Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

SUSE: Moderate Security Update for Multiple CVEs in Kubernetes 1.23

suse
Calendar Grey August 13, 2025
Dist Suse Esm H88
SUSE has released an update for Kubernetes 1.23, tackling multiple concerns, enhancing overall system reliability, and thwarting potential policy evasion.
* bsc#1194400 * bsc#1212493 * bsc#1219964 * bsc#1222539 * bsc#1229008

Summary

## This update for kubernetes1.23 fixes the following issues: * CVE-2021-25743: Escape terminal special characters in kubectl output (bsc#1194400). * CVE-2023-2431: Prevent pods to bypass the seccomp profile enforcement (bsc#1212493). * CVE-2024-0793: Advance autoscaling v2 as the preferred API version (bsc#1219964). * CVE-2024-3177: Prevent bypassing mountable secrets policy imposed by the ServiceAccount admission plugin (bsc#1222539). * CVE-2025-22872: Properly handle trailing solidus in unquoted attribute value in foreign content (bsc#1241865). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product:

References

* bsc#1194400

* bsc#1212493

* bsc#1219964

* bsc#1222539

* bsc#1229008

* bsc#1241865

Cross-

* CVE-2021-25743

* CVE-2023-2431

* CVE-2024-0793

* CVE-2024-3177

* CVE-2025-22872

CVSS scores:

* CVE-2021-25743 ( SUSE ): 4.0 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

* CVE-2021-25743 ( NVD ): 3.0 CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:N

* CVE-2023-2431 ( SUSE ): 3.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N

* CVE-2023-2431 ( NVD ): 3.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N

* CVE-2023-2431 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

* CVE-2024-0793 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

* CVE-2024-0793 ( NVD ): 7.7 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H

Announcement ID: SUSE-SU-2025:02423-2
Release Date: 2025-08-13T00:11:01Z
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here