Advisory ID: SUSE-SU-2021:2682-1 Released: Thu Aug 12 20:06:19 2021 Summary: Security update for rpm Type: security Severity: important Advisory ID: SUSE-SU-2021:3445-1 Released: Fri Oct 15 09:03:39 2021 Summary: Security update for rpm Type: security Severity: important Advisory ID: SUSE-RU-2022:96-1 Released: Tue Jan 18 05:14:44 2022 Summary: Recommended update for rpm Type: recommended Severity: important
References : 1177460 1179416 1180125 1181805 1183543 1183545 1183659 1185299
1186819 1187670 1188548 1190824 1191157 1193489 1193711 1194883
1194968 1195628 1196093 1196107 1196275 1196406 1196647 1197004
1197024 1197459 1197771 1197794 1198062 1199240 CVE-2018-25032
CVE-2021-20266 CVE-2021-20271 CVE-2021-3421 CVE-2021-3572 CVE-2022-1271
CVE-2022-29155
1179416,1181805,1183543,1183545,CVE-2021-20266,CVE-2021-20271,CVE-2021-3421
This update for rpm fixes the following issues:
- Changed default package verification level to 'none' to be compatible to rpm-4.14.1
- Made illegal obsoletes a warning
- Fixed a potential access of freed mem in ndb's glue code (bsc#1179416)
- Added support for enforcing signature policy and payload verification step to
transactions (jsc#SLE-17817)
Get the latest Linux and open source security news straight to your inbox.