Alerts This Week
Warning Icon 1 775
Alerts This Week
Warning Icon 1 775

SUSE: 2022:117-1 Important: glibc Buffer Overflow Fix And Updates

suse
Calendar Grey February 8, 2022
Dist Suse Esm H88
Update for SUSE Container suse/sle15 fixes significant vulnerabilities in glibc and coreutils components.
The container suse/sle15 was updated

Summary

Advisory ID: SUSE-SU-2022:330-1 Released: Fri Feb 4 09:29:08 2022 Summary: Security update for glibc Type: security Severity: important Advisory ID: SUSE-RU-2022:335-1 Released: Fri Feb 4 10:24:02 2022 Summary: Recommended update for coreutils Type: recommended Severity: moderate

References

References : 1189152 1194640 1194768 1194770 1194785 CVE-2021-3999 CVE-2022-23218

CVE-2022-23219

1194640,1194768,1194770,1194785,CVE-2021-3999,CVE-2022-23218,CVE-2022-23219

This update for glibc fixes the following issues:

- CVE-2021-3999: Fixed incorrect errno in getcwd (bsc#1194640)

- CVE-2022-23219: Fixed buffer overflow in sunrpc clnt_create for 'unix' (bsc#1194768)

- CVE-2022-23218: Fixed buffer overflow in sunrpc svcunix_create (bsc#1194770)

Features added:

- IBM Power 10 string operation improvements (bsc#1194785, jsc#SLE-18195)

1189152

This update for coreutils fixes the following issues:

- Add 'fuse.portal' as a dummy file system (used in flatpak implementations) (bsc#1189152).

The following package changes have been done:

- coreutils-8.32-150300.3.5.1 updated

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2022:117-1
Container Tags : suse/sle15:15.3 , suse/sle15:15.3.150300.17.8.72
Container Release : 150300.17.8.72
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here