Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

SUSE 2021:384-1 Moderate: SUSE/SLE15 Update For Glibc And Curl

suse
Calendar Grey October 9, 2021
Dist Suse Esm H88
Scheduled security patches for SUSE image suse/sle15 targeting vulnerabilities in glibc, curl, and systemd components.
The container suse/sle15 was updated

Summary

Advisory ID: SUSE-SU-2021:3291-1 Released: Wed Oct 6 16:45:36 2021 Summary: Security update for glibc Type: security Severity: moderate Advisory ID: SUSE-SU-2021:3298-1 Released: Wed Oct 6 16:54:52 2021 Summary: Security update for curl Type: security Severity: moderate Advisory ID: SUSE-RU-2021:3310-1 Released: Wed Oct 6 18:12:41 2021 Summary: Recommended update for systemd Type: recommended

References

References : 1134353 1184994 1186489 1187911 1188291 1188588 1188713 1189446

1189480 1190373 1190374 CVE-2021-22946 CVE-2021-22947 CVE-2021-33574

CVE-2021-35942

1186489,1187911,CVE-2021-33574,CVE-2021-35942

This update for glibc fixes the following issues:

- CVE-2021-33574: Fixed use __pthread_attr_copy in mq_notify (bsc#1186489).

- CVE-2021-35942: Fixed wordexp handle overflow in positional parameter number (bsc#1187911).

1190373,1190374,CVE-2021-22946,CVE-2021-22947

This update for curl fixes the following issues:

- CVE-2021-22947: Fixed STARTTLS protocol injection via MITM (bsc#1190374).

- CVE-2021-22946: Fixed protocol downgrade required TLS bypassed (bsc#1190373).

1134353,1184994,1188291,1188588,1188713,1189446,1189480

Container Advisory ID : SUSE-CU-2021:384-1
Container Tags : suse/sle15:15.3 , suse/sle15:15.3.17.8.9
Container Release : 17.8.9
Severity : moderate
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here