Alerts This Week
Warning Icon 1 770
Alerts This Week
Warning Icon 1 770

SUSE: 2023:3323-1 Important Toolbox Update for Memory Leak

suse
Calendar Grey October 10, 2023
Dist Suse Esm H88
SUSE Container Security Bulletin for toolkit features critical patches targeting vulnerabilities linked to resource mismanagement and additional risks.
The container suse/sle-micro/5.4/toolbox was updated

Summary

Advisory ID: SUSE-SU-2023:3997-1 Released: Fri Oct 6 14:13:56 2023 Summary: Security update for nghttp2 Type: security Severity: important

References

References : 1215713 CVE-2023-35945

1215713,CVE-2023-35945

This update for nghttp2 fixes the following issues:

- CVE-2023-35945: Fixed memory leak when PUSH_PROMISE or HEADERS frame cannot be sent (bsc#1215713).

The following package changes have been done:

- libnghttp2-14-1.40.0-150200.9.1 updated

- container:sles15-image-15.0.0-27.14.104 updated

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:3323-1
Container Tags : suse/sle-micro/5.4/toolbox:12.1 , suse/sle-micro/5.4/toolbox:12.1-4.2.125 , suse/sle-micro/5.4/toolbox:latest
Container Release : 4.2.125
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here