SUSE Container Update Advisory: suse/sles12sp4 ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2021:407-1 Container Tags : suse/sles12sp4:26.358 , suse/sles12sp4:latest Container Release : 26.358 Severity : moderate Type : security References : 1190373 1190374 CVE-2021-22946 CVE-2021-22947 ----------------------------------------------------------------- The container suse/sles12sp4 was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2021:3351-1 Released: Tue Oct 12 13:22:51 2021 Summary: Security update for curl Type: security Severity: moderate References: 1190373,1190374,CVE-2021-22946,CVE-2021-22947 This update for curl fixes the following issues: - CVE-2021-22947: Fixed STARTTLS protocol injection via MITM (bsc#1190374). - CVE-2021-22946: Fixed protocol downgrade required TLS bypassed (bsc#1190373). The following package changes have been done: - base-container-licenses-3.0-1.241 updated - container-suseconnect-2.0.0-1.139 updated - libcurl4-7.60.0-4.30.1 updated