Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE: 2023:2737-1 Critical: Security Advisory for Nginx Released

suse
Calendar Grey August 21, 2023
Dist Suse Esm H88
The SUSE Container Maintenance Bulletin for suse/nginx provides critical fixes addressing security vulnerabilities along with significant enhancements.
The container suse/nginx was updated

Summary

Advisory ID: SUSE-RU-2023:3102-1 Released: Tue Aug 1 14:11:53 2023 Summary: Recommended update for openssl-1_1 Type: recommended Severity: moderate Advisory ID: SUSE-OU-2023:3146-1 Released: Wed Aug 2 09:45:25 2023 Summary: Optional update for mono-core, ghc, ghc-xml-conduit, gstreamer, poppler and python-mccabe Type: optional Severity: low Advisory ID: SUSE-SU-2023:3242-1 Released: Tue Aug 8 18:19:40 2023

References

References : 1206627 1213189 1213514 1213517 1213853 1214054 CVE-2022-41409

CVE-2023-36054 CVE-2023-3817

1213517

This update for openssl-1_1 fixes the following issues:

- Dont pass zero length input to EVP_Cipher (bsc#1213517)

This optional update provides the following feature:

- Add additional binaries to PackageHub:

mono-core, ghc, ghc-xml-conduit, gstreamer, poppler and python-mccabe.

1213853,CVE-2023-3817

This update for openssl-1_1 fixes the following issues:

- CVE-2023-3817: Fixed a potential DoS due to excessive time spent checking DH q parameter value. (bsc#1213853)

1206627,1213189

This update for shadow fixes the following issues:

- Prevent lock files from remaining after power interruptions (bsc#1213189)

- Add --prefix support to passwd, chpasswd and chage (bsc#1206627)

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:2737-1
Container Tags : suse/nginx:1.21 , suse/nginx:1.21-3.9 , suse/nginx:latest
Container Release : 3.9
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here