SUSE Container Update Advisory: suse/sles12sp3
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2021:420-1
Container Tags        : suse/sles12sp3:2.0.2 , suse/sles12sp3:24.314 , suse/sles12sp3:latest
Container Release     : 24.314
Severity              : moderate
Type                  : security
References            : 1081947 1082293 1084671 1085196 1106214 1122417 1125886 1135534
                        1135708 1151708 1168235 1168389 1169006 1174942 1175514 1175623
                        1178236 1178554 1178825 1188921 CVE-2021-37600 
-----------------------------------------------------------------

The container suse/sles12sp3 was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2021:3463-1
Released:    Tue Oct 19 09:27:38 2021
Summary:     Security update for util-linux
Type:        security
Severity:    moderate
References:  1081947,1082293,1084671,1085196,1106214,1122417,1125886,1135534,1135708,1151708,1168235,1168389,1169006,1174942,1175514,1175623,1178236,1178554,1178825,1188921,CVE-2021-37600
This update for util-linux fixes the following issues:

- CVE-2021-37600: Fixed an integer overflow which could lead to buffer overflow in get_sem_elements. (bsc#1188921)
- Prevent outdated pam files (bsc#1082293, bsc#1081947#c68).
- Do not trim read-only volumes (bsc#1106214).
- libmount: To prevent incorrect behavior, recognize more pseudofs and netfs (bsc#1122417).
- raw.service: Add RemainAfterExit=yes (bsc#1135534).
- agetty: Reload issue only if it is really needed (bsc#1085196)
- agetty: Return previous response of agetty for special characters (bsc#1085196, bsc#1125886)
- blockdev: Do not fail --report on kpartx-style partitions on multipath. (bsc#1168235)
- nologin: Add support for -c to prevent error from su -c. (bsc#1151708)
- Avoid triggering autofs in lookup_umount_fs_by_statfs. (bsc#1168389)
- libblkid: Do not trigger CDROM autoclose. (bsc#1084671)
- Avoid sulogin failing on not existing or not functional console devices. (bsc#1175514)
- Build with libudev support to support non-root users. (bsc#1169006)
- lscpu: avoid segfault on PowerPC systems with valid hardware configurations. (bsc#1175623, bsc#1178554, bsc#1178825)
- Fix for warning on mounts to CIFS with mount. (SG#57988, bsc#1174942)

SUSE: 2021:420-1 suse/sles12sp3 Security Update

October 20, 2021
The container suse/sles12sp3 was updated

Summary

Advisory ID: SUSE-SU-2021:3463-1 Released: Tue Oct 19 09:27:38 2021 Summary: Security update for util-linux Type: security Severity: moderate

References

References : 1081947 1082293 1084671 1085196 1106214 1122417 1125886 1135534

1135708 1151708 1168235 1168389 1169006 1174942 1175514 1175623

1178236 1178554 1178825 1188921 CVE-2021-37600

1081947,1082293,1084671,1085196,1106214,1122417,1125886,1135534,1135708,1151708,1168235,1168389,1169006,1174942,1175514,1175623,1178236,1178554,1178825,1188921,CVE-2021-37600

This update for util-linux fixes the following issues:

- CVE-2021-37600: Fixed an integer overflow which could lead to buffer overflow in get_sem_elements. (bsc#1188921)

- Prevent outdated pam files (bsc#1082293, bsc#1081947#c68).

- Do not trim read-only volumes (bsc#1106214).

- libmount: To prevent incorrect behavior, recognize more pseudofs and netfs (bsc#1122417).

- raw.service: Add RemainAfterExit=yes (bsc#1135534).

- agetty: Reload issue only if it is really needed (bsc#1085196)

- agetty: Return previous response of agetty for special characters (bsc#1085196, bsc#1125886)

- blockdev: Do not fail --report on kpartx-style partitions on multipath. (bsc#1168235)

- nologin: Add support for -c to prevent error from su -c. (bsc#1151708)

- Avoid triggering autofs in lookup_umount_fs_by_statfs. (bsc#1168389)

- libblkid: Do not trigger CDROM autoclose. (bsc#1084671)

- Avoid sulogin failing on not existing or not functional console devices. (bsc#1175514)

- Build with libudev support to support non-root users. (bsc#1169006)

- lscpu: avoid segfault on PowerPC systems with valid hardware configurations. (bsc#1175623, bsc#1178554, bsc#1178825)

- Fix for warning on mounts to CIFS with mount. (SG#57988, bsc#1174942)

Severity
Container Advisory ID : SUSE-CU-2021:420-1
Container Tags : suse/sles12sp3:2.0.2 , suse/sles12sp3:24.314 , suse/sles12sp3:latest
Container Release : 24.314
Severity : moderate
Type : security

Related News