Container summary for


SUSE-CU-2023:3916-1

Container Advisory IDSUSE-CU-2023:3916-1
Container Tagscaasp/v4/cilium-operator:1.6.6 , caasp/v4/cilium-operator:1.6.6-rev6 , caasp/v4/cilium-operator:1.6.6-rev6-build3.17.1
Container Release3.17.1
The following patches have been included in this update:
Advisory IDSUSE-RU-2022:337-1
ReleasedFri Feb 4 10:24:28 2022
SummaryRecommended update for libzypp
Typerecommended
Severityimportant
References1193007,1194597,1194898
Description:

This update for libzypp fixes the following issues:


Advisory IDSUSE-RU-2022:473-1
ReleasedThu Feb 17 10:29:42 2022
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1195326
Description:

This update for libzypp, zypper fixes the following issues:


Advisory IDSUSE-RU-2022:511-1
ReleasedFri Feb 18 12:41:53 2022
SummaryRecommended update for coreutils
Typerecommended
Severitymoderate
References1082318,1189152
Description:

This update for coreutils fixes the following issues:


Advisory IDSUSE-RU-2022:523-1
ReleasedFri Feb 18 12:49:09 2022
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1193759,1193841
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2022:674-1
ReleasedWed Mar 2 13:24:38 2022
SummaryRecommended update for yast2-network
Typerecommended
Severitymoderate
References1187512
Description:

This update for yast2-network fixes the following issues:


Advisory IDSUSE-RU-2022:692-1
ReleasedThu Mar 3 15:46:47 2022
SummaryRecommended update for filesystem
Typerecommended
Severitymoderate
References1190447
Description:

This update for filesystem fixes the following issues:


Advisory IDSUSE-SU-2022:702-1
ReleasedThu Mar 3 18:22:59 2022
SummarySecurity update for cyrus-sasl
Typesecurity
Severityimportant
References1196036,CVE-2022-24407
Description:

This update for cyrus-sasl fixes the following issues:


Advisory IDSUSE-RU-2022:787-1
ReleasedThu Mar 10 11:20:13 2022
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References
Description:

This update for openldap2 fixes the following issue:


Advisory IDSUSE-RU-2022:808-1
ReleasedFri Mar 11 06:07:58 2022
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1195468
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-SU-2022:832-1
ReleasedMon Mar 14 17:27:03 2022
SummarySecurity update for glibc
Typesecurity
Severityimportant
References1193625,1194640,1194768,1194770,1195560,CVE-2015-8985,CVE-2021-3999,CVE-2022-23218,CVE-2022-23219
Description:


glibc was updated to fix the following issues:
Security issues fixed:


Also the following bug was fixed:


Advisory IDSUSE-SU-2022:845-1
ReleasedTue Mar 15 11:40:52 2022
SummarySecurity update for chrony
Typesecurity
Severitymoderate
References1099272,1115529,1128846,1162964,1172113,1173277,1174075,1174911,1180689,1181826,1187906,1190926,1194229,CVE-2020-14367
Description:

This update for chrony fixes the following issues:
Chrony was updated to 4.1, bringing features and bugfixes.
Update to 4.1
* Add support for NTS servers specified by IP address (matching Subject Alternative Name in server certificate) * Add source-specific configuration of trusted certificates * Allow multiple files and directories with trusted certificates * Allow multiple pairs of server keys and certificates * Add copy option to server/pool directive * Increase PPS lock limit to 40% of pulse interval * Perform source selection immediately after loading dump files * Reload dump files for addresses negotiated by NTS-KE server * Update seccomp filter and add less restrictive level * Restart ongoing name resolution on online command * Fix dump files to not include uncorrected offset * Fix initstepslew to accept time from own NTP clients * Reset NTP address and port when no longer negotiated by NTS-KE server



Update to 4.0
- Enhancements
- Add support for Network Time Security (NTS) authentication - Add support for AES-CMAC keys (AES128, AES256) with Nettle - Add authselectmode directive to control selection of unauthenticated sources - Add binddevice, bindacqdevice, bindcmddevice directives - Add confdir directive to better support fragmented configuration - Add sourcedir directive and 'reload sources' command to support dynamic NTP sources specified in files - Add clockprecision directive - Add dscp directive to set Differentiated Services Code Point (DSCP) - Add -L option to limit log messages by severity - Add -p option to print whole configuration with included files - Add -U option to allow start under non-root user - Allow maxsamples to be set to 1 for faster update with -q/-Q option - Avoid replacing NTP sources with sources that have unreachable address - Improve pools to repeat name resolution to get 'maxsources' sources - Improve source selection with trusted sources - Improve NTP loop test to prevent synchronisation to itself - Repeat iburst when NTP source is switched from offline state to online - Update clock synchronisation status and leap status more frequently - Update seccomp filter - Add 'add pool' command - Add 'reset sources' command to drop all measurements - Add authdata command to print details about NTP authentication - Add selectdata command to print details about source selection - Add -N option and sourcename command to print original names of sources - Add -a option to some commands to print also unresolved sources - Add -k, -p, -r options to clients command to select, limit, reset data
- Bug fixes
- Don’t set interface for NTP responses to allow asymmetric routing - Handle RTCs that don’t support interrupts - Respond to command requests with correct address on multihomed hosts - Removed features - Drop support for RIPEMD keys (RMD128, RMD160, RMD256, RMD320) - Drop support for long (non-standard) MACs in NTPv4 packets (chrony 2.x clients using non-MD5/SHA1 keys need to use option 'version 3') - Drop support for line editing with GNU Readline


Update to 3.5.1:
* Create new file when writing pidfile (CVE-2020-14367, bsc#1174911)





Update to 3.5:




Update to version 3.4
* Enhancements
+ Add filter option to server/pool/peer directive + Add minsamples and maxsamples options to hwtimestamp directive + Add support for faster frequency adjustments in Linux 4.19 + Change default pidfile to /var/run/chrony/chronyd.pid to allow chronyd without root privileges to remove it on exit + Disable sub-second polling intervals for distant NTP sources + Extend range of supported sub-second polling intervals + Get/set IPv4 destination/source address of NTP packets on FreeBSD + Make burst options and command useful with short polling intervals + Modify auto_offline option to activate when sending request failed + Respond from interface that received NTP request if possible + Add onoffline command to switch between online and offline state according to current system network configuration + Improve example NetworkManager dispatcher script
* Bug fixes
+ Avoid waiting in Linux getrandom system call + Fix PPS support on FreeBSD and NetBSD
Update to version 3.3
* Enhancements:
+ Add burst option to server/pool directive + Add stratum and tai options to refclock directive + Add support for Nettle crypto library + Add workaround for missing kernel receive timestamps on Linux + Wait for late hardware transmit timestamps + Improve source selection with unreachable sources + Improve protection against replay attacks on symmetric mode + Allow PHC refclock to use socket in /var/run/chrony + Add shutdown command to stop chronyd + Simplify format of response to manual list command + Improve handling of unknown responses in chronyc
* Bug fixes:
+ Respond to NTPv1 client requests with zero mode + Fix -x option to not require CAP_SYS_TIME under non-root user + Fix acquisitionport directive to work with privilege separation + Fix handling of socket errors on Linux to avoid high CPU usage + Fix chronyc to not get stuck in infinite loop after clock step


Advisory IDSUSE-SU-2022:853-1
ReleasedTue Mar 15 19:27:30 2022
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1196877,CVE-2022-0778
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2022:861-1
ReleasedTue Mar 15 23:30:48 2022
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1182959,1195149,1195792,1195856
Description:

This update for openssl-1_1 fixes the following issues:
openssl-1_1:

glibc:
linux-glibc-devel:

libxcrypt:

zlib:


Advisory IDSUSE-RU-2022:867-1
ReleasedWed Mar 16 07:14:44 2022
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1193805
Description:

This update for libtirpc fixes the following issues:


Advisory IDSUSE-RU-2022:874-1
ReleasedWed Mar 16 10:40:52 2022
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1197004
Description:

This update for openldap2 fixes the following issue:


Advisory IDSUSE-RU-2022:936-1
ReleasedTue Mar 22 18:10:17 2022
SummaryRecommended update for filesystem and systemd-rpm-macros
Typerecommended
Severitymoderate
References1196275,1196406
Description:

This update for filesystem and systemd-rpm-macros fixes the following issues:
filesystem:


systemd-rpm-macros:


Advisory IDSUSE-RU-2022:1021-1
ReleasedTue Mar 29 13:24:21 2022
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1195899
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2022:1047-1
ReleasedWed Mar 30 16:20:56 2022
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1196093,1197024
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2022:1061-1
ReleasedWed Mar 30 18:27:06 2022
SummarySecurity update for zlib
Typesecurity
Severityimportant
References1197459,CVE-2018-25032
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2022:1073-1
ReleasedFri Apr 1 11:45:01 2022
SummarySecurity update for yaml-cpp
Typesecurity
Severitymoderate
References1121227,1121230,1122004,1122021,CVE-2018-20573,CVE-2018-20574,CVE-2019-6285,CVE-2019-6292
Description:

This update for yaml-cpp fixes the following issues:


Advisory IDSUSE-RU-2022:1099-1
ReleasedMon Apr 4 12:53:05 2022
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1194883
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-RU-2022:1109-1
ReleasedMon Apr 4 17:50:01 2022
SummaryRecommended update for util-linux
Typerecommended
Severityimportant
References1172427,1194642
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2022:1131-1
ReleasedFri Apr 8 09:43:53 2022
SummarySecurity update for libsolv, libzypp, zypper
Typesecurity
Severityimportant
References1184501,1194848,1195999,1196061,1196317,1196368,1196514,1196925,1197134
Description:

This update for libsolv, libzypp, zypper fixes the following issues:
Security relevant fix:


libsolv to 0.7.22:

libzypp to 17.30.0:

zypper to 1.14.52:


Advisory IDSUSE-SU-2022:1158-1
ReleasedTue Apr 12 14:44:43 2022
SummarySecurity update for xz
Typesecurity
Severityimportant
References1198062,CVE-2022-1271
Description:

This update for xz fixes the following issues:


Advisory IDSUSE-RU-2022:1302-1
ReleasedFri Apr 22 10:04:46 2022
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1196939
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-RU-2022:1409-1
ReleasedTue Apr 26 12:54:57 2022
SummaryRecommended update for gcc11
Typerecommended
Severitymoderate
References1195628,1196107
Description:

This update for gcc11 fixes the following issues:


Advisory IDSUSE-RU-2022:1452-1
ReleasedThu Apr 28 10:48:06 2022
SummaryRecommended update for perl
Typerecommended
Severitymoderate
References1193489
Description:

This update for perl fixes the following issues:


Advisory IDSUSE-RU-2022:1655-1
ReleasedFri May 13 15:36:10 2022
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1197794
Description:

This update for pam fixes the following issue:


Advisory IDSUSE-RU-2022:1658-1
ReleasedFri May 13 15:40:20 2022
SummaryRecommended update for libpsl
Typerecommended
Severityimportant
References1197771
Description:

This update for libpsl fixes the following issues:


Advisory IDSUSE-SU-2022:1688-1
ReleasedMon May 16 14:02:49 2022
SummarySecurity update for e2fsprogs
Typesecurity
Severityimportant
References1198446,CVE-2022-1304
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-RU-2022:1691-1
ReleasedMon May 16 15:13:39 2022
SummaryRecommended update for augeas
Typerecommended
Severitymoderate
References1197443
Description:

This update for augeas fixes the following issue:


Advisory IDSUSE-SU-2022:1750-1
ReleasedThu May 19 15:28:20 2022
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1196490,1199132,CVE-2022-23308,CVE-2022-29824
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2022:1832-1
ReleasedTue May 24 11:52:33 2022
SummarySecurity update for openldap2
Typesecurity
Severityimportant
References1191157,1197004,1199240,CVE-2022-29155
Description:

This update for openldap2 fixes the following issues:
Security:


Bugfixes:


Advisory IDSUSE-RU-2022:1887-1
ReleasedTue May 31 09:24:18 2022
SummaryRecommended update for grep
Typerecommended
Severitymoderate
References1040589
Description:

This update for grep fixes the following issues:


Advisory IDSUSE-RU-2022:2019-1
ReleasedWed Jun 8 16:50:07 2022
SummaryRecommended update for gcc11
Typerecommended
Severitymoderate
References1192951,1193659,1195283,1196861,1197065
Description:

This update for gcc11 fixes the following issues:
Update to the GCC 11.3.0 release.


Advisory IDSUSE-SU-2022:2068-1
ReleasedTue Jun 14 10:14:47 2022
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1185637,1199166,CVE-2022-1292
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2022:2179-1
ReleasedFri Jun 24 14:05:25 2022
SummarySecurity update for openssl
Typesecurity
Severitymoderate
References1200550,CVE-2022-2068
Description:

This update for openssl fixes the following issues:


Advisory IDSUSE-SU-2022:2311-1
ReleasedWed Jul 6 15:16:17 2022
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1201099,CVE-2022-2097
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2022:2361-1
ReleasedTue Jul 12 12:05:01 2022
SummarySecurity update for pcre
Typesecurity
Severityimportant
References1199232,CVE-2022-1586
Description:

This update for pcre fixes the following issues:


Advisory IDSUSE-SU-2022:2405-1
ReleasedFri Jul 15 11:47:57 2022
SummarySecurity update for p11-kit
Typesecurity
Severitymoderate
References1180065,CVE-2020-29362
Description:

This update for p11-kit fixes the following issues:


Advisory IDSUSE-RU-2022:2471-1
ReleasedThu Jul 21 04:42:58 2022
SummaryRecommended update for systemd
Typerecommended
Severityimportant
References1148309,1191502,1195529,1200170
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2022:2571-1
ReleasedThu Jul 28 04:20:52 2022
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1194550,1197684,1199042
Description:

This update for libzypp, zypper fixes the following issues:
libzypp:


zypper:


Advisory IDSUSE-SU-2022:2717-1
ReleasedTue Aug 9 12:54:16 2022
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1198627,CVE-2022-29458
Description:

This update for ncurses fixes the following issues:


Advisory IDSUSE-SU-2022:2829-1
ReleasedWed Aug 17 13:33:11 2022
SummarySecurity update for curl
Typesecurity
Severityimportant
References1199223,1199224,1200735,1200737,CVE-2022-27781,CVE-2022-27782,CVE-2022-32206,CVE-2022-32208
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2022:2830-1
ReleasedWed Aug 17 14:36:26 2022
SummarySecurity update for gnutls
Typesecurity
Severityimportant
References1196167,1202020,CVE-2021-4209,CVE-2022-2509
Description:

This update for gnutls fixes the following issues:


Advisory IDSUSE-RU-2022:2905-1
ReleasedFri Aug 26 05:30:33 2022
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1198341
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-RU-2022:2944-1
ReleasedWed Aug 31 05:39:14 2022
SummaryRecommended update for procps
Typerecommended
Severityimportant
References1181475
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-SU-2022:2947-1
ReleasedWed Aug 31 09:16:21 2022
SummarySecurity update for zlib
Typesecurity
Severityimportant
References1202175,CVE-2022-37434
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2022:2991-1
ReleasedThu Sep 1 16:04:30 2022
SummarySecurity update for libtirpc
Typesecurity
Severityimportant
References1198752,1200800,1201680,CVE-2021-46828
Description:

This update for libtirpc fixes the following issues:


Non-security fixes:


Advisory IDSUSE-RU-2022:2994-1
ReleasedFri Sep 2 10:44:54 2022
SummaryRecommended update for lame, libass, libcdio-paranoia, libdc1394, libgsm, libva, libvdpau, libvorbis, libvpx, libwebp, openjpeg, opus, speex, twolame
Typerecommended
Severitymoderate
References1198925
Description:


This update for lame, libass, libcdio-paranoia, libdc1394, libgsm, libva, libvdpau, libvorbis, libvpx, libwebp, openjpeg, opus, speex, twolame adds some missing 32bit libraries to some products. (bsc#1198925)
No codechanges were done in this update.


Advisory IDSUSE-RU-2022:3129-1
ReleasedWed Sep 7 04:42:53 2022
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1197178,1198731,1200842
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2022:3144-1
ReleasedWed Sep 7 11:04:23 2022
SummarySecurity update for gpg2
Typesecurity
Severityimportant
References1201225,CVE-2022-34903
Description:

This update for gpg2 fixes the following issues:


Advisory IDSUSE-RU-2022:3221-1
ReleasedFri Sep 9 04:31:28 2022
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1199895,1200993,1201092,1201576,1201638
Description:

This update for libzypp, zypper fixes the following issues:
libzypp:


zypper:


Advisory IDSUSE-RU-2022:3262-1
ReleasedTue Sep 13 15:34:29 2022
SummaryRecommended update for gcc11
Typerecommended
Severitymoderate
References1199140
Description:


This update for gcc11 ships some missing 32bit libraries for s390x. (bsc#1199140)


Advisory IDSUSE-RU-2022:3304-1
ReleasedMon Sep 19 11:43:25 2022
SummaryRecommended update for libassuan
Typerecommended
Severitymoderate
References
Description:

This update for libassuan fixes the following issues:


Advisory IDSUSE-SU-2022:3307-1
ReleasedMon Sep 19 13:26:51 2022
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1189802,1195773,1201783,CVE-2021-36690,CVE-2022-35737
Description:

This update for sqlite3 fixes the following issues:


Advisory IDSUSE-SU-2022:3549-1
ReleasedFri Oct 7 14:39:40 2022
SummarySecurity update for cyrus-sasl
Typesecurity
Severityimportant
References1159635,CVE-2019-19906
Description:

This update for cyrus-sasl fixes the following issues:


Advisory IDSUSE-RU-2022:3566-1
ReleasedTue Oct 11 16:19:09 2022
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitycritical
References1189282,1201972,1203649
Description:

This update for libzypp, zypper fixes the following issues:
libzypp:


zypper:


Advisory IDSUSE-SU-2022:3683-1
ReleasedFri Oct 21 11:48:39 2022
SummarySecurity update for libksba
Typesecurity
Severitycritical
References1204357,CVE-2022-3515
Description:

This update for libksba fixes the following issues:
- CVE-2022-3515: Fixed a possible overflow in the TLV parser (bsc#1204357).


Advisory IDSUSE-SU-2022:3774-1
ReleasedWed Oct 26 12:21:09 2022
SummarySecurity update for curl
Typesecurity
Severityimportant
References1202593,1204383,CVE-2022-32221,CVE-2022-35252
Description:

This update for curl fixes the following issues:
- CVE-2022-32221: Fixed POST following PUT confusion (bsc#1204383). - CVE-2022-35252: Fixed a potential injection of control characters into cookies (bsc#1202593).


Advisory IDSUSE-SU-2022:3784-1
ReleasedWed Oct 26 18:03:28 2022
SummarySecurity update for libtasn1
Typesecurity
Severitycritical
References1204690,CVE-2021-46848
Description:

This update for libtasn1 fixes the following issues:


Advisory IDSUSE-SU-2022:3871-1
ReleasedFri Nov 4 13:26:29 2022
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1201978,1204366,1204367,CVE-2016-3709,CVE-2022-40303,CVE-2022-40304
Description:

This update for libxml2 fixes the following issues:
- CVE-2016-3709: Fixed possible XSS vulnerability (bsc#1201978). - CVE-2022-40303: Fixed integer overflows with XML_PARSE_HUGE (bsc#1204366). - CVE-2022-40304: Fixed dict corruption caused by entity reference cycles (bsc#1204367).


Advisory IDSUSE-RU-2022:3882-1
ReleasedMon Nov 7 09:06:03 2022
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1180995
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2022:3905-1
ReleasedTue Nov 8 12:23:17 2022
SummaryRecommended update for aaa_base
Typerecommended
Severityimportant
References1196840,1199492,1199918,1199926,1199927
Description:

This update for aaa_base and iputils fixes the following issues:
aaa_base:


iputils:


Advisory IDSUSE-RU-2022:3910-1
ReleasedTue Nov 8 13:05:04 2022
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References
Description:

This update for pam fixes the following issue:


Advisory IDSUSE-RU-2022:3961-1
ReleasedMon Nov 14 07:33:50 2022
SummaryRecommended update for zlib
Typerecommended
Severityimportant
References1203652
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-RU-2022:3975-1
ReleasedMon Nov 14 15:41:13 2022
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1201959
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2022:4155-1
ReleasedMon Nov 21 14:36:17 2022
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1205126,CVE-2022-42898
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-RU-2022:4256-1
ReleasedMon Nov 28 12:36:32 2022
SummaryRecommended update for gcc12
Typerecommended
Severitymoderate
References
Description:

This update for gcc12 fixes the following issues:
This update ship the GCC 12 compiler suite and its base libraries.
The compiler baselibraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 11 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP3 and SP4, and provided in the 'Development Tools' module.
The Go, D and Ada language compiler parts are available unsupported via the PackageHub repositories.
To use gcc12 compilers use:


For a full changelog with all new GCC12 features, check out
https://gcc.gnu.org/gcc-12/changes.html


Advisory IDSUSE-SU-2022:4628-1
ReleasedWed Dec 28 09:23:13 2022
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1206337,CVE-2022-46908
Description:

This update for sqlite3 fixes the following issues:


Advisory IDSUSE-SU-2023:56-1
ReleasedMon Jan 9 11:13:43 2023
SummarySecurity update for libksba
Typesecurity
Severitymoderate
References1206579,CVE-2022-47629
Description:

This update for libksba fixes the following issues:


Advisory IDSUSE-RU-2023:181-1
ReleasedThu Jan 26 21:55:43 2023
SummaryRecommended update for procps
Typerecommended
Severitylow
References1206412
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2023:188-1
ReleasedFri Jan 27 12:07:19 2023
SummaryRecommended update for zlib
Typerecommended
Severityimportant
References1203652
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2023:308-1
ReleasedTue Feb 7 17:33:37 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1207533,1207534,1207536,CVE-2022-4304,CVE-2023-0215,CVE-2023-0286
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:446-1
ReleasedFri Feb 17 09:52:43 2023
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1194038,1205646
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-RU-2023:676-1
ReleasedWed Mar 8 14:33:23 2023
SummaryRecommended update for libxml2
Typerecommended
Severitymoderate
References1204585
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2023:776-1
ReleasedThu Mar 16 17:29:23 2023
SummaryRecommended update for gcc12
Typerecommended
Severitymoderate
References
Description:

This update for gcc12 fixes the following issues:
This update ships gcc12 also to the SUSE Linux Enterprise 15 SP1 LTSS and 15 SP2 LTSS products.
SUSE Linux Enterprise 15 SP3 and SP4 get only refreshed builds without changes

This update ship the GCC 12 compiler suite and its base libraries.
The compiler baselibraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 11 ones.
The new compilers for C, C++, and Fortran are provided in the SUSE Linux Enterprise Module for Development Tools.
To use gcc12 compilers use:


For a full changelog with all new GCC12 features, check out
https://gcc.gnu.org/gcc-12/changes.html


Advisory IDSUSE-RU-2023:787-1
ReleasedThu Mar 16 19:37:18 2023
SummaryRecommended update for libsolv, libzypp, zypper
Typerecommended
Severityimportant
References1178233,1203248,1203249,1203715,1204548,1204956,1205570,1205636,1206949
Description:

This update for libsolv, libzypp, zypper fixes the following issues:
libsolv:


libzypp:
zypper:


Advisory IDSUSE-SU-2023:1748-1
ReleasedTue Apr 4 09:06:59 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1209624,CVE-2023-0464
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2023:1908-1
ReleasedWed Apr 19 08:38:53 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1209873,1209878,CVE-2023-0465,CVE-2023-0466
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:1991-1
ReleasedTue Apr 25 13:22:19 2023
SummaryRecommended update for permissions
Typerecommended
Severitymoderate
References1160285,1210096
Description:

This update for permissions fixes the following issues:


Advisory IDSUSE-SU-2023:2048-1
ReleasedWed Apr 26 21:05:45 2023
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1065270,1199132,1204585,1210411,1210412,CVE-2021-3541,CVE-2022-29824,CVE-2023-28484,CVE-2023-29469
Description:

This update for libxml2 fixes the following issues:



Advisory IDSUSE-SU-2023:2068-1
ReleasedFri Apr 28 13:55:00 2023
SummarySecurity update for shadow
Typesecurity
Severitymoderate
References1210507,CVE-2023-29383
Description:

This update for shadow fixes the following issues:


Advisory IDSUSE-SU-2023:2074-1
ReleasedFri Apr 28 17:02:25 2023
SummarySecurity update for zstd
Typesecurity
Severitymoderate
References1209533,CVE-2022-4899
Description:

This update for zstd fixes the following issues:


Advisory IDSUSE-RU-2023:2104-1
ReleasedThu May 4 21:05:30 2023
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1209122
Description:

This update for procps fixes the following issue:


Advisory IDSUSE-SU-2023:2111-1
ReleasedFri May 5 14:34:00 2023
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1210434,CVE-2023-29491
Description:

This update for ncurses fixes the following issues:


Advisory IDSUSE-RU-2023:2133-1
ReleasedTue May 9 13:37:10 2023
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1206513
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2023:2226-1
ReleasedWed May 17 09:55:49 2023
SummarySecurity update for curl
Typesecurity
Severityimportant
References1206309,1207992,1209209,1209210,1209211,1209212,1209214,1211231,1211232,1211233,1211339,CVE-2022-43552,CVE-2023-23916,CVE-2023-27533,CVE-2023-27534,CVE-2023-27535,CVE-2023-27536,CVE-2023-27538,CVE-2023-28320,CVE-2023-28321,CVE-2023-28322
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-RU-2023:2248-1
ReleasedThu May 18 17:06:33 2023
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1127591,1195633,1208329,1209406,1210870
Description:

This update for libzypp, zypper fixes the following issues:


Advisory IDSUSE-SU-2023:2327-1
ReleasedTue May 30 16:44:58 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1211430,CVE-2023-2650
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:2333-1
ReleasedWed May 31 09:01:28 2023
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1210593
Description:

This update for zlib fixes the following issue:


Advisory IDSUSE-RU-2023:2472-1
ReleasedThu Jun 8 10:05:45 2023
SummaryRecommended update for libzypp
Typerecommended
Severitymoderate
References1211661
Description:

This update for libzypp fixes the following issues:


Advisory IDSUSE-RU-2023:2496-1
ReleasedTue Jun 13 15:19:20 2023
SummaryRecommended update for libzypp
Typerecommended
Severityimportant
References1212187
Description:

This update for libzypp fixes the following issue:


Advisory IDSUSE-SU-2023:2622-1
ReleasedFri Jun 23 13:42:21 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1201627,1207534,CVE-2022-4304
Description:

This update for openssl-1_1 fixes the following issues:



Advisory IDSUSE-RU-2023:2625-1
ReleasedFri Jun 23 17:16:11 2023
SummaryRecommended update for gcc12
Typerecommended
Severitymoderate
References
Description:

This update for gcc12 fixes the following issues:


* includes regression and other bug fixes


Advisory IDSUSE-RU-2023:2644-1
ReleasedTue Jun 27 09:23:49 2023
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1211261,1212187,1212222
Description:

This update for libzypp, zypper fixes the following issues:
libzypp was updated to version 17.31.14 (22):


zypper was updated to version 1.14.61:


Advisory IDSUSE-RU-2023:2918-1
ReleasedThu Jul 20 12:00:17 2023
SummaryRecommended update for gpgme
Typerecommended
Severitymoderate
References1089497
Description:

This update for gpgme fixes the following issues:
gpgme:

libassuan:


Advisory IDSUSE-RU-2023:2955-1
ReleasedTue Jul 25 05:22:54 2023
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1193015
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2023:2956-1
ReleasedTue Jul 25 08:33:38 2023
SummarySecurity update for libcap
Typesecurity
Severitymoderate
References1211419,CVE-2023-2603
Description:

This update for libcap fixes the following issues:


Advisory IDSUSE-SU-2023:2961-1
ReleasedTue Jul 25 09:32:56 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1213487,CVE-2023-3446
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:3068-1
ReleasedMon Jul 31 16:33:43 2023
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1213517
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2023:3434-1
ReleasedThu Aug 24 15:05:22 2023
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1214054,CVE-2023-36054
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-SU-2023:3472-1
ReleasedTue Aug 29 10:55:16 2023
SummarySecurity update for procps
Typesecurity
Severitylow
References1214290,CVE-2023-4016
Description:

This update for procps fixes the following issues:
- CVE-2023-4016: Fixed ps buffer overflow (bsc#1214290).


Advisory IDSUSE-RU-2023:3513-1
ReleasedFri Sep 1 15:47:41 2023
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1158763,1210740,1213231,1213557,1213673
Description:

This update for libzypp, zypper fixes the following issues:


Advisory IDSUSE-SU-2023:3535-1
ReleasedTue Sep 5 14:46:31 2023
SummarySecurity update for glib2
Typesecurity
Severityimportant
References1183533,1211945,1211946,1211947,1211948,1211951,CVE-2021-28153,CVE-2023-29499,CVE-2023-32611,CVE-2023-32636,CVE-2023-32643,CVE-2023-32665
Description:

This update for glib2 fixes the following issues:


Advisory IDSUSE-SU-2023:3661-1
ReleasedMon Sep 18 21:44:09 2023
SummarySecurity update for gcc12
Typesecurity
Severityimportant
References1214052,CVE-2023-4039
Description:

This update for gcc12 fixes the following issues:


Advisory IDSUSE-SU-2023:3698-1
ReleasedWed Sep 20 11:01:15 2023
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1214768,CVE-2023-39615
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2023:3937-1
ReleasedTue Oct 3 11:33:38 2023
SummaryRecommended update for zypper
Typerecommended
Severitymoderate
References1213854,1214292,1214395,1215007
Description:

This update for zypper fixes the following issues:


Advisory IDSUSE-SU-2023:3958-1
ReleasedWed Oct 4 09:16:06 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1213853,CVE-2023-3817
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2023:4025-1
ReleasedTue Oct 10 13:41:02 2023
SummarySecurity update for shadow
Typesecurity
Severitylow
References1214806,CVE-2023-4641
Description:

This update for shadow fixes the following issues:


Advisory IDSUSE-SU-2023:4047-1
ReleasedWed Oct 11 10:40:26 2023
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1215286,1215505,CVE-2023-4813
Description:

This update for glibc fixes the following issues:
Security issue fixed:



Other changes:


Advisory IDSUSE-SU-2023:4162-1
ReleasedMon Oct 23 15:33:03 2023
SummarySecurity update for gcc13
Typesecurity
Severityimportant
References1206480,1206684,1210557,1211427,1212101,1213915,1214052,1214460,CVE-2023-4039
Description:

This update for gcc13 fixes the following issues:
This update ship the GCC 13.2 compiler suite and its base libraries.
The compiler base libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 12 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP4 and SP5, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc13 compilers use:


For a full changelog with all new GCC13 features, check out
https://gcc.gnu.org/gcc-13/changes.html

Detailed changes:




Advisory IDSUSE-SU-2023:4217-1
ReleasedThu Oct 26 12:20:27 2023
SummarySecurity update for zlib
Typesecurity
Severitymoderate
References1216378,CVE-2023-45853
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2023:4458-1
ReleasedThu Nov 16 14:38:48 2023
SummarySecurity update for gcc13
Typesecurity
Severityimportant
References1206480,1206684,1210557,1211427,1212101,1213915,1214052,1214460,1215427,1216664,CVE-2023-4039
Description:

This update for gcc13 fixes the following issues:
This update ship the GCC 13.2 compiler suite and its base libraries.
The compiler base libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 12 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP4 and SP5, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc13 compilers use:


For a full changelog with all new GCC13 features, check out
https://gcc.gnu.org/gcc-13/changes.html

Detailed changes:




Advisory IDSUSE-SU-2023:4464-1
ReleasedThu Nov 16 17:56:12 2023
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1216129,CVE-2023-45322
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2023:4512-1
ReleasedTue Nov 21 17:25:02 2023
SummarySecurity update for util-linux
Typesecurity
Severityimportant
References1213865,CVE-2018-7738
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2023:4520-1
ReleasedTue Nov 21 17:42:13 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1216922,CVE-2023-5678
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:4536-1
ReleasedThu Nov 23 08:19:05 2023
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1041742,1203760,1212422,1215979,1216091
Description:

This update for libzypp, zypper fixes the following issues:


SUSE-CU-2022:71-1

Container Advisory IDSUSE-CU-2022:71-1
Container Tagscaasp/v4/cilium-operator:1.6.6 , caasp/v4/cilium-operator:1.6.6-rev5 , caasp/v4/cilium-operator:1.6.6-rev5-build3.12.264
Container Release3.12.264
The following patches have been included in this update:
Advisory IDSUSE-RU-2020:3853-1
ReleasedWed Dec 16 12:27:27 2020
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1084671,1169006,1174942,1175514,1175623,1178554,1178825
Description:

This update for util-linux fixes the following issue:


Advisory IDSUSE-RU-2020:3942-1
ReleasedTue Dec 29 12:22:01 2020
SummaryRecommended update for libidn2
Typerecommended
Severitymoderate
References1180138
Description:

This update for libidn2 fixes the following issues:


Advisory IDSUSE-RU-2020:3943-1
ReleasedTue Dec 29 12:24:45 2020
SummaryRecommended update for libxml2
Typerecommended
Severitymoderate
References1178823
Description:

This update for libxml2 fixes the following issues:
Avoid quadratic checking of identity-constraints, speeding up XML validation (bsc#1178823)


Advisory IDSUSE-SU-2021:129-1
ReleasedThu Jan 14 12:26:15 2021
SummarySecurity update for openldap2
Typesecurity
Severitymoderate
References1178909,1179503,CVE-2020-25709,CVE-2020-25710
Description:

This update for openldap2 fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2021:220-1
ReleasedTue Jan 26 14:00:51 2021
SummaryRecommended update for keyutils
Typerecommended
Severitymoderate
References1180603
Description:

This update for keyutils fixes the following issues:


Advisory IDSUSE-RU-2021:233-1
ReleasedWed Jan 27 12:15:33 2021
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1141597,1174436,1175458,1177490,1179363,1179824,1180225
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2021:265-1
ReleasedMon Feb 1 15:06:45 2021
SummaryRecommended update for systemd
Typerecommended
Severityimportant
References1178775,1180885
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2021:293-1
ReleasedWed Feb 3 12:52:34 2021
SummaryRecommended update for gmp
Typerecommended
Severitymoderate
References1180603
Description:

This update for gmp fixes the following issues:


Advisory IDSUSE-RU-2021:305-1
ReleasedThu Feb 4 15:00:37 2021
SummaryRecommended update for libprotobuf
Typerecommended
Severitymoderate
References
Description:


libprotobuf was updated to fix:


Advisory IDSUSE-RU-2021:307-1
ReleasedFri Feb 5 05:30:34 2021
SummaryRecommended update for libselinux
Typerecommended
Severitylow
References1180603
Description:

This update for libselinux fixes the following issues:


Advisory IDSUSE-OU-2021:339-1
ReleasedMon Feb 8 13:16:07 2021
SummaryOptional update for pam
Typeoptional
Severitylow
References
Description:

This update for pam fixes the following issues:


This patch is optional to be installed - it doesn't fix any bugs.


Advisory IDSUSE-SU-2021:653-1
ReleasedFri Feb 26 19:53:43 2021
SummarySecurity update for glibc
Typesecurity
Severityimportant
References1178386,1179694,1179721,1180038,1181505,1182117,CVE-2019-25013,CVE-2020-27618,CVE-2020-29562,CVE-2020-29573,CVE-2021-3326
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-SU-2021:723-1
ReleasedMon Mar 8 16:45:27 2021
SummarySecurity update for openldap2
Typesecurity
Severityimportant
References1182279,1182408,1182411,1182412,1182413,1182415,1182416,1182417,1182418,1182419,1182420,CVE-2020-36221,CVE-2020-36222,CVE-2020-36223,CVE-2020-36224,CVE-2020-36225,CVE-2020-36226,CVE-2020-36227,CVE-2020-36228,CVE-2020-36229,CVE-2020-36230,CVE-2021-27212
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-SU-2021:753-1
ReleasedTue Mar 9 17:09:57 2021
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1182331,1182333,CVE-2021-23840,CVE-2021-23841
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2021:786-1
ReleasedMon Mar 15 11:19:23 2021
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1176201
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2021:890-1
ReleasedFri Mar 19 15:51:41 2021
SummarySecurity update for glib2
Typesecurity
Severityimportant
References1182328,1182362,CVE-2021-27218,CVE-2021-27219
Description:

This update for glib2 fixes the following issues:



Advisory IDSUSE-RU-2021:924-1
ReleasedTue Mar 23 10:00:49 2021
SummaryRecommended update for filesystem
Typerecommended
Severitymoderate
References1078466,1146705,1175519,1178775,1180020,1180083,1180596,1181011,1181831,1183094
Description:

This update for filesystem the following issues:


This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2021:934-1
ReleasedWed Mar 24 12:18:21 2021
SummarySecurity update for gnutls
Typesecurity
Severityimportant
References1183456,1183457,CVE-2021-20231,CVE-2021-20232
Description:

This update for gnutls fixes the following issues:


Advisory IDSUSE-SU-2021:948-1
ReleasedWed Mar 24 14:31:34 2021
SummarySecurity update for zstd
Typesecurity
Severitymoderate
References1183370,1183371,CVE-2021-24031,CVE-2021-24032
Description:

This update for zstd fixes the following issues:


Advisory IDSUSE-SU-2021:956-1
ReleasedThu Mar 25 19:19:02 2021
SummarySecurity update for libzypp, zypper
Typesecurity
Severitymoderate
References1050625,1174016,1177238,1177275,1177427,1177583,1178910,1178966,1179083,1179222,1179816,1179847,1179909,1180077,1180663,1180721,1181328,1181622,1182629,CVE-2017-9271
Description:

This update for libzypp, zypper fixes the following issues:
Update zypper to version 1.14.43:


Update libzypp to 17.25.8:


Advisory IDSUSE-RU-2021:1004-1
ReleasedThu Apr 1 15:07:09 2021
SummaryRecommended update for libcap
Typerecommended
Severitymoderate
References1180073
Description:

This update for libcap fixes the following issues:


Advisory IDSUSE-RU-2021:1141-1
ReleasedMon Apr 12 13:13:36 2021
SummaryRecommended update for openldap2
Typerecommended
Severitylow
References1182791
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-RU-2021:1169-1
ReleasedTue Apr 13 15:01:42 2021
SummaryRecommended update for procps
Typerecommended
Severitylow
References1181976
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-OU-2021:1296-1
ReleasedWed Apr 21 14:09:28 2021
SummaryOptional update for e2fsprogs
Typeoptional
Severitylow
References1183791
Description:

This update for e2fsprogs fixes the following issues:


This patch does not fix any user visible issues and is therefore optional to install.


Advisory IDSUSE-RU-2021:1297-1
ReleasedWed Apr 21 14:10:10 2021
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1178219
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2021:1407-1
ReleasedWed Apr 28 15:49:02 2021
SummaryRecommended update for libcap
Typerecommended
Severityimportant
References1184690
Description:

This update for libcap fixes the following issues:


Advisory IDSUSE-SU-2021:1412-1
ReleasedWed Apr 28 17:09:28 2021
SummarySecurity update for libnettle
Typesecurity
Severityimportant
References1184401,CVE-2021-20305
Description:

This update for libnettle fixes the following issues:


Advisory IDSUSE-SU-2021:1523-1
ReleasedWed May 5 18:24:20 2021
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1185408,1185409,1185410,CVE-2021-3516,CVE-2021-3517,CVE-2021-3518
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2021:1527-1
ReleasedThu May 6 08:58:53 2021
SummaryRecommended update for bash
Typerecommended
Severityimportant
References1183064
Description:

This update for bash fixes the following issues:


Advisory IDSUSE-RU-2021:1543-1
ReleasedFri May 7 15:16:33 2021
SummaryRecommended update for patterns-microos
Typerecommended
Severitymoderate
References1184435
Description:

This update for patterns-microos provides the following fix:


Advisory IDSUSE-RU-2021:1549-1
ReleasedMon May 10 13:48:00 2021
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1185417
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2021:1565-1
ReleasedTue May 11 14:20:04 2021
SummaryRecommended update for krb5
Typerecommended
Severitymoderate
References1185163
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-OU-2021:1592-1
ReleasedWed May 12 13:47:41 2021
SummaryOptional update for sed
Typeoptional
Severitylow
References1183797
Description:

This update for sed fixes the following issues:


This patch is optional to install.


Advisory IDSUSE-RU-2021:1602-1
ReleasedThu May 13 16:35:19 2021
SummaryRecommended update for libsolv, libzypp
Typerecommended
Severitymoderate
References1180851,1181874,1182936,1183628,1184997,1185239
Description:

This update for libsolv and libzypp fixes the following issues:
libsolv:
Upgrade from version 0.7.17 to version 0.7.19


libzypp:
Upgrade from version 17.25.8 to version 17.25.10


Advisory IDSUSE-RU-2021:1612-1
ReleasedFri May 14 17:09:39 2021
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1184614
Description:

This update for openldap2 fixes the following issue:


Advisory IDSUSE-RU-2021:1643-1
ReleasedWed May 19 13:51:48 2021
SummaryRecommended update for pam
Typerecommended
Severityimportant
References1181443,1184358,1185562
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2021:1647-1
ReleasedWed May 19 13:59:12 2021
SummarySecurity update for lz4
Typesecurity
Severityimportant
References1185438,CVE-2021-3520
Description:

This update for lz4 fixes the following issues:


Advisory IDSUSE-SU-2021:1654-1
ReleasedWed May 19 16:43:36 2021
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1185408,1185409,1185410,1185698,CVE-2021-3516,CVE-2021-3517,CVE-2021-3518,CVE-2021-3537
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2021:1809-1
ReleasedMon May 31 16:24:59 2021
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1177976,1183933,1186114,CVE-2021-22876,CVE-2021-22898
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-RU-2021:1861-1
ReleasedFri Jun 4 09:59:40 2021
SummaryRecommended update for gcc10
Typerecommended
Severitymoderate
References1029961,1106014,1178577,1178624,1178675,1182016
Description:

This update for gcc10 fixes the following issues:


Advisory IDSUSE-SU-2021:1917-1
ReleasedWed Jun 9 14:48:05 2021
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1186015,CVE-2021-3541
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2021:1953-1
ReleasedThu Jun 10 16:18:50 2021
SummaryRecommended update for gpg2
Typerecommended
Severitymoderate
References1161268,1172308
Description:

This update for gpg2 fixes the following issues:


Advisory IDSUSE-SU-2021:2143-1
ReleasedWed Jun 23 16:27:04 2021
SummarySecurity update for libnettle
Typesecurity
Severityimportant
References1187060,CVE-2021-3580
Description:

This update for libnettle fixes the following issues:


Advisory IDSUSE-SU-2021:2157-1
ReleasedThu Jun 24 15:40:14 2021
SummarySecurity update for libgcrypt
Typesecurity
Severityimportant
References1187212,CVE-2021-33560
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2021:2173-1
ReleasedMon Jun 28 14:59:45 2021
SummaryRecommended update for automake
Typerecommended
Severitymoderate
References1040589,1047218,1182604,1185540,1186049
Description:

This update for automake fixes the following issues:


This update for pcre fixes the following issues:

This update for brp-check-suse fixes the following issues:


Advisory IDSUSE-SU-2021:2196-1
ReleasedTue Jun 29 09:41:39 2021
SummarySecurity update for lua53
Typesecurity
Severitymoderate
References1175448,1175449,CVE-2020-24370,CVE-2020-24371
Description:

This update for lua53 fixes the following issues:
Update to version 5.3.6:


Advisory IDSUSE-RU-2021:2205-1
ReleasedWed Jun 30 09:17:41 2021
SummaryRecommended update for openldap2
Typerecommended
Severityimportant
References1187210
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-RU-2021:2246-1
ReleasedMon Jul 5 15:17:49 2021
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1154935,1167471,1178561,1184761,1184967,1185046,1185331,1185807,1185958,1187292,1187400
Description:

This update for systemd fixes the following issues:
cgroup: Parse infinity properly for memory protections. (bsc#1167471) cgroup: Make empty assignments reset to default. (bsc#1167471) cgroup: Support 0-value for memory protection directives. (bsc#1167471) core/cgroup: Fixed an issue with ignored parameter of 'MemorySwapMax=0'. (bsc#1154935) bus-unit-util: Add proper 'MemorySwapMax' serialization. core: Accept MemorySwapMax= properties that are scaled. execute: Make sure to call into PAM after initializing resource limits. (bsc#1184967) core: Rename 'ShutdownWatchdogSec' to 'RebootWatchdogSec'. (bsc#1185331) Return -EAGAIN instead of -EALREADY from unit_reload. (bsc#1185046) rules: Don't ignore Xen virtual interfaces anymore. (bsc#1178561) write_net_rules: Set execute bits. (bsc#1178561) udev: Rework network device renaming. Revert 'Revert 'udev: Network device renaming - immediately give up if the target name isn't available'' mount-util: tape over name_to_handle_at() flakiness (#7517) (bsc#1184761) core: fix output (logging) for mount units (#7603) (bsc#1187400) udev requires systemd in its %post (bsc#1185958) cgroup: Parse infinity properly for memory protections (bsc#1167471) cgroup: Make empty assignments reset to default (bsc#1167471) cgroup: Support 0-value for memory protection directives (bsc#1167471) Create /run/lock/subsys again (bsc#1187292) The creation of this directory was mistakenly dropped when 'filesystem' package took the initialization of the generic paths over. Expect 644 permissions for /usr/lib/udev/compat-symlink-generation (bsc#1185807)


Advisory IDSUSE-SU-2021:2320-1
ReleasedWed Jul 14 17:01:06 2021
SummarySecurity update for sqlite3
Typesecurity
Severityimportant
References1157818,1158812,1158958,1158959,1158960,1159491,1159715,1159847,1159850,1160309,1160438,1160439,1164719,1172091,1172115,1172234,1172236,1172240,1173641,928700,928701,CVE-2015-3414,CVE-2015-3415,CVE-2019-19244,CVE-2019-19317,CVE-2019-19603,CVE-2019-19645,CVE-2019-19646,CVE-2019-19880,CVE-2019-19923,CVE-2019-19924,CVE-2019-19925,CVE-2019-19926,CVE-2019-19959,CVE-2019-20218,CVE-2020-13434,CVE-2020-13435,CVE-2020-13630,CVE-2020-13631,CVE-2020-13632,CVE-2020-15358,CVE-2020-9327
Description:

This update for sqlite3 fixes the following issues:


Advisory IDSUSE-SU-2021:2404-1
ReleasedTue Jul 20 14:21:30 2021
SummarySecurity update for systemd
Typesecurity
Severitymoderate
References1184994,1188063,CVE-2021-33910
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2021:2440-1
ReleasedWed Jul 21 13:48:24 2021
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1188217,1188218,1188219,1188220,CVE-2021-22922,CVE-2021-22923,CVE-2021-22924,CVE-2021-22925
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2021:2689-1
ReleasedMon Aug 16 10:54:52 2021
SummarySecurity update for cpio
Typesecurity
Severityimportant
References1189206,CVE-2021-38185
Description:

This update for cpio fixes the following issues:
It was possible to trigger Remote code execution due to a integer overflow (CVE-2021-38185, bsc#1189206)


Advisory IDSUSE-RU-2021:2763-1
ReleasedTue Aug 17 17:16:22 2021
SummaryRecommended update for cpio
Typerecommended
Severitycritical
References1189465
Description:

This update for cpio fixes the following issues:


Advisory IDSUSE-RU-2021:2780-1
ReleasedThu Aug 19 16:09:15 2021
SummaryRecommended update for cpio
Typerecommended
Severitycritical
References1189465,CVE-2021-38185
Description:

This update for cpio fixes the following issues:


Advisory IDSUSE-SU-2021:2800-1
ReleasedFri Aug 20 10:43:04 2021
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1188571,CVE-2021-36222
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-SU-2021:2831-1
ReleasedTue Aug 24 16:20:45 2021
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1189521,CVE-2021-3712
Description:

This update for openssl-1_1 fixes the following security issue:


Advisory IDSUSE-RU-2021:2938-1
ReleasedFri Sep 3 09:19:36 2021
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1184614
Description:


This update for openldap2 fixes the following issue:


Advisory IDSUSE-SU-2021:2968-1
ReleasedTue Sep 7 09:53:00 2021
SummarySecurity update for openssl-1_1
Typesecurity
Severitylow
References1189521,CVE-2021-3712
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2021:3001-1
ReleasedThu Sep 9 15:08:13 2021
SummaryRecommended update for netcfg
Typerecommended
Severitymoderate
References1189683
Description:

This update for netcfg fixes the following issues:


Advisory IDSUSE-RU-2021:3182-1
ReleasedTue Sep 21 17:04:26 2021
SummaryRecommended update for file
Typerecommended
Severitymoderate
References1189996
Description:

This update for file fixes the following issues:


Advisory IDSUSE-SU-2021:3297-1
ReleasedWed Oct 6 16:53:29 2021
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1190373,1190374,CVE-2021-22946,CVE-2021-22947
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2021:3348-1
ReleasedTue Oct 12 13:08:06 2021
SummarySecurity update for systemd
Typesecurity
Severitymoderate
References1134353,1171962,1184994,1188018,1188063,1188291,1188713,1189480,1190234,CVE-2021-33910
Description:

This update for systemd fixes the following issues:



Advisory IDSUSE-SU-2021:3385-1
ReleasedTue Oct 12 15:54:31 2021
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1186489,1187911,CVE-2021-33574,CVE-2021-35942
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-SU-2021:3454-1
ReleasedMon Oct 18 09:29:26 2021
SummarySecurity update for krb5
Typesecurity
Severitymoderate
References1189929,CVE-2021-37750
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-RU-2021:3480-1
ReleasedWed Oct 20 11:24:10 2021
SummaryRecommended update for yast2-network
Typerecommended
Severitymoderate
References1185016,1185524,1186910,1187270,1187512,1188344,1190645,1190739,1190915,1190933
Description:

This update for yast2-network fixes the following issues:


Advisory IDSUSE-SU-2021:3490-1
ReleasedWed Oct 20 16:31:55 2021
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1190793,CVE-2021-39537
Description:

This update for ncurses fixes the following issues:


Advisory IDSUSE-RU-2021:3494-1
ReleasedWed Oct 20 16:48:46 2021
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1190052
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2021:3510-1
ReleasedTue Oct 26 11:22:15 2021
SummaryRecommended update for pam
Typerecommended
Severityimportant
References1191987
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2021:3523-1
ReleasedTue Oct 26 15:40:13 2021
SummarySecurity update for util-linux
Typesecurity
Severitymoderate
References1122417,1125886,1178236,1188921,CVE-2021-37600
Description:

This update for util-linux fixes the following issues:
Update to version 2.33.2 to provide seamless update from SLE12 SP5 to SLE15 SP2:


Advisory IDSUSE-SU-2021:3529-1
ReleasedWed Oct 27 09:23:32 2021
SummarySecurity update for pcre
Typesecurity
Severitymoderate
References1172973,1172974,CVE-2019-20838,CVE-2020-14155
Description:

This update for pcre fixes the following issues:
Update pcre to version 8.45:


Advisory IDSUSE-RU-2021:3781-1
ReleasedTue Nov 23 23:48:43 2021
SummaryThis update for libzypp, zypper and libsolv fixes the following issues:
Typerecommended
Severitymoderate
References1153687,1182372,1183268,1183589,1184326,1184399,1184997,1185325,1186447,1186503,1186602,1187224,1187425,1187466,1187738,1187760,1188156,1188435,1189031,1190059,1190199,1190356,1190465,1190712,1190815,1191286,1191324,1191370,1191609,1192337,1192436
Description:

This update for zypper fixes the following issues:


Advisory IDSUSE-RU-2021:3799-1
ReleasedWed Nov 24 18:07:54 2021
SummaryRecommended update for gcc11
Typerecommended
Severitymoderate
References1187153,1187273,1188623
Description:

This update for gcc11 fixes the following issues:
The additional GNU compiler collection GCC 11 is provided:
To select these compilers install the packages:


to select them for building:

The compiler baselibraries (libgcc_s1, libstdc++6 and others) are being replaced by the GCC 11 variants.


Advisory IDSUSE-RU-2021:3809-1
ReleasedFri Nov 26 00:31:59 2021
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1189803,1190325,1190440,1190984,1191252,1192161
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2021:3830-1
ReleasedWed Dec 1 13:45:46 2021
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1027496,1183085,CVE-2016-10228
Description:


This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2021:3891-1
ReleasedFri Dec 3 10:21:49 2021
SummaryRecommended update for keyutils
Typerecommended
Severitymoderate
References1029961,1113013,1187654
Description:

This update for keyutils fixes the following issues:


keyutils was updated to 1.6.3 (jsc#SLE-20016):

Updated to 1.6:

Updated to 1.5.11 (bsc#1113013)


Advisory IDSUSE-SU-2021:3899-1
ReleasedFri Dec 3 11:27:41 2021
SummarySecurity update for aaa_base
Typesecurity
Severitymoderate
References1162581,1174504,1191563,1192248
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-RU-2021:3930-1
ReleasedMon Dec 6 11:16:10 2021
SummaryRecommended update for curl
Typerecommended
Severitymoderate
References1192790
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2021:3946-1
ReleasedMon Dec 6 14:57:42 2021
SummarySecurity update for gmp
Typesecurity
Severitymoderate
References1192717,CVE-2021-43618
Description:

This update for gmp fixes the following issues:


Advisory IDSUSE-RU-2021:4017-1
ReleasedTue Dec 14 07:26:55 2021
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1180995
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2021:4139-1
ReleasedTue Dec 21 17:02:44 2021
SummaryRecommended update for systemd
Typerecommended
Severitycritical
References1193481,1193521
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2021:4154-1
ReleasedWed Dec 22 11:02:38 2021
SummarySecurity update for p11-kit
Typesecurity
Severityimportant
References1180064,1187993,CVE-2020-29361
Description:

This update for p11-kit fixes the following issues:


Advisory IDSUSE-RU-2021:4182-1
ReleasedThu Dec 23 11:51:51 2021
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1192688
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-RU-2022:4-1
ReleasedMon Jan 3 08:28:54 2022
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1193480
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2022:57-1
ReleasedWed Jan 12 07:10:42 2022
SummaryRecommended update for libzypp
Typerecommended
Severitymoderate
References1193488,954813
Description:

This update for libzypp fixes the following issues:


SUSE-CU-2020:780-1

Container Advisory IDSUSE-CU-2020:780-1
Container Tagscaasp/v4/cilium-operator:1.6.6 , caasp/v4/cilium-operator:1.6.6-rev5 , caasp/v4/cilium-operator:1.6.6-rev5-build3.12.81
Container Release3.12.81
The following patches have been included in this update:
Advisory IDSUSE-RU-2020:2224-1
ReleasedThu Aug 13 09:15:47 2020
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1171878,1172085
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2020:2278-1
ReleasedWed Aug 19 21:26:08 2020
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1149911,1151708,1168235,1168389
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-RU-2020:2284-1
ReleasedThu Aug 20 16:04:17 2020
SummaryRecommended update for ca-certificates-mozilla
Typerecommended
Severityimportant
References1010996,1071152,1071390,1154871,1174673,973042
Description:

This update for ca-certificates-mozilla fixes the following issues:
update to 2.42 state of the Mozilla NSS Certificate store (bsc#1174673)
Removed CAs:
* AddTrust External CA Root * AddTrust Class 1 CA Root * LuxTrust Global Root 2 * Staat der Nederlanden Root CA - G2 * Symantec Class 1 Public Primary Certification Authority - G4 * Symantec Class 2 Public Primary Certification Authority - G4 * VeriSign Class 3 Public Primary Certification Authority - G3
Added CAs:
* certSIGN Root CA G2 * e-Szigno Root CA 2017 * Microsoft ECC Root Certificate Authority 2017 * Microsoft RSA Root Certificate Authority 2017


Advisory IDSUSE-RU-2020:2384-1
ReleasedSat Aug 29 00:57:13 2020
SummaryRecommended update for e2fsprogs
Typerecommended
Severitylow
References1170964
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-RU-2020:2411-1
ReleasedTue Sep 1 13:28:47 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1142733,1146991,1158336,1172195,1172824,1173539
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2020:2420-1
ReleasedTue Sep 1 13:48:35 2020
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1174551,1174736
Description:

This update for zlib provides the following fixes:


Advisory IDSUSE-SU-2020:2446-1
ReleasedWed Sep 2 09:33:22 2020
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1175109,CVE-2020-8231
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2020:2581-1
ReleasedWed Sep 9 13:07:07 2020
SummarySecurity update for openldap2
Typesecurity
Severitymoderate
References1174154,CVE-2020-15719
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-SU-2020:2612-1
ReleasedFri Sep 11 11:18:01 2020
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1176179,CVE-2020-24977
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2020:2651-1
ReleasedWed Sep 16 14:42:55 2020
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1175811,1175830,1175831
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-RU-2020:2704-1
ReleasedTue Sep 22 15:06:36 2020
SummaryRecommended update for krb5
Typerecommended
Severitymoderate
References1174079
Description:

This update for krb5 fixes the following issue:


Advisory IDSUSE-SU-2020:2712-1
ReleasedTue Sep 22 17:08:03 2020
SummarySecurity update for openldap2
Typesecurity
Severitymoderate
References1175568,CVE-2020-8027
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-RU-2020:2818-1
ReleasedThu Oct 1 10:38:55 2020
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1165424,1173273,1173529,1174240,1174561,1174918,1175342,1175592
Description:

This update for libzypp, zypper provides the following fixes:
Changes in libzypp:


Changes in zypper:


Advisory IDSUSE-SU-2020:2830-1
ReleasedFri Oct 2 10:34:26 2020
SummarySecurity update for permissions
Typesecurity
Severitymoderate
References1161335,1176625
Description:

This update for permissions fixes the following issues:


Advisory IDSUSE-RU-2020:2869-1
ReleasedTue Oct 6 16:13:20 2020
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1011548,1153943,1153946,1161239,1171762
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-SU-2020:2901-1
ReleasedTue Oct 13 14:22:43 2020
SummarySecurity update for libproxy
Typesecurity
Severityimportant
References1176410,1177143,CVE-2020-25219,CVE-2020-26154
Description:

This update for libproxy fixes the following issues:


Advisory IDSUSE-SU-2020:2914-1
ReleasedTue Oct 13 17:25:20 2020
SummarySecurity update for bind
Typesecurity
Severitymoderate
References1100369,1109160,1118367,1118368,1128220,1156205,1157051,1161168,1170667,1170713,1171313,1171740,1172958,1173307,1173311,1173983,1175443,1176092,1176674,906079,CVE-2017-3136,CVE-2018-5741,CVE-2019-6477,CVE-2020-8616,CVE-2020-8617,CVE-2020-8618,CVE-2020-8619,CVE-2020-8620,CVE-2020-8621,CVE-2020-8622,CVE-2020-8623,CVE-2020-8624
Description:

This update for bind fixes the following issues:
BIND was upgraded to version 9.16.6:
Note:


Fixing security issues:

Other issues fixed:


Advisory IDSUSE-SU-2020:2947-1
ReleasedFri Oct 16 15:23:07 2020
SummarySecurity update for gcc10, nvptx-tools
Typesecurity
Severitymoderate
References1172798,1172846,1173972,1174753,1174817,1175168,CVE-2020-13844
Description:

This update for gcc10, nvptx-tools fixes the following issues:
This update provides the GCC10 compiler suite and runtime libraries.
The base SUSE Linux Enterprise libraries libgcc_s1, libstdc++6 are replaced by the gcc10 variants.
The new compiler variants are available with '-10' suffix, you can specify them via:
CC=gcc-10 CXX=g++-10
or similar commands.
For a detailed changelog check out https://gcc.gnu.org/gcc-10/changes.html
Changes in nvptx-tools:


Advisory IDSUSE-RU-2020:2958-1
ReleasedTue Oct 20 12:24:55 2020
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1158830
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2020:2983-1
ReleasedWed Oct 21 15:03:03 2020
SummaryRecommended update for file
Typerecommended
Severitymoderate
References1176123
Description:

This update for file fixes the following issues:


Advisory IDSUSE-SU-2020:2988-1
ReleasedWed Oct 21 17:35:34 2020
SummarySecurity update for gnutls
Typesecurity
Severitymoderate
References1176086,1176181,1176671,CVE-2020-24659
Description:

This update for gnutls fixes the following issues:


Advisory IDSUSE-RU-2020:3048-1
ReleasedTue Oct 27 16:05:17 2020
SummaryRecommended update for libsolv, libzypp, yaml-cpp, zypper
Typerecommended
Severitymoderate
References1174918,1176192,1176435,1176712,1176740,1176902,1177238,935885
Description:

This update for libsolv, libzypp, yaml-cpp, zypper fixes the following issues:
libzypp was updated to 17.25.1:


yaml-cpp:

No source changes were done to yaml-cpp.
zypper was updated to 1.14.40:

libsolv was updated to 0.7.15 to fix:


Advisory IDSUSE-RU-2020:3138-1
ReleasedTue Nov 3 12:14:03 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1104902,1154935,1165502,1167471,1173422,1176513,1176800
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2020:3234-1
ReleasedFri Nov 6 16:01:36 2020
SummaryRecommended update for ca-certificates-mozilla
Typerecommended
Severitymoderate
References1177864
Description:

This update for ca-certificates-mozilla fixes the following issues:
The SSL Root CA store was updated to the 2.44 state of the Mozilla NSS Certificate store (bsc#1177864)


- EE Certification Centre Root CA - Taiwan GRCA

- Trustwave Global Certification Authority - Trustwave Global ECC P256 Certification Authority - Trustwave Global ECC P384 Certification Authority


Advisory IDSUSE-RU-2020:3285-1
ReleasedWed Nov 11 11:22:14 2020
SummaryRecommended update for libsolv, libzypp, zypper
Typerecommended
Severitymoderate
References1174918,1176192,1176435,1176712,1176740,1176902,1177238,935885
Description:

This update for libsolv, libzypp, zypper fixes the following issues:
libzypp was updated to version 17.25.1:


zypper was updated to version 1.14.40.

libsolv was updated to version 0.7.16:


Advisory IDSUSE-RU-2020:3290-1
ReleasedWed Nov 11 12:25:32 2020
SummaryRecommended update for findutils
Typerecommended
Severitymoderate
References1174232
Description:

This update for findutils fixes the following issues:


Advisory IDSUSE-SU-2020:3313-1
ReleasedThu Nov 12 16:07:37 2020
SummarySecurity update for openldap2
Typesecurity
Severityimportant
References1178387,CVE-2020-25692
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-SU-2020:3377-1
ReleasedThu Nov 19 09:29:32 2020
SummarySecurity update for krb5
Typesecurity
Severitymoderate
References1178512,CVE-2020-28196
Description:

This update for krb5 fixes the following security issue:


Advisory IDSUSE-RU-2020:3381-1
ReleasedThu Nov 19 10:53:38 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1177458,1177490,1177510
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2020:3462-1
ReleasedFri Nov 20 13:14:35 2020
SummaryRecommended update for pam and sudo
Typerecommended
Severitymoderate
References1174593,1177858,1178727
Description:

This update for pam and sudo fixes the following issue:
pam:


sudo:


Advisory IDSUSE-RU-2020:3546-1
ReleasedFri Nov 27 11:21:09 2020
SummaryRecommended update for gnutls
Typerecommended
Severitymoderate
References1172695
Description:

This update for gnutls fixes the following issue:


Advisory IDSUSE-RU-2020:3560-1
ReleasedMon Nov 30 12:21:34 2020
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1158499,1160158,1161198,1161203,1163569,1165281,1165534,1166848,1175847,1177479
Description:

This update for openssl-1_1 fixes the following issues:
This update backports various bugfixes for FIPS:



Advisory IDSUSE-RU-2020:3579-1
ReleasedTue Dec 1 14:24:31 2020
SummaryRecommended update for glib2
Typerecommended
Severitymoderate
References1178346
Description:

This update for glib2 fixes the following issues:


Advisory IDSUSE-RU-2020:3581-1
ReleasedTue Dec 1 14:40:22 2020
SummaryRecommended update for libusb-1_0
Typerecommended
Severitymoderate
References1178376
Description:

This update for libusb-1_0 fixes the following issues:


Advisory IDSUSE-RU-2020:3620-1
ReleasedThu Dec 3 17:03:55 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2020:3703-1
ReleasedMon Dec 7 20:17:32 2020
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1179431
Description:

This update for aaa_base fixes the following issue:


Advisory IDSUSE-SU-2020:3720-1
ReleasedWed Dec 9 13:36:26 2020
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1179491,CVE-2020-1971
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2020:3733-1
ReleasedWed Dec 9 18:18:35 2020
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1179398,1179399,1179593,CVE-2020-8284,CVE-2020-8285,CVE-2020-8286
Description:

This update for curl fixes the following issues:


SUSE-CU-2020:388-1

Container Advisory IDSUSE-CU-2020:388-1
Container Tagscaasp/v4/cilium-operator:1.6.6 , caasp/v4/cilium-operator:1.6.6-rev5 , caasp/v4/cilium-operator:1.6.6-rev5-build3.12.1
Container Release3.12.1
The following patches have been included in this update:
Advisory IDSUSE-SU-2018:2780-1
ReleasedMon Nov 26 17:46:10 2018
SummarySecurity update for glib2
Typesecurity
Severitymoderate
References1107116,1107121,1111499,CVE-2018-16428,CVE-2018-16429
Description:

This update for glib2 fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2019:251-1
ReleasedWed Feb 6 11:22:43 2019
SummaryRecommended update for glib2
Typerecommended
Severitymoderate
References1090047
Description:

This update for glib2 provides the following fix:


Advisory IDSUSE-SU-2019:1594-1
ReleasedFri Jun 21 10:17:15 2019
SummarySecurity update for glib2
Typesecurity
Severityimportant
References1103678,1137001,CVE-2019-12450
Description:

This update for glib2 fixes the following issues:
Security issue fixed:


Other issue addressed:


Advisory IDSUSE-SU-2019:1833-1
ReleasedFri Jul 12 17:53:51 2019
SummarySecurity update for glib2
Typesecurity
Severitymoderate
References1139959,CVE-2019-13012
Description:

This update for glib2 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2020:1579-1
ReleasedTue Jun 9 17:05:23 2020
SummaryRecommended update for audit
Typerecommended
Severityimportant
References1156159,1172295
Description:

This update for audit fixes the following issues:


Advisory IDSUSE-SU-2020:1584-1
ReleasedTue Jun 9 18:39:15 2020
SummarySecurity update for gnutls
Typesecurity
Severityimportant
References1172461,1172506,CVE-2020-13777
Description:

This update for gnutls fixes the following issues:


Advisory IDSUSE-RU-2020:1611-1
ReleasedFri Jun 12 09:38:05 2020
SummaryRecommended update for libsolv, libzypp, zypper
Typerecommended
Severitymoderate
References1130873,1154803,1164543,1165476,1165573,1166610,1167122,1168990
Description:

This update for libsolv, libzypp, zypper fixes the following issues:
libsolv was updated to 0.7.13 to fix:


libzypp was updated to 17.23.4 to fix:

zypper was updated to version 1.14.36:


Advisory IDSUSE-RU-2020:1637-1
ReleasedWed Jun 17 15:07:58 2020
SummaryRecommended update for zypper
Typerecommended
Severityimportant
References1169947,1172925
Description:

This update for zypper fixes the following issues:


Advisory IDSUSE-SU-2020:1682-1
ReleasedFri Jun 19 09:44:54 2020
SummarySecurity update for perl
Typesecurity
Severityimportant
References1171863,1171864,1171866,1172348,CVE-2020-10543,CVE-2020-10878,CVE-2020-12723
Description:

This update for perl fixes the following issues:


Advisory IDSUSE-RU-2020:1759-1
ReleasedThu Jun 25 18:44:37 2020
SummaryRecommended update for krb5
Typerecommended
Severitymoderate
References1169357
Description:

This update for krb5 fixes the following issue:


Advisory IDSUSE-RU-2020:1760-1
ReleasedThu Jun 25 18:46:13 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1157315,1162698,1164538,1169488,1171145,1172072
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2020:1773-1
ReleasedFri Jun 26 08:05:59 2020
SummarySecurity update for curl
Typesecurity
Severityimportant
References1173027,CVE-2020-8177
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2020:1396-1
ReleasedFri Jul 3 12:33:05 2020
SummarySecurity update for zstd
Typesecurity
Severitymoderate
References1082318,1133297
Description:

This update for zstd fixes the following issues:


Advisory IDSUSE-SU-2020:1856-1
ReleasedMon Jul 6 17:05:51 2020
SummarySecurity update for openldap2
Typesecurity
Severityimportant
References1172698,1172704,CVE-2020-8023
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-SU-2020:1860-1
ReleasedMon Jul 6 17:09:44 2020
SummarySecurity update for permissions
Typesecurity
Severitymoderate
References1171883
Description:

This update for permissions fixes the following issues:


Advisory IDSUSE-RU-2020:1869-1
ReleasedTue Jul 7 15:08:12 2020
SummaryRecommended update for libsolv, libzypp, zypper
Typerecommended
Severitymoderate
References1130873,1154803,1164543,1165476,1165573,1166610,1167122,1168990,1169947,1170801,1171224,1172135,1172925
Description:

This update for libsolv, libzypp, zypper fixes the following issues:
libsolv was updated to 0.7.14:


libzypp was updated to 17.23.7:

zypper was updated to 1.14.37:


Advisory IDSUSE-RU-2020:2040-1
ReleasedFri Jul 24 13:58:53 2020
SummaryRecommended update for libsolv, libzypp
Typerecommended
Severitymoderate
References1170801,1171224,1172135,1173106,1174011
Description:

This update for libsolv, libzypp fixes the following issues:
libsolv was updated to version 0.7.14:


libzypp was updated to version 17.24.0:


Advisory IDSUSE-RU-2020:2083-1
ReleasedThu Jul 30 10:27:59 2020
SummaryRecommended update for diffutils
Typerecommended
Severitymoderate
References1156913
Description:

This update for diffutils fixes the following issue:


Advisory IDSUSE-RU-2020:2099-1
ReleasedFri Jul 31 08:06:40 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1173227,1173229,1173422
Description:

This update for systemd fixes the following issues:


The marker is used to make sure the script is run only once. Instead of storing it in /usr, use /var which is more appropriate for such file. Also make it owned by systemd package.

Ghost files are assumed by rpm to have mode 000 by default which is not consistent with file permissions set at runtime. Also /var/lib/systemd/random-seed was tracked wrongly as a directory.
Also don't track (ghost) /etc/systemd/system/runlevel*.target aliases since we're not supposed to track units or aliases user might define/override.


Advisory IDSUSE-RU-2020:2204-1
ReleasedTue Aug 11 14:33:37 2020
SummaryBugfixes on cilium, gangway and skuba and security fix for Kubernetes (cve-2020-8557)
Typerecommended
Severitymoderate
References1146991,1173039,1173055,1173165,1173984,CVE-2020-8557
Description:

= Required Actions
== Kubernetes (Security fix)
This fix will be applied to the kubelet daemon running on the nodes by `skuba-update`. See https://documentation.suse.com/suse-caasp/4.2/html/caasp-admin/_cluster_updates.html#_base_os_updates for more details. Make sure you look at the Release Notes https://www.suse.com/releasenotes/x86_64/SUSE-CAASP/4/#_changes_in_4_2_2 for any known bug.
== Cilium Bugfix
Cilium will be updated by `skuba addon upgrade`. No action is required from your side. For more info see https://documentation.suse.com/suse-caasp/4.2/html/caasp-admin/_cluster_updates.html#_generating_an_overview_of_available_addon_updates
== Gangway bugfix
Gangway will be updated by `skuba addon upgrade`. No action is required from your side. For more info see https://documentation.suse.com/suse-caasp/4.2/html/caasp-admin/_cluster_updates.html#_generating_an_overview_of_available_addon_updates == Skuba
In order to update skuba, you need to update the admin workstation. See detailed instructions at https://documentation.suse.com/suse-caasp/4.1/html/caasp-admin/_cluster_updates.html#_update_management_workstation


SUSE-CU-2020:200-1

Container Advisory IDSUSE-CU-2020:200-1
Container Tagscaasp/v4/cilium-operator:1.6.6 , caasp/v4/cilium-operator:1.6.6-rev3 , caasp/v4/cilium-operator:1.6.6-rev3-build3.5.1
Container Release3.5.1
The following patches have been included in this update:
Advisory IDSUSE-RU-2019:2241-1
ReleasedWed Aug 28 14:58:49 2019
SummaryRecommended update for ca-certificates-mozilla
Typerecommended
Severitymoderate
References1144169
Description:

This update for ca-certificates-mozilla fixes the following issues:
ca-certificates-mozillawas updated to 2.34 state of the Mozilla NSS Certificate store (bsc#1144169)
Removed CAs: - Certinomis - Root CA
Includes new root CAs from the 2.32 version:


Advisory IDSUSE-SU-2019:2307-1
ReleasedThu Sep 5 14:45:08 2019
SummarySecurity update for util-linux and shadow
Typesecurity
Severitymoderate
References1081947,1082293,1085196,1106214,1121197,1122417,1125886,1127701,1135534,1135708,1141113,353876
Description:

This update for util-linux and shadow fixes the following issues:
util-linux:


shadow:


Advisory IDSUSE-RU-2019:2361-1
ReleasedThu Sep 12 07:54:54 2019
SummaryRecommended update for krb5
Typerecommended
Severitymoderate
References1081947,1144047
Description:

This update for krb5 contains the following fixes:


Advisory IDSUSE-SU-2019:2373-1
ReleasedThu Sep 12 14:18:53 2019
SummarySecurity update for curl
Typesecurity
Severityimportant
References1149495,1149496,CVE-2019-5481,CVE-2019-5482
Description:

This update for curl fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:2395-1
ReleasedWed Sep 18 08:31:38 2019
SummarySecurity update for openldap2
Typesecurity
Severitymoderate
References1073313,1111388,1114845,1143194,1143273,CVE-2017-17740,CVE-2019-13057,CVE-2019-13565
Description:

This update for openldap2 fixes the following issues:
Security issue fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2019:2403-1
ReleasedWed Sep 18 16:14:29 2019
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1150003,1150250,CVE-2019-1547,CVE-2019-1563
Description:

This update for openssl-1_1 fixes the following issues:
OpenSSL Security Advisory [10 September 2019]


Advisory IDSUSE-RU-2019:2423-1
ReleasedFri Sep 20 16:41:45 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1146866,SLE-9132
Description:

This update for aaa_base fixes the following issues:
Added sysctl.d/51-network.conf to tighten network security (bsc#1146866) (jira#SLE-9132)
Following settings have been tightened (and set to 0):


Advisory IDSUSE-SU-2019:2533-1
ReleasedThu Oct 3 15:02:50 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1150137,CVE-2019-16168
Description:

This update for sqlite3 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:2626-1
ReleasedThu Oct 10 17:22:35 2019
SummaryRecommended update for permissions
Typerecommended
Severitymoderate
References1110797
Description:

This update for permissions fixes the following issues:


Advisory IDSUSE-RU-2019:2676-1
ReleasedTue Oct 15 21:06:54 2019
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1145716,1152101,CVE-2019-5094
Description:

This update for e2fsprogs fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:2730-1
ReleasedMon Oct 21 16:04:57 2019
SummarySecurity update for procps
Typesecurity
Severityimportant
References1092100,1121753,CVE-2018-1122,CVE-2018-1123,CVE-2018-1124,CVE-2018-1125,CVE-2018-1126
Description:

This update for procps fixes the following issues:
procps was updated to 3.3.15. (bsc#1092100)
Following security issues were fixed:



Also this non-security issue was fixed:

The update to 3.3.15 contains the following fixes:


Advisory IDSUSE-RU-2019:2742-1
ReleasedTue Oct 22 15:40:16 2019
SummaryRecommended update for libzypp, zypper, libsolv and PackageKit
Typerecommended
Severityimportant
References1049825,1116995,1120629,1120630,1120631,1127155,1127608,1130306,1131113,1131823,1134226,1135749,1137977,1139795,1140039,1145521,1146027,1146415,1146947,1153557,859480,CVE-2018-20532,CVE-2018-20533,CVE-2018-20534
Description:

This update for libzypp, zypper, libsolv and PackageKit fixes the following issues:
Security issues fixed in libsolv:


Other issues addressed in libsolv:

Issues fixed in libzypp:

Issues fixed in zypper:


Issues fixed in PackageKit:


Advisory IDSUSE-SU-2019:2757-1
ReleasedWed Oct 23 17:21:17 2019
SummarySecurity update for lz4
Typesecurity
Severitymoderate
References1153936,CVE-2019-17543
Description:

This update for lz4 fixes the following issues:


Advisory IDSUSE-RU-2019:2812-1
ReleasedTue Oct 29 14:57:55 2019
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1139459,1140631,1145023,1150595,SLE-7687
Description:

This update for systemd provides the following fixes:


Advisory IDSUSE-RU-2019:2870-1
ReleasedThu Oct 31 08:09:14 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1051143,1138869,1151023
Description:

This update for aaa_base provides the following fixes:


Advisory IDSUSE-RU-2019:2418-1
ReleasedThu Nov 14 11:53:03 2019
SummaryRecommended update for bash
Typerecommended
Severitymoderate
References1133773,1143055
Description:

This update for bash fixes the following issues:


Advisory IDSUSE-OU-2019:2980-1
ReleasedThu Nov 14 22:45:33 2019
SummaryOptional update for curl
Typeoptional
Severitylow
References1154019
Description:

This update for curl doesn't address any user visible issues.


Advisory IDSUSE-SU-2019:2997-1
ReleasedMon Nov 18 15:16:38 2019
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1103320,1154036,1154037,CVE-2019-17594,CVE-2019-17595
Description:

This update for ncurses fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2019:3010-1
ReleasedTue Nov 19 18:10:58 2019
SummaryRecommended update for zypper and libsolv
Typerecommended
Severitymoderate
References1145554,1146415,1149511,1153351,SLE-9171
Description:

This update for zypper and libsolv fixes the following issues:
Package: zypper


Package: libsolv


Advisory IDSUSE-SU-2019:3059-1
ReleasedMon Nov 25 17:33:07 2019
SummarySecurity update for cpio
Typesecurity
Severitymoderate
References1155199,CVE-2019-14866
Description:

This update for cpio fixes the following issues:


Advisory IDSUSE-SU-2019:3061-1
ReleasedMon Nov 25 17:34:22 2019
SummarySecurity update for gcc9
Typesecurity
Severitymoderate
References1114592,1135254,1141897,1142649,1142654,1148517,1149145,CVE-2019-14250,CVE-2019-15847,SLE-6533,SLE-6536
Description:



This update includes the GNU Compiler Collection 9.
A full changelog is provided by the GCC team on:
https://www.gnu.org/software/gcc/gcc-9/changes.html

The base system compiler libraries libgcc_s1, libstdc++6 and others are now built by the gcc 9 packages.
To use it, install 'gcc9' or 'gcc9-c++' or other compiler brands and use CC=gcc-9 / CXX=g++-9 during configuration for using it.

Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-RU-2019:3070-1
ReleasedTue Nov 26 12:39:29 2019
SummaryRecommended update for gpg2
Typerecommended
Severitylow
References1152755
Description:

This update for gpg2 provides the following fix:


Advisory IDSUSE-SU-2019:3086-1
ReleasedThu Nov 28 10:02:24 2019
SummarySecurity update for libidn2
Typesecurity
Severitymoderate
References1154884,1154887,CVE-2019-12290,CVE-2019-18224
Description:

This update for libidn2 to version 2.2.0 fixes the following issues:


Advisory IDSUSE-SU-2019:3087-1
ReleasedThu Nov 28 10:03:00 2019
SummarySecurity update for libxml2
Typesecurity
Severitylow
References1123919
Description:

This update for libxml2 doesn't fix any additional security issues, but correct its rpm changelog to reflect all CVEs that have been fixed over the past.


Advisory IDSUSE-RU-2019:3118-1
ReleasedFri Nov 29 14:41:35 2019
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1154295
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-RU-2019:3166-1
ReleasedWed Dec 4 11:24:42 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1007715,1084934,1157278
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-SU-2019:3181-1
ReleasedThu Dec 5 11:43:07 2019
SummarySecurity update for permissions
Typesecurity
Severitymoderate
References1093414,1150734,1157198,CVE-2019-3688,CVE-2019-3690
Description:

This update for permissions fixes the following issues:


Advisory IDSUSE-RU-2019:3240-1
ReleasedTue Dec 10 10:40:19 2019
SummaryRecommended update for ca-certificates-mozilla, p11-kit
Typerecommended
Severitymoderate
References1154871
Description:

This update for ca-certificates-mozilla, p11-kit fixes the following issues:
Changes in ca-certificates-mozilla:


Changes in p11-kit:


Advisory IDSUSE-SU-2019:3267-1
ReleasedWed Dec 11 11:19:53 2019
SummarySecurity update for libssh
Typesecurity
Severityimportant
References1158095,CVE-2019-14889
Description:

This update for libssh fixes the following issues:


Advisory IDSUSE-SU-2019:3392-1
ReleasedFri Dec 27 13:33:29 2019
SummarySecurity update for libgcrypt
Typesecurity
Severitymoderate
References1148987,1155338,1155339,CVE-2019-13627
Description:

This update for libgcrypt fixes the following issues:
Security issues fixed:


Bug fixes:


Advisory IDSUSE-SU-2020:69-1
ReleasedFri Jan 10 12:33:59 2020
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1155346,1157775,1158101,1158809,CVE-2019-1551,SLE-8789
Description:

This update for openssl-1_1 fixes the following issues:
Security issue fixed:


Various FIPS related improvements were done:


Advisory IDSUSE-SU-2020:129-1
ReleasedMon Jan 20 09:21:13 2020
SummarySecurity update for libssh
Typesecurity
Severityimportant
References1158095,CVE-2019-14889
Description:

This update for libssh fixes the following issues:


Advisory IDSUSE-RU-2020:225-1
ReleasedFri Jan 24 06:49:07 2020
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1158830
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2020:256-1
ReleasedWed Jan 29 09:39:17 2020
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1157794,1160970
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-SU-2020:262-1
ReleasedThu Jan 30 11:02:42 2020
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1149332,1151582,1157292,1157893,1158996,CVE-2019-19126
Description:

This update for glibc fixes the following issues:
Security issue fixed:


Bug fixes:


Advisory IDSUSE-SU-2020:265-1
ReleasedThu Jan 30 14:05:34 2020
SummarySecurity update for e2fsprogs
Typesecurity
Severitymoderate
References1160571,CVE-2019-5188
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-RU-2020:279-1
ReleasedFri Jan 31 12:01:39 2020
SummaryRecommended update for p11-kit
Typerecommended
Severitymoderate
References1013125
Description:

This update for p11-kit fixes the following issues:


Advisory IDSUSE-SU-2020:335-1
ReleasedThu Feb 6 11:37:24 2020
SummarySecurity update for systemd
Typesecurity
Severityimportant
References1084671,1092920,1106383,1133495,1151377,1154256,1155207,1155574,1156213,1156482,1158485,1159814,1161436,1162108,CVE-2019-20386,CVE-2020-1712
Description:

This update for systemd fixes the following issues:









Advisory IDSUSE-RU-2020:339-1
ReleasedThu Feb 6 13:03:22 2020
SummaryRecommended update for openldap2
Typerecommended
Severitylow
References1158921
Description:

This update for openldap2 provides the following fix:


Advisory IDSUSE-SU-2020:432-1
ReleasedFri Feb 21 14:34:16 2020
SummarySecurity update for libsolv, libzypp, zypper
Typesecurity
Severitymoderate
References1135114,1154804,1154805,1155198,1155205,1155298,1155678,1155819,1156158,1157377,1158763,CVE-2019-18900
Description:

This update for libsolv, libzypp, zypper fixes the following issues:

Security issue fixed:


Bug fixes


Advisory IDSUSE-RU-2020:451-1
ReleasedTue Feb 25 10:50:35 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1155337,1161215,1161216,1161218,1161219,1161220
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2020:476-1
ReleasedTue Feb 25 14:23:14 2020
SummaryRecommended update for perl
Typerecommended
Severitymoderate
References1102840,1160039
Description:

This update for perl fixes the following issues:


Advisory IDSUSE-RU-2020:480-1
ReleasedTue Feb 25 17:38:22 2020
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1160735
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-RU-2020:525-1
ReleasedFri Feb 28 11:49:36 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1164562
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2020:547-1
ReleasedFri Feb 28 16:26:21 2020
SummarySecurity update for permissions
Typesecurity
Severitymoderate
References1148788,1160594,1160764,1161779,1163922,CVE-2019-3687,CVE-2020-8013
Description:

This update for permissions fixes the following issues:
Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-RU-2020:572-1
ReleasedTue Mar 3 13:25:41 2020
SummaryRecommended update for cyrus-sasl
Typerecommended
Severitymoderate
References1162518
Description:

This update for cyrus-sasl fixes the following issues:


Advisory IDSUSE-RU-2020:573-1
ReleasedTue Mar 3 13:37:28 2020
SummaryRecommended update for ca-certificates-mozilla
Typerecommended
Severitymoderate
References1160160
Description:

This update for ca-certificates-mozilla to 2.40 fixes the following issues:
Updated to 2.40 state of the Mozilla NSS Certificate store (bsc#1160160):
Removed certificates:


added certificates:


Advisory IDSUSE-RU-2020:597-1
ReleasedThu Mar 5 15:24:09 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1164950
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2020:633-1
ReleasedTue Mar 10 16:23:08 2020
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1139939,1151023
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-SU-2020:668-1
ReleasedFri Mar 13 10:48:58 2020
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1163184,1164505,1165784,CVE-2020-10029
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2020:689-1
ReleasedFri Mar 13 17:09:01 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1166510
Description:


This update for PAM fixes the following issue:


Advisory IDSUSE-RU-2020:475-1
ReleasedThu Mar 19 11:00:46 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1160595
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2020:726-1
ReleasedThu Mar 19 13:23:03 2020
SummarySecurity update for nghttp2
Typesecurity
Severitymoderate
References1125689,1146182,1146184,1159003,1166481,CVE-2019-18802,CVE-2019-9511,CVE-2019-9513
Description:

This update for nghttp2 fixes the following issues:
Security issues fixed:


Bug fixes and enhancements:

Update to version 1.40.0 to fix CVE-2019-18802 in envoy-proxy and cilium-proxy (bsc#1166481)
* lib: Add nghttp2_check_authority as public API * lib: Fix the bug that stream is closed with wrong error code * lib: Faster huffman encoding and decoding * build: Avoid filename collision of static and dynamic lib * build: Add new flag ENABLE_STATIC_CRT for Windows * build: cmake: Support building nghttpx with systemd * third-party: Update neverbleed to fix memory leak * nghttpx: Fix bug that mruby is incorrectly shared between backends * nghttpx: Reconnect h1 backend if it lost connection before sending headers * nghttpx: Returns 408 if backend timed out before sending headers * nghttpx: Fix request stal

Update to version 1.39.2 (bsc#1146184, bsc#1146182):


Update to version 1.39.1:

Changes for version 1.39.0:


Advisory IDSUSE-RU-2020:729-1
ReleasedThu Mar 19 14:44:22 2020
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1166106
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2020:793-1
ReleasedWed Mar 25 15:16:00 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1139459,1161262,1162108,1164717,1165579,CVE-2020-1712
Description:

This update for systemd fixes the following issues:



Added support for I/O scheduler selection with blk-mq (bsc#1165579, bsc#1164717).
Added the udev 60-ssd-scheduler.rules:


Advisory IDSUSE-RU-2020:814-1
ReleasedMon Mar 30 16:23:40 2020
SummaryRecommended update for QR-Code-generator, boost, libreoffice, myspell-dictionaries, xmlsec1
Typerecommended
Severitymoderate
References1161816,1162152,1167223
Description:

This update for QR-Code-generator, boost, libreoffice, myspell-dictionaries, xmlsec1 fixes the following issues:
libreoffice was updated to 6.4.2.2 (jsc#SLE-11174 jsc#SLE-11175 jsc#SLE-11176 bsc#1167223):
Full Release Notes can be found on:
https://wiki.documentfoundation.org/ReleaseNotes/6.4


xmlsec1 was updated to 1.2.28:



Version update to 1.2.27:

myspell-dictionaries was updated to 20191219:


boost was updated to fix:
The QR-Code-generator is shipped:


Advisory IDSUSE-SU-2020:820-1
ReleasedTue Mar 31 13:02:22 2020
SummarySecurity update for glibc
Typesecurity
Severityimportant
References1167631,CVE-2020-1752
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2020:834-1
ReleasedTue Mar 31 17:21:34 2020
SummaryRecommended update for permissions
Typerecommended
Severitymoderate
References1167163
Description:

This update for permissions fixes the following issue:


Advisory IDSUSE-RU-2020:846-1
ReleasedThu Apr 2 07:24:07 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1164950,1166748,1167674
Description:

This update for libgcrypt fixes the following issues:


* Set up global_init as the constructor function: * Relax the entropy requirements on selftest. This is especially important for virtual machines to boot properly before the RNG is available:


Advisory IDSUSE-RU-2020:917-1
ReleasedFri Apr 3 15:02:25 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1166510
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2020:948-1
ReleasedWed Apr 8 07:44:21 2020
SummarySecurity update for gmp, gnutls, libnettle
Typesecurity
Severitymoderate
References1152692,1155327,1166881,1168345,CVE-2020-11501
Description:

This update for gmp, gnutls, libnettle fixes the following issues:
Security issue fixed:


FIPS related bugfixes:


Advisory IDSUSE-RU-2020:961-1
ReleasedWed Apr 8 13:34:06 2020
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1160979
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-SU-2020:967-1
ReleasedThu Apr 9 11:41:53 2020
SummarySecurity update for libssh
Typesecurity
Severitymoderate
References1168699,CVE-2020-1730
Description:

This update for libssh fixes the following issues:


Advisory IDSUSE-SU-2020:969-1
ReleasedThu Apr 9 11:43:17 2020
SummarySecurity update for permissions
Typesecurity
Severitymoderate
References1168364
Description:

This update for permissions fixes the following issues:


Advisory IDSUSE-RU-2020:981-1
ReleasedMon Apr 13 15:43:44 2020
SummaryRecommended update for rpm
Typerecommended
Severitymoderate
References1156300
Description:

This update for rpm fixes the following issues:


Advisory IDSUSE-RU-2020:1026-1
ReleasedFri Apr 17 16:14:43 2020
SummaryRecommended update for libsolv
Typerecommended
Severitymoderate
References1159314
Description:

This update for libsolv fixes the following issues:
libsolv was updated to version 0.7.11:


Advisory IDSUSE-RU-2020:1047-1
ReleasedTue Apr 21 10:33:06 2020
SummaryRecommended update for gnutls
Typerecommended
Severitymoderate
References1168835
Description:

This update for gnutls fixes the following issues:


Advisory IDSUSE-RU-2020:1063-1
ReleasedWed Apr 22 10:46:50 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1165539,1169569
Description:

This update for libgcrypt fixes the following issues:
This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2020:1108-1
ReleasedFri Apr 24 16:31:01 2020
SummaryRecommended update for gnutls
Typerecommended
Severitymoderate
References1169992
Description:

This update for gnutls fixes the following issues:


Advisory IDSUSE-RU-2020:1175-1
ReleasedTue May 5 08:33:43 2020
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1165011,1168076
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2020:1214-1
ReleasedThu May 7 11:20:34 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1169944
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-SU-2020:1219-1
ReleasedThu May 7 17:10:42 2020
SummarySecurity update for openldap2
Typesecurity
Severityimportant
References1170771,CVE-2020-12243
Description:

This update for openldap2 fixes the following issues:


Advisory IDSUSE-RU-2020:1226-1
ReleasedFri May 8 10:51:05 2020
SummaryRecommended update for gcc9
Typerecommended
Severitymoderate
References1149995,1152590,1167898
Description:

This update for gcc9 fixes the following issues:
This update ships the GCC 9.3 release.


Advisory IDSUSE-RU-2020:1271-1
ReleasedWed May 13 13:17:59 2020
SummaryRecommended update for permissions
Typerecommended
Severityimportant
References1171173
Description:

This update for permissions fixes the following issues:


Advisory IDSUSE-RU-2020:1290-1
ReleasedFri May 15 16:39:59 2020
SummaryRecommended update for gnutls
Typerecommended
Severitymoderate
References1171422
Description:

This update for gnutls fixes the following issues:


Advisory IDSUSE-SU-2020:1294-1
ReleasedMon May 18 07:38:36 2020
SummarySecurity update for file
Typesecurity
Severitymoderate
References1154661,1169512,CVE-2019-18218
Description:

This update for file fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2020:1299-1
ReleasedMon May 18 07:43:21 2020
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1159928,1161517,1161521,CVE-2019-19956,CVE-2019-20388,CVE-2020-7595
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2020:1328-1
ReleasedMon May 18 17:16:04 2020
SummaryRecommended update for grep
Typerecommended
Severitymoderate
References1155271
Description:

This update for grep fixes the following issues:


Advisory IDSUSE-RU-2020:1361-1
ReleasedThu May 21 09:31:18 2020
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1171872
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2020:1400-1
ReleasedMon May 25 14:09:02 2020
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1162930
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2020:1404-1
ReleasedMon May 25 15:32:34 2020
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1138793,1166260
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-RU-2020:1506-1
ReleasedFri May 29 17:22:11 2020
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1087982,1170527
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-SU-2020:1532-1
ReleasedThu Jun 4 10:16:12 2020
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1172021,CVE-2019-19956
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2020:1573-1
ReleasedTue Jun 9 12:07:53 2020
SummaryAdd features for Metrics Server, Cert Status Checker, VSphere VCP, and Cilium Envoy
Typesecurity
Severitymoderate
References1041090,1047218,1048688,1086909,1094448,1095603,1102920,1121353,1129568,1138908,1144068,1151876,1156450,1159002,1159003,1159004,1159539,1162651,1167073,1169506,CVE-2019-18801,CVE-2019-18802,CVE-2019-18836,CVE-2019-18838
Description:



Metrics Server
* Support monitoring of *CPU* and *memory* of a pod or node. Cert Status Checker * Exposes cluster-wide certificates status and use monitoring stack (Prometheus and Grafana) to receives alerts by Prometheus Alertmanager and monitors certificate status by Grafana dashboard. VSphere VCP * Allow Kubernetes pods to use VMWare vSphere Virtual Machine Disk (VMDK) volumes as persistent storage. Cilium Envoy * Updated Cilium from version 1.5.3 to version 1.6.6 * Provide Envoy-proxy support for Cilium * Envoy and its dependencies packaged for version 1.12.2 * Cilium uses CRD and ConfigMap points on etcd are removed See release notes for installation instructions: https://www.suse.com/releasenotes/x86_64/SUSE-CAASP/4/

Following CVE entries are relevant for the casp 4.2.1 update:

cilium-proxy:
CVE-2019-18801: An untrusted remote client might have been able to send HTTP/2 requests via cilium-proxyx that could have written to the heap outside of the request buffers when the upstream is HTTP/1. (bsc#1159002) CVE-2019-18802: A malformed request header may have caused bypass of route matchers resulting in escalation of privileges or information disclosure (bsc#1159003) CVE-2019-18838: A malformed HTTP request without the Host header may cause abnormal termination ofthe Envoy process (bsc#1159004) CVE-2019-18836: Excessive iteration due to listener filter timeout in envoy could lead to DoS (bsc#1156450)
kafka:
CVE-2018-1288: authenticated Kafka users may perform action reserved for the Broker via a manually created fetch request. (bsc#1102920)


SUSE-CU-2019:151-1

Container Advisory IDSUSE-CU-2019:151-1
Container Tagscaasp/v4/cilium-operator:1.5.3 , caasp/v4/cilium-operator:1.5.3-rev3 , caasp/v4/cilium-operator:1.5.3-rev3-build1.1
Container Release1.1
The following patches have been included in this update:
Advisory IDSUSE-RU-2019:2188-1
ReleasedWed Aug 21 10:10:29 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1140647
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-RU-2019:2218-1
ReleasedMon Aug 26 11:29:57 2019
SummaryRecommended update for pinentry
Typerecommended
Severitymoderate
References1141883
Description:

This update for pinentry fixes the following issues:


SUSE-CU-2019:150-1

Container Advisory IDSUSE-CU-2019:150-1
Container Tagscaasp/v4/cilium-operator:1.5.3 , caasp/v4/cilium-operator:1.5.3-rev2 , caasp/v4/cilium-operator:1.5.3-rev2-build2.2.13 , caasp/v4/cilium-operator:beta
Container Release2.2.13
The following patches have been included in this update:
Advisory IDSUSE-RU-2019:2097-1
ReleasedFri Aug 9 09:31:17 2019
SummaryRecommended update for libgcrypt
Typerecommended
Severityimportant
References1097073
Description:

This update for libgcrypt fixes the following issues:


Advisory IDSUSE-RU-2019:2134-1
ReleasedWed Aug 14 11:54:56 2019
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1136717,1137624,1141059,SLE-5807
Description:

This update for zlib fixes the following issues:


SUSE-CU-2019:149-1

Container Advisory IDSUSE-CU-2019:149-1
Container Tagscaasp/v4/cilium-operator:1.4.2 , caasp/v4/cilium-operator:1.4.2-rev2 , caasp/v4/cilium-operator:1.4.2-rev2-build1.1 , caasp/v4/cilium-operator:beta
Container Release1.1
The following patches have been included in this update:

SUSE-CU-2019:148-1

Container Advisory IDSUSE-CU-2019:148-1
Container Tagscaasp/v4/cilium-operator:1.5.3 , caasp/v4/cilium-operator:1.5.3-rev1 , caasp/v4/cilium-operator:1.5.3-rev1-build2.2.47 , caasp/v4/cilium-operator:beta
Container Release2.2.47
The following patches have been included in this update:
Advisory IDSUSE-RU-2019:1994-1
ReleasedFri Jul 26 16:12:05 2019
SummaryRecommended update for libxml2
Typerecommended
Severitymoderate
References1135123
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2019:2004-1
ReleasedMon Jul 29 13:01:59 2019
SummarySecurity update for bzip2
Typesecurity
Severityimportant
References1139083,CVE-2019-12900
Description:

This update for bzip2 fixes the following issues:


Advisory IDSUSE-SU-2019:2006-1
ReleasedMon Jul 29 13:02:49 2019
SummarySecurity update for gpg2
Typesecurity
Severityimportant
References1124847,1141093,CVE-2019-13050
Description:

This update for gpg2 fixes the following issues:
Security issue fixed:


Non-security issue fixed:


SUSE-CU-2019:147-1

Container Advisory IDSUSE-CU-2019:147-1
Container Tagscaasp/v4/cilium-operator:1.5.3 , caasp/v4/cilium-operator:1.5.3-rev1 , caasp/v4/cilium-operator:1.5.3-rev1-build2.2.39 , caasp/v4/cilium-operator:beta
Container Release2.2.39
The following patches have been included in this update:

SUSE-CU-2019:146-1

Container Advisory IDSUSE-CU-2019:146-1
Container Tagscaasp/v4/cilium-operator:1.5.3 , caasp/v4/cilium-operator:1.5.3-rev1 , caasp/v4/cilium-operator:1.5.3-rev1-build2.2.39 , caasp/v4/cilium-operator:beta
Container Release2.2.39
The following patches have been included in this update:
Advisory IDSUSE-SU-2019:1846-1
ReleasedMon Jul 15 11:36:33 2019
SummarySecurity update for bzip2
Typesecurity
Severityimportant
References1139083,CVE-2019-12900
Description:

This update for bzip2 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1853-1
ReleasedMon Jul 15 16:03:36 2019
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1107617,1137053
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2019:1877-1
ReleasedThu Jul 18 11:31:46 2019
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1117993,1123710,1127223,1127308,1131330,CVE-2009-5155,CVE-2019-9169
Description:

This update for glibc fixes the following issues:
Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2019:1971-1
ReleasedThu Jul 25 14:58:52 2019
SummarySecurity update for libgcrypt
Typesecurity
Severitymoderate
References1138939,CVE-2019-12904
Description:

This update for libgcrypt fixes the following issues:
Security issue fixed:


SUSE-CU-2019:145-1

Container Advisory IDSUSE-CU-2019:145-1
Container Tagscaasp/v4/cilium-operator:1.5.3 , caasp/v4/cilium-operator:1.5.3-rev1 , caasp/v4/cilium-operator:1.5.3-rev1-build2.2.25 , caasp/v4/cilium-operator:beta
Container Release2.2.25
The following patches have been included in this update:
Advisory IDSUSE-RU-2019:1590-1
ReleasedThu Jun 20 19:49:57 2019
SummaryRecommended update for permissions
Typerecommended
Severitymoderate
References1128598
Description:

This update for permissions fixes the following issues:


Advisory IDSUSE-RU-2019:1631-1
ReleasedFri Jun 21 11:17:21 2019
SummaryRecommended update for xz
Typerecommended
Severitylow
References1135709
Description:

This update for xz fixes the following issues:
Add SUSE-Public-Domain licence as some parts of xz utils (liblzma, xz, xzdec, lzmadec, documentation, translated messages, tests, debug, extra directory) are in public domain licence [bsc#1135709]


Advisory IDSUSE-RU-2019:1635-1
ReleasedFri Jun 21 12:45:53 2019
SummaryRecommended update for krb5
Typerecommended
Severitymoderate
References1134217
Description:

This update for krb5 provides the following fix:



Advisory IDSUSE-RU-2019:1700-1
ReleasedTue Jun 25 13:19:21 2019
SummarySecurity update for libssh
Typerecommended
Severitymoderate
References1134193
Description:

This update for libssh fixes the following issue:
Issue addressed:


Advisory IDSUSE-RU-2019:1808-1
ReleasedWed Jul 10 13:16:29 2019
SummaryRecommended update for libgcrypt
Typerecommended
Severitymoderate
References1133808
Description:

This update for libgcrypt fixes the following issues:


SUSE-CU-2019:144-1

Container Advisory IDSUSE-CU-2019:144-1
Container Tagscaasp/v4/cilium-operator:1.5.3 , caasp/v4/cilium-operator:1.5.3-rev1 , caasp/v4/cilium-operator:1.5.3-rev1-build2.2.11 , caasp/v4/cilium-operator:beta
Container Release2.2.11
The following patches have been included in this update:

SUSE-CU-2019:143-1

Container Advisory IDSUSE-CU-2019:143-1
Container Tagscaasp/v4/cilium-operator:1.5.3 , caasp/v4/cilium-operator:1.5.3-rev1 , caasp/v4/cilium-operator:1.5.3-rev1-build2.2.11 , caasp/v4/cilium-operator:beta
Container Release2.2.11
The following patches have been included in this update:

SUSE-CU-2019:142-1

Container Advisory IDSUSE-CU-2019:142-1
Container Tagscaasp/v4/cilium-operator:1.5.1 , caasp/v4/cilium-operator:1.5.1-rev1 , caasp/v4/cilium-operator:1.5.1-rev1-build2.2.10 , caasp/v4/cilium-operator:beta
Container Release2.2.10
The following patches have been included in this update:

SUSE-CU-2019:141-1

Container Advisory IDSUSE-CU-2019:141-1
Container Tagscaasp/v4/cilium-operator:1.5.1 , caasp/v4/cilium-operator:1.5.1-rev1 , caasp/v4/cilium-operator:1.5.1-rev1-build2.2.9 , caasp/v4/cilium-operator:beta
Container Release2.2.9
The following patches have been included in this update:
Advisory IDSUSE-RU-2019:1484-1
ReleasedThu Jun 13 07:46:46 2019
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1128383
Description:

This update for e2fsprogs fixes the following issues:


Advisory IDSUSE-SU-2019:1486-1
ReleasedThu Jun 13 09:40:24 2019
SummarySecurity update for elfutils
Typesecurity
Severitymoderate
References1033084,1033085,1033086,1033087,1033088,1033089,1033090,1106390,1107066,1107067,1111973,1112723,1112726,1123685,1125007,CVE-2017-7607,CVE-2017-7608,CVE-2017-7609,CVE-2017-7610,CVE-2017-7611,CVE-2017-7612,CVE-2017-7613,CVE-2018-16062,CVE-2018-16402,CVE-2018-16403,CVE-2018-18310,CVE-2018-18520,CVE-2018-18521,CVE-2019-7150,CVE-2019-7665
Description:

This update for elfutils fixes the following issues:
Security issues fixed:


SUSE-CU-2019:140-1

Container Advisory IDSUSE-CU-2019:140-1
Container Tagscaasp/v4/cilium-operator:1.4.2 , caasp/v4/cilium-operator:1.4.2-rev1 , caasp/v4/cilium-operator:1.4.2-rev1-build2.2.4 , caasp/v4/cilium-operator:beta
Container Release2.2.4
The following patches have been included in this update:

SUSE-CU-2019:139-1

Container Advisory IDSUSE-CU-2019:139-1
Container Tagscaasp/v4/cilium-operator:1.4.2 , caasp/v4/cilium-operator:1.4.2-rev1 , caasp/v4/cilium-operator:1.4.2-rev1-build2.2.4 , caasp/v4/cilium-operator:beta
Container Release2.2.4
The following patches have been included in this update:

SUSE-CU-2019:138-1

Container Advisory IDSUSE-CU-2019:138-1
Container Tagscaasp/v4/cilium-operator:1.4.2 , caasp/v4/cilium-operator:1.4.2-rev1 , caasp/v4/cilium-operator:1.4.2-rev1-build1.1 , caasp/v4/cilium-operator:beta
Container Release1.1
The following patches have been included in this update:
Advisory IDSUSE-SU-2018:1223-1
ReleasedTue Jun 26 11:41:00 2018
SummarySecurity update for gpg2
Typesecurity
Severityimportant
References1096745,CVE-2018-12020
Description:

This update for gpg2 fixes the following security issue:


Advisory IDSUSE-RU-2018:1264-1
ReleasedTue Jul 3 10:56:12 2018
SummaryRecommended update for curl
Typerecommended
Severitymoderate
References1086367
Description:

This update for curl provides the following fix:


Advisory IDSUSE-SU-2018:1327-1
ReleasedTue Jul 17 08:07:24 2018
SummarySecurity update for perl
Typesecurity
Severitymoderate
References1096718,CVE-2018-12015
Description:

This update for perl fixes the following issues:


Advisory IDSUSE-SU-2018:1346-1
ReleasedThu Jul 19 09:25:08 2018
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1082318,1092877,1094150,1094154,1094161,CVE-2017-18269,CVE-2018-11236,CVE-2018-11237
Description:

This update for glibc fixes the following security issues:


Advisory IDSUSE-SU-2018:1353-1
ReleasedThu Jul 19 09:50:32 2018
SummarySecurity update for e2fsprogs
Typesecurity
Severitymoderate
References1009532,1038194,915402,918346,960273,CVE-2015-0247,CVE-2015-1572
Description:

This update for e2fsprogs fixes the following issues:
Security issues fixed:


Bug fixes:


Advisory IDSUSE-RU-2018:1362-1
ReleasedThu Jul 19 12:47:33 2018
SummaryRecommended update for ca-certificates-mozilla
Typerecommended
Severitymoderate
References1100415
Description:



ca-certificates-mozilla was updated to the 2.24 state of the Mozilla NSS Certificate store. (bsc#1100415)
Following CAs were removed:



Advisory IDSUSE-SU-2018:1396-1
ReleasedThu Jul 26 16:23:09 2018
SummarySecurity update for rpm
Typesecurity
Severitymoderate
References1094735,1095148,943457,CVE-2017-7500
Description:

This update for rpm fixes the following issues:
This security vulnerability was fixed:


Advisory IDSUSE-RU-2018:1409-1
ReleasedFri Jul 27 06:45:10 2018
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1039099,1083158,1088052,1091265,1093851,1095096,1095973,1098569
Description:

This update for systemd provides the following fixes:


Advisory IDSUSE-SU-2018:1685-1
ReleasedFri Aug 17 18:20:58 2018
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1099793,CVE-2018-0500
Description:

This update for curl fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2018:1754-1
ReleasedFri Aug 24 16:40:21 2018
SummaryRecommended update for ca-certificates-mozilla
Typerecommended
Severitymoderate
References1104780
Description:


This update for ca-certificates-mozilla fixes the following issues:
Updated to the 2.26 state of the Mozilla NSS Certificate store. (bsc#1104780)


- Certplus Root CA G1 - Certplus Root CA G2 - OpenTrust Root CA G1 - OpenTrust Root CA G2 - OpenTrust Root CA G3

- ComSign CA

- GlobalSign


Advisory IDSUSE-RU-2018:1760-1
ReleasedFri Aug 24 17:14:53 2018
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1072183
Description:

This update for libtirpc fixes the following issues:


Advisory IDSUSE-SU-2018:1904-1
ReleasedFri Sep 14 12:46:39 2018
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1086367,1106019,CVE-2018-14618
Description:

This update for curl fixes the following issues:
This security issue was fixed:


This non-security issue was fixed:


Advisory IDSUSE-RU-2018:1999-1
ReleasedTue Sep 25 08:20:35 2018
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1071321
Description:

This update for zlib provides the following fixes:


Advisory IDSUSE-RU-2018:2055-1
ReleasedThu Sep 27 14:30:14 2018
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1089640
Description:

This update for openldap2 provides the following fix:


Advisory IDSUSE-SU-2018:2070-1
ReleasedFri Sep 28 08:02:02 2018
SummarySecurity update for gnutls
Typesecurity
Severitymoderate
References1047002,1105437,1105459,1105460,CVE-2017-10790,CVE-2018-10844,CVE-2018-10845,CVE-2018-10846
Description:

This update for gnutls fixes the following security issues:


Advisory IDSUSE-SU-2018:2083-1
ReleasedSun Sep 30 14:06:33 2018
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1097158,1101470,CVE-2018-0732
Description:

This update for openssl-1_1 to 1.1.0i fixes the following issues:
These security issues were fixed:


These non-security issues were fixed:


Advisory IDSUSE-RU-2018:2155-1
ReleasedFri Oct 5 14:41:17 2018
SummaryRecommended update for ca-certificates
Typerecommended
Severitymoderate
References1101470
Description:

This update for ca-certificates fixes the following issues:


Advisory IDSUSE-RU-2018:2177-1
ReleasedTue Oct 9 09:00:13 2018
SummaryRecommended update for bash
Typerecommended
Severitymoderate
References1095661,1095670,1100488
Description:

This update for bash provides the following fixes:


Advisory IDSUSE-SU-2018:2182-1
ReleasedTue Oct 9 11:08:36 2018
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1088279,1102046,1105166,CVE-2018-14404,CVE-2018-14567,CVE-2018-9251
Description:

This update for libxml2 fixes the following security issues:


Advisory IDSUSE-RU-2018:2370-1
ReleasedMon Oct 22 14:02:01 2018
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1102310,1104531
Description:

This update for aaa_base provides the following fixes:


Advisory IDSUSE-RU-2018:2487-1
ReleasedFri Oct 26 12:39:07 2018
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1102526
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2018:2539-1
ReleasedTue Oct 30 16:17:23 2018
SummaryRecommended update for rpm
Typerecommended
Severitymoderate
References1113100
Description:

This update for rpm fixes the following issues:


Advisory IDSUSE-RU-2018:2569-1
ReleasedFri Nov 2 19:00:18 2018
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1110700
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2018:2578-1
ReleasedMon Nov 5 17:55:35 2018
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1112758,1113660,CVE-2018-16839,CVE-2018-16840,CVE-2018-16842
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2018:2595-1
ReleasedWed Nov 7 11:14:42 2018
SummarySecurity update for systemd
Typesecurity
Severityimportant
References1089761,1090944,1091677,1093753,1101040,1102908,1105031,1107640,1107941,1109197,1109252,1110445,1112024,1113083,1113632,1113665,1114135,991901,CVE-2018-15686,CVE-2018-15688
Description:

This update for systemd fixes the following issues:
Security issues fixed:


Non security issues fixed:


Advisory IDSUSE-RU-2018:2607-1
ReleasedWed Nov 7 15:42:48 2018
SummaryOptional update for gcc8
Typerecommended
Severitylow
References1084812,1084842,1087550,1094222,1102564
Description:


The GNU Compiler GCC 8 is being added to the Development Tools Module by this update.
The update also supplies gcc8 compatible libstdc++, libgcc_s1 and other gcc derived libraries for the Basesystem module of SUSE Linux Enterprise 15.
Various optimizers have been improved in GCC 8, several of bugs fixed, quite some new warnings added and the error pin-pointing and fix-suggestions have been greatly improved.
The GNU Compiler page for GCC 8 contains a summary of all the changes that have happened:
https://gcc.gnu.org/gcc-8/changes.html
Also changes needed or common pitfalls when porting software are described on:
https://gcc.gnu.org/gcc-8/porting_to.html


Advisory IDSUSE-SU-2018:2825-1
ReleasedMon Dec 3 15:35:02 2018
SummarySecurity update for pam
Typesecurity
Severityimportant
References1115640,CVE-2018-17953
Description:

This update for pam fixes the following issue:
Security issue fixed:


Advisory IDSUSE-SU-2018:2861-1
ReleasedThu Dec 6 14:32:01 2018
SummarySecurity update for ncurses
Typesecurity
Severityimportant
References1103320,1115929,CVE-2018-19211
Description:

This update for ncurses fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2018:2984-1
ReleasedWed Dec 19 11:32:39 2018
SummarySecurity update for perl
Typesecurity
Severitymoderate
References1114674,1114675,1114681,1114686,CVE-2018-18311,CVE-2018-18312,CVE-2018-18313,CVE-2018-18314
Description:

This update for perl fixes the following issues:
Secuirty issues fixed:


Advisory IDSUSE-SU-2018:2986-1
ReleasedWed Dec 19 13:53:22 2018
SummarySecurity update for libnettle
Typesecurity
Severitymoderate
References1118086,CVE-2018-16869
Description:

This update for libnettle fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:23-1
ReleasedMon Jan 7 16:30:33 2019
SummarySecurity update for gpg2
Typesecurity
Severitymoderate
References1120346,CVE-2018-1000858
Description:

This update for gpg2 fixes the following issue:
Security issue fixed:


Advisory IDSUSE-RU-2019:44-1
ReleasedTue Jan 8 13:07:32 2019
SummaryRecommended update for acl
Typerecommended
Severitylow
References953659
Description:

This update for acl fixes the following issues:


Advisory IDSUSE-SU-2019:137-1
ReleasedMon Jan 21 15:52:45 2019
SummarySecurity update for systemd
Typesecurity
Severityimportant
References1005023,1045723,1076696,1080919,1093753,1101591,1111498,1114933,1117063,1119971,1120323,CVE-2018-16864,CVE-2018-16865,CVE-2018-16866,CVE-2018-6954
Description:

This update for systemd provides the following fixes:
Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-RU-2019:147-1
ReleasedWed Jan 23 17:57:31 2019
SummaryRecommended update for ca-certificates-mozilla
Typerecommended
Severitymoderate
References1121446
Description:

This update for ca-certificates-mozilla fixes the following issues:
The package was updated to the 2.30 version of the Mozilla NSS Certificate store. (bsc#1121446)
Removed Root CAs:
- AC Raiz Certicamara S.A. - Certplus Root CA G1 - Certplus Root CA G2 - OpenTrust Root CA G1 - OpenTrust Root CA G2 - OpenTrust Root CA G3 - Visa eCommerce Root
Added Root CAs:
- Certigna Root CA (email and server auth) - GTS Root R1 (server auth) - GTS Root R2 (server auth) - GTS Root R3 (server auth) - GTS Root R4 (server auth) - OISTE WISeKey Global Root GC CA (email and server auth) - UCA Extended Validation Root (server auth) - UCA Global G2 Root (email and server auth)


Advisory IDSUSE-RU-2019:189-1
ReleasedMon Jan 28 14:14:46 2019
SummaryRecommended update for rpm
Typerecommended
Severitymoderate
References
Description:

This update for rpm fixes the following issues:


Advisory IDSUSE-SU-2019:247-1
ReleasedWed Feb 6 07:18:45 2019
SummarySecurity update for lua53
Typesecurity
Severitymoderate
References1123043,CVE-2019-6706
Description:

This update for lua53 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:248-1
ReleasedWed Feb 6 08:35:20 2019
SummarySecurity update for curl
Typesecurity
Severityimportant
References1123371,1123377,1123378,CVE-2018-16890,CVE-2019-3822,CVE-2019-3823
Description:

This update for curl fixes the following issues:
Security issues fixed:


Advisory IDSUSE-RU-2019:369-1
ReleasedWed Feb 13 14:01:42 2019
SummaryRecommended update for itstool
Typerecommended
Severitymoderate
References1065270,1111019
Description:

This update for itstool and python-libxml2-python fixes the following issues:
Package: itstool - Updated version to support Python3. (bnc#1111019)
Package: python-libxml2-python - Fix segfault when parsing invalid data. (bsc#1065270)


Advisory IDSUSE-SU-2019:426-1
ReleasedMon Feb 18 17:46:55 2019
SummarySecurity update for systemd
Typesecurity
Severityimportant
References1117025,1121563,1122000,1123333,1123727,1123892,1124153,1125352,CVE-2019-6454
Description:

This update for systemd fixes the following issues:



Advisory IDSUSE-SU-2019:571-1
ReleasedThu Mar 7 18:13:46 2019
SummarySecurity update for file
Typesecurity
Severitymoderate
References1096974,1096984,1126117,1126118,1126119,CVE-2018-10360,CVE-2019-8905,CVE-2019-8906,CVE-2019-8907
Description:

This update for file fixes the following issues:
The following security vulnerabilities were addressed:


Advisory IDSUSE-RU-2019:641-1
ReleasedTue Mar 19 13:17:28 2019
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1112570,1114984,1114993
Description:

This update for glibc provides the following fixes:


Advisory IDSUSE-RU-2019:664-1
ReleasedWed Mar 20 14:54:12 2019
SummaryRecommended update for gpgme
Typerecommended
Severitylow
References1121051
Description:

This update for gpgme provides the following fix:


Advisory IDSUSE-RU-2019:700-1
ReleasedThu Mar 21 19:54:00 2019
SummaryRecommended update for cyrus-sasl
Typerecommended
Severitymoderate
References1044840
Description:

This update for cyrus-sasl provides the following fix:


Advisory IDSUSE-RU-2019:713-1
ReleasedFri Mar 22 15:55:05 2019
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1063675,1126590
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-RU-2019:732-1
ReleasedMon Mar 25 14:10:04 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1088524,1118364,1128246
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-SU-2019:788-1
ReleasedThu Mar 28 11:55:06 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1119687,CVE-2018-20346
Description:

This update for sqlite3 to version 3.27.2 fixes the following issue:
Security issue fixed:


Release notes: https://www.sqlite.org/releaselog/3_27_2.html


Advisory IDSUSE-RU-2019:791-1
ReleasedThu Mar 28 12:06:50 2019
SummarySecurity update for libnettle
Typerecommended
Severitymoderate
References1129598
Description:

This update for libnettle to version 3.4.1 fixes the following issues:
Issues addressed and new features:


Advisory IDSUSE-RU-2019:858-1
ReleasedWed Apr 3 15:50:37 2019
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1120689,1126096
Description:

This update for libtirpc fixes the following issues:


Advisory IDSUSE-RU-2019:894-1
ReleasedFri Apr 5 17:16:23 2019
SummaryRecommended update for rpm
Typerecommended
Severitymoderate
References1119414,1126327,1129753,SLE-3853,SLE-4117
Description:

This update for rpm fixes the following issues:


Advisory IDSUSE-SU-2019:903-1
ReleasedMon Apr 8 15:41:44 2019
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1100396,1122729,1130045,CVE-2016-10739
Description:

This update for glibc fixes the following issues:
Security issue fixed:


Other issue fixed:


Advisory IDSUSE-RU-2019:1002-1
ReleasedWed Apr 24 10:13:34 2019
SummaryRecommended update for zlib
Typerecommended
Severitymoderate
References1110304,1129576
Description:

This update for zlib fixes the following issues:


Advisory IDSUSE-SU-2019:1040-1
ReleasedThu Apr 25 17:09:21 2019
SummarySecurity update for samba
Typesecurity
Severityimportant
References1114407,1124223,1125410,1126377,1131060,1131686,CVE-2019-3880
Description:

This update for samba fixes the following issues:
Security issue fixed:



ldb was updated to version 1.2.4 (bsc#1125410 bsc#1131686):


Non-security issues fixed:


Advisory IDSUSE-SU-2019:1121-1
ReleasedTue Apr 30 18:02:43 2019
SummarySecurity update for gnutls
Typesecurity
Severityimportant
References1118087,1130681,1130682,CVE-2018-16868,CVE-2019-3829,CVE-2019-3836
Description:

This update for gnutls fixes to version 3.6.7 the following issues:
Security issued fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:1127-1
ReleasedThu May 2 09:39:24 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1130325,1130326,CVE-2019-9936,CVE-2019-9937
Description:

This update for sqlite3 to version 3.28.0 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:1206-1
ReleasedFri May 10 14:01:55 2019
SummarySecurity update for bzip2
Typesecurity
Severitylow
References985657,CVE-2016-3189
Description:

This update for bzip2 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:1312-1
ReleasedWed May 22 12:19:12 2019
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1096191
Description:

This update for aaa_base fixes the following issue:
* Shell detection in /etc/profile and /etc/bash.bashrc was broken within AppArmor-confined containers (bsc#1096191)


Advisory IDSUSE-SU-2019:1351-1
ReleasedFri May 24 14:41:10 2019
SummarySecurity update for gnutls
Typesecurity
Severityimportant
References1118087,1134856,CVE-2018-16868
Description:

This update for gnutls fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:1357-1
ReleasedMon May 27 13:29:15 2019
SummarySecurity update for curl
Typesecurity
Severityimportant
References1135170,CVE-2019-5436
Description:

This update for curl fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:1364-1
ReleasedTue May 28 10:51:38 2019
SummarySecurity update for systemd
Typesecurity
Severitymoderate
References1036463,1121563,1124122,1125352,1125604,1126056,1127557,1130230,1132348,1132400,1132721,1133506,1133509,CVE-2019-3842,CVE-2019-3843,CVE-2019-3844,CVE-2019-6454,SLE-5933
Description:

This update for systemd fixes the following issues:
Security issues fixed:


Non-security issued fixed:


Advisory IDSUSE-SU-2019:1368-1
ReleasedTue May 28 13:15:38 2019
SummaryRecommended update for sles12sp3-docker-image, sles12sp4-image, system-user-root
Typesecurity
Severityimportant
References1134524,CVE-2019-5021
Description:

This update for sles12sp3-docker-image, sles12sp4-image, system-user-root fixes the following issues:


Advisory IDSUSE-SU-2019:1372-1
ReleasedTue May 28 16:53:28 2019
SummarySecurity update for libtasn1
Typesecurity
Severitymoderate
References1105435,CVE-2018-1000654
Description:

This update for libtasn1 fixes the following issues:
Security issue fixed: