014-8964

CVE-2014-9770 CVE-2015-0245 CVE-2015-1283

CVE-2015-2059 CVE-2015-2325 CVE-2015-2327

CVE-2015-2328 CVE-2015-3210 CVE-2015-3217

CVE-2015-3238 CVE-2015-3622 CVE-2015-5073

CVE-2015-5218 CVE-2015-5276 CVE-2015-7511

CVE-2015-8380 CVE-2015-8381 CVE-2015-8382

CVE-2015-8383 CVE-2015-8384 CVE-2015-8385

CVE-2015-8386 CVE-2015-8387 CVE-2015-8388

CVE-2015-8389 CVE-2015-8390 CVE-2015-8391

CVE-2015-8392 CVE-2015-8393 CVE-2015-8394

CVE-2015-8395 CVE-2015-8806 CVE-2015-8842

CVE-2015-8853 CVE-2015-8948 CVE-2016-0634

CVE-2016-0718 CVE-2016-0787 CVE-2016-1234

...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2017:2699-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here