Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

SUSE: 2023:180-1 Critical Security Update for Git Vulnerabilities

suse
Calendar Grey January 21, 2023
Dist Suse Esm H88
The SUSE Container alert offers critical upgrades and fixes for bci/golang along with pertinent vulnerabilities and risks.
The container bci/golang was updated

Summary

Advisory ID: SUSE-SU-2023:110-1 Released: Fri Jan 20 10:18:16 2023 Summary: Security update for git Type: security Severity: important

References

References : 1207032 1207033 CVE-2022-23521 CVE-2022-41903

1207032,1207033,CVE-2022-23521,CVE-2022-41903

This update for git fixes the following issues:

- CVE-2022-41903: Fixed a heap overflow in the 'git archive' and

'git log --format' commands (bsc#1207033).

- CVE-2022-23521: Fixed an integer overflow that could be triggered

when parsing a gitattributes file (bsc#1207032).

The following package changes have been done:

- git-core-2.35.3-150300.10.21.1 updated

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:180-1
Container Tags : bci/golang:1.19 , bci/golang:1.19-20.4 , bci/golang:latest
Container Release : 20.4
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here