SUSE Container Update Advisory: suse/sles12sp4 ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2019:666-1 Container Tags : suse/sles12sp4:26.98 , suse/sles12sp4:latest Container Release : 26.98 Severity : moderate Type : security References : 1155199 CVE-2019-14866 ----------------------------------------------------------------- The container suse/sles12sp4 was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2019:3064-1 Released: Mon Nov 25 18:44:36 2019 Summary: Security update for cpio Type: security Severity: moderate References: 1155199,CVE-2019-14866 This update for cpio fixes the following issues: - CVE-2019-14866: Fixed an improper validation of the values written in the header of a TAR file through the to_oct() function which could have led to unexpected TAR generation (bsc#1155199). The following package changes have been done: - base-container-licenses-3.0-1.121 updated - container-suseconnect-2.0.0-1.43 updated - cpio-2.11-36.6.1 updated