SUSE Container Update Advisory: ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2023:3615-1 Container Tags : suse/sle-micro-rancher/5.2:latest Container Release : 7.5.229 Severity : important Type : security References : 1215215 1216432 1216433 CVE-2023-34058 CVE-2023-34059 ----------------------------------------------------------------- The container was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-RU-2023:4226-1 Released: Fri Oct 27 11:14:10 2023 Summary: Recommended update for openssl-1_1 Type: recommended Severity: moderate References: 1215215 This update for openssl-1_1 fixes the following issues: - Displays 'fips' in the version string (bsc#1215215) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2023:4227-1 Released: Fri Oct 27 11:26:20 2023 Summary: Security update for open-vm-tools Type: security Severity: important References: 1216432,1216433,CVE-2023-34058,CVE-2023-34059 This update for open-vm-tools fixes the following issues: - CVE-2023-34058: Fixed a SAML token signature bypass issue (bsc#1216432). - CVE-2023-34059: Fixed a privilege escalation issue through vmware-user-suid-wrapper (bsc#1216433). The following package changes have been done: - libopenssl1_1-1.1.1d-150200.11.79.1 updated - libvmtools0-12.3.0-150300.43.1 updated - open-vm-tools-12.3.0-150300.43.1 updated - openssl-1_1-1.1.1d-150200.11.79.1 updated