Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
* bsc#1223363 * bsc#1223683 * bsc#1225013 * bsc#1225099 * bsc#1225312 . # Security update for the Linux Kernel RT (Live Patch 15 for SLE 15 SP5) Announcement ID: SUSE-SU-2024:3625-1 Release Date: 2024-10-15T01:03:49Z Rating: important References: * bsc#1223363 * bsc#1223683 * bsc#1225013 * bsc#1225099 * bsc#1225312 * bsc#1225739 * bsc#1226325 * bsc#1228573 * bsc#1228786 Cross-References: * CVE-2023-52846 * CVE-2024-26828 * CVE-2024-26923 * CVE-2024-27398 * CVE-2024-35861 * CVE-2024-36899 * CVE-2024-36964 * CVE-2024-40954 * CVE-2024-41059 CVSS scores: * CVE-2023-52846 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-26828 ( SUSE ): 7.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H * CVE-2024-26923 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-27398 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-35861 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-36899 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-36964 ( SUSE ): 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2024-40954 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-40954 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-41059 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-41059 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-41059 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Live Patching 15-SP5 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves nine vulnerabilities can now be installed. ## Description: This update for the Linux Kernel5.14.21-150500_13_55 fixes several issues. The following security issues were fixed: * CVE-2024-35861: Fixed potential UAF in cifs_signal_cifsd_for_reconnect() (bsc#1225312). * CVE-2024-36899: gpiolib: cdev: Fix use after free in lineinfo_changed_notify (bsc#1225739). * CVE-2024-40954: net: do not leave a dangling sk pointer, when socket creation fails (bsc#1227808) * CVE-2024-41059: hfsplus: fix uninit-value in copy_name (bsc#1228573). * CVE-2024-36964: fs/9p: only translate RWX permissions for plain 9P2000 (bsc#1226325). * CVE-2023-52846: hsr: Prevent use after free in prp_create_tagged_frame() (bsc#1225099). * CVE-2024-27398: Fixed use-after-free bugs caused by sco_sock_timeout (bsc#1225013). * CVE-2024-26923: Fixed false-positive lockdep splat for spin_lock() in __unix_gc() (bsc#1223683). * CVE-2024-26828: Fixed underflow in parse_server_interfaces() (bsc#1223363). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -t patch SUSE-2024-3625=1 * SUSE Linux Enterprise Live Patching 15-SP5 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2024-3625=1 ## Package List: * openSUSE Leap 15.5 (x86_64) * kernel-livepatch-SLE15-SP5-RT_Update_15-debugsource-5-150500.11.6.1 * kernel-livepatch-5_14_21-150500_13_55-rt-debuginfo-5-150500.11.6.1 * kernel-livepatch-5_14_21-150500_13_55-rt-5-150500.11.6.1 * SUSE Linux Enterprise Live Patching 15-SP5 (x86_64) * kernel-livepatch-SLE15-SP5-RT_Update_15-debugsource-5-150500.11.6.1 * kernel-livepatch-5_14_21-150500_13_55-rt-debuginfo-5-150500.11.6.1 * kernel-livepatch-5_14_21-150500_13_55-rt-5-150500.11.6.1 ## References: * https://www.suse.com/security/cve/CVE-2023-52846.html * https://www.suse.com/security/cve/CVE-2024-26828.html * https://www.suse.com/security/cve/CVE-2024-26923.html *https://www.suse.com/security/cve/CVE-2024-27398.html * https://www.suse.com/security/cve/CVE-2024-35861.html * https://www.suse.com/security/cve/CVE-2024-36899.html * https://www.suse.com/security/cve/CVE-2024-36964.html * https://www.suse.com/security/cve/CVE-2024-40954.html * https://www.suse.com/security/cve/CVE-2024-41059.html * https://bugzilla.suse.com/show_bug.cgi?id=1223363 * https://bugzilla.suse.com/show_bug.cgi?id=1223683 * https://bugzilla.suse.com/show_bug.cgi?id=1225013 * https://bugzilla.suse.com/show_bug.cgi?id=1225099 * https://bugzilla.suse.com/show_bug.cgi?id=1225312 * https://bugzilla.suse.com/show_bug.cgi?id=1225739 * https://bugzilla.suse.com/show_bug.cgi?id=1226325 * https://bugzilla.suse.com/show_bug.cgi?id=1228573 * https://bugzilla.suse.com/show_bug.cgi?id=1228786 . Urgent Ubuntu security patch for Kernel RT Live Update 20 addresses numerous flaws and challenges, take action immediately!. SUSE Kernel Update, Linux RT Security, Security Patch, SLE 15 SP5, Live Patching. . Severity: Important. LinuxSecurity.com Team
Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7022-3 October 10, 2024 linux-raspi-5.4 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-raspi-5.4: Linux kernel for Raspberry Pi systems Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - GPU drivers; - Modular ISDN driver; - MMC subsystem; - SCSI drivers; - F2FS file system; - GFS2 file system; - Netfilter; - RxRPC session sockets; - Integrity Measurement Architecture(IMA) framework; (CVE-2021-47188, CVE-2024-39494, CVE-2022-48791, CVE-2022-48863, CVE-2024-42228, CVE-2024-38570, CVE-2024-42160, CVE-2024-26787, CVE-2024-27012, CVE-2024-26677) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS linux-image-5.4.0-1117-raspi 5.4.0-1117.129~18.04.1 Available with Ubuntu Pro linux-image-raspi-hwe-18.04 5.4.0.1117.129~18.04.1 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7022-3 https://ubuntu.com/security/notices/USN-7022-2 https://ubuntu.com/security/notices/USN-7022-1 CVE-2021-47188, CVE-2022-48791, CVE-2022-48863, CVE-2024-26677, CVE-2024-26787, CVE-2024-27012, CVE-2024-38570, CVE-2024-39494, CVE-2024-42160, CVE-2024-42228 . Enhance the security of your Ubuntu 18.04 LTS with systematic updates, AppArmor, a configured firewall, and tools like Fail2Ban to curb vulnerabilities.. Kernel Update, Ubuntu 18.04 LTS, Security Patch, Linux Kernel. . LinuxSecurity.com Team
Several security issues were fixed in Linux kernel.. ========================================================================== Ubuntu Security Notice USN-6925-1 July 29, 2024 linux vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 14.04 LTS Summary: Several security issues were fixed in Linux kernel. Software Description: - linux: Linux kernel Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - IPv4 networking; (CVE-2024-26882) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 LTS linux-image-3.13.0-198-generic 3.13.0-198.249 Available with Ubuntu Pro linux-image-3.13.0-198-lowlatency 3.13.0-198.249 Available with Ubuntu Pro linux-image-generic 3.13.0.198.208 Available with Ubuntu Pro linux-image-generic-lts-quantal 3.13.0.198.208 Available with Ubuntu Pro linux-image-generic-lts-raring 3.13.0.198.208 Available with Ubuntu Pro linux-image-generic-lts-saucy 3.13.0.198.208 Available with Ubuntu Pro linux-image-generic-lts-trusty 3.13.0.198.208 Available with Ubuntu Pro linux-image-lowlatency 3.13.0.198.208 Available with Ubuntu Pro linux-image-server 3.13.0.198.208 Available with Ubuntu Pro linux-image-virtual 3.13.0.198.208 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due toan unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6925-1 CVE-2024-26882 . Ubuntu 20.04 LTS updates resolve various vulnerabilities in the Linux kernel; restarting the system is required for updates to apply.. Linux kernel Updates, Ubuntu Security, System Compromise Fixes. . Severity: Important. LinuxSecurity.com Team
. -- _______________________________________________ package-announce mailing list --
CVE-2024-36041. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-83fc86a0bc 2024-06-02 01:21:00.959170 -------------------------------------------------------------------------------- Name : plasma-workspace Product : Fedora 40 Version : 6.0.5.1 Release : 1.fc40 URL : Summary : Plasma workspace, applications and applets Description : Plasma 6 libraries and runtime components -------------------------------------------------------------------------------- Update Information: CVE-2024-36041 -------------------------------------------------------------------------------- ChangeLog: * Fri May 31 2024 Alessandro Astone - 6.0.5.1-1 - CVE-2024-36041 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-83fc86a0bc' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
less could be made run programs as your login if it opened a specially crafted file.. ========================================================================== Ubuntu Security Notice USN-6756-1 April 29, 2024 less vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.04 LTS - Ubuntu 23.10 - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS - Ubuntu 14.04 LTS Summary: less could be made run programs as your login if it opened a specially crafted file. Software Description: - less: pager program similar to more Details: It was discovered that less mishandled newline characters in file names. If a user or automated system were tricked into opening specially crafted files, an attacker could possibly use this issue to execute arbitrary commands on the host. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.04 LTS less 590-2ubuntu2.1 Ubuntu 23.10 less 590-2ubuntu0.23.10.2 Ubuntu 22.04 LTS less 590-1ubuntu0.22.04.3 Ubuntu 20.04 LTS less 551-1ubuntu0.3 Ubuntu 18.04 LTS less 487-0.1ubuntu0.1~esm2 Available with Ubuntu Pro Ubuntu 16.04 LTS less 481-2.1ubuntu0.2+esm2 Available with Ubuntu Pro Ubuntu 14.04 LTS less 458-2ubuntu0.1~esm1 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6756-1 CVE-2024-32487 Package Information: https://launchpad.net/ubuntu/+source/less/590-2ubuntu2.1 https://launchpad.net/ubuntu/+source/less/590-2ubuntu0.23.10.2 https://launchpad.net/ubuntu/+source/less/590-1ubuntu0.22.04.3 https://launchpad.net/ubuntu/+source/less/551-1ubuntu0.3 . Reduced exposure in Ubuntu may enable command execution through malicious files. Ensure your systems are updated to keep them protected.. Less Security Advisory, Ubuntu 2024, Command Execution Threat. . Severity: Critical. LinuxSecurity.com Team
Several header injection issues were fixed in php-guzzlehttp-psr7.. ========================================================================== Ubuntu Security Notice USN-6670-1 February 29, 2024 php-guzzlehttp-psr7 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS (Available with Ubuntu Pro) - Ubuntu 20.04 LTS Summary: Several header injection issues were fixed in php-guzzlehttp-psr7. Software Description: - php-guzzlehttp-psr7: PSR-7 HTTP message library Details: It was discovered that php-guzzlehttp-psr7 incorrectly parsed HTTP headers. A remote attacker could possibly use these issues to perform an HTTP header injection attack. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS (Available with Ubuntu Pro): php-guzzlehttp-psr7 1.8.3-1ubuntu0.1~esm1 Ubuntu 20.04 LTS: php-guzzlehttp-psr7 1.4.2-0.1+deb10u2build0.20.04.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6670-1 CVE-2022-24775, CVE-2023-29197 Package Information: https://launchpad.net/ubuntu/+source/php-guzzlehttp-psr7/1.4.2-0.1+deb10u2build0.20.04.1 . Security advisory for Ubuntu notice USN-6680-1 concerning php-guzzlehttp-psr7 header manipulation vulnerabilities.. PHP GuzzleHttp, Header Injection, Ubuntu Security Notice, Security Advisory. . Severity: Important. LinuxSecurity.com Team
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-0121 https://linux.oracle.com/errata/ELSA-2024-0121.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: aardvark-dns-1.0.1-38.0.1.module+el8.9.0+90119+2f9ef15c.x86_64.rpm buildah-1.24.6-7.module+el8.9.0+90119+2f9ef15c.x86_64.rpm buildah-tests-1.24.6-7.module+el8.9.0+90119+2f9ef15c.x86_64.rpm cockpit-podman-46-1.module+el8.9.0+90119+2f9ef15c.noarch.rpm conmon-2.1.4-2.module+el8.9.0+90119+2f9ef15c.x86_64.rpm containernetworking-plugins-1.1.1-6.module+el8.9.0+90119+2f9ef15c.x86_64.rpm containers-common-1-38.0.1.module+el8.9.0+90119+2f9ef15c.x86_64.rpm container-selinux-2.205.0-3.module+el8.9.0+90119+2f9ef15c.noarch.rpm crit-3.15-3.module+el8.9.0+90119+2f9ef15c.x86_64.rpm criu-3.15-3.module+el8.9.0+90119+2f9ef15c.x86_64.rpm criu-devel-3.15-3.module+el8.9.0+90119+2f9ef15c.x86_64.rpm criu-libs-3.15-3.module+el8.9.0+90119+2f9ef15c.x86_64.rpm crun-1.8.7-1.module+el8.9.0+90119+2f9ef15c.x86_64.rpm fuse-overlayfs-1.9-2.module+el8.9.0+90119+2f9ef15c.x86_64.rpm libslirp-4.4.0-1.module+el8.9.0+90119+2f9ef15c.x86_64.rpm libslirp-devel-4.4.0-1.module+el8.9.0+90119+2f9ef15c.x86_64.rpm netavark-1.0.1-38.0.1.module+el8.9.0+90119+2f9ef15c.x86_64.rpm oci-seccomp-bpf-hook-1.2.5-2.module+el8.9.0+90119+2f9ef15c.x86_64.rpm podman-4.0.2-25.module+el8.9.0+90119+2f9ef15c.x86_64.rpm podman-catatonit-4.0.2-25.module+el8.9.0+90119+2f9ef15c.x86_64.rpm podman-docker-4.0.2-25.module+el8.9.0+90119+2f9ef15c.noarch.rpm podman-gvproxy-4.0.2-25.module+el8.9.0+90119+2f9ef15c.x86_64.rpm podman-plugins-4.0.2-25.module+el8.9.0+90119+2f9ef15c.x86_64.rpm podman-remote-4.0.2-25.module+el8.9.0+90119+2f9ef15c.x86_64.rpm podman-tests-4.0.2-25.module+el8.9.0+90119+2f9ef15c.x86_64.rpm python3-criu-3.15-3.module+el8.9.0+90119+2f9ef15c.x86_64.rpm python3-podman-4.0.0-2.module+el8.9.0+90119+2f9ef15c.noarch.rpm runc-1.1.5-2.module+el8.9.0+90119+2f9ef15c.x86_64.rpm skopeo-1.6.2-9.module+el8.9.0+90119+2f9ef15c.x86_64.rpm skopeo-tests-1.6.2-9.module+el8.9.0+90119+2f9ef15c.x86_64.rpm slirp4netns-1.1.8-3.module+el8.9.0+90119+2f9ef15c.x86_64.rpm udica-0.2.6-4.module+el8.9.0+90119+2f9ef15c.noarch.rpm aarch64: aardvark-dns-1.0.1-38.0.1.module+el8.9.0+90119+2f9ef15c.aarch64.rpm buildah-1.24.6-7.module+el8.9.0+90119+2f9ef15c.aarch64.rpm buildah-tests-1.24.6-7.module+el8.9.0+90119+2f9ef15c.aarch64.rpm cockpit-podman-46-1.module+el8.9.0+90119+2f9ef15c.noarch.rpm conmon-2.1.4-2.module+el8.9.0+90119+2f9ef15c.aarch64.rpm containernetworking-plugins-1.1.1-6.module+el8.9.0+90119+2f9ef15c.aarch64.rpm containers-common-1-38.0.1.module+el8.9.0+90119+2f9ef15c.aarch64.rpm container-selinux-2.205.0-3.module+el8.9.0+90119+2f9ef15c.noarch.rpm crit-3.15-3.module+el8.9.0+90119+2f9ef15c.aarch64.rpm criu-3.15-3.module+el8.9.0+90119+2f9ef15c.aarch64.rpm criu-devel-3.15-3.module+el8.9.0+90119+2f9ef15c.aarch64.rpm criu-libs-3.15-3.module+el8.9.0+90119+2f9ef15c.aarch64.rpm crun-1.8.7-1.module+el8.9.0+90119+2f9ef15c.aarch64.rpm fuse-overlayfs-1.9-2.module+el8.9.0+90119+2f9ef15c.aarch64.rpm libslirp-4.4.0-1.module+el8.9.0+90119+2f9ef15c.aarch64.rpm libslirp-devel-4.4.0-1.module+el8.9.0+90119+2f9ef15c.aarch64.rpm netavark-1.0.1-38.0.1.module+el8.9.0+90119+2f9ef15c.aarch64.rpm oci-seccomp-bpf-hook-1.2.5-2.module+el8.9.0+90119+2f9ef15c.aarch64.rpm podman-4.0.2-25.module+el8.9.0+90119+2f9ef15c.aarch64.rpm podman-catatonit-4.0.2-25.module+el8.9.0+90119+2f9ef15c.aarch64.rpm podman-docker-4.0.2-25.module+el8.9.0+90119+2f9ef15c.noarch.rpm podman-gvproxy-4.0.2-25.module+el8.9.0+90119+2f9ef15c.aarch64.rpm podman-plugins-4.0.2-25.module+el8.9.0+90119+2f9ef15c.aarch64.rpm podman-remote-4.0.2-25.module+el8.9.0+90119+2f9ef15c.aarch64.rpm podman-tests-4.0.2-25.module+el8.9.0+90119+2f9ef15c.aarch64.rpm python3-criu-3.15-3.module+el8.9.0+90119+2f9ef15c.aarch64.rpm python3-podman-4.0.0-2.module+el8.9.0+90119+2f9ef15c.noarch.rpm runc-1.1.5-2.module+el8.9.0+90119+2f9ef15c.aarch64.rpm skopeo-1.6.2-9.module+el8.9.0+90119+2f9ef15c.aarch64.rpm skopeo-tests-1.6.2-9.module+el8.9.0+90119+2f9ef15c.aarch64.rpm slirp4netns-1.1.8-3.module+el8.9.0+90119+2f9ef15c.aarch64.rpm udica-0.2.6-4.module+el8.9.0+90119+2f9ef15c.noarch.rpm SRPMS: https://oss.oracle.com:443/ol8/SRPMS-updates//buildah-1.24.6-7.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//cockpit-podman-46-1.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//conmon-2.1.4-2.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//containernetworking-plugins-1.1.1-6.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//containers-common-1-38.0.1.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//container-selinux-2.205.0-3.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//criu-3.15-3.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//crun-1.8.7-1.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//fuse-overlayfs-1.9-2.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//libslirp-4.4.0-1.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//oci-seccomp-bpf-hook-1.2.5-2.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//podman-4.0.2-25.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//python-podman-4.0.0-2.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//runc-1.1.5-2.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//skopeo-1.6.2-9.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//slirp4netns-1.1.8-3.module+el8.9.0+90119+2f9ef15c.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//udica-0.2.6-4.module+el8.9.0+90119+2f9ef15c.src.rpm Related CVEs: CVE-2022-2879 CVE-2022-2880 CVE-2022-27664 CVE-2022-41715 CVE-2023-29409 CVE-2023-39318 CVE-2023-39319 CVE-2023-39321 CVE-2023-39322 Description of changes: buildah [1:1.24.6-7] - rebuild for CVE-2023-29406 - Related: #2176055 cockpit-podman [46-1] - update to https://github.com/cockpit-project/cockpit-podman/releases/tag/46 - Related:#2061390 conmon [2:2.1.4-2] - update to https://github.com/containers/conmon/releases/tag/v2.1.4 - Related: #2176055 containernetworking-plugins [1:1.1.1-6] - Rebuild with golang 1.20.6 or higher - Related: Jira:RHEL-4507 - Related: Jira:RHEL-7442 containers-common [1-38.0.1] - Updated removed references [Orabug: 33473101] (Alex Burmashev) - Adjust registries.conf (Nikita Gerasimov) - remove references to RedHat registry (Nikita Gerasimov) container-selinux [2:2.205.0-3] - fix build for stable module - Related: #2176055 criu [3.15-3] - add Requires: criu-libs = %{version}-%{release} in criu-devel - add gating tests - Related: #1934415 crun fuse-overlayfs [1.9-2] - update to https://github.com/containers/fuse-overlayfs/releases/tag/v1.9 - Related: #2176055 libslirp oci-seccomp-bpf-hook [1.2.5-2] - fix compatibility with the new bcc - Related: #2176055 podman [2:4.0.2-25] - rebuild with golang 1.20.6+ for CVE-2023-39321 CVE-2023-29409 - Related: Jira:RHEL-4508 - Related: Jira:RHEL-7443 python-podman [4.0.0-2] - bump to v4.0.0 - Related: #2176055 runc [1:1.1.5-2] - rebuild for following CVEs: CVE-2022-41724 - Resolves: #2179971 skopeo [2:1.6.2-9] - rebuild because of CVE-2023-29406 - Resolves: #2236831 slirp4netns [1.1.8-3] - fix gating - don't use insecure functions - thanks to Marc-André Lureau - Related: #2176055 udica [0.2.6-4] - sync with stream-container-tools-4.0-rhel-8.8.0 - Related: #2176055 _______________________________________________ El-errata mailing list
Get the latest Linux and open source security news straight to your inbox.