Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

SUSE: 2023:1616-1 Critical: Essential Security Update for Toolbox

suse
Calendar Grey May 25, 2023
Dist Suse Esm H88
SUSE Container Maintenance Alert for toolbox featuring critical security enhancements and assorted fixes integrated.
The container suse/sle-micro/5.3/toolbox was updated

Summary

Advisory ID: SUSE-RU-2023:2209-1 Released: Tue May 16 10:34:54 2023 Summary: Recommended update for gdb Type: recommended Severity: moderate Advisory ID: SUSE-SU-2023:2224-1 Released: Wed May 17 09:53:54 2023 Summary: Security update for curl Type: security Severity: important Advisory ID: SUSE-RU-2023:2237-1 Released: Wed May 17 17:10:07 2023 Summary: Recommended update for vim

References

References : 1127591 1195633 1203141 1207410 1207712 1208329 1209406 1210081

1210870 1211144 1211230 1211231 1211232 1211233 CVE-2023-28319

CVE-2023-28320 CVE-2023-28321 CVE-2023-28322

1207712,1210081

This update for gdb fixes the following issues:

- Fix license of gdb to be GPLv3, due to a mistake the testsuite results license was used (bsc#1210081).

1211230,1211231,1211232,1211233,CVE-2023-28319,CVE-2023-28320,CVE-2023-28321,CVE-2023-28322

This update for curl adds the following feature:

Update to version 8.0.1 (jsc#PED-2580)

- CVE-2023-28319: use-after-free in SSH sha256 fingerprint check (bsc#1211230).

- CVE-2023-28320: siglongjmp race condition (bsc#1211231).

- CVE-2023-28321: IDN wildcard matching (bsc#1211232).

- CVE-2023-28322: POST-after-PUT confusion (bsc#1211233).

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:1616-1
Container Tags : suse/sle-micro/5.3/toolbox:12.1 , suse/sle-micro/5.3/toolbox:12.1-5.2.135 , suse/sle-micro/5.3/toolbox:latest
Container Release : 5.2.135
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here