SUSE Container Update Advisory: ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2023:590-1 Container Tags : suse/sle-micro-rancher/5.3:latest Container Release : 7.2.101 Severity : important Type : security References : 1197653 1202364 1203788 1205808 1206527 CVE-2022-1050 CVE-2022-3165 CVE-2022-4144 ----------------------------------------------------------------- The container was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2023:671-1 Released: Wed Mar 8 11:55:23 2023 Summary: Security update for qemu Type: security Severity: important References: 1197653,1202364,1203788,1205808,1206527,CVE-2022-1050,CVE-2022-3165,CVE-2022-4144 This update for qemu fixes the following issues: - CVE-2022-4144: Fixed qxl_phys2virt unsafe address translation that can lead to out-of-bounds read (bsc#1205808). - CVE-2022-3165: Fixed integer underflow in vnc_client_cut_text_ext() (bsc#1203788). - CVE-2022-1050: Fixed use-after-free issue in pvrdma_exec_cmd() (bsc#1197653). Bugfixes: - Fixed deviation of guest clock (bsc#1206527). - Fixed broken 'block limits' VPD emulation (bsc#1202364). The following package changes have been done: - qemu-guest-agent-6.2.0-150400.37.11.1 updated