Container summary for bci/openjdk


SUSE-CU-2024:5205-1

Container Advisory IDSUSE-CU-2024:5205-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-33.3
Container Release33.3
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3659-1
ReleasedWed Oct 16 15:12:47 2024
SummaryRecommended update for gcc14
Typerecommended
Severitymoderate
References1188441,1210959,1214915,1219031,1220724,1221601
Description:

This update for gcc14 fixes the following issues:
This update ships the GNU Compiler Collection GCC 14.2. (jsc#PED-10474)
The compiler runtime libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 13 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP5 and SP6, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc14 compilers use:


For a full changelog with all new GCC14 features, check out
https://gcc.gnu.org/gcc-14/changes.html



SUSE-CU-2024:5081-1

Container Advisory IDSUSE-CU-2024:5081-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-33.1
Container Release33.1
The following patches have been included in this update:

SUSE-CU-2024:5010-1

Container Advisory IDSUSE-CU-2024:5010-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-32.9
Container Release32.9
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3597-1
ReleasedFri Oct 11 10:39:52 2024
SummaryRecommended update for bash
Typerecommended
Severitymoderate
References1227807
Description:

This update for bash fixes the following issues:


SUSE-CU-2024:4976-1

Container Advisory IDSUSE-CU-2024:4976-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-32.8
Container Release32.8
The following patches have been included in this update:

SUSE-CU-2024:4853-1

Container Advisory IDSUSE-CU-2024:4853-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-32.7
Container Release32.7
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3527-1
ReleasedFri Oct 4 15:27:07 2024
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1230145
Description:

This update for e2fsprogs fixes the following issue:


SUSE-CU-2024:4746-1

Container Advisory IDSUSE-CU-2024:4746-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-32.4
Container Release32.4
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3503-1
ReleasedTue Oct 1 16:13:07 2024
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1228661
Description:

This update for glibc fixes the following issue:


SUSE-CU-2024:4671-1

Container Advisory IDSUSE-CU-2024:4671-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-31.3
Container Release31.3
The following patches have been included in this update:

SUSE-CU-2024:4647-1

Container Advisory IDSUSE-CU-2024:4647-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-31.2
Container Release31.2
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3477-1
ReleasedFri Sep 27 15:22:22 2024
SummaryRecommended update for curl
Typerecommended
Severitymoderate
References1230516
Description:

This update for curl fixes the following issue:


SUSE-CU-2024:4581-1

Container Advisory IDSUSE-CU-2024:4581-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-31.1
Container Release31.1
The following patches have been included in this update:

SUSE-CU-2024:4525-1

Container Advisory IDSUSE-CU-2024:4525-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-29.5
Container Release29.5
The following patches have been included in this update:

SUSE-CU-2024:4466-1

Container Advisory IDSUSE-CU-2024:4466-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-29.3
Container Release29.3
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3300-1
ReleasedWed Sep 18 14:27:53 2024
SummaryRecommended update for ncurses
Typerecommended
Severitymoderate
References1229028
Description:

This update for ncurses fixes the following issues:


SUSE-CU-2024:4435-1

Container Advisory IDSUSE-CU-2024:4435-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-29.1
Container Release29.1
The following patches have been included in this update:

SUSE-CU-2024:4306-1

Container Advisory IDSUSE-CU-2024:4306-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-28.2
Container Release28.2
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3216-1
ReleasedThu Sep 12 13:05:20 2024
SummarySecurity update for expat
Typesecurity
Severitymoderate
References1229930,1229931,1229932,CVE-2024-45490,CVE-2024-45491,CVE-2024-45492
Description:

This update for expat fixes the following issues:


Advisory IDSUSE-RU-2024:3237-1
ReleasedFri Sep 13 11:49:56 2024
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1229476
Description:

This update for util-linux fixes the following issue:


SUSE-CU-2024:4236-1

Container Advisory IDSUSE-CU-2024:4236-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-27.13
Container Release27.13
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3211-1
ReleasedWed Sep 11 17:40:13 2024
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1230093,CVE-2024-8096
Description:

This update for curl fixes the following issues:


SUSE-CU-2024:4123-1

Container Advisory IDSUSE-CU-2024:4123-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-27.12
Container Release27.12
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3167-1
ReleasedMon Sep 9 12:31:59 2024
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1228043
Description:

This update for glibc fixes the following issue:


SUSE-CU-2024:4083-1

Container Advisory IDSUSE-CU-2024:4083-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-27.10
Container Release27.10
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3149-1
ReleasedThu Sep 5 17:05:36 2024
SummarySecurity update for systemd
Typesecurity
Severitymoderate
References1218297,1221479,1226414,1228091,CVE-2023-7008
Description:

This update for systemd fixes the following issues:


Other fixes:


SUSE-CU-2024:4028-1

Container Advisory IDSUSE-CU-2024:4028-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-27.8
Container Release27.8
The following patches have been included in this update:

SUSE-CU-2024:3990-1

Container Advisory IDSUSE-CU-2024:3990-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-27.7
Container Release27.7
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3080-1
ReleasedMon Sep 2 16:43:54 2024
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1228535,CVE-2024-7264
Description:

This update for curl fixes the following issues:
- CVE-2024-7264: Fixed out-of-bounds read in ASN.1 date parser GTime2str() (bsc#1228535)


Advisory IDSUSE-SU-2024:3086-1
ReleasedTue Sep 3 08:57:32 2024
SummarySecurity update for glib2
Typesecurity
Severitylow
References1224044,CVE-2024-34397
Description:

This update for glib2 fixes the following issues:


Advisory IDSUSE-RU-2024:3131-1
ReleasedTue Sep 3 17:42:24 2024
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1224113
Description:

This update for mozilla-nss fixes the following issues:


SUSE-CU-2024:3884-1

Container Advisory IDSUSE-CU-2024:3884-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-27.3
Container Release27.3
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3009-1
ReleasedMon Aug 26 11:43:26 2024
SummaryRecommended update for git
Typerecommended
Severitymoderate
References1229029
Description:

This update for git fixes the following issue:


SUSE-CU-2024:3838-1

Container Advisory IDSUSE-CU-2024:3838-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-27.2
Container Release27.2
The following patches have been included in this update:

SUSE-CU-2024:3727-1

Container Advisory IDSUSE-CU-2024:3727-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-27.1
Container Release27.1
The following patches have been included in this update:

SUSE-CU-2024:3655-1

Container Advisory IDSUSE-CU-2024:3655-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-26.7
Container Release26.7
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:2887-1
ReleasedTue Aug 13 10:52:45 2024
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1159034,1194818,1222285
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2024:2891-1
ReleasedTue Aug 13 11:39:53 2024
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1226463,1227138,CVE-2024-5535
Description:

This update for openssl-1_1 fixes the following issues:


Other fixes:


SUSE-CU-2024:3586-1

Container Advisory IDSUSE-CU-2024:3586-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-26.2
Container Release26.2
The following patches have been included in this update:

SUSE-CU-2024:3499-1

Container Advisory IDSUSE-CU-2024:3499-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-25.4
Container Release25.4
The following patches have been included in this update:

SUSE-CU-2024:3498-1

Container Advisory IDSUSE-CU-2024:3498-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-25.3
Container Release25.3
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:2791-1
ReleasedTue Aug 6 16:35:06 2024
SummaryRecommended update for various 32bit packages
Typerecommended
Severitymoderate
References1228322
Description:


This update of various packages delivers 32bit variants to allow running Wine on SLE PackageHub 15 SP6.


SUSE-CU-2024:3431-1

Container Advisory IDSUSE-CU-2024:3431-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-25.1
Container Release25.1
The following patches have been included in this update:

SUSE-CU-2024:3333-1

Container Advisory IDSUSE-CU-2024:3333-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-24.8
Container Release24.8
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:2629-1
ReleasedTue Jul 30 09:11:33 2024
SummarySecurity update for java-11-openjdk
Typesecurity
Severityimportant
References1227298,1228046,1228047,1228048,1228050,1228051,1228052,CVE-2024-21131,CVE-2024-21138,CVE-2024-21140,CVE-2024-21144,CVE-2024-21145,CVE-2024-21147
Description:

This update for java-11-openjdk fixes the following issues:
Updated to version 11.0.24+8 (July 2024 CPU):


Advisory IDSUSE-SU-2024:2656-1
ReleasedTue Jul 30 15:36:08 2024
SummarySecurity update for git
Typesecurity
Severityimportant
References1219660,CVE-2024-24577
Description:

This update for git fixes the following issues:


Advisory IDSUSE-RU-2024:2667-1
ReleasedTue Jul 30 16:14:01 2024
SummaryRecommended update for libxkbcommon
Typerecommended
Severitymoderate
References1218640,1228322
Description:


This update of libxkbcommon fixes the following issue:


Advisory IDSUSE-RU-2024:2679-1
ReleasedWed Jul 31 09:47:44 2024
SummaryRecommended update for patterns-base
Typerecommended
Severitymoderate
References
Description:

This update for patterns-base fixes the following issues:
Added a fips-certified pattern matching the exact certified FIPS versions of the Linux Kernel, openssl 1.1.1, gnutls/nettle, mozilla-nss and libgcrypt.
Note that applying this pattern might cause downgrade of various packages and so deinstall security and bugfix updates released after the certified binaries.


Advisory IDSUSE-RU-2024:2684-1
ReleasedWed Jul 31 20:04:41 2024
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1214980,1222804,1222807,1222811,1222813,1222814,1222821,1222822,1222826,1222828,1222830,1222833,1222834,1223724,1224113,1224115,1224116,1224118,1227918,CVE-2023-5388
Description:

This update for mozilla-nss fixes the following issues:




Update to NSS 3.101.2:



update to NSS 3.101.1:

update to NSS 3.101:


Update to NSS 3.100:

Update to NSS 3.99:

Update to NSS 3.98:

Update to NSS 3.97:

Update to NSS 3.96.1:

Update to NSS 3.95:

Update to NSS 3.94:

Update to NSS 3.93:

Update to NSS 3.92:

Update to NSS 3.91:

Update to NSS 3.90.3:


SUSE-CU-2024:3267-1

Container Advisory IDSUSE-CU-2024:3267-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-24.2
Container Release24.2
The following patches have been included in this update:

SUSE-CU-2024:3196-1

Container Advisory IDSUSE-CU-2024:3196-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-24.1
Container Release24.1
The following patches have been included in this update:
Advisory IDSUSE-SU-2019:2730-1
ReleasedMon Oct 21 16:04:57 2019
SummarySecurity update for procps
Typesecurity
Severityimportant
References1092100,1121753,CVE-2018-1122,CVE-2018-1123,CVE-2018-1124,CVE-2018-1125,CVE-2018-1126
Description:

This update for procps fixes the following issues:
procps was updated to 3.3.15. (bsc#1092100)
Following security issues were fixed:



Also this non-security issue was fixed:

The update to 3.3.15 contains the following fixes:


Advisory IDSUSE-RU-2020:225-1
ReleasedFri Jan 24 06:49:07 2020
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1158830
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2020:2958-1
ReleasedTue Oct 20 12:24:55 2020
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1158830
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2021:1169-1
ReleasedTue Apr 13 15:01:42 2021
SummaryRecommended update for procps
Typerecommended
Severitylow
References1181976
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2021:1549-1
ReleasedMon May 10 13:48:00 2021
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1185417
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-SU-2021:2555-1
ReleasedThu Jul 29 08:29:55 2021
SummarySecurity update for git
Typesecurity
Severitymoderate
References1168930,1183026,1183580,CVE-2021-21300
Description:

This update for git fixes the following issues:
Update from version 2.26.2 to version 2.31.1 (jsc#SLE-18152)
Security fixes:


Non security changes:


Advisory IDSUSE-RU-2021:3766-1
ReleasedTue Nov 23 07:07:43 2021
SummaryRecommended update for git
Typerecommended
Severitymoderate
References1192023
Description:

This update for git fixes the following issues:


Advisory IDSUSE-RU-2022:227-1
ReleasedMon Jan 31 06:05:25 2022
SummaryRecommended update for git
Typerecommended
Severitymoderate
References1193722
Description:

This update for git fixes the following issues:




Advisory IDSUSE-RU-2022:808-1
ReleasedFri Mar 11 06:07:58 2022
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1195468
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-SU-2022:1484-1
ReleasedMon May 2 16:47:10 2022
SummarySecurity update for git
Typesecurity
Severityimportant
References1181400,1198234,CVE-2022-24765
Description:

This update for git fixes the following issues:


Advisory IDSUSE-SU-2022:2360-1
ReleasedTue Jul 12 12:01:39 2022
SummarySecurity update for pcre2
Typesecurity
Severityimportant
References1199232,CVE-2022-1586
Description:

This update for pcre2 fixes the following issues:


Advisory IDSUSE-SU-2022:2550-1
ReleasedTue Jul 26 14:00:21 2022
SummarySecurity update for git
Typesecurity
Severityimportant
References1201431,CVE-2022-29187
Description:

This update for git fixes the following issues:


Advisory IDSUSE-SU-2022:2566-1
ReleasedWed Jul 27 15:04:49 2022
SummarySecurity update for pcre2
Typesecurity
Severityimportant
References1199235,CVE-2022-1587
Description:

This update for pcre2 fixes the following issues:


Advisory IDSUSE-RU-2022:2944-1
ReleasedWed Aug 31 05:39:14 2022
SummaryRecommended update for procps
Typerecommended
Severityimportant
References1181475
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-SU-2022:3931-1
ReleasedThu Nov 10 11:26:01 2022
SummarySecurity update for git
Typesecurity
Severitymoderate
References1204455,1204456,CVE-2022-39253,CVE-2022-39260
Description:

This update for git fixes the following issues:
- CVE-2022-39260: Fixed overflow in split_cmdline() (bsc#1204456). - CVE-2022-39253: Fixed dereference issue with symbolic links via the `--local` clone mechanism (bsc#1204455).


Advisory IDSUSE-SU-2023:110-1
ReleasedFri Jan 20 10:18:16 2023
SummarySecurity update for git
Typesecurity
Severityimportant
References1207032,1207033,CVE-2022-23521,CVE-2022-41903
Description:

This update for git fixes the following issues:


Advisory IDSUSE-RU-2023:181-1
ReleasedThu Jan 26 21:55:43 2023
SummaryRecommended update for procps
Typerecommended
Severitylow
References1206412
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-SU-2023:348-1
ReleasedFri Feb 10 15:08:41 2023
SummarySecurity update for less
Typesecurity
Severitymoderate
References1207815,CVE-2022-46663
Description:

This update for less fixes the following issues:
- CVE-2022-46663: Fixed denial-of-service by printing specially crafted escape sequences to the terminal (bsc#1207815).


Advisory IDSUSE-SU-2023:430-1
ReleasedWed Feb 15 17:42:25 2023
SummarySecurity update for git
Typesecurity
Severityimportant
References1208027,1208028,CVE-2023-22490,CVE-2023-23946
Description:

This update for git fixes the following issues:
- CVE-2023-22490: Fixed incorrectly usable local clone optimization even when using a non-local transport (bsc#1208027). - CVE-2023-23946: Fixed issue where a path outside the working tree can be overwritten as the user who is running 'git apply' (bsc#1208028).


Advisory IDSUSE-SU-2023:2038-1
ReleasedWed Apr 26 11:06:20 2023
SummarySecurity update for git
Typesecurity
Severitymoderate
References1210686,CVE-2023-25652,CVE-2023-25815,CVE-2023-29007
Description:

This update for git fixes the following issues:


Advisory IDSUSE-RU-2023:2104-1
ReleasedThu May 4 21:05:30 2023
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1209122
Description:

This update for procps fixes the following issue:


Advisory IDSUSE-SU-2023:3327-1
ReleasedWed Aug 16 08:45:25 2023
SummarySecurity update for pcre2
Typesecurity
Severitymoderate
References1213514,CVE-2022-41409
Description:

This update for pcre2 fixes the following issues:
- CVE-2022-41409: Fixed integer overflow vulnerability in pcre2test that allows attackers to cause a denial of service via negative input (bsc#1213514).


Advisory IDSUSE-SU-2023:3440-1
ReleasedMon Aug 28 08:57:10 2023
SummarySecurity update for gawk
Typesecurity
Severitylow
References1214025,CVE-2023-4156
Description:

This update for gawk fixes the following issues:


Advisory IDSUSE-SU-2023:3472-1
ReleasedTue Aug 29 10:55:16 2023
SummarySecurity update for procps
Typesecurity
Severitylow
References1214290,CVE-2023-4016
Description:

This update for procps fixes the following issues:
- CVE-2023-4016: Fixed ps buffer overflow (bsc#1214290).


Advisory IDSUSE-RU-2023:3994-1
ReleasedFri Oct 6 13:44:15 2023
SummaryRecommended update for git
Typerecommended
Severitymoderate
References1215533
Description:

This update for git fixes the following issues:


Advisory IDSUSE-RU-2023:4716-1
ReleasedMon Dec 11 18:38:23 2023
SummaryRecommended update for git
Typerecommended
Severitymoderate
References1216501
Description:

This update for git fixes the following issues:


Advisory IDSUSE-RU-2024:11-1
ReleasedTue Jan 2 13:24:52 2024
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1029961,1158830,1206798,1209122
Description:

This update for procps fixes the following issues:




* library: Incremented to 8:3:0 (no removals or additions, internal changes only) * all: properly handle utf8 cmdline translations * kill: Pass int to signalled process * pgrep: Pass int to signalled process * pgrep: Check sanity of SG_ARG_MAX * pgrep: Add older than selection * pidof: Quiet mode * pidof: show worker threads * ps.1: Mention stime alias * ps: check also match on truncated 16 char comm names * ps: Add exe output option * ps: A lot more sorting available * pwait: New command waits for a process * sysctl: Match systemd directory order * sysctl: Document directory order * top: ensure config file backward compatibility * top: add command line 'e' for symmetry with 'E' * top: add '4' toggle for two abreast cpu display * top: add '!' toggle for combining multiple cpus * top: fix potential SEGV involving -p switch * vmstat: Wide mode gives wider proc columns * watch: Add environment variable for interval * watch: Add no linewrap option * watch: Support more colors * free,uptime,slabtop: complain about extra ops




* library: Increment to 8:2:0
No removals or functions Internal changes only, so revision is incremented. Previous version should have been 8:1:0 not 8:0:1
* docs: Use correct symbols for -h option in free.1 * docs: ps.1 now warns about command name length * docs: install translated man pages * pgrep: Match on runstate * snice: Fix matching on pid * top: can now exploit 256-color terminals * top: preserves 'other filters' in configuration file * top: can now collapse/expand forest view children * top: parent %CPU time includes collapsed children * top: improve xterm support for vim navigation keys * top: avoid segmentation fault at program termination * 'ps -C' does not allow anymore an argument longer than 15 characters (bsc#1158830)


Advisory IDSUSE-RU-2024:960-1
ReleasedThu Mar 21 09:35:14 2024
SummaryRecommended update for git
Typerecommended
Severitymoderate
References1216545
Description:

This update for git fixes the following issues:


Advisory IDSUSE-SU-2024:997-1
ReleasedTue Mar 26 11:03:37 2024
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1220770,1220771,1220772,CVE-2024-26458,CVE-2024-26461,CVE-2024-26462
Description:

This update for krb5 fixes the following issues:


Advisory IDSUSE-SU-2024:1151-1
ReleasedMon Apr 8 11:36:23 2024
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1221665,1221667,CVE-2024-2004,CVE-2024-2398
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-SU-2024:1167-1
ReleasedMon Apr 8 15:11:11 2024
SummarySecurity update for nghttp2
Typesecurity
Severityimportant
References1221399,CVE-2024-28182
Description:

This update for nghttp2 fixes the following issues:


Advisory IDSUSE-SU-2024:1192-1
ReleasedWed Apr 10 09:14:37 2024
SummarySecurity update for less
Typesecurity
Severityimportant
References1219901,CVE-2022-48624
Description:

This update for less fixes the following issues:


Advisory IDSUSE-SU-2024:1598-1
ReleasedFri May 10 11:50:36 2024
SummarySecurity update for less
Typesecurity
Severityimportant
References1222849,CVE-2024-32487
Description:

This update for less fixes the following issues:


Advisory IDSUSE-RU-2024:1802-1
ReleasedTue May 28 16:20:18 2024
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1223596
Description:

This update for e2fsprogs fixes the following issues:
EA Inode handling fixes:


Advisory IDSUSE-SU-2024:1807-1
ReleasedTue May 28 22:11:31 2024
SummarySecurity update for git
Typesecurity
Severityimportant
References1224168,1224170,1224171,1224172,1224173,CVE-2024-32002,CVE-2024-32004,CVE-2024-32020,CVE-2024-32021,CVE-2024-32465
Description:

This update for git fixes the following issues:


Advisory IDSUSE-OU-2024:2282-1
ReleasedTue Jul 2 22:41:28 2024
SummaryOptional update for openscap, scap-security-guide
Typeoptional
Severitymoderate
References
Description:


This update for scap-security-guide and openscap provides the SCAP tooling for SLE Micro 5.3, 5.4, 5.5.
This includes shipping openscap dependencies libxmlsec1-1 and libxmlsec1-openssl for SLE Micro.


Advisory IDSUSE-SU-2024:2302-1
ReleasedThu Jul 4 16:21:10 2024
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1227186,1227187,CVE-2024-37370,CVE-2024-37371
Description:

This update for krb5 fixes the following issues:


SUSE-CU-2024:3113-1

Container Advisory IDSUSE-CU-2024:3113-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-23.1
Container Release23.1
The following patches have been included in this update:

SUSE-CU-2024:2981-1

Container Advisory IDSUSE-CU-2024:2981-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-22.7
Container Release22.7
The following patches have been included in this update:

SUSE-CU-2024:2891-1

Container Advisory IDSUSE-CU-2024:2891-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-22.6
Container Release22.6
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:2086-1
ReleasedWed Jun 19 11:48:24 2024
SummaryRecommended update for gcc13
Typerecommended
Severitymoderate
References1188441
Description:

This update for gcc13 fixes the following issues:
Update to GCC 13.3 release


SUSE-CU-2024:2782-1

Container Advisory IDSUSE-CU-2024:2782-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-21.5
Container Release21.5
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:2051-1
ReleasedTue Jun 18 09:16:01 2024
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1225551,CVE-2024-4741
Description:

This update for openssl-1_1 fixes the following issues:


SUSE-CU-2024:2704-1

Container Advisory IDSUSE-CU-2024:2704-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-21.3
Container Release21.3
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:2024-1
ReleasedThu Jun 13 16:15:18 2024
SummaryRecommended update for jitterentropy
Typerecommended
Severitymoderate
References1209627
Description:

This update for jitterentropy fixes the following issues:


Updated to 3.4.1


SUSE-CU-2024:2638-1

Container Advisory IDSUSE-CU-2024:2638-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-21.1
Container Release21.1
The following patches have been included in this update:

SUSE-CU-2024:2569-1

Container Advisory IDSUSE-CU-2024:2569-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-20.1
Container Release20.1
The following patches have been included in this update:

SUSE-CU-2024:2516-1

Container Advisory IDSUSE-CU-2024:2516-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-19.1
Container Release19.1
The following patches have been included in this update:

SUSE-CU-2024:2466-1

Container Advisory IDSUSE-CU-2024:2466-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-18.15
Container Release18.15
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:1895-1
ReleasedMon Jun 3 09:00:20 2024
SummarySecurity update for glibc
Typesecurity
Severityimportant
References1221940,1223423,1223424,1223425,CVE-2024-33599,CVE-2024-33600,CVE-2024-33601,CVE-2024-33602
Description:

This update for glibc fixes the following issues:



SUSE-CU-2024:2417-1

Container Advisory IDSUSE-CU-2024:2417-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-18.13
Container Release18.13
The following patches have been included in this update:

SUSE-CU-2024:2362-1

Container Advisory IDSUSE-CU-2024:2362-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-18.11
Container Release18.11
The following patches have been included in this update:

SUSE-CU-2024:2328-1

Container Advisory IDSUSE-CU-2024:2328-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-18.10
Container Release18.10
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:1808-1
ReleasedTue May 28 22:12:38 2024
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1222548,CVE-2024-2511
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2024:1810-1
ReleasedWed May 29 08:58:01 2024
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1218609,1220117,1223605
Description:

This update for util-linux fixes the following issues:


Advisory IDSUSE-SU-2024:1830-1
ReleasedWed May 29 14:08:50 2024
SummarySecurity update for glib2
Typesecurity
Severitylow
References1224044,CVE-2024-34397
Description:

This update for glib2 fixes the following issues:


SUSE-CU-2024:2216-1

Container Advisory IDSUSE-CU-2024:2216-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-18.2
Container Release18.2
The following patches have been included in this update:

SUSE-CU-2024:2134-1

Container Advisory IDSUSE-CU-2024:2134-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-18.1
Container Release18.1
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:1665-1
ReleasedThu May 16 08:00:09 2024
SummaryRecommended update for coreutils
Typerecommended
Severitymoderate
References1221632
Description:

This update for coreutils fixes the following issues:


SUSE-CU-2024:2072-1

Container Advisory IDSUSE-CU-2024:2072-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-17.2
Container Release17.2
The following patches have been included in this update:

SUSE-CU-2024:2002-1

Container Advisory IDSUSE-CU-2024:2002-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-17.1
Container Release17.1
The following patches have been included in this update:

SUSE-CU-2024:1965-1

Container Advisory IDSUSE-CU-2024:1965-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-16.12
Container Release16.12
The following patches have been included in this update:

SUSE-CU-2024:1918-1

Container Advisory IDSUSE-CU-2024:1918-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-16.11
Container Release16.11
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:1498-1
ReleasedMon May 6 09:42:11 2024
SummarySecurity update for java-11-openjdk
Typesecurity
Severitylow
References1213470,1222979,1222983,1222984,1222986,1222987,CVE-2024-21011,CVE-2024-21012,CVE-2024-21068,CVE-2024-21085,CVE-2024-21094
Description:

This update for java-11-openjdk fixes the following issues:


Other fixes:


SUSE-CU-2024:1868-1

Container Advisory IDSUSE-CU-2024:1868-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-16.10
Container Release16.10
The following patches have been included in this update:

SUSE-CU-2024:1816-1

Container Advisory IDSUSE-CU-2024:1816-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-16.7
Container Release16.7
The following patches have been included in this update:

SUSE-CU-2024:1778-1

Container Advisory IDSUSE-CU-2024:1778-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-16.6
Container Release16.6
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:1429-1
ReleasedWed Apr 24 15:13:10 2024
SummaryRecommended update for ca-certificates
Typerecommended
Severitymoderate
References1188500,1221184
Description:

This update for ca-certificates fixes the following issue:


SUSE-CU-2024:1656-1

Container Advisory IDSUSE-CU-2024:1656-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-16.4
Container Release16.4
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:1375-1
ReleasedMon Apr 22 14:56:13 2024
SummarySecurity update for glibc
Typesecurity
Severityimportant
References1222992,CVE-2024-2961
Description:

This update for glibc fixes the following issues:


SUSE-CU-2024:1592-1

Container Advisory IDSUSE-CU-2024:1592-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-16.2
Container Release16.2
The following patches have been included in this update:

SUSE-CU-2024:1499-1

Container Advisory IDSUSE-CU-2024:1499-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-16.1
Container Release16.1
The following patches have been included in this update:

SUSE-CU-2024:1456-1

Container Advisory IDSUSE-CU-2024:1456-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.45
Container Release15.45
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:1253-1
ReleasedFri Apr 12 08:15:18 2024
SummaryRecommended update for gcc13
Typerecommended
Severitymoderate
References1210959,1214934,1217450,1217667,1218492,1219031,1219520,1220724,1221239
Description:

This update for gcc13 fixes the following issues:


SUSE-CU-2024:1412-1

Container Advisory IDSUSE-CU-2024:1412-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.44
Container Release15.44
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:1231-1
ReleasedThu Apr 11 15:20:40 2024
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1220441
Description:

This update for glibc fixes the following issues:


SUSE-CU-2024:1365-1

Container Advisory IDSUSE-CU-2024:1365-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.40
Container Release15.40
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:1129-1
ReleasedMon Apr 8 09:12:08 2024
SummarySecurity update for expat
Typesecurity
Severityimportant
References1219559,1221289,CVE-2023-52425,CVE-2024-28757
Description:

This update for expat fixes the following issues:


Advisory IDSUSE-SU-2024:1133-1
ReleasedMon Apr 8 11:29:02 2024
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1220061,CVE-2023-45918
Description:

This update for ncurses fixes the following issues:


Advisory IDSUSE-SU-2024:1172-1
ReleasedTue Apr 9 09:52:32 2024
SummarySecurity update for util-linux
Typesecurity
Severityimportant
References1207987,1221831,CVE-2024-28085
Description:

This update for util-linux fixes the following issues:


SUSE-CU-2024:1251-1

Container Advisory IDSUSE-CU-2024:1251-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.35
Container Release15.35
The following patches have been included in this update:

SUSE-CU-2024:1217-1

Container Advisory IDSUSE-CU-2024:1217-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.34
Container Release15.34
The following patches have been included in this update:

SUSE-CU-2024:1131-1

Container Advisory IDSUSE-CU-2024:1131-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.32
Container Release15.32
The following patches have been included in this update:

SUSE-CU-2024:1054-1

Container Advisory IDSUSE-CU-2024:1054-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.31
Container Release15.31
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:929-1
ReleasedTue Mar 19 06:36:24 2024
SummaryRecommended update for coreutils
Typerecommended
Severitymoderate
References1219321
Description:

This update for coreutils fixes the following issues:


SUSE-CU-2024:994-1

Container Advisory IDSUSE-CU-2024:994-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.29
Container Release15.29
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:870-1
ReleasedWed Mar 13 13:05:14 2024
SummarySecurity update for glibc
Typesecurity
Severitymoderate
References1217445,1217589,1218866
Description:

This update for glibc fixes the following issues:
Security issues fixed:


Other issues fixed:


SUSE-CU-2024:898-1

Container Advisory IDSUSE-CU-2024:898-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.25
Container Release15.25
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:786-1
ReleasedWed Mar 6 21:07:20 2024
SummarySecurity update for giflib
Typesecurity
Severityimportant
References1198880,1200551,1217390,CVE-2021-40633,CVE-2022-28506,CVE-2023-48161
Description:

This update for giflib fixes the following issues:
Update to version 5.2.2


SUSE-CU-2024:840-1

Container Advisory IDSUSE-CU-2024:840-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.22
Container Release15.22
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:766-1
ReleasedTue Mar 5 13:50:28 2024
SummaryRecommended update for libssh
Typerecommended
Severityimportant
References1220385
Description:

This update for libssh fixes the following issues:


SUSE-CU-2024:770-1

Container Advisory IDSUSE-CU-2024:770-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.16
Container Release15.16
The following patches have been included in this update:

SUSE-CU-2024:718-1

Container Advisory IDSUSE-CU-2024:718-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.12
Container Release15.12
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:614-1
ReleasedMon Feb 26 11:31:18 2024
SummaryRecommended update for rpm
Typerecommended
Severityimportant
References1216752
Description:

This update for rpm fixes the following issues:


SUSE-CU-2024:674-1

Container Advisory IDSUSE-CU-2024:674-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.10
Container Release15.10
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:597-1
ReleasedThu Feb 22 20:07:11 2024
SummarySecurity update for mozilla-nss
Typesecurity
Severityimportant
References1216198,CVE-2023-5388
Description:

This update for mozilla-nss fixes the following issues:
Update to NSS 3.90.2:


SUSE-CU-2024:639-1

Container Advisory IDSUSE-CU-2024:639-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.9
Container Release15.9
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:549-1
ReleasedTue Feb 20 17:05:52 2024
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1219243,CVE-2024-0727
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2024:555-1
ReleasedTue Feb 20 17:22:17 2024
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1219576,CVE-2024-25062
Description:

This update for libxml2 fixes the following issues:


SUSE-CU-2024:590-1

Container Advisory IDSUSE-CU-2024:590-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.6
Container Release15.6
The following patches have been included in this update:

SUSE-CU-2024:524-1

Container Advisory IDSUSE-CU-2024:524-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-15.3
Container Release15.3
The following patches have been included in this update:

SUSE-CU-2024:438-1

Container Advisory IDSUSE-CU-2024:438-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-14.17
Container Release14.17
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:321-1
ReleasedFri Feb 2 13:51:01 2024
SummarySecurity update for java-11-openjdk
Typesecurity
Severityimportant
References1218903,1218905,1218906,1218907,1218909,1218911,CVE-2024-20918,CVE-2024-20919,CVE-2024-20921,CVE-2024-20926,CVE-2024-20945,CVE-2024-20952
Description:

This update for java-11-openjdk fixes the following issues:
Updated to version 11.0.22 (January 2024 CPU):
- CVE-2024-20918: Fixed an out of bounds access in the Hotspot JVM due to a missing bounds check (bsc#1218907). - CVE-2024-20919: Fixed a sandbox bypass in the Hotspot JVM class file verifier (bsc#1218903). - CVE-2024-20921: Fixed an incorrect optimization in the Hotspot JVM that could lead to corruption of JVM memory (bsc#1218905). - CVE-2024-20926: Fixed arbitrary Java code execution in Nashorn (bsc#1218906). - CVE-2024-20945: Fixed a potential private key leak through debug logs (bsc#1218909). - CVE-2024-20952: Fixed an RSA padding issue and timing side-channel attack against TLS (bsc#1218911).
Find the full release notes at:
https://mail.openjdk.org/pipermail/jdk-updates-dev/2024-January/029215.html


Advisory IDSUSE-RU-2024:322-1
ReleasedFri Feb 2 15:13:26 2024
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1107342,1215434
Description:

This update for aaa_base fixes the following issues:


Advisory IDSUSE-SU-2024:305-1
ReleasedMon Mar 11 14:15:37 2024
SummarySecurity update for cpio
Typesecurity
Severitymoderate
References1218571,1219238,CVE-2023-7207
Description:

This update for cpio fixes the following issues:


SUSE-CU-2024:388-1

Container Advisory IDSUSE-CU-2024:388-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-14.7
Container Release14.7
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:238-1
ReleasedFri Jan 26 10:56:41 2024
SummarySecurity update for cpio
Typesecurity
Severitymoderate
References1218571,CVE-2023-7207
Description:

This update for cpio fixes the following issues:


Advisory IDSUSE-RU-2024:244-1
ReleasedFri Jan 26 13:01:27 2024
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1207987
Description:

This update for util-linux fixes the following issues:


SUSE-CU-2024:353-1

Container Advisory IDSUSE-CU-2024:353-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-14.4
Container Release14.4
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:214-1
ReleasedWed Jan 24 16:01:31 2024
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1214668,1215241,1217460
Description:

This update for systemd fixes the following issues:


SUSE-CU-2024:300-1

Container Advisory IDSUSE-CU-2024:300-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-14.1
Container Release14.1
The following patches have been included in this update:

SUSE-CU-2024:263-1

Container Advisory IDSUSE-CU-2024:263-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-13.7
Container Release13.7
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:136-1
ReleasedThu Jan 18 09:53:47 2024
SummarySecurity update for pam
Typesecurity
Severitymoderate
References1217000,1218475,CVE-2024-22365
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2024:140-1
ReleasedThu Jan 18 11:34:58 2024
SummarySecurity update for libssh
Typesecurity
Severityimportant
References1211188,1211190,1218126,1218186,1218209,CVE-2023-1667,CVE-2023-2283,CVE-2023-48795,CVE-2023-6004,CVE-2023-6918
Description:

This update for libssh fixes the following issues:
Security fixes:
- CVE-2023-6004: Fixed command injection using proxycommand (bsc#1218209) - CVE-2023-48795: Fixed potential downgrade attack using strict kex (bsc#1218126) - CVE-2023-6918: Fixed missing checks for return values of MD functions (bsc#1218186) - CVE-2023-1667: Fixed NULL dereference during rekeying with algorithm guessing (bsc#1211188) - CVE-2023-2283: Fixed possible authorization bypass in pki_verify_data_signature under low-memory conditions (bsc#1211190)
Other fixes:



SUSE-CU-2024:203-1

Container Advisory IDSUSE-CU-2024:203-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-13.1
Container Release13.1
The following patches have been included in this update:

SUSE-CU-2024:179-1

Container Advisory IDSUSE-CU-2024:179-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-12.8
Container Release12.8
The following patches have been included in this update:

SUSE-CU-2024:117-1

Container Advisory IDSUSE-CU-2024:117-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-12.7
Container Release12.7
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:70-1
ReleasedTue Jan 9 18:29:39 2024
SummarySecurity update for tar
Typesecurity
Severitylow
References1217969,CVE-2023-39804
Description:

This update for tar fixes the following issues:


SUSE-CU-2024:116-1

Container Advisory IDSUSE-CU-2024:116-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-12.5
Container Release12.5
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:62-1
ReleasedMon Jan 8 11:44:47 2024
SummaryRecommended update for libxcrypt
Typerecommended
Severitymoderate
References1215496
Description:

This update for libxcrypt fixes the following issues:


SUSE-CU-2024:54-1

Container Advisory IDSUSE-CU-2024:54-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-12.2
Container Release12.2
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:26-1
ReleasedThu Jan 4 11:15:24 2024
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1214980
Description:

This update for mozilla-nss fixes the following issues:
Mozilla NSS was updated to NSS 3.90.1


SUSE-CU-2024:23-1

Container Advisory IDSUSE-CU-2024:23-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-12.1
Container Release12.1
The following patches have been included in this update:

SUSE-CU-2023:4289-1

Container Advisory IDSUSE-CU-2023:4289-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.61
Container Release11.61
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:4962-1
ReleasedFri Dec 22 13:45:06 2023
SummaryRecommended update for curl
Typerecommended
Severityimportant
References1216987
Description:

This update for curl fixes the following issues:


This update also ships curl to the INSTALLER channel.


SUSE-CU-2023:4215-1

Container Advisory IDSUSE-CU-2023:4215-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.60
Container Release11.60
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:4891-1
ReleasedMon Dec 18 16:31:49 2023
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1201384,1218014,CVE-2023-50495
Description:

This update for ncurses fixes the following issues:


SUSE-CU-2023:4155-1

Container Advisory IDSUSE-CU-2023:4155-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.59
Container Release11.59
The following patches have been included in this update:

SUSE-CU-2023:4093-1

Container Advisory IDSUSE-CU-2023:4093-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.53
Container Release11.53
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:4700-1
ReleasedMon Dec 11 07:03:27 2023
SummaryRecommended update for p11-kit
Typerecommended
Severitymoderate
References
Description:

This update for p11-kit fixes the following issues:


Advisory IDSUSE-RU-2023:4723-1
ReleasedTue Dec 12 09:57:51 2023
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1216862
Description:

This update for libtirpc fixes the following issue:


SUSE-CU-2023:4031-1

Container Advisory IDSUSE-CU-2023:4031-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.48
Container Release11.48
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:4659-1
ReleasedWed Dec 6 13:04:57 2023
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1217573,1217574,CVE-2023-46218,CVE-2023-46219
Description:

This update for curl fixes the following issues:


Advisory IDSUSE-RU-2023:4671-1
ReleasedWed Dec 6 14:33:41 2023
SummaryRecommended update for man
Typerecommended
Severitymoderate
References
Description:


This update of man fixes the following problem:


SUSE-CU-2023:3961-1

Container Advisory IDSUSE-CU-2023:3961-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.45
Container Release11.45
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:4617-1
ReleasedThu Nov 30 09:37:04 2023
SummaryRecommended update for javapackages-tools
Typerecommended
Severitymoderate
References
Description:

This update for javapackages-tools fixes the following issues:


Advisory IDSUSE-SU-2023:4619-1
ReleasedThu Nov 30 10:13:52 2023
SummarySecurity update for sqlite3
Typesecurity
Severityimportant
References1210660,CVE-2023-2137
Description:

This update for sqlite3 fixes the following issues:


SUSE-CU-2023:3873-1

Container Advisory IDSUSE-CU-2023:3873-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.42
Container Release11.42
The following patches have been included in this update:

SUSE-CU-2023:3820-1

Container Advisory IDSUSE-CU-2023:3820-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.41
Container Release11.41
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:4504-1
ReleasedTue Nov 21 13:27:50 2023
SummarySecurity update for libxml2
Typesecurity
Severitymoderate
References1216129,CVE-2023-45322
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-SU-2023:4518-1
ReleasedTue Nov 21 17:35:30 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severityimportant
References1216922,CVE-2023-5678
Description:

This update for openssl-1_1 fixes the following issues:


SUSE-CU-2023:3747-1

Container Advisory IDSUSE-CU-2023:3747-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.36
Container Release11.36
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:4450-1
ReleasedWed Nov 15 10:55:20 2023
SummaryRecommended update for crypto-policies
Typerecommended
Severitymoderate
References1209998
Description:

This update for crypto-policies fixes the following issues:
- Enable setting the kernel FIPS mode with the fips-mode-setup and fips-finish-install commands (jsc#PED-5041) - Adapt fips-mode-setup to use the pbl command from the perl-Bootloader package instead of grubby and add a note for transactional systems - Ship the man pages for fips-mode-setup and fips-finish-install - Make the supported versions change in the update-crypto-policies(8) man page persistent (bsc#1209998)


Advisory IDSUSE-SU-2023:4458-1
ReleasedThu Nov 16 14:38:48 2023
SummarySecurity update for gcc13
Typesecurity
Severityimportant
References1206480,1206684,1210557,1211427,1212101,1213915,1214052,1214460,1215427,1216664,CVE-2023-4039
Description:

This update for gcc13 fixes the following issues:
This update ship the GCC 13.2 compiler suite and its base libraries.
The compiler base libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 12 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP4 and SP5, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc13 compilers use:


For a full changelog with all new GCC13 features, check out
https://gcc.gnu.org/gcc-13/changes.html

Detailed changes:




SUSE-CU-2023:3653-1

Container Advisory IDSUSE-CU-2023:3653-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.31
Container Release11.31
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:4310-1
ReleasedTue Oct 31 14:10:47 2023
SummaryRecommended update for libtirpc
Typerecommended
Severitymoderate
References1196647
Description:

This Update for libtirpc to 1.3.4, fixing the following issues: Update to 1.3.4 (bsc#1199467)
* binddynport.c honor ip_local_reserved_ports - replaces: binddynport-honor-ip_local_reserved_ports.patch * gss-api: expose gss major/minor error in authgss_refresh() * rpcb_clnt.c: Eliminate double frees in delete_cache() * rpcb_clnt.c: memory leak in destroy_addr * portmapper: allow TCP-only portmapper * getnetconfigent: avoid potential DoS issue by removing unnecessary sleep * clnt_raw.c: fix a possible null pointer dereference * bindresvport.c: fix a potential resource leakage
Update to 1.3.3:


Update to 1.3.2:

Update to 1.3.1:


SUSE-CU-2023:3602-1

Container Advisory IDSUSE-CU-2023:3602-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.27
Container Release11.27
The following patches have been included in this update:

SUSE-CU-2023:3569-1

Container Advisory IDSUSE-CU-2023:3569-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.26
Container Release11.26
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:4198-1
ReleasedWed Oct 25 11:58:43 2023
SummarySecurity update for java-11-openjdk
Typesecurity
Severityimportant
References1214790,1216374,CVE-2023-22081
Description:

This update for java-11-openjdk fixes the following issues:


- CVE-2023-22081: Fixed a partial denial of service issue that could be triggered via HTTPS (bsc#1216374).
Please visit the Oracle Release Notes page for the full changelog:
https://www.oracle.com/java/technologies/javase/11all-relnotes.html


Advisory IDSUSE-SU-2023:4200-1
ReleasedWed Oct 25 12:04:29 2023
SummarySecurity update for nghttp2
Typesecurity
Severityimportant
References1216123,1216174,CVE-2023-44487
Description:

This update for nghttp2 fixes the following issues:


Advisory IDSUSE-SU-2023:4215-1
ReleasedThu Oct 26 12:19:25 2023
SummarySecurity update for zlib
Typesecurity
Severitymoderate
References1216378,CVE-2023-45853
Description:

This update for zlib fixes the following issues:


SUSE-CU-2023:3542-1

Container Advisory IDSUSE-CU-2023:3542-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.23
Container Release11.23
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:4162-1
ReleasedMon Oct 23 15:33:03 2023
SummarySecurity update for gcc13
Typesecurity
Severityimportant
References1206480,1206684,1210557,1211427,1212101,1213915,1214052,1214460,CVE-2023-4039
Description:

This update for gcc13 fixes the following issues:
This update ship the GCC 13.2 compiler suite and its base libraries.
The compiler base libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 12 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP4 and SP5, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc13 compilers use:


For a full changelog with all new GCC13 features, check out
https://gcc.gnu.org/gcc-13/changes.html

Detailed changes:




SUSE-CU-2023:3515-1

Container Advisory IDSUSE-CU-2023:3515-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.21
Container Release11.21
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:4073-1
ReleasedFri Oct 13 11:40:26 2023
SummaryRecommended update for rpm
Typerecommended
Severitylow
References
Description:

This update for rpm fixes the following issue:


Advisory IDSUSE-RU-2023:4105-1
ReleasedWed Oct 18 08:15:40 2023
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1215215
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-SU-2023:4110-1
ReleasedWed Oct 18 12:35:26 2023
SummarySecurity update for glibc
Typesecurity
Severityimportant
References1215286,1215891,CVE-2023-4813
Description:

This update for glibc fixes the following issues:
Security issue fixed:


Also a regression from a previous update was fixed:


Advisory IDSUSE-RU-2023:4143-1
ReleasedFri Oct 20 11:53:59 2023
SummaryRecommended update for brltty, harfbuzz, libcdr, libmspub, libreoffice, libzmf, tepl, vte
Typerecommended
Severitymoderate
References
Description:


This update provides rebuilds of various packages against the newer icu73 to support GB18030-2023.
This set contains libreoffice, various libraries used by libreoffice and GNOME, and brltty.


Advisory IDSUSE-RU-2023:4153-1
ReleasedFri Oct 20 19:27:58 2023
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1215313
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-RU-2023:4154-1
ReleasedFri Oct 20 19:33:25 2023
SummaryRecommended update for aaa_base
Typerecommended
Severitymoderate
References1107342,1215434
Description:

This update for aaa_base fixes the following issues:


SUSE-CU-2023:3383-1

Container Advisory IDSUSE-CU-2023:3383-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.10
Container Release11.10
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:4024-1
ReleasedTue Oct 10 13:24:40 2023
SummarySecurity update for shadow
Typesecurity
Severitylow
References1214806,CVE-2023-4641
Description:

This update for shadow fixes the following issues:


Advisory IDSUSE-SU-2023:4044-1
ReleasedWed Oct 11 09:01:14 2023
SummarySecurity update for curl
Typesecurity
Severityimportant
References1215888,1215889,CVE-2023-38545,CVE-2023-38546
Description:

This update for curl fixes the following issues:


SUSE-CU-2023:3352-1

Container Advisory IDSUSE-CU-2023:3352-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.7
Container Release11.7
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:3997-1
ReleasedFri Oct 6 14:13:56 2023
SummarySecurity update for nghttp2
Typesecurity
Severityimportant
References1215713,CVE-2023-35945
Description:

This update for nghttp2 fixes the following issues:


SUSE-CU-2023:3292-1

Container Advisory IDSUSE-CU-2023:3292-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-11.6
Container Release11.6
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:3954-1
ReleasedTue Oct 3 20:09:47 2023
SummarySecurity update for libeconf
Typesecurity
Severityimportant
References1211078,CVE-2023-22652,CVE-2023-30078,CVE-2023-30079,CVE-2023-32181
Description:

This update for libeconf fixes the following issues:
Update to version 0.5.2.


Advisory IDSUSE-SU-2023:3963-1
ReleasedWed Oct 4 09:24:32 2023
SummarySecurity update for libX11
Typesecurity
Severitymoderate
References1215683,1215684,1215685,CVE-2023-43785,CVE-2023-43786,CVE-2023-43787
Description:

This update for libX11 fixes the following issues:


SUSE-CU-2023:3182-1

Container Advisory IDSUSE-CU-2023:3182-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-10.4
Container Release10.4
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:3814-1
ReleasedWed Sep 27 18:08:17 2023
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1211829,1212819,1212910
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-SU-2023:3823-1
ReleasedWed Sep 27 18:42:38 2023
SummarySecurity update for curl
Typesecurity
Severityimportant
References1215026,CVE-2023-38039
Description:

This update for curl fixes the following issues:


SUSE-CU-2023:3135-1

Container Advisory IDSUSE-CU-2023:3135-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-10.1
Container Release10.1
The following patches have been included in this update:

SUSE-CU-2023:3068-1

Container Advisory IDSUSE-CU-2023:3068-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.50
Container Release9.50
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:3641-1
ReleasedMon Sep 18 15:02:47 2023
SummaryRecommended update for java-11-openjdk
Typerecommended
Severityimportant
References
Description:

This update for java-11-openjdk fixes the following issues:


Advisory IDSUSE-SU-2023:3661-1
ReleasedMon Sep 18 21:44:09 2023
SummarySecurity update for gcc12
Typesecurity
Severityimportant
References1214052,CVE-2023-4039
Description:

This update for gcc12 fixes the following issues:


Advisory IDSUSE-SU-2023:3666-1
ReleasedMon Sep 18 21:52:18 2023
SummarySecurity update for libxml2
Typesecurity
Severityimportant
References1214768,CVE-2023-39615
Description:

This update for libxml2 fixes the following issues:


SUSE-CU-2023:2990-1

Container Advisory IDSUSE-CU-2023:2990-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.46
Container Release9.46
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:3611-1
ReleasedFri Sep 15 09:28:36 2023
SummaryRecommended update for sysuser-tools
Typerecommended
Severitymoderate
References1195391,1205161,1207778,1213240,1214140
Description:

This update for sysuser-tools fixes the following issues:


SUSE-CU-2023:2951-1

Container Advisory IDSUSE-CU-2023:2951-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.45
Container Release9.45
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:3577-1
ReleasedMon Sep 11 15:04:01 2023
SummaryRecommended update for crypto-policies
Typerecommended
Severitylow
References1209998
Description:

This update for crypto-policies fixes the following issues:


SUSE-CU-2023:2891-1

Container Advisory IDSUSE-CU-2023:2891-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.42
Container Release9.42
The following patches have been included in this update:

SUSE-CU-2023:2839-1

Container Advisory IDSUSE-CU-2023:2839-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.40
Container Release9.40
The following patches have been included in this update:

SUSE-CU-2023:2812-1

Container Advisory IDSUSE-CU-2023:2812-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.39
Container Release9.39
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:3410-1
ReleasedThu Aug 24 06:56:32 2023
SummaryRecommended update for audit
Typerecommended
Severitymoderate
References1201519,1204844
Description:

This update for audit fixes the following issues:


Advisory IDSUSE-RU-2023:3451-1
ReleasedMon Aug 28 12:15:22 2023
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References1186606,1194609,1208194,1209741,1210702,1211576,1212434,1213185,1213575,1213873
Description:

This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2023:3461-1
ReleasedMon Aug 28 17:25:09 2023
SummarySecurity update for freetype2
Typesecurity
Severitymoderate
References1210419,CVE-2023-2004
Description:

This update for freetype2 fixes the following issues:


SUSE-CU-2023:2697-1

Container Advisory IDSUSE-CU-2023:2697-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.29
Container Release9.29
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:3325-1
ReleasedWed Aug 16 08:26:08 2023
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1214054,CVE-2023-36054
Description:

This update for krb5 fixes the following issues:


SUSE-CU-2023:2642-1

Container Advisory IDSUSE-CU-2023:2642-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.27
Container Release9.27
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:3285-1
ReleasedFri Aug 11 10:30:38 2023
SummaryRecommended update for shadow
Typerecommended
Severitymoderate
References1206627,1213189
Description:

This update for shadow fixes the following issues:


Advisory IDSUSE-SU-2023:3287-1
ReleasedFri Aug 11 12:27:11 2023
SummarySecurity update for java-11-openjdk
Typesecurity
Severityimportant
References1207922,1213473,1213474,1213475,1213479,1213481,1213482,CVE-2023-22006,CVE-2023-22036,CVE-2023-22041,CVE-2023-22044,CVE-2023-22045,CVE-2023-22049,CVE-2023-25193
Description:

This update for java-11-openjdk fixes the following issues:
Updated to jdk-11.0.20+8 (July 2023 CPU):
- CVE-2023-22006: Fixed vulnerability in the network component (bsc#1213473). - CVE-2023-22036: Fixed vulnerability in the utility component (bsc#1213474). - CVE-2023-22041: Fixed vulnerability in the hotspot component (bsc#1213475). - CVE-2023-22044: Fixed vulnerability in the hotspot component (bsc#1213479). - CVE-2023-22045: Fixed vulnerability in the hotspot component (bsc#1213481). - CVE-2023-22049: Fixed vulnerability in the libraries component (bsc#1213482). - CVE-2023-25193: Fixed vulnerability in the embedded harfbuzz module (bsc#1207922).
- JDK-8298676: Enhanced Look and Feel - JDK-8300285: Enhance TLS data handling - JDK-8300596: Enhance Jar Signature validation - JDK-8301998, JDK-8302084: Update HarfBuzz to 7.0.1 - JDK-8302475: Enhance HTTP client file downloading - JDK-8302483: Enhance ZIP performance - JDK-8303376: Better launching of JDI - JDK-8304468: Better array usages - JDK-8305312: Enhanced path handling - JDK-8308682: Enhance AES performance
Bugfixes:
- JDK-8171426: java/lang/ProcessBuilder/Basic.java failed with Stream closed - JDK-8178806: Better exception logging in crypto code - JDK-8187522: test/sun/net/ftp/FtpURLConnectionLeak.java timed out - JDK-8209167: Use CLDR's time zone mappings for Windows - JDK-8209546: Make sun/security/tools/keytool/autotest.sh to support macosx - JDK-8209880: tzdb.dat is not reproducibly built - JDK-8213531: Test javax/swing/border/TestTitledBorderLeak.java fails - JDK-8214459: NSS source should be removed - JDK-8214807: Improve handling of very old class files - JDK-8215015: [TESTBUG] remove unneeded -Xfuture option from tests - JDK-8215575: C2 crash: assert(get_instanceKlass()->is_loaded()) failed: must be at least loaded - JDK-8220093: Change to GCC 8.2 for building on Linux at Oracle - JDK-8227257: javax/swing/JFileChooser/4847375/bug4847375.java fails with AssertionError - JDK-8232853: AuthenticationFilter.Cache::remove may throw ConcurrentModificationException - JDK-8243936: NonWriteable system properties are actually writeable - JDK-8246383: NullPointerException in JceSecurity.getVerificationResult when using Entrust provider - JDK-8248701: On Windows generated modules-deps.gmk can contain backslash-r (CR) characters - JDK-8257856: Make ClassFileVersionsTest.java robust to JDK version updates - JDK-8259530: Generated docs contain MIT/GPL-licenced works without reproducing the licence - JDK-8263420: Incorrect function name in NSAccessibilityStaticText native peer implementation - JDK-8264290: Create implementation for NSAccessibilityComponentGroup protocol peer - JDK-8264304: Create implementation for NSAccessibilityToolbar protocol peer - JDK-8265486: ProblemList javax/sound/midi/Sequencer/ /Recording.java on macosx-aarch64 - JDK-8268558: [TESTBUG] Case 2 in TestP11KeyFactoryGetRSAKeySpec is skipped - JDK-8269746: C2: assert(!in->is_CFG()) failed: CFG Node with no controlling input? - JDK-8274864: Remove Amman/Cairo hacks in ZoneInfoFile - JDK-8275233: Incorrect line number reported in exception stack trace thrown from a lambda expression - JDK-8275721: Name of UTC timezone in a locale changes depending on previous code - JDK-8275735: [linux] Remove deprecated Metrics api (kernel memory limit) - JDK-8276880: Remove java/lang/RuntimeTests/exec/ExecWithDir as unnecessary - JDK-8277775: Fixup bugids in RemoveDropTargetCrashTest.java - add 4357905 - JDK-8278434: timeouts in test java/time/test/java/time/format/ /TestZoneTextPrinterParser.java - JDK-8280703: CipherCore.doFinal(...) causes potentially massive byte[] allocations during decryption - JDK-8282077: PKCS11 provider C_sign() impl should handle CKR_BUFFER_TOO_SMALL error - JDK-8282201: Consider removal of expiry check in VerifyCACerts.java test - JDK-8282467: add extra diagnostics for JDK-8268184 - JDK-8282600: SSLSocketImpl should not use user_canceled workaround when not necessary - JDK-8283059: Uninitialized warning in check_code.c with GCC 11.2 - JDK-8285497: Add system property for Java SE specification maintenance version - JDK-8286398: Address possibly lossy conversions in jdk.internal.le - JDK-8287007: [cgroups] Consistently use stringStream throughout parsing code - JDK-8287246: DSAKeyValue should check for missing params instead of relying on KeyFactory provider - JDK-8287876: The recently de-problemlisted TestTitledBorderLeak test is unstable - JDK-8287897: Augment src/jdk.internal.le/share/legal/jline.md with information on 4th party dependencies - JDK-8289301: P11Cipher should not throw out of bounds exception during padding - JDK-8289735: UTIL_LOOKUP_PROGS fails on pathes with space - JDK-8291226: Create Test Cases to cover scenarios for JDK-8278067 - JDK-8291637: HttpClient default keep alive timeout not followed if server sends invalid value - JDK-8291638: Keep-Alive timeout of 0 should close connection immediately - JDK-8292206: TestCgroupMetrics.java fails as getMemoryUsage() is lower than expected - JDK-8293232: Fix race condition in pkcs11 SessionManager - JDK-8293815: P11PSSSignature.engineUpdate should not print debug messages during normal operation - JDK-8294548: Problem list SA core file tests on macosx-x64 due to JDK-8294316 - JDK-8294906: Memory leak in PKCS11 NSS TLS server - JDK-8295974: jni_FatalError and Xcheck:jni warnings should print the native stack when there are no Java frames - JDK-8296934: Write a test to verify whether Undecorated Frame can be iconified or not - JDK-8297000: [jib] Add more friendly warning for proxy issues - JDK-8297450: ScaledTextFieldBorderTest.java fails when run with -show parameter - JDK-8298887: On the latest macOS+XCode the Robot API may report wrong colors - JDK-8299259: C2: Div/Mod nodes without zero check could be split through iv phi of loop resulting in SIGFPE - JDK-8300079: SIGSEGV in LibraryCallKit::inline_string_copy due to constant NULL src argument - JDK-8300205: Swing test bug8078268 make latch timeout configurable - JDK-8300490: Spaces in name of MacOS Code Signing Identity are not correctly handled after JDK-8293550 - JDK-8301119: Support for GB18030-2022 - JDK-8301170: perfMemory_windows.cpp add free_security_attr to early returns - JDK-8301401: Allow additional characters for GB18030-2022 support - JDK-8302151: BMPImageReader throws an exception reading BMP images - JDK-8302791: Add specific ClassLoader object to Proxy IllegalArgumentException message - JDK-8303102: jcmd: ManagementAgent.status truncates the text longer than O_BUFLEN - JDK-8303354: addCertificatesToKeystore in KeystoreImpl.m needs CFRelease call in early potential CHECK_NULL return - JDK-8303432: Bump update version for OpenJDK: jdk-11.0.20 - JDK-8303440: The 'ZonedDateTime.parse' may not accept the 'UTC+XX' zone id - JDK-8303465: KeyStore of type KeychainStore, provider Apple does not show all trusted certificates - JDK-8303476: Add the runtime version in the release file of a JDK image - JDK-8303482: Update LCMS to 2.15 - JDK-8303564: C2: 'Bad graph detected in build_loop_late' after a CMove is wrongly split thru phi - JDK-8303576: addIdentitiesToKeystore in KeystoreImpl.m needs CFRelease call in early potential CHECK_NULL return - JDK-8303822: gtestMain should give more helpful output - JDK-8303861: Error handling step timeouts should never be blocked by OnError and others - JDK-8303937: Corrupted heap dumps due to missing retries for os::write() - JDK-8304134: jib bootstrapper fails to quote filename when checking download filetype - JDK-8304291: [AIX] Broken build after JDK-8301998 - JDK-8304295: harfbuzz build fails with GCC 7 after JDK-8301998 - JDK-8304350: Font.getStringBounds calculates wrong width for TextAttribute.TRACKING other than 0.0 - JDK-8304760: Add 2 Microsoft TLS roots - JDK-8305113: (tz) Update Timezone Data to 2023c - JDK-8305400: ISO 4217 Amendment 175 Update - JDK-8305528: [11u] Backport of JDK-8259530 breaks build with JDK10 bootstrap VM - JDK-8305682: Update the javadoc in the Character class to state support for GB 18030-2022 Implementation Level 2 - JDK-8305711: Arm: C2 always enters slowpath for monitorexit - JDK-8305721: add `make compile-commands` artifacts to .gitignore - JDK-8305975: Add TWCA Global Root CA - JDK-8306543: GHA: MSVC installation is failing - JDK-8306658: GHA: MSVC installation could be optional since it might already be pre-installed - JDK-8306664: GHA: Update MSVC version to latest stepping - JDK-8306768: CodeCache Analytics reports wrong threshold - JDK-8306976: UTIL_REQUIRE_SPECIAL warning on grep - JDK-8307134: Add GTS root CAs - JDK-8307811: [TEST] compilation of TimeoutInErrorHandlingTest fails after backport of JDK-8303861 - JDK-8308006: Missing NMT memory tagging in CMS - JDK-8308884: [17u/11u] Backout JDK-8297951 - JDK-8309476: [11u] tools/jmod/hashes/HashesOrderTest.java fails intermittently - JDK-8311465: [11u] Remove designator DEFAULT_PROMOTED_VERSION_PRE=ea for release 11.0.20


SUSE-CU-2023:2607-1

Container Advisory IDSUSE-CU-2023:2607-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.25
Container Release9.25
The following patches have been included in this update:

SUSE-CU-2023:2558-1

Container Advisory IDSUSE-CU-2023:2558-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.24
Container Release9.24
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:3242-1
ReleasedTue Aug 8 18:19:40 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1213853,CVE-2023-3817
Description:

This update for openssl-1_1 fixes the following issues:


SUSE-CU-2023:2504-1

Container Advisory IDSUSE-CU-2023:2504-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.21
Container Release9.21
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:3102-1
ReleasedTue Aug 1 14:11:53 2023
SummaryRecommended update for openssl-1_1
Typerecommended
Severitymoderate
References1213517
Description:

This update for openssl-1_1 fixes the following issues:


SUSE-CU-2023:2445-1

Container Advisory IDSUSE-CU-2023:2445-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.17
Container Release9.17
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:2965-1
ReleasedTue Jul 25 12:30:22 2023
SummarySecurity update for openssl-1_1
Typesecurity
Severitymoderate
References1213487,CVE-2023-3446
Description:

This update for openssl-1_1 fixes the following issues:


Advisory IDSUSE-RU-2023:2966-1
ReleasedTue Jul 25 14:26:14 2023
SummaryRecommended update for libxml2
Typerecommended
Severitymoderate
References
Description:

This update for libxml2 fixes the following issues:


SUSE-CU-2023:2372-1

Container Advisory IDSUSE-CU-2023:2372-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.13
Container Release9.13
The following patches have been included in this update:
Advisory IDSUSE-SU-2023:2882-1
ReleasedWed Jul 19 11:49:39 2023
SummarySecurity update for perl
Typesecurity
Severityimportant
References1210999,CVE-2023-31484
Description:

This update for perl fixes the following issues:

- CVE-2023-31484: Enable TLS cert verification in CPAN (bsc#1210999).


Advisory IDSUSE-RU-2023:2885-1
ReleasedWed Jul 19 16:58:43 2023
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1208721,1209229,1211828
Description:

This update for glibc fixes the following issues:


Advisory IDSUSE-SU-2023:2891-1
ReleasedWed Jul 19 21:14:33 2023
SummarySecurity update for curl
Typesecurity
Severitymoderate
References1213237,CVE-2023-32001
Description:

This update for curl fixes the following issues:


SUSE-CU-2023:2325-1

Container Advisory IDSUSE-CU-2023:2325-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.7
Container Release9.7
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:2827-1
ReleasedFri Jul 14 11:27:47 2023
SummaryRecommended update for libxml2
Typerecommended
Severitymoderate
References
Description:

This update for libxml2 fixes the following issues:


Advisory IDSUSE-RU-2023:2847-1
ReleasedMon Jul 17 08:40:42 2023
SummaryRecommended update for audit
Typerecommended
Severitymoderate
References1210004
Description:

This update for audit fixes the following issues:


Advisory IDSUSE-RU-2023:2855-1
ReleasedMon Jul 17 16:35:21 2023
SummaryRecommended update for openldap2
Typerecommended
Severitymoderate
References1212260
Description:

This update for openldap2 fixes the following issues:


SUSE-CU-2023:2280-1

Container Advisory IDSUSE-CU-2023:2280-1
Container Tagsbci/openjdk:11 , bci/openjdk:11-9.2
Container Release9.2
The following patches have been included in this update:
Advisory IDSUSE-RU-2023:2814-1
ReleasedWed Jul 12 22:05:25 2023
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1185116,1202118
Description:

This update for mozilla-nss fixes the following issues:
mozilla-nss was updated to NSS 3.90:



update to NSS 3.89.1

update to NSS 3.89

update to NSS 3.88.1

update to NSS 3.88

update to NSS 3.87

update to NSS 3.86

update to NSS 3.85

update to NSS 3.84

update to NSS 3.83
with retry configs in EncryptedExtensions and if not accepting ECH. Changed config setting behavior to skip configs with unsupported mandatory extensions instead of failing
  • Added ECH client support to BoGo shim. Changed
  • CHInner creation to skip TLS 1.2 only extensions to comply with BoGo
  • Added ECH server support to BoGo shim. Fixed NSS ECH server accept_confirmation bugs
  • Update BoGo tests to recent BoringSSL version
  • Bump minimum NSPR version to 4.34.1

  • update to NSS 3.82

    update to NSS 3.81



    update to NSS 3.80
    by allocating it on initialization. Replaced redundant code with assert. Debug builds: Added buffer freeing/allocation for each record.
  • Mark 3.79 as an ESR release.
  • Bump nssckbi version number for June.
  • Remove Hellenic Academic 2011 Root.
  • Add E-Tugra Roots.
  • Add Certainly Roots.
  • Add DigitCert Roots.
  • Protect SFTKSlot needLogin with slotLock.
  • Compare signature and signatureAlgorithm fields in legacy certificate verifier.
  • Uninitialized value in cert_VerifyCertChainOld.
  • Unchecked return code in sec_DecodeSigAlg.
  • Uninitialized value in cert_ComputeCertType.
  • Avoid data race on primary password change.
  • Replace ppc64 dcbzl intrinisic.
  • Allow LDFLAGS override in makefile builds.

  • SUSE-CU-2023:2253-1

    Container Advisory IDSUSE-CU-2023:2253-1
    Container Tagsbci/openjdk:11 , bci/openjdk:11-8.7
    Container Release8.7
    The following patches have been included in this update:
    Advisory IDSUSE-RU-2023:2788-1
    ReleasedThu Jul 6 11:51:02 2023
    SummaryRecommended update for mozilla-nspr, mozilla-nss
    Typerecommended
    Severitymoderate
    References1185116,1202118
    Description:

    This update for mozilla-nspr, mozilla-nss fixes the following issues:
    mozilla-nspr was updated to version 4.35


    mozilla-nss was update to NSS 3.90:


    update to NSS 3.89.1

    update to NSS 3.89

    update to NSS 3.88.1

    update to NSS 3.88

    update to NSS 3.87

    update to NSS 3.86

    update to NSS 3.85

    update to NSS 3.84
    update to NSS 3.83

    update to NSS 3.82

    update to NSS 3.81



    update to NSS 3.80
    by allocating it on initialization. Replaced redundant code with assert. Debug builds: Added buffer freeing/allocation for each record.
  • Mark 3.79 as an ESR release.
  • Bump nssckbi version number for June.
  • Remove Hellenic Academic 2011 Root.
  • Add E-Tugra Roots.
  • Add Certainly Roots.
  • Add DigitCert Roots.
  • Protect SFTKSlot needLogin with slotLock.
  • Compare signature and signatureAlgorithm fields in legacy certificate verifier.
  • Uninitialized value in cert_VerifyCertChainOld.
  • Unchecked return code in sec_DecodeSigAlg.
  • Uninitialized value in cert_ComputeCertType.
  • Avoid data race on primary password change.
  • Replace ppc64 dcbzl intrinisic.
  • Allow LDFLAGS override in makefile builds.

  • SUSE-CU-2023:2231-1

    Container Advisory IDSUSE-CU-2023:2231-1
    Container Tagsbci/openjdk:11 , bci/openjdk:11-8.6
    Container Release8.6
    The following patches have been included in this update:
    Advisory IDSUSE-SU-2023:2765-1
    ReleasedMon Jul 3 20:28:14 2023
    SummarySecurity update for libcap
    Typesecurity
    Severitymoderate
    References1211418,1211419,CVE-2023-2602,CVE-2023-2603
    Description:

    This update for libcap fixes the following issues:


    SUSE-CU-2023:2176-1

    Container Advisory IDSUSE-CU-2023:2176-1
    Container Tagsbci/openjdk:11 , bci/openjdk:11-8.1
    Container Release8.1
    The following patches have been included in this update:

    SUSE-CU-2023:2128-1

    Container Advisory IDSUSE-CU-2023:2128-1
    Container Tagsbci/openjdk:11 , bci/openjdk:11-7.7
    Container Release7.7
    The following patches have been included in this update:
    Advisory ID29171
    ReleasedTue Jun 20 12:29:00 2023
    SummarySecurity update for openssl-1_1
    Typesecurity
    Severityimportant
    References1201627,1207534,1211430,CVE-2022-4304,CVE-2023-2650
    Description:

    This update for openssl-1_1 fixes the following issues:



    Advisory IDSUSE-RU-2023:2625-1
    ReleasedFri Jun 23 17:16:11 2023
    SummaryRecommended update for gcc12
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for gcc12 fixes the following issues:


    * includes regression and other bug fixes


    SUSE-CU-2023:2093-1

    Container Advisory IDSUSE-CU-2023:2093-1
    Container Tagsbci/openjdk:11 , bci/openjdk:11-7.5
    Container Release7.5
    The following patches have been included in this update:
    Advisory IDSUSE-SU-2023:2614-1
    ReleasedThu Jun 22 14:02:30 2023
    SummarySecurity update for libX11
    Typesecurity
    Severityimportant
    References1212102,CVE-2023-3138
    Description:

    This update for libX11 fixes the following issues:


    SUSE-CU-2023:2074-1

    Container Advisory IDSUSE-CU-2023:2074-1
    Container Tagsbci/openjdk:11 , bci/openjdk:11-7.4
    Container Release7.4
    The following patches have been included in this update:

    SUSE-CU-2023:2025-1

    Container Advisory IDSUSE-CU-2023:2025-1
    Container Tagsbci/openjdk:11 , bci/openjdk:11-7.3
    Container Release7.3
    The following patches have been included in this update:

    SUSE-CU-2023:1977-1

    Container Advisory IDSUSE-CU-2023:1977-1
    Container Tagsbci/openjdk:11 , bci/openjdk:11-7.1
    Container Release7.1
    The following patches have been included in this update:
    Advisory IDSUSE-RU-2018:1332-1
    ReleasedTue Jul 17 09:01:19 2018
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1073299,1093392
    Description:

    This update for timezone provides the following fixes:


    Advisory IDSUSE-SU-2018:1462-1
    ReleasedTue Jul 31 14:04:41 2018
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severitymoderate
    References1101645,1101651,1101655,1101656,CVE-2018-2940,CVE-2018-2952,CVE-2018-2972,CVE-2018-2973
    Description:

    This java-11-openjdk update to version jdk-11+24 fixes the following issues:
    Security issues fixed:


    Advisory IDSUSE-SU-2018:2082-1
    ReleasedSun Sep 30 14:06:27 2018
    SummarySecurity update for libX11
    Typesecurity
    Severitymoderate
    References1102062,1102068,1102073,CVE-2018-14598,CVE-2018-14599,CVE-2018-14600
    Description:

    This update for libX11 fixes the following security issues:


    Advisory IDSUSE-RU-2018:2298-1
    ReleasedWed Oct 17 17:02:57 2018
    SummaryRecommended update for java-11-openjdk
    Typerecommended
    Severitymoderate
    References1111162,1112142,1112143,1112144,1112145,1112146,1112147,1112148,1112149,CVE-2018-3136,CVE-2018-3139,CVE-2018-3149,CVE-2018-3150,CVE-2018-3157,CVE-2018-3169,CVE-2018-3180,CVE-2018-3183
    Description:

    This update for java-11-openjdk fixes the following issues:
    Update to upstream tag jdk-11.0.1+13 (Oracle October 2018 CPU)
    Security fixes:


    Security-In-Depth fixes:

    Update to upstream tag jdk-11+28 (OpenJDK 11 rc1)


    Update to upstream tag jdk-11+27


    Advisory IDSUSE-RU-2018:2307-1
    ReleasedThu Oct 18 14:42:54 2018
    SummaryRecommended update for libxcb
    Typerecommended
    Severitymoderate
    References1101560
    Description:

    This update for libxcb provides the following fix:


    Advisory IDSUSE-RU-2018:2463-1
    ReleasedThu Oct 25 14:48:34 2018
    SummaryRecommended update for timezone, timezone-java
    Typerecommended
    Severitymoderate
    References1104700,1112310
    Description:


    This update for timezone, timezone-java fixes the following issues:
    The timezone database was updated to 2018f:


    Other bugfixes:


    Advisory IDSUSE-RU-2018:2550-1
    ReleasedWed Oct 31 16:16:56 2018
    SummaryRecommended update for timezone, timezone-java
    Typerecommended
    Severitymoderate
    References1113554
    Description:

    This update provides the latest time zone definitions (2018g), including the following change:


    Advisory IDSUSE-RU-2018:2569-1
    ReleasedFri Nov 2 19:00:18 2018
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1110700
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2018:2607-1
    ReleasedWed Nov 7 15:42:48 2018
    SummaryOptional update for gcc8
    Typerecommended
    Severitylow
    References1084812,1084842,1087550,1094222,1102564
    Description:


    The GNU Compiler GCC 8 is being added to the Development Tools Module by this update.
    The update also supplies gcc8 compatible libstdc++, libgcc_s1 and other gcc derived libraries for the Basesystem module of SUSE Linux Enterprise 15.
    Various optimizers have been improved in GCC 8, several of bugs fixed, quite some new warnings added and the error pin-pointing and fix-suggestions have been greatly improved.
    The GNU Compiler page for GCC 8 contains a summary of all the changes that have happened:
    https://gcc.gnu.org/gcc-8/changes.html
    Also changes needed or common pitfalls when porting software are described on:
    https://gcc.gnu.org/gcc-8/porting_to.html


    Advisory IDSUSE-RU-2018:2625-1
    ReleasedMon Nov 12 08:58:25 2018
    SummaryRecommended update for java-11-openjdk
    Typerecommended
    Severitymoderate
    References1113734
    Description:

    This update for java-11-openjdk fixes the following issues:
    Merge into the JDK following modules from github.com/javaee:


    This provides a default implementation of JAXB-API that existed in JDK before Java 11 and that some applications depend on.


    Advisory IDSUSE-SU-2018:2825-1
    ReleasedMon Dec 3 15:35:02 2018
    SummarySecurity update for pam
    Typesecurity
    Severityimportant
    References1115640,CVE-2018-17953
    Description:

    This update for pam fixes the following issue:
    Security issue fixed:


    Advisory IDSUSE-SU-2018:2861-1
    ReleasedThu Dec 6 14:32:01 2018
    SummarySecurity update for ncurses
    Typesecurity
    Severityimportant
    References1103320,1115929,CVE-2018-19211
    Description:

    This update for ncurses fixes the following issues:
    Security issue fixed:


    Non-security issue fixed:


    Advisory IDSUSE-SU-2018:3044-1
    ReleasedFri Dec 21 18:47:21 2018
    SummarySecurity update for MozillaFirefox, mozilla-nspr and mozilla-nss
    Typesecurity
    Severityimportant
    References1097410,1106873,1119069,1119105,CVE-2018-0495,CVE-2018-12384,CVE-2018-12404,CVE-2018-12405,CVE-2018-17466,CVE-2018-18492,CVE-2018-18493,CVE-2018-18494,CVE-2018-18498
    Description:

    This update for MozillaFirefox, mozilla-nss and mozilla-nspr fixes the following issues:
    Issues fixed in MozillaFirefox:


    Issues fixed in mozilla-nss:

    Issues fixed in mozilla-nspr:


    Advisory IDSUSE-RU-2019:44-1
    ReleasedTue Jan 8 13:07:32 2019
    SummaryRecommended update for acl
    Typerecommended
    Severitylow
    References953659
    Description:

    This update for acl fixes the following issues:


    Advisory IDSUSE-RU-2019:102-1
    ReleasedTue Jan 15 18:02:58 2019
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1120402
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-SU-2019:221-1
    ReleasedFri Feb 1 15:20:56 2019
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1120431,1122293,1122299,CVE-2018-11212,CVE-2019-2422,CVE-2019-2426
    Description:

    This update for java-11-openjdk to version 11.0.2+7 fixes the following issues:
    Security issues fixed:


    Non-security issues fix:


    Advisory IDSUSE-SU-2019:247-1
    ReleasedWed Feb 6 07:18:45 2019
    SummarySecurity update for lua53
    Typesecurity
    Severitymoderate
    References1123043,CVE-2019-6706
    Description:

    This update for lua53 fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-SU-2019:571-1
    ReleasedThu Mar 7 18:13:46 2019
    SummarySecurity update for file
    Typesecurity
    Severitymoderate
    References1096974,1096984,1126117,1126118,1126119,CVE-2018-10360,CVE-2019-8905,CVE-2019-8906,CVE-2019-8907
    Description:

    This update for file fixes the following issues:
    The following security vulnerabilities were addressed:


    Advisory IDSUSE-SU-2019:788-1
    ReleasedThu Mar 28 11:55:06 2019
    SummarySecurity update for sqlite3
    Typesecurity
    Severitymoderate
    References1119687,CVE-2018-20346
    Description:

    This update for sqlite3 to version 3.27.2 fixes the following issue:
    Security issue fixed:


    Release notes: https://www.sqlite.org/releaselog/3_27_2.html


    Advisory IDSUSE-RU-2019:790-1
    ReleasedThu Mar 28 12:06:17 2019
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1130557
    Description:

    This update for timezone fixes the following issues:
    timezone was updated 2019a:


    Advisory IDSUSE-SU-2019:926-1
    ReleasedWed Apr 10 16:33:12 2019
    SummarySecurity update for tar
    Typesecurity
    Severitymoderate
    References1120610,1130496,CVE-2018-20482,CVE-2019-9923
    Description:

    This update for tar fixes the following issues:
    Security issues fixed:


    Advisory IDSUSE-SU-2019:1040-1
    ReleasedThu Apr 25 17:09:21 2019
    SummarySecurity update for samba
    Typesecurity
    Severityimportant
    References1114407,1124223,1125410,1126377,1131060,1131686,CVE-2019-3880
    Description:

    This update for samba fixes the following issues:
    Security issue fixed:



    ldb was updated to version 1.2.4 (bsc#1125410 bsc#1131686):


    Non-security issues fixed:


    Advisory IDSUSE-SU-2019:1052-1
    ReleasedFri Apr 26 14:33:42 2019
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severitymoderate
    References1132728,1132732,CVE-2019-2602,CVE-2019-2684
    Description:

    This update for java-11-openjdk to version 11.0.3+7 fixes the following issues:
    Security issues fixed:


    Non-security issues fixed:


    Advisory IDSUSE-SU-2019:1127-1
    ReleasedThu May 2 09:39:24 2019
    SummarySecurity update for sqlite3
    Typesecurity
    Severitymoderate
    References1130325,1130326,CVE-2019-9936,CVE-2019-9937
    Description:

    This update for sqlite3 to version 3.28.0 fixes the following issues:
    Security issues fixed:


    Advisory IDSUSE-RU-2019:1152-1
    ReleasedFri May 3 18:06:09 2019
    SummaryRecommended update for java-11-openjdk
    Typerecommended
    Severitymoderate
    References1131378
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-SU-2019:1368-1
    ReleasedTue May 28 13:15:38 2019
    SummaryRecommended update for sles12sp3-docker-image, sles12sp4-image, system-user-root
    Typesecurity
    Severityimportant
    References1134524,CVE-2019-5021
    Description:

    This update for sles12sp3-docker-image, sles12sp4-image, system-user-root fixes the following issues:


    Advisory IDSUSE-SU-2019:1372-1
    ReleasedTue May 28 16:53:28 2019
    SummarySecurity update for libtasn1
    Typesecurity
    Severitymoderate
    References1105435,CVE-2018-1000654
    Description:

    This update for libtasn1 fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-SU-2019:1398-1
    ReleasedFri May 31 12:54:22 2019
    SummarySecurity update for libpng16
    Typesecurity
    Severitylow
    References1100687,1121624,1124211,CVE-2018-13785,CVE-2019-7317
    Description:

    This update for libpng16 fixes the following issues:
    Security issues fixed:


    Advisory IDSUSE-RU-2019:1631-1
    ReleasedFri Jun 21 11:17:21 2019
    SummaryRecommended update for xz
    Typerecommended
    Severitylow
    References1135709
    Description:

    This update for xz fixes the following issues:
    Add SUSE-Public-Domain licence as some parts of xz utils (liblzma, xz, xzdec, lzmadec, documentation, translated messages, tests, debug, extra directory) are in public domain licence [bsc#1135709]


    Advisory IDSUSE-RU-2019:1807-1
    ReleasedWed Jul 10 13:13:21 2019
    SummaryRecommended update for java-11-openjdk
    Typerecommended
    Severitymoderate
    References1137264
    Description:


    This update ships the OpenJDK LTS version 11 in the java-11-openjdk packages. (FATE#326347 bsc#1137264)


    Advisory IDSUSE-RU-2019:1815-1
    ReleasedThu Jul 11 07:47:55 2019
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1140016
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-SU-2019:2002-1
    ReleasedMon Jul 29 13:00:27 2019
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1115375,1140461,1141780,1141781,1141782,1141783,1141784,1141785,1141787,1141788,1141789,CVE-2019-2745,CVE-2019-2762,CVE-2019-2766,CVE-2019-2769,CVE-2019-2786,CVE-2019-2816,CVE-2019-2818,CVE-2019-2821,CVE-2019-7317
    Description:

    This update for java-11-openjdk to version jdk-11.0.4+11 fixes the following issues:
    Security issues fixed:


    Non-security issues fixed:


    Advisory IDSUSE-RU-2019:2142-1
    ReleasedWed Aug 14 18:14:04 2019
    SummaryRecommended update for mozilla-nspr, mozilla-nss
    Typerecommended
    Severitymoderate
    References1141322
    Description:


    This update for mozilla-nspr, mozilla-nss fixes the following issues:
    mozilla-nss was updated to NSS 3.45 (bsc#1141322) :


    mozilla-nspr was updated to version 4.21


    Advisory IDSUSE-SU-2019:2533-1
    ReleasedThu Oct 3 15:02:50 2019
    SummarySecurity update for sqlite3
    Typesecurity
    Severitymoderate
    References1150137,CVE-2019-16168
    Description:

    This update for sqlite3 fixes the following issues:
    Security issue fixed:


    Advisory IDSUSE-RU-2019:2762-1
    ReleasedThu Oct 24 07:08:44 2019
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1150451
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-SU-2019:2997-1
    ReleasedMon Nov 18 15:16:38 2019
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1103320,1154036,1154037,CVE-2019-17594,CVE-2019-17595
    Description:

    This update for ncurses fixes the following issues:
    Security issues fixed:


    Non-security issue fixed:


    Advisory IDSUSE-SU-2019:2998-1
    ReleasedMon Nov 18 15:17:23 2019
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1152856,1154212,CVE-2019-2894,CVE-2019-2933,CVE-2019-2945,CVE-2019-2949,CVE-2019-2958,CVE-2019-2962,CVE-2019-2964,CVE-2019-2973,CVE-2019-2975,CVE-2019-2977,CVE-2019-2978,CVE-2019-2981,CVE-2019-2983,CVE-2019-2987,CVE-2019-2988,CVE-2019-2989,CVE-2019-2992,CVE-2019-2999
    Description:

    This update for java-11-openjdk to version jdk-11.0.5-10 fixes the following issues:
    Security issues fixed (October 2019 CPU bsc#1154212):


    Advisory IDSUSE-SU-2019:3061-1
    ReleasedMon Nov 25 17:34:22 2019
    SummarySecurity update for gcc9
    Typesecurity
    Severitymoderate
    References1114592,1135254,1141897,1142649,1142654,1148517,1149145,CVE-2019-14250,CVE-2019-15847,SLE-6533,SLE-6536
    Description:



    This update includes the GNU Compiler Collection 9.
    A full changelog is provided by the GCC team on:
    https://www.gnu.org/software/gcc/gcc-9/changes.html

    The base system compiler libraries libgcc_s1, libstdc++6 and others are now built by the gcc 9 packages.
    To use it, install 'gcc9' or 'gcc9-c++' or other compiler brands and use CC=gcc-9 / CXX=g++-9 during configuration for using it.

    Security issues fixed:


    Non-security issues fixed:


    Advisory IDSUSE-SU-2019:3086-1
    ReleasedThu Nov 28 10:02:24 2019
    SummarySecurity update for libidn2
    Typesecurity
    Severitymoderate
    References1154884,1154887,CVE-2019-12290,CVE-2019-18224
    Description:

    This update for libidn2 to version 2.2.0 fixes the following issues:


    Advisory IDSUSE-SU-2019:3395-1
    ReleasedMon Dec 30 14:05:06 2019
    SummarySecurity update for mozilla-nspr, mozilla-nss
    Typesecurity
    Severitymoderate
    References1141322,1158527,1159819,CVE-2018-18508,CVE-2019-11745,CVE-2019-17006
    Description:

    This update for mozilla-nspr, mozilla-nss fixes the following issues:
    mozilla-nss was updated to NSS 3.47.1:
    Security issues fixed:


    mozilla-nspr was updated to version 4.23:


    Advisory IDSUSE-SU-2020:213-1
    ReleasedWed Jan 22 15:38:15 2020
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1160968,CVE-2020-2583,CVE-2020-2590,CVE-2020-2593,CVE-2020-2601,CVE-2020-2604,CVE-2020-2654,CVE-2020-2655
    Description:

    This update for java-11-openjdk fixes the following issues:
    Update to version jdk-11.0.6-10 (January 2020 CPU, bsc#1160968)
    Fixing these security related issues:


    Advisory IDSUSE-RU-2020:362-1
    ReleasedFri Feb 7 11:14:20 2020
    SummaryRecommended update for libXi
    Typerecommended
    Severitymoderate
    References1153311
    Description:


    This update for libXi fixes the following issue:


    Advisory IDSUSE-RU-2020:525-1
    ReleasedFri Feb 28 11:49:36 2020
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1164562
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2020:689-1
    ReleasedFri Mar 13 17:09:01 2020
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1166510
    Description:


    This update for PAM fixes the following issue:


    Advisory IDSUSE-RU-2020:917-1
    ReleasedFri Apr 3 15:02:25 2020
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1166510
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2020:948-1
    ReleasedWed Apr 8 07:44:21 2020
    SummarySecurity update for gmp, gnutls, libnettle
    Typesecurity
    Severitymoderate
    References1152692,1155327,1166881,1168345,CVE-2020-11501
    Description:

    This update for gmp, gnutls, libnettle fixes the following issues:
    Security issue fixed:


    FIPS related bugfixes:


    Advisory IDSUSE-RU-2020:1226-1
    ReleasedFri May 8 10:51:05 2020
    SummaryRecommended update for gcc9
    Typerecommended
    Severitymoderate
    References1149995,1152590,1167898
    Description:

    This update for gcc9 fixes the following issues:
    This update ships the GCC 9.3 release.


    Advisory IDSUSE-SU-2020:1294-1
    ReleasedMon May 18 07:38:36 2020
    SummarySecurity update for file
    Typesecurity
    Severitymoderate
    References1154661,1169512,CVE-2019-18218
    Description:

    This update for file fixes the following issues:
    Security issues fixed:


    Non-security issue fixed:


    Advisory IDSUSE-RU-2020:1303-1
    ReleasedMon May 18 09:40:36 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1169582
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2020:1328-1
    ReleasedMon May 18 17:16:04 2020
    SummaryRecommended update for grep
    Typerecommended
    Severitymoderate
    References1155271
    Description:

    This update for grep fixes the following issues:


    Advisory IDSUSE-SU-2020:1353-1
    ReleasedWed May 20 13:02:32 2020
    SummarySecurity update for freetype2
    Typesecurity
    Severitymoderate
    References1079603,1091109,CVE-2018-6942
    Description:

    This update for freetype2 to version 2.10.1 fixes the following issues:
    Security issue fixed:


    Non-security issues fixed:









    Advisory IDSUSE-SU-2020:1511-1
    ReleasedFri May 29 18:03:39 2020
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1167462,1169511,CVE-2020-2754,CVE-2020-2755,CVE-2020-2756,CVE-2020-2757,CVE-2020-2767,CVE-2020-2773,CVE-2020-2778,CVE-2020-2781,CVE-2020-2800,CVE-2020-2803,CVE-2020-2805,CVE-2020-2816,CVE-2020-2830
    Description:

    This update for java-11-openjdk fixes the following issues:
    Java was updated to jdk-11.0.7+10 (April 2020 CPU, bsc#1169511).
    Security issues fixed:


    Advisory IDSUSE-RU-2020:1542-1
    ReleasedThu Jun 4 13:24:37 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1172055
    Description:

    This update for timezone fixes the following issue:


    Advisory IDSUSE-SU-2020:1677-1
    ReleasedThu Jun 18 18:16:39 2020
    SummarySecurity update for mozilla-nspr, mozilla-nss
    Typesecurity
    Severityimportant
    References1159819,1169746,1171978,CVE-2019-17006,CVE-2020-12399
    Description:

    This update for mozilla-nspr, mozilla-nss fixes the following issues:
    mozilla-nss was updated to version 3.53

    Release notes: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.53_release_notes
    mozilla-nspr to version 4.25


    Advisory IDSUSE-RU-2020:1852-1
    ReleasedMon Jul 6 16:50:23 2020
    SummaryRecommended update for fontforge, ghostscript-fonts, ttf-converter, xorg-x11-fonts
    Typerecommended
    Severitymoderate
    References1169444
    Description:

    This update for fontforge, ghostscript-fonts, ttf-converter, xorg-x11-fonts fixes the following issues:
    Changes in fontforge:


    Changes in ttf-converter:

    --shift-unicode-values: When passed 3 comma separated numbers a,b,c this shifts the unicode values of glyphs between a and b (both included) by adding c. Can be used more than once. * Add --bitmapTransform parameter to transform bitmap glyphs. (bsc#1169444) When used, all glyphs are modified with the transformation function and values passed as parameters. The parameter has three values separated by commas: fliph|flipv|rotate90cw|rotate90ccw|rotate180|skew|transmove,xoff,yoff * Add support to convert bitmap fonts (bsc#1169444) * Rename MediumItalic subfamily to Medium Italic * Show some more information when removing duplicated glyphs * Add a --force-monospaced argument instead of hardcoding font names * Convert `BoldCond` subfamily to `Bold Condensed` * Fixes for Monospaced fonts and force the Nimbus Mono L font to be Monospaced. (bsc#1169444 #c41) * Add a --version argument * Fix subfamily names so the converted font's subfamily match the original ones. (bsc#1169444 #c41)
    Changes in xorg-x11-fonts:

    Changes in ghostscript-fonts:


    Advisory IDSUSE-RU-2020:1954-1
    ReleasedSat Jul 18 03:07:15 2020
    SummaryRecommended update for cracklib
    Typerecommended
    Severitymoderate
    References1172396
    Description:

    This update for cracklib fixes the following issues:


    Advisory IDSUSE-RU-2020:2083-1
    ReleasedThu Jul 30 10:27:59 2020
    SummaryRecommended update for diffutils
    Typerecommended
    Severitymoderate
    References1156913
    Description:

    This update for diffutils fixes the following issue:


    Advisory IDSUSE-SU-2020:2116-1
    ReleasedTue Aug 4 15:12:41 2020
    SummarySecurity update for libX11
    Typesecurity
    Severityimportant
    References1174628,CVE-2020-14344
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-SU-2020:2143-1
    ReleasedThu Aug 6 11:06:49 2020
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1174157,CVE-2020-14556,CVE-2020-14562,CVE-2020-14573,CVE-2020-14577,CVE-2020-14581,CVE-2020-14583,CVE-2020-14593,CVE-2020-14621
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-SU-2020:2197-1
    ReleasedTue Aug 11 13:32:49 2020
    SummarySecurity update for libX11
    Typesecurity
    Severityimportant
    References1174628,CVE-2020-14344
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-SU-2020:2474-1
    ReleasedThu Sep 3 12:10:29 2020
    SummarySecurity update for libX11
    Typesecurity
    Severitymoderate
    References1175239,CVE-2020-14363
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-SU-2020:2947-1
    ReleasedFri Oct 16 15:23:07 2020
    SummarySecurity update for gcc10, nvptx-tools
    Typesecurity
    Severitymoderate
    References1172798,1172846,1173972,1174753,1174817,1175168,CVE-2020-13844
    Description:

    This update for gcc10, nvptx-tools fixes the following issues:
    This update provides the GCC10 compiler suite and runtime libraries.
    The base SUSE Linux Enterprise libraries libgcc_s1, libstdc++6 are replaced by the gcc10 variants.
    The new compiler variants are available with '-10' suffix, you can specify them via:
    CC=gcc-10 CXX=g++-10
    or similar commands.
    For a detailed changelog check out https://gcc.gnu.org/gcc-10/changes.html
    Changes in nvptx-tools:


    Advisory IDSUSE-RU-2020:2983-1
    ReleasedWed Oct 21 15:03:03 2020
    SummaryRecommended update for file
    Typerecommended
    Severitymoderate
    References1176123
    Description:

    This update for file fixes the following issues:


    Advisory IDSUSE-SU-2020:2995-1
    ReleasedThu Oct 22 10:03:09 2020
    SummarySecurity update for freetype2
    Typesecurity
    Severityimportant
    References1177914,CVE-2020-15999
    Description:

    This update for freetype2 fixes the following issues:


    Advisory IDSUSE-SU-2020:3091-1
    ReleasedThu Oct 29 16:35:37 2020
    SummarySecurity update for MozillaThunderbird and mozilla-nspr
    Typesecurity
    Severityimportant
    References1174230,1176384,1176756,1176899,1177977,CVE-2020-15673,CVE-2020-15676,CVE-2020-15677,CVE-2020-15678,CVE-2020-15683,CVE-2020-15969
    Description:

    This update for MozillaThunderbird and mozilla-nspr fixes the following issues:



    Advisory IDSUSE-RU-2020:3099-1
    ReleasedThu Oct 29 19:33:41 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-RU-2020:3123-1
    ReleasedTue Nov 3 09:48:13 2020
    SummaryRecommended update for timezone
    Typerecommended
    Severityimportant
    References1177460,1178346,1178350,1178353
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-SU-2020:3359-1
    ReleasedTue Nov 17 13:18:30 2020
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severitymoderate
    References1177943,CVE-2020-14779,CVE-2020-14781,CVE-2020-14782,CVE-2020-14792,CVE-2020-14796,CVE-2020-14797,CVE-2020-14798,CVE-2020-14803
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2020:3462-1
    ReleasedFri Nov 20 13:14:35 2020
    SummaryRecommended update for pam and sudo
    Typerecommended
    Severitymoderate
    References1174593,1177858,1178727
    Description:

    This update for pam and sudo fixes the following issue:
    pam:


    sudo:


    Advisory IDSUSE-RU-2020:3620-1
    ReleasedThu Dec 3 17:03:55 2020
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2020:3791-1
    ReleasedMon Dec 14 17:39:19 2020
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for gzip fixes the following issue:


    Advisory IDSUSE-RU-2020:3942-1
    ReleasedTue Dec 29 12:22:01 2020
    SummaryRecommended update for libidn2
    Typerecommended
    Severitymoderate
    References1180138
    Description:

    This update for libidn2 fixes the following issues:


    Advisory IDSUSE-RU-2021:179-1
    ReleasedWed Jan 20 13:38:51 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:





    Advisory IDSUSE-RU-2021:220-1
    ReleasedTue Jan 26 14:00:51 2021
    SummaryRecommended update for keyutils
    Typerecommended
    Severitymoderate
    References1180603
    Description:

    This update for keyutils fixes the following issues:


    Advisory IDSUSE-RU-2021:293-1
    ReleasedWed Feb 3 12:52:34 2021
    SummaryRecommended update for gmp
    Typerecommended
    Severitymoderate
    References1180603
    Description:

    This update for gmp fixes the following issues:


    Advisory IDSUSE-RU-2021:301-1
    ReleasedThu Feb 4 08:46:27 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:



    Advisory IDSUSE-OU-2021:339-1
    ReleasedMon Feb 8 13:16:07 2021
    SummaryOptional update for pam
    Typeoptional
    Severitylow
    References
    Description:

    This update for pam fixes the following issues:


    This patch is optional to be installed - it doesn't fix any bugs.


    Advisory IDSUSE-SU-2021:352-1
    ReleasedTue Feb 9 15:02:05 2021
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1181239
    Description:

    This update for java-11-openjdk fixes the following issues:
    java-11-openjdk was upgraded to include January 2021 CPU (bsc#1181239)


    Advisory IDSUSE-RU-2021:761-1
    ReleasedWed Mar 10 12:26:54 2021
    SummaryRecommended update for libX11
    Typerecommended
    Severitymoderate
    References1181963
    Description:

    This update for libX11 fixes the following issues:
    - Fixes a race condition in 'libX11' that causes various applications to crash randomly. (bsc#1181963)


    Advisory IDSUSE-RU-2021:924-1
    ReleasedTue Mar 23 10:00:49 2021
    SummaryRecommended update for filesystem
    Typerecommended
    Severitymoderate
    References1078466,1146705,1175519,1178775,1180020,1180083,1180596,1181011,1181831,1183094
    Description:

    This update for filesystem the following issues:


    This update for systemd fixes the following issues:


    Advisory IDSUSE-SU-2021:930-1
    ReleasedWed Mar 24 12:09:23 2021
    SummarySecurity update for nghttp2
    Typesecurity
    Severityimportant
    References1172442,1181358,CVE-2020-11080
    Description:

    This update for nghttp2 fixes the following issues:


    Advisory IDSUSE-SU-2021:974-1
    ReleasedMon Mar 29 19:31:27 2021
    SummarySecurity update for tar
    Typesecurity
    Severitylow
    References1181131,CVE-2021-20193
    Description:

    This update for tar fixes the following issues:
    CVE-2021-20193: Memory leak in read_header() in list.c (bsc#1181131)


    Advisory IDSUSE-SU-2021:1007-1
    ReleasedThu Apr 1 17:47:20 2021
    SummarySecurity update for MozillaFirefox
    Typesecurity
    Severityimportant
    References1183942,CVE-2021-23981,CVE-2021-23982,CVE-2021-23984,CVE-2021-23987
    Description:

    This update for MozillaFirefox fixes the following issues:


    Advisory IDSUSE-RU-2021:1018-1
    ReleasedTue Apr 6 14:29:13 2021
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References1180713
    Description:

    This update for gzip fixes the following issues:


    Advisory IDSUSE-RU-2021:1289-1
    ReleasedWed Apr 21 14:02:46 2021
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References1177047
    Description:

    This update for gzip fixes the following issues:


    Advisory IDSUSE-SU-2021:1409-1
    ReleasedWed Apr 28 16:32:50 2021
    SummarySecurity update for giflib
    Typesecurity
    Severitylow
    References1184123
    Description:

    This update for giflib fixes the following issues:


    Advisory IDSUSE-SU-2021:1554-1
    ReleasedTue May 11 09:43:41 2021
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1184606,1185055,1185056,CVE-2021-2161,CVE-2021-2163
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2021:1643-1
    ReleasedWed May 19 13:51:48 2021
    SummaryRecommended update for pam
    Typerecommended
    Severityimportant
    References1181443,1184358,1185562
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2021:1765-1
    ReleasedWed May 26 12:36:38 2021
    SummarySecurity update for libX11
    Typesecurity
    Severitymoderate
    References1182506,CVE-2021-31535
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-RU-2021:1861-1
    ReleasedFri Jun 4 09:59:40 2021
    SummaryRecommended update for gcc10
    Typerecommended
    Severitymoderate
    References1029961,1106014,1178577,1178624,1178675,1182016
    Description:

    This update for gcc10 fixes the following issues:


    Advisory IDSUSE-SU-2021:1897-1
    ReleasedTue Jun 8 16:15:17 2021
    SummarySecurity update for libX11
    Typesecurity
    Severityimportant
    References1186643,CVE-2021-31535
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-RU-2021:1935-1
    ReleasedThu Jun 10 10:45:09 2021
    SummaryRecommended update for gzip
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for gzip fixes the following issue:


    Advisory IDSUSE-RU-2021:1937-1
    ReleasedThu Jun 10 10:47:09 2021
    SummaryRecommended update for nghttp2
    Typerecommended
    Severitymoderate
    References1186642
    Description:


    This update for nghttp2 fixes the following issue:


    Advisory IDSUSE-RU-2021:2173-1
    ReleasedMon Jun 28 14:59:45 2021
    SummaryRecommended update for automake
    Typerecommended
    Severitymoderate
    References1040589,1047218,1182604,1185540,1186049
    Description:

    This update for automake fixes the following issues:


    This update for pcre fixes the following issues:

    This update for brp-check-suse fixes the following issues:


    Advisory IDSUSE-RU-2021:2193-1
    ReleasedMon Jun 28 18:38:43 2021
    SummaryRecommended update for tar
    Typerecommended
    Severitymoderate
    References1184124
    Description:

    This update for tar fixes the following issues:


    Advisory IDSUSE-SU-2021:2196-1
    ReleasedTue Jun 29 09:41:39 2021
    SummarySecurity update for lua53
    Typesecurity
    Severitymoderate
    References1175448,1175449,CVE-2020-24370,CVE-2020-24371
    Description:

    This update for lua53 fixes the following issues:
    Update to version 5.3.6:


    Advisory IDSUSE-SU-2021:2320-1
    ReleasedWed Jul 14 17:01:06 2021
    SummarySecurity update for sqlite3
    Typesecurity
    Severityimportant
    References1157818,1158812,1158958,1158959,1158960,1159491,1159715,1159847,1159850,1160309,1160438,1160439,1164719,1172091,1172115,1172234,1172236,1172240,1173641,928700,928701,CVE-2015-3414,CVE-2015-3415,CVE-2019-19244,CVE-2019-19317,CVE-2019-19603,CVE-2019-19645,CVE-2019-19646,CVE-2019-19880,CVE-2019-19923,CVE-2019-19924,CVE-2019-19925,CVE-2019-19926,CVE-2019-19959,CVE-2019-20218,CVE-2020-13434,CVE-2020-13435,CVE-2020-13630,CVE-2020-13631,CVE-2020-13632,CVE-2020-15358,CVE-2020-9327
    Description:

    This update for sqlite3 fixes the following issues:


    Advisory IDSUSE-RU-2021:2573-1
    ReleasedThu Jul 29 14:21:52 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1188127
    Description:

    This update for timezone fixes the following issue:

    the IANA time zone database package, in addition to 'zone1970.tab', as before. This makes sure time zone aliases are now correctly supported. This update adds the 'tzdata.zi' file (bsc#1188127).


    Advisory IDSUSE-SU-2021:2682-1
    ReleasedThu Aug 12 20:06:19 2021
    SummarySecurity update for rpm
    Typesecurity
    Severityimportant
    References1179416,1181805,1183543,1183545,CVE-2021-20266,CVE-2021-20271,CVE-2021-3421
    Description:

    This update for rpm fixes the following issues:


    Security fixes:



    Advisory IDSUSE-SU-2021:2952-1
    ReleasedFri Sep 3 14:38:44 2021
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1185476,1188564,1188565,1188566,CVE-2021-2341,CVE-2021-2369,CVE-2021-2388
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2021:3115-1
    ReleasedThu Sep 16 14:04:26 2021
    SummaryRecommended update for mozilla-nspr, mozilla-nss
    Typerecommended
    Severitymoderate
    References1029961,1174697,1176206,1176934,1179382,1188891,CVE-2020-12400,CVE-2020-12401,CVE-2020-12403,CVE-2020-25648,CVE-2020-6829
    Description:

    This update for mozilla-nspr fixes the following issues:
    mozilla-nspr was updated to version 4.32:



    Mozilla NSS was updated to version 3.68:

    update to NSS 3.67

    update to NSS 3.66

    update to NSS 3.65

    update to NSS 3.64
    disable_crypto_vsx.
  • bmo#1698320 - replace __builtin_cpu_supports('vsx') with
  • ppc_crypto_support() for clang.
  • bmo#1613235 - Add POWER ChaCha20 stream cipher vector
  • acceleration.
    Fixed in 3.63
    initialization to prevent build isses with GCC 4.8.
  • bmo#1683520 - [lib/freebl/ecl] P-384: allow zero scalars in dual
  • scalar multiplication.
  • bmo#1683520 - ECCKiila P521, change syntax of nested structs
  • initialization to prevent build isses with GCC 4.8.
  • bmo#1683520 - [lib/freebl/ecl] P-521: allow zero scalars in dual
  • scalar multiplication.
  • bmo#1696800 - HACL* update March 2021 - c95ab70fcb2bc21025d8845281bc4bc8987ca683.
  • bmo#1694214 - tstclnt can't enable middlebox compat mode.
  • bmo#1694392 - NSS does not work with PKCS #11 modules not supporting
  • profiles.
  • bmo#1685880 - Minor fix to prevent unused variable on early return.
  • bmo#1685880 - Fix for the gcc compiler version 7 to support setenv
  • with nss build.
  • bmo#1693217 - Increase nssckbi.h version number for March 2021 batch
  • of root CA changes, CA list version 2.48.
  • bmo#1692094 - Set email distrust after to 21-03-01 for Camerfirma's
  • 'Chambers of Commerce' and 'Global Chambersign' roots.
  • bmo#1618407 - Symantec root certs - Set CKA_NSS_EMAIL_DISTRUST_AFTER.
  • bmo#1693173 - Add GlobalSign R45, E45, R46, and E46 root certs to NSS.
  • bmo#1683738 - Add AC RAIZ FNMT-RCM SERVIDORES SEGUROS root cert to NSS.
  • bmo#1686854 - Remove GeoTrust PCA-G2 and VeriSign Universal root certs
  • from NSS.
  • bmo#1687822 - Turn off Websites trust bit for the “Staat der
  • Nederlanden Root CA - G3†root cert in NSS.
  • bmo#1692094 - Turn off Websites Trust Bit for 'Chambers of Commerce
  • Root - 2008' and 'Global Chambersign Root - 2008’.
  • bmo#1694291 - Tracing fixes for ECH.

  • update to NSS 3.62
    can corrupt 'cachedCertTable'
  • bmo#1690583 - Fix CH padding extension size calculation
  • bmo#1690421 - Adjust 3.62 ABI report formatting for new libabigail
  • bmo#1690421 - Install packaged libabigail in docker-builds image
  • bmo#1689228 - Minor ECH -09 fixes for interop testing, fuzzing
  • bmo#1674819 - Fixup a51fae403328, enum type may be signed
  • bmo#1681585 - Add ECH support to selfserv
  • bmo#1681585 - Update ECH to Draft-09
  • bmo#1678398 - Add Export/Import functions for HPKE context
  • bmo#1678398 - Update HPKE to draft-07

  • update to NSS 3.61
    values under certain conditions.
  • bmo#1684300 - Fix default PBE iteration count when NSS is compiled
  • with NSS_DISABLE_DBM.
  • bmo#1651411 - Improve constant-timeness in RSA operations.
  • bmo#1677207 - Upgrade Google Test version to latest release.
  • bmo#1654332 - Add aarch64-make target to nss-try.

  • Update to NSS 3.60.1:
    Notable changes in NSS 3.60:
    Update to NSS 3.59.1:
    PKCS11 modules
    Update to NSS 3.59:
    Notable changes:

    Bugfixes
    root certs when SHA1 signatures are disabled.
  • bmo#1644209 - Fix broken SelectedCipherSuiteReplacer filter to
  • solve some test intermittents
  • bmo#1672703 - Tolerate the first CCS in TLS 1.3 to fix a regression in
  • our CVE-2020-25648 fix that broke purple-discord (boo#1179382)
  • bmo#1666891 - Support key wrap/unwrap with RSA-OAEP
  • bmo#1667989 - Fix gyp linking on Solaris
  • bmo#1668123 - Export CERT_AddCertToListHeadWithData and
  • CERT_AddCertToListTailWithData from libnss
  • bmo#1634584 - Set CKA_NSS_SERVER_DISTRUST_AFTER for Trustis FPS Root CA
  • bmo#1663091 - Remove unnecessary assertions in the streaming
  • ASN.1 decoder that affected decoding certain PKCS8 private keys when using NSS debug builds
  • bmo#670839 - Use ARM crypto extension for AES, SHA1 and SHA2 on MacOS.

  • update to NSS 3.58
    Bugs fixed:

    update to NSS 3.57

    update to NSS 3.56
    Notable changes
    detection.
  • bmo#1652729 - Add build flag to disable RC2 and relocate to
  • lib/freebl/deprecated.
  • bmo#1656429 - Correct RTT estimate used in 0-RTT anti-replay.
  • bmo#1588941 - Send empty certificate message when scheme selection
  • fails.
  • bmo#1652032 - Fix failure to build in Windows arm64 makefile
  • cross-compilation.
  • bmo#1625791 - Fix deadlock issue in nssSlot_IsTokenPresent.
  • bmo#1653975 - Fix 3.53 regression by setting 'all' as the default
  • makefile target.
  • bmo#1659792 - Fix broken libpkix tests with unexpired PayPal cert.
  • bmo#1659814 - Fix interop.sh failures with newer tls-interop
  • commit and dependencies.
  • bmo#1656519 - NSPR dependency updated to 4.28

  • update to NSS 3.55
    Notable changes
    Relevant Bugfixes

    update to NSS 3.54
    Notable changes


    Bugs fixed
    Root Certification Authority; C=TW' root.
  • bmo#1645199 - Remove AddTrust root certificates.
  • bmo#1641718 - Remove 'LuxTrust Global Root 2' root certificate.
  • bmo#1639987 - Remove 'Staat der Nederlanden Root CA - G2' root
  • certificate.
  • bmo#1618402 - Remove Symantec root certificates and disable email trust
  • bit.
  • bmo#1640516 - NSS 3.54 should depend on NSPR 4.26.
  • bmo#1642146 - Fix undefined reference to `PORT_ZAlloc_stub' in seed.c.
  • bmo#1642153 - Fix infinite recursion building NSS.
  • bmo#1642638 - Fix fuzzing assertion crash.
  • bmo#1642871 - Enable SSL_SendSessionTicket after resumption.
  • bmo#1643123 - Support SSL_ExportEarlyKeyingMaterial with External PSKs.
  • bmo#1643557 - Fix numerous compile warnings in NSS.
  • bmo#1644774 - SSL gtests to use ClearServerCache when resetting
  • self-encrypt keys.
  • bmo#1645479 - Don't use SECITEM_MakeItem in secutil.c.
  • bmo#1646520 - Stricter enforcement of ASN.1 INTEGER encoding.

  • Advisory IDSUSE-RU-2021:3171-1
    ReleasedMon Sep 20 17:26:34 2021
    SummaryRecommended update for java-11-openjdk
    Typerecommended
    Severityimportant
    References1189201,1190252
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2021:3182-1
    ReleasedTue Sep 21 17:04:26 2021
    SummaryRecommended update for file
    Typerecommended
    Severitymoderate
    References1189996
    Description:

    This update for file fixes the following issues:


    Advisory IDSUSE-SU-2021:3291-1
    ReleasedWed Oct 6 16:45:36 2021
    SummarySecurity update for glibc
    Typesecurity
    Severitymoderate
    References1186489,1187911,CVE-2021-33574,CVE-2021-35942
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-SU-2021:3445-1
    ReleasedFri Oct 15 09:03:39 2021
    SummarySecurity update for rpm
    Typesecurity
    Severityimportant
    References1183659,1185299,1187670,1188548
    Description:

    This update for rpm fixes the following issues:
    Security issues fixed:


    Maintaince issues fixed:


    Advisory IDSUSE-SU-2021:3490-1
    ReleasedWed Oct 20 16:31:55 2021
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1190793,CVE-2021-39537
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2021:3494-1
    ReleasedWed Oct 20 16:48:46 2021
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1190052
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2021:3510-1
    ReleasedTue Oct 26 11:22:15 2021
    SummaryRecommended update for pam
    Typerecommended
    Severityimportant
    References1191987
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2021:3529-1
    ReleasedWed Oct 27 09:23:32 2021
    SummarySecurity update for pcre
    Typesecurity
    Severitymoderate
    References1172973,1172974,CVE-2019-20838,CVE-2020-14155
    Description:

    This update for pcre fixes the following issues:
    Update pcre to version 8.45:


    Advisory IDSUSE-SU-2021:3671-1
    ReleasedTue Nov 16 14:48:10 2021
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1191901,1191903,1191904,1191906,1191909,1191910,1191911,1191912,1191913,1191914,CVE-2021-35550,CVE-2021-35556,CVE-2021-35559,CVE-2021-35561,CVE-2021-35564,CVE-2021-35565,CVE-2021-35567,CVE-2021-35578,CVE-2021-35586,CVE-2021-35603
    Description:

    This update for java-11-openjdk fixes the following issues:
    Update to 11.0.13+8 (October 2021 CPU)


    Advisory IDSUSE-RU-2021:3799-1
    ReleasedWed Nov 24 18:07:54 2021
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1187153,1187273,1188623
    Description:

    This update for gcc11 fixes the following issues:
    The additional GNU compiler collection GCC 11 is provided:
    To select these compilers install the packages:


    to select them for building:

    The compiler baselibraries (libgcc_s1, libstdc++6 and others) are being replaced by the GCC 11 variants.


    Advisory IDSUSE-RU-2021:3872-1
    ReleasedThu Dec 2 07:25:55 2021
    SummaryRecommended update for cracklib
    Typerecommended
    Severitymoderate
    References1191736
    Description:

    This update for cracklib fixes the following issues:


    Advisory IDSUSE-RU-2021:3883-1
    ReleasedThu Dec 2 11:47:07 2021
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:
    Update timezone to 2021e (bsc#1177460)


    Advisory IDSUSE-RU-2021:3891-1
    ReleasedFri Dec 3 10:21:49 2021
    SummaryRecommended update for keyutils
    Typerecommended
    Severitymoderate
    References1029961,1113013,1187654
    Description:

    This update for keyutils fixes the following issues:


    keyutils was updated to 1.6.3 (jsc#SLE-20016):

    Updated to 1.6:

    Updated to 1.5.11 (bsc#1113013)


    Advisory IDSUSE-SU-2021:3942-1
    ReleasedMon Dec 6 14:46:05 2021
    SummarySecurity update for brotli
    Typesecurity
    Severitymoderate
    References1175825,CVE-2020-8927
    Description:

    This update for brotli fixes the following issues:


    Advisory IDSUSE-SU-2021:3946-1
    ReleasedMon Dec 6 14:57:42 2021
    SummarySecurity update for gmp
    Typesecurity
    Severitymoderate
    References1192717,CVE-2021-43618
    Description:

    This update for gmp fixes the following issues:


    Advisory IDSUSE-RU-2021:3980-1
    ReleasedThu Dec 9 16:42:19 2021
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1191592
    Description:


    glibc was updated to fix the following issue:


    Advisory IDSUSE-RU-2022:12-1
    ReleasedMon Jan 3 15:36:04 2022
    SummaryRecommended update for cairo, jbigkit, libjpeg-turbo, libwebp, libxcb, openjpeg2, pixman, poppler, tiff
    Typerecommended
    Severitymoderate
    References
    Description:

    This recommended update for cairo, jbigkit, libjpeg-turbo, libwebp, libxcb, openjpeg2, pixman, poppler, tiff provides the following fix:


    Advisory IDSUSE-RU-2022:96-1
    ReleasedTue Jan 18 05:14:44 2022
    SummaryRecommended update for rpm
    Typerecommended
    Severityimportant
    References1180125,1190824,1193711
    Description:

    This update for rpm fixes the following issues:


    Advisory IDSUSE-RU-2022:143-1
    ReleasedThu Jan 20 14:32:30 2022
    SummaryRecommended update for java-11-openjdk
    Typerecommended
    Severitymoderate
    References1193314
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2022:207-1
    ReleasedThu Jan 27 09:24:49 2022
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-SU-2022:330-1
    ReleasedFri Feb 4 09:29:08 2022
    SummarySecurity update for glibc
    Typesecurity
    Severityimportant
    References1194640,1194768,1194770,1194785,CVE-2021-3999,CVE-2022-23218,CVE-2022-23219
    Description:


    This update for glibc fixes the following issues:


    Features added:


    Advisory IDSUSE-RU-2022:520-1
    ReleasedFri Feb 18 12:45:19 2022
    SummaryRecommended update for rpm
    Typerecommended
    Severitymoderate
    References1194968
    Description:

    This update for rpm fixes the following issues:


    Advisory IDSUSE-RU-2022:692-1
    ReleasedThu Mar 3 15:46:47 2022
    SummaryRecommended update for filesystem
    Typerecommended
    Severitymoderate
    References1190447
    Description:

    This update for filesystem fixes the following issues:


    Advisory IDSUSE-RU-2022:789-1
    ReleasedThu Mar 10 11:22:05 2022
    SummaryRecommended update for update-alternatives
    Typerecommended
    Severitymoderate
    References1195654
    Description:

    This update for update-alternatives fixes the following issues:


    Advisory IDSUSE-SU-2022:816-1
    ReleasedMon Mar 14 10:22:04 2022
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severitymoderate
    References1194925,1194926,1194927,1194928,1194929,1194930,1194931,1194932,1194933,1194934,1194935,1194937,1194939,1194940,1194941,CVE-2022-21248,CVE-2022-21277,CVE-2022-21282,CVE-2022-21283,CVE-2022-21291,CVE-2022-21293,CVE-2022-21294,CVE-2022-21296,CVE-2022-21299,CVE-2022-21305,CVE-2022-21340,CVE-2022-21341,CVE-2022-21360,CVE-2022-21365,CVE-2022-21366
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2022:861-1
    ReleasedTue Mar 15 23:31:21 2022
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1182959,1195149,1195792,1195856
    Description:

    This update for openssl-1_1 fixes the following issues:
    openssl-1_1:

    glibc:
    linux-glibc-devel:

    libxcrypt:

    zlib:


    Advisory IDSUSE-RU-2022:936-1
    ReleasedTue Mar 22 18:10:17 2022
    SummaryRecommended update for filesystem and systemd-rpm-macros
    Typerecommended
    Severitymoderate
    References1196275,1196406
    Description:

    This update for filesystem and systemd-rpm-macros fixes the following issues:
    filesystem:


    systemd-rpm-macros:


    Advisory IDSUSE-RU-2022:1033-1
    ReleasedTue Mar 29 18:42:05 2022
    SummaryRecommended update for java-11-openjdk
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-RU-2022:1047-1
    ReleasedWed Mar 30 16:20:56 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1196093,1197024
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2022:1118-1
    ReleasedTue Apr 5 18:34:06 2022
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-SU-2022:1158-1
    ReleasedTue Apr 12 14:44:43 2022
    SummarySecurity update for xz
    Typesecurity
    Severityimportant
    References1198062,CVE-2022-1271
    Description:

    This update for xz fixes the following issues:


    Advisory IDSUSE-RU-2022:1281-1
    ReleasedWed Apr 20 12:26:38 2022
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1196647
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2022:1374-1
    ReleasedMon Apr 25 15:02:13 2022
    SummaryRecommended update for openldap2
    Typerecommended
    Severitymoderate
    References1191157,1197004
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-RU-2022:1409-1
    ReleasedTue Apr 26 12:54:57 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1195628,1196107
    Description:

    This update for gcc11 fixes the following issues:


    Advisory IDSUSE-RU-2022:1451-1
    ReleasedThu Apr 28 10:47:22 2022
    SummaryRecommended update for perl
    Typerecommended
    Severitymoderate
    References1193489
    Description:

    This update for perl fixes the following issues:


    Advisory IDSUSE-SU-2022:1513-1
    ReleasedTue May 3 16:13:25 2022
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1198671,1198672,1198673,1198674,1198675,CVE-2022-21426,CVE-2022-21434,CVE-2022-21443,CVE-2022-21476,CVE-2022-21496
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-SU-2022:1548-1
    ReleasedThu May 5 16:45:28 2022
    SummarySecurity update for tar
    Typesecurity
    Severitymoderate
    References1029961,1120610,1130496,1181131,CVE-2018-20482,CVE-2019-9923,CVE-2021-20193
    Description:

    This update for tar fixes the following issues:







    Advisory IDSUSE-SU-2022:1565-1
    ReleasedFri May 6 17:09:36 2022
    SummarySecurity update for giflib
    Typesecurity
    Severitymoderate
    References1094832,1146299,1184123,974847,CVE-2016-3977,CVE-2018-11490,CVE-2019-15133
    Description:

    This update for giflib fixes the following issues:

    Update to version 5.2.1 * In gifbuild.c, avoid a core dump on no color map. * Restore inadvertently removed library version numbers in Makefile. Changes in version 5.2.0 * The undocumented and deprecated GifQuantizeBuffer() entry point has been moved to the util library to reduce libgif size and attack surface. Applications needing this function are couraged to link the util library or make their own copy. * The following obsolete utility programs are no longer installed: gifecho, giffilter, gifinto, gifsponge. These were either installed in error or have been obsolesced by modern image-transformmation tools like ImageMagick convert. They may be removed entirely in a future release. * Address SourceForge issue #136: Stack-buffer-overflow in gifcolor.c:84 * Address SF bug #134: Giflib fails to slurp significant number of gifs * Apply SPDX convention for license tagging. Changes in version 5.1.9 * The documentation directory now includes an HTMlified version of the GIF89 standard, and a more detailed description of how LZW compression is applied to GIFs. * Address SF bug #129: The latest version of giflib cannot be build on windows. * Address SF bug #126: Cannot compile giflib using c89 Changes in version 5.1.8 * Address SF bug #119: MemorySanitizer: FPE on unknown address (CVE-2019-15133 bsc#1146299) * Address SF bug #125: 5.1.7: xmlto is still required for tarball * Address SF bug #124: 5.1.7: ar invocation is not crosscompile compatible * Address SF bug #122: 5.1.7 installs manpages to wrong directory * Address SF bug #121: make: getversion: Command not found * Address SF bug #120: 5.1.7 does not build a proper library - no Changes in version 5.1.7 * Correct a minor packaging error (superfluous symlinks) in the 5.1.6 tarballs. Changes in version 5.1.6 * Fix library installation in the Makefile. Changes in version 5.1.5 * Fix SF bug #114: Null dereferences in main() of gifclrmp * Fix SF bug #113: Heap Buffer Overflow-2 in function DGifDecompressLine() in cgif.c. This had been assigned (CVE-2018-11490 bsc#1094832). * Fix SF bug #111: segmentation fault in PrintCodeBlock * Fix SF bug #109: Segmentation fault of giftool reading a crafted file * Fix SF bug #107: Floating point exception in giftext utility * Fix SF bug #105: heap buffer overflow in DumpScreen2RGB in gif2rgb.c:317 * Fix SF bug #104: Ineffective bounds check in DGifSlurp * Fix SF bug #103: GIFLIB 5.1.4: DGifSlurp fails on empty comment * Fix SF bug #87: Heap buffer overflow in 5.1.2 (gif2rgb). (CVE-2016-3977 bsc#974847) * The horrible old autoconf build system has been removed with extreme prejudice. You now build this simply by running 'make' from the top-level directory.
    The following non-security bugs were fixed:


    Advisory IDSUSE-SU-2022:1617-1
    ReleasedTue May 10 14:40:12 2022
    SummarySecurity update for gzip
    Typesecurity
    Severityimportant
    References1198062,1198922,CVE-2022-1271
    Description:

    This update for gzip fixes the following issues:


    Advisory IDSUSE-RU-2022:1655-1
    ReleasedFri May 13 15:36:10 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1197794
    Description:

    This update for pam fixes the following issue:


    Advisory IDSUSE-RU-2022:1658-1
    ReleasedFri May 13 15:40:20 2022
    SummaryRecommended update for libpsl
    Typerecommended
    Severityimportant
    References1197771
    Description:

    This update for libpsl fixes the following issues:


    Advisory IDSUSE-SU-2022:1670-1
    ReleasedMon May 16 10:06:30 2022
    SummarySecurity update for openldap2
    Typesecurity
    Severityimportant
    References1199240,CVE-2022-29155
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-SU-2022:1718-1
    ReleasedTue May 17 17:44:43 2022
    SummarySecurity update for e2fsprogs
    Typesecurity
    Severityimportant
    References1198446,CVE-2022-1304
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-RU-2022:1887-1
    ReleasedTue May 31 09:24:18 2022
    SummaryRecommended update for grep
    Typerecommended
    Severitymoderate
    References1040589
    Description:

    This update for grep fixes the following issues:


    Advisory IDSUSE-RU-2022:1899-1
    ReleasedWed Jun 1 10:43:22 2022
    SummaryRecommended update for libtirpc
    Typerecommended
    Severityimportant
    References1198176
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2022:1909-1
    ReleasedWed Jun 1 16:25:35 2022
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1198751
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-RU-2022:2019-1
    ReleasedWed Jun 8 16:50:07 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1192951,1193659,1195283,1196861,1197065
    Description:

    This update for gcc11 fixes the following issues:
    Update to the GCC 11.3.0 release.


    Advisory IDSUSE-SU-2022:2294-1
    ReleasedWed Jul 6 13:34:15 2022
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1196025,1196026,1196168,1196169,1196171,1196784,CVE-2022-25235,CVE-2022-25236,CVE-2022-25313,CVE-2022-25314,CVE-2022-25315
    Description:

    This update for expat fixes the following issues:


    Advisory IDSUSE-SU-2022:2305-1
    ReleasedWed Jul 6 13:38:42 2022
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1200734,1200735,1200736,1200737,CVE-2022-32205,CVE-2022-32206,CVE-2022-32207,CVE-2022-32208
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-SU-2022:2361-1
    ReleasedTue Jul 12 12:05:01 2022
    SummarySecurity update for pcre
    Typesecurity
    Severityimportant
    References1199232,CVE-2022-1586
    Description:

    This update for pcre fixes the following issues:


    Advisory IDSUSE-RU-2022:2406-1
    ReleasedFri Jul 15 11:49:01 2022
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1197718,1199140,1200334,1200855
    Description:

    This update for glibc fixes the following issues:


    This readds the s390 32bit glibc and libcrypt1 libraries (glibc-32bit, glibc-locale-base-32bit, libcrypt1-32bit).


    Advisory IDSUSE-RU-2022:2469-1
    ReleasedThu Jul 21 04:38:31 2022
    SummaryRecommended update for systemd
    Typerecommended
    Severityimportant
    References1137373,1181658,1194708,1195157,1197570,1198732,1200170,1201276
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2022:2493-1
    ReleasedThu Jul 21 14:35:08 2022
    SummaryRecommended update for rpm-config-SUSE
    Typerecommended
    Severitymoderate
    References1193282
    Description:

    This update for rpm-config-SUSE fixes the following issues:


    Advisory IDSUSE-RU-2022:2494-1
    ReleasedThu Jul 21 15:16:42 2022
    SummaryRecommended update for glibc
    Typerecommended
    Severityimportant
    References1200855,1201560,1201640
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-SU-2022:2533-1
    ReleasedFri Jul 22 17:37:15 2022
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1192079,1192080,1192086,1192087,1192228,1198486,1200027,CVE-2022-31741
    Description:

    This update for mozilla-nss fixes the following issues:
    Various FIPS 140-3 related fixes were backported from SUSE Linux Enterprise 15 SP4:


    Version update to NSS 3.79:

    Version update to NSS 3.78.1:

    Version update to NSS 3.78:

    Version update to NSS 3.77:

    Version update to NSS 3.76.1

    Version update to NSS 3.75

    Version update to NSS 3.74


    Version update to NSS 3.73.1:

    Version update to NSS 3.73

    Fixed MFSA 2021-51 (bsc#1193170) CVE-2021-43527: Memory corruption via DER-encoded DSA and RSA-PSS signatures
    Version update to NSS 3.72

    Version update to NSS 3.71

    Version update to NSS 3.70

    Version update to NSS 3.69.1:

    NSS 3.69:

    Version Update to 3.68.4 (bsc#1200027)


    Mozilla NSPR was updated to version 4.34:


    Advisory IDSUSE-SU-2022:2595-1
    ReleasedFri Jul 29 16:00:42 2022
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1192079,1192080,1192086,1192087,1192228,1198486,1200027,CVE-2022-31741
    Description:

    This update for mozilla-nss fixes the following issues:
    Various FIPS 140-3 related fixes were backported from SUSE Linux Enterprise 15 SP4:


    Version update to NSS 3.79:

    Version update to NSS 3.78.1:

    Version update to NSS 3.78:

    Version update to NSS 3.77:

    Version update to NSS 3.76.1

    Version update to NSS 3.75

    Version update to NSS 3.74


    Version update to NSS 3.73.1:

    Version update to NSS 3.73

    Fixed MFSA 2021-51 (bsc#1193170) CVE-2021-43527: Memory corruption via DER-encoded DSA and RSA-PSS signatures
    Version update to NSS 3.72

    Version update to NSS 3.71

    Version update to NSS 3.70

    Version update to NSS 3.69.1:

    NSS 3.69:

    Version Update to 3.68.4 (bsc#1200027)


    Advisory IDSUSE-SU-2022:2632-1
    ReleasedWed Aug 3 09:51:00 2022
    SummarySecurity update for permissions
    Typesecurity
    Severityimportant
    References1198720,1200747,1201385
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-SU-2022:2664-1
    ReleasedThu Aug 4 09:22:06 2022
    SummarySecurity update for harfbuzz
    Typesecurity
    Severityimportant
    References1200900,CVE-2022-33068
    Description:

    This update for harfbuzz fixes the following issues:


    Advisory IDSUSE-SU-2022:2707-1
    ReleasedTue Aug 9 10:18:18 2022
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1201684,1201692,1201694,CVE-2022-21540,CVE-2022-21541,CVE-2022-34169
    Description:

    This update for java-11-openjdk fixes the following issues:
    Update to upstream tag jdk-11.0.16+8 (July 2022 CPU)


    Advisory IDSUSE-SU-2022:2717-1
    ReleasedTue Aug 9 12:54:16 2022
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1198627,CVE-2022-29458
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2022:2735-1
    ReleasedWed Aug 10 04:31:41 2022
    SummaryRecommended update for tar
    Typerecommended
    Severitymoderate
    References1200657
    Description:

    This update for tar fixes the following issues:


    Advisory IDSUSE-RU-2022:2796-1
    ReleasedFri Aug 12 14:34:31 2022
    SummaryRecommended update for jitterentropy
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for jitterentropy fixes the following issues:
    jitterentropy is included in version 3.4.0 (jsc#SLE-24941):
    This is a FIPS 140-3 / NIST 800-90b compliant userspace jitter entropy generator library, used by other FIPS libraries.


    Advisory IDSUSE-RU-2022:2844-1
    ReleasedThu Aug 18 14:41:25 2022
    SummaryRecommended update for tar
    Typerecommended
    Severityimportant
    References1202436
    Description:

    This update for tar fixes the following issues:



    Advisory IDSUSE-RU-2022:2901-1
    ReleasedFri Aug 26 03:34:23 2022
    SummaryRecommended update for elfutils
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for elfutils fixes the following issues:


    Advisory IDSUSE-RU-2022:2904-1
    ReleasedFri Aug 26 05:28:34 2022
    SummaryRecommended update for openldap2
    Typerecommended
    Severitymoderate
    References1198341
    Description:

    This update for openldap2 fixes the following issues:


    Advisory IDSUSE-RU-2022:2920-1
    ReleasedFri Aug 26 15:17:02 2022
    SummaryRecommended update for systemd
    Typerecommended
    Severityimportant
    References1195059,1201795
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2022:2929-1
    ReleasedMon Aug 29 11:21:47 2022
    SummaryRecommended update for timezone
    Typerecommended
    Severityimportant
    References1202310
    Description:

    This update for timezone fixes the following issue:


    Advisory IDSUSE-RU-2022:2939-1
    ReleasedMon Aug 29 14:49:17 2022
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1201298,1202645
    Description:

    This update for mozilla-nss fixes the following issues:
    Update to NSS 3.79.1 (bsc#1202645)



    Advisory IDSUSE-RU-2022:2994-1
    ReleasedFri Sep 2 10:44:54 2022
    SummaryRecommended update for lame, libass, libcdio-paranoia, libdc1394, libgsm, libva, libvdpau, libvorbis, libvpx, libwebp, openjpeg, opus, speex, twolame
    Typerecommended
    Severitymoderate
    References1198925
    Description:


    This update for lame, libass, libcdio-paranoia, libdc1394, libgsm, libva, libvdpau, libvorbis, libvpx, libwebp, openjpeg, opus, speex, twolame adds some missing 32bit libraries to some products. (bsc#1198925)
    No codechanges were done in this update.


    Advisory IDSUSE-SU-2022:3003-1
    ReleasedFri Sep 2 15:01:44 2022
    SummarySecurity update for curl
    Typesecurity
    Severitylow
    References1202593,CVE-2022-35252
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2022:3127-1
    ReleasedWed Sep 7 04:36:10 2022
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1198752,1200800
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2022:3215-1
    ReleasedThu Sep 8 15:58:27 2022
    SummaryRecommended update for rpm
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for rpm fixes the following issues:


    Advisory IDSUSE-SU-2022:3252-1
    ReleasedMon Sep 12 09:07:53 2022
    SummarySecurity update for freetype2
    Typesecurity
    Severitymoderate
    References1198823,1198830,1198832,CVE-2022-27404,CVE-2022-27405,CVE-2022-27406
    Description:

    This update for freetype2 fixes the following issues:


    Non-security fixes:


    Advisory IDSUSE-RU-2022:3262-1
    ReleasedTue Sep 13 15:34:29 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1199140
    Description:


    This update for gcc11 ships some missing 32bit libraries for s390x. (bsc#1199140)


    Advisory IDSUSE-SU-2022:3271-1
    ReleasedWed Sep 14 06:45:39 2022
    SummarySecurity update for perl
    Typesecurity
    Severitymoderate
    References1047178,CVE-2017-6512
    Description:

    This update for perl fixes the following issues:


    Advisory IDSUSE-SU-2022:3305-1
    ReleasedMon Sep 19 11:45:57 2022
    SummarySecurity update for libtirpc
    Typesecurity
    Severityimportant
    References1201680,CVE-2021-46828
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-SU-2022:3307-1
    ReleasedMon Sep 19 13:26:51 2022
    SummarySecurity update for sqlite3
    Typesecurity
    Severitymoderate
    References1189802,1195773,1201783,CVE-2021-36690,CVE-2022-35737
    Description:

    This update for sqlite3 fixes the following issues:


    Advisory IDSUSE-RU-2022:3328-1
    ReleasedWed Sep 21 12:48:56 2022
    SummaryRecommended update for jitterentropy
    Typerecommended
    Severitymoderate
    References1202870
    Description:

    This update for jitterentropy fixes the following issues:


    Advisory IDSUSE-SU-2022:3353-1
    ReleasedFri Sep 23 15:23:40 2022
    SummarySecurity update for permissions
    Typesecurity
    Severitymoderate
    References1203018,CVE-2022-31252
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-RU-2022:3452-1
    ReleasedWed Sep 28 12:13:43 2022
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1201942
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-SU-2022:3489-1
    ReleasedSat Oct 1 13:35:24 2022
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1203438,CVE-2022-40674
    Description:

    This update for expat fixes the following issues:


    Advisory IDSUSE-RU-2022:3555-1
    ReleasedMon Oct 10 14:05:12 2022
    SummaryRecommended update for aaa_base
    Typerecommended
    Severityimportant
    References1199492
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2022:3784-1
    ReleasedWed Oct 26 18:03:28 2022
    SummarySecurity update for libtasn1
    Typesecurity
    Severitycritical
    References1204690,CVE-2021-46848
    Description:

    This update for libtasn1 fixes the following issues:


    Advisory IDSUSE-SU-2022:3785-1
    ReleasedWed Oct 26 20:20:19 2022
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1204383,1204386,CVE-2022-32221,CVE-2022-42916
    Description:

    This update for curl fixes the following issues:
    - CVE-2022-32221: Fixed POST following PUT confusion (bsc#1204383). - CVE-2022-42916: Fixed HSTS bypass via IDN (bsc#1204386).


    Advisory IDSUSE-RU-2022:3787-1
    ReleasedThu Oct 27 04:41:09 2022
    SummaryRecommended update for permissions
    Typerecommended
    Severityimportant
    References1194047,1203911
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-RU-2022:3873-1
    ReleasedFri Nov 4 14:58:08 2022
    SummaryRecommended update for mozilla-nspr, mozilla-nss
    Typerecommended
    Severitymoderate
    References1191546,1198980,1201298,1202870,1204729
    Description:

    This update for mozilla-nspr, mozilla-nss fixes the following issues:
    mozilla-nspr was updated to version 4.34.1:


    mozilla-nss was updated to NSS 3.79.2 (bsc#1204729):

    Other fixes that were applied:


    Advisory IDSUSE-SU-2022:3884-1
    ReleasedMon Nov 7 10:59:26 2022
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1204708,CVE-2022-43680
    Description:

    This update for expat fixes the following issues:
    - CVE-2022-43680: Fixed use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate (bsc#1204708).


    Advisory IDSUSE-RU-2022:3910-1
    ReleasedTue Nov 8 13:05:04 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for pam fixes the following issue:


    Advisory IDSUSE-RU-2022:3958-1
    ReleasedFri Nov 11 15:20:45 2022
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1191546,1198980,1201298,1202870,1204729
    Description:

    This update for mozilla-nss fixes the following issues:
    mozilla-nss was updated to NSS 3.79.2 (bsc#1204729)



    Advisory IDSUSE-SU-2022:3986-1
    ReleasedTue Nov 15 12:57:41 2022
    SummarySecurity update for libX11
    Typesecurity
    Severitymoderate
    References1204422,1204425,CVE-2022-3554,CVE-2022-3555
    Description:

    This update for libX11 fixes the following issues:
    - CVE-2022-3554: Fixed memory leak in XRegisterIMInstantiateCallback() (bsc#1204422). - CVE-2022-3555: Fixed memory leak in _XFreeX11XCBStructure() (bsc#1204425).


    Advisory IDSUSE-SU-2022:3999-1
    ReleasedTue Nov 15 17:08:04 2022
    SummarySecurity update for systemd
    Typesecurity
    Severitymoderate
    References1204179,1204968,CVE-2022-3821
    Description:

    This update for systemd fixes the following issues:




    Advisory IDSUSE-RU-2022:4066-1
    ReleasedFri Nov 18 10:43:00 2022
    SummaryRecommended update for timezone
    Typerecommended
    Severityimportant
    References1177460,1202324,1204649,1205156
    Description:

    This update for timezone fixes the following issues:
    Update timezone version from 2022a to 2022f (bsc#1177460, bsc#1204649, bsc#1205156):


    Advisory IDSUSE-SU-2022:4078-1
    ReleasedFri Nov 18 15:34:17 2022
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severitymoderate
    References1203476,1204468,1204471,1204472,1204473,1204475,1204480,1204523,CVE-2022-21618,CVE-2022-21619,CVE-2022-21624,CVE-2022-21626,CVE-2022-21628,CVE-2022-39399
    Description:

    This update for java-11-openjdk fixes the following issues:


    Advisory IDSUSE-SU-2022:4081-1
    ReleasedFri Nov 18 15:40:46 2022
    SummarySecurity update for dpkg
    Typesecurity
    Severitylow
    References1199944,CVE-2022-1664
    Description:

    This update for dpkg fixes the following issues:


    Advisory IDSUSE-RU-2022:4135-1
    ReleasedMon Nov 21 00:13:40 2022
    SummaryRecommended update for libeconf
    Typerecommended
    Severitymoderate
    References1198165
    Description:

    This update for libeconf fixes the following issues:



    Advisory IDSUSE-RU-2022:4198-1
    ReleasedWed Nov 23 13:15:04 2022
    SummaryRecommended update for rpm
    Typerecommended
    Severitymoderate
    References1202750
    Description:

    This update for rpm fixes the following issues:


    Advisory IDSUSE-RU-2022:4256-1
    ReleasedMon Nov 28 12:36:32 2022
    SummaryRecommended update for gcc12
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for gcc12 fixes the following issues:
    This update ship the GCC 12 compiler suite and its base libraries.
    The compiler baselibraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 11 ones.
    The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP3 and SP4, and provided in the 'Development Tools' module.
    The Go, D and Ada language compiler parts are available unsupported via the PackageHub repositories.
    To use gcc12 compilers use:


    For a full changelog with all new GCC12 features, check out
    https://gcc.gnu.org/gcc-12/changes.html


    Advisory IDSUSE-RU-2022:4312-1
    ReleasedFri Dec 2 11:16:47 2022
    SummaryRecommended update for tar
    Typerecommended
    Severitymoderate
    References1200657,1203600
    Description:

    This update for tar fixes the following issues:


    Advisory IDSUSE-RU-2022:4492-1
    ReleasedWed Dec 14 13:52:39 2022
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1191546,1198980,1201298
    Description:

    This update for mozilla-nss fixes the following issues:


    Advisory IDSUSE-SU-2022:4597-1
    ReleasedWed Dec 21 10:13:11 2022
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1206308,1206309,CVE-2022-43551,CVE-2022-43552
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-feature-2022:4601-1
    ReleasedWed Dec 21 12:23:59 2022
    SummaryFeature update for GNOME 41
    Typefeature
    Severitymoderate
    References1175622,1179584,1188882,1196205,1200581,1203274,1204867,944832
    Description:

    This update for GNOME 41 fixes the following issues:
    atkmm1_6:


    eog:

    evince:

    evolution: evolution-data-center:

    folks:

    gcr:

    geocode-glib:

    gjs:


    glib2:


    gnome-control-center:

    gnome-desktop:

    gnome-music:

    gnome-remote-desktop:

    gnome-session:
    gnome-shell:
    gnome-software:


    gnome-terminal:

    gnome-user-docs:

    gspell:

    gtkmm3:

    gtk-vnc:

    gupnp-av:
    gvfs:

    libgsf:

    libmediaart:

    libnma:

    libnotify:

    libpeas:

    librsvg:

    libsecret:

    mutter:

    nautilus:

    orca:

    python-cairo:

    python-gobject:

    trackers-python:

    vala:

    xdg-desktop-portal-gnome:


    Advisory IDSUSE-SU-2022:4628-1
    ReleasedWed Dec 28 09:23:13 2022
    SummarySecurity update for sqlite3
    Typesecurity
    Severitymoderate
    References1206337,CVE-2022-46908
    Description:

    This update for sqlite3 fixes the following issues:


    Advisory IDSUSE-SU-2022:4629-1
    ReleasedWed Dec 28 09:24:07 2022
    SummarySecurity update for systemd
    Typesecurity
    Severityimportant
    References1200723,1205000,CVE-2022-4415
    Description:

    This update for systemd fixes the following issues:


    Bug fixes:


    Advisory IDSUSE-RU-2023:25-1
    ReleasedThu Jan 5 09:51:41 2023
    SummaryRecommended update for timezone
    Typerecommended
    Severitymoderate
    References1177460
    Description:

    This update for timezone fixes the following issues:
    Version update from 2022f to 2022g (bsc#1177460):


    Advisory IDSUSE-RU-2023:48-1
    ReleasedMon Jan 9 10:37:54 2023
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1199467
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2023:50-1
    ReleasedMon Jan 9 10:42:21 2023
    SummaryRecommended update for shadow
    Typerecommended
    Severitymoderate
    References1205502
    Description:

    This update for shadow fixes the following issues:


    Advisory IDSUSE-SU-2023:119-1
    ReleasedFri Jan 20 10:28:07 2023
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1204272,1207038,CVE-2022-23491,CVE-2022-3479
    Description:

    This update for mozilla-nss fixes the following issues:


    Advisory IDSUSE-RU-2023:179-1
    ReleasedThu Jan 26 21:54:30 2023
    SummaryRecommended update for tar
    Typerecommended
    Severitylow
    References1202436
    Description:

    This update for tar fixes the following issue:


    Advisory IDSUSE-SU-2023:201-1
    ReleasedFri Jan 27 15:24:15 2023
    SummarySecurity update for systemd
    Typesecurity
    Severitymoderate
    References1204944,1205000,1207264,CVE-2022-4415
    Description:

    This update for systemd fixes the following issues:


    Non-security fixes:


    Advisory IDSUSE-SU-2023:429-1
    ReleasedWed Feb 15 17:41:22 2023
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1207990,1207991,1207992,CVE-2023-23914,CVE-2023-23915,CVE-2023-23916
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2023:432-1
    ReleasedWed Feb 15 18:48:25 2023
    SummaryRecommended update for graphite2
    Typerecommended
    Severitymoderate
    References1207676
    Description:

    This update for graphite2 fixes the following issue:


    Advisory IDSUSE-SU-2023:434-1
    ReleasedThu Feb 16 09:08:05 2023
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1208138,CVE-2023-0767
    Description:

    This update for mozilla-nss fixes the following issues:
    Updated to NSS 3.79.4 (bsc#1208138):
    - CVE-2023-0767: Fixed handling of unknown PKCS#12 safe bag types.


    Advisory IDSUSE-SU-2023:463-1
    ReleasedMon Feb 20 16:33:39 2023
    SummarySecurity update for tar
    Typesecurity
    Severitymoderate
    References1202436,1207753,CVE-2022-48303
    Description:

    This update for tar fixes the following issues:


    Bug fixes:


    Advisory IDSUSE-RU-2023:464-1
    ReleasedMon Feb 20 18:11:37 2023
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2023:617-1
    ReleasedFri Mar 3 16:49:06 2023
    SummaryRecommended update for jitterentropy
    Typerecommended
    Severitymoderate
    References1207789
    Description:

    This update for jitterentropy fixes the following issues:


    Advisory IDSUSE-SU-2023:668-1
    ReleasedWed Mar 8 11:17:33 2023
    SummarySecurity update for libX11
    Typesecurity
    Severitymoderate
    References1204425,1208881,CVE-2022-3555
    Description:

    This update for libX11 fixes the following issues:


    Advisory IDSUSE-RU-2023:714-1
    ReleasedMon Mar 13 10:53:25 2023
    SummaryRecommended update for rpm
    Typerecommended
    Severityimportant
    References1207294
    Description:

    This update for rpm fixes the following issues:


    Advisory IDSUSE-SU-2023:752-1
    ReleasedThu Mar 16 08:40:03 2023
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severitymoderate
    References1206549,1207246,1207248,CVE-2023-21835,CVE-2023-21843
    Description:

    This update for java-11-openjdk fixes the following issues:


    Bugfixes:


    Advisory IDSUSE-feature-2023:775-1
    ReleasedThu Mar 16 15:58:55 2023
    SummaryFeature for updating the Java stack
    Typefeature
    Severitycritical
    References1047218,1062631,1120360,1133997,1134001,1145693,1171696,1172961,1173600,1177180,1177488,1177568,1179926,1180215,1182284,1182708,1182748,1182754,1184356,1184357,1184755,1186328,1187446,1188468,1188469,1188529,1190660,1190663,1193795,1195108,1195557,1198279,1198404,1198739,1198833,1201081,1201316,1201317,1203154,1203515,1203516,1203672,1203673,1203674,1203868,1204173,1204284,1204918,1205138,1205142,1205647,1206018,1206400,1206401,CVE-2019-17566,CVE-2020-11022,CVE-2020-11023,CVE-2020-11979,CVE-2020-11987,CVE-2020-11988,CVE-2020-13956,CVE-2020-15522,CVE-2020-1945,CVE-2020-26945,CVE-2020-28052,CVE-2020-2875,CVE-2020-2933,CVE-2020-2934,CVE-2020-8908,CVE-2021-2471,CVE-2021-26291,CVE-2021-27807,CVE-2021-27906,CVE-2021-29425,CVE-2021-33813,CVE-2021-36373,CVE-2021-36374,CVE-2021-37533,CVE-2021-42550,CVE-2021-43980,CVE-2022-2047,CVE-2022-2048,CVE-2022-23437,CVE-2022-24839,CVE-2022-28366,CVE-2022-29599,CVE-2022-37865,CVE-2022-37866,CVE-2022-38398,CVE-2022-38648,CVE-2022-38752,CVE-2022-40146,CVE-2022-40149,CVE-2022-40150,CVE-2022-42252,CVE-2022-42889,CVE-2022-45685,CVE-2022-45693
    Description:

    This feature update for the Java stack provides:
    ant:


    ant-antlr:

    ant-contrib:

    ant-junit:

    ant-junit5:

    antlr:

    antlr3:

    antlr4:

    aopalliance:

    apache-commons-beanutils:

    apache-commons-cli:

    apache-commons-codec:

    apache-commons-collections4:

    apache-commons-collections:

    apache-commons-compress:

    apache-commons-configuration:

    apache-commons-csv:

    apache-commons-daemon:

    apache-commons-dbcp:

    apache-commons-digester:

    apache-commons-el:

    apache-commons-exec:

    apache-commons-fileupload:

    apache-commons-io:

    apache-commons-jexl:

    apache-commons-lang3:

    apache-commons-logging:

    apache-commons-math:

    apache-commons-net:

    apache-commons-ognl:

    apache-commons-parent:

    apache-commons-pool2:

    apache-commons-text:

    apache-ivy:


    apache-logging-parent:

    apache-parent:

    apache-pdfbox:

    apache-resource-bundles:

    apache-sshd:

    apiguardian:

    aqute-bnd:

    args4j:

    asm3:

    atinject:

    auto:

    avalon-framework:

    avalon-logkit:

    aws-sdk-java:

    axis:

    base64coder:

    beust-jcommander:

    bnd-maven-plugin:

    bouncycastle:

    bsf:

    bsh2:

    cal10n:

    cbi-plugins:

    cdi-api:

    cglib:

    checker-qual:

    classmate:

    codemodel:

    codenarc:

    concurrentlinkedhashmap-lru:

    decentxml:

    dom4j:

    ecj:

    eclipse:

    eclipse-ecf:

    eclipse-egit:

    eclipse-emf:

    eclipse-jgit:
    eclipse-license:

    eclipse-swt:

    ed25519-java:

    ee4j:

    exec-maven-plugin:

    extra166y:

    ezmorph:

    felix-bundlerepository:

    felix-gogo-command:

    felix-gogo-runtime:

    felix-osgi-compendium:

    felix-osgi-foundation:

    felix-osgi-obr:

    felix-scr:

    felix-shell:

    felix-utils:

    fmpp:

    freemarker:

    geronimo-specs:

    glassfish-activation:

    glassfish-annotation-api:

    glassfish-dtd-parser:

    glassfish-fastinfoset:

    glassfish-jaxb-api:

    glassfish-jaxb:

    glassfish-jax-rs-api:

    glassfish-jsp:

    glassfish-servlet-api:

    glassfish-transaction-api:

    gmavenplus-plugin:

    gmetrics:

    google-errorprone-annotations:

    google-gson:

    google-guice:

    google-http-java-client:

    google-oauth-java-client:

    gpars:

    gradle-bootstrap:

    gradle:

    groovy:

    groovy18:

    guava20:

    guava:

    hamcrest:

    hawtjni-maven-plugin:

    hawtjni-runtime:

    http-builder:

    httpcomponents-client:

    httpcomponents-core:

    icu4j:

    isorelax:

    istack-commons:

    j2objc-annotations:

    jackson-modules-base:

    jackson-parent:

    jackson:

    jakarta-activation:

    jakarta-commons-discovery:


    jakarta-commons-modeler:

    jakarta-mail:

    jakarta-taglibs-standard:

    jandex:

    janino:

    jansi-native:

    jansi:

    jarjar:

    jatl:

    javacc-maven-plugin:

    javacc:

    java-cup:

    java-cup-bootstrap:
    javaewah:

    javamail:

    javapackages-meta:

    javapackages-tools:

    javaparser:

    javassist:

    jboss-interceptors-1.2-api:

    jboss-websocket-1.0-api:

    jcache:

    jcifs:

    jcip-annotations:

    jcsp:

    jctools:

    jdependency:

    jdepend:

    jdom:

    jdom2:

    jettison:

    jetty-minimal:

    jetty-websocket:

    jeuclid:

    jflex:

    jflex-bootstrap:
    jformatstring:

    jgit:

    jhighlight:

    jing-trang:

    jline:

    jline1:

    jna:

    joda-convert:

    joda-time:

    jsch-agent-proxy:

    jsch:

    json-lib:

    jsonp:

    jsr-311:

    jtidy:

    junit:

    junit5:

    jython:

    jzlib:

    kryo:

    kxml:

    libreadline-java:

    log4j:

    logback:

    lucene:

    maven:

    maven2:

    maven-antrun-plugin:

    maven-archiver:

    maven-artifact-resolver:

    maven-artifact-transfer:

    maven-assembly-plugin:

    maven-clean-plugin:

    maven-common-artifact-filters:

    maven-compiler-plugin:

    maven-dependency-analyzer:

    maven-dependency-plugin:

    maven-dependency-tree:

    maven-doxia:

    maven-doxia-sitetools:

    maven-enforcer:

    maven-file-management:

    maven-filtering:

    maven-install-plugin:

    maven-invoker:

    maven-jar-plugin:

    maven-javadoc-plugin:

    maven-mapping:

    maven-plugin-build-helper:

    maven-plugin-bundle:

    maven-plugin-testing:

    maven-plugin-tools:

    maven-remote-resources-plugin:

    maven-reporting-api:

    maven-resolver:

    maven-resources-plugin:

    maven-shared-incremental:

    maven-shared-io:

    maven-shared-utils:

    maven-source-plugin:

    maven-surefire:

    maven-verifier:

    maven-wagon:

    minlog:

    modello-maven-plugin:

    modello:

    mojo-parent:

    msv:

    multiverse:

    mx4j:

    mybatis-parent:

    mybatis:

    mysql-connector-java:

    nailgun:

    native-platform:

    nekohtml:

    netty3:

    netty-tcnative:

    objectweb-asm:

    objenesis:

    opentest4j:

    oro:

    osgi-annotation:

    osgi-compendium:

    osgi-core:

    os-maven-plugin:

    paradise:

    paranamer:

    parboiled:

    pegdown:

    picocli:

    plexus-ant-factory:

    plexus-archiver:

    plexus-bsh-factory:

    plexus-build-api:

    plexus-cipher:

    plexus-classworlds:

    plexus-cli:

    plexus-compiler:

    plexus-component-api:

    plexus-component-metadata:

    plexus-containers:

    plexus-i18n:

    plexus-interactivity:

    plexus-interpolation:

    plexus-io:

    plexus-languages:

    plexus-metadata-generator:

    plexus-resources:

    plexus-sec-dispatcher:

    plexus-utils:

    plexus-velocity:

    qdox:

    reflectasm:

    regexp:

    relaxngcc:

    relaxngDatatype:

    reload4j:

    replacer:

    rhino:

    sat4j:

    saxon9:

    sbt-launcher:

    sbt:

    scala-pickling:

    scala:

    servletapi4:

    signpost-core:

    sisu:

    slf4j:

    snakeyaml:

    spec-version-maven-plugin:

    stax2-api:

    stax-ex:

    stringtemplate4:

    string-template-maven-plugin:

    stringtemplate:
    tagsoup:

    template-resolver:

    tesla-polyglot:

    test-interface:

    testng:

    tomcat:

    treelayout:

    trilead-ssh2:

    tycho:

    univocity-parsers:

    utfcpp:

    velocity:

    werken-xpath:

    woodstox-core:

    wsdl4j:

    ws-jaxme:

    xalan-j2:

    xbean:

    xerces-j2:

    xml-commons-apis:

    xml-commons-resolver:

    xmlgraphics-batik:

    xmlgraphics-commons:

    xmlgraphics-fop:

    xml-maven-plugin:

    xmlstreambuffer:

    xmlunit:

    xmvn-connector:
    Rename xmvn-connector-aether to xmvn-connector and provide it as version 4.0.0. (jsc#SLE-23217)
    xmvn-connector-gradle:

    xmvn-connector-ivy:

    xmvn-mojo:

    xmvn-parent:

    xmvn-tools:

    xmvn:

    xpp2:

    xpp3:

    xsom:

    xstream:

    xz-java:

    zinc:


    Advisory IDSUSE-RU-2023:776-1
    ReleasedThu Mar 16 17:29:23 2023
    SummaryRecommended update for gcc12
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for gcc12 fixes the following issues:
    This update ships gcc12 also to the SUSE Linux Enterprise 15 SP1 LTSS and 15 SP2 LTSS products.
    SUSE Linux Enterprise 15 SP3 and SP4 get only refreshed builds without changes

    This update ship the GCC 12 compiler suite and its base libraries.
    The compiler baselibraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 11 ones.
    The new compilers for C, C++, and Fortran are provided in the SUSE Linux Enterprise Module for Development Tools.
    To use gcc12 compilers use:


    For a full changelog with all new GCC12 features, check out
    https://gcc.gnu.org/gcc-12/changes.html


    Advisory IDSUSE-SU-2023:1582-1
    ReleasedMon Mar 27 10:31:52 2023
    SummarySecurity update for curl
    Typesecurity
    Severitymoderate
    References1209209,1209210,1209211,1209212,1209214,CVE-2023-27533,CVE-2023-27534,CVE-2023-27535,CVE-2023-27536,CVE-2023-27538
    Description:

    This update for curl fixes the following issues:


    Advisory IDSUSE-RU-2023:1662-1
    ReleasedWed Mar 29 10:36:23 2023
    SummaryRecommended update for patterns-base
    Typerecommended
    Severitymoderate
    References1203537
    Description:

    This update for patterns-base fixes the following issues:


    Advisory IDSUSE-SU-2023:1688-1
    ReleasedWed Mar 29 18:19:10 2023
    SummarySecurity update for zstd
    Typesecurity
    Severitymoderate
    References1209533,CVE-2022-4899
    Description:

    This update for zstd fixes the following issues:


    Advisory IDSUSE-SU-2023:1718-1
    ReleasedFri Mar 31 15:47:34 2023
    SummarySecurity update for glibc
    Typesecurity
    Severitymoderate
    References1207571,1207957,1207975,1208358,CVE-2023-0687
    Description:

    This update for glibc fixes the following issues:
    Security issue fixed:


    Other issues fixed:


    Advisory IDSUSE-RU-2023:1779-1
    ReleasedThu Apr 6 08:16:58 2023
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1208432
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-RU-2023:1805-1
    ReleasedTue Apr 11 10:12:41 2023
    SummaryRecommended update for timezone
    Typerecommended
    Severityimportant
    References
    Description:

    This update for timezone fixes the following issues:


    Advisory IDSUSE-SU-2023:1852-1
    ReleasedFri Apr 14 15:09:39 2023
    SummarySecurity update for harfbuzz
    Typesecurity
    Severityimportant
    References1207922,CVE-2023-25193
    Description:

    This update for harfbuzz fixes the following issues:


    Advisory IDSUSE-RU-2023:1939-1
    ReleasedFri Apr 21 11:14:30 2023
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1191546,1207209,1208242,1208999
    Description:

    This update for mozilla-nss fixes the following issues:


    Advisory IDSUSE-SU-2023:2060-1
    ReleasedThu Apr 27 17:04:25 2023
    SummarySecurity update for glib2
    Typesecurity
    Severitymoderate
    References1209713,1209714,1210135,CVE-2023-24593,CVE-2023-25180
    Description:

    This update for glib2 fixes the following issues:


    The following non-security bug was fixed:


    Advisory IDSUSE-SU-2023:2066-1
    ReleasedFri Apr 28 13:54:17 2023
    SummarySecurity update for shadow
    Typesecurity
    Severitymoderate
    References1210507,CVE-2023-29383
    Description:

    This update for shadow fixes the following issues:


    Advisory IDSUSE-SU-2023:2111-1
    ReleasedFri May 5 14:34:00 2023
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1210434,CVE-2023-29491
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-SU-2023:2222-1
    ReleasedTue May 16 17:41:47 2023
    SummarySecurity update for java-11-openjdk
    Typesecurity
    Severityimportant
    References1210628,1210631,1210632,1210634,1210635,1210636,1210637,CVE-2023-21930,CVE-2023-21937,CVE-2023-21938,CVE-2023-21939,CVE-2023-21954,CVE-2023-21967,CVE-2023-21968
    Description:

    This update for java-11-openjdk fixes the following issues:
    Upgrade to upsteam tag jdk-11.0.19+7 (April 2023 CPU):


    Advisory IDSUSE-SU-2023:2224-1
    ReleasedWed May 17 09:53:54 2023
    SummarySecurity update for curl
    Typesecurity
    Severityimportant
    References1211230,1211231,1211232,1211233,CVE-2023-28319,CVE-2023-28320,CVE-2023-28321,CVE-2023-28322
    Description:

    This update for curl adds the following feature:
    Update to version 8.0.1 (jsc#PED-2580)


    Advisory IDSUSE-RU-2023:2240-1
    ReleasedWed May 17 19:56:54 2023
    SummaryRecommended update for systemd
    Typerecommended
    Severitymoderate
    References1203141,1207410
    Description:

    This update for systemd fixes the following issues:


    Advisory IDSUSE-feature-2023:2269-1
    ReleasedMon May 22 14:50:34 2023
    SummaryFeature update for javapackages-tools
    Typefeature
    Severitymoderate
    References
    Description:

    This update for javapackages-tools fixes the following issues:



    Advisory IDSUSE-SU-2023:2484-1
    ReleasedMon Jun 12 08:49:58 2023
    SummarySecurity update for openldap2
    Typesecurity
    Severitymoderate
    References1211795,CVE-2023-2953
    Description:

    This update for openldap2 fixes the following issues: