SUSE Container Update Advisory: suse/sle15 ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2020:561-1 Container Tags : suse/sle15:15.0 , suse/sle15:15.0.4.22.286 Container Release : 4.22.286 Severity : moderate Type : security References : 1175847 1176086 1176123 1176181 1176671 1177479 CVE-2020-24659 ----------------------------------------------------------------- The container suse/sle15 was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-RU-2020:2978-1 Released: Wed Oct 21 11:36:05 2020 Summary: Recommended update for openssl-1_1 Type: recommended Severity: moderate References: 1175847,1177479 This update for openssl-1_1 fixes the following issues: FIPS: * Adjust the Diffie-Hellman and Elliptic Curve Diffie-Hellman algorithms to be NIST SP800-56Arev3 compliant (bsc#1175847, bsc#1177479). * Add shared secret KAT to FIPS DH selftest (bsc#1175847). ----------------------------------------------------------------- Advisory ID: SUSE-RU-2020:2983-1 Released: Wed Oct 21 15:03:03 2020 Summary: Recommended update for file Type: recommended Severity: moderate References: 1176123 This update for file fixes the following issues: - Fixes an issue when file displays broken 'ELF' interpreter. (bsc#1176123) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2020:2988-1 Released: Wed Oct 21 17:35:34 2020 Summary: Security update for gnutls Type: security Severity: moderate References: 1176086,1176181,1176671,CVE-2020-24659 This update for gnutls fixes the following issues: - Fix heap buffer overflow in handshake with no_renegotiation alert sent (CVE-2020-24659 bsc#1176181) - FIPS: Implement (EC)DH requirements from SP800-56Arev3 (bsc#1176086) - FIPS: Use 2048 bit prime in DH selftest (bsc#1176086) - FIPS: Add TLS KDF selftest (bsc#1176671) The following package changes have been done: - file-magic-5.32-7.11.2 updated - libgnutls30-3.6.7-6.34.1 updated - libmagic1-5.32-7.11.2 updated - libopenssl1_1-1.1.0i-4.51.1 updated - openssl-1_1-1.1.0i-4.51.1 updated