SUSE Container Update Advisory: bci/ruby ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:2866-1 Container Tags : bci/ruby:2 , bci/ruby:2.5 , bci/ruby:2.5-31.13 , bci/ruby:latest Container Release : 31.13 Severity : important Type : security References : 1204708 CVE-2022-43680 ----------------------------------------------------------------- The container bci/ruby was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:3884-1 Released: Mon Nov 7 10:59:26 2022 Summary: Security update for expat Type: security Severity: important References: 1204708,CVE-2022-43680 This update for expat fixes the following issues: - CVE-2022-43680: Fixed use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate (bsc#1204708). The following package changes have been done: - libexpat1-2.4.4-150400.3.12.1 updated - container:sles15-image-15.0.0-27.14.9 updated