Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

SUSE: 2023:3677-1 Important: container-suseconnect Security Fix

suse
Calendar Grey November 2, 2023
Dist Suse Esm H88
Critical patch released for SUSE package container-suseconnect and libtirpc to resolve significant vulnerabilities and bolster overall security.
The container suse/sle15 was updated

Summary

Advisory ID: SUSE-SU-2023:4309-1 Released: Tue Oct 31 14:09:03 2023 Summary: Security update for container-suseconnect Type: security Severity: important Advisory ID: SUSE-RU-2023:4310-1 Released: Tue Oct 31 14:10:47 2023 Summary: Recommended update for libtirpc Type: recommended Severity: moderate

References

References : 1196647 1212475

1212475

This update of container-suseconnect fixes the following issues:

- rebuild the package with the go 1.21 security release (bsc#1212475).

1196647

This Update for libtirpc to 1.3.4, fixing the following issues:

Update to 1.3.4 (bsc#1199467)

* binddynport.c honor ip_local_reserved_ports

- replaces: binddynport-honor-ip_local_reserved_ports.patch

* gss-api: expose gss major/minor error in authgss_refresh()

* rpcb_clnt.c: Eliminate double frees in delete_cache()

* rpcb_clnt.c: memory leak in destroy_addr

* portmapper: allow TCP-only portmapper

* getnetconfigent: avoid potential DoS issue by removing unnecessary sleep

* clnt_raw.c: fix a possible null pointer dereference

* bindresvport.c: fix a potential resource leakage

Update to 1.3.3:

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:3677-1
Container Tags : bci/bci-base:15.5 , bci/bci-base:15.5.36.5.52 , suse/sle15:15.5 , suse/sle15:15.5.36.5.52
Container Release : 36.5.52
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here