SUSE Container Update Advisory: suse/389-ds ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:3418-1 Container Tags : suse/389-ds:2.0 , suse/389-ds:2.0-18.7 , suse/389-ds:latest Container Release : 18.7 Severity : moderate Type : recommended References : 1191546 1198980 1201298 1205974 ----------------------------------------------------------------- The container suse/389-ds was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:4455-1 Released: Tue Dec 13 11:53:31 2022 Summary: Recommended update for 389-ds Type: recommended Severity: moderate References: 1205974 This update for 389-ds fixes the following issues: - support pam_saslauthd for authentication pass through requirements. (jsc#PED-2701 bsc#1205974) Update to version 2.0.17~git7.959d36e: * RFE - split pass through auth cli * BUG - Pam PTA multiple issues * Increase default task TTL Update to version 2.0.17~git4.9447f5f: * Fix typo in `lib389.cli_conf.backend._get_backend` (#5542) * Make logger's parameter name unified (#5540) * Bump VERSION.sh to 2.0.17 * Fix a rebase typo (#5537) * Bump version ot 2.0.17 * Add copyright text to the repository files * Make db compaction TOD day more robust. * UI - Fix npm vulnerability in loader-utils * UI - fix audit issue with npm loader-utils (#5514) * Fix dsctl tls ca-certfiicate add-cert arg requirement * RFE - CLI allow adding CA certificate bundles * memberof is slow on update/fixup if there are several 'groupattr' (#5455) ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:4492-1 Released: Wed Dec 14 13:52:39 2022 Summary: Recommended update for mozilla-nss Type: recommended Severity: moderate References: 1191546,1198980,1201298 This update for mozilla-nss fixes the following issues: - FIPS: Disapprove the creation of DSA keys, i.e. mark them as not-fips (bsc#1201298) - FIPS: Allow the use SHA keygen mechs (bsc#1191546). - FIPS: ensure abort() is called when the repeat integrity check fails (bsc#1198980). The following package changes have been done: - libfreebl3-3.79.2-150400.3.18.1 updated - libfreebl3-hmac-3.79.2-150400.3.18.1 updated - mozilla-nss-certs-3.79.2-150400.3.18.1 updated - libsoftokn3-3.79.2-150400.3.18.1 updated - mozilla-nss-3.79.2-150400.3.18.1 updated - mozilla-nss-tools-3.79.2-150400.3.18.1 updated - libsvrcore0-2.0.17~git7.959d36e-150400.3.20.1 updated - libsoftokn3-hmac-3.79.2-150400.3.18.1 updated - lib389-2.0.17~git7.959d36e-150400.3.20.1 updated - 389-ds-2.0.17~git7.959d36e-150400.3.20.1 updated - container:sles15-image-15.0.0-27.14.23 updated