SUSE Container Update Advisory: bci/php-fpm ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2024:752-1 Container Tags : bci/php-fpm:8 , bci/php-fpm:8-12.13 Container Release : 12.13 Severity : important Type : security References : 1216752 1218862 1218865 CVE-2024-0553 CVE-2024-0567 ----------------------------------------------------------------- The container bci/php-fpm was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-RU-2024:614-1 Released: Mon Feb 26 11:31:18 2024 Summary: Recommended update for rpm Type: recommended Severity: important References: 1216752 This update for rpm fixes the following issues: - backport lua support for rpm.execute to ease migrating from SLE Micro 5.5 to 6.0 (bsc#1216752) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2024:638-1 Released: Tue Feb 27 10:36:11 2024 Summary: Security update for gnutls Type: security Severity: moderate References: 1218862,1218865,CVE-2024-0553,CVE-2024-0567 This update for gnutls fixes the following issues: - CVE-2024-0567: Fixed an incorrect rejection of certificate chains with distributed trust (bsc#1218862). - CVE-2024-0553: Fixed a timing attack against the RSA-PSK key exchange, which could lead to the leakage of sensitive data (bsc#1218865). The following package changes have been done: - rpm-ndb-4.14.3-150400.59.7.1 updated - libgnutls30-3.7.3-150400.4.41.3 updated - libgnutls30-hmac-3.7.3-150400.4.41.3 updated - container:sles15-image-15.0.0-36.11.6 updated