Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE: 2022:2425-1 Important: Expat And Libgcrypt Security Update

suse
Calendar Grey October 1, 2022
Dist Suse Esm H88
SUSE Container Notification SUSE-CU-2022:3426-1 presents vital enhancements for suse/sles15sp1 tackling vulnerabilities.
The container suse/sles12sp4 was updated

Summary

Advisory ID: SUSE-RU-2022:3389-1 Released: Mon Sep 26 12:52:13 2022 Summary: Recommended update for libgcrypt Type: recommended Severity: moderate Advisory ID: SUSE-SU-2022:3466-1 Released: Thu Sep 29 11:43:25 2022 Summary: Security update for expat Type: security Severity: important

References

References : 1200095 1203438 CVE-2022-40674

1200095

This update for libgcrypt fixes the following issues:

- FIPS: Auto-initialize drbg if needed. (bsc#1200095)

1203438,CVE-2022-40674

This update for expat fixes the following issues:

- CVE-2022-40674: Fixed use-after-free in the doContent function in xmlparse.c (bsc#1203438).

The following package changes have been done:

- base-container-licenses-3.0-1.317 updated

- container-suseconnect-2.0.0-1.203 updated

- libexpat1-2.1.0-21.25.1 updated

- libgcrypt20-1.6.1-16.83.1 updated

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2022:2425-1
Container Tags : suse/sles12sp4:26.510 , suse/sles12sp4:latest
Container Release : 26.510
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here