Container summary for bci/kiwi


SUSE-CU-2024:5275-1

Container Advisory IDSUSE-CU-2024:5275-1
Container Tagsbci/kiwi:9 , bci/kiwi:9.24 , bci/kiwi:9.24-16.1 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-16.1 , bci/kiwi:latest
Container Release16.1
The following patches have been included in this update:

SUSE-CU-2024:5236-1

Container Advisory IDSUSE-CU-2024:5236-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-18.5 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-18.5 , bci/kiwi:latest
Container Release18.5
The following patches have been included in this update:

SUSE-CU-2024:5216-1

Container Advisory IDSUSE-CU-2024:5216-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-18.3 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-18.3 , bci/kiwi:latest
Container Release18.3
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3726-1
ReleasedFri Oct 18 11:56:40 2024
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1231051
Description:

This update for glibc fixes the following issue:


SUSE-CU-2024:5179-1

Container Advisory IDSUSE-CU-2024:5179-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-18.2 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-18.2 , bci/kiwi:latest
Container Release18.2
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3659-1
ReleasedWed Oct 16 15:12:47 2024
SummaryRecommended update for gcc14
Typerecommended
Severitymoderate
References1188441,1210959,1214915,1219031,1220724,1221601
Description:

This update for gcc14 fixes the following issues:
This update ships the GNU Compiler Collection GCC 14.2. (jsc#PED-10474)
The compiler runtime libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 13 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP5 and SP6, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc14 compilers use:


For a full changelog with all new GCC14 features, check out
https://gcc.gnu.org/gcc-14/changes.html



Advisory IDSUSE-RU-2024:3681-1
ReleasedWed Oct 16 19:34:35 2024
SummaryRecommended update for libzypp
Typerecommended
Severityimportant
References1230912,1231043
Description:

This update for libzypp fixes the following issues:


SUSE-CU-2024:5100-1

Container Advisory IDSUSE-CU-2024:5100-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-17.2 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:latest
Container Release17.2
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3609-1
ReleasedMon Oct 14 11:39:13 2024
SummaryRecommended update for SLES-release
Typerecommended
Severitymoderate
References1227100,1230135
Description:

This update for SLES-release fixes the following issues:


Advisory IDSUSE-RU-2024:3616-1
ReleasedMon Oct 14 13:03:56 2024
SummaryRecommended update for libnettle
Typerecommended
Severitymoderate
References1221714,1226724
Description:


This update for libnettle fixes the following issue:


SUSE-CU-2024:5032-1

Container Advisory IDSUSE-CU-2024:5032-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-16.5 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:latest
Container Release16.5
The following patches have been included in this update:

SUSE-CU-2024:4994-1

Container Advisory IDSUSE-CU-2024:4994-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-16.4 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:latest
Container Release16.4
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3589-1
ReleasedThu Oct 10 16:39:07 2024
SummaryRecommended update for cyrus-sasl
Typerecommended
Severitymoderate
References1230111
Description:

This update for cyrus-sasl fixes the following issues:


Advisory IDSUSE-RU-2024:3597-1
ReleasedFri Oct 11 10:39:52 2024
SummaryRecommended update for bash
Typerecommended
Severitymoderate
References1227807
Description:

This update for bash fixes the following issues:


SUSE-CU-2024:4945-1

Container Advisory IDSUSE-CU-2024:4945-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-16.2 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:latest
Container Release16.2
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3528-1
ReleasedFri Oct 4 15:31:43 2024
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1230145
Description:

This update for e2fsprogs fixes the following issue:


SUSE-CU-2024:4789-1

Container Advisory IDSUSE-CU-2024:4789-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-9.4 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:latest
Container Release9.4
The following patches have been included in this update:

SUSE-CU-2024:4770-1

Container Advisory IDSUSE-CU-2024:4770-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-9.3 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:latest
Container Release9.3
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:3440-1
ReleasedMon Aug 28 08:57:10 2023
SummarySecurity update for gawk
Typesecurity
Severitylow
References1214025,CVE-2023-4156
Description:

This update for gawk fixes the following issues:


Advisory IDSUSE-SU-2024:2060-1
ReleasedTue Jun 18 13:11:47 2024
SummarySecurity update for less
Typesecurity
Severityimportant
References1222849,CVE-2024-32487
Description:

This update for less fixes the following issues:


Advisory IDSUSE-SU-2024:2277-1
ReleasedTue Jul 2 17:03:49 2024
SummarySecurity update for git
Typesecurity
Severityimportant
References1224168,1224170,1224171,1224172,1224173,CVE-2024-32002,CVE-2024-32004,CVE-2024-32020,CVE-2024-32021,CVE-2024-32465
Description:

This update for git fixes the following issues:


Advisory IDSUSE-SU-2024:2579-1
ReleasedMon Jul 22 12:36:34 2024
SummarySecurity update for git
Typesecurity
Severityimportant
References1219660,CVE-2024-24577
Description:

This update for git fixes the following issues:


Advisory IDSUSE-SU-2024:3501-1
ReleasedTue Oct 1 16:03:34 2024
SummarySecurity update for openssl-3
Typesecurity
Severityimportant
References1230698,CVE-2024-41996
Description:

This update for openssl-3 fixes the following issues:


Advisory IDSUSE-RU-2024:3504-1
ReleasedTue Oct 1 16:22:27 2024
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1230638
Description:

This update for glibc fixes the following issue:


Advisory IDSUSE-RU-2024:3512-1
ReleasedWed Oct 2 18:14:56 2024
SummaryRecommended update for systemd
Typerecommended
Severityimportant
References1226414,1228091,1228223,1228809,1229518
Description:

This update for systemd fixes the following issues:


SUSE-CU-2024:4668-1

Container Advisory IDSUSE-CU-2024:4668-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-7.4 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:latest
Container Release7.4
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3476-1
ReleasedFri Sep 27 15:16:38 2024
SummaryRecommended update for curl
Typerecommended
Severitymoderate
References1230516
Description:

This update for curl fixes the following issue:


SUSE-CU-2024:4667-1

Container Advisory IDSUSE-CU-2024:4667-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-7.3 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:latest
Container Release7.3
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3470-1
ReleasedFri Sep 27 14:34:46 2024
SummarySecurity update for python3
Typesecurity
Severityimportant
References1227233,1227378,1227999,1228780,1229596,1230227,CVE-2024-5642,CVE-2024-6232,CVE-2024-6923,CVE-2024-7592
Description:

This update for python3 fixes the following issues:


Bug fixes:


Advisory IDSUSE-RU-2024:3480-1
ReleasedFri Sep 27 15:35:46 2024
SummaryRecommended update for mdadm
Typerecommended
Severitymoderate
References1226413
Description:

This update for mdadm fixes the following issues:


SUSE-CU-2024:4603-1

Container Advisory IDSUSE-CU-2024:4603-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-7.1 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:latest
Container Release7.1
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3450-1
ReleasedThu Sep 26 09:09:16 2024
SummaryRecommended update for pam-config
Typerecommended
Severitymoderate
References1227216
Description:

This update for pam-config fixes the following issues:


SUSE-CU-2024:4539-1

Container Advisory IDSUSE-CU-2024:4539-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-5.2 , bci/kiwi:9.24 , bci/kiwi:9.24.43 , bci/kiwi:latest
Container Release5.2
The following patches have been included in this update:

SUSE-CU-2024:4517-1

Container Advisory IDSUSE-CU-2024:4517-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-4.5 , bci/kiwi:9.24 , bci/kiwi:9.24-4.5 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-4.5 , bci/kiwi:latest
Container Release4.5
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3407-1
ReleasedTue Sep 24 07:05:00 2024
SummaryRecommended update for virtiofsd
Typerecommended
Severitymoderate
References1220304,1220592,1228972
Description:

This update for virtiofsd fixes the following issues:


Advisory IDSUSE-RU-2024:3412-1
ReleasedTue Sep 24 09:42:52 2024
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1228729
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2024:3413-1
ReleasedTue Sep 24 10:56:18 2024
SummaryRecommended update for qemu
Typerecommended
Severityimportant
References1229929
Description:

This update for qemu fixes the following issues:


SUSE-CU-2024:4481-1

Container Advisory IDSUSE-CU-2024:4481-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-4.2 , bci/kiwi:9.24 , bci/kiwi:9.24-4.2 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-4.2 , bci/kiwi:latest
Container Release4.2
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3346-1
ReleasedThu Sep 19 17:20:06 2024
SummaryRecommended update for libzypp, zypper
Typerecommended
Severitymoderate
References1228647,1230267
Description:

This update for libzypp, zypper fixes the following issues:


SUSE-CU-2024:4439-1

Container Advisory IDSUSE-CU-2024:4439-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-4.1 , bci/kiwi:9.24 , bci/kiwi:9.24-4.1 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-4.1 , bci/kiwi:latest
Container Release4.1
The following patches have been included in this update:

SUSE-CU-2024:4433-1

Container Advisory IDSUSE-CU-2024:4433-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-3.5 , bci/kiwi:9.24 , bci/kiwi:9.24-3.5 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-3.5 , bci/kiwi:latest
Container Release3.5
The following patches have been included in this update:

SUSE-CU-2024:4407-1

Container Advisory IDSUSE-CU-2024:4407-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-3.4 , bci/kiwi:9.24 , bci/kiwi:9.24-3.4 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-3.4 , bci/kiwi:latest
Container Release3.4
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3300-1
ReleasedWed Sep 18 14:27:53 2024
SummaryRecommended update for ncurses
Typerecommended
Severitymoderate
References1229028
Description:

This update for ncurses fixes the following issues:


SUSE-CU-2024:4361-1

Container Advisory IDSUSE-CU-2024:4361-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-3.3 , bci/kiwi:9.24 , bci/kiwi:9.24-3.3 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-3.3 , bci/kiwi:latest
Container Release3.3
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3216-1
ReleasedThu Sep 12 13:05:20 2024
SummarySecurity update for expat
Typesecurity
Severitymoderate
References1229930,1229931,1229932,CVE-2024-45490,CVE-2024-45491,CVE-2024-45492
Description:

This update for expat fixes the following issues:


Advisory IDSUSE-RU-2024:3232-1
ReleasedFri Sep 13 08:48:00 2024
SummaryRecommended update for qemu
Typerecommended
Severitymoderate
References1221812
Description:

This update for qemu fixes the following issues:
* Reschedule query-block during qcow2 invalidation (bsc#1221812)


Advisory IDSUSE-RU-2024:3239-1
ReleasedFri Sep 13 12:00:58 2024
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1229476
Description:

This update for util-linux fixes the following issue:


SUSE-CU-2024:4241-1

Container Advisory IDSUSE-CU-2024:4241-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-2.5 , bci/kiwi:9.24 , bci/kiwi:9.24-2.5 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-2.5 , bci/kiwi:latest
Container Release2.5
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3204-1
ReleasedWed Sep 11 10:55:22 2024
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1230093,CVE-2024-8096
Description:

This update for curl fixes the following issues:


SUSE-CU-2024:4145-1

Container Advisory IDSUSE-CU-2024:4145-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-2.3 , bci/kiwi:9.24 , bci/kiwi:9.24-2.3 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-2.3 , bci/kiwi:latest
Container Release2.3
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3166-1
ReleasedMon Sep 9 12:25:30 2024
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1228042
Description:

This update for glibc fixes the following issue:


Advisory IDSUSE-RU-2024:3178-1
ReleasedMon Sep 9 14:39:12 2024
SummaryRecommended update for libzypp, zypper, libsolv, zypp-plugin, PackageKit-branding-SLE, PackageKit, libyui, yast2-pkg-bindings
Typerecommended
Severityimportant
References1081596,1223094,1224771,1225267,1226014,1226030,1226493,1227205,1227625,1227793,1228138,1228206,1228208,1228420,1228787,222971
Description:

This update for libzypp, zypper, libsolv, zypp-plugin, PackageKit-branding-SLE, PackageKit, libyui, yast2-pkg-bindings fixes the following issues:


Advisory IDSUSE-RU-2024:3180-1
ReleasedMon Sep 9 14:50:18 2024
SummaryRecommended update for binutils
Typerecommended
Severitymoderate
References1215341,1216908
Description:

This update for binutils fixes the following issues:
Update to current 2.43.1 branch [jsc#PED-10474]:
Update to version 2.43:


Update to version 2.42:


SUSE-CU-2024:4033-1

Container Advisory IDSUSE-CU-2024:4033-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-10.7 , bci/kiwi:9.24 , bci/kiwi:9.24-10.7 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-10.7 , bci/kiwi:latest
Container Release10.7
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3103-1
ReleasedTue Sep 3 16:59:06 2024
SummaryRecommended update for xfsprogs
Typerecommended
Severitymoderate
References1229160
Description:

This update for xfsprogs fixes the following issue:


Advisory IDSUSE-SU-2024:3106-1
ReleasedTue Sep 3 17:00:40 2024
SummarySecurity update for openssl-3
Typesecurity
Severitymoderate
References1220523,1220690,1220693,1220696,1221365,1221751,1221752,1221753,1221760,1221786,1221787,1221821,1221822,1221824,1221827,1229465,CVE-2024-6119
Description:

This update for openssl-3 fixes the following issues:


Other fixes:


Advisory IDSUSE-RU-2024:3124-1
ReleasedTue Sep 3 17:38:34 2024
SummaryRecommended update for cryptsetup
Typerecommended
Severitymoderate
References1229975
Description:

This update for cryptsetup fixes the following issues:


Advisory IDSUSE-RU-2024:3131-1
ReleasedTue Sep 3 17:42:24 2024
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1224113
Description:

This update for mozilla-nss fixes the following issues:


Advisory IDSUSE-RU-2024:3132-1
ReleasedTue Sep 3 17:43:10 2024
SummaryRecommended update for permissions
Typerecommended
Severitymoderate
References1228968,1229329
Description:

This update for permissions fixes the following issues:



Advisory IDSUSE-RU-2024:3141-1
ReleasedWed Sep 4 12:30:32 2024
SummaryRecommended update for python-kiwi
Typerecommended
Severityimportant
References1228808
Description:

This update for python-kiwi fixes the following issues:


SUSE-CU-2024:3971-1

Container Advisory IDSUSE-CU-2024:3971-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-10.5 , bci/kiwi:9.24 , bci/kiwi:9.24-10.5 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-10.5 , bci/kiwi:latest
Container Release10.5
The following patches have been included in this update:

SUSE-CU-2024:3906-1

Container Advisory IDSUSE-CU-2024:3906-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-10.4 , bci/kiwi:9.24 , bci/kiwi:9.24-10.4 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-10.4 , bci/kiwi:latest
Container Release10.4
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3054-1
ReleasedWed Aug 28 14:48:31 2024
SummarySecurity update for python3-setuptools
Typesecurity
Severityimportant
References1228105,CVE-2024-6345
Description:

This update for python3-setuptools fixes the following issues:


SUSE-CU-2024:3878-1

Container Advisory IDSUSE-CU-2024:3878-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-10.3 , bci/kiwi:9.24 , bci/kiwi:9.24-10.3 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-10.3 , bci/kiwi:latest
Container Release10.3
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:2967-1
ReleasedMon Aug 19 15:41:29 2024
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1194818
Description:

This update for pam fixes the following issue:


Advisory IDSUSE-SU-2024:2983-1
ReleasedTue Aug 20 11:10:04 2024
SummarySecurity update for qemu
Typesecurity
Severityimportant
References1227322,1229007,CVE-2024-4467,CVE-2024-7409
Description:

This update for qemu fixes the following issues:



SUSE-CU-2024:3797-1

Container Advisory IDSUSE-CU-2024:3797-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-9.1 , bci/kiwi:9.24 , bci/kiwi:9.24-9.1 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-9.1 , bci/kiwi:latest
Container Release9.1
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:2912-1
ReleasedWed Aug 14 20:20:13 2024
SummaryRecommended update for cloud-regionsrv-client
Typerecommended
Severityimportant
References1222985,1223571,1224014,1224016,1227308
Description:

This update for cloud-regionsrv-client contains the following fixes:



Advisory IDSUSE-SU-2024:2933-1
ReleasedThu Aug 15 12:12:50 2024
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1225907,1226463,1227138,CVE-2024-5535
Description:

This update for openssl-1_1 fixes the following issues:


Other fixes:


SUSE-CU-2024:3674-1

Container Advisory IDSUSE-CU-2024:3674-1
Container Tagsbci/kiwi:9 , bci/kiwi:9-8.6 , bci/kiwi:9.24 , bci/kiwi:9.24-8.6 , bci/kiwi:9.24.43 , bci/kiwi:9.24.43-8.6 , bci/kiwi:latest
Container Release8.6
The following patches have been included in this update:
Advisory IDSUSE-RU-2018:2193-1
ReleasedWed Oct 10 13:20:50 2018
SummaryRecommended update for dialog
Typerecommended
Severitymoderate
References1094836
Description:

This update for dialog fixes the following issues:


Advisory IDSUSE-RU-2018:2569-1
ReleasedFri Nov 2 19:00:18 2018
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1110700
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2018:2607-1
ReleasedWed Nov 7 15:42:48 2018
SummaryOptional update for gcc8
Typerecommended
Severitylow
References1084812,1084842,1087550,1094222,1102564
Description:


The GNU Compiler GCC 8 is being added to the Development Tools Module by this update.
The update also supplies gcc8 compatible libstdc++, libgcc_s1 and other gcc derived libraries for the Basesystem module of SUSE Linux Enterprise 15.
Various optimizers have been improved in GCC 8, several of bugs fixed, quite some new warnings added and the error pin-pointing and fix-suggestions have been greatly improved.
The GNU Compiler page for GCC 8 contains a summary of all the changes that have happened:
https://gcc.gnu.org/gcc-8/changes.html
Also changes needed or common pitfalls when porting software are described on:
https://gcc.gnu.org/gcc-8/porting_to.html


Advisory IDSUSE-RU-2018:2798-1
ReleasedWed Nov 28 07:48:35 2018
SummaryRecommended update for make
Typerecommended
Severitymoderate
References1100504
Description:

This update for make fixes the following issues:


Advisory IDSUSE-SU-2018:2825-1
ReleasedMon Dec 3 15:35:02 2018
SummarySecurity update for pam
Typesecurity
Severityimportant
References1115640,CVE-2018-17953
Description:

This update for pam fixes the following issue:
Security issue fixed:


Advisory IDSUSE-SU-2018:2861-1
ReleasedThu Dec 6 14:32:01 2018
SummarySecurity update for ncurses
Typesecurity
Severityimportant
References1103320,1115929,CVE-2018-19211
Description:

This update for ncurses fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2018:3044-1
ReleasedFri Dec 21 18:47:21 2018
SummarySecurity update for MozillaFirefox, mozilla-nspr and mozilla-nss
Typesecurity
Severityimportant
References1097410,1106873,1119069,1119105,CVE-2018-0495,CVE-2018-12384,CVE-2018-12404,CVE-2018-12405,CVE-2018-17466,CVE-2018-18492,CVE-2018-18493,CVE-2018-18494,CVE-2018-18498
Description:

This update for MozillaFirefox, mozilla-nss and mozilla-nspr fixes the following issues:
Issues fixed in MozillaFirefox:


Issues fixed in mozilla-nss:

Issues fixed in mozilla-nspr:


Advisory IDSUSE-RU-2019:6-1
ReleasedWed Jan 2 20:25:25 2019
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1099119,1099192
Description:



GCC 7 was updated to the GCC 7.4 release.


Advisory IDSUSE-RU-2019:44-1
ReleasedTue Jan 8 13:07:32 2019
SummaryRecommended update for acl
Typerecommended
Severitylow
References953659
Description:

This update for acl fixes the following issues:


Advisory IDSUSE-SU-2019:247-1
ReleasedWed Feb 6 07:18:45 2019
SummarySecurity update for lua53
Typesecurity
Severitymoderate
References1123043,CVE-2019-6706
Description:

This update for lua53 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:571-1
ReleasedThu Mar 7 18:13:46 2019
SummarySecurity update for file
Typesecurity
Severitymoderate
References1096974,1096984,1126117,1126118,1126119,CVE-2018-10360,CVE-2019-8905,CVE-2019-8906,CVE-2019-8907
Description:

This update for file fixes the following issues:
The following security vulnerabilities were addressed:


Advisory IDSUSE-SU-2019:788-1
ReleasedThu Mar 28 11:55:06 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1119687,CVE-2018-20346
Description:

This update for sqlite3 to version 3.27.2 fixes the following issue:
Security issue fixed:


Release notes: https://www.sqlite.org/releaselog/3_27_2.html


Advisory IDSUSE-RU-2019:905-1
ReleasedMon Apr 8 16:48:02 2019
SummaryRecommended update for gcc
Typerecommended
Severitymoderate
References1096008
Description:

This update for gcc fixes the following issues:


Advisory IDSUSE-SU-2019:926-1
ReleasedWed Apr 10 16:33:12 2019
SummarySecurity update for tar
Typesecurity
Severitymoderate
References1120610,1130496,CVE-2018-20482,CVE-2019-9923
Description:

This update for tar fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:1040-1
ReleasedThu Apr 25 17:09:21 2019
SummarySecurity update for samba
Typesecurity
Severityimportant
References1114407,1124223,1125410,1126377,1131060,1131686,CVE-2019-3880
Description:

This update for samba fixes the following issues:
Security issue fixed:



ldb was updated to version 1.2.4 (bsc#1125410 bsc#1131686):


Non-security issues fixed:


Advisory IDSUSE-RU-2019:1105-1
ReleasedTue Apr 30 12:10:58 2019
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1084842,1114592,1124644,1128794,1129389,1131264,SLE-6738
Description:

This update for gcc7 fixes the following issues:
Update to gcc-7-branch head (r270528).


Advisory IDSUSE-SU-2019:1127-1
ReleasedThu May 2 09:39:24 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1130325,1130326,CVE-2019-9936,CVE-2019-9937
Description:

This update for sqlite3 to version 3.28.0 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:1368-1
ReleasedTue May 28 13:15:38 2019
SummaryRecommended update for sles12sp3-docker-image, sles12sp4-image, system-user-root
Typesecurity
Severityimportant
References1134524,CVE-2019-5021
Description:

This update for sles12sp3-docker-image, sles12sp4-image, system-user-root fixes the following issues:


Advisory IDSUSE-SU-2019:1372-1
ReleasedTue May 28 16:53:28 2019
SummarySecurity update for libtasn1
Typesecurity
Severitymoderate
References1105435,CVE-2018-1000654
Description:

This update for libtasn1 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:2142-1
ReleasedWed Aug 14 18:14:04 2019
SummaryRecommended update for mozilla-nspr, mozilla-nss
Typerecommended
Severitymoderate
References1141322
Description:


This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to NSS 3.45 (bsc#1141322) :


mozilla-nspr was updated to version 4.21


Advisory IDSUSE-RU-2019:2218-1
ReleasedMon Aug 26 11:29:57 2019
SummaryRecommended update for pinentry
Typerecommended
Severitymoderate
References1141883
Description:

This update for pinentry fixes the following issues:


Advisory IDSUSE-RU-2019:2249-1
ReleasedThu Aug 29 08:18:30 2019
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1141168
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-SU-2019:2533-1
ReleasedThu Oct 3 15:02:50 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1150137,CVE-2019-16168
Description:

This update for sqlite3 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-RU-2019:2642-1
ReleasedFri Oct 11 17:10:51 2019
SummaryRecommended update for python-kiwi
Typerecommended
Severityimportant
References1112357,1124885,1127173,1129566,1132455,1136444,1142899,1143033,1149686
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-SU-2019:2702-1
ReleasedWed Oct 16 18:41:30 2019
SummarySecurity update for gcc7
Typesecurity
Severitymoderate
References1071995,1141897,1142649,1148517,1149145,CVE-2019-14250,CVE-2019-15847
Description:

This update for gcc7 to r275405 fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:2730-1
ReleasedMon Oct 21 16:04:57 2019
SummarySecurity update for procps
Typesecurity
Severityimportant
References1092100,1121753,CVE-2018-1122,CVE-2018-1123,CVE-2018-1124,CVE-2018-1125,CVE-2018-1126
Description:

This update for procps fixes the following issues:
procps was updated to 3.3.15. (bsc#1092100)
Following security issues were fixed:



Also this non-security issue was fixed:

The update to 3.3.15 contains the following fixes:


Advisory IDSUSE-SU-2019:2779-1
ReleasedThu Oct 24 16:57:42 2019
SummarySecurity update for binutils
Typesecurity
Severitymoderate
References1109412,1109413,1109414,1111996,1112534,1112535,1113247,1113252,1113255,1116827,1118644,1118830,1118831,1120640,1121034,1121035,1121056,1133131,1133232,1141913,1142772,1152590,1154016,1154025,CVE-2018-1000876,CVE-2018-17358,CVE-2018-17359,CVE-2018-17360,CVE-2018-17985,CVE-2018-18309,CVE-2018-18483,CVE-2018-18484,CVE-2018-18605,CVE-2018-18606,CVE-2018-18607,CVE-2018-19931,CVE-2018-19932,CVE-2018-20623,CVE-2018-20651,CVE-2018-20671,CVE-2018-6323,CVE-2018-6543,CVE-2018-6759,CVE-2018-6872,CVE-2018-7208,CVE-2018-7568,CVE-2018-7569,CVE-2018-7570,CVE-2018-7642,CVE-2018-7643,CVE-2018-8945,CVE-2019-1010180,ECO-368,SLE-6206
Description:

This update for binutils fixes the following issues:
binutils was updated to current 2.32 branch [jsc#ECO-368].
Includes following security fixes:



Update to binutils 2.32:


Advisory IDSUSE-SU-2019:2997-1
ReleasedMon Nov 18 15:16:38 2019
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1103320,1154036,1154037,CVE-2019-17594,CVE-2019-17595
Description:

This update for ncurses fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:3061-1
ReleasedMon Nov 25 17:34:22 2019
SummarySecurity update for gcc9
Typesecurity
Severitymoderate
References1114592,1135254,1141897,1142649,1142654,1148517,1149145,CVE-2019-14250,CVE-2019-15847,SLE-6533,SLE-6536
Description:



This update includes the GNU Compiler Collection 9.
A full changelog is provided by the GCC team on:
https://www.gnu.org/software/gcc/gcc-9/changes.html

The base system compiler libraries libgcc_s1, libstdc++6 and others are now built by the gcc 9 packages.
To use it, install 'gcc9' or 'gcc9-c++' or other compiler brands and use CC=gcc-9 / CXX=g++-9 during configuration for using it.

Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2019:3086-1
ReleasedThu Nov 28 10:02:24 2019
SummarySecurity update for libidn2
Typesecurity
Severitymoderate
References1154884,1154887,CVE-2019-12290,CVE-2019-18224
Description:

This update for libidn2 to version 2.2.0 fixes the following issues:


Advisory IDSUSE-SU-2019:3395-1
ReleasedMon Dec 30 14:05:06 2019
SummarySecurity update for mozilla-nspr, mozilla-nss
Typesecurity
Severitymoderate
References1141322,1158527,1159819,CVE-2018-18508,CVE-2019-11745,CVE-2019-17006
Description:

This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to NSS 3.47.1:
Security issues fixed:


mozilla-nspr was updated to version 4.23:


Advisory IDSUSE-RU-2020:10-1
ReleasedThu Jan 2 12:35:06 2020
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1146475
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-RU-2020:225-1
ReleasedFri Jan 24 06:49:07 2020
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1158830
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2020:344-1
ReleasedThu Feb 6 13:08:33 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1139915,1150190,1155815,1156694,1156908,1157104,1157354,1159235,1159538
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2020:395-1
ReleasedTue Feb 18 14:16:48 2020
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1160086
Description:


This update for gcc7 fixes the following issue:



Advisory IDSUSE-RU-2020:453-1
ReleasedTue Feb 25 10:51:53 2020
SummaryRecommended update for binutils
Typerecommended
Severitymoderate
References1160590
Description:

This update for binutils fixes the following issues:


Advisory IDSUSE-RU-2020:525-1
ReleasedFri Feb 28 11:49:36 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1164562
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2020:689-1
ReleasedFri Mar 13 17:09:01 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1166510
Description:


This update for PAM fixes the following issue:


Advisory IDSUSE-RU-2020:840-1
ReleasedWed Apr 1 11:25:34 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1143454,1163978,1164310,1165578,1167746
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2020:917-1
ReleasedFri Apr 3 15:02:25 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1166510
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2020:948-1
ReleasedWed Apr 8 07:44:21 2020
SummarySecurity update for gmp, gnutls, libnettle
Typesecurity
Severitymoderate
References1152692,1155327,1166881,1168345,CVE-2020-11501
Description:

This update for gmp, gnutls, libnettle fixes the following issues:
Security issue fixed:


FIPS related bugfixes:


Advisory IDSUSE-RU-2020:1037-1
ReleasedMon Apr 20 10:49:39 2020
SummaryRecommended update for python-pytest
Typerecommended
Severitylow
References1002895,1107105,1138666,1167732
Description:


This update fixes the following issues:
New python-pytest versions are provided.
In Basesystem:


In Python2:


Advisory IDSUSE-RU-2020:1039-1
ReleasedMon Apr 20 11:33:39 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severityimportant
References1165960,1168480
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2020:1048-1
ReleasedTue Apr 21 10:33:46 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1165823
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2020:1226-1
ReleasedFri May 8 10:51:05 2020
SummaryRecommended update for gcc9
Typerecommended
Severitymoderate
References1149995,1152590,1167898
Description:

This update for gcc9 fixes the following issues:
This update ships the GCC 9.3 release.


Advisory IDSUSE-SU-2020:1294-1
ReleasedMon May 18 07:38:36 2020
SummarySecurity update for file
Typesecurity
Severitymoderate
References1154661,1169512,CVE-2019-18218
Description:

This update for file fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2020:1328-1
ReleasedMon May 18 17:16:04 2020
SummaryRecommended update for grep
Typerecommended
Severitymoderate
References1155271
Description:

This update for grep fixes the following issues:


Advisory IDSUSE-SU-2020:1353-1
ReleasedWed May 20 13:02:32 2020
SummarySecurity update for freetype2
Typesecurity
Severitymoderate
References1079603,1091109,CVE-2018-6942
Description:

This update for freetype2 to version 2.10.1 fixes the following issues:
Security issue fixed:


Non-security issues fixed:









Advisory IDSUSE-SU-2020:1677-1
ReleasedThu Jun 18 18:16:39 2020
SummarySecurity update for mozilla-nspr, mozilla-nss
Typesecurity
Severityimportant
References1159819,1169746,1171978,CVE-2019-17006,CVE-2020-12399
Description:

This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to version 3.53

Release notes: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.53_release_notes
mozilla-nspr to version 4.25


Advisory IDSUSE-RU-2020:1852-1
ReleasedMon Jul 6 16:50:23 2020
SummaryRecommended update for fontforge, ghostscript-fonts, ttf-converter, xorg-x11-fonts
Typerecommended
Severitymoderate
References1169444
Description:

This update for fontforge, ghostscript-fonts, ttf-converter, xorg-x11-fonts fixes the following issues:
Changes in fontforge:


Changes in ttf-converter:

--shift-unicode-values: When passed 3 comma separated numbers a,b,c this shifts the unicode values of glyphs between a and b (both included) by adding c. Can be used more than once. * Add --bitmapTransform parameter to transform bitmap glyphs. (bsc#1169444) When used, all glyphs are modified with the transformation function and values passed as parameters. The parameter has three values separated by commas: fliph|flipv|rotate90cw|rotate90ccw|rotate180|skew|transmove,xoff,yoff * Add support to convert bitmap fonts (bsc#1169444) * Rename MediumItalic subfamily to Medium Italic * Show some more information when removing duplicated glyphs * Add a --force-monospaced argument instead of hardcoding font names * Convert `BoldCond` subfamily to `Bold Condensed` * Fixes for Monospaced fonts and force the Nimbus Mono L font to be Monospaced. (bsc#1169444 #c41) * Add a --version argument * Fix subfamily names so the converted font's subfamily match the original ones. (bsc#1169444 #c41)
Changes in xorg-x11-fonts:

Changes in ghostscript-fonts:


Advisory IDSUSE-RU-2020:2083-1
ReleasedThu Jul 30 10:27:59 2020
SummaryRecommended update for diffutils
Typerecommended
Severitymoderate
References1156913
Description:

This update for diffutils fixes the following issue:


Advisory IDSUSE-RU-2020:2091-1
ReleasedThu Jul 30 14:55:00 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1156677,1168973,1172928
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2020:2148-1
ReleasedThu Aug 6 13:36:17 2020
SummaryRecommended update for ca-certificates-mozilla
Typerecommended
Severityimportant
References1174673
Description:

This update for ca-certificates-mozilla fixes the following issues:
Update to 2.42 state of the Mozilla NSS Certificate store (bsc#1174673)
Removed CAs:
* AddTrust External CA Root * AddTrust Class 1 CA Root * LuxTrust Global Root 2 * Staat der Nederlanden Root CA - G2 * Symantec Class 1 Public Primary Certification Authority - G4 * Symantec Class 2 Public Primary Certification Authority - G4 * VeriSign Class 3 Public Primary Certification Authority - G3
Added CAs:
* certSIGN Root CA G2 * e-Szigno Root CA 2017 * Microsoft ECC Root Certificate Authority 2017 * Microsoft RSA Root Certificate Authority 2017


Advisory IDSUSE-RU-2020:2415-1
ReleasedTue Sep 1 13:45:00 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1096738,1165730,1172908,1173226,1173356,1174009
Description:

This update for python-kiwi contains the following fixes:


* Skip filesystem check for XFS prior xfs_grow running xfs_repair check isn't strictly necessary before resizing, and in some cases it may even prevent resizing by giving an error that would be cleared through mounting the fs (e.g. when the fs wasn't cleanly umounted, and thus letting xfs recover and replay its journal). Given that xfs can only grow online (while being mounted), this is sufficient to ensure that the fs is in a state where it can be resized. This is related to bsc#1174009. (bsc#1174009)
* Fixed grub setup in EFI/BOOT directory
kiwi copied the same grub.cfg file as it exists in boot/grub2 to the efi path. This is wrong as the setup in the efi boot directory is used to enable normal grub loading and not providing the user grub configuration. In addition the changes here makes sure that the early grub boot code is placed into the system in any EFI case except for secure boot when shim-install is present. If shim-install is present it also creates the early grub boot setup such that kiwi doesn't have to do it. This Fixes #1491 and Fixes bsc#1172908. (bsc#1172908)
* Use rsync in inplace transfer mode
Using the --inplace option in rsync helps to save space on syncing the rootfs data and prevents e.g OBS workers from running out of VM space when transfering root filesystem data. Also using --inplace allows to keep hardlinks intact. This is related to bsc#1096738. (bsc#1096738)
* Don't keep copy of grub2-install in the system
To prevent shim-install from calling grub2-install in uefi mode kiwi temporary replaces the tool by a noop. This acts as a workaround for an issue in shim-install. However the workaround left a file copy of grub2-install in the system which should not happen. This commit Fixes bsc#1173226 and Fixes #1490. (bsc#1173226)
* Fixes live ISOs
This commit fixes iso images. Due to a change introduced in c7ed1cf live ISOs were no longer booting as the rootfs.img filesystem was copied to the squashfs container while being still mounted. Because of that, at boot time, it refused to mount. This commit adds umount method for the filesystem base class, so it can be umounted before deleting the instance. Fixes #1489 and bsc#1173356. (bsc#1173356)
* Support grub timeout_style parameter
Grub supports a style setting that influences the display of the menu depending on the configured timeout value. With this patch kiwi allows to specify the style via a new bootloader parameter named timeout_style='hidden|countdown'. If not set the grub default applies which shows the menu in any case. This Fixes bsc#1165730 and Fixes #1404. (bsc#1165730)
* Use auto video mode as default for grub
An explicit video mode 800x600 was used for grub if no video mode setup exists in the XML description. For grub this should better result in the auto mode. Related to bsc#1165730. (bsc#1165730)


Advisory IDSUSE-RU-2020:2735-1
ReleasedThu Sep 24 13:32:25 2020
SummaryRecommended update for systemd-rpm-macros
Typerecommended
Severitymoderate
References1173034
Description:

This update for systemd-rpm-macros fixes the following issues:


Advisory IDSUSE-RU-2020:2782-1
ReleasedTue Sep 29 11:40:22 2020
SummaryRecommended update for systemd-rpm-macros
Typerecommended
Severityimportant
References1176932
Description:

This update for systemd-rpm-macros fixes the following issues:



Advisory IDSUSE-SU-2020:2947-1
ReleasedFri Oct 16 15:23:07 2020
SummarySecurity update for gcc10, nvptx-tools
Typesecurity
Severitymoderate
References1172798,1172846,1173972,1174753,1174817,1175168,CVE-2020-13844
Description:

This update for gcc10, nvptx-tools fixes the following issues:
This update provides the GCC10 compiler suite and runtime libraries.
The base SUSE Linux Enterprise libraries libgcc_s1, libstdc++6 are replaced by the gcc10 variants.
The new compiler variants are available with '-10' suffix, you can specify them via:
CC=gcc-10 CXX=g++-10
or similar commands.
For a detailed changelog check out https://gcc.gnu.org/gcc-10/changes.html
Changes in nvptx-tools:


Advisory IDSUSE-RU-2020:2958-1
ReleasedTue Oct 20 12:24:55 2020
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1158830
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2020:2983-1
ReleasedWed Oct 21 15:03:03 2020
SummaryRecommended update for file
Typerecommended
Severitymoderate
References1176123
Description:

This update for file fixes the following issues:


Advisory IDSUSE-SU-2020:2995-1
ReleasedThu Oct 22 10:03:09 2020
SummarySecurity update for freetype2
Typesecurity
Severityimportant
References1177914,CVE-2020-15999
Description:

This update for freetype2 fixes the following issues:


Advisory IDSUSE-SU-2020:3060-1
ReleasedWed Oct 28 08:09:21 2020
SummarySecurity update for binutils
Typesecurity
Severitymoderate
References1126826,1126829,1126831,1140126,1142649,1143609,1153768,1153770,1157755,1160254,1160590,1163333,1163744,CVE-2019-12972,CVE-2019-14250,CVE-2019-14444,CVE-2019-17450,CVE-2019-17451,CVE-2019-9074,CVE-2019-9075,CVE-2019-9077
Description:

This update for binutils fixes the following issues:
binutils was updated to version 2.35. (jsc#ECO-2373)
Update to binutils 2.35:




Update to binutils 2.34:



Update to binutils 2.33.1:



Advisory IDSUSE-SU-2020:3091-1
ReleasedThu Oct 29 16:35:37 2020
SummarySecurity update for MozillaThunderbird and mozilla-nspr
Typesecurity
Severityimportant
References1174230,1176384,1176756,1176899,1177977,CVE-2020-15673,CVE-2020-15676,CVE-2020-15677,CVE-2020-15678,CVE-2020-15683,CVE-2020-15969
Description:

This update for MozillaThunderbird and mozilla-nspr fixes the following issues:



Advisory IDSUSE-RU-2020:3157-1
ReleasedWed Nov 4 15:37:05 2020
SummaryRecommended update for ca-certificates-mozilla
Typerecommended
Severitymoderate
References1177864
Description:

This update for ca-certificates-mozilla fixes the following issues:
The SSL Root CA store was updated to the 2.44 state of the Mozilla NSS Certificate store (bsc#1177864)


- EE Certification Centre Root CA - Taiwan GRCA

- Trustwave Global Certification Authority - Trustwave Global ECC P256 Certification Authority - Trustwave Global ECC P384 Certification Authority


Advisory IDSUSE-RU-2020:3462-1
ReleasedFri Nov 20 13:14:35 2020
SummaryRecommended update for pam and sudo
Typerecommended
Severitymoderate
References1174593,1177858,1178727
Description:

This update for pam and sudo fixes the following issue:
pam:


sudo:


Advisory IDSUSE-RU-2020:3535-1
ReleasedThu Nov 26 15:14:08 2020
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1170863,1175729,1176129,1176134,1176977
Description:

This update for python-kiwi fixes the following issues:
Update from version 9.21.7 to version 9.21.23


- On s390 the boot process is based on zipl which boots into an initrd from which a userspace grub process is started to support the grub capabilities. The implementation of this concept is provided via the grub2-s390x-emu package. Once installed the setup of the bootloader is done via the grub2-mkconfig and grub2-install commands and therefore from a caller perspective the same as with any other grub2 setup process. For kiwi this means no extra zipl bootloader target code is needed. Therefore this commit deletes the zipl setup from kiwi and puts on the standard grub2 process. - To support different targettypes the grub2-s390x-emu provided zipl template must be adapted. Parts of the former zipl bootloader setup therefore now applies to an update of the zipl2grub template file - Support for CDL/LDL DASD targets has been disabled in the schema When testing 4k devices and a respective zipl2grub template setup for CDL/LDL targettype it has turned out that grub2-install is not able to run on such a device. My assumption is that the device code in grub2-install does not work for 4k devices with an fdasd created partition table. As this needs further investigations and most probably adaptions on the grub toolchain for s390, we disabled the setup of these modes for now. emulated DASD (FBA) and SCSI targets stays supported. - Fix compat link for rpmdb location Fix the symlink creation for `/var/lib/rpm`. More specific or derived container images in which the base root tree already included the `/var/lib/rpm` the link, the `ln` command was creating a symlink inside the `/var/lib/rpm` folder given that it was following the already existing symlink. Adding the `--no-target-directory` force `ln` command to treat `/var/lib/rpm` path as the fully qualified symlink name. - Fixed s390/sle15 Virtual disk integration test The integration test used FBA mode as target. As the target is expected to be KVM this is the wrong setting. SCSI should be used instead. - Support dynamic linux/linuxefi in any case Instead of restricting the dynamic linux vs. linuxefi setup to a specific grub version, support this setup for any version of grub.


Advisory IDSUSE-RU-2020:3620-1
ReleasedThu Dec 3 17:03:55 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2020:3640-1
ReleasedMon Dec 7 13:24:41 2020
SummaryRecommended update for binutils
Typerecommended
Severityimportant
References1179036,1179341
Description:

This update for binutils fixes the following issues:
Update binutils 2.35 branch to commit 1c5243df:


Update binutils to 2.35.1 and rebased branch diff:


Advisory IDSUSE-SU-2020:3749-1
ReleasedThu Dec 10 14:39:28 2020
SummarySecurity update for gcc7
Typesecurity
Severitymoderate
References1150164,1161913,1167939,1172798,1178577,1178614,1178624,1178675,CVE-2020-13844
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-RU-2020:3791-1
ReleasedMon Dec 14 17:39:19 2020
SummaryRecommended update for gzip
Typerecommended
Severitymoderate
References
Description:

This update for gzip fixes the following issue:


Advisory IDSUSE-OU-2020:3795-1
ReleasedMon Dec 14 17:43:26 2020
SummaryOptional update for systemd-rpm-macros
Typeoptional
Severitylow
References1059627,1178481,1179020
Description:

This update for systemd-rpm-macros fixes the following issues:


Advisory IDSUSE-RU-2020:3942-1
ReleasedTue Dec 29 12:22:01 2020
SummaryRecommended update for libidn2
Typerecommended
Severitymoderate
References1180138
Description:

This update for libidn2 fixes the following issues:


Advisory IDSUSE-RU-2021:79-1
ReleasedTue Jan 12 10:49:34 2021
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1167939
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-RU-2021:220-1
ReleasedTue Jan 26 14:00:51 2021
SummaryRecommended update for keyutils
Typerecommended
Severitymoderate
References1180603
Description:

This update for keyutils fixes the following issues:


Advisory IDSUSE-RU-2021:228-1
ReleasedTue Jan 26 23:05:38 2021
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1179562,1180781
Description:

This update for python-kiwi fixes the following issues:


Advisory IDSUSE-RU-2021:293-1
ReleasedWed Feb 3 12:52:34 2021
SummaryRecommended update for gmp
Typerecommended
Severitymoderate
References1180603
Description:

This update for gmp fixes the following issues:


Advisory IDSUSE-OU-2021:339-1
ReleasedMon Feb 8 13:16:07 2021
SummaryOptional update for pam
Typeoptional
Severitylow
References
Description:

This update for pam fixes the following issues:


This patch is optional to be installed - it doesn't fix any bugs.


Advisory IDSUSE-SU-2021:492-1
ReleasedWed Feb 17 09:40:06 2021
SummarySecurity update for screen
Typesecurity
Severityimportant
References1182092,CVE-2021-26937
Description:

This update for screen fixes the following issues:


Advisory IDSUSE-RU-2021:596-1
ReleasedThu Feb 25 10:26:30 2021
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1181618
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-RU-2021:656-1
ReleasedMon Mar 1 09:34:21 2021
SummaryRecommended update for protobuf
Typerecommended
Severitymoderate
References1177127
Description:

This update for protobuf fixes the following issues:


Advisory IDSUSE-RU-2021:707-1
ReleasedThu Mar 4 09:19:36 2021
SummaryRecommended update for systemd-rpm-macros
Typerecommended
Severitymoderate
References1177039
Description:

This update for systemd-rpm-macros fixes the following issues:




Advisory IDSUSE-RU-2021:795-1
ReleasedTue Mar 16 10:28:02 2021
SummaryRecommended update for systemd-rpm-macros
Typerecommended
Severitylow
References1182661,1183012,1183051
Description:

This update for systemd-rpm-macros fixes the following issues:


Advisory IDSUSE-RU-2021:924-1
ReleasedTue Mar 23 10:00:49 2021
SummaryRecommended update for filesystem
Typerecommended
Severitymoderate
References1078466,1146705,1175519,1178775,1180020,1180083,1180596,1181011,1181831,1183094
Description:

This update for filesystem the following issues:


This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2021:974-1
ReleasedMon Mar 29 19:31:27 2021
SummarySecurity update for tar
Typesecurity
Severitylow
References1181131,CVE-2021-20193
Description:

This update for tar fixes the following issues:
CVE-2021-20193: Memory leak in read_header() in list.c (bsc#1181131)


Advisory IDSUSE-SU-2021:1007-1
ReleasedThu Apr 1 17:47:20 2021
SummarySecurity update for MozillaFirefox
Typesecurity
Severityimportant
References1183942,CVE-2021-23981,CVE-2021-23982,CVE-2021-23984,CVE-2021-23987
Description:

This update for MozillaFirefox fixes the following issues:


Advisory IDSUSE-RU-2021:1018-1
ReleasedTue Apr 6 14:29:13 2021
SummaryRecommended update for gzip
Typerecommended
Severitymoderate
References1180713
Description:

This update for gzip fixes the following issues:


Advisory IDSUSE-RU-2021:1169-1
ReleasedTue Apr 13 15:01:42 2021
SummaryRecommended update for procps
Typerecommended
Severitylow
References1181976
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2021:1234-1
ReleasedThu Apr 15 17:21:44 2021
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References1178670,1182211,1182264,1182963,1183059
Description:

This update for python-kiwi fixes the following issues:
Upgrade from version 9.23.19 to version 9.23.20


Advisory IDSUSE-RU-2021:1289-1
ReleasedWed Apr 21 14:02:46 2021
SummaryRecommended update for gzip
Typerecommended
Severitymoderate
References1177047
Description:

This update for gzip fixes the following issues:


Advisory IDSUSE-RU-2021:1291-1
ReleasedWed Apr 21 14:04:06 2021
SummaryRecommended update for mpfr
Typerecommended
Severitymoderate
References1141190
Description:

This update for mpfr fixes the following issues:


Technical library fixes:


Advisory IDSUSE-RU-2021:1549-1
ReleasedMon May 10 13:48:00 2021
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1185417
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2021:1643-1
ReleasedWed May 19 13:51:48 2021
SummaryRecommended update for pam
Typerecommended
Severityimportant
References1181443,1184358,1185562
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2021:1660-1
ReleasedWed May 19 18:46:53 2021
SummaryRecommended update for python-kiwi
Typerecommended
Severitymoderate
References
Description:

This update for python-kiwi fixes the following issues:



Advisory IDSUSE-SU-2021:1859-1
ReleasedFri Jun 4 09:02:38 2021
SummarySecurity update for python-py
Typesecurity
Severitymoderate
References1179805,1184505,CVE-2020-29651
Description:

This update for python-py fixes the following issues:


Advisory IDSUSE-RU-2021:1861-1
ReleasedFri Jun 4 09:59:40 2021
SummaryRecommended update for gcc10
Typerecommended
Severitymoderate
References1029961,1106014,1178577,1178624,1178675,1182016
Description:

This update for gcc10 fixes the following issues:


Advisory IDSUSE-RU-2021:1926-1
ReleasedThu Jun 10 08:38:14 2021
SummaryRecommended update for gcc
Typerecommended
Severitymoderate
References1096677
Description:

This update for gcc fixes the following issues:


Advisory IDSUSE-RU-2021:1935-1
ReleasedThu Jun 10 10:45:09 2021
SummaryRecommended update for gzip
Typerecommended
Severitymoderate
References1186642
Description:


This update for gzip fixes the following issue:


Advisory IDSUSE-SU-2021:2012-1
ReleasedFri Jun 18 09:15:13 2021
SummarySecurity update for python-urllib3
Typesecurity
Severityimportant
References1187045,CVE-2021-33503
Description:

This update for python-urllib3 fixes the following issues:


Advisory IDSUSE-RU-2021:2096-1
ReleasedMon Jun 21 13:35:38 2021
SummaryRecommended update for python-six
Typerecommended
Severitymoderate
References1186642
Description:


This update for python-six fixes the following issue:


Advisory IDSUSE-RU-2021:2173-1
ReleasedMon Jun 28 14:59:45 2021
SummaryRecommended update for automake
Typerecommended
Severitymoderate
References1040589,1047218,1182604,1185540,1186049
Description:

This update for automake fixes the following issues:


This update for pcre fixes the following issues:

This update for brp-check-suse fixes the following issues:


Advisory IDSUSE-RU-2021:2179-1
ReleasedMon Jun 28 17:36:37 2021
SummaryRecommended update for thin-provisioning-tools
Typerecommended
Severitymoderate
References1184124
Description:

This update for thin-provisioning-tools fixes the following issues:


Advisory IDSUSE-RU-2021:2193-1
ReleasedMon Jun 28 18:38:43 2021
SummaryRecommended update for tar
Typerecommended
Severitymoderate
References1184124
Description:

This update for tar fixes the following issues:


Advisory IDSUSE-SU-2021:2196-1
ReleasedTue Jun 29 09:41:39 2021
SummarySecurity update for lua53
Typesecurity
Severitymoderate
References1175448,1175449,CVE-2020-24370,CVE-2020-24371
Description:

This update for lua53 fixes the following issues:
Update to version 5.3.6:


Advisory IDSUSE-RU-2021:2286-1
ReleasedFri Jul 9 17:38:53 2021
SummaryRecommended update for dosfstools
Typerecommended
Severitymoderate
References1172863
Description:

This update for dosfstools fixes the following issue:


Advisory IDSUSE-SU-2021:2320-1
ReleasedWed Jul 14 17:01:06 2021
SummarySecurity update for sqlite3
Typesecurity
Severityimportant
References1157818,1158812,1158958,1158959,1158960,1159491,1159715,1159847,1159850,1160309,1160438,1160439,1164719,1172091,1172115,1172234,1172236,1172240,1173641,928700,928701,CVE-2015-3414,CVE-2015-3415,CVE-2019-19244,CVE-2019-19317,CVE-2019-19603,CVE-2019-19645,CVE-2019-19646,CVE-2019-19880,CVE-2019-19923,CVE-2019-19924,CVE-2019-19925,CVE-2019-19926,CVE-2019-19959,CVE-2019-20218,CVE-2020-13434,CVE-2020-13435,CVE-2020-13630,CVE-2020-13631,CVE-2020-13632,CVE-2020-15358,CVE-2020-9327
Description:

This update for sqlite3 fixes the following issues:


Advisory IDSUSE-RU-2021:2627-1
ReleasedThu Aug 5 12:10:46 2021
SummaryRecommended maintenance update for systemd-default-settings
Typerecommended
Severitymoderate
References1188348
Description:

This update for systemd-default-settings fixes the following issue:


Advisory IDSUSE-SU-2021:2817-1
ReleasedMon Aug 23 15:05:18 2021
SummarySecurity update for aws-cli, python-boto3, python-botocore, python-service_identity, python-trustme, python-urllib3
Typesecurity
Severitymoderate
References1102408,1138715,1138746,1176389,1177120,1182421,1182422,CVE-2020-26137
Description:

This patch updates the Python AWS SDK stack in SLE 15:
General:
# aws-cli


# python-boto3

# python-botocore

# python-urllib3

# python-service_identity

# python-trustme

Security fixes:
# python-urllib3:


Advisory IDSUSE-RU-2021:2899-1
ReleasedWed Sep 1 08:30:58 2021
SummaryRecommended update for systemd-rpm-macros
Typerecommended
Severitymoderate
References1186282,1187332
Description:

This update for systemd-rpm-macros fixes the following issues:


Advisory IDSUSE-RU-2021:2993-1
ReleasedThu Sep 9 14:31:33 2021
SummaryRecommended update for gcc
Typerecommended
Severitymoderate
References1185348
Description:

This update for gcc fixes the following issues:


Advisory IDSUSE-RU-2021:2997-1
ReleasedThu Sep 9 14:37:34 2021
SummaryRecommended update for python3
Typerecommended
Severitymoderate
References1187338,1189659
Description:

This update for python3 fixes the following issues:


Advisory IDSUSE-RU-2021:3001-1
ReleasedThu Sep 9 15:08:13 2021
SummaryRecommended update for netcfg
Typerecommended
Severitymoderate
References1189683
Description:

This update for netcfg fixes the following issues:


Advisory IDSUSE-RU-2021:3115-1
ReleasedThu Sep 16 14:04:26 2021
SummaryRecommended update for mozilla-nspr, mozilla-nss
Typerecommended
Severitymoderate
References1029961,1174697,1176206,1176934,1179382,1188891,CVE-2020-12400,CVE-2020-12401,CVE-2020-12403,CVE-2020-25648,CVE-2020-6829
Description:

This update for mozilla-nspr fixes the following issues:
mozilla-nspr was updated to version 4.32:



Mozilla NSS was updated to version 3.68:

update to NSS 3.67

update to NSS 3.66

update to NSS 3.65

update to NSS 3.64
disable_crypto_vsx.
  • bmo#1698320 - replace __builtin_cpu_supports('vsx') with
  • ppc_crypto_support() for clang.
  • bmo#1613235 - Add POWER ChaCha20 stream cipher vector
  • acceleration.
    Fixed in 3.63
    initialization to prevent build isses with GCC 4.8.
  • bmo#1683520 - [lib/freebl/ecl] P-384: allow zero scalars in dual
  • scalar multiplication.
  • bmo#1683520 - ECCKiila P521, change syntax of nested structs
  • initialization to prevent build isses with GCC 4.8.
  • bmo#1683520 - [lib/freebl/ecl] P-521: allow zero scalars in dual
  • scalar multiplication.
  • bmo#1696800 - HACL* update March 2021 - c95ab70fcb2bc21025d8845281bc4bc8987ca683.
  • bmo#1694214 - tstclnt can't enable middlebox compat mode.
  • bmo#1694392 - NSS does not work with PKCS #11 modules not supporting
  • profiles.
  • bmo#1685880 - Minor fix to prevent unused variable on early return.
  • bmo#1685880 - Fix for the gcc compiler version 7 to support setenv
  • with nss build.
  • bmo#1693217 - Increase nssckbi.h version number for March 2021 batch
  • of root CA changes, CA list version 2.48.
  • bmo#1692094 - Set email distrust after to 21-03-01 for Camerfirma's
  • 'Chambers of Commerce' and 'Global Chambersign' roots.
  • bmo#1618407 - Symantec root certs - Set CKA_NSS_EMAIL_DISTRUST_AFTER.
  • bmo#1693173 - Add GlobalSign R45, E45, R46, and E46 root certs to NSS.
  • bmo#1683738 - Add AC RAIZ FNMT-RCM SERVIDORES SEGUROS root cert to NSS.
  • bmo#1686854 - Remove GeoTrust PCA-G2 and VeriSign Universal root certs
  • from NSS.
  • bmo#1687822 - Turn off Websites trust bit for the “Staat der
  • Nederlanden Root CA - G3” root cert in NSS.
  • bmo#1692094 - Turn off Websites Trust Bit for 'Chambers of Commerce
  • Root - 2008' and 'Global Chambersign Root - 2008’.
  • bmo#1694291 - Tracing fixes for ECH.

  • update to NSS 3.62
    can corrupt 'cachedCertTable'
  • bmo#1690583 - Fix CH padding extension size calculation
  • bmo#1690421 - Adjust 3.62 ABI report formatting for new libabigail
  • bmo#1690421 - Install packaged libabigail in docker-builds image
  • bmo#1689228 - Minor ECH -09 fixes for interop testing, fuzzing
  • bmo#1674819 - Fixup a51fae403328, enum type may be signed
  • bmo#1681585 - Add ECH support to selfserv
  • bmo#1681585 - Update ECH to Draft-09
  • bmo#1678398 - Add Export/Import functions for HPKE context
  • bmo#1678398 - Update HPKE to draft-07

  • update to NSS 3.61
    values under certain conditions.
  • bmo#1684300 - Fix default PBE iteration count when NSS is compiled
  • with NSS_DISABLE_DBM.
  • bmo#1651411 - Improve constant-timeness in RSA operations.
  • bmo#1677207 - Upgrade Google Test version to latest release.
  • bmo#1654332 - Add aarch64-make target to nss-try.

  • Update to NSS 3.60.1:
    Notable changes in NSS 3.60:
    Update to NSS 3.59.1:
    PKCS11 modules
    Update to NSS 3.59:
    Notable changes:

    Bugfixes
    root certs when SHA1 signatures are disabled.
  • bmo#1644209 - Fix broken SelectedCipherSuiteReplacer filter to
  • solve some test intermittents
  • bmo#1672703 - Tolerate the first CCS in TLS 1.3 to fix a regression in
  • our CVE-2020-25648 fix that broke purple-discord (boo#1179382)
  • bmo#1666891 - Support key wrap/unwrap with RSA-OAEP
  • bmo#1667989 - Fix gyp linking on Solaris
  • bmo#1668123 - Export CERT_AddCertToListHeadWithData and
  • CERT_AddCertToListTailWithData from libnss
  • bmo#1634584 - Set CKA_NSS_SERVER_DISTRUST_AFTER for Trustis FPS Root CA
  • bmo#1663091 - Remove unnecessary assertions in the streaming
  • ASN.1 decoder that affected decoding certain PKCS8 private keys when using NSS debug builds
  • bmo#670839 - Use ARM crypto extension for AES, SHA1 and SHA2 on MacOS.

  • update to NSS 3.58
    Bugs fixed:

    update to NSS 3.57

    update to NSS 3.56
    Notable changes
    detection.
  • bmo#1652729 - Add build flag to disable RC2 and relocate to
  • lib/freebl/deprecated.
  • bmo#1656429 - Correct RTT estimate used in 0-RTT anti-replay.
  • bmo#1588941 - Send empty certificate message when scheme selection
  • fails.
  • bmo#1652032 - Fix failure to build in Windows arm64 makefile
  • cross-compilation.
  • bmo#1625791 - Fix deadlock issue in nssSlot_IsTokenPresent.
  • bmo#1653975 - Fix 3.53 regression by setting 'all' as the default
  • makefile target.
  • bmo#1659792 - Fix broken libpkix tests with unexpired PayPal cert.
  • bmo#1659814 - Fix interop.sh failures with newer tls-interop
  • commit and dependencies.
  • bmo#1656519 - NSPR dependency updated to 4.28

  • update to NSS 3.55
    Notable changes
    Relevant Bugfixes

    update to NSS 3.54
    Notable changes


    Bugs fixed
    Root Certification Authority; C=TW' root.
  • bmo#1645199 - Remove AddTrust root certificates.
  • bmo#1641718 - Remove 'LuxTrust Global Root 2' root certificate.
  • bmo#1639987 - Remove 'Staat der Nederlanden Root CA - G2' root
  • certificate.
  • bmo#1618402 - Remove Symantec root certificates and disable email trust
  • bit.
  • bmo#1640516 - NSS 3.54 should depend on NSPR 4.26.
  • bmo#1642146 - Fix undefined reference to `PORT_ZAlloc_stub' in seed.c.
  • bmo#1642153 - Fix infinite recursion building NSS.
  • bmo#1642638 - Fix fuzzing assertion crash.
  • bmo#1642871 - Enable SSL_SendSessionTicket after resumption.
  • bmo#1643123 - Support SSL_ExportEarlyKeyingMaterial with External PSKs.
  • bmo#1643557 - Fix numerous compile warnings in NSS.
  • bmo#1644774 - SSL gtests to use ClearServerCache when resetting
  • self-encrypt keys.
  • bmo#1645479 - Don't use SECITEM_MakeItem in secutil.c.
  • bmo#1646520 - Stricter enforcement of ASN.1 INTEGER encoding.

  • Advisory IDSUSE-RU-2021:3182-1
    ReleasedTue Sep 21 17:04:26 2021
    SummaryRecommended update for file
    Typerecommended
    Severitymoderate
    References1189996
    Description:

    This update for file fixes the following issues:


    Advisory IDSUSE-RU-2021:3274-1
    ReleasedFri Oct 1 10:34:17 2021
    SummaryRecommended update for ca-certificates-mozilla
    Typerecommended
    Severityimportant
    References1190858
    Description:

    This update for ca-certificates-mozilla fixes the following issues:


    Advisory IDSUSE-RU-2021:3382-1
    ReleasedTue Oct 12 14:30:17 2021
    SummaryRecommended update for ca-certificates-mozilla
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for ca-certificates-mozilla fixes the following issues:


    Advisory IDSUSE-SU-2021:3490-1
    ReleasedWed Oct 20 16:31:55 2021
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1190793,CVE-2021-39537
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2021:3494-1
    ReleasedWed Oct 20 16:48:46 2021
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1190052
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2021:3510-1
    ReleasedTue Oct 26 11:22:15 2021
    SummaryRecommended update for pam
    Typerecommended
    Severityimportant
    References1191987
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2021:3529-1
    ReleasedWed Oct 27 09:23:32 2021
    SummarySecurity update for pcre
    Typesecurity
    Severitymoderate
    References1172973,1172974,CVE-2019-20838,CVE-2020-14155
    Description:

    This update for pcre fixes the following issues:
    Update pcre to version 8.45:


    Advisory IDSUSE-SU-2021:3616-1
    ReleasedThu Nov 4 12:29:16 2021
    SummarySecurity update for binutils
    Typesecurity
    Severitymoderate
    References1179898,1179899,1179900,1179901,1179902,1179903,1180451,1180454,1180461,1181452,1182252,1183511,1184620,1184794,CVE-2020-16590,CVE-2020-16591,CVE-2020-16592,CVE-2020-16593,CVE-2020-16598,CVE-2020-16599,CVE-2020-35448,CVE-2020-35493,CVE-2020-35496,CVE-2020-35507,CVE-2021-20197,CVE-2021-20284,CVE-2021-3487
    Description:

    This update for binutils fixes the following issues:
    Update to binutils 2.37:


    The semantics of the =follow-links option have also been slightly changed. When enabled, the option allows for the loading of symbol tables and string tables from the separate files which can be used to enhance the information displayed when dumping other sections, but it does not automatically imply that information from the separate files should be displayed.
    If other debug section display options are also enabled (eg '--debug-dump=info') then the contents of matching sections in both the main file and the separate debuginfo file *will* be displayed. This is because in most cases the debug section will only be present in one of the files.
    If however non-debug section display options are enabled (eg '--sections') then the contents of matching parts of the separate debuginfo file will *not* be displayed. This is because in most cases the user probably only wanted to load the symbol information from the separate debuginfo file. In order to change this behaviour a new command line option --process-links can be used. This will allow di0pslay options to applied to both the main file and any separate debuginfo files.

    Update to binutils 2.36:
    New features in the Assembler:

    * When setting the link order attribute of ELF sections, it is now possible to use a numeric section index instead of symbol name. * Added a .nop directive to generate a single no-op instruction in a target neutral manner. This instruction does have an effect on DWARF line number generation, if that is active. * Removed --reduce-memory-overheads and --hash-size as gas now uses hash tables that can be expand and shrink automatically.

    * Add support for AVX VNNI, HRESET, UINTR, TDX, AMX and Key Locker instructions. * Support non-absolute segment values for lcall and ljmp. * Add {disp16} pseudo prefix to x86 assembler. * Configure with --enable-x86-used-note by default for Linux/x86.

    * Add support for Cortex-A78, Cortex-A78AE and Cortex-X1, Cortex-R82, Neoverse V1, and Neoverse N2 cores. * Add support for ETMv4 (Embedded Trace Macrocell), ETE (Embedded Trace Extension), TRBE (Trace Buffer Extension), CSRE (Call Stack Recorder Extension) and BRBE (Branch Record Buffer Extension) system registers. * Add support for Armv8-R and Armv8.7-A ISA extensions. * Add support for DSB memory nXS barrier, WFET and WFIT instruction for Armv8.7. * Add support for +csre feature for -march. Add CSR PDEC instruction for CSRE feature in AArch64. * Add support for +flagm feature for -march in Armv8.4 AArch64. * Add support for +ls64 feature for -march in Armv8.7 AArch64. Add atomic 64-byte load/store instructions for this feature. * Add support for +pauth (Pointer Authentication) feature for -march in AArch64.
    New features in the Linker:
    * Add --error-handling-script= command line option to allow a helper script to be invoked when an undefined symbol or a missing library is encountered. This option can be suppressed via the configure time switch: --enable-error-handling-script=no. * Add -z x86-64-{baseline|v[234]} to the x86 ELF linker to mark x86-64-{baseline|v[234]} ISA level as needed. * Add -z unique-symbol to avoid duplicated local symbol names. * The creation of PE format DLLs now defaults to using a more secure set of DLL characteristics. * The linker now deduplicates the types in .ctf sections. The new command-line option --ctf-share-types describes how to do this: its default value, share-unconflicted, produces the most compact output. * The linker now omits the 'variable section' from .ctf sections by default, saving space. This is almost certainly what you want unless you are working on a project that has its own analogue of symbol tables that are not reflected in the ELF symtabs.
    New features in other binary tools:
    * The ar tool's previously unused l modifier is now used for specifying dependencies of a static library. The arguments of this option (or --record-libdeps long form option) will be stored verbatim in the __.LIBDEP member of the archive, which the linker may read at link time. * Readelf can now display the contents of LTO symbol table sections when asked to do so via the --lto-syms command line option. * Readelf now accepts the -C command line option to enable the demangling of symbol names. In addition the --demangle=