Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE: 2021:82-1 Important: csi-resizer Security Issues Resolved

suse
Calendar Grey March 23, 2021
Dist Suse Esm H88
SUSE enhances container ses/7/cephcsi/csi-resizer featuring critical security patches. Advisory ID: SUSE-CU-2021:83-1.
The container ses/7/cephcsi/csi-resizer was updated

Summary

Advisory ID: SUSE-SU-2021:778-1 Released: Fri Mar 12 17:42:25 2021 Summary: Security update for glib2 Type: security Severity: important Advisory ID: SUSE-RU-2021:786-1 Released: Mon Mar 15 11:19:23 2021 Summary: Recommended update for zlib Type: recommended Severity: moderate Advisory ID: SUSE-RU-2021:874-1 Released: Thu Mar 18 09:41:54 2021

References

References : 1176201 1179847 1181328 1181622 1182328 1182362 1182629 CVE-2021-27218

CVE-2021-27219

1182328,1182362,CVE-2021-27218,CVE-2021-27219

This update for glib2 fixes the following issues:

- CVE-2021-27218: g_byte_array_new_take takes a gsize as length but stores in a guint, this patch will refuse if

the length is larger than guint. (bsc#1182328)

- CVE-2021-27219: g_memdup takes a guint as parameter and sometimes leads into an integer overflow, so add a g_memdup2 function which uses gsize to replace it. (bsc#1182362)

1176201

This update for zlib fixes the following issues:

- Fixed hw compression on z15 (bsc#1176201)

1179847,1181328,1181622,1182629

This update for libsolv, libzypp, zypper fixes the following issues:

- support multiple collections in updateinfo parser

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2021:82-1
Container Tags : ses/7/cephcsi/csi-resizer:v1.0.0 , ses/7/cephcsi/csi-resizer:v1.0.0-rev1 , ses/7/cephcsi/csi-resizer:v1.0.0-rev1-build3.204
Container Release : 3.204
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here