Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

SUSE: 2024:278-1 critical update for postgres container available now

suse
Calendar Grey January 20, 2024
Dist Suse Esm H88
Explore essential security updates for SUSE's Postgres container, covering vulnerabilities, fixes, and severity ratings.
The container suse/postgres was updated

Summary

Advisory ID: SUSE-SU-2024:136-1 Released: Thu Jan 18 09:53:47 2024 Summary: Security update for pam Type: security Severity: moderate Advisory ID: SUSE-SU-2024:140-1 Released: Thu Jan 18 11:34:58 2024 Summary: Security update for libssh Type: security Severity: important

References

References : 1211188 1211190 1217000 1218126 1218186 1218209 1218475 CVE-2023-1667

CVE-2023-2283 CVE-2023-48795 CVE-2023-6004 CVE-2023-6918 CVE-2024-22365

1217000,1218475,CVE-2024-22365

This update for pam fixes the following issues:

- CVE-2024-22365: Fixed a local denial of service during PAM login

due to a missing check during path manipulation (bsc#1218475).

- Check localtime_r() return value to fix crashing (bsc#1217000)

1211188,1211190,1218126,1218186,1218209,CVE-2023-1667,CVE-2023-2283,CVE-2023-48795,CVE-2023-6004,CVE-2023-6918

This update for libssh fixes the following issues:

Security fixes:

- CVE-2023-6004: Fixed command injection using proxycommand (bsc#1218209)

- CVE-2023-48795: Fixed potential downgrade attack using strict kex (bsc#1218126)

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2024:278-1
Container Tags : suse/postgres:15 , suse/postgres:15-16.3 , suse/postgres:15.5 , suse/postgres:15.5-16.3
Container Release : 16.3
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here