Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

SUSE: 2023:1234-5 Critical Update: OpenSSL Security Issues and libcap Fixes

suse
Calendar Grey August 1, 2023
Dist Suse Esm H88
SUSE Container suse/sle15 has received a critical security upgrade that addresses vulnerabilities related to libcap and openssl, incorporating essential patches.
The container suse/sle15 was updated

Summary

Advisory ID: SUSE-RU-2023:2955-1 Released: Tue Jul 25 05:22:54 2023 Summary: Recommended update for util-linux Type: recommended Severity: moderate Advisory ID: SUSE-SU-2023:2956-1 Released: Tue Jul 25 08:33:38 2023 Summary: Security update for libcap Type: security Severity: moderate Advisory ID: SUSE-SU-2023:2961-1 Released: Tue Jul 25 09:32:56 2023 Summary: Security update for openssl-1_1 Type: security

References

References : 1193015 1211419 1213487 1213517 CVE-2023-2603 CVE-2023-3446

1193015

This update for util-linux fixes the following issues:

- Fix memory leak on parse errors in libmount. (bsc#1193015)

1211419,CVE-2023-2603

This update for libcap fixes the following issues:

- CVE-2023-2603: Fixed an integer overflow or wraparound in libcap/cap_alloc.c:_libcap_strdup() (bsc#1211419).

1213487,CVE-2023-3446

This update for openssl-1_1 fixes the following issues:

- CVE-2023-3446: Fixed DH_check() excessive time with over sized modulus (bsc#1213487).

1213517

This update for openssl-1_1 fixes the following issues:

- Dont pass zero length input to EVP_Cipher (bsc#1213517)

The following package changes have been done:

- libblkid1-2.33.2-150100.4.37.1 updated

- libcap2-2.26-150000.4.9.1 updated

Container Advisory ID : SUSE-CU-2023:2477-1
Container Tags : suse/sle15:15.1 , suse/sle15:15.1.6.2.796
Container Release : 6.2.796
Severity : moderate
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here