Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

SUSE: 2024:244-1 critical: SystemD and OpenSSL security update

suse
Calendar Grey January 19, 2024
Dist Suse Esm H88
SUSE Container Advisory provides significant security updates addressing critical vulnerabilities in SystemD and OpenSSL features.
The container suse/ltss/sle15.4/sle15 was updated

Summary

Advisory ID: SUSE-SU-2024:136-1 Released: Thu Jan 18 09:53:47 2024 Summary: Security update for pam Type: security Severity: moderate Advisory ID: SUSE-RU-2024:139-1 Released: Thu Jan 18 11:33:54 2024 Summary: Recommended update for go1.21 Type: recommended Severity: moderate Advisory ID: SUSE-SU-2024:140-1 Released: Thu Jan 18 11:34:58 2024 Summary: Security update for libssh Type: security

References

References : 1211188 1211190 1212475 1217000 1218126 1218186 1218209 1218475

CVE-2023-1667 CVE-2023-2283 CVE-2023-48795 CVE-2023-6004 CVE-2023-6918

CVE-2024-22365

1217000,1218475,CVE-2024-22365

This update for pam fixes the following issues:

- CVE-2024-22365: Fixed a local denial of service during PAM login

due to a missing check during path manipulation (bsc#1218475).

- Check localtime_r() return value to fix crashing (bsc#1217000)

1212475

This update for go1.21 fixes the following issues:

go1.21.6 (released 2024-01-09) includes fixes to the compiler,

the runtime, and the crypto/tls, maps, and runtime/pprof

packages. (bsc#1212475)

* x/build,os/signal: TestDetectNohup and TestNohup fail on replacement darwin LUCI builders

Severity
critical
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2024:243-1
Container Tags : suse/ltss/sle15.4/bci-base:15.4 , suse/ltss/sle15.4/bci-base:15.4.2.8 , suse/ltss/sle15.4/sle15:15.4 , suse/ltss/sle15.4/sle15:15.4.2.8
Container Release : 2.8
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here