Alerts This Week
Warning Icon 1 775
Alerts This Week
Warning Icon 1 775

SUSE: 2022:2015-1 Important Security Advisory For cdi-uploadserver

suse
Calendar Grey September 3, 2022
Dist Suse Esm H88
SUSE Container Security Update Notification for suse/sles/15.4/cdi-uploadserver, resolving critical vulnerabilities and providing essential security enhancements.
The container suse/sles/15.4/cdi-uploadserver was updated

Summary

Advisory ID: SUSE-RU-2022:2901-1 Released: Fri Aug 26 03:34:23 2022 Summary: Recommended update for elfutils Type: recommended Severity: moderate Advisory ID: SUSE-RU-2022:2904-1 Released: Fri Aug 26 05:28:34 2022 Summary: Recommended update for openldap2 Type: recommended Severity: moderate Advisory ID: SUSE-SU-2022:2919-1 Released: Fri Aug 26 15:04:20 2022

References

References : 1190698 1195059 1198341 1198979 1201795 1202020 CVE-2022-2509

This update for elfutils fixes the following issues:

- Fix runtime dependency for devel package

1198341

This update for openldap2 fixes the following issues:

- Prevent memory reuse which may lead to instability (bsc#1198341)

1190698,1198979,1202020,CVE-2022-2509

This update for gnutls fixes the following issues:

- CVE-2022-2509: Fixed a double free issue during PKCS7 verification (bsc#1202020).

Non-security fixes:

- FIPS: Check minimum keylength for symmetric key generation [bsc#1190698]

- FIPS: Only allows ECDSA signature with valid set of hashes (SHA2 and SHA3) [bsc#1190698]

- FIPS: Provides interface for running library self tests on-demand [bsc#1198979]

1195059,1201795

This update for systemd fixes the following issues:

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2022:2015-1
Container Tags : suse/sles/15.4/cdi-uploadserver:1.43.0 , suse/sles/15.4/cdi-uploadserver:1.43.0-150400.2.4 , suse/sles/15.4/cdi-uploadserver:1.43.0.16.17
Container Release : 16.17
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here