Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE 2023:2401-1 Important: BCI/Ruby Security Update Advisory

suse
Calendar Grey July 22, 2023
Dist Suse Esm H88
Significant revisions for bci/ruby encompass essential fixes targeting vulnerabilities in various advisory bulletins.
The container bci/ruby was updated

Summary

Advisory ID: SUSE-SU-2023:2882-1 Released: Wed Jul 19 11:49:39 2023 Summary: Security update for perl Type: security Severity: important Advisory ID: SUSE-RU-2023:2885-1 Released: Wed Jul 19 16:58:43 2023 Summary: Recommended update for glibc Type: recommended Severity: moderate Advisory ID: SUSE-SU-2023:2891-1 Released: Wed Jul 19 21:14:33 2023 Summary: Security update for curl Type: security

References

References : 1208721 1209229 1210999 1211828 1213237 CVE-2023-31484 CVE-2023-32001

1210999,CVE-2023-31484

This update for perl fixes the following issues:

- CVE-2023-31484: Enable TLS cert verification in CPAN (bsc#1210999).

1208721,1209229,1211828

This update for glibc fixes the following issues:

- getlogin_r: fix missing fallback if loginuid is unset (bsc#1209229, BZ #30235)

- Exclude static archives from preparation for live patching (bsc#1208721)

- resolv_conf: release lock on allocation failure (bsc#1211828, BZ #30527)

1213237,CVE-2023-32001

This update for curl fixes the following issues:

- CVE-2023-32001: Fixed TOCTOU race condition (bsc#1213237).

This update for libfido2 fixes the following issues:

- Use openssl 1.1 still on SUSE Linux Enterprise 15 to avoid pulling unneeded

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:2401-1
Container Tags : bci/ruby:2 , bci/ruby:2-10.12 , bci/ruby:2.5 , bci/ruby:2.5-10.12 , bci/ruby:latest
Container Release : 10.12
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here