SUSE Container Update Advisory: ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2023:2531-1 Container Tags : suse/sle-micro-rancher/5.4:latest Container Release : 3.2.74 Severity : important Type : security References : 1212968 1213001 1213414 CVE-2023-2861 CVE-2023-3255 CVE-2023-3301 ----------------------------------------------------------------- The container was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2023:3234-1 Released: Tue Aug 8 18:15:17 2023 Summary: Security update for qemu Type: security Severity: important References: 1212968,1213001,1213414,CVE-2023-2861,CVE-2023-3255,CVE-2023-3301 This update for qemu fixes the following issues: - CVE-2023-2861: Fixed improper access control on special files in 9pfs (bsc#1212968). - CVE-2023-3301: Fixed NULL pointer dereference in vhost_vdpa_get_vhost_net() (bsc#1213414). - CVE-2023-3255: Fixed infinite loop in inflate_buffer() leads to denial of service (bsc#1213001). The following package changes have been done: - qemu-guest-agent-6.2.0-150400.37.20.1 updated