SUSE Container Update Advisory: ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2023:1235-1 Container Tags : suse/sle-micro-rancher/5.4:latest Container Release : 3.2.6 Severity : moderate Type : security References : 1191546 1207209 1208242 1208999 1210418 CVE-2023-30630 ----------------------------------------------------------------- The container was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-RU-2023:1939-1 Released: Fri Apr 21 11:14:30 2023 Summary: Recommended update for mozilla-nss Type: recommended Severity: moderate References: 1191546,1207209,1208242,1208999 This update for mozilla-nss fixes the following issues: - FIPS 140-3: Adjust SLI reporting for PBKDF2 parameter validation (bsc#1208999) - FIPS 140-3: Update session->lastOpWasFIPS before destroying the key after derivation in the CKM_TLS12_KEY_AND_MAC_DERIVE, CKM_NSS_TLS_KEY_AND_MAC_DERIVE_SHA256, CKM_TLS_KEY_AND_MAC_DERIVE and CKM_SSL3_KEY_AND_MAC_DERIVE cases. (bsc#1191546) - FIPS 140-3: more changes for pairwise consistency checks. (bsc#1207209) - Add manpages to mozilla-nss-tools (bsc#1208242) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2023:1947-1 Released: Fri Apr 21 14:14:41 2023 Summary: Security update for dmidecode Type: security Severity: moderate References: 1210418,CVE-2023-30630 This update for dmidecode fixes the following issues: - CVE-2023-30630: Fixed potential privilege escalation vulnerability via file overwrite (bsc#1210418). The following package changes have been done: - dmidecode-3.4-150400.16.8.1 updated - libfreebl3-3.79.4-150400.3.29.1 updated - libsoftokn3-3.79.4-150400.3.29.1 updated - mozilla-nss-certs-3.79.4-150400.3.29.1 updated - mozilla-nss-3.79.4-150400.3.29.1 updated