Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Warning: Undefined variable $read_more_description in /var/www/www.linuxsecurity.com-443/html/lsadvisories/lsadvisories.php on line 1551

SUSE: 2023:948-1 Important: CDI Uploadserver Security Update

suse
Calendar Grey April 5, 2023
Dist Suse Esm H88
SUSE Container Upgrade Notification: suse/sles/15.5/cdi-downloadservice features critical security enhancements and fixes.
The container suse/sles/15.5/cdi-uploadserver was updated

Summary

Advisory ID: SUSE-RU-2023:632-1 Released: Mon Mar 6 20:33:59 2023 Summary: Recommended update for gnutls Type: recommended Severity: moderate Advisory ID: SUSE-RU-2023:743-1 Released: Wed Mar 15 11:18:23 2023 Summary: Recommended update for gnutls Type: recommended Severity: moderate Advisory ID: SUSE-RU-2023:776-1 Released: Thu Mar 16 17:29:23 2023

References

References : 1203355 1203537 1207183 1207571 1207957 1207975 1208237 1208358

1208471 1209001 1209209 1209210 1209211 1209212 1209214 1209533

CVE-2022-4899 CVE-2023-0687 CVE-2023-24329 CVE-2023-27533 CVE-2023-27534

CVE-2023-27535 CVE-2023-27536 CVE-2023-27538

1207183,1208237

This update for gnutls fixes the following issues:

- FIPS: Fix pct_test() return code in case of error (bsc#1207183)

- Increase the limit of TLS PSK usernames from 128 to 65535 characters. [bsc#1208237, jsc#PED-1562]

1209001

This update for gnutls fixes the following issues:

FIPS: Establish PBKDF2 additional requirements [bsc#1209001]

* Set the minimum output key length to 112 bits (FIPS 140-3 IG D.N)

* Set the minimum salt length to 128 bits (SP 800-132 sec. 5.1)

* Set the minimum iterations count to 1000 (SP 800-132 sec 5.2)

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:948-1
Container Tags : suse/sles/15.5/cdi-uploadserver:1.55.0 , suse/sles/15.5/cdi-uploadserver:1.55.0-150500.3.16 , suse/sles/15.5/cdi-uploadserver:1.55.0.17.244
Container Release : 17.244
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here