Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

SUSE: 2023:3041-1 Important BCI/Rust Security Update (Buffer Overflow)

suse
Calendar Grey September 20, 2023
Dist Suse Esm H88
This patch rolls out critical security enhancements for python3, targeting gcc11 and openssl weaknesses.
The container bci/rust was updated

Summary

Advisory ID: SUSE-SU-2023:3661-1 Released: Mon Sep 18 21:44:09 2023 Summary: Security update for gcc12 Type: security Severity: important Advisory ID: SUSE-SU-2023:3666-1 Released: Mon Sep 18 21:52:18 2023 Summary: Security update for libxml2 Type: security Severity: important

References

References : 1214052 1214768 CVE-2023-39615 CVE-2023-4039

1214052,CVE-2023-4039

This update for gcc12 fixes the following issues:

- CVE-2023-4039: Fixed incorrect stack protector for C99 VLAs on Aarch64 (bsc#1214052).

1214768,CVE-2023-39615

This update for libxml2 fixes the following issues:

- CVE-2023-39615: Fixed crafted xml can cause global buffer overflow (bsc#1214768).

The following package changes have been done:

- libgcc_s1-12.3.0+git1204-150000.1.16.1 updated

- libstdc++6-12.3.0+git1204-150000.1.16.1 updated

- libxml2-2-2.10.3-150500.5.8.1 updated

- libatomic1-12.3.0+git1204-150000.1.16.1 updated

- libgomp1-12.3.0+git1204-150000.1.16.1 updated

- libitm1-12.3.0+git1204-150000.1.16.1 updated

- liblsan0-12.3.0+git1204-150000.1.16.1 updated

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:3041-1
Container Tags : bci/rust:1.70 , bci/rust:1.70-2.2.4 , bci/rust:oldstable , bci/rust:oldstable-2.2.4
Container Release : 2.4
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here