Container summary for trento/trento-web


SUSE-CU-2024:3366-1

Container Advisory IDSUSE-CU-2024:3366-1
Container Tagstrento/trento-web:2.3.2 , trento/trento-web:2.3.2-build4.37.1 , trento/trento-web:latest
Container Release4.37.1
The following patches have been included in this update:

SUSE-CU-2024:2759-1

Container Advisory IDSUSE-CU-2024:2759-1
Container Tagstrento/trento-web:2.3.1 , trento/trento-web:2.3.1-build4.34.1 , trento/trento-web:latest
Container Release4.34.1
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:4723-1
ReleasedTue Dec 12 09:57:51 2023
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1216862
Description:

This update for libtirpc fixes the following issue:


Advisory IDSUSE-SU-2023:4891-1
ReleasedMon Dec 18 16:31:49 2023
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1201384,1218014,CVE-2023-50495
Description:

This update for ncurses fixes the following issues:


Advisory IDSUSE-SU-2024:70-1
ReleasedTue Jan 9 18:29:39 2024
SummarySecurity update for tar
Typesecurity
Severitylow
References1217969,CVE-2023-39804
Description:

This update for tar fixes the following issues:


SUSE-CU-2023:3940-1

Container Advisory IDSUSE-CU-2023:3940-1
Container Tagstrento/trento-web:2.2.0 , trento/trento-web:2.2.0-build4.27.1 , trento/trento-web:latest
Container Release4.27.1
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:3639-1
ReleasedMon Sep 18 13:33:16 2023
SummarySecurity update for libeconf
Typesecurity
Severitymoderate
References1198165,1211078,CVE-2023-22652,CVE-2023-30078,CVE-2023-30079,CVE-2023-32181
Description:

This update for libeconf fixes the following issues:
Update to version 0.5.2.


The following non-security bug was fixed:


Advisory IDSUSE-SU-2023:3661-1
ReleasedMon Sep 18 21:44:09 2023
SummarySecurity update for gcc12
Typesecurity
Severityimportant
References1214052,CVE-2023-4039
Description:

This update for gcc12 fixes the following issues:


Advisory IDSUSE-RU-2023:3814-1
ReleasedWed Sep 27 18:08:17 2023
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1211829,1212819,1212910
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-SU-2023:3997-1
ReleasedFri Oct 6 14:13:56 2023
SummarySecurity update for nghttp2
Typesecurity
Severityimportant
References1215713,CVE-2023-35945
Description:

This update for nghttp2 fixes the following issues:


Advisory IDSUSE-SU-2023:4110-1
ReleasedWed Oct 18 12:35:26 2023
SummarySecurity update for glibc
Typesecurity
Severityimportant
References1215286,1215891,CVE-2023-4813
Description:

This update for glibc fixes the following issues:
Security issue fixed:


Also a regression from a previous update was fixed:


Advisory IDSUSE-RU-2023:4154-1
ReleasedFri Oct 20 19:33:25 2023
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1107342,1215434
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-SU-2023:4162-1
ReleasedMon Oct 23 15:33:03 2023
SummarySecurity update for gcc13
Typesecurity
Severityimportant
References1206480,1206684,1210557,1211427,1212101,1213915,1214052,1214460,CVE-2023-4039
Description:

This update for gcc13 fixes the following issues:
This update ship the GCC 13.2 compiler suite and its base libraries.
The compiler base libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 12 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP4 and SP5, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc13 compilers use:


For a full changelog with all new GCC13 features, check out
https://gcc.gnu.org/gcc-13/changes.html

Detailed changes:




Advisory IDSUSE-SU-2023:4200-1
ReleasedWed Oct 25 12:04:29 2023
SummarySecurity update for nghttp2
Typesecurity
Severityimportant
References1216123,1216174,CVE-2023-44487
Description:

This update for nghttp2 fixes the following issues:


Advisory IDSUSE-SU-2023:4217-1
ReleasedThu Oct 26 12:20:27 2023
SummarySecurity update for zlib
Typesecurity
Severitymoderate
References1216378,CVE-2023-45853
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-RU-2023:4310-1
ReleasedTue Oct 31 14:10:47 2023
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1196647
Description:

This Update for libtirpc to 1.3.4, fixing the following issues: Update to 1.3.4 (bsc#1199467)
* binddynport.c honor ip_local_reserved_ports - replaces: binddynport-honor-ip_local_reserved_ports.patch * gss-api: expose gss major/minor error in authgss_refresh() * rpcb_clnt.c: Eliminate double frees in delete_cache() * rpcb_clnt.c: memory leak in destroy_addr * portmapper: allow TCP-only portmapper * getnetconfigent: avoid potential DoS issue by removing unnecessary sleep * clnt_raw.c: fix a possible null pointer dereference * bindresvport.c: fix a potential resource leakage
Update to 1.3.3:


Update to 1.3.2:

Update to 1.3.1:


Advisory IDSUSE-SU-2023:4458-1
ReleasedThu Nov 16 14:38:48 2023
SummarySecurity update for gcc13
Typesecurity
Severityimportant
References1206480,1206684,1210557,1211427,1212101,1213915,1214052,1214460,1215427,1216664,CVE-2023-4039
Description:

This update for gcc13 fixes the following issues:
This update ship the GCC 13.2 compiler suite and its base libraries.
The compiler base libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 12 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP4 and SP5, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc13 compilers use:


For a full changelog with all new GCC13 features, check out
https://gcc.gnu.org/gcc-13/changes.html

Detailed changes:




SUSE-CU-2023:2623-1

Container Advisory IDSUSE-CU-2023:2623-1
Container Tagstrento/trento-web:2.1.0 , trento/trento-web:2.1.0-build4.24.1 , trento/trento-web:latest
Container Release4.24.1
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:2111-1
ReleasedFri May 5 14:34:00 2023
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1210434,CVE-2023-29491
Description:

This update for ncurses fixes the following issues:


Advisory IDSUSE-RU-2023:2133-1
ReleasedTue May 9 13:37:10 2023
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1206513
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-RU-2023:2333-1
ReleasedWed May 31 09:01:28 2023
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1210593
Description:

This update for zlib fixes the following issue:


Advisory IDSUSE-SU-2023:2484-1
ReleasedMon Jun 12 08:49:58 2023
SummarySecurity update for openldap2
Typesecurity
Severitymoderate
References1211795,CVE-2023-2953
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-RU-2023:2625-1
ReleasedFri Jun 23 17:16:11 2023
SummaryRecommended update for gcc12
Typerecommended
Severitymoderate
References
Description:

This update for gcc12 fixes the following issues:


* includes regression and other bug fixes


Advisory IDSUSE-RU-2023:2855-1
ReleasedMon Jul 17 16:35:21 2023
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1212260
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-SU-2023:2882-1
ReleasedWed Jul 19 11:49:39 2023
SummarySecurity update for perl
Typesecurity
Severityimportant
References1210999,CVE-2023-31484
Description:

This update for perl fixes the following issues:

- CVE-2023-31484: Enable TLS cert verification in CPAN (bsc#1210999).


Advisory IDSUSE-RU-2023:2885-1
ReleasedWed Jul 19 16:58:43 2023
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1208721,1209229,1211828
Description:

This update for glibc fixes the following issues:


SUSE-CU-2023:1498-1

Container Advisory IDSUSE-CU-2023:1498-1
Container Tagstrento/trento-web:2.0.0 , trento/trento-web:2.0.0-build4.21.2 , trento/trento-web:latest
Container Release4.21.2
The following patches have been included in this update:
Advisory IDSUSE-RU-2022:4256-1
ReleasedMon Nov 28 12:36:32 2022
SummaryRecommended update for gcc12
Typerecommended
Severitymoderate
References
Description:

This update for gcc12 fixes the following issues:
This update ship the GCC 12 compiler suite and its base libraries.
The compiler baselibraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 11 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP3 and SP4, and provided in the 'Development Tools' module.
The Go, D and Ada language compiler parts are available unsupported via the PackageHub repositories.
To use gcc12 compilers use:


For a full changelog with all new GCC12 features, check out
https://gcc.gnu.org/gcc-12/changes.html


Advisory IDSUSE-RU-2022:4312-1
ReleasedFri Dec 2 11:16:47 2022
SummaryRecommended update for tar
Typerecommended
Severitymoderate
References1200657,1203600
Description:

This update for tar fixes the following issues:


Advisory IDSUSE-SU-2022:4630-1
ReleasedWed Dec 28 09:25:18 2022
SummarySecurity update for systemd
Typesecurity
Severityimportant
References1200723,1203857,1204423,1205000,CVE-2022-4415
Description:

This update for systemd fixes the following issues:


Bug fixes:


Advisory IDSUSE-SU-2022:4633-1
ReleasedWed Dec 28 09:32:15 2022
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1206309,CVE-2022-43552
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-RU-2023:25-1
ReleasedThu Jan 5 09:51:41 2023
SummaryRecommended update for timezone
Typerecommended
Severitymoderate
References1177460
Description:

This update for timezone fixes the following issues:
Version update from 2022f to 2022g (bsc#1177460):


Advisory IDSUSE-RU-2023:48-1
ReleasedMon Jan 9 10:37:54 2023
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1199467
Description:

This update for libtirpc fixes the following issues:


Advisory IDSUSE-RU-2023:157-1
ReleasedThu Jan 26 15:54:43 2023
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1194038,1205646
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-RU-2023:176-1
ReleasedThu Jan 26 20:56:20 2023
SummaryRecommended update for permissions
Typerecommended
Severitymoderate
References1206738
Description:

This update for permissions fixes the following issues:
Update to version 20181225:


Advisory IDSUSE-RU-2023:179-1
ReleasedThu Jan 26 21:54:30 2023
SummaryRecommended update for tar
Typerecommended
Severitylow
References1202436
Description:

This update for tar fixes the following issue:


Advisory IDSUSE-RU-2023:188-1
ReleasedFri Jan 27 12:07:19 2023
SummaryRecommended update for zlib
Typerecommended
Severityimportant
References1203652
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2023:198-1
ReleasedFri Jan 27 14:26:54 2023
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1205126,CVE-2022-42898
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-SU-2023:310-1
ReleasedTue Feb 7 17:35:34 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1121365,1198472,1207533,1207534,1207536,1207538,CVE-2022-4304,CVE-2022-4450,CVE-2023-0215,CVE-2023-0286
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2023:463-1
ReleasedMon Feb 20 16:33:39 2023
SummarySecurity update for tar
Typesecurity
Severitymoderate
References1202436,1207753,CVE-2022-48303
Description:

This update for tar fixes the following issues:


Bug fixes:


Advisory IDSUSE-RU-2023:676-1
ReleasedWed Mar 8 14:33:23 2023
SummaryRecommended update for libxml2
Typerecommended
Severitymoderate
References1204585
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2023:776-1
ReleasedThu Mar 16 17:29:23 2023
SummaryRecommended update for gcc12
Typerecommended
Severitymoderate
References
Description:

This update for gcc12 fixes the following issues:
This update ships gcc12 also to the SUSE Linux Enterprise 15 SP1 LTSS and 15 SP2 LTSS products.
SUSE Linux Enterprise 15 SP3 and SP4 get only refreshed builds without changes

This update ship the GCC 12 compiler suite and its base libraries.
The compiler baselibraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 11 ones.
The new compilers for C, C++, and Fortran are provided in the SUSE Linux Enterprise Module for Development Tools.
To use gcc12 compilers use:


For a full changelog with all new GCC12 features, check out
https://gcc.gnu.org/gcc-12/changes.html


Advisory IDSUSE-SU-2023:1711-1
ReleasedFri Mar 31 13:33:04 2023
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1207992,1209209,1209210,1209211,1209212,1209214,CVE-2023-23916,CVE-2023-27533,CVE-2023-27534,CVE-2023-27535,CVE-2023-27536,CVE-2023-27538
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2023:1718-1
ReleasedFri Mar 31 15:47:34 2023
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1207571,1207957,1207975,1208358,CVE-2023-0687
Description:

This update for glibc fixes the following issues:
Security issue fixed:


Other issues fixed:


Advisory IDSUSE-SU-2023:1790-1
ReleasedThu Apr 6 15:36:15 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1209624,1209873,1209878,CVE-2023-0464,CVE-2023-0465,CVE-2023-0466
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:1805-1
ReleasedTue Apr 11 10:12:41 2023
SummaryRecommended update for timezone
Typerecommended
Severityimportant
References
Description:

This update for timezone fixes the following issues:


Advisory IDSUSE-RU-2023:1945-1
ReleasedFri Apr 21 14:13:27 2023
SummaryRecommended update for elfutils
Typerecommended
Severitymoderate
References1203599
Description:

This update for elfutils fixes the following issues:


Advisory IDSUSE-SU-2023:2048-1
ReleasedWed Apr 26 21:05:45 2023
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1065270,1199132,1204585,1210411,1210412,CVE-2021-3541,CVE-2022-29824,CVE-2023-28484,CVE-2023-29469
Description:

This update for libxml2 fixes the following issues:



Advisory IDSUSE-SU-2023:2070-1
ReleasedFri Apr 28 13:56:33 2023
SummarySecurity update for shadow
Typesecurity
Severitymoderate
References1210507,CVE-2023-29383
Description:

This update for shadow fixes the following issues:


Advisory IDSUSE-SU-2023:2074-1
ReleasedFri Apr 28 17:02:25 2023
SummarySecurity update for zstd
Typesecurity
Severitymoderate
References1209533,CVE-2022-4899
Description:

This update for zstd fixes the following issues:


Advisory IDSUSE-SU-2023:2227-1
ReleasedWed May 17 09:57:41 2023
SummarySecurity update for curl
Typesecurity
Severityimportant
References1211231,1211232,1211233,1211339,CVE-2023-28320,CVE-2023-28321,CVE-2023-28322
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2023:2343-1
ReleasedThu Jun 1 11:35:28 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1211430,CVE-2023-2650
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:2365-1
ReleasedMon Jun 5 09:22:46 2023
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1210164
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2023:2956-1
ReleasedTue Jul 25 08:33:38 2023
SummarySecurity update for libcap
Typesecurity
Severitymoderate
References1211419,CVE-2023-2603
Description:

This update for libcap fixes the following issues:


Advisory IDSUSE-SU-2023:3179-1
ReleasedThu Aug 3 13:59:38 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1201627,1207534,1213487,CVE-2022-4304,CVE-2023-3446
Description:

This update for openssl-1_1 fixes the following issues:



Advisory IDSUSE-RU-2023:3284-1
ReleasedFri Aug 11 10:29:50 2023
SummaryRecommended update for shadow
Typerecommended
Severitymoderate
References1206627,1213189
Description:

This update for shadow fixes the following issues:


Advisory IDSUSE-SU-2023:3291-1
ReleasedFri Aug 11 12:51:21 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1213517,1213853,CVE-2023-3817
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2023:3365-1
ReleasedFri Aug 18 20:35:01 2023
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1214054,CVE-2023-36054
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-SU-2023:3698-1
ReleasedWed Sep 20 11:01:15 2023
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1214768,CVE-2023-39615
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2023:4027-1
ReleasedTue Oct 10 13:59:02 2023
SummarySecurity update for shadow
Typesecurity
Severitylow
References1214806,CVE-2023-4641
Description:

This update for shadow fixes the following issues:


Advisory IDSUSE-SU-2023:4045-1
ReleasedWed Oct 11 09:10:43 2023
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1215889,CVE-2023-38546
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-RU-2023:4226-1
ReleasedFri Oct 27 11:14:10 2023
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1215215
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2023:4464-1
ReleasedThu Nov 16 17:56:12 2023
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1216129,CVE-2023-45322
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2023:4519-1
ReleasedTue Nov 21 17:39:58 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1216922,CVE-2023-5678
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2023:4713-1
ReleasedMon Dec 11 13:23:12 2023
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1217573,CVE-2023-46218
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-RU-2023:4963-1
ReleasedFri Dec 22 14:37:08 2023
SummaryRecommended update for curl
Typerecommended
Severityimportant
References1216987
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-RU-2024:164-1
ReleasedFri Jan 19 05:47:58 2024
SummaryRecommended update for util-linux
Typerecommended
Severityimportant
References1207987
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2024:824-1
ReleasedFri Mar 8 17:34:36 2024
SummarySecurity update for cpio
Typesecurity
Severitymoderate
References1218571,1219238,CVE-2023-7207
Description:

This update for cpio fixes the following issues:


Advisory IDSUSE-SU-2024:832-1
ReleasedMon Mar 11 10:30:30 2024
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1219243,CVE-2024-0727
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2024:1001-1
ReleasedWed Mar 27 01:48:30 2024
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1220770,1220771,CVE-2024-26458,CVE-2024-26461
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-SU-2024:1120-1
ReleasedFri Apr 5 14:03:46 2024
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1221665,1221667,CVE-2024-2004,CVE-2024-2398
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2024:1170-1
ReleasedTue Apr 9 09:51:25 2024
SummarySecurity update for util-linux
Typesecurity
Severityimportant
References1194038,1207987,1221831,CVE-2024-28085
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2024:1633-1
ReleasedTue May 14 11:35:56 2024
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1222548,CVE-2024-2511
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2024:1666-1
ReleasedThu May 16 08:00:53 2024
SummaryRecommended update for coreutils
Typerecommended
Severitymoderate
References1221632
Description:

This update for coreutils fixes the following issues:


Advisory IDSUSE-SU-2024:461-1
ReleasedWed May 29 09:34:10 2024
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1219576,CVE-2024-25062
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2024:2009-1
ReleasedWed Jun 12 13:47:43 2024
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1219273,CVE-2023-27534
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2024:2035-1
ReleasedMon Jun 17 09:29:26 2024
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1225551,CVE-2024-4741
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2024:2233-1
ReleasedWed Jun 26 10:02:07 2024
SummaryRecommended update for util-linux
Typerecommended
Severityimportant
References1215918
Description:

This update for util-linux fixes the following issue:


Advisory IDSUSE-SU-2024:2267-1
ReleasedTue Jul 2 10:33:36 2024
SummarySecurity update for libxml2
Typesecurity
Severitylow
References1224282,CVE-2024-34459
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2024:2303-1
ReleasedThu Jul 4 16:25:35 2024
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1227186,1227187,CVE-2024-37370,CVE-2024-37371
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-SU-2024:2648-1
ReleasedTue Jul 30 12:03:47 2024
SummarySecurity update for shadow
Typesecurity
Severityimportant
References916845,CVE-2013-4235
Description:

This update for shadow fixes the following issues:


SUSE-CU-2022:3265-1

Container Advisory IDSUSE-CU-2022:3265-1
Container Tagstrento/trento-web:1.2.0 , trento/trento-web:1.2.0-build4.18.11 , trento/trento-web:latest
Container Release4.18.11
The following patches have been included in this update:
Advisory IDSUSE-RU-2022:2470-1
ReleasedThu Jul 21 04:40:14 2022
SummaryRecommended update for systemd
Typerecommended
Severityimportant
References1137373,1181658,1194708,1195157,1197570,1198507,1198732,1200170
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2022:2494-1
ReleasedThu Jul 21 15:16:42 2022
SummaryRecommended update for glibc
Typerecommended
Severityimportant
References1200855,1201560,1201640
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-SU-2022:2614-1
ReleasedMon Aug 1 10:41:04 2022
SummarySecurity update for dwarves and elfutils
Typesecurity
Severitymoderate
References1033084,1033085,1033086,1033087,1033088,1033089,1033090,1082318,1104264,1106390,1107066,1107067,1111973,1112723,1112726,1123685,1125007,CVE-2017-7607,CVE-2017-7608,CVE-2017-7609,CVE-2017-7610,CVE-2017-7611,CVE-2017-7612,CVE-2017-7613,CVE-2018-16062,CVE-2018-16402,CVE-2018-16403,CVE-2018-18310,CVE-2018-18520,CVE-2018-18521,CVE-2019-7146,CVE-2019-7148,CVE-2019-7149,CVE-2019-7150,CVE-2019-7664,CVE-2019-7665
Description:

This update for dwarves and elfutils fixes the following issues:
elfutils was updated to version 0.177 (jsc#SLE-24501):

Update to version 0.176:
Update to version 0.175:
  • readelf: Handle mutliple .debug_macro sections. Recognize and parse GNU Property, NT_VERSION and GNU Build Attribute ELF Notes.
  • strip: Handle SHT_GROUP correctly. Add strip --reloc-debug-sections-only option. Handle relocations against GNU compressed sections.
  • libdwelf: New function dwelf_elf_begin.
  • libcpu: Recognize bpf jump variants BPF_JLT, BPF_JLE, BPF_JSLT and BPF_JSLE. backends: RISCV handles ADD/SUB relocations. Handle SHT_X86_64_UNWIND. - CVE-2018-18521: arlib: Divide-by-zero vulnerabilities in the function arlib_add_symbols() used by eu-ranlib (bsc#1112723) - CVE-2018-18310: Invalid Address Read problem in dwfl_segment_report_module.c (bsc#1111973) - CVE-2018-18520: eu-size: Bad handling of ar files inside are files (bsc#1112726)
  • Update to version 0.174:
  • libelf, libdw and all tools now handle extended shnum and shstrndx correctly.
  • elfcompress: Don't rewrite input file if no section data needs updating. Try harder to keep same file mode bits (suid) on rewrite.
  • strip: Handle mixed (out of order) allocated/non-allocated sections.
  • unstrip: Handle SHT_GROUP sections.
  • backends: RISCV and M68K now have backend implementations to generate CFI based backtraces.
  • Fixes: - CVE-2018-16402: libelf: denial of service/double free on an attempt to decompress the same section twice (bsc#1107066) Double-free crash in nm and readelf - CVE-2018-16403: heap buffer overflow in readelf (bsc#1107067) - CVE-2018-16062: heap-buffer-overflow in /elfutils/libdw/dwarf_getaranges.c:156 (bsc#1106390)
  • Update to version 0.173:
  • More fixes for crashes and hangs found by afl-fuzz. In particular various functions now detect and break infinite loops caused by bad DIE tree cycles.
  • readelf: Will now lookup the size and signedness of constant value types to display them correctly (and not just how they were encoded).
  • libdw: New function dwarf_next_lines to read CU-less .debug_line data. dwarf_begin_elf now accepts ELF files containing just .debug_line or .debug_frame sections (which can be read without needing a DIE tree from the .debug_info section). Removed dwarf_getscn_info, which was never implemented.
  • backends: Handle BPF simple relocations. The RISCV backends now handles ABI specific CFI and knows about RISCV register types and names.
  • Update to version 0.172:
  • Various bug fixes in libdw and eu-readelf dealing with bad DWARF5 data. Thanks to running the afl fuzzer on eu-readelf and various testcases.
  • Update to version 0.171:
  • DWARF5 and split dwarf, including GNU DebugFission, are supported now. Data can be read from the new DWARF sections .debug_addr, .debug_line_str, .debug_loclists, .debug_str_offsets and .debug_rnglists. Plus the new DWARF5 and GNU DebugFission encodings of the existing .debug sections. Also in split DWARF .dwo (DWARF object) files. This support is mostly handled by existing functions (dwarf_getlocation*, dwarf_getsrclines, dwarf_ranges, dwarf_form*, etc.) now returning the data from the new sections and data formats. But some new functions have been added to more easily get information about skeleton and split compile units (dwarf_get_units and dwarf_cu_info), handle new attribute data (dwarf_getabbrevattr_data) and to keep references to Dwarf_Dies that might come from different sections or files (dwarf_die_addr_die).
  • Not yet supported are .dwp (Dwarf Package) and .sup (Dwarf Supplementary) files, the .debug_names index, the .debug_cu_index and .debug_tu_index sections. Only a single .debug_info (and .debug_types) section are currently handled.
  • readelf: Handle all new DWARF5 sections. --debug-dump=info+ will show split unit DIEs when found. --dwarf-skeleton can be used when inspecting a .dwo file. Recognizes GNU locviews with --debug-dump=loc.
  • libdw: New functions dwarf_die_addr_die, dwarf_get_units, dwarf_getabbrevattr_data and dwarf_cu_info. libdw will now try to resolve the alt file on first use of an alt attribute FORM when not set yet with dwarf_set_alt. dwarf_aggregate_size() now works with multi-dimensional arrays.
  • libdwfl: Use process_vm_readv when available instead of ptrace. backends: Add a RISC-V backend. There were various improvements to build on Windows. The sha1 and md5 implementations have been removed, they weren't used.

  • Update to version 0.170:
    New functions dwarf_default_lower_bound and dwarf_line_file. dwarf_peel_type now handles DWARF5 immutable, packed and shared tags. dwarf_getmacros now handles DWARF5 .debug_macro sections.
  • strip: Add -R, --remove-section=SECTION and --keep-section=SECTION.
  • backends: The bpf disassembler is now always build on all platforms.

  • Update to version 0.169:

    dwarves is shipped new in version 1.22 to provide tooling for use by the Linux Kernel BTF verification framework.


    Advisory IDSUSE-SU-2022:2717-1
    ReleasedTue Aug 9 12:54:16 2022
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1198627,CVE-2022-29458
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2022:2904-1
    ReleasedFri Aug 26 05:28:34 2022
    SummaryRecommended update for openldap2
    Typerecommended
    Severitymoderate
    References1198341
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-RU-2022:2921-1
    ReleasedFri Aug 26 15:17:43 2022
    SummaryRecommended update for systemd
    Typerecommended
    Severityimportant
    References1195059
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2022:2929-1
    ReleasedMon Aug 29 11:21:47 2022
    SummaryRecommended update for timezone
    Typerecommended
    Severityimportant
    References1202310
    Description:

    This update for timezone fixes the following issue:


    Advisory IDSUSE-SU-2022:2947-1
    ReleasedWed Aug 31 09:16:21 2022
    SummarySecurity update for zlib
    Typesecurity
    Severityimportant
    References1202175,CVE-2022-37434
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2022:2982-1
    ReleasedThu Sep 1 12:33:47 2022
    SummaryRecommended update for util-linux
    Typerecommended
    Severitymoderate
    References1197178,1198731,1200842
    Description:

    This update for util-linux fixes the following issues:


    Advisory IDSUSE-SU-2022:3004-1
    ReleasedFri Sep 2 15:02:14 2022
    SummarySecurity update for curl
    Typesecurity
    Severitylow
    References1202593,CVE-2022-35252
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2022:3127-1
    ReleasedWed Sep 7 04:36:10 2022
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1198752,1200800
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2022:3262-1
    ReleasedTue Sep 13 15:34:29 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1199140
    Description:


    This update for gcc11 ships some missing 32bit libraries for s390x. (bsc#1199140)


    Advisory IDSUSE-SU-2022:3271-1
    ReleasedWed Sep 14 06:45:39 2022
    SummarySecurity update for perl
    Typesecurity
    Severitymoderate
    References1047178,CVE-2017-6512
    Description:

    This update for perl fixes the following issues:


    Advisory IDSUSE-RU-2022:3276-1
    ReleasedThu Sep 15 06:15:29 2022
    SummaryThis update fixes the following issues:
    Typerecommended
    Severitymoderate
    References
    Description:

    Implement ECO jsc#SLE-20950 to fix the channel configuration for libeconf-devel having L3 support (instead of unsupported).


    Advisory IDSUSE-SU-2022:3305-1
    ReleasedMon Sep 19 11:45:57 2022
    SummarySecurity update for libtirpc
    Typesecurity
    Severityimportant
    References1201680,CVE-2021-46828
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-SU-2022:3394-1
    ReleasedMon Sep 26 16:05:19 2022
    SummarySecurity update for permissions
    Typesecurity
    Severitymoderate
    References1203018,CVE-2022-31252
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-RU-2022:3452-1
    ReleasedWed Sep 28 12:13:43 2022
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1201942
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-RU-2022:3555-1
    ReleasedMon Oct 10 14:05:12 2022
    SummaryRecommended update for aaa_base
    Typerecommended
    Severityimportant
    References1199492
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2022:3766-1
    ReleasedWed Oct 26 11:38:01 2022
    SummarySecurity update for buildah
    Typesecurity
    Severityimportant
    References1167864,1181961,1202812,CVE-2020-10696,CVE-2021-20206,CVE-2022-2990
    Description:

    This update for buildah fixes the following issues:


    Buildah was updated to version 1.27.1:



    Update to version 1.27.0:


    Update to version 1.26.4:

    Update to version 1.26.3:

    Drop requires on apparmor pattern, should be moved elsewhere for systems which want AppArmor instead of SELinux.

    Update to version 1.26.2:

    Update to version 1.26.1:


    Advisory IDSUSE-SU-2022:3773-1
    ReleasedWed Oct 26 12:19:29 2022
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1204383,CVE-2022-32221
    Description:

    This update for curl fixes the following issues:
    - CVE-2022-32221: Fixed POST following PUT confusion (bsc#1204383).


    Advisory IDSUSE-RU-2022:3776-1
    ReleasedWed Oct 26 14:06:43 2022
    SummaryRecommended update for permissions
    Typerecommended
    Severityimportant
    References1203911,1204137
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-SU-2022:3871-1
    ReleasedFri Nov 4 13:26:29 2022
    SummarySecurity update for libxml2
    Typesecurity
    Severityimportant
    References1201978,1204366,1204367,CVE-2016-3709,CVE-2022-40303,CVE-2022-40304
    Description:

    This update for libxml2 fixes the following issues:
    - CVE-2016-3709: Fixed possible XSS vulnerability (bsc#1201978). - CVE-2022-40303: Fixed integer overflows with XML_PARSE_HUGE (bsc#1204366). - CVE-2022-40304: Fixed dict corruption caused by entity reference cycles (bsc#1204367).


    Advisory IDSUSE-RU-2022:3901-1
    ReleasedTue Nov 8 10:50:06 2022
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1180995,1203046
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2022:3910-1
    ReleasedTue Nov 8 13:05:04 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for pam fixes the following issue:


    Advisory IDSUSE-RU-2022:3961-1
    ReleasedMon Nov 14 07:33:50 2022
    SummaryRecommended update for zlib
    Typerecommended
    Severityimportant
    References1203652
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2022:3973-1
    ReleasedMon Nov 14 15:38:25 2022
    SummaryRecommended update for util-linux
    Typerecommended
    Severitymoderate
    References1201959,1204211
    Description:

    This update for util-linux fixes the following issues:


    Advisory IDSUSE-SU-2022:4056-1
    ReleasedThu Nov 17 15:38:08 2022
    SummarySecurity update for systemd
    Typesecurity
    Severitymoderate
    References1204179,1204968,CVE-2022-3821
    Description:

    This update for systemd fixes the following issues:




    Advisory IDSUSE-RU-2022:4066-1
    ReleasedFri Nov 18 10:43:00 2022
    SummaryRecommended update for timezone
    Typerecommended
    Severityimportant
    References1177460,1202324,1204649,1205156
    Description:

    This update for timezone fixes the following issues:
    Update timezone version from 2022a to 2022f (bsc#1177460, bsc#1204649, bsc#1205156):


    SUSE-CU-2022:3034-1

    Container Advisory IDSUSE-CU-2022:3034-1
    Container Tagstrento/trento-web:1.2.0 , trento/trento-web:1.2.0-build4.18.1 , trento/trento-web:latest
    Container Release4.18.1
    The following patches have been included in this update:
    Advisory IDSUSE-RU-2022:2735-1
    ReleasedWed Aug 10 04:31:41 2022
    SummaryRecommended update for tar
    Typerecommended
    Severitymoderate
    References1200657
    Description:

    This update for tar fixes the following issues:


    Advisory IDSUSE-RU-2022:2844-1
    ReleasedThu Aug 18 14:41:25 2022
    SummaryRecommended update for tar
    Typerecommended
    Severityimportant
    References1202436
    Description:

    This update for tar fixes the following issues:



    SUSE-CU-2022:1617-1

    Container Advisory IDSUSE-CU-2022:1617-1
    Container Tagstrento/trento-web:1.1.0 , trento/trento-web:1.1.0-build4.15.1 , trento/trento-web:latest
    Container Release4.15.1
    The following patches have been included in this update:
    Advisory IDSUSE-RU-2018:1332-1
    ReleasedTue Jul 17 09:01:19 2018
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1073299,1093392
    Description:

    This update for timezone provides the following fixes:


    Advisory IDSUSE-RU-2018:2463-1
    ReleasedThu Oct 25 14:48:34 2018
    SummaryRecommended update for timezone, timezone-java
    Typerecommended
    Severitymoderate
    References1104700,1112310
    Description:


    This update for timezone, timezone-java fixes the following issues:
    The timezone database was updated to 2018f:


    Other bugfixes:


    Advisory IDSUSE-RU-2018:2550-1
    ReleasedWed Oct 31 16:16:56 2018
    SummaryRecommended update for timezone, timezone-java
    Typerecommended
    Severitymoderate
    References1113554
    Description:

    This update provides the latest time zone definitions (2018g), including the following change:


    Advisory IDSUSE-RU-2019:102-1
    ReleasedTue Jan 15 18:02:58 2019
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1120402
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2019:790-1
    ReleasedThu Mar 28 12:06:17 2019
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1130557
    Description:

    This update for timezone fixes the following issues:
    timezone was updated 2019a:


    Advisory IDSUSE-RU-2019:1815-1
    ReleasedThu Jul 11 07:47:55 2019
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1140016
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2019:2762-1
    ReleasedThu Oct 24 07:08:44 2019
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1150451
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2020:1303-1
    ReleasedMon May 18 09:40:36 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1169582
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2020:1542-1
    ReleasedThu Jun 4 13:24:37 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1172055
    Description:

    This update for timezone fixes the following issue:


    Advisory IDSUSE-RU-2020:3099-1
    ReleasedThu Oct 29 19:33:41 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2020:3123-1
    ReleasedTue Nov 3 09:48:13 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severityimportant
    References1177460,1178346,1178350,1178353
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2021:179-1
    ReleasedWed Jan 20 13:38:51 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:





    Advisory IDSUSE-RU-2021:301-1
    ReleasedThu Feb 4 08:46:27 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:



    Advisory IDSUSE-RU-2021:2573-1
    ReleasedThu Jul 29 14:21:52 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1188127
    Description:

    This update for timezone fixes the following issue:

    the IANA time zone database package, in addition to 'zone1970.tab', as before. This makes sure time zone aliases are now correctly supported. This update adds the 'tzdata.zi' file (bsc#1188127).


    Advisory IDSUSE-RU-2021:3883-1
    ReleasedThu Dec 2 11:47:07 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:
    Update timezone to 2021e (bsc#1177460)


    Advisory IDSUSE-RU-2022:1118-1
    ReleasedTue Apr 5 18:34:06 2022
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2022:1374-1
    ReleasedMon Apr 25 15:02:13 2022
    SummaryRecommended update for openldap2
    Typerecommended
    Severitymoderate
    References1191157,1197004
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-RU-2022:1409-1
    ReleasedTue Apr 26 12:54:57 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1195628,1196107
    Description:

    This update for gcc11 fixes the following issues:


    Advisory IDSUSE-RU-2022:1451-1
    ReleasedThu Apr 28 10:47:22 2022
    SummaryRecommended update for perl
    Typerecommended
    Severitymoderate
    References1193489
    Description:

    This update for perl fixes the following issues:


    Advisory IDSUSE-RU-2022:1626-1
    ReleasedTue May 10 15:55:13 2022
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1198090,1198114
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2022:1655-1
    ReleasedFri May 13 15:36:10 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1197794
    Description:

    This update for pam fixes the following issue:


    Advisory IDSUSE-SU-2022:1657-1
    ReleasedFri May 13 15:39:07 2022
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1198614,1198723,1198766,CVE-2022-22576,CVE-2022-27775,CVE-2022-27776
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2022:1658-1
    ReleasedFri May 13 15:40:20 2022
    SummaryRecommended update for libpsl
    Typerecommended
    Severityimportant
    References1197771
    Description:

    This update for libpsl fixes the following issues:


    Advisory IDSUSE-SU-2022:1670-1
    ReleasedMon May 16 10:06:30 2022
    SummarySecurity update for openldap2
    Typesecurity
    Severityimportant
    References1199240,CVE-2022-29155
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-SU-2022:1688-1
    ReleasedMon May 16 14:02:49 2022
    SummarySecurity update for e2fsprogs
    Typesecurity
    Severityimportant
    References1198446,CVE-2022-1304
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-SU-2022:1750-1
    ReleasedThu May 19 15:28:20 2022
    SummarySecurity update for libxml2
    Typesecurity
    Severityimportant
    References1196490,1199132,CVE-2022-23308,CVE-2022-29824
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2022:1770-1
    ReleasedFri May 20 14:36:30 2022
    SummaryRecommended update for skelcd, sles15-image
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for skelcd, sles15-image fixes the following issues:
    Changes in skelcd:


    Advisory IDSUSE-SU-2022:1870-1
    ReleasedFri May 27 10:03:40 2022
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1199223,1199224,CVE-2022-27781,CVE-2022-27782
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2022:1887-1
    ReleasedTue May 31 09:24:18 2022
    SummaryRecommended update for grep
    Typerecommended
    Severitymoderate
    References1040589
    Description:

    This update for grep fixes the following issues:


    Advisory IDSUSE-RU-2022:1899-1
    ReleasedWed Jun 1 10:43:22 2022
    SummaryRecommended update for libtirpc
    Typerecommended
    Severityimportant
    References1198176
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2022:1909-1
    ReleasedWed Jun 1 16:25:35 2022
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1198751
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-RU-2022:2019-1
    ReleasedWed Jun 8 16:50:07 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1192951,1193659,1195283,1196861,1197065
    Description:

    This update for gcc11 fixes the following issues:
    Update to the GCC 11.3.0 release.


    Advisory IDSUSE-SU-2022:2251-1
    ReleasedMon Jul 4 09:52:25 2022
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severitymoderate
    References1185637,1199166,1200550,CVE-2022-1292,CVE-2022-2068
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-SU-2022:2327-1
    ReleasedThu Jul 7 15:06:13 2022
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1200735,1200737,CVE-2022-32206,CVE-2022-32208
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-SU-2022:2328-1
    ReleasedThu Jul 7 15:07:35 2022
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severityimportant
    References1201099,CVE-2022-2097
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-SU-2022:2361-1
    ReleasedTue Jul 12 12:05:01 2022
    SummarySecurity update for pcre
    Typesecurity
    Severityimportant
    References1199232,CVE-2022-1586
    Description:

    This update for pcre fixes the following issues:


    Advisory IDSUSE-RU-2022:2406-1
    ReleasedFri Jul 15 11:49:01 2022
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1197718,1199140,1200334,1200855
    Description:

    This update for glibc fixes the following issues:


    This readds the s390 32bit glibc and libcrypt1 libraries (glibc-32bit, glibc-locale-base-32bit, libcrypt1-32bit).


    SUSE-CU-2022:1009-1

    Container Advisory IDSUSE-CU-2022:1009-1
    Container Tagstrento/trento-web:1.0.0 , trento/trento-web:1.0.0-build4.10.1 , trento/trento-web:latest
    Container Release4.10.1
    The following patches have been included in this update:

    SUSE-CU-2022:950-1

    Container Advisory IDSUSE-CU-2022:950-1
    Container Tagstrento/trento-web:1.0.0 , trento/trento-web:1.0.0-build4.10.1 , trento/trento-web:latest
    Container Release4.10.1
    The following patches have been included in this update:

    SUSE-CU-2022:919-1

    Container Advisory IDSUSE-CU-2022:919-1
    Container Tagstrento/trento-web:latest , trento/trento-web:v1.0.0 , trento/trento-web:v1.0.0-build4.7.1
    Container Release4.7.1
    The following patches have been included in this update:
    Advisory IDSUSE-RU-2021:3001-1
    ReleasedThu Sep 9 15:08:13 2021
    SummaryRecommended update for netcfg
    Typerecommended
    Severitymoderate
    References1189683
    Description:

    This update for netcfg fixes the following issues:


    Advisory IDSUSE-RU-2022:861-1
    ReleasedTue Mar 15 23:31:21 2022
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1182959,1195149,1195792,1195856
    Description:

    This update for openssl-1_1 fixes the following issues:
    openssl-1_1:

    glibc:
    linux-glibc-devel:

    libxcrypt:

    zlib:


    Advisory IDSUSE-RU-2022:905-1
    ReleasedMon Mar 21 08:46:09 2022
    SummaryRecommended update for util-linux
    Typerecommended
    Severityimportant
    References1172427,1194642
    Description:

    This update for util-linux fixes the following issues:


    Advisory IDSUSE-RU-2022:936-1
    ReleasedTue Mar 22 18:10:17 2022
    SummaryRecommended update for filesystem and systemd-rpm-macros
    Typerecommended
    Severitymoderate
    References1196275,1196406
    Description:

    This update for filesystem and systemd-rpm-macros fixes the following issues:
    filesystem:


    systemd-rpm-macros:


    Advisory IDSUSE-RU-2022:1047-1
    ReleasedWed Mar 30 16:20:56 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1196093,1197024
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2022:1061-1
    ReleasedWed Mar 30 18:27:06 2022
    SummarySecurity update for zlib
    Typesecurity
    Severityimportant
    References1197459,CVE-2018-25032
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2022:1099-1
    ReleasedMon Apr 4 12:53:05 2022
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1194883
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-RU-2022:1107-1
    ReleasedMon Apr 4 17:49:17 2022
    SummaryRecommended update for util-linux
    Typerecommended
    Severitymoderate
    References1194642
    Description:

    This update for util-linux fixes the following issue:


    Advisory IDSUSE-SU-2022:1158-1
    ReleasedTue Apr 12 14:44:43 2022
    SummarySecurity update for xz
    Typesecurity
    Severityimportant
    References1198062,CVE-2022-1271
    Description:

    This update for xz fixes the following issues:


    Advisory IDSUSE-RU-2022:1170-1
    ReleasedTue Apr 12 18:20:07 2022
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1191502,1193086,1195247,1195529,1195899,1196567
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2022:1281-1
    ReleasedWed Apr 20 12:26:38 2022
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1196647
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2022:1302-1
    ReleasedFri Apr 22 10:04:46 2022
    SummaryRecommended update for e2fsprogs
    Typerecommended
    Severitymoderate
    References1196939
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-RU-2022:1333-1
    ReleasedMon Apr 25 11:29:26 2022
    SummaryRecommended update for sles15-image
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for sles15-image fixes the following issues:


    Advisory IDSUSE-SU-2022:1548-1
    ReleasedThu May 5 16:45:28 2022
    SummarySecurity update for tar
    Typesecurity
    Severitymoderate
    References1029961,1120610,1130496,1181131,CVE-2018-20482,CVE-2019-9923,CVE-2021-20193
    Description:

    This update for tar fixes the following issues:







    SUSE-CU-2022:312-1

    Container Advisory IDSUSE-CU-2022:312-1
    Container Tagstrento/trento-web:0.9.1 , trento/trento-web:0.9.1-rev1.0.1 , trento/trento-web:0.9.1-rev1.0.1-build3.2.11 , trento/trento-web:latest
    Container Release3.2.11
    The following patches have been included in this update:
    Advisory IDSUSE-RU-2020:1979-1
    ReleasedTue Jul 21 02:41:47 2020
    SummaryRecommended update for golang-github-prometheus-node_exporter
    Typerecommended
    Severitymoderate
    References1143913
    Description:

    This update for golang-github-prometheus-node_exporter fixes the following issues:

    0.18.1 / 2019-06-04 * [BUGFIX] Fix incorrect sysctl call in BSD meminfo collector, resulting in broken swap metrics on FreeBSD * [BUGFIX] Fix rollover bug in mountstats collector 0.18.0 / 2019-05-09 * Renamed interface label to device in netclass collector for consistency with other network metrics * The cpufreq metrics now separate the cpufreq and scaling data based on what the driver provides. * The labels for the network_up metric have changed * Bonding collector now uses mii_status instead of operstatus * Several systemd metrics have been turned off by default to improve performance * These include unit_tasks_current, unit_tasks_max, service_restart_total, and unit_start_time_seconds * The systemd collector blacklist now includes automount, device, mount, and slice units by default. * [CHANGE] Bonding state uses mii_status * [CHANGE] Add a limit to the number of in-flight requests * [CHANGE] Renamed interface label to device in netclass collector * [CHANGE] Add separate cpufreq and scaling metrics * [CHANGE] Several systemd metrics have been turned off by default to improve performance * [CHANGE] Expand systemd collector blacklist * [CHANGE] Split cpufreq metrics into a separate collector * [FEATURE] Add a flag to disable exporter metrics * [FEATURE] Add kstat-based Solaris metrics for boottime, cpu and zfs collectors * [FEATURE] Add uname collector for FreeBSD * [FEATURE] Add diskstats collector for OpenBSD * [FEATURE] Add pressure collector exposing pressure stall information for Linux * [FEATURE] Add perf exporter for Linux * [ENHANCEMENT] Add Infiniband counters * [ENHANCEMENT] Add TCPSynRetrans to netstat default filter * [ENHANCEMENT] Move network_up labels into new metric network_info * [ENHANCEMENT] Use 64-bit counters for Darwin netstat * [BUGFIX] Add fallback for missing /proc/1/mounts * [BUGFIX] Fix node_textfile_mtime_seconds to work properly on symlinks
  • Add network-online (Wants and After) dependency to systemd unit. (bsc#1143913)

  • Advisory IDSUSE-RU-2020:2842-1
    ReleasedFri Oct 2 12:17:55 2020
    SummaryRecommended update for golang-github-prometheus-node_exporter
    Typerecommended
    Severitymoderate
    References1151557
    Description:

    This update for golang-github-prometheus-node_exporter fixes the following issues:





    Breaking changes * The netdev collector CLI argument --collector.netdev.ignored-devices was renamed to --collector.netdev.device-blacklist in order to conform with the systemd collector. #1279 * The label named state on node_systemd_service_restart_total metrics was changed to name to better describe the metric. #1393 * Refactoring of the mdadm collector changes several metrics node_md_disks_active is removed node_md_disks now has a state label for 'fail', 'spare', 'active' disks. node_md_is_active is replaced by node_md_state with a state set of 'active', 'inactive', 'recovering', 'resync'. * Additional label mountaddr added to NFS device metrics to distinguish mounts from the same URL, but different IP addresses. #1417 * Metrics node_cpu_scaling_frequency_min_hrts and node_cpu_scaling_frequency_max_hrts of the cpufreq collector were renamed to node_cpu_scaling_frequency_min_hertz and node_cpu_scaling_frequency_max_hertz. #1510 * Collectors that are enabled, but are unable to find data to collect, now return 0 for node_scrape_collector_success.


    Advisory IDSUSE-RU-2021:2107-1
    ReleasedMon Jun 21 19:29:09 2021
    SummaryRecommended update for golang-github-prometheus-node_exporter
    Typerecommended
    Severitymoderate
    References1151558
    Description:

    This update for golang-github-prometheus-node_exporter fixes the following issues:
    Update from version 1.0.1 to version 1.1.2



    Advisory IDSUSE-RU-2021:2626-1
    ReleasedThu Aug 5 12:10:35 2021
    SummaryRecommended maintenance update for libeconf
    Typerecommended
    Severitymoderate
    References1188348
    Description:

    This update for libeconf fixes the following issue:


    Advisory IDSUSE-SU-2021:2809-1
    ReleasedMon Aug 23 12:12:31 2021
    SummarySecurity update for systemd
    Typesecurity
    Severitymoderate
    References1166028,1171962,1184994,1185972,1188063,CVE-2020-13529,CVE-2021-33910
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-SU-2021:2830-1
    ReleasedTue Aug 24 16:20:18 2021
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severityimportant
    References1189520,1189521,CVE-2021-3711,CVE-2021-3712
    Description:

    This update for openssl-1_1 fixes the following security issues:



    Advisory IDSUSE-RU-2021:2938-1
    ReleasedFri Sep 3 09:19:36 2021
    SummaryRecommended update for openldap2
    Typerecommended
    Severitymoderate
    References1184614
    Description:


    This update for openldap2 fixes the following issue:


    Advisory IDSUSE-SU-2021:2966-1
    ReleasedTue Sep 7 09:49:14 2021
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severitylow
    References1189521,CVE-2021-3712
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2021:3182-1
    ReleasedTue Sep 21 17:04:26 2021
    SummaryRecommended update for file
    Typerecommended
    Severitymoderate
    References1189996
    Description:

    This update for file fixes the following issues:


    Advisory IDSUSE-SU-2021:3291-1
    ReleasedWed Oct 6 16:45:36 2021
    SummarySecurity update for glibc
    Typesecurity
    Severitymoderate
    References1186489,1187911,CVE-2021-33574,CVE-2021-35942
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-SU-2021:3298-1
    ReleasedWed Oct 6 16:54:52 2021
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1190373,1190374,CVE-2021-22946,CVE-2021-22947
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2021:3310-1
    ReleasedWed Oct 6 18:12:41 2021
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1134353,1184994,1188291,1188588,1188713,1189446,1189480
    Description:

    This update for systemd fixes the following issues:




    Additional fixes:


    Advisory IDSUSE-OU-2021:3327-1
    ReleasedMon Oct 11 11:44:50 2021
    SummaryOptional update for coreutils
    Typeoptional
    Severitylow
    References1189454
    Description:

    This optional update for coreutils fixes the following issue:


    Advisory IDSUSE-SU-2021:3474-1
    ReleasedWed Oct 20 08:41:31 2021
    SummarySecurity update for util-linux
    Typesecurity
    Severitymoderate
    References1178236,1188921,CVE-2021-37600
    Description:

    This update for util-linux fixes the following issues:


    Advisory IDSUSE-SU-2021:3490-1
    ReleasedWed Oct 20 16:31:55 2021
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1190793,CVE-2021-39537
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2021:3494-1
    ReleasedWed Oct 20 16:48:46 2021
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1190052
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2021:3510-1
    ReleasedTue Oct 26 11:22:15 2021
    SummaryRecommended update for pam
    Typerecommended
    Severityimportant
    References1191987
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2021:3529-1
    ReleasedWed Oct 27 09:23:32 2021
    SummarySecurity update for pcre
    Typesecurity
    Severitymoderate
    References1172973,1172974,CVE-2019-20838,CVE-2020-14155
    Description:

    This update for pcre fixes the following issues:
    Update pcre to version 8.45:


    Advisory IDSUSE-RU-2021:3564-1
    ReleasedWed Oct 27 16:12:08 2021
    SummaryRecommended update for rpm-config-SUSE
    Typerecommended
    Severitymoderate
    References1190850
    Description:

    This update for rpm-config-SUSE fixes the following issues:


    Advisory IDSUSE-RU-2021:3786-1
    ReleasedWed Nov 24 05:59:13 2021
    SummaryRecommended update for rpm-config-SUSE
    Typerecommended
    Severityimportant
    References1192160
    Description:

    This update for rpm-config-SUSE fixes the following issues:


    Advisory IDSUSE-RU-2021:3799-1
    ReleasedWed Nov 24 18:07:54 2021
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1187153,1187273,1188623
    Description:

    This update for gcc11 fixes the following issues:
    The additional GNU compiler collection GCC 11 is provided:
    To select these compilers install the packages:


    to select them for building:

    The compiler baselibraries (libgcc_s1, libstdc++6 and others) are being replaced by the GCC 11 variants.


    Advisory IDSUSE-RU-2021:3808-1
    ReleasedFri Nov 26 00:30:54 2021
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1186071,1190440,1190984,1192161
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2021:3872-1
    ReleasedThu Dec 2 07:25:55 2021
    SummaryRecommended update for cracklib
    Typerecommended
    Severitymoderate
    References1191736
    Description:

    This update for cracklib fixes the following issues:


    Advisory IDSUSE-RU-2021:3891-1
    ReleasedFri Dec 3 10:21:49 2021
    SummaryRecommended update for keyutils
    Typerecommended
    Severitymoderate
    References1029961,1113013,1187654
    Description:

    This update for keyutils fixes the following issues:


    keyutils was updated to 1.6.3 (jsc#SLE-20016):

    Updated to 1.6:

    Updated to 1.5.11 (bsc#1113013)


    Advisory IDSUSE-SU-2021:3899-1
    ReleasedFri Dec 3 11:27:41 2021
    SummarySecurity update for aaa_base
    Typesecurity
    Severitymoderate
    References1162581,1174504,1191563,1192248
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2021:3946-1
    ReleasedMon Dec 6 14:57:42 2021
    SummarySecurity update for gmp
    Typesecurity
    Severitymoderate
    References1192717,CVE-2021-43618
    Description:

    This update for gmp fixes the following issues:


    Advisory IDSUSE-RU-2021:3963-1
    ReleasedMon Dec 6 19:57:39 2021
    SummaryRecommended update for system-users
    Typerecommended
    Severitymoderate
    References1190401
    Description:

    This update for system-users fixes the following issues:


    Advisory IDSUSE-RU-2021:3980-1
    ReleasedThu Dec 9 16:42:19 2021
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1191592
    Description:


    glibc was updated to fix the following issue:


    Advisory IDSUSE-RU-2021:4145-1
    ReleasedWed Dec 22 05:27:48 2021
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1161276
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2021:4175-1
    ReleasedThu Dec 23 11:22:33 2021
    SummaryRecommended update for systemd
    Typerecommended
    Severityimportant
    References1192423,1192858,1193759
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2021:4182-1
    ReleasedThu Dec 23 11:51:51 2021
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1192688
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-SU-2021:4192-1
    ReleasedTue Dec 28 10:39:50 2021
    SummarySecurity update for permissions
    Typesecurity
    Severitymoderate
    References1174504
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-RU-2022:4-1
    ReleasedMon Jan 3 08:28:54 2022
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severitymoderate
    References1193480
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-SU-2022:43-1
    ReleasedTue Jan 11 08:50:13 2022
    SummarySecurity update for systemd
    Typesecurity
    Severitymoderate
    References1178561,1190515,1194178,CVE-2021-3997
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2022:93-1
    ReleasedTue Jan 18 05:11:58 2022
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severityimportant
    References1192489
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-SU-2022:141-1
    ReleasedThu Jan 20 13:47:16 2022
    SummarySecurity update for permissions
    Typesecurity
    Severitymoderate
    References1169614
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-RU-2022:207-1
    ReleasedThu Jan 27 09:24:49 2022
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-SU-2022:330-1
    ReleasedFri Feb 4 09:29:08 2022
    SummarySecurity update for glibc
    Typesecurity
    Severityimportant
    References1194640,1194768,1194770,1194785,CVE-2021-3999,CVE-2022-23218,CVE-2022-23219
    Description:


    This update for glibc fixes the following issues:


    Features added:


    Advisory IDSUSE-RU-2022:335-1
    ReleasedFri Feb 4 10:24:02 2022
    SummaryRecommended update for coreutils
    Typerecommended
    Severitymoderate
    References1189152
    Description:

    This update for coreutils fixes the following issues:


    Advisory IDSUSE-RU-2022:343-1
    ReleasedMon Feb 7 15:16:58 2022
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1193086
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-SU-2022:283-1
    ReleasedTue Feb 8 16:10:39 2022
    SummarySecurity update for samba
    Typesecurity
    Severitycritical
    References1139519,1183572,1183574,1188571,1191227,1191532,1192684,1193690,1194859,1195048,CVE-2020-27840,CVE-2021-20277,CVE-2021-20316,CVE-2021-36222,CVE-2021-43566,CVE-2021-44141,CVE-2021-44142,CVE-2022-0336
    Description:




    samba was updated to 4.15.4 (jsc#SLE-23329);

    Samba was updated to version 4.15.3

    krb5 was updated to 1.16.3 to 1.19.2

    Changes from 1.19.1:

    Changes from 1.19
    Administrator experience * When a client keytab is present, the GSSAPI krb5 mech will refresh credentials even if the current credentials were acquired manually. * It is now harder to accidentally delete the K/M entry from a KDB. Developer experience * gss_acquire_cred_from() now supports the 'password' and 'verify' options, allowing credentials to be acquired via password and verified using a keytab key. * When an application accepts a GSS security context, the new GSS_C_CHANNEL_BOUND_FLAG will be set if the initiator and acceptor both provided matching channel bindings. * Added the GSS_KRB5_NT_X509_CERT name type, allowing S4U2Self requests to identify the desired client principal by certificate. * PKINIT certauth modules can now cause the hw-authent flag to be set in issued tickets. * The krb5_init_creds_step() API will now issue the same password expiration warnings as krb5_get_init_creds_password(). Protocol evolution * Added client and KDC support for Microsoft's Resource-Based Constrained Delegation, which allows cross-realm S4U2Proxy requests. A third-party database module is required for KDC support. * kadmin/admin is now the preferred server principal name for kadmin connections, and the host-based form is no longer created by default. The client will still try the host-based form as a fallback. * Added client and server support for Microsoft's KERB_AP_OPTIONS_CBT extension, which causes channel bindings to be required for the initiator if the acceptor provided them. The client will send this option if the client_aware_gss_bindings profile option is set. User experience * kinit will now issue a warning if the des3-cbc-sha1 encryption type is used in the reply. This encryption type will be deprecated and removed in future releases. * Added kvno flags --out-cache, --no-store, and --cached-only (inspired by Heimdal's kgetcred).
    Changes from 1.18.3
    Changes from 1.18.2
    Changes from 1.18.1
    Changes from 1.18 Administrator experience: * Remove support for single-DES encryption types. * Change the replay cache format to be more efficient and robust. Replay cache filenames using the new format end with '.rcache2' by default. * setuid programs will automatically ignore environment variables that normally affect krb5 API functions, even if the caller does not use krb5_init_secure_context(). * Add an 'enforce_ok_as_delegate' krb5.conf relation to disable credential forwarding during GSSAPI authentication unless the KDC sets the ok-as-delegate bit in the service ticket. * Use the permitted_enctypes krb5.conf setting as the default value for default_tkt_enctypes and default_tgs_enctypes. Developer experience: * Implement krb5_cc_remove_cred() for all credential cache types. * Add the krb5_pac_get_client_info() API to get the client account name from a PAC. Protocol evolution: * Add KDC support for S4U2Self requests where the user is identified by X.509 certificate. (Requires support for certificate lookup from a third-party KDB module.) * Remove support for an old ('draft 9') variant of PKINIT. * Add support for Microsoft NegoEx. (Requires one or more third-party GSS modules implementing NegoEx mechanisms.) User experience: * Add support for 'dns_canonicalize_hostname=fallback', causing host-based principal names to be tried first without DNS canonicalization, and again with DNS canonicalization if the un-canonicalized server is not found. * Expand single-component hostnames in host-based principal names when DNS canonicalization is not used, adding the system's first DNS search path as a suffix. Add a 'qualify_shortname' krb5.conf relation to override this suffix or disable expansion. * Honor the transited-policy-checked ticket flag on application servers, eliminating the requirement to configure capaths on servers in some scenarios. Code quality: * The libkrb5 serialization code (used to export and import krb5 GSS security contexts) has been simplified and made type-safe. * The libkrb5 code for creating KRB-PRIV, KRB-SAFE, and KRB-CRED messages has been revised to conform to current coding practices. * The test suite has been modified to work with macOS System Integrity Protection enabled. * The test suite incorporates soft-pkcs11 so that PKINIT PKCS11 support can always be tested.
    Changes from 1.17.1
    Changes from 1.17: Administrator experience: Developer experience:
  • The new krb5_get_etype_info() API can be used to retrieve enctype, salt, and string-to-key parameters from the KDC for a client principal.
  • The new GSS_KRB5_NT_ENTERPRISE_NAME name type allows enterprise principal names to be used with GSS-API functions.
  • KDC and kadmind modules which call com_err() will now write to the log file in a format more consistent with other log messages.
  • Programs which use large numbers of memory credential caches should perform better.
  • Protocol evolution:
  • The SPAKE pre-authentication mechanism is now supported. This mechanism protects against password dictionary attacks without requiring any additional infrastructure such as certificates. SPAKE is enabled by default on clients, but must be manually enabled on the KDC for this release.
  • PKINIT freshness tokens are now supported. Freshness tokens can protect against scenarios where an attacker uses temporary access to a smart card to generate authentication requests for the future.
  • Password change operations now prefer TCP over UDP, to avoid spurious error messages about replays when a response packet is dropped.
  • The KDC now supports cross-realm S4U2Self requests when used with a third-party KDB module such as Samba's. The client code for cross-realm S4U2Self requests is also now more robust.
  • User experience:
  • The new ktutil addent -f flag can be used to fetch salt information from the KDC for password-based keys.
  • The new kdestroy -p option can be used to destroy a credential cache within a collection by client principal name.
  • The Kerberos man page has been restored, and documents the environment variables that affect programs using the Kerberos library.
  • Code quality:
  • Python test scripts now use Python 3.
  • Python test scripts now display markers in verbose output, making it easier to find where a failure occurred within the scripts.
  • The Windows build system has been simplified and updated to work with more recent versions of Visual Studio. A large volume of unused Windows-specific code has been removed. Visual Studio 2013 or later is now required.

  • ldb was updated to version 2.4.1 (jsc#SLE-23329);

    + Corrected python behaviour for 'in' for LDAP attributes contained as part of ldb.Message; (bso#14845); + Fix memory handling in ldb.msg_diff; (bso#14836);

    + pyldb: Fix Message.items() for a message containing elements + pyldb: Add test for Message.items() + tests: Use ldbsearch '--scope instead of '-s' + Change page size of guidindexpackv1.ldb + Use a 1MiB lmdb so the test also passes on aarch64 CentOS stream + attrib_handler casefold: simplify space dropping + fix ldb_comparison_fold off-by-one overrun + CVE-2020-27840: pytests: move Dn.validate test to ldb + CVE-2020-27840 ldb_dn: avoid head corruption in ldb_dn_explode + CVE-2021-20277 ldb/attrib_handlers casefold: stay in bounds + CVE-2021-20277 ldb tests: ldb_match tests with extra spaces + improve comments for ldb_module_connect_backend() + test/ldb_tdb: correct introductory comments + ldb.h: remove undefined async_ctx function signatures + correct comments in attrib_handers val_to_int64 + dn tests use cmocka print functions + ldb_match: remove redundant check + add tests for ldb_wildcard_compare + ldb_match: trailing chunk must match end of string + pyldb: catch potential overflow error in py_timestring + ldb: remove some 'if PY3's in tests
    talloc was updated to 2.3.3:

    tdb was updated to version 1.4.4:

    tevent was updated to version 0.11.0:

    sssd was updated to:

    apparmor was updated to:


    Advisory IDSUSE-RU-2022:383-1
    ReleasedTue Feb 15 17:47:36 2022
    SummaryRecommended update for cyrus-sasl
    Typerecommended
    Severitymoderate
    References1194265
    Description:

    This update for cyrus-sasl fixes the following issues:


    Advisory IDSUSE-SU-2022:539-1
    ReleasedMon Feb 21 13:47:51 2022
    SummarySecurity update for systemd
    Typesecurity
    Severitymoderate
    References1191826,1192637,1194178,CVE-2021-3997
    Description:

    This update for systemd fixes the following issues:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2022:692-1
    ReleasedThu Mar 3 15:46:47 2022
    SummaryRecommended update for filesystem
    Typerecommended
    Severitymoderate
    References1190447
    Description:

    This update for filesystem fixes the following issues:


    Advisory IDSUSE-SU-2022:727-1
    ReleasedFri Mar 4 10:39:21 2022
    SummarySecurity update for libeconf, shadow and util-linux
    Typesecurity
    Severitymoderate
    References1188507,1192954,1193632,1194976,CVE-2021-3995,CVE-2021-3996
    Description:

    This security update for libeconf, shadow and util-linux fix the following issues:
    libeconf:


    Issues fixed in libeconf:
    shadow:

    util-linux:


    Advisory IDSUSE-SU-2022:743-1
    ReleasedMon Mar 7 22:08:12 2022
    SummarySecurity update for cyrus-sasl
    Typesecurity
    Severityimportant
    References1194265,1196036,CVE-2022-24407
    Description:

    This update for cyrus-sasl fixes the following issues:


    The following non-security bugs were fixed:


    Advisory IDSUSE-RU-2022:827-1
    ReleasedMon Mar 14 16:06:48 2022
    SummaryRecommended update for trento-premium
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for trento-premium fixes the following issues:
    Release 0.9.1
    Fixed:
    - Add /usr/sbin to the PATH for the execution [\#858](https://github.com/trento-project/trento/pull/858) (@arbulu89) - Associate attached database properly when the database name is resolved [\#854](https://github.com/trento-project/trento/pull/854) (@arbulu89) - Exclude diagnostics service sap systems [\#849](https://github.com/trento-project/trento/pull/849) (@arbulu89)


    Advisory IDSUSE-SU-2022:4167-1
    ReleasedTue Nov 22 12:18:49 2022
    SummarySecurity update for krb5
    Typesecurity
    Severityimportant
    References1205126,CVE-2022-42898
    Description:

    This update for krb5 fixes the following issues:


    SUSE-CU-2022:240-1

    Container Advisory IDSUSE-CU-2022:240-1
    Container Tagstrento/trento-web:0.9.0 , trento/trento-web:0.9.0-rev1.0.1 , trento/trento-web:0.9.0-rev1.0.1-build3.2.2 , trento/trento-web:latest
    Container Release3.2.2
    The following patches have been included in this update:
    Advisory IDSUSE-SU-2019:926-1
    ReleasedWed Apr 10 16:33:12 2019
    SummarySecurity update for tar
    Typesecurity
    Severitymoderate
    References1120610,1130496,CVE-2018-20482,CVE-2019-9923
    Description:

    This update for tar fixes the following issues:
    Security issues fixed:


    Advisory IDSUSE-SU-2021:974-1
    ReleasedMon Mar 29 19:31:27 2021
    SummarySecurity update for tar
    Typesecurity
    Severitylow
    References1181131,CVE-2021-20193
    Description:

    This update for tar fixes the following issues:
    CVE-2021-20193: Memory leak in read_header() in list.c (bsc#1181131)


    Advisory IDSUSE-RU-2021:2193-1
    ReleasedMon Jun 28 18:38:43 2021
    SummaryRecommended update for tar
    Typerecommended
    Severitymoderate
    References1184124
    Description:

    This update for tar fixes the following issues:


    Advisory IDSUSE-RU-2022:471-1
    ReleasedThu Feb 17 09:58:37 2022
    SummaryRecommended update for trento-premium
    Typerecommended
    Severityimportant
    References
    Description:

    This update for trento-premium fixes the following issues:


    Advisory IDSUSE-RU-2022:579-1
    ReleasedMon Feb 28 11:12:24 2022
    SummaryRecommended update for trento-premium
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for trento-premium fixes the following issues:
    Release 0.9.0
    ### Added


    ### Fixed

    ### Closed Issues

    ### Other Changes


    SUSE-CU-2022:111-1

    Container Advisory IDSUSE-CU-2022:111-1
    Container Tagstrento/trento-web:0.8.1 , trento/trento-web:0.8.1-rev1.0.0 , trento/trento-web:0.8.1-rev1.0.0-build150300.2.2.23 , trento/trento-web:latest
    Container Release150300.2.2.23
    The following patches have been included in this update:
    Advisory IDSUSE-OU-2021:4162-1
    ReleasedWed Dec 22 16:28:38 2021
    SummaryFeature update for trento-premium
    Typeoptional
    Severitymoderate
    References
    Description:


    This update ships 'trento-premium' monitoring solution for SLES 4 SAP.


    Advisory IDSUSE-RU-2022:314-1
    ReleasedWed Feb 2 15:01:42 2022
    SummaryRecommended update for trento-premium
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for trento-premium fixes the following issues:
    Release 0.8.1 fixes these issues:


    Release 0.8.0 fixes these issues:


    SUSE-CU-2021:615-1

    Container Advisory IDSUSE-CU-2021:615-1
    Container Tagstrento/trento-web:0.7.1 , trento/trento-web:0.7.1-rev1.0.0 , trento/trento-web:0.7.1-rev1.0.0-build2.2.1 , trento/trento-web:latest
    Container Release2.2.1
    The following patches have been included in this update:
    Advisory IDSUSE-SU-2018:1353-1
    ReleasedThu Jul 19 09:50:32 2018
    SummarySecurity update for e2fsprogs
    Typesecurity
    Severitymoderate
    References1009532,1038194,915402,918346,960273,CVE-2015-0247,CVE-2015-1572
    Description:

    This update for e2fsprogs fixes the following issues:
    Security issues fixed:


    Bug fixes:


    Advisory IDSUSE-RU-2018:1999-1
    ReleasedTue Sep 25 08:20:35 2018
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1071321
    Description:

    This update for zlib provides the following fixes:


    Advisory IDSUSE-RU-2018:2055-1
    ReleasedThu Sep 27 14:30:14 2018
    SummaryRecommended update for openldap2
    Typerecommended
    Severitymoderate
    References1089640
    Description:

    This update for openldap2 provides the following fix:


    Advisory IDSUSE-SU-2018:2182-1
    ReleasedTue Oct 9 11:08:36 2018
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1088279,1102046,1105166,CVE-2018-14404,CVE-2018-14567,CVE-2018-9251
    Description:

    This update for libxml2 fixes the following security issues:


    Advisory IDSUSE-RU-2018:2370-1
    ReleasedMon Oct 22 14:02:01 2018
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1102310,1104531
    Description:

    This update for aaa_base provides the following fixes:


    Advisory IDSUSE-RU-2018:2569-1
    ReleasedFri Nov 2 19:00:18 2018
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1110700
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2018:2607-1
    ReleasedWed Nov 7 15:42:48 2018
    SummaryOptional update for gcc8
    Typerecommended
    Severitylow
    References1084812,1084842,1087550,1094222,1102564
    Description:


    The GNU Compiler GCC 8 is being added to the Development Tools Module by this update.
    The update also supplies gcc8 compatible libstdc++, libgcc_s1 and other gcc derived libraries for the Basesystem module of SUSE Linux Enterprise 15.
    Various optimizers have been improved in GCC 8, several of bugs fixed, quite some new warnings added and the error pin-pointing and fix-suggestions have been greatly improved.
    The GNU Compiler page for GCC 8 contains a summary of all the changes that have happened:
    https://gcc.gnu.org/gcc-8/changes.html
    Also changes needed or common pitfalls when porting software are described on:
    https://gcc.gnu.org/gcc-8/porting_to.html


    Advisory IDSUSE-SU-2018:2825-1
    ReleasedMon Dec 3 15:35:02 2018
    SummarySecurity update for pam
    Typesecurity
    Severityimportant
    References1115640,CVE-2018-17953
    Description:

    This update for pam fixes the following issue:
    Security issue fixed:


    Advisory IDSUSE-SU-2018:2861-1
    ReleasedThu Dec 6 14:32:01 2018
    SummarySecurity update for ncurses
    Typesecurity
    Severityimportant
    References1103320,1115929,CVE-2018-19211
    Description:

    This update for ncurses fixes the following issues:
    Security issue fixed:


    Non-security issue fixed:


    Advisory IDSUSE-RU-2019:44-1
    ReleasedTue Jan 8 13:07:32 2019
    SummaryRecommended update for acl
    Typerecommended
    Severitylow
    References953659
    Description:

    This update for acl fixes the following issues:


    Advisory IDSUSE-SU-2019:247-1
    ReleasedWed Feb 6 07:18:45 2019
    SummarySecurity update for lua53
    Typesecurity
    Severitymoderate
    References1123043,CVE-2019-6706
    Description:

    This update for lua53 fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-RU-2019:369-1
    ReleasedWed Feb 13 14:01:42 2019
    SummaryRecommended update for itstool
    Typerecommended
    Severitymoderate
    References1065270,1111019
    Description:

    This update for itstool and python-libxml2-python fixes the following issues:
    Package: itstool - Updated version to support Python3. (bnc#1111019)
    Package: python-libxml2-python - Fix segfault when parsing invalid data. (bsc#1065270)


    Advisory IDSUSE-SU-2019:571-1
    ReleasedThu Mar 7 18:13:46 2019
    SummarySecurity update for file
    Typesecurity
    Severitymoderate
    References1096974,1096984,1126117,1126118,1126119,CVE-2018-10360,CVE-2019-8905,CVE-2019-8906,CVE-2019-8907
    Description:

    This update for file fixes the following issues:
    The following security vulnerabilities were addressed:


    Advisory IDSUSE-RU-2019:732-1
    ReleasedMon Mar 25 14:10:04 2019
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1088524,1118364,1128246
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-RU-2019:1002-1
    ReleasedWed Apr 24 10:13:34 2019
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1110304,1129576
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-SU-2019:1206-1
    ReleasedFri May 10 14:01:55 2019
    SummarySecurity update for bzip2
    Typesecurity
    Severitylow
    References985657,CVE-2016-3189
    Description:

    This update for bzip2 fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-RU-2019:1312-1
    ReleasedWed May 22 12:19:12 2019
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1096191
    Description:

    This update for aaa_base fixes the following issue:
    * Shell detection in /etc/profile and /etc/bash.bashrc was broken within AppArmor-confined containers (bsc#1096191)


    Advisory IDSUSE-SU-2019:1368-1
    ReleasedTue May 28 13:15:38 2019
    SummaryRecommended update for sles12sp3-docker-image, sles12sp4-image, system-user-root
    Typesecurity
    Severityimportant
    References1134524,CVE-2019-5021
    Description:

    This update for sles12sp3-docker-image, sles12sp4-image, system-user-root fixes the following issues:


    Advisory IDSUSE-RU-2019:1484-1
    ReleasedThu Jun 13 07:46:46 2019
    SummaryRecommended update for e2fsprogs
    Typerecommended
    Severitymoderate
    References1128383
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-SU-2019:1486-1
    ReleasedThu Jun 13 09:40:24 2019
    SummarySecurity update for elfutils
    Typesecurity
    Severitymoderate
    References1033084,1033085,1033086,1033087,1033088,1033089,1033090,1106390,1107066,1107067,1111973,1112723,1112726,1123685,1125007,CVE-2017-7607,CVE-2017-7608,CVE-2017-7609,CVE-2017-7610,CVE-2017-7611,CVE-2017-7612,CVE-2017-7613,CVE-2018-16062,CVE-2018-16402,CVE-2018-16403,CVE-2018-18310,CVE-2018-18520,CVE-2018-18521,CVE-2019-7150,CVE-2019-7665
    Description:

    This update for elfutils fixes the following issues:
    Security issues fixed:


    Advisory IDSUSE-RU-2019:1631-1
    ReleasedFri Jun 21 11:17:21 2019
    SummaryRecommended update for xz
    Typerecommended
    Severitylow
    References1135709
    Description:

    This update for xz fixes the following issues:
    Add SUSE-Public-Domain licence as some parts of xz utils (liblzma, xz, xzdec, lzmadec, documentation, translated messages, tests, debug, extra directory) are in public domain licence [bsc#1135709]


    Advisory IDSUSE-RU-2019:1635-1
    ReleasedFri Jun 21 12:45:53 2019
    SummaryRecommended update for krb5
    Typerecommended
    Severitymoderate
    References1134217
    Description:

    This update for krb5 provides the following fix:



    Advisory IDSUSE-RU-2019:1700-1
    ReleasedTue Jun 25 13:19:21 2019
    SummarySecurity update for libssh
    Typerecommended
    Severitymoderate
    References1134193
    Description:

    This update for libssh fixes the following issue:
    Issue addressed:


    Advisory IDSUSE-RU-2019:1808-1
    ReleasedWed Jul 10 13:16:29 2019
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severitymoderate
    References1133808
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-SU-2019:1846-1
    ReleasedMon Jul 15 11:36:33 2019
    SummarySecurity update for bzip2
    Typesecurity
    Severityimportant
    References1139083,CVE-2019-12900
    Description:

    This update for bzip2 fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-SU-2019:1971-1
    ReleasedThu Jul 25 14:58:52 2019
    SummarySecurity update for libgcrypt
    Typesecurity
    Severitymoderate
    References1138939,CVE-2019-12904
    Description:

    This update for libgcrypt fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-RU-2019:1994-1
    ReleasedFri Jul 26 16:12:05 2019
    SummaryRecommended update for libxml2
    Typerecommended
    Severitymoderate
    References1135123
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-SU-2019:2004-1
    ReleasedMon Jul 29 13:01:59 2019
    SummarySecurity update for bzip2
    Typesecurity
    Severityimportant
    References1139083,CVE-2019-12900
    Description:

    This update for bzip2 fixes the following issues:


    Advisory IDSUSE-RU-2019:2097-1
    ReleasedFri Aug 9 09:31:17 2019
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severityimportant
    References1097073
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-RU-2019:2134-1
    ReleasedWed Aug 14 11:54:56 2019
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1136717,1137624,1141059,SLE-5807
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2019:2188-1
    ReleasedWed Aug 21 10:10:29 2019
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1140647
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-RU-2019:2361-1
    ReleasedThu Sep 12 07:54:54 2019
    SummaryRecommended update for krb5
    Typerecommended
    Severitymoderate
    References1081947,1144047
    Description:

    This update for krb5 contains the following fixes:


    Advisory IDSUSE-SU-2019:2395-1
    ReleasedWed Sep 18 08:31:38 2019
    SummarySecurity update for openldap2
    Typesecurity
    Severitymoderate
    References1073313,1111388,1114845,1143194,1143273,CVE-2017-17740,CVE-2019-13057,CVE-2019-13565
    Description:

    This update for openldap2 fixes the following issues:
    Security issue fixed:


    Non-security issues fixed:


    Advisory IDSUSE-RU-2019:2423-1
    ReleasedFri Sep 20 16:41:45 2019
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1146866,SLE-9132
    Description:

    This update for aaa_base fixes the following issues:
    Added sysctl.d/51-network.conf to tighten network security (bsc#1146866) (jira#SLE-9132)
    Following settings have been tightened (and set to 0):


    Advisory IDSUSE-RU-2019:2676-1
    ReleasedTue Oct 15 21:06:54 2019
    SummaryRecommended update for e2fsprogs
    Typerecommended
    Severitymoderate
    References1145716,1152101,CVE-2019-5094
    Description:

    This update for e2fsprogs fixes the following issues:
    Security issue fixed:


    Non-security issue fixed:


    Advisory IDSUSE-RU-2019:2870-1
    ReleasedThu Oct 31 08:09:14 2019
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1051143,1138869,1151023
    Description:

    This update for aaa_base provides the following fixes:


    Advisory IDSUSE-SU-2019:2997-1
    ReleasedMon Nov 18 15:16:38 2019
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1103320,1154036,1154037,CVE-2019-17594,CVE-2019-17595
    Description:

    This update for ncurses fixes the following issues:
    Security issues fixed:


    Non-security issue fixed:


    Advisory IDSUSE-SU-2019:3059-1
    ReleasedMon Nov 25 17:33:07 2019
    SummarySecurity update for cpio
    Typesecurity
    Severitymoderate
    References1155199,CVE-2019-14866
    Description:

    This update for cpio fixes the following issues:


    Advisory IDSUSE-SU-2019:3061-1
    ReleasedMon Nov 25 17:34:22 2019
    SummarySecurity update for gcc9
    Typesecurity
    Severitymoderate
    References1114592,1135254,1141897,1142649,1142654,1148517,1149145,CVE-2019-14250,CVE-2019-15847,SLE-6533,SLE-6536
    Description:



    This update includes the GNU Compiler Collection 9.
    A full changelog is provided by the GCC team on:
    https://www.gnu.org/software/gcc/gcc-9/changes.html

    The base system compiler libraries libgcc_s1, libstdc++6 and others are now built by the gcc 9 packages.
    To use it, install 'gcc9' or 'gcc9-c++' or other compiler brands and use CC=gcc-9 / CXX=g++-9 during configuration for using it.

    Security issues fixed:


    Non-security issues fixed:


    Advisory IDSUSE-SU-2019:3086-1
    ReleasedThu Nov 28 10:02:24 2019
    SummarySecurity update for libidn2
    Typesecurity
    Severitymoderate
    References1154884,1154887,CVE-2019-12290,CVE-2019-18224
    Description:

    This update for libidn2 to version 2.2.0 fixes the following issues:


    Advisory IDSUSE-SU-2019:3087-1
    ReleasedThu Nov 28 10:03:00 2019
    SummarySecurity update for libxml2
    Typesecurity
    Severitylow
    References1123919
    Description:

    This update for libxml2 doesn't fix any additional security issues, but correct its rpm changelog to reflect all CVEs that have been fixed over the past.


    Advisory IDSUSE-RU-2019:3118-1
    ReleasedFri Nov 29 14:41:35 2019
    SummaryRecommended update for e2fsprogs
    Typerecommended
    Severitymoderate
    References1154295
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-RU-2019:3166-1
    ReleasedWed Dec 4 11:24:42 2019
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1007715,1084934,1157278
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2019:3267-1
    ReleasedWed Dec 11 11:19:53 2019
    SummarySecurity update for libssh
    Typesecurity
    Severityimportant
    References1158095,CVE-2019-14889
    Description:

    This update for libssh fixes the following issues:


    Advisory IDSUSE-SU-2019:3392-1
    ReleasedFri Dec 27 13:33:29 2019
    SummarySecurity update for libgcrypt
    Typesecurity
    Severitymoderate
    References1148987,1155338,1155339,CVE-2019-13627
    Description:

    This update for libgcrypt fixes the following issues:
    Security issues fixed:


    Bug fixes:


    Advisory IDSUSE-SU-2020:129-1
    ReleasedMon Jan 20 09:21:13 2020
    SummarySecurity update for libssh
    Typesecurity
    Severityimportant
    References1158095,CVE-2019-14889
    Description:

    This update for libssh fixes the following issues:


    Advisory IDSUSE-RU-2020:256-1
    ReleasedWed Jan 29 09:39:17 2020
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1157794,1160970
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2020:265-1
    ReleasedThu Jan 30 14:05:34 2020
    SummarySecurity update for e2fsprogs
    Typesecurity
    Severitymoderate
    References1160571,CVE-2019-5188
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-RU-2020:339-1
    ReleasedThu Feb 6 13:03:22 2020
    SummaryRecommended update for openldap2
    Typerecommended
    Severitylow
    References1158921
    Description:

    This update for openldap2 provides the following fix:


    Advisory IDSUSE-RU-2020:451-1
    ReleasedTue Feb 25 10:50:35 2020
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severitymoderate
    References1155337,1161215,1161216,1161218,1161219,1161220
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-RU-2020:480-1
    ReleasedTue Feb 25 17:38:22 2020
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1160735
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-RU-2020:525-1
    ReleasedFri Feb 28 11:49:36 2020
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1164562
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2020:597-1
    ReleasedThu Mar 5 15:24:09 2020
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severitymoderate
    References1164950
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-RU-2020:633-1
    ReleasedTue Mar 10 16:23:08 2020
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1139939,1151023
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-RU-2020:689-1
    ReleasedFri Mar 13 17:09:01 2020
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1166510
    Description:


    This update for PAM fixes the following issue:


    Advisory IDSUSE-RU-2020:846-1
    ReleasedThu Apr 2 07:24:07 2020
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severitymoderate
    References1164950,1166748,1167674
    Description:

    This update for libgcrypt fixes the following issues:


    * Set up global_init as the constructor function: * Relax the entropy requirements on selftest. This is especially important for virtual machines to boot properly before the RNG is available:


    Advisory IDSUSE-RU-2020:917-1
    ReleasedFri Apr 3 15:02:25 2020
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1166510
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2020:948-1
    ReleasedWed Apr 8 07:44:21 2020
    SummarySecurity update for gmp, gnutls, libnettle
    Typesecurity
    Severitymoderate
    References1152692,1155327,1166881,1168345,CVE-2020-11501
    Description:

    This update for gmp, gnutls, libnettle fixes the following issues:
    Security issue fixed:


    FIPS related bugfixes:


    Advisory IDSUSE-RU-2020:961-1
    ReleasedWed Apr 8 13:34:06 2020
    SummaryRecommended update for e2fsprogs
    Typerecommended
    Severitymoderate
    References1160979
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-SU-2020:967-1
    ReleasedThu Apr 9 11:41:53 2020
    SummarySecurity update for libssh
    Typesecurity
    Severitymoderate
    References1168699,CVE-2020-1730
    Description:

    This update for libssh fixes the following issues:


    Advisory IDSUSE-RU-2020:1063-1
    ReleasedWed Apr 22 10:46:50 2020
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severitymoderate
    References1165539,1169569
    Description:

    This update for libgcrypt fixes the following issues:
    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-RU-2020:1214-1
    ReleasedThu May 7 11:20:34 2020
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severitymoderate
    References1169944
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-SU-2020:1219-1
    ReleasedThu May 7 17:10:42 2020
    SummarySecurity update for openldap2
    Typesecurity
    Severityimportant
    References1170771,CVE-2020-12243
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-RU-2020:1226-1
    ReleasedFri May 8 10:51:05 2020
    SummaryRecommended update for gcc9
    Typerecommended
    Severitymoderate
    References1149995,1152590,1167898
    Description:

    This update for gcc9 fixes the following issues:
    This update ships the GCC 9.3 release.


    Advisory IDSUSE-SU-2020:1294-1
    ReleasedMon May 18 07:38:36 2020
    SummarySecurity update for file
    Typesecurity
    Severitymoderate
    References1154661,1169512,CVE-2019-18218
    Description:

    This update for file fixes the following issues:
    Security issues fixed:


    Non-security issue fixed:


    Advisory IDSUSE-SU-2020:1299-1
    ReleasedMon May 18 07:43:21 2020
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1159928,1161517,1161521,CVE-2019-19956,CVE-2019-20388,CVE-2020-7595
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2020:1328-1
    ReleasedMon May 18 17:16:04 2020
    SummaryRecommended update for grep
    Typerecommended
    Severitymoderate
    References1155271
    Description:

    This update for grep fixes the following issues:


    Advisory IDSUSE-RU-2020:1361-1
    ReleasedThu May 21 09:31:18 2020
    SummaryRecommended update for libgcrypt
    Typerecommended
    Severitymoderate
    References1171872
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-RU-2020:1404-1
    ReleasedMon May 25 15:32:34 2020
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1138793,1166260
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2020:1506-1
    ReleasedFri May 29 17:22:11 2020
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1087982,1170527
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2020:1532-1
    ReleasedThu Jun 4 10:16:12 2020
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1172021,CVE-2019-19956
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-SU-2020:1733-1
    ReleasedWed Jun 24 09:43:36 2020
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1173026,1173027,CVE-2020-8169,CVE-2020-8177
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2020:1759-1
    ReleasedThu Jun 25 18:44:37 2020
    SummaryRecommended update for krb5
    Typerecommended
    Severitymoderate
    References1169357
    Description:

    This update for krb5 fixes the following issue:


    Advisory IDSUSE-SU-2020:1396-1
    ReleasedFri Jul 3 12:33:05 2020
    SummarySecurity update for zstd
    Typesecurity
    Severitymoderate
    References1082318,1133297
    Description:

    This update for zstd fixes the following issues:


    Advisory IDSUSE-SU-2020:1856-1
    ReleasedMon Jul 6 17:05:51 2020
    SummarySecurity update for openldap2
    Typesecurity
    Severityimportant
    References1172698,1172704,CVE-2020-8023
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-RU-2020:1954-1
    ReleasedSat Jul 18 03:07:15 2020
    SummaryRecommended update for cracklib
    Typerecommended
    Severitymoderate
    References1172396
    Description:

    This update for cracklib fixes the following issues:


    Advisory IDSUSE-RU-2020:2083-1
    ReleasedThu Jul 30 10:27:59 2020
    SummaryRecommended update for diffutils
    Typerecommended
    Severitymoderate
    References1156913
    Description:

    This update for diffutils fixes the following issue:


    Advisory IDSUSE-RU-2020:2384-1
    ReleasedSat Aug 29 00:57:13 2020
    SummaryRecommended update for e2fsprogs
    Typerecommended
    Severitylow
    References1170964
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-RU-2020:2420-1
    ReleasedTue Sep 1 13:48:35 2020
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1174551,1174736
    Description:

    This update for zlib provides the following fixes:


    Advisory IDSUSE-SU-2020:2445-1
    ReleasedWed Sep 2 09:33:02 2020
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1175109,CVE-2020-8231
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-SU-2020:2581-1
    ReleasedWed Sep 9 13:07:07 2020
    SummarySecurity update for openldap2
    Typesecurity
    Severitymoderate
    References1174154,CVE-2020-15719
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-SU-2020:2612-1
    ReleasedFri Sep 11 11:18:01 2020
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1176179,CVE-2020-24977
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2020:2651-1
    ReleasedWed Sep 16 14:42:55 2020
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1175811,1175830,1175831
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2020:2704-1
    ReleasedTue Sep 22 15:06:36 2020
    SummaryRecommended update for krb5
    Typerecommended
    Severitymoderate
    References1174079
    Description:

    This update for krb5 fixes the following issue:


    Advisory IDSUSE-SU-2020:2712-1
    ReleasedTue Sep 22 17:08:03 2020
    SummarySecurity update for openldap2
    Typesecurity
    Severitymoderate
    References1175568,CVE-2020-8027
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-RU-2020:2852-1
    ReleasedFri Oct 2 16:55:39 2020
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1173470,1175844
    Description:

    This update for openssl-1_1 fixes the following issues:
    FIPS:


    Advisory IDSUSE-RU-2020:2869-1
    ReleasedTue Oct 6 16:13:20 2020
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1011548,1153943,1153946,1161239,1171762
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-RU-2020:2893-1
    ReleasedMon Oct 12 14:14:55 2020
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1177479
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-SU-2020:2914-1
    ReleasedTue Oct 13 17:25:20 2020
    SummarySecurity update for bind
    Typesecurity
    Severitymoderate
    References1100369,1109160,1118367,1118368,1128220,1156205,1157051,1161168,1170667,1170713,1171313,1171740,1172958,1173307,1173311,1173983,1175443,1176092,1176674,906079,CVE-2017-3136,CVE-2018-5741,CVE-2019-6477,CVE-2020-8616,CVE-2020-8617,CVE-2020-8618,CVE-2020-8619,CVE-2020-8620,CVE-2020-8621,CVE-2020-8622,CVE-2020-8623,CVE-2020-8624
    Description:

    This update for bind fixes the following issues:
    BIND was upgraded to version 9.16.6:
    Note:


    Fixing security issues:

    Other issues fixed:


    Advisory IDSUSE-SU-2020:2947-1
    ReleasedFri Oct 16 15:23:07 2020
    SummarySecurity update for gcc10, nvptx-tools
    Typesecurity
    Severitymoderate
    References1172798,1172846,1173972,1174753,1174817,1175168,CVE-2020-13844
    Description:

    This update for gcc10, nvptx-tools fixes the following issues:
    This update provides the GCC10 compiler suite and runtime libraries.
    The base SUSE Linux Enterprise libraries libgcc_s1, libstdc++6 are replaced by the gcc10 variants.
    The new compiler variants are available with '-10' suffix, you can specify them via:
    CC=gcc-10 CXX=g++-10
    or similar commands.
    For a detailed changelog check out https://gcc.gnu.org/gcc-10/changes.html
    Changes in nvptx-tools:


    Advisory IDSUSE-RU-2020:2983-1
    ReleasedWed Oct 21 15:03:03 2020
    SummaryRecommended update for file
    Typerecommended
    Severitymoderate
    References1176123
    Description:

    This update for file fixes the following issues:


    Advisory IDSUSE-SU-2020:3313-1
    ReleasedThu Nov 12 16:07:37 2020
    SummarySecurity update for openldap2
    Typesecurity
    Severityimportant
    References1178387,CVE-2020-25692
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-SU-2020:3377-1
    ReleasedThu Nov 19 09:29:32 2020
    SummarySecurity update for krb5
    Typesecurity
    Severitymoderate
    References1178512,CVE-2020-28196
    Description:

    This update for krb5 fixes the following security issue:


    Advisory IDSUSE-RU-2020:3462-1
    ReleasedFri Nov 20 13:14:35 2020
    SummaryRecommended update for pam and sudo
    Typerecommended
    Severitymoderate
    References1174593,1177858,1178727
    Description:

    This update for pam and sudo fixes the following issue:
    pam:


    sudo:


    Advisory IDSUSE-RU-2020:3620-1
    ReleasedThu Dec 3 17:03:55 2020
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2020:3703-1
    ReleasedMon Dec 7 20:17:32 2020
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1179431
    Description:

    This update for aaa_base fixes the following issue:


    Advisory IDSUSE-SU-2020:3721-1
    ReleasedWed Dec 9 13:36:46 2020
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severityimportant
    References1179491,CVE-2020-1971
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-SU-2020:3735-1
    ReleasedWed Dec 9 18:19:24 2020
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1179398,1179399,1179593,CVE-2020-8284,CVE-2020-8285,CVE-2020-8286
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2020:3942-1
    ReleasedTue Dec 29 12:22:01 2020
    SummaryRecommended update for libidn2
    Typerecommended
    Severitymoderate
    References1180138
    Description:

    This update for libidn2 fixes the following issues:


    Advisory IDSUSE-RU-2020:3943-1
    ReleasedTue Dec 29 12:24:45 2020
    SummaryRecommended update for libxml2
    Typerecommended
    Severitymoderate
    References1178823
    Description:

    This update for libxml2 fixes the following issues:
    Avoid quadratic checking of identity-constraints, speeding up XML validation (bsc#1178823)


    Advisory IDSUSE-SU-2021:129-1
    ReleasedThu Jan 14 12:26:15 2021
    SummarySecurity update for openldap2
    Typesecurity
    Severitymoderate
    References1178909,1179503,CVE-2020-25709,CVE-2020-25710
    Description:

    This update for openldap2 fixes the following issues:
    Security issues fixed:


    Non-security issue fixed:


    Advisory IDSUSE-SU-2021:197-1
    ReleasedFri Jan 22 15:17:42 2021
    SummarySecurity update for permissions
    Typesecurity
    Severitymoderate
    References1171883,CVE-2020-8025
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-RU-2021:220-1
    ReleasedTue Jan 26 14:00:51 2021
    SummaryRecommended update for keyutils
    Typerecommended
    Severitymoderate
    References1180603
    Description:

    This update for keyutils fixes the following issues:


    Advisory IDSUSE-RU-2021:293-1
    ReleasedWed Feb 3 12:52:34 2021
    SummaryRecommended update for gmp
    Typerecommended
    Severitymoderate
    References1180603
    Description:

    This update for gmp fixes the following issues:


    Advisory IDSUSE-OU-2021:339-1
    ReleasedMon Feb 8 13:16:07 2021
    SummaryOptional update for pam
    Typeoptional
    Severitylow
    References
    Description:

    This update for pam fixes the following issues:


    This patch is optional to be installed - it doesn't fix any bugs.


    Advisory IDSUSE-SU-2021:723-1
    ReleasedMon Mar 8 16:45:27 2021
    SummarySecurity update for openldap2
    Typesecurity
    Severityimportant
    References1182279,1182408,1182411,1182412,1182413,1182415,1182416,1182417,1182418,1182419,1182420,CVE-2020-36221,CVE-2020-36222,CVE-2020-36223,CVE-2020-36224,CVE-2020-36225,CVE-2020-36226,CVE-2020-36227,CVE-2020-36228,CVE-2020-36229,CVE-2020-36230,CVE-2021-27212
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-SU-2021:754-1
    ReleasedTue Mar 9 17:10:49 2021
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severitymoderate
    References1182331,1182333,1182959,CVE-2021-23840,CVE-2021-23841
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2021:786-1
    ReleasedMon Mar 15 11:19:23 2021
    SummaryRecommended update for zlib
    Typerecommended
    Severitymoderate
    References1176201
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2021:924-1
    ReleasedTue Mar 23 10:00:49 2021
    SummaryRecommended update for filesystem
    Typerecommended
    Severitymoderate
    References1078466,1146705,1175519,1178775,1180020,1180083,1180596,1181011,1181831,1183094
    Description:

    This update for filesystem the following issues:


    This update for systemd fixes the following issues:


    Advisory IDSUSE-SU-2021:930-1
    ReleasedWed Mar 24 12:09:23 2021
    SummarySecurity update for nghttp2
    Typesecurity
    Severityimportant
    References1172442,1181358,CVE-2020-11080
    Description:

    This update for nghttp2 fixes the following issues:


    Advisory IDSUSE-SU-2021:948-1
    ReleasedWed Mar 24 14:31:34 2021
    SummarySecurity update for zstd
    Typesecurity
    Severitymoderate
    References1183370,1183371,CVE-2021-24031,CVE-2021-24032
    Description:

    This update for zstd fixes the following issues:


    Advisory IDSUSE-SU-2021:955-1
    ReleasedThu Mar 25 16:11:48 2021
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severityimportant
    References1183852,CVE-2021-3449
    Description:

    This update for openssl-1_1 fixes the security issue:


    Advisory IDSUSE-RU-2021:1004-1
    ReleasedThu Apr 1 15:07:09 2021
    SummaryRecommended update for libcap
    Typerecommended
    Severitymoderate
    References1180073
    Description:

    This update for libcap fixes the following issues:


    Advisory IDSUSE-SU-2021:1006-1
    ReleasedThu Apr 1 17:44:57 2021
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1183933,1183934,CVE-2021-22876,CVE-2021-22890
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2021:1141-1
    ReleasedMon Apr 12 13:13:36 2021
    SummaryRecommended update for openldap2
    Typerecommended
    Severitylow
    References1182791
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-OU-2021:1296-1
    ReleasedWed Apr 21 14:09:28 2021
    SummaryOptional update for e2fsprogs
    Typeoptional
    Severitylow
    References1183791
    Description:

    This update for e2fsprogs fixes the following issues:


    This patch does not fix any user visible issues and is therefore optional to install.


    Advisory IDSUSE-RU-2021:1407-1
    ReleasedWed Apr 28 15:49:02 2021
    SummaryRecommended update for libcap
    Typerecommended
    Severityimportant
    References1184690
    Description:

    This update for libcap fixes the following issues:


    Advisory IDSUSE-SU-2021:1466-1
    ReleasedTue May 4 08:30:57 2021
    SummarySecurity update for permissions
    Typesecurity
    Severityimportant
    References1182899
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-SU-2021:1523-1
    ReleasedWed May 5 18:24:20 2021
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1185408,1185409,1185410,CVE-2021-3516,CVE-2021-3517,CVE-2021-3518
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2021:1526-1
    ReleasedThu May 6 08:57:30 2021
    SummaryRecommended update for bash
    Typerecommended
    Severityimportant
    References1183064
    Description:

    This update for bash fixes the following issues:


    Advisory IDSUSE-RU-2021:1528-1
    ReleasedThu May 6 15:31:23 2021
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1161276
    Description:

    This update for openssl-1_1 fixes the following issues:


    Advisory IDSUSE-RU-2021:1543-1
    ReleasedFri May 7 15:16:33 2021
    SummaryRecommended update for patterns-microos
    Typerecommended
    Severitymoderate
    References1184435
    Description:

    This update for patterns-microos provides the following fix:


    Advisory IDSUSE-RU-2021:1565-1
    ReleasedTue May 11 14:20:04 2021
    SummaryRecommended update for krb5
    Typerecommended
    Severitymoderate
    References1185163
    Description:

    This update for krb5 fixes the following issues:


    Advisory IDSUSE-RU-2021:1612-1
    ReleasedFri May 14 17:09:39 2021
    SummaryRecommended update for openldap2
    Typerecommended
    Severitymoderate
    References1184614
    Description:

    This update for openldap2 fixes the following issue:


    Advisory IDSUSE-RU-2021:1643-1
    ReleasedWed May 19 13:51:48 2021
    SummaryRecommended update for pam
    Typerecommended
    Severityimportant
    References1181443,1184358,1185562
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2021:1654-1
    ReleasedWed May 19 16:43:36 2021
    SummarySecurity update for libxml2
    Typesecurity
    Severityimportant
    References1185408,1185409,1185410,1185698,CVE-2021-3516,CVE-2021-3517,CVE-2021-3518,CVE-2021-3537
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-SU-2021:1762-1
    ReleasedWed May 26 12:30:01 2021
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1186114,CVE-2021-22898
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-SU-2021:1825-1
    ReleasedTue Jun 1 16:24:01 2021
    SummarySecurity update for lz4
    Typesecurity
    Severityimportant
    References1185438,CVE-2021-3520
    Description:

    This update for lz4 fixes the following issues:


    Advisory IDSUSE-RU-2021:1861-1
    ReleasedFri Jun 4 09:59:40 2021
    SummaryRecommended update for gcc10
    Typerecommended
    Severitymoderate
    References1029961,1106014,1178577,1178624,1178675,1182016
    Description:

    This update for gcc10 fixes the following issues:


    Advisory IDSUSE-SU-2021:1917-1
    ReleasedWed Jun 9 14:48:05 2021
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1186015,CVE-2021-3541
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2021:1937-1
    ReleasedThu Jun 10 10:47:09 2021
    SummaryRecommended update for nghttp2
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for nghttp2 fixes the following issue:


    Advisory IDSUSE-RU-2021:1972-1
    ReleasedTue Jun 15 09:04:10 2021
    SummaryRecommended update for sles15-image
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for sles15-image fixes the following issues:


    Advisory IDSUSE-SU-2021:2157-1
    ReleasedThu Jun 24 15:40:14 2021
    SummarySecurity update for libgcrypt
    Typesecurity
    Severityimportant
    References1187212,CVE-2021-33560
    Description:

    This update for libgcrypt fixes the following issues:


    Advisory IDSUSE-RU-2021:2173-1
    ReleasedMon Jun 28 14:59:45 2021
    SummaryRecommended update for automake
    Typerecommended
    Severitymoderate
    References1040589,1047218,1182604,1185540,1186049
    Description:

    This update for automake fixes the following issues:


    This update for pcre fixes the following issues:

    This update for brp-check-suse fixes the following issues:


    Advisory IDSUSE-SU-2021:2196-1
    ReleasedTue Jun 29 09:41:39 2021
    SummarySecurity update for lua53
    Typesecurity
    Severitymoderate
    References1175448,1175449,CVE-2020-24370,CVE-2020-24371
    Description:

    This update for lua53 fixes the following issues:
    Update to version 5.3.6:


    Advisory IDSUSE-RU-2021:2205-1
    ReleasedWed Jun 30 09:17:41 2021
    SummaryRecommended update for openldap2
    Typerecommended
    Severityimportant
    References1187210
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-RU-2021:2316-1
    ReleasedWed Jul 14 13:49:55 2021
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1185807,1185828,1185958,1186411,1187154,1187292
    Description:

    This update for systemd fixes the following issues:




    Advisory IDSUSE-RU-2021:2399-1
    ReleasedMon Jul 19 19:06:22 2021
    SummaryRecommended update for release packages
    Typerecommended
    Severitymoderate
    References1099521
    Description:

    This update for the release packages provides the following fix:


    Advisory IDSUSE-SU-2021:2410-1
    ReleasedTue Jul 20 14:41:26 2021
    SummarySecurity update for systemd
    Typesecurity
    Severityimportant
    References1188063,CVE-2021-33910
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-SU-2021:2439-1
    ReleasedWed Jul 21 13:46:48 2021
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1188217,1188218,1188219,1188220,CVE-2021-22922,CVE-2021-22923,CVE-2021-22924,CVE-2021-22925
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-SU-2021:2689-1
    ReleasedMon Aug 16 10:54:52 2021
    SummarySecurity update for cpio
    Typesecurity
    Severityimportant
    References1189206,CVE-2021-38185
    Description:

    This update for cpio fixes the following issues:
    It was possible to trigger Remote code execution due to a integer overflow (CVE-2021-38185, bsc#1189206)


    Advisory IDSUSE-RU-2021:2763-1
    ReleasedTue Aug 17 17:16:22 2021
    SummaryRecommended update for cpio
    Typerecommended
    Severitycritical
    References1189465
    Description:

    This update for cpio fixes the following issues:


    Advisory IDSUSE-RU-2021:2780-1
    ReleasedThu Aug 19 16:09:15 2021
    SummaryRecommended update for cpio
    Typerecommended
    Severitycritical
    References1189465,CVE-2021-38185
    Description:

    This update for cpio fixes the following issues:


    Advisory IDSUSE-RU-2021:2786-1
    ReleasedFri Aug 20 02:02:23 2021
    SummaryRecommended update for bash
    Typerecommended
    Severityimportant
    References1057452,1188287
    Description:

    This update for bash fixes the following issues:


    Advisory IDSUSE-SU-2021:2800-1
    ReleasedFri Aug 20 10:43:04 2021
    SummarySecurity update for krb5
    Typesecurity
    Severityimportant
    References1188571,CVE-2021-36222
    Description:

    This update for krb5 fixes the following issues:


    Advisory IDSUSE-RU-2021:3013-1
    ReleasedThu Sep 9 16:55:40 2021
    SummaryRecommended update for patterns-base, patterns-server-enterprise, sles15-image
    Typerecommended
    Severitymoderate
    References1183154,1189550
    Description:

    This update for patterns-base, patterns-server-enterprise, sles15-image fixes the following issues: