Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

SUSE 2023:1985-1 Moderate: Toolbox Container Security Advisory

suse
Calendar Grey June 19, 2023
Dist Suse Esm H88
Security enhancement for SUSE Container suse/sle-micro/5.4/toolbox featuring updates that resolve moderate vulnerabilities.
The container suse/sle-micro/5.4/toolbox was updated

Summary

Advisory ID: SUSE-SU-2023:2517-1 Released: Thu Jun 15 07:09:52 2023 Summary: Security update for python3 Type: security Severity: moderate Advisory ID: SUSE-RU-2023:2519-1 Released: Thu Jun 15 08:25:19 2023 Summary: Recommended update for supportutils Type: recommended Severity: moderate

References

References : 1203750 1203818 1211158 CVE-2007-4559

1203750,1211158,CVE-2007-4559

This update for python3 fixes the following issues:

- CVE-2007-4559: Fixed filter for tarfile.extractall (bsc#1203750).

- Fixed unittest.mock.patch.dict returns function when applied to coroutines (bsc#1211158).

1203818

This update for supportutils fixes the following issues:

- Added missed sanitation check on crash.txt (bsc#1203818)

- Added check to _sanitize_file

- Using variable for replement text in _sanitize_file

The following package changes have been done:

- libpython3_6m1_0-3.6.15-150300.10.48.1 updated

- python3-base-3.6.15-150300.10.48.1 updated

- supportutils-3.1.21-150300.7.35.18.1 updated

Container Advisory ID : SUSE-CU-2023:1985-1
Container Tags : suse/sle-micro/5.4/toolbox:12.1 , suse/sle-micro/5.4/toolbox:12.1-4.2.47 , suse/sle-micro/5.4/toolbox:latest
Container Release : 4.2.47
Severity : moderate
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here