Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE: 2023:3528-1 Important: Glibc and OpenSSL Security Flaw

suse
Calendar Grey October 23, 2023
Dist Suse Esm H88
The SUSE Container Security Update Bulletin for suse/sle15 tackles significant vulnerabilities and deploys critical fixes.
The container suse/sle15 was updated

Summary

Advisory ID: SUSE-RU-2023:4105-1 Released: Wed Oct 18 08:15:40 2023 Summary: Recommended update for openssl-1_1 Type: recommended Severity: moderate Advisory ID: SUSE-SU-2023:4110-1 Released: Wed Oct 18 12:35:26 2023 Summary: Security update for glibc Type: security Severity: important Advisory ID: SUSE-SU-2023:4125-1 Released: Thu Oct 19 09:34:58 2023 Summary: Security update for container-suseconnect

References

References : 1107342 1212475 1215215 1215286 1215313 1215434 1215891 CVE-2023-4813

1215215

This update for openssl-1_1 fixes the following issues:

- Displays 'fips' in the version string (bsc#1215215)

1215286,1215891,CVE-2023-4813

This update for glibc fixes the following issues:

Security issue fixed:

- CVE-2023-4813: Fixed a potential use-after-free in gaih_inet() (bsc#1215286, BZ #28931)

Also a regression from a previous update was fixed:

- elf: Align argument of __munmap to page size (bsc#1215891, BZ #28676)

1212475

This update of container-suseconnect fixes the following issues:

- rebuild the package with the go 1.21 security release (bsc#1212475).

1215313

This update for systemd fixes the following issues:

- Fix mismatch of nss-resolve version in Package Hub (no source code changes)

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:3528-1
Container Tags : bci/bci-base:15.5 , bci/bci-base:15.5.36.5.47 , suse/sle15:15.5 , suse/sle15:15.5.36.5.47
Container Release : 36.5.47
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here