Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 508
Alerts This Week
Warning Icon 1 508

SUSE Container: 2022:2950-1 moderate: bci/ruby security patch

suse
Calendar Grey November 11, 2022
Scroller Suse
SUSE upgrades bci/ruby by implementing security updates addressing moderately severe vulnerabilities, resolving overflow and dereferencing issues.
The container bci/ruby was updated

Summary

Advisory ID: SUSE-SU-2022:3931-1 Released: Thu Nov 10 11:26:01 2022 Summary: Security update for git Type: security Severity: moderate

References

References : 1204455 1204456 CVE-2022-39253 CVE-2022-39260

1204455,1204456,CVE-2022-39253,CVE-2022-39260

This update for git fixes the following issues:

- CVE-2022-39260: Fixed overflow in split_cmdline() (bsc#1204456).

- CVE-2022-39253: Fixed dereference issue with symbolic links via the `--local` clone mechanism (bsc#1204455).

The following package changes have been done:

- git-core-2.35.3-150300.10.18.1 updated

Container Advisory ID : SUSE-CU-2022:2950-1
Container Tags : bci/ruby:2 , bci/ruby:2.5 , bci/ruby:2.5-31.18 , bci/ruby:latest
Container Release : 31.18
Severity : moderate
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.