An update that solves 4 vulnerabilities can now be installed.. # oci-cli-3.54.1-1.1 on GA media Announcement ID: openSUSE-SU-2025:14997-1 Rating: moderate Cross-References: * CVE-2023-32681 * CVE-2024-39689 * CVE-2024-56201 * CVE-2024-56326 CVSS scores: * CVE-2023-32681 ( SUSE ): 6.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:N/A:N * CVE-2024-39689 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2024-56201 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56326 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Tumbleweed An update that solves 4 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the oci-cli-3.54.1-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * oci-cli 3.54.1-1.1 ## References: * https://www.suse.com/security/cve/CVE-2023-32681.html * https://www.suse.com/security/cve/CVE-2024-39689.html * https://www.suse.com/security/cve/CVE-2024-56201.html * https://www.suse.com/security/cve/CVE-2024-56326.html . A recent update for openSUSE Tumbleweed addresses moderate severity vulnerabilities found in the oci-cli-3.54.1-1.1 package, which are linked to various CVEs.. openSUSE Tumbleweed, oci-cli, security advisory. . LinuxSecurity.com Team
Needed for perl-DBIx-Class-EncodedColumn-0.11. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-0a8c805972 2025-04-15 18:33:59.718501+00:00 -------------------------------------------------------------------------------- Name : perl-DBIx-Class-EncodedColumn Product : Fedora 41 Version : 0.11000 Release : 1.fc41 URL : https://metacpan.org/dist/DBIx-Class-EncodedColumn Summary : Automatically encode columns Description : This DBIx::Class component can be used to automatically encode a column's -------------------------------------------------------------------------------- Update Information: Needed for perl-DBIx-Class-EncodedColumn-0.11 -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 28 2025 Jitka Plesnikova - 0.11000-1 - 0.11 bump (rhbz#2354882) - Fix CVE-2025-27552 - Package tests -------------------------------------------------------------------------------- References: [ 1 ] Bug #2355243 - CVE-2025-27551 perl-DBIx-Class-EncodedColumn: DBIx::Class::EncodedColumn until 0.00032 for Perl uses insecure rand() function for salting password hashes in Digest.pm [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2355243 [ 2 ] Bug #2355245 - CVE-2025-27552 perl-DBIx-Class-EncodedColumn: DBIx::Class::EncodedColumn until 0.00032 for Perl uses insecure rand() function for salting password hashes in Crypt/Eksblowfish/Bcrypt.pm [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2355245 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-0a8c805972' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPGkey. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.