Container summary for


SUSE-CU-2023:3915-1

Container Advisory IDSUSE-CU-2023:3915-1
Container Tagscaasp/v4/cilium:1.6.6 , caasp/v4/cilium:1.6.6-rev6 , caasp/v4/cilium:1.6.6-rev6-build3.17.1
Container Release3.17.1
The following patches have been included in this update:
Advisory IDSUSE-RU-2022:337-1
ReleasedFri Feb 4 10:24:28 2022
SummaryRecommended update for libzypp
Typerecommended
Severityimportant
References1193007,1194597,1194898
Description:

This update for libzypp fixes the following issues:


Advisory IDSUSE-RU-2022:473-1
ReleasedThu Feb 17 10:29:42 2022
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1195326
Description:

This update for libzypp, zypper fixes the following issues:


Advisory IDSUSE-SU-2022:498-1
ReleasedFri Feb 18 10:46:56 2022
SummarySecurity update for expat
Typesecurity
Severityimportant
References1195054,1195217,CVE-2022-23852,CVE-2022-23990
Description:

This update for expat fixes the following issues:


Advisory IDSUSE-RU-2022:511-1
ReleasedFri Feb 18 12:41:53 2022
SummaryRecommended update for coreutils
Typerecommended
Severitymoderate
References1082318,1189152
Description:

This update for coreutils fixes the following issues:


Advisory IDSUSE-RU-2022:523-1
ReleasedFri Feb 18 12:49:09 2022
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1193759,1193841
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2022:674-1
ReleasedWed Mar 2 13:24:38 2022
SummaryRecommended update for yast2-network
Typerecommended
Severitymoderate
References1187512
Description:

This update for yast2-network fixes the following issues:


Advisory IDSUSE-RU-2022:692-1
ReleasedThu Mar 3 15:46:47 2022
SummaryRecommended update for filesystem
Typerecommended
Severitymoderate
References1190447
Description:

This update for filesystem fixes the following issues:


Advisory IDSUSE-SU-2022:702-1
ReleasedThu Mar 3 18:22:59 2022
SummarySecurity update for cyrus-sasl
Typesecurity
Severityimportant
References1196036,CVE-2022-24407
Description:

This update for cyrus-sasl fixes the following issues:


Advisory IDSUSE-SU-2022:713-1
ReleasedFri Mar 4 09:34:17 2022
SummarySecurity update for expat
Typesecurity
Severityimportant
References1196025,1196026,1196168,1196169,1196171,CVE-2022-25235,CVE-2022-25236,CVE-2022-25313,CVE-2022-25314,CVE-2022-25315
Description:

This update for expat fixes the following issues:


Advisory IDSUSE-RU-2022:787-1
ReleasedThu Mar 10 11:20:13 2022
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References
Description:

This update for openldap2 fixes the following issue:


Advisory IDSUSE-RU-2022:789-1
ReleasedThu Mar 10 11:22:05 2022
SummaryRecommended update for update-alternatives
Typerecommended
Severitymoderate
References1195654
Description:

This update for update-alternatives fixes the following issues:


Advisory IDSUSE-RU-2022:808-1
ReleasedFri Mar 11 06:07:58 2022
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1195468
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-SU-2022:823-1
ReleasedMon Mar 14 15:16:37 2022
SummarySecurity update for protobuf
Typesecurity
Severitymoderate
References1195258,CVE-2021-22570
Description:

This update for protobuf fixes the following issues:


Advisory IDSUSE-SU-2022:832-1
ReleasedMon Mar 14 17:27:03 2022
SummarySecurity update for glibc
Typesecurity
Severityimportant
References1193625,1194640,1194768,1194770,1195560,CVE-2015-8985,CVE-2021-3999,CVE-2022-23218,CVE-2022-23219
Description:


glibc was updated to fix the following issues:
Security issues fixed:


Also the following bug was fixed:


Advisory IDSUSE-SU-2022:844-1
ReleasedTue Mar 15 11:33:57 2022
SummarySecurity update for expat
Typesecurity
Severityimportant
References1196025,1196784,CVE-2022-25236
Description:

This update for expat fixes the following issues:


Advisory IDSUSE-SU-2022:845-1
ReleasedTue Mar 15 11:40:52 2022
SummarySecurity update for chrony
Typesecurity
Severitymoderate
References1099272,1115529,1128846,1162964,1172113,1173277,1174075,1174911,1180689,1181826,1187906,1190926,1194229,CVE-2020-14367
Description:

This update for chrony fixes the following issues:
Chrony was updated to 4.1, bringing features and bugfixes.
Update to 4.1
* Add support for NTS servers specified by IP address (matching Subject Alternative Name in server certificate) * Add source-specific configuration of trusted certificates * Allow multiple files and directories with trusted certificates * Allow multiple pairs of server keys and certificates * Add copy option to server/pool directive * Increase PPS lock limit to 40% of pulse interval * Perform source selection immediately after loading dump files * Reload dump files for addresses negotiated by NTS-KE server * Update seccomp filter and add less restrictive level * Restart ongoing name resolution on online command * Fix dump files to not include uncorrected offset * Fix initstepslew to accept time from own NTP clients * Reset NTP address and port when no longer negotiated by NTS-KE server



Update to 4.0
- Enhancements
- Add support for Network Time Security (NTS) authentication - Add support for AES-CMAC keys (AES128, AES256) with Nettle - Add authselectmode directive to control selection of unauthenticated sources - Add binddevice, bindacqdevice, bindcmddevice directives - Add confdir directive to better support fragmented configuration - Add sourcedir directive and 'reload sources' command to support dynamic NTP sources specified in files - Add clockprecision directive - Add dscp directive to set Differentiated Services Code Point (DSCP) - Add -L option to limit log messages by severity - Add -p option to print whole configuration with included files - Add -U option to allow start under non-root user - Allow maxsamples to be set to 1 for faster update with -q/-Q option - Avoid replacing NTP sources with sources that have unreachable address - Improve pools to repeat name resolution to get 'maxsources' sources - Improve source selection with trusted sources - Improve NTP loop test to prevent synchronisation to itself - Repeat iburst when NTP source is switched from offline state to online - Update clock synchronisation status and leap status more frequently - Update seccomp filter - Add 'add pool' command - Add 'reset sources' command to drop all measurements - Add authdata command to print details about NTP authentication - Add selectdata command to print details about source selection - Add -N option and sourcename command to print original names of sources - Add -a option to some commands to print also unresolved sources - Add -k, -p, -r options to clients command to select, limit, reset data
- Bug fixes
- Don’t set interface for NTP responses to allow asymmetric routing - Handle RTCs that don’t support interrupts - Respond to command requests with correct address on multihomed hosts - Removed features - Drop support for RIPEMD keys (RMD128, RMD160, RMD256, RMD320) - Drop support for long (non-standard) MACs in NTPv4 packets (chrony 2.x clients using non-MD5/SHA1 keys need to use option 'version 3') - Drop support for line editing with GNU Readline


Update to 3.5.1:
* Create new file when writing pidfile (CVE-2020-14367, bsc#1174911)





Update to 3.5:




Update to version 3.4
* Enhancements
+ Add filter option to server/pool/peer directive + Add minsamples and maxsamples options to hwtimestamp directive + Add support for faster frequency adjustments in Linux 4.19 + Change default pidfile to /var/run/chrony/chronyd.pid to allow chronyd without root privileges to remove it on exit + Disable sub-second polling intervals for distant NTP sources + Extend range of supported sub-second polling intervals + Get/set IPv4 destination/source address of NTP packets on FreeBSD + Make burst options and command useful with short polling intervals + Modify auto_offline option to activate when sending request failed + Respond from interface that received NTP request if possible + Add onoffline command to switch between online and offline state according to current system network configuration + Improve example NetworkManager dispatcher script
* Bug fixes
+ Avoid waiting in Linux getrandom system call + Fix PPS support on FreeBSD and NetBSD
Update to version 3.3
* Enhancements:
+ Add burst option to server/pool directive + Add stratum and tai options to refclock directive + Add support for Nettle crypto library + Add workaround for missing kernel receive timestamps on Linux + Wait for late hardware transmit timestamps + Improve source selection with unreachable sources + Improve protection against replay attacks on symmetric mode + Allow PHC refclock to use socket in /var/run/chrony + Add shutdown command to stop chronyd + Simplify format of response to manual list command + Improve handling of unknown responses in chronyc
* Bug fixes:
+ Respond to NTPv1 client requests with zero mode + Fix -x option to not require CAP_SYS_TIME under non-root user + Fix acquisitionport directive to work with privilege separation + Fix handling of socket errors on Linux to avoid high CPU usage + Fix chronyc to not get stuck in infinite loop after clock step


Advisory IDSUSE-SU-2022:853-1
ReleasedTue Mar 15 19:27:30 2022
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1196877,CVE-2022-0778
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2022:861-1
ReleasedTue Mar 15 23:30:48 2022
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1182959,1195149,1195792,1195856
Description:

This update for openssl-1_1 fixes the following issues:
openssl-1_1:

glibc:
linux-glibc-devel:

libxcrypt:

zlib:


Advisory IDSUSE-RU-2022:867-1
ReleasedWed Mar 16 07:14:44 2022
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1193805
Description:

This update for libtirpc fixes the following issues:


Advisory IDSUSE-RU-2022:874-1
ReleasedWed Mar 16 10:40:52 2022
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1197004
Description:

This update for openldap2 fixes the following issue:


Advisory IDSUSE-RU-2022:936-1
ReleasedTue Mar 22 18:10:17 2022
SummaryRecommended update for filesystem and systemd-rpm-macros
Typerecommended
Severitymoderate
References1196275,1196406
Description:

This update for filesystem and systemd-rpm-macros fixes the following issues:
filesystem:


systemd-rpm-macros:


Advisory IDSUSE-RU-2022:1021-1
ReleasedTue Mar 29 13:24:21 2022
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1195899
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2022:1047-1
ReleasedWed Mar 30 16:20:56 2022
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1196093,1197024
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2022:1061-1
ReleasedWed Mar 30 18:27:06 2022
SummarySecurity update for zlib
Typesecurity
Severityimportant
References1197459,CVE-2018-25032
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2022:1073-1
ReleasedFri Apr 1 11:45:01 2022
SummarySecurity update for yaml-cpp
Typesecurity
Severitymoderate
References1121227,1121230,1122004,1122021,CVE-2018-20573,CVE-2018-20574,CVE-2019-6285,CVE-2019-6292
Description:

This update for yaml-cpp fixes the following issues:


Advisory IDSUSE-RU-2022:1099-1
ReleasedMon Apr 4 12:53:05 2022
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1194883
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-RU-2022:1109-1
ReleasedMon Apr 4 17:50:01 2022
SummaryRecommended update for util-linux
Typerecommended
Severityimportant
References1172427,1194642
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2022:1131-1
ReleasedFri Apr 8 09:43:53 2022
SummarySecurity update for libsolv, libzypp, zypper
Typesecurity
Severityimportant
References1184501,1194848,1195999,1196061,1196317,1196368,1196514,1196925,1197134
Description:

This update for libsolv, libzypp, zypper fixes the following issues:
Security relevant fix:


libsolv to 0.7.22:

libzypp to 17.30.0:

zypper to 1.14.52:


Advisory IDSUSE-SU-2022:1158-1
ReleasedTue Apr 12 14:44:43 2022
SummarySecurity update for xz
Typesecurity
Severityimportant
References1198062,CVE-2022-1271
Description:

This update for xz fixes the following issues:


Advisory IDSUSE-SU-2022:1250-1
ReleasedSun Apr 17 15:39:47 2022
SummarySecurity update for gzip
Typesecurity
Severityimportant
References1177047,1180713,1198062,CVE-2022-1271
Description:

This update for gzip fixes the following issues:


The following non-security bugs were fixed:


Advisory IDSUSE-RU-2022:1302-1
ReleasedFri Apr 22 10:04:46 2022
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1196939
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-RU-2022:1409-1
ReleasedTue Apr 26 12:54:57 2022
SummaryRecommended update for gcc11
Typerecommended
Severitymoderate
References1195628,1196107
Description:

This update for gcc11 fixes the following issues:


Advisory IDSUSE-RU-2022:1438-1
ReleasedWed Apr 27 15:27:19 2022
SummaryRecommended update for systemd-presets-common-SUSE
Typerecommended
Severitylow
References1195251
Description:

This update for systemd-presets-common-SUSE fixes the following issue:


Advisory IDSUSE-RU-2022:1439-1
ReleasedWed Apr 27 16:08:04 2022
SummaryRecommended update for binutils
Typerecommended
Severitymoderate
References1198237
Description:

This update for binutils fixes the following issues:


Advisory IDSUSE-RU-2022:1452-1
ReleasedThu Apr 28 10:48:06 2022
SummaryRecommended update for perl
Typerecommended
Severitymoderate
References1193489
Description:

This update for perl fixes the following issues:


Advisory IDSUSE-RU-2022:1655-1
ReleasedFri May 13 15:36:10 2022
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1197794
Description:

This update for pam fixes the following issue:


Advisory IDSUSE-RU-2022:1656-1
ReleasedFri May 13 15:38:02 2022
SummaryRecommended update for llvm7
Typerecommended
Severitymoderate
References1197775
Description:

This update for llvm7 fixes the following issues:


Advisory IDSUSE-RU-2022:1658-1
ReleasedFri May 13 15:40:20 2022
SummaryRecommended update for libpsl
Typerecommended
Severityimportant
References1197771
Description:

This update for libpsl fixes the following issues:


Advisory IDSUSE-SU-2022:1674-1
ReleasedMon May 16 10:12:11 2022
SummarySecurity update for gzip
Typesecurity
Severityimportant
ReferencesCVE-2022-1271
Description:

This update for gzip fixes the following issues:


Advisory IDSUSE-SU-2022:1688-1
ReleasedMon May 16 14:02:49 2022
SummarySecurity update for e2fsprogs
Typesecurity
Severityimportant
References1198446,CVE-2022-1304
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-RU-2022:1691-1
ReleasedMon May 16 15:13:39 2022
SummaryRecommended update for augeas
Typerecommended
Severitymoderate
References1197443
Description:

This update for augeas fixes the following issue:


Advisory IDSUSE-SU-2022:1750-1
ReleasedThu May 19 15:28:20 2022
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1196490,1199132,CVE-2022-23308,CVE-2022-29824
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2022:1832-1
ReleasedTue May 24 11:52:33 2022
SummarySecurity update for openldap2
Typesecurity
Severityimportant
References1191157,1197004,1199240,CVE-2022-29155
Description:

This update for openldap2 fixes the following issues:
Security:


Bugfixes:


Advisory IDSUSE-RU-2022:1851-1
ReleasedThu May 26 08:59:55 2022
SummaryRecommended update for gcc8
Typerecommended
Severitymoderate
References1197716
Description:

This update for gcc8 fixes the following issues:


Advisory IDSUSE-RU-2022:1887-1
ReleasedTue May 31 09:24:18 2022
SummaryRecommended update for grep
Typerecommended
Severitymoderate
References1040589
Description:

This update for grep fixes the following issues:


Advisory IDSUSE-RU-2022:2019-1
ReleasedWed Jun 8 16:50:07 2022
SummaryRecommended update for gcc11
Typerecommended
Severitymoderate
References1192951,1193659,1195283,1196861,1197065
Description:

This update for gcc11 fixes the following issues:
Update to the GCC 11.3.0 release.


Advisory IDSUSE-RU-2022:2049-1
ReleasedMon Jun 13 09:23:52 2022
SummaryRecommended update for binutils
Typerecommended
Severitymoderate
References1191908,1198422
Description:

This update for binutils fixes the following issues:


Advisory IDSUSE-SU-2022:2068-1
ReleasedTue Jun 14 10:14:47 2022
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1185637,1199166,CVE-2022-1292
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2022:2157-1
ReleasedWed Jun 22 17:11:26 2022
SummaryRecommended update for binutils
Typerecommended
Severitymoderate
References1198458
Description:

This update for binutils fixes the following issues:


Advisory IDSUSE-SU-2022:2179-1
ReleasedFri Jun 24 14:05:25 2022
SummarySecurity update for openssl
Typesecurity
Severitymoderate
References1200550,CVE-2022-2068
Description:

This update for openssl fixes the following issues:


Advisory IDSUSE-SU-2022:2311-1
ReleasedWed Jul 6 15:16:17 2022
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1201099,CVE-2022-2097
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2022:2323-1
ReleasedThu Jul 7 12:16:58 2022
SummaryRecommended update for systemd-presets-branding-SLE
Typerecommended
Severitylow
References
Description:

This update for systemd-presets-branding-SLE fixes the following issues:


Advisory IDSUSE-SU-2022:2361-1
ReleasedTue Jul 12 12:05:01 2022
SummarySecurity update for pcre
Typesecurity
Severityimportant
References1199232,CVE-2022-1586
Description:

This update for pcre fixes the following issues:


Advisory IDSUSE-SU-2022:2405-1
ReleasedFri Jul 15 11:47:57 2022
SummarySecurity update for p11-kit
Typesecurity
Severitymoderate
References1180065,CVE-2020-29362
Description:

This update for p11-kit fixes the following issues:


Advisory IDSUSE-RU-2022:2471-1
ReleasedThu Jul 21 04:42:58 2022
SummaryRecommended update for systemd
Typerecommended
Severityimportant
References1148309,1191502,1195529,1200170
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2022:2571-1
ReleasedThu Jul 28 04:20:52 2022
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1194550,1197684,1199042
Description:

This update for libzypp, zypper fixes the following issues:
libzypp:


zypper:


Advisory IDSUSE-SU-2022:2717-1
ReleasedTue Aug 9 12:54:16 2022
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1198627,CVE-2022-29458
Description:

This update for ncurses fixes the following issues:


Advisory IDSUSE-SU-2022:2829-1
ReleasedWed Aug 17 13:33:11 2022
SummarySecurity update for curl
Typesecurity
Severityimportant
References1199223,1199224,1200735,1200737,CVE-2022-27781,CVE-2022-27782,CVE-2022-32206,CVE-2022-32208
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2022:2830-1
ReleasedWed Aug 17 14:36:26 2022
SummarySecurity update for gnutls
Typesecurity
Severityimportant
References1196167,1202020,CVE-2021-4209,CVE-2022-2509
Description:

This update for gnutls fixes the following issues:


Advisory IDSUSE-SU-2022:2866-1
ReleasedMon Aug 22 15:36:30 2022
SummarySecurity update for systemd-presets-common-SUSE
Typesecurity
Severitymoderate
References1199524,1200485,CVE-2022-1706
Description:

This update for systemd-presets-common-SUSE fixes the following issues:


The following non-security bugs were fixed:


Advisory IDSUSE-RU-2022:2905-1
ReleasedFri Aug 26 05:30:33 2022
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1198341
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-RU-2022:2944-1
ReleasedWed Aug 31 05:39:14 2022
SummaryRecommended update for procps
Typerecommended
Severityimportant
References1181475
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-SU-2022:2947-1
ReleasedWed Aug 31 09:16:21 2022
SummarySecurity update for zlib
Typesecurity
Severityimportant
References1202175,CVE-2022-37434
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2022:2991-1
ReleasedThu Sep 1 16:04:30 2022
SummarySecurity update for libtirpc
Typesecurity
Severityimportant
References1198752,1200800,1201680,CVE-2021-46828
Description:

This update for libtirpc fixes the following issues:


Non-security fixes:


Advisory IDSUSE-RU-2022:2994-1
ReleasedFri Sep 2 10:44:54 2022
SummaryRecommended update for lame, libass, libcdio-paranoia, libdc1394, libgsm, libva, libvdpau, libvorbis, libvpx, libwebp, openjpeg, opus, speex, twolame
Typerecommended
Severitymoderate
References1198925
Description:


This update for lame, libass, libcdio-paranoia, libdc1394, libgsm, libva, libvdpau, libvorbis, libvpx, libwebp, openjpeg, opus, speex, twolame adds some missing 32bit libraries to some products. (bsc#1198925)
No codechanges were done in this update.


Advisory IDSUSE-RU-2022:3129-1
ReleasedWed Sep 7 04:42:53 2022
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1197178,1198731,1200842
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2022:3144-1
ReleasedWed Sep 7 11:04:23 2022
SummarySecurity update for gpg2
Typesecurity
Severityimportant
References1201225,CVE-2022-34903
Description:

This update for gpg2 fixes the following issues:


Advisory IDSUSE-RU-2022:3221-1
ReleasedFri Sep 9 04:31:28 2022
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1199895,1200993,1201092,1201576,1201638
Description:

This update for libzypp, zypper fixes the following issues:
libzypp:


zypper:


Advisory IDSUSE-RU-2022:3262-1
ReleasedTue Sep 13 15:34:29 2022
SummaryRecommended update for gcc11
Typerecommended
Severitymoderate
References1199140
Description:


This update for gcc11 ships some missing 32bit libraries for s390x. (bsc#1199140)


Advisory IDSUSE-RU-2022:3304-1
ReleasedMon Sep 19 11:43:25 2022
SummaryRecommended update for libassuan
Typerecommended
Severitymoderate
References
Description:

This update for libassuan fixes the following issues:


Advisory IDSUSE-SU-2022:3307-1
ReleasedMon Sep 19 13:26:51 2022
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1189802,1195773,1201783,CVE-2021-36690,CVE-2022-35737
Description:

This update for sqlite3 fixes the following issues:


Advisory IDSUSE-SU-2022:3549-1
ReleasedFri Oct 7 14:39:40 2022
SummarySecurity update for cyrus-sasl
Typesecurity
Severityimportant
References1159635,CVE-2019-19906
Description:

This update for cyrus-sasl fixes the following issues:


Advisory IDSUSE-RU-2022:3566-1
ReleasedTue Oct 11 16:19:09 2022
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitycritical
References1189282,1201972,1203649
Description:

This update for libzypp, zypper fixes the following issues:
libzypp:


zypper:


Advisory IDSUSE-SU-2022:3597-1
ReleasedMon Oct 17 13:13:16 2022
SummarySecurity update for expat
Typesecurity
Severityimportant
References1203438,CVE-2022-40674
Description:

This update for expat fixes the following issues:


Advisory IDSUSE-SU-2022:3683-1
ReleasedFri Oct 21 11:48:39 2022
SummarySecurity update for libksba
Typesecurity
Severitycritical
References1204357,CVE-2022-3515
Description:

This update for libksba fixes the following issues:
- CVE-2022-3515: Fixed a possible overflow in the TLV parser (bsc#1204357).


Advisory IDSUSE-SU-2022:3774-1
ReleasedWed Oct 26 12:21:09 2022
SummarySecurity update for curl
Typesecurity
Severityimportant
References1202593,1204383,CVE-2022-32221,CVE-2022-35252
Description:

This update for curl fixes the following issues:
- CVE-2022-32221: Fixed POST following PUT confusion (bsc#1204383). - CVE-2022-35252: Fixed a potential injection of control characters into cookies (bsc#1202593).


Advisory IDSUSE-SU-2022:3784-1
ReleasedWed Oct 26 18:03:28 2022
SummarySecurity update for libtasn1
Typesecurity
Severitycritical
References1204690,CVE-2021-46848
Description:

This update for libtasn1 fixes the following issues:


Advisory IDSUSE-SU-2022:3805-1
ReleasedThu Oct 27 17:19:46 2022
SummarySecurity update for dbus-1
Typesecurity
Severityimportant
References1087072,1204111,1204112,1204113,CVE-2022-42010,CVE-2022-42011,CVE-2022-42012
Description:

This update for dbus-1 fixes the following issues:
- CVE-2022-42010: Fixed potential crash that could be triggered by an invalid signature (bsc#1204111). - CVE-2022-42011: Fixed an out of bounds read caused by a fixed length array (bsc#1204112). - CVE-2022-42012: Fixed a use-after-free that could be trigged by a message in non-native endianness with out-of-band Unix file descriptor (bsc#1204113).
Bugfixes:
- Disable asserts (bsc#1087072).


Advisory IDSUSE-SU-2022:3871-1
ReleasedFri Nov 4 13:26:29 2022
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1201978,1204366,1204367,CVE-2016-3709,CVE-2022-40303,CVE-2022-40304
Description:

This update for libxml2 fixes the following issues:
- CVE-2016-3709: Fixed possible XSS vulnerability (bsc#1201978). - CVE-2022-40303: Fixed integer overflows with XML_PARSE_HUGE (bsc#1204366). - CVE-2022-40304: Fixed dict corruption caused by entity reference cycles (bsc#1204367).


Advisory IDSUSE-RU-2022:3882-1
ReleasedMon Nov 7 09:06:03 2022
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1180995
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2022:3905-1
ReleasedTue Nov 8 12:23:17 2022
SummaryRecommended update for aaa_base
Typerecommended
Severityimportant
References1196840,1199492,1199918,1199926,1199927
Description:

This update for aaa_base and iputils fixes the following issues:
aaa_base:


iputils:


Advisory IDSUSE-RU-2022:3910-1
ReleasedTue Nov 8 13:05:04 2022
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References
Description:

This update for pam fixes the following issue:


Advisory IDSUSE-SU-2022:3912-1
ReleasedTue Nov 8 13:38:11 2022
SummarySecurity update for expat
Typesecurity
Severityimportant
References1204708,CVE-2022-43680
Description:

This update for expat fixes the following issues:
- CVE-2022-43680: Fixed use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate (bsc#1204708).


Advisory IDSUSE-RU-2022:3961-1
ReleasedMon Nov 14 07:33:50 2022
SummaryRecommended update for zlib
Typerecommended
Severityimportant
References1203652
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-RU-2022:3975-1
ReleasedMon Nov 14 15:41:13 2022
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1201959
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2022:4081-1
ReleasedFri Nov 18 15:40:46 2022
SummarySecurity update for dpkg
Typesecurity
Severitylow
References1199944,CVE-2022-1664
Description:

This update for dpkg fixes the following issues:


Advisory IDSUSE-SU-2022:4146-1
ReleasedMon Nov 21 09:56:12 2022
SummarySecurity update for binutils
Typesecurity
Severitymoderate
References1142579,1185597,1185712,1188374,1191473,1193929,1194783,1197592,1198237,1202816,1202966,1202967,1202969,CVE-2019-1010204,CVE-2021-3530,CVE-2021-3648,CVE-2021-3826,CVE-2021-45078,CVE-2021-46195,CVE-2022-27943,CVE-2022-38126,CVE-2022-38127,CVE-2022-38533
Description:

This update for binutils fixes the following issues:
The following security bugs were fixed:



The following non-security bugs were fixed:


Advisory IDSUSE-SU-2022:4155-1
ReleasedMon Nov 21 14:36:17 2022
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1205126,CVE-2022-42898
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-SU-2022:4214-1
ReleasedThu Nov 24 16:17:31 2022
SummarySecurity update for libdb-4_8
Typesecurity
Severitylow
References1174414,CVE-2019-2708
Description:

This update for libdb-4_8 fixes the following issues:


Advisory IDSUSE-RU-2022:4256-1
ReleasedMon Nov 28 12:36:32 2022
SummaryRecommended update for gcc12
Typerecommended
Severitymoderate
References
Description:

This update for gcc12 fixes the following issues:
This update ship the GCC 12 compiler suite and its base libraries.
The compiler baselibraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 11 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP3 and SP4, and provided in the 'Development Tools' module.
The Go, D and Ada language compiler parts are available unsupported via the PackageHub repositories.
To use gcc12 compilers use:


For a full changelog with all new GCC12 features, check out
https://gcc.gnu.org/gcc-12/changes.html


Advisory IDSUSE-SU-2022:4592-1
ReleasedTue Dec 20 16:51:35 2022
SummarySecurity update for cni
Typesecurity
Severityimportant
References1181961,CVE-2021-20206
Description:

This update for cni fixes the following issues:


Advisory IDSUSE-SU-2022:4593-1
ReleasedTue Dec 20 16:55:16 2022
SummarySecurity update for cni-plugins
Typesecurity
Severityimportant
References1181961,CVE-2021-20206
Description:

This update for cni-plugins fixes the following issues:


Advisory IDSUSE-SU-2022:4628-1
ReleasedWed Dec 28 09:23:13 2022
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1206337,CVE-2022-46908
Description:

This update for sqlite3 fixes the following issues:


Advisory IDSUSE-SU-2023:56-1
ReleasedMon Jan 9 11:13:43 2023
SummarySecurity update for libksba
Typesecurity
Severitymoderate
References1206579,CVE-2022-47629
Description:

This update for libksba fixes the following issues:


Advisory IDSUSE-RU-2023:181-1
ReleasedThu Jan 26 21:55:43 2023
SummaryRecommended update for procps
Typerecommended
Severitylow
References1206412
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2023:188-1
ReleasedFri Jan 27 12:07:19 2023
SummaryRecommended update for zlib
Typerecommended
Severityimportant
References1203652
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2023:308-1
ReleasedTue Feb 7 17:33:37 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1207533,1207534,1207536,CVE-2022-4304,CVE-2023-0215,CVE-2023-0286
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:446-1
ReleasedFri Feb 17 09:52:43 2023
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1194038,1205646
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2023:486-1
ReleasedThu Feb 23 10:38:13 2023
SummarySecurity update for c-ares
Typesecurity
Severityimportant
References1208067,CVE-2022-4904
Description:

This update for c-ares fixes the following issues:
Updated to version 1.19.0:
- CVE-2022-4904: Fixed missing string length check in config_sortlist() (bsc#1208067).


Advisory IDSUSE-RU-2023:676-1
ReleasedWed Mar 8 14:33:23 2023
SummaryRecommended update for libxml2
Typerecommended
Severitymoderate
References1204585
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2023:776-1
ReleasedThu Mar 16 17:29:23 2023
SummaryRecommended update for gcc12
Typerecommended
Severitymoderate
References
Description:

This update for gcc12 fixes the following issues:
This update ships gcc12 also to the SUSE Linux Enterprise 15 SP1 LTSS and 15 SP2 LTSS products.
SUSE Linux Enterprise 15 SP3 and SP4 get only refreshed builds without changes

This update ship the GCC 12 compiler suite and its base libraries.
The compiler baselibraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 11 ones.
The new compilers for C, C++, and Fortran are provided in the SUSE Linux Enterprise Module for Development Tools.
To use gcc12 compilers use:


For a full changelog with all new GCC12 features, check out
https://gcc.gnu.org/gcc-12/changes.html


Advisory IDSUSE-RU-2023:787-1
ReleasedThu Mar 16 19:37:18 2023
SummaryRecommended update for libsolv, libzypp, zypper
Typerecommended
Severityimportant
References1178233,1203248,1203249,1203715,1204548,1204956,1205570,1205636,1206949
Description:

This update for libsolv, libzypp, zypper fixes the following issues:
libsolv:


libzypp:
zypper:


Advisory IDSUSE-SU-2023:1748-1
ReleasedTue Apr 4 09:06:59 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1209624,CVE-2023-0464
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:1753-1
ReleasedTue Apr 4 11:55:00 2023
SummaryRecommended update for systemd-presets-common-SUSE
Typerecommended
Severitymoderate
References
Description:

This update for systemd-presets-common-SUSE fixes the following issue:


Advisory IDSUSE-SU-2023:1908-1
ReleasedWed Apr 19 08:38:53 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1209873,1209878,CVE-2023-0465,CVE-2023-0466
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2023:1979-1
ReleasedTue Apr 25 09:36:43 2023
SummarySecurity update for protobuf-c
Typesecurity
Severityimportant
References1210323,CVE-2022-48468
Description:

This update for protobuf-c fixes the following issues:


Advisory IDSUSE-RU-2023:1991-1
ReleasedTue Apr 25 13:22:19 2023
SummaryRecommended update for permissions
Typerecommended
Severitymoderate
References1160285,1210096
Description:

This update for permissions fixes the following issues:


Advisory IDSUSE-SU-2023:2048-1
ReleasedWed Apr 26 21:05:45 2023
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1065270,1199132,1204585,1210411,1210412,CVE-2021-3541,CVE-2022-29824,CVE-2023-28484,CVE-2023-29469
Description:

This update for libxml2 fixes the following issues:



Advisory IDSUSE-SU-2023:2068-1
ReleasedFri Apr 28 13:55:00 2023
SummarySecurity update for shadow
Typesecurity
Severitymoderate
References1210507,CVE-2023-29383
Description:

This update for shadow fixes the following issues:


Advisory IDSUSE-SU-2023:2074-1
ReleasedFri Apr 28 17:02:25 2023
SummarySecurity update for zstd
Typesecurity
Severitymoderate
References1209533,CVE-2022-4899
Description:

This update for zstd fixes the following issues:


Advisory IDSUSE-RU-2023:2104-1
ReleasedThu May 4 21:05:30 2023
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1209122
Description:

This update for procps fixes the following issue:


Advisory IDSUSE-SU-2023:2111-1
ReleasedFri May 5 14:34:00 2023
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1210434,CVE-2023-29491
Description:

This update for ncurses fixes the following issues:


Advisory IDSUSE-RU-2023:2133-1
ReleasedTue May 9 13:37:10 2023
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1206513
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2023:2226-1
ReleasedWed May 17 09:55:49 2023
SummarySecurity update for curl
Typesecurity
Severityimportant
References1206309,1207992,1209209,1209210,1209211,1209212,1209214,1211231,1211232,1211233,1211339,CVE-2022-43552,CVE-2023-23916,CVE-2023-27533,CVE-2023-27534,CVE-2023-27535,CVE-2023-27536,CVE-2023-27538,CVE-2023-28320,CVE-2023-28321,CVE-2023-28322
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-RU-2023:2248-1
ReleasedThu May 18 17:06:33 2023
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1127591,1195633,1208329,1209406,1210870
Description:

This update for libzypp, zypper fixes the following issues:


Advisory IDSUSE-SU-2023:2313-1
ReleasedTue May 30 09:29:25 2023
SummarySecurity update for c-ares
Typesecurity
Severityimportant
References1211604,1211605,1211606,1211607,CVE-2023-31124,CVE-2023-31130,CVE-2023-31147,CVE-2023-32067
Description:

This update for c-ares fixes the following issues:
Update to version 1.19.1:


Advisory IDSUSE-SU-2023:2324-1
ReleasedTue May 30 15:52:17 2023
SummarySecurity update for cni-plugins
Typesecurity
Severityimportant
References1200441
Description:


This update of cni-plugins fixes the following issues:


Advisory IDSUSE-SU-2023:2325-1
ReleasedTue May 30 15:57:30 2023
SummarySecurity update for cni
Typesecurity
Severityimportant
References1200441
Description:


This update of cni fixes the following issues:


Advisory IDSUSE-SU-2023:2327-1
ReleasedTue May 30 16:44:58 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1211430,CVE-2023-2650
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:2333-1
ReleasedWed May 31 09:01:28 2023
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1210593
Description:

This update for zlib fixes the following issue:


Advisory IDSUSE-RU-2023:2472-1
ReleasedThu Jun 8 10:05:45 2023
SummaryRecommended update for libzypp
Typerecommended
Severitymoderate
References1211661
Description:

This update for libzypp fixes the following issues:


Advisory IDSUSE-RU-2023:2496-1
ReleasedTue Jun 13 15:19:20 2023
SummaryRecommended update for libzypp
Typerecommended
Severityimportant
References1212187
Description:

This update for libzypp fixes the following issue:


Advisory IDSUSE-SU-2023:2622-1
ReleasedFri Jun 23 13:42:21 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1201627,1207534,CVE-2022-4304
Description:

This update for openssl-1_1 fixes the following issues:



Advisory IDSUSE-RU-2023:2625-1
ReleasedFri Jun 23 17:16:11 2023
SummaryRecommended update for gcc12
Typerecommended
Severitymoderate
References
Description:

This update for gcc12 fixes the following issues:


* includes regression and other bug fixes


Advisory IDSUSE-RU-2023:2644-1
ReleasedTue Jun 27 09:23:49 2023
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1211261,1212187,1212222
Description:

This update for libzypp, zypper fixes the following issues:
libzypp was updated to version 17.31.14 (22):


zypper was updated to version 1.14.61:


Advisory IDSUSE-SU-2023:2868-1
ReleasedTue Jul 18 11:35:52 2023
SummarySecurity update for cni
Typesecurity
Severityimportant
References1206346
Description:


This update of cni fixes the following issues:


Advisory IDSUSE-SU-2023:2869-1
ReleasedTue Jul 18 11:39:26 2023
SummarySecurity update for cni-plugins
Typesecurity
Severityimportant
References1206346
Description:


This update of cni-plugins fixes the following issues:


Advisory IDSUSE-SU-2023:2879-1
ReleasedWed Jul 19 09:45:34 2023
SummarySecurity update for dbus-1
Typesecurity
Severitymoderate
References1212126,CVE-2023-34969
Description:

This update for dbus-1 fixes the following issues:


Advisory IDSUSE-RU-2023:2918-1
ReleasedThu Jul 20 12:00:17 2023
SummaryRecommended update for gpgme
Typerecommended
Severitymoderate
References1089497
Description:

This update for gpgme fixes the following issues:
gpgme:

libassuan:


Advisory IDSUSE-RU-2023:2955-1
ReleasedTue Jul 25 05:22:54 2023
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1193015
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2023:2956-1
ReleasedTue Jul 25 08:33:38 2023
SummarySecurity update for libcap
Typesecurity
Severitymoderate
References1211419,CVE-2023-2603
Description:

This update for libcap fixes the following issues:


Advisory IDSUSE-SU-2023:2961-1
ReleasedTue Jul 25 09:32:56 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1213487,CVE-2023-3446
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:2998-1
ReleasedThu Jul 27 08:39:49 2023
SummaryRecommended update for libdb-4_8
Typerecommended
Severitymoderate
References1099695
Description:

This update for libdb-4_8 fixes the following issues:


Advisory IDSUSE-RU-2023:3068-1
ReleasedMon Jul 31 16:33:43 2023
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1213517
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:3191-1
ReleasedFri Aug 4 06:29:08 2023
SummaryRecommended update for cryptsetup
Typerecommended
Severitymoderate
References1211079
Description:

This update for cryptsetup fixes the following issues:


Advisory IDSUSE-RU-2023:3388-1
ReleasedWed Aug 23 17:14:22 2023
SummaryRecommended update for binutils
Typerecommended
Severityimportant
References1213282
Description:

This update for binutils fixes the following issues:


Advisory IDSUSE-SU-2023:3434-1
ReleasedThu Aug 24 15:05:22 2023
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1214054,CVE-2023-36054
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-SU-2023:3440-1
ReleasedMon Aug 28 08:57:10 2023
SummarySecurity update for gawk
Typesecurity
Severitylow
References1214025,CVE-2023-4156
Description:

This update for gawk fixes the following issues:


Advisory IDSUSE-SU-2023:3472-1
ReleasedTue Aug 29 10:55:16 2023
SummarySecurity update for procps
Typesecurity
Severitylow
References1214290,CVE-2023-4016
Description:

This update for procps fixes the following issues:
- CVE-2023-4016: Fixed ps buffer overflow (bsc#1214290).


Advisory IDSUSE-RU-2023:3513-1
ReleasedFri Sep 1 15:47:41 2023
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1158763,1210740,1213231,1213557,1213673
Description:

This update for libzypp, zypper fixes the following issues:


Advisory IDSUSE-SU-2023:3535-1
ReleasedTue Sep 5 14:46:31 2023
SummarySecurity update for glib2
Typesecurity
Severityimportant
References1183533,1211945,1211946,1211947,1211948,1211951,CVE-2021-28153,CVE-2023-29499,CVE-2023-32611,CVE-2023-32636,CVE-2023-32643,CVE-2023-32665
Description:

This update for glib2 fixes the following issues:


Advisory IDSUSE-SU-2023:3661-1
ReleasedMon Sep 18 21:44:09 2023
SummarySecurity update for gcc12
Typesecurity
Severityimportant
References1214052,CVE-2023-4039
Description:

This update for gcc12 fixes the following issues:


Advisory IDSUSE-SU-2023:3686-1
ReleasedTue Sep 19 17:23:03 2023
SummarySecurity update for gcc7
Typesecurity
Severityimportant
References1195517,1196861,1204505,1205145,1214052,CVE-2023-4039
Description:

This update for gcc7 fixes the following issues:
Security issue fixed:


Other fixes:


Advisory IDSUSE-SU-2023:3698-1
ReleasedWed Sep 20 11:01:15 2023
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1214768,CVE-2023-39615
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2023:3815-1
ReleasedWed Sep 27 18:20:25 2023
SummarySecurity update for cni
Typesecurity
Severityimportant
References1212475
Description:


This update of cni fixes the following issues:


Advisory IDSUSE-SU-2023:3816-1
ReleasedWed Sep 27 18:25:44 2023
SummarySecurity update for cni-plugins
Typesecurity
Severityimportant
References1212475
Description:


This update of cni-plugins fixes the following issues:


Advisory IDSUSE-SU-2023:3825-1
ReleasedWed Sep 27 18:48:53 2023
SummarySecurity update for binutils
Typesecurity
Severityimportant
References1200962,1206080,1206556,1208037,1208038,1208040,1208409,1209642,1210297,1210733,1213458,1214565,1214567,1214579,1214580,1214604,1214611,1214619,1214620,1214623,1214624,1214625,CVE-2020-19726,CVE-2021-32256,CVE-2022-35205,CVE-2022-35206,CVE-2022-4285,CVE-2022-44840,CVE-2022-45703,CVE-2022-47673,CVE-2022-47695,CVE-2022-47696,CVE-2022-48063,CVE-2022-48064,CVE-2022-48065,CVE-2023-0687,CVE-2023-1579,CVE-2023-1972,CVE-2023-2222,CVE-2023-25585,CVE-2023-25587,CVE-2023-25588
Description:

This update for binutils fixes the following issues:
Update to version 2.41 [jsc#PED-5778]:


- Zicond (conditional zero instructions) - Zfa (additional floating-point instructions) - Zvbb, Zvbc, Zvkg, Zvkned, Zvknh[ab], Zvksed, Zvksh, Zvkn, Zvknc, Zvkng, Zvks, Zvksc, Zvkg, Zvkt (vector crypto instructions)




* bsc#1208037 aka CVE-2023-25588 aka PR29677 * bsc#1208038 aka CVE-2023-25587 aka PR29846 * bsc#1208040 aka CVE-2023-25585 aka PR29892 * bsc#1208409 aka CVE-2023-0687 aka PR29444


Update to version 2.40:


* bsc#1206080 aka CVE-2022-4285 aka PR29699


Advisory IDSUSE-RU-2023:3937-1
ReleasedTue Oct 3 11:33:38 2023
SummaryRecommended update for zypper
Typerecommended
Severitymoderate
References1213854,1214292,1214395,1215007
Description:

This update for zypper fixes the following issues:


Advisory IDSUSE-SU-2023:3958-1
ReleasedWed Oct 4 09:16:06 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1213853,CVE-2023-3817
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2023:4025-1
ReleasedTue Oct 10 13:41:02 2023
SummarySecurity update for shadow
Typesecurity
Severitylow
References1214806,CVE-2023-4641
Description:

This update for shadow fixes the following issues:


Advisory IDSUSE-SU-2023:4047-1
ReleasedWed Oct 11 10:40:26 2023
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1215286,1215505,CVE-2023-4813
Description:

This update for glibc fixes the following issues:
Security issue fixed:



Other changes:


Advisory IDSUSE-SU-2023:4126-1
ReleasedThu Oct 19 09:38:31 2023
SummarySecurity update for cni
Typesecurity
Severityimportant
References1212475,1216006
Description:


This update of cni fixes the following issues:


Advisory IDSUSE-SU-2023:4127-1
ReleasedThu Oct 19 09:43:23 2023
SummarySecurity update for cni-plugins
Typesecurity
Severityimportant
References1212475,1216006
Description:


This update of cni-plugins fixes the following issues:


Advisory IDSUSE-SU-2023:4162-1
ReleasedMon Oct 23 15:33:03 2023
SummarySecurity update for gcc13
Typesecurity
Severityimportant
References1206480,1206684,1210557,1211427,1212101,1213915,1214052,1214460,CVE-2023-4039
Description:

This update for gcc13 fixes the following issues:
This update ship the GCC 13.2 compiler suite and its base libraries.
The compiler base libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 12 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP4 and SP5, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc13 compilers use:


For a full changelog with all new GCC13 features, check out
https://gcc.gnu.org/gcc-13/changes.html

Detailed changes:




Advisory IDSUSE-SU-2023:4217-1
ReleasedThu Oct 26 12:20:27 2023
SummarySecurity update for zlib
Typesecurity
Severitymoderate
References1216378,CVE-2023-45853
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2023:4458-1
ReleasedThu Nov 16 14:38:48 2023
SummarySecurity update for gcc13
Typesecurity
Severityimportant
References1206480,1206684,1210557,1211427,1212101,1213915,1214052,1214460,1215427,1216664,CVE-2023-4039
Description:

This update for gcc13 fixes the following issues:
This update ship the GCC 13.2 compiler suite and its base libraries.
The compiler base libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 12 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP4 and SP5, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc13 compilers use:


For a full changelog with all new GCC13 features, check out
https://gcc.gnu.org/gcc-13/changes.html

Detailed changes:




Advisory IDSUSE-SU-2023:4464-1
ReleasedThu Nov 16 17:56:12 2023
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1216129,CVE-2023-45322
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2023:4512-1
ReleasedTue Nov 21 17:25:02 2023
SummarySecurity update for util-linux
Typesecurity
Severityimportant
References1213865,CVE-2018-7738
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2023:4520-1
ReleasedTue Nov 21 17:42:13 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1216922,CVE-2023-5678
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:4536-1
ReleasedThu Nov 23 08:19:05 2023
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1041742,1203760,1212422,1215979,1216091
Description:

This update for libzypp, zypper fixes the following issues:


Advisory IDSUSE-SU-2023:4613-1
ReleasedWed Nov 29 15:46:24 2023
SummaryUpdates Cilium
Typesecurity
Severityimportant
References1215713,1216174,CVE-2023-35945,CVE-2023-44487
Description:

Updates Cilium addon as it got rebuild to include a couple of sercurity fixes


SUSE-CU-2022:69-1

Container Advisory IDSUSE-CU-2022:69-1
Container Tagscaasp/v4/cilium:1.6.6 , caasp/v4/cilium:1.6.6-rev5 , caasp/v4/cilium:1.6.6-rev5-build3.12.271
Container Release3.12.271
The following patches have been included in this update:
Advisory IDSUSE-RU-2020:3792-1
ReleasedMon Dec 14 17:39:24 2020
SummaryRecommended update for gzip
Typerecommended
Severitymoderate
References1145276
Description:

This update for gzip fixes the following issues:
Update from version 1.9 to version 1.10 (jsc#ECO-2217, jsc#SLE-12974)


Enable by adding `-DDFLTCC_LEVEL_MASK=0x7e` to `CFLAGS`.
Enable it using the `--enable-dfltcc` option.


Advisory IDSUSE-RU-2020:3840-1
ReleasedWed Dec 16 10:32:03 2020
SummaryRecommended update for llvm7
Typerecommended
Severitymoderate
References1176964,1179155
Description:

This update for llvm7 fixes the following issues:


Advisory IDSUSE-RU-2020:3853-1
ReleasedWed Dec 16 12:27:27 2020
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1084671,1169006,1174942,1175514,1175623,1178554,1178825
Description:

This update for util-linux fixes the following issue:


Advisory IDSUSE-RU-2020:3942-1
ReleasedTue Dec 29 12:22:01 2020
SummaryRecommended update for libidn2
Typerecommended
Severitymoderate
References1180138
Description:

This update for libidn2 fixes the following issues:


Advisory IDSUSE-RU-2020:3943-1
ReleasedTue Dec 29 12:24:45 2020
SummaryRecommended update for libxml2
Typerecommended
Severitymoderate
References1178823
Description:

This update for libxml2 fixes the following issues:
Avoid quadratic checking of identity-constraints, speeding up XML validation (bsc#1178823)


Advisory IDSUSE-RU-2021:79-1
ReleasedTue Jan 12 10:49:34 2021
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1167939
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-SU-2021:129-1
ReleasedThu Jan 14 12:26:15 2021
SummarySecurity update for openldap2
Typesecurity
Severitymoderate
References1178909,1179503,CVE-2020-25709,CVE-2020-25710
Description:

This update for openldap2 fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2021:220-1
ReleasedTue Jan 26 14:00:51 2021
SummaryRecommended update for keyutils
Typerecommended
Severitymoderate
References1180603
Description:

This update for keyutils fixes the following issues:


Advisory IDSUSE-RU-2021:233-1
ReleasedWed Jan 27 12:15:33 2021
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1141597,1174436,1175458,1177490,1179363,1179824,1180225
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2021:265-1
ReleasedMon Feb 1 15:06:45 2021
SummaryRecommended update for systemd
Typerecommended
Severityimportant
References1178775,1180885
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2021:266-1
ReleasedMon Feb 1 21:02:37 2021
SummaryRecommended update for lvm2
Typerecommended
Severitymoderate
References1177533,1179326,1179691,1179738
Description:

This update for lvm2 fixes the following issue:


Advisory IDSUSE-RU-2021:293-1
ReleasedWed Feb 3 12:52:34 2021
SummaryRecommended update for gmp
Typerecommended
Severitymoderate
References1180603
Description:

This update for gmp fixes the following issues:


Advisory IDSUSE-RU-2021:304-1
ReleasedThu Feb 4 13:19:43 2021
SummaryRecommended update for lvm2
Typerecommended
Severityimportant
References1179691
Description:

This update for lvm2 fixes the following issues:


If this behavior is still wanted, please change this manually in the lvm.conf


Advisory IDSUSE-RU-2021:305-1
ReleasedThu Feb 4 15:00:37 2021
SummaryRecommended update for libprotobuf
Typerecommended
Severitymoderate
References
Description:


libprotobuf was updated to fix:


Advisory IDSUSE-RU-2021:307-1
ReleasedFri Feb 5 05:30:34 2021
SummaryRecommended update for libselinux
Typerecommended
Severitylow
References1180603
Description:

This update for libselinux fixes the following issues:


Advisory IDSUSE-OU-2021:339-1
ReleasedMon Feb 8 13:16:07 2021
SummaryOptional update for pam
Typeoptional
Severitylow
References
Description:

This update for pam fixes the following issues:


This patch is optional to be installed - it doesn't fix any bugs.


Advisory IDSUSE-RU-2021:596-1
ReleasedThu Feb 25 10:26:30 2021
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1181618
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-SU-2021:653-1
ReleasedFri Feb 26 19:53:43 2021
SummarySecurity update for glibc
Typesecurity
Severityimportant
References1178386,1179694,1179721,1180038,1181505,1182117,CVE-2019-25013,CVE-2020-27618,CVE-2020-29562,CVE-2020-29573,CVE-2021-3326
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-SU-2021:723-1
ReleasedMon Mar 8 16:45:27 2021
SummarySecurity update for openldap2
Typesecurity
Severityimportant
References1182279,1182408,1182411,1182412,1182413,1182415,1182416,1182417,1182418,1182419,1182420,CVE-2020-36221,CVE-2020-36222,CVE-2020-36223,CVE-2020-36224,CVE-2020-36225,CVE-2020-36226,CVE-2020-36227,CVE-2020-36228,CVE-2020-36229,CVE-2020-36230,CVE-2021-27212
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-SU-2021:753-1
ReleasedTue Mar 9 17:09:57 2021
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1182331,1182333,CVE-2021-23840,CVE-2021-23841
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2021:786-1
ReleasedMon Mar 15 11:19:23 2021
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1176201
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2021:890-1
ReleasedFri Mar 19 15:51:41 2021
SummarySecurity update for glib2
Typesecurity
Severityimportant
References1182328,1182362,CVE-2021-27218,CVE-2021-27219
Description:

This update for glib2 fixes the following issues:



Advisory IDSUSE-RU-2021:924-1
ReleasedTue Mar 23 10:00:49 2021
SummaryRecommended update for filesystem
Typerecommended
Severitymoderate
References1078466,1146705,1175519,1178775,1180020,1180083,1180596,1181011,1181831,1183094
Description:

This update for filesystem the following issues:


This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2021:926-1
ReleasedTue Mar 23 13:20:24 2021
SummaryRecommended update for systemd-presets-common-SUSE
Typerecommended
Severitymoderate
References1083473,1112500,1115408,1165780,1183012
Description:

This update for systemd-presets-common-SUSE fixes the following issues:


Advisory IDSUSE-SU-2021:934-1
ReleasedWed Mar 24 12:18:21 2021
SummarySecurity update for gnutls
Typesecurity
Severityimportant
References1183456,1183457,CVE-2021-20231,CVE-2021-20232
Description:

This update for gnutls fixes the following issues:


Advisory IDSUSE-SU-2021:948-1
ReleasedWed Mar 24 14:31:34 2021
SummarySecurity update for zstd
Typesecurity
Severitymoderate
References1183370,1183371,CVE-2021-24031,CVE-2021-24032
Description:

This update for zstd fixes the following issues:


Advisory IDSUSE-RU-2021:952-1
ReleasedThu Mar 25 14:36:56 2021
SummaryRecommended update for libunwind
Typerecommended
Severitymoderate
References1160876,1171549
Description:

This update for libunwind fixes the following issues:


Advisory IDSUSE-SU-2021:956-1
ReleasedThu Mar 25 19:19:02 2021
SummarySecurity update for libzypp, zypper
Typesecurity
Severitymoderate
References1050625,1174016,1177238,1177275,1177427,1177583,1178910,1178966,1179083,1179222,1179816,1179847,1179909,1180077,1180663,1180721,1181328,1181622,1182629,CVE-2017-9271
Description:

This update for libzypp, zypper fixes the following issues:
Update zypper to version 1.14.43:


Update libzypp to 17.25.8:


Advisory IDSUSE-RU-2021:1004-1
ReleasedThu Apr 1 15:07:09 2021
SummaryRecommended update for libcap
Typerecommended
Severitymoderate
References1180073
Description:

This update for libcap fixes the following issues:


Advisory IDSUSE-RU-2021:1141-1
ReleasedMon Apr 12 13:13:36 2021
SummaryRecommended update for openldap2
Typerecommended
Severitylow
References1182791
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-RU-2021:1169-1
ReleasedTue Apr 13 15:01:42 2021
SummaryRecommended update for procps
Typerecommended
Severitylow
References1181976
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2021:1291-1
ReleasedWed Apr 21 14:04:06 2021
SummaryRecommended update for mpfr
Typerecommended
Severitymoderate
References1141190
Description:

This update for mpfr fixes the following issues:


Technical library fixes:


Advisory IDSUSE-RU-2021:1295-1
ReleasedWed Apr 21 14:08:19 2021
SummaryRecommended update for systemd-presets-common-SUSE
Typerecommended
Severitymoderate
References1184136
Description:

This update for systemd-presets-common-SUSE fixes the following issues:


Advisory IDSUSE-OU-2021:1296-1
ReleasedWed Apr 21 14:09:28 2021
SummaryOptional update for e2fsprogs
Typeoptional
Severitylow
References1183791
Description:

This update for e2fsprogs fixes the following issues:


This patch does not fix any user visible issues and is therefore optional to install.


Advisory IDSUSE-RU-2021:1297-1
ReleasedWed Apr 21 14:10:10 2021
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1178219
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2021:1407-1
ReleasedWed Apr 28 15:49:02 2021
SummaryRecommended update for libcap
Typerecommended
Severityimportant
References1184690
Description:

This update for libcap fixes the following issues:


Advisory IDSUSE-SU-2021:1412-1
ReleasedWed Apr 28 17:09:28 2021
SummarySecurity update for libnettle
Typesecurity
Severityimportant
References1184401,CVE-2021-20305
Description:

This update for libnettle fixes the following issues:


Advisory IDSUSE-RU-2021:1449-1
ReleasedFri Apr 30 08:08:25 2021
SummaryRecommended update for systemd-presets-branding-SLE
Typerecommended
Severitymoderate
References1165780
Description:

This update for systemd-presets-branding-SLE fixes the following issues:


Advisory IDSUSE-SU-2021:1523-1
ReleasedWed May 5 18:24:20 2021
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1185408,1185409,1185410,CVE-2021-3516,CVE-2021-3517,CVE-2021-3518
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2021:1527-1
ReleasedThu May 6 08:58:53 2021
SummaryRecommended update for bash
Typerecommended
Severityimportant
References1183064
Description:

This update for bash fixes the following issues:


Advisory IDSUSE-RU-2021:1543-1
ReleasedFri May 7 15:16:33 2021
SummaryRecommended update for patterns-microos
Typerecommended
Severitymoderate
References1184435
Description:

This update for patterns-microos provides the following fix:


Advisory IDSUSE-RU-2021:1549-1
ReleasedMon May 10 13:48:00 2021
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1185417
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2021:1565-1
ReleasedTue May 11 14:20:04 2021
SummaryRecommended update for krb5
Typerecommended
Severitymoderate
References1185163
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-OU-2021:1592-1
ReleasedWed May 12 13:47:41 2021
SummaryOptional update for sed
Typeoptional
Severitylow
References1183797
Description:

This update for sed fixes the following issues:


This patch is optional to install.


Advisory IDSUSE-RU-2021:1602-1
ReleasedThu May 13 16:35:19 2021
SummaryRecommended update for libsolv, libzypp
Typerecommended
Severitymoderate
References1180851,1181874,1182936,1183628,1184997,1185239
Description:

This update for libsolv and libzypp fixes the following issues:
libsolv:
Upgrade from version 0.7.17 to version 0.7.19


libzypp:
Upgrade from version 17.25.8 to version 17.25.10


Advisory IDSUSE-RU-2021:1612-1
ReleasedFri May 14 17:09:39 2021
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1184614
Description:

This update for openldap2 fixes the following issue:


Advisory IDSUSE-RU-2021:1618-1
ReleasedMon May 17 13:11:28 2021
SummaryRecommended update for llvm7 and libqt5-qttools
Typerecommended
Severitymoderate
References1067478,1109367,1145085,1184920
Description:

This update for llvm7 and libqt5-qttools fixes the following issues:
libqt5-qttools:


llvm7:


- The library is unusable without the builtin headers. Currently consumers of `libclang` have to require `clang` as well, although only the headers are needed.


Advisory IDSUSE-RU-2021:1643-1
ReleasedWed May 19 13:51:48 2021
SummaryRecommended update for pam
Typerecommended
Severityimportant
References1181443,1184358,1185562
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2021:1647-1
ReleasedWed May 19 13:59:12 2021
SummarySecurity update for lz4
Typesecurity
Severityimportant
References1185438,CVE-2021-3520
Description:

This update for lz4 fixes the following issues:


Advisory IDSUSE-SU-2021:1654-1
ReleasedWed May 19 16:43:36 2021
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1185408,1185409,1185410,1185698,CVE-2021-3516,CVE-2021-3517,CVE-2021-3518,CVE-2021-3537
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2021:1809-1
ReleasedMon May 31 16:24:59 2021
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1177976,1183933,1186114,CVE-2021-22876,CVE-2021-22898
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-RU-2021:1861-1
ReleasedFri Jun 4 09:59:40 2021
SummaryRecommended update for gcc10
Typerecommended
Severitymoderate
References1029961,1106014,1178577,1178624,1178675,1182016
Description:

This update for gcc10 fixes the following issues:


Advisory IDSUSE-SU-2021:1917-1
ReleasedWed Jun 9 14:48:05 2021
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1186015,CVE-2021-3541
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2021:1926-1
ReleasedThu Jun 10 08:38:14 2021
SummaryRecommended update for gcc
Typerecommended
Severitymoderate
References1096677
Description:

This update for gcc fixes the following issues:


Advisory IDSUSE-RU-2021:1953-1
ReleasedThu Jun 10 16:18:50 2021
SummaryRecommended update for gpg2
Typerecommended
Severitymoderate
References1161268,1172308
Description:

This update for gpg2 fixes the following issues:


Advisory IDSUSE-SU-2021:2143-1
ReleasedWed Jun 23 16:27:04 2021
SummarySecurity update for libnettle
Typesecurity
Severityimportant
References1187060,CVE-2021-3580
Description:

This update for libnettle fixes the following issues:


Advisory IDSUSE-SU-2021:2157-1
ReleasedThu Jun 24 15:40:14 2021
SummarySecurity update for libgcrypt
Typesecurity
Severityimportant
References1187212,CVE-2021-33560
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2021:2173-1
ReleasedMon Jun 28 14:59:45 2021
SummaryRecommended update for automake
Typerecommended
Severitymoderate
References1040589,1047218,1182604,1185540,1186049
Description:

This update for automake fixes the following issues:


This update for pcre fixes the following issues:

This update for brp-check-suse fixes the following issues:


Advisory IDSUSE-RU-2021:2178-1
ReleasedMon Jun 28 15:56:15 2021
SummaryRecommended update for systemd-presets-common-SUSE
Typerecommended
Severitymoderate
References1186561
Description:

This update for systemd-presets-common-SUSE fixes the following issues:
When installing the systemd-presets-common-SUSE package for the first time in a new system, it might happen that some services are installed before systemd so the %systemd_pre/post macros would not work. This is handled by enabling all preset services in this package's %posttrans section but it wasn't enabling user services, just system services. Now it enables also the user services installed before this package (bsc#1186561)


Advisory IDSUSE-SU-2021:2196-1
ReleasedTue Jun 29 09:41:39 2021
SummarySecurity update for lua53
Typesecurity
Severitymoderate
References1175448,1175449,CVE-2020-24370,CVE-2020-24371
Description:

This update for lua53 fixes the following issues:
Update to version 5.3.6:


Advisory IDSUSE-RU-2021:2205-1
ReleasedWed Jun 30 09:17:41 2021
SummaryRecommended update for openldap2
Typerecommended
Severityimportant
References1187210
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-RU-2021:2246-1
ReleasedMon Jul 5 15:17:49 2021
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1154935,1167471,1178561,1184761,1184967,1185046,1185331,1185807,1185958,1187292,1187400
Description:

This update for systemd fixes the following issues:
cgroup: Parse infinity properly for memory protections. (bsc#1167471) cgroup: Make empty assignments reset to default. (bsc#1167471) cgroup: Support 0-value for memory protection directives. (bsc#1167471) core/cgroup: Fixed an issue with ignored parameter of 'MemorySwapMax=0'. (bsc#1154935) bus-unit-util: Add proper 'MemorySwapMax' serialization. core: Accept MemorySwapMax= properties that are scaled. execute: Make sure to call into PAM after initializing resource limits. (bsc#1184967) core: Rename 'ShutdownWatchdogSec' to 'RebootWatchdogSec'. (bsc#1185331) Return -EAGAIN instead of -EALREADY from unit_reload. (bsc#1185046) rules: Don't ignore Xen virtual interfaces anymore. (bsc#1178561) write_net_rules: Set execute bits. (bsc#1178561) udev: Rework network device renaming. Revert 'Revert 'udev: Network device renaming - immediately give up if the target name isn't available'' mount-util: tape over name_to_handle_at() flakiness (#7517) (bsc#1184761) core: fix output (logging) for mount units (#7603) (bsc#1187400) udev requires systemd in its %post (bsc#1185958) cgroup: Parse infinity properly for memory protections (bsc#1167471) cgroup: Make empty assignments reset to default (bsc#1167471) cgroup: Support 0-value for memory protection directives (bsc#1167471) Create /run/lock/subsys again (bsc#1187292) The creation of this directory was mistakenly dropped when 'filesystem' package took the initialization of the generic paths over. Expect 644 permissions for /usr/lib/udev/compat-symlink-generation (bsc#1185807)


Advisory IDSUSE-SU-2021:2292-1
ReleasedMon Jul 12 08:25:20 2021
SummarySecurity update for dbus-1
Typesecurity
Severityimportant
References1187105,CVE-2020-35512
Description:

This update for dbus-1 fixes the following issues:


Advisory IDSUSE-SU-2021:2320-1
ReleasedWed Jul 14 17:01:06 2021
SummarySecurity update for sqlite3
Typesecurity
Severityimportant
References1157818,1158812,1158958,1158959,1158960,1159491,1159715,1159847,1159850,1160309,1160438,1160439,1164719,1172091,1172115,1172234,1172236,1172240,1173641,928700,928701,CVE-2015-3414,CVE-2015-3415,CVE-2019-19244,CVE-2019-19317,CVE-2019-19603,CVE-2019-19645,CVE-2019-19646,CVE-2019-19880,CVE-2019-19923,CVE-2019-19924,CVE-2019-19925,CVE-2019-19926,CVE-2019-19959,CVE-2019-20218,CVE-2020-13434,CVE-2020-13435,CVE-2020-13630,CVE-2020-13631,CVE-2020-13632,CVE-2020-15358,CVE-2020-9327
Description:

This update for sqlite3 fixes the following issues:


Advisory IDSUSE-SU-2021:2404-1
ReleasedTue Jul 20 14:21:30 2021
SummarySecurity update for systemd
Typesecurity
Severitymoderate
References1184994,1188063,CVE-2021-33910
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2021:2440-1
ReleasedWed Jul 21 13:48:24 2021
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1188217,1188218,1188219,1188220,CVE-2021-22922,CVE-2021-22923,CVE-2021-22924,CVE-2021-22925
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2021:2689-1
ReleasedMon Aug 16 10:54:52 2021
SummarySecurity update for cpio
Typesecurity
Severityimportant
References1189206,CVE-2021-38185
Description:

This update for cpio fixes the following issues:
It was possible to trigger Remote code execution due to a integer overflow (CVE-2021-38185, bsc#1189206)


Advisory IDSUSE-SU-2021:2760-1
ReleasedTue Aug 17 17:11:14 2021
SummarySecurity update for c-ares
Typesecurity
Severityimportant
References1188881,CVE-2021-3672
Description:

This update for c-ares fixes the following issues:
Version update to git snapshot 1.17.1+20200724:


Advisory IDSUSE-RU-2021:2763-1
ReleasedTue Aug 17 17:16:22 2021
SummaryRecommended update for cpio
Typerecommended
Severitycritical
References1189465
Description:

This update for cpio fixes the following issues:


Advisory IDSUSE-RU-2021:2780-1
ReleasedThu Aug 19 16:09:15 2021
SummaryRecommended update for cpio
Typerecommended
Severitycritical
References1189465,CVE-2021-38185
Description:

This update for cpio fixes the following issues:


Advisory IDSUSE-SU-2021:2800-1
ReleasedFri Aug 20 10:43:04 2021
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1188571,CVE-2021-36222
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-SU-2021:2810-1
ReleasedMon Aug 23 12:14:30 2021
SummarySecurity update for dbus-1
Typesecurity
Severitymoderate
References1172505,CVE-2020-12049
Description:

This update for dbus-1 fixes the following issues:


Advisory IDSUSE-SU-2021:2831-1
ReleasedTue Aug 24 16:20:45 2021
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1189521,CVE-2021-3712
Description:

This update for openssl-1_1 fixes the following security issue:


Advisory IDSUSE-RU-2021:2938-1
ReleasedFri Sep 3 09:19:36 2021
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1184614
Description:


This update for openldap2 fixes the following issue:


Advisory IDSUSE-SU-2021:2968-1
ReleasedTue Sep 7 09:53:00 2021
SummarySecurity update for openssl-1_1
Typesecurity
Severitylow
References1189521,CVE-2021-3712
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2021:2993-1
ReleasedThu Sep 9 14:31:33 2021
SummaryRecommended update for gcc
Typerecommended
Severitymoderate
References1185348
Description:

This update for gcc fixes the following issues:


Advisory IDSUSE-RU-2021:3001-1
ReleasedThu Sep 9 15:08:13 2021
SummaryRecommended update for netcfg
Typerecommended
Severitymoderate
References1189683
Description:

This update for netcfg fixes the following issues:


Advisory IDSUSE-RU-2021:3022-1
ReleasedMon Sep 13 10:48:16 2021
SummaryRecommended update for c-ares
Typerecommended
Severityimportant
References1190225
Description:

This update for c-ares fixes the following issue:


Advisory IDSUSE-RU-2021:3182-1
ReleasedTue Sep 21 17:04:26 2021
SummaryRecommended update for file
Typerecommended
Severitymoderate
References1189996
Description:

This update for file fixes the following issues:


Advisory IDSUSE-SU-2021:3297-1
ReleasedWed Oct 6 16:53:29 2021
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1190373,1190374,CVE-2021-22946,CVE-2021-22947
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2021:3348-1
ReleasedTue Oct 12 13:08:06 2021
SummarySecurity update for systemd
Typesecurity
Severitymoderate
References1134353,1171962,1184994,1188018,1188063,1188291,1188713,1189480,1190234,CVE-2021-33910
Description:

This update for systemd fixes the following issues:



Advisory IDSUSE-SU-2021:3385-1
ReleasedTue Oct 12 15:54:31 2021
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1186489,1187911,CVE-2021-33574,CVE-2021-35942
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-SU-2021:3447-1
ReleasedFri Oct 15 09:05:15 2021
SummarySecurity update for the Linux Kernel
Typesecurity
Severityimportant
References1065729,1148868,1152489,1154353,1159886,1167773,1170774,1173746,1176940,1184439,1184804,1185302,1185677,1185726,1185762,1187167,1188067,1188651,1188986,1189297,1189841,1189884,1190023,1190062,1190115,1190159,1190358,1190406,1190432,1190467,1190523,1190534,1190543,1190576,1190595,1190596,1190598,1190620,1190626,1190679,1190705,1190717,1190746,1190758,1190784,1190785,1191172,1191193,1191240,1191292,CVE-2020-3702,CVE-2021-3669,CVE-2021-3744,CVE-2021-3752,CVE-2021-3764,CVE-2021-40490
Description:



The SUSE Linux Enterprise 15 SP2 kernel was updated.

The following security bugs were fixed:


The following non-security bugs were fixed:


Advisory IDSUSE-SU-2021:3454-1
ReleasedMon Oct 18 09:29:26 2021
SummarySecurity update for krb5
Typesecurity
Severitymoderate
References1189929,CVE-2021-37750
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-RU-2021:3480-1
ReleasedWed Oct 20 11:24:10 2021
SummaryRecommended update for yast2-network
Typerecommended
Severitymoderate
References1185016,1185524,1186910,1187270,1187512,1188344,1190645,1190739,1190915,1190933
Description:

This update for yast2-network fixes the following issues:


Advisory IDSUSE-SU-2021:3490-1
ReleasedWed Oct 20 16:31:55 2021
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1190793,CVE-2021-39537
Description:

This update for ncurses fixes the following issues:


Advisory IDSUSE-RU-2021:3494-1
ReleasedWed Oct 20 16:48:46 2021
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1190052
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2021:3510-1
ReleasedTue Oct 26 11:22:15 2021
SummaryRecommended update for pam
Typerecommended
Severityimportant
References1191987
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2021:3523-1
ReleasedTue Oct 26 15:40:13 2021
SummarySecurity update for util-linux
Typesecurity
Severitymoderate
References1122417,1125886,1178236,1188921,CVE-2021-37600
Description:

This update for util-linux fixes the following issues:
Update to version 2.33.2 to provide seamless update from SLE12 SP5 to SLE15 SP2:


Advisory IDSUSE-SU-2021:3529-1
ReleasedWed Oct 27 09:23:32 2021
SummarySecurity update for pcre
Typesecurity
Severitymoderate
References1172973,1172974,CVE-2019-20838,CVE-2020-14155
Description:

This update for pcre fixes the following issues:
Update pcre to version 8.45:


Advisory IDSUSE-SU-2021:3616-1
ReleasedThu Nov 4 12:29:16 2021
SummarySecurity update for binutils
Typesecurity
Severitymoderate
References1179898,1179899,1179900,1179901,1179902,1179903,1180451,1180454,1180461,1181452,1182252,1183511,1184620,1184794,CVE-2020-16590,CVE-2020-16591,CVE-2020-16592,CVE-2020-16593,CVE-2020-16598,CVE-2020-16599,CVE-2020-35448,CVE-2020-35493,CVE-2020-35496,CVE-2020-35507,CVE-2021-20197,CVE-2021-20284,CVE-2021-3487
Description:

This update for binutils fixes the following issues:
Update to binutils 2.37:


The semantics of the =follow-links option have also been slightly changed. When enabled, the option allows for the loading of symbol tables and string tables from the separate files which can be used to enhance the information displayed when dumping other sections, but it does not automatically imply that information from the separate files should be displayed.
If other debug section display options are also enabled (eg '--debug-dump=info') then the contents of matching sections in both the main file and the separate debuginfo file *will* be displayed. This is because in most cases the debug section will only be present in one of the files.
If however non-debug section display options are enabled (eg '--sections') then the contents of matching parts of the separate debuginfo file will *not* be displayed. This is because in most cases the user probably only wanted to load the symbol information from the separate debuginfo file. In order to change this behaviour a new command line option --process-links can be used. This will allow di0pslay options to applied to both the main file and any separate debuginfo files.

Update to binutils 2.36:
New features in the Assembler:

* When setting the link order attribute of ELF sections, it is now possible to use a numeric section index instead of symbol name. * Added a .nop directive to generate a single no-op instruction in a target neutral manner. This instruction does have an effect on DWARF line number generation, if that is active. * Removed --reduce-memory-overheads and --hash-size as gas now uses hash tables that can be expand and shrink automatically.

* Add support for AVX VNNI, HRESET, UINTR, TDX, AMX and Key Locker instructions. * Support non-absolute segment values for lcall and ljmp. * Add {disp16} pseudo prefix to x86 assembler. * Configure with --enable-x86-used-note by default for Linux/x86.

* Add support for Cortex-A78, Cortex-A78AE and Cortex-X1, Cortex-R82, Neoverse V1, and Neoverse N2 cores. * Add support for ETMv4 (Embedded Trace Macrocell), ETE (Embedded Trace Extension), TRBE (Trace Buffer Extension), CSRE (Call Stack Recorder Extension) and BRBE (Branch Record Buffer Extension) system registers. * Add support for Armv8-R and Armv8.7-A ISA extensions. * Add support for DSB memory nXS barrier, WFET and WFIT instruction for Armv8.7. * Add support for +csre feature for -march. Add CSR PDEC instruction for CSRE feature in AArch64. * Add support for +flagm feature for -march in Armv8.4 AArch64. * Add support for +ls64 feature for -march in Armv8.7 AArch64. Add atomic 64-byte load/store instructions for this feature. * Add support for +pauth (Pointer Authentication) feature for -march in AArch64.
New features in the Linker:
* Add --error-handling-script= command line option to allow a helper script to be invoked when an undefined symbol or a missing library is encountered. This option can be suppressed via the configure time switch: --enable-error-handling-script=no. * Add -z x86-64-{baseline|v[234]} to the x86 ELF linker to mark x86-64-{baseline|v[234]} ISA level as needed. * Add -z unique-symbol to avoid duplicated local symbol names. * The creation of PE format DLLs now defaults to using a more secure set of DLL characteristics. * The linker now deduplicates the types in .ctf sections. The new command-line option --ctf-share-types describes how to do this: its default value, share-unconflicted, produces the most compact output. * The linker now omits the 'variable section' from .ctf sections by default, saving space. This is almost certainly what you want unless you are working on a project that has its own analogue of symbol tables that are not reflected in the ELF symtabs.
New features in other binary tools:
* The ar tool's previously unused l modifier is now used for specifying dependencies of a static library. The arguments of this option (or --record-libdeps long form option) will be stored verbatim in the __.LIBDEP member of the archive, which the linker may read at link time. * Readelf can now display the contents of LTO symbol table sections when asked to do so via the --lto-syms command line option. * Readelf now accepts the -C command line option to enable the demangling of symbol names. In addition the --demangle=