SUSE Image Update Advisory: suse/sle-micro/kvm-5.5 ----------------------------------------------------------------- Image Advisory ID : SUSE-IU-2024:1137-1 Image Tags : suse/sle-micro/kvm-5.5:2.0.4 , suse/sle-micro/kvm-5.5:2.0.4-3.5.131 , suse/sle-micro/kvm-5.5:latest Image Release : 3.5.131 Severity : important Type : security References : 1227322 1228535 CVE-2024-4467 CVE-2024-7264 ----------------------------------------------------------------- The container suse/sle-micro/kvm-5.5 was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2024:3077-1 Released: Mon Sep 2 16:42:22 2024 Summary: Security update for qemu Type: security Severity: important References: 1227322,CVE-2024-4467 This update for qemu fixes the following issues: - CVE-2024-4467: Fixed denial of service and file read/write via qemu-img info command (bsc#1227322) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2024:3080-1 Released: Mon Sep 2 16:43:54 2024 Summary: Security update for curl Type: security Severity: moderate References: 1228535,CVE-2024-7264 This update for curl fixes the following issues: - CVE-2024-7264: Fixed out-of-bounds read in ASN.1 date parser GTime2str() (bsc#1228535) The following package changes have been done: - qemu-guest-agent-7.1.0-150500.49.18.1 updated - libcurl4-8.0.1-150400.5.47.1 updated - container:suse-sle-micro-base-5.5-latest-2.0.4-5.8.64 updated