Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

SUSE: 2023:205-1 Important: bci/rust SSH Key Verification Security Issue

suse
Calendar Grey January 25, 2023
Dist Suse Esm H88
A recent security patch for bci/rust addresses critical SSH validation vulnerabilities found in rust1.65 and cargo libraries.
The container bci/rust was updated

Summary

Advisory ID: SUSE-SU-2023:133-1 Released: Tue Jan 24 15:38:38 2023 Summary: Security update for rust1.65 Type: security Severity: important

References

References : 1206930 CVE-2022-46176

1206930,CVE-2022-46176

This update for rust1.65 fixes the following issues:

- CVE-2022-46176: Fixed missing SSH host key verification in cargo when cloning indexes and dependencies via SSH (bsc#1206930).

The following package changes have been done:

- rust1.65-1.65.0-150300.7.9.1 updated

- cargo1.65-1.65.0-150300.7.9.1 updated

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:205-1
Container Tags : bci/rust:1.65 , bci/rust:1.65-13.5
Container Release : 13.5
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here