Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE Container Update Advisory bci/bci-init Critical Security Fix

suse
Calendar Grey May 27, 2022
Dist Suse Esm H88
SUSE's bci/bci-base image has been updated with essential security enhancements addressing significant weaknesses and concerns.
The container bci/bci-init was updated

Summary

Advisory ID: SUSE-RU-2022:1655-1 Released: Fri May 13 15:36:10 2022 Summary: Recommended update for pam Type: recommended Severity: moderate Advisory ID: SUSE-RU-2022:1658-1 Released: Fri May 13 15:40:20 2022 Summary: Recommended update for libpsl Type: recommended Severity: important Advisory ID: SUSE-SU-2022:1670-1 Released: Mon May 16 10:06:30 2022 Summary: Security update for openldap2 Type: security

References

References : 1197771 1197794 1198446 1199240 CVE-2022-1304 CVE-2022-29155

1197794

This update for pam fixes the following issue:

- Do not include obsolete header files (bsc#1197794)

1197771

This update for libpsl fixes the following issues:

- Fix libpsl compilation issues (bsc#1197771)

1199240,CVE-2022-29155

This update for openldap2 fixes the following issues:

- CVE-2022-29155: Fixed SQL injection in back-sql (bsc#1199240).

1198446,CVE-2022-1304

This update for e2fsprogs fixes the following issues:

- CVE-2022-1304: Fixed out-of-bounds read/write leading to segmentation fault

and possibly arbitrary code execution. (bsc#1198446)

The following package changes have been done:

- libldap-data-2.4.46-150200.14.8.1 updated

- libcom_err2-1.46.4-150400.3.3.1 updated

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2022:1198-1
Container Tags : bci/bci-init:15.4 , bci/bci-init:15.4.15.24
Container Release : 15.24
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here