Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE: 2021:296-1 Important: OpenSSL Denial of Service Security Fix

suse
Calendar Grey September 4, 2021
Dist Suse Esm H88
SUSE has issued an essential update for the suse/sles12sp5 container, fixing major security vulnerabilities and improving defenses against threats
The container suse/sles12sp5 was updated

Summary

Advisory ID: SUSE-SU-2021:2826-1 Released: Tue Aug 24 16:16:02 2021 Summary: Security update for openssl-1_0_0 Type: security Severity: important Advisory ID: SUSE-RU-2021:2859-1 Released: Fri Aug 27 13:57:36 2021 Summary: Recommended update for bzip2 Type: recommended Severity: moderate Advisory ID: SUSE-RU-2021:2903-1 Released: Wed Sep 1 13:09:42 2021 Summary: Recommended update for cracklib

References

References : 1154661 1187466 1188698 1188891 1189521 CVE-2019-18218 CVE-2021-3712

1189521,CVE-2021-3712

This update for openssl-1_0_0 fixes the following issues:

- CVE-2021-3712: a bug in the code for printing certificate details could

lead to a buffer overrun that a malicious actor could exploit to crash

the application, causing a denial-of-service attack. [bsc#1189521]

1188891

This update for bzip2 fixes the following issues:

- Disable a optimization that caused crashes with libarchive due to

uninitialized memory. (bsc#1188891)

- Fixed bashisms in bzgrep and bznew

1188698

This update for cracklib fixes the following issue:

- Provide 'cracklib-dict-small' to SUSE Linux Enterprise Server 12-SP5 (bsc#1188698)

1154661,CVE-2019-18218

This update for file fixes the following issues:

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2021:296-1
Container Tags : suse/sles12sp5:6.5.225 , suse/sles12sp5:latest
Container Release : 6.5.225
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here