SUSE Container Update Advisory: ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2023:2746-1 Container Tags : suse/sle-micro-rancher/5.2:latest Container Release : 7.5.186 Severity : moderate Type : recommended References : 1176160 1201840 1204538 CVE-2020-14387 CVE-2022-29154 ----------------------------------------------------------------- The container was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-RU-2023:3370-1 Released: Tue Aug 22 11:48:47 2023 Summary: Recommended update for rsync Type: recommended Severity: moderate References: 1176160,1201840,1204538,CVE-2020-14387,CVE-2022-29154 This update for rsync fixes the following issues: - Update to version 3.2.3 (jsc#SLE-21252, jsc#PED-3146) - Add support for using --atimes to preserve atime of files in destination sync (jsc#PED-3145) - Remove SuSEfirewall2 service as this was replaced by firewalld (which already provides a rsyncd service). - Fix --delay-updates never updates after interruption (bsc#1204538) - Arbitrary file write vulnerability via do_server_recv function (bsc#1201840, CVE-2022-29154) - rsync-ssl: Verify the hostname in the certificate when using openssl. (bsc#1176160, CVE-2020-14387) The following package changes have been done: - rsync-3.2.3-150000.4.23.2 updated