Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

SUSE: 2023:3739-1 important: bci/golang and go1.20-openssl Security Update

suse
Calendar Grey November 17, 2023
Dist Suse Esm H88
Significant SUSE patch tackling vital concerns in bci/golang and go1.20-openssl to improve container safety.
The container bci/golang was updated

Summary

Advisory ID: SUSE-RU-2023:4450-1 Released: Wed Nov 15 10:55:20 2023 Summary: Recommended update for crypto-policies Type: recommended Severity: moderate Advisory ID: SUSE-SU-2023:4458-1 Released: Thu Nov 16 14:38:48 2023 Summary: Security update for gcc13 Type: security Severity: important Advisory ID: SUSE-SU-2023:4472-1 Released: Thu Nov 16 19:01:27 2023 Summary: Security update for go1.20-openssl

References

References : 1206346 1206480 1206684 1209998 1210557 1211427 1212101 1213915

1214052 1214460 1215427 1215985 1216109 1216664 1216943 1216944

CVE-2023-39323 CVE-2023-39325 CVE-2023-4039 CVE-2023-44487 CVE-2023-45283

CVE-2023-45284

1209998

This update for crypto-policies fixes the following issues:

- Enable setting the kernel FIPS mode with the fips-mode-setup and fips-finish-install commands

(jsc#PED-5041)

- Adapt fips-mode-setup to use the pbl command from the perl-Bootloader package instead of grubby

and add a note for transactional systems

- Ship the man pages for fips-mode-setup and fips-finish-install

- Make the supported versions change in the update-crypto-policies(8) man page persistent

(bsc#1209998)

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:3739-1
Container Tags : bci/golang:1.20-openssl , bci/golang:1.20-openssl-7.36 , bci/golang:latest , bci/golang:stable-openssl , bci/golang:stable-openssl-7.36
Container Release : 7.36
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here