SUSE Container Update Advisory: suse/sle15 ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2021:100-1 Container Tags : suse/sle15:15.3 , suse/sle15:15.3.13.2.252 Container Release : 13.2.252 Severity : moderate Type : security References : 1180073 1183933 1183934 CVE-2021-22876 CVE-2021-22890 ----------------------------------------------------------------- The container suse/sle15 was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-RU-2021:1004-1 Released: Thu Apr 1 15:07:09 2021 Summary: Recommended update for libcap Type: recommended Severity: moderate References: 1180073 This update for libcap fixes the following issues: - Added support for the ambient capabilities (jsc#SLE-17092, jsc#ECO-3460) - Changed the license tag from 'BSD-3-Clause and GPL-2.0' to 'BSD-3-Clause OR GPL-2.0-only' (bsc#1180073) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2021:1006-1 Released: Thu Apr 1 17:44:57 2021 Summary: Security update for curl Type: security Severity: moderate References: 1183933,1183934,CVE-2021-22876,CVE-2021-22890 This update for curl fixes the following issues: - CVE-2021-22890: TLS 1.3 session ticket proxy host mixup (bsc#1183934) - CVE-2021-22876: Automatic referer leaks credentials (bsc#1183933) The following package changes have been done: - bash-4.4-17.63 updated - coreutils-8.32-1.2 updated - glibc-2.31-7.7 updated - gpg2-2.2.27-1.2 updated - libaudit1-2.8.5-3.18 updated - libblkid1-2.36.2-2.5 updated - libcap2-2.26-4.3.1 updated - libcrypt1-4.4.15-2.26 updated - libcurl4-7.66.0-4.14.1 updated - libfdisk1-2.36.2-2.5 updated - libmount1-2.36.2-2.5 updated - libreadline7-7.0-17.63 updated - libsmartcols1-2.36.2-2.5 updated - libsolv-tools-0.7.17-1.2 updated - libsystemd0-246.13-1.2 updated - libtirpc-netconfig-1.2.6-1.106 updated - libtirpc3-1.2.6-1.106 updated - libudev1-246.13-1.2 updated - libunistring2-0.9.10-1.1 updated - libuuid1-2.36.2-2.5 updated - login_defs-4.8.1-2.18 updated - perl-base-5.26.1-15.65 updated - rpm-config-SUSE-1-3.35 updated - rpm-ndb-4.14.1-29.2 updated - sed-4.4-11.2 updated - shadow-4.8.1-2.18 updated - sles-release-15.3-40.2 updated - system-group-hardware-20170617-15.60 updated - util-linux-2.36.2-2.5 updated