Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

SUSE: 2023:3096-1 Critical Security Update for Containers Released

suse
Calendar Grey September 24, 2023
Dist Suse Esm H88
SUSE Container Patch Notification featuring crucial fixes for vulnerabilities in openssl, zlib, and wget. Essential updates provided.
The container suse/sles12sp5 was updated

Summary

Advisory ID: SUSE-SU-2023:3640-1 Released: Mon Sep 18 13:58:28 2023 Summary: Security update for gcc12 Type: security Severity: important Advisory ID: SUSE-SU-2023:3665-1 Released: Mon Sep 18 21:51:22 2023 Summary: Security update for libxml2 Type: security Severity: important Advisory ID: SUSE-SU-2023:3692-1 Released: Tue Sep 19 22:05:52 2023 Summary: Security update for curl Type: security

References

References : 1201978 1210411 1210412 1214052 1214768 1215026 CVE-2016-3709

CVE-2023-28484 CVE-2023-29469 CVE-2023-38039 CVE-2023-39615 CVE-2023-4039

1214052,CVE-2023-4039

This update for gcc12 fixes the following issues:

- CVE-2023-4039: Fixed incorrect stack protector for C99 VLAs on Aarch64 (bsc#1214052).

1201978,1210411,1210412,1214768,CVE-2016-3709,CVE-2023-28484,CVE-2023-29469,CVE-2023-39615

This update for libxml2 fixes the following issues:

- CVE-2023-29469: Fixed not deterministic hashing of empty dict strings (bsc#1210412).

- CVE-2023-28484: Fixed NULL dereference in xmlSchemaFixupComplexType (bsc#1210411).

- CVE-2023-39615: Fixed crafted xml can cause global buffer overflow (bsc#1214768).

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:3096-1
Container Tags : suse/sles12sp5:6.5.513 , suse/sles12sp5:latest
Container Release : 6.5.513
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here