Container summary for suse/pcp


SUSE-CU-2024:5299-1

Container Advisory IDSUSE-CU-2024:5299-1
Container Tagssuse/pcp:6 , suse/pcp:6.2 , suse/pcp:6.2.0 , suse/pcp:6.2.0-37.9 , suse/pcp:latest
Container Release37.9
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3528-1
ReleasedFri Oct 4 15:31:43 2024
SummaryRecommended update for e2fsprogs
Typerecommended
Severitymoderate
References1230145
Description:

This update for e2fsprogs fixes the following issue:


Advisory IDSUSE-SU-2024:3533-1
ReleasedFri Oct 4 16:40:27 2024
SummarySecurity update for pcp
Typesecurity
Severityimportant
References1217826,1222121,1222815,1230551,1230552,CVE-2023-6917,CVE-2024-3019,CVE-2024-45769,CVE-2024-45770
Description:

This update for pcp fixes the following issues:
pcp was updated from version 5.3.7 to version 6.2.0 (jsc#PED-8192, jsc#PED-8389):


* CVE-2024-45770: Fixed a symlink attack that allows escalating from the pcp to the root user (bsc#1230552) * CVE-2024-45769: Fixed a heap corruption through metric pmstore operations (bsc#1230551) * CVE-2023-6917: Fixed local privilege escalation from pcp user to root in /usr/libexec/pcp/lib/pmproxy (bsc#1217826) * CVE-2024-3019: Disabled redis proxy by default (bsc#1222121)

* Add version 3 PCP archive support: instance domain change-deltas, Y2038-safe timestamps, nanosecond-precision timestamps, arbitrary timezones support, 64-bit file offsets used throughout for larger (beyond 2GB) individual volumes. + Opt-in using the /etc/pcp.conf PCP_ARCHIVE_VERSION setting + Version 2 archives remain the default (for next few years). * Switch to using OpenSSL only throughout PCP (dropped NSS/NSPR); this impacts on libpcp, PMAPI clients and PMCD use of encryption; these are now configured and used consistently with pmproxy HTTPS support and redis-server, which were both already using OpenSSL. * New nanosecond precision timestamp PMAPI calls for PCP library interfaces that make use of timestamps. These are all optional, and full backward compatibility is preserved for existing tools. * For the full list of changes please consult the packaged CHANGELOG file
* Moved pmlogger_daily into main package (bsc#1222815) * Change dependency from openssl-devel >= 1.1.1 to openssl-devel >= 1.0.2p. Required for SLE-12. * Introduce 'pmda-resctrl' package, disabled for architectures other than x86_64. * Change the architecture for various subpackages to 'noarch' as they contain no binaries. * Disable 'pmda-mssql', as it fails to build.


Advisory IDSUSE-RU-2024:3589-1
ReleasedThu Oct 10 16:39:07 2024
SummaryRecommended update for cyrus-sasl
Typerecommended
Severitymoderate
References1230111
Description:

This update for cyrus-sasl fixes the following issues:


Advisory IDSUSE-RU-2024:3597-1
ReleasedFri Oct 11 10:39:52 2024
SummaryRecommended update for bash
Typerecommended
Severitymoderate
References1227807
Description:

This update for bash fixes the following issues:


Advisory IDSUSE-RU-2024:3609-1
ReleasedMon Oct 14 11:39:13 2024
SummaryRecommended update for SLES-release
Typerecommended
Severitymoderate
References1227100,1230135
Description:

This update for SLES-release fixes the following issues:


Advisory IDSUSE-RU-2024:3659-1
ReleasedWed Oct 16 15:12:47 2024
SummaryRecommended update for gcc14
Typerecommended
Severitymoderate
References1188441,1210959,1214915,1219031,1220724,1221601
Description:

This update for gcc14 fixes the following issues:
This update ships the GNU Compiler Collection GCC 14.2. (jsc#PED-10474)
The compiler runtime libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 13 ones.
The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP5 and SP6, and provided in the 'Development Tools' module.
The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
To use gcc14 compilers use:


For a full changelog with all new GCC14 features, check out
https://gcc.gnu.org/gcc-14/changes.html



Advisory IDSUSE-RU-2024:3726-1
ReleasedFri Oct 18 11:56:40 2024
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1231051
Description:

This update for glibc fixes the following issue:


Advisory IDSUSE-RU-2024:3743-1
ReleasedTue Oct 22 14:09:48 2024
SummaryRecommended update for pcp
Typerecommended
Severitymoderate
References1231345
Description:

This update for pcp fixes the following issues:


SUSE-CU-2024:4793-1

Container Advisory IDSUSE-CU-2024:4793-1
Container Tagssuse/pcp:5 , suse/pcp:5.3 , suse/pcp:5.3.7 , suse/pcp:5.3.7-46.3 , suse/pcp:latest
Container Release46.3
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3501-1
ReleasedTue Oct 1 16:03:34 2024
SummarySecurity update for openssl-3
Typesecurity
Severityimportant
References1230698,CVE-2024-41996
Description:

This update for openssl-3 fixes the following issues:


Advisory IDSUSE-RU-2024:3504-1
ReleasedTue Oct 1 16:22:27 2024
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1230638
Description:

This update for glibc fixes the following issue:


Advisory IDSUSE-RU-2024:3512-1
ReleasedWed Oct 2 18:14:56 2024
SummaryRecommended update for systemd
Typerecommended
Severityimportant
References1226414,1228091,1228223,1228809,1229518
Description:

This update for systemd fixes the following issues:


SUSE-CU-2024:4716-1

Container Advisory IDSUSE-CU-2024:4716-1
Container Tagssuse/pcp:5 , suse/pcp:5.3 , suse/pcp:5.3.7 , suse/pcp:5.3.7-45.3 , suse/pcp:latest
Container Release45.3
The following patches have been included in this update:

SUSE-CU-2024:4633-1

Container Advisory IDSUSE-CU-2024:4633-1
Container Tagssuse/pcp:5 , suse/pcp:5.3 , suse/pcp:5.3.7 , suse/pcp:5.3.7-45.2 , suse/pcp:latest
Container Release45.2
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3450-1
ReleasedThu Sep 26 09:09:16 2024
SummaryRecommended update for pam-config
Typerecommended
Severitymoderate
References1227216
Description:

This update for pam-config fixes the following issues:


SUSE-CU-2024:4610-1

Container Advisory IDSUSE-CU-2024:4610-1
Container Tagssuse/pcp:5 , suse/pcp:5.3 , suse/pcp:5.3.7 , suse/pcp:5.3.7-45.1 , suse/pcp:latest
Container Release45.1
The following patches have been included in this update:

SUSE-CU-2024:4541-1

Container Advisory IDSUSE-CU-2024:4541-1
Container Tagssuse/pcp:5 , suse/pcp:5.3 , suse/pcp:5.3.7 , suse/pcp:5.3.7-43.1 , suse/pcp:latest
Container Release43.1
The following patches have been included in this update:

SUSE-CU-2024:4508-1

Container Advisory IDSUSE-CU-2024:4508-1
Container Tagssuse/pcp:5 , suse/pcp:5-42.11 , suse/pcp:5.3 , suse/pcp:5.3-42.11 , suse/pcp:5.3.7 , suse/pcp:5.3.7-42.11 , suse/pcp:latest
Container Release42.11
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3300-1
ReleasedWed Sep 18 14:27:53 2024
SummaryRecommended update for ncurses
Typerecommended
Severitymoderate
References1229028
Description:

This update for ncurses fixes the following issues:


SUSE-CU-2024:4448-1

Container Advisory IDSUSE-CU-2024:4448-1
Container Tagssuse/pcp:5 , suse/pcp:5-42.9 , suse/pcp:5.3 , suse/pcp:5.3-42.9 , suse/pcp:5.3.7 , suse/pcp:5.3.7-42.9 , suse/pcp:latest
Container Release42.9
The following patches have been included in this update:

SUSE-CU-2024:4386-1

Container Advisory IDSUSE-CU-2024:4386-1
Container Tagssuse/pcp:5 , suse/pcp:5-42.5 , suse/pcp:5.3 , suse/pcp:5.3-42.5 , suse/pcp:5.3.7 , suse/pcp:5.3.7-42.5 , suse/pcp:latest
Container Release42.5
The following patches have been included in this update:

SUSE-CU-2024:4330-1

Container Advisory IDSUSE-CU-2024:4330-1
Container Tagssuse/pcp:5 , suse/pcp:5-42.3 , suse/pcp:5.3 , suse/pcp:5.3-42.3 , suse/pcp:5.3.7 , suse/pcp:5.3.7-42.3 , suse/pcp:latest
Container Release42.3
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3216-1
ReleasedThu Sep 12 13:05:20 2024
SummarySecurity update for expat
Typesecurity
Severitymoderate
References1229930,1229931,1229932,CVE-2024-45490,CVE-2024-45491,CVE-2024-45492
Description:

This update for expat fixes the following issues:


SUSE-CU-2024:4329-1

Container Advisory IDSUSE-CU-2024:4329-1
Container Tagssuse/pcp:5 , suse/pcp:5-42.1 , suse/pcp:5.3 , suse/pcp:5.3-42.1 , suse/pcp:5.3.7 , suse/pcp:5.3.7-42.1 , suse/pcp:latest
Container Release42.1
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3239-1
ReleasedFri Sep 13 12:00:58 2024
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1229476
Description:

This update for util-linux fixes the following issue:


SUSE-CU-2024:4221-1

Container Advisory IDSUSE-CU-2024:4221-1
Container Tagssuse/pcp:5 , suse/pcp:5-41.13 , suse/pcp:5.3 , suse/pcp:5.3-41.13 , suse/pcp:5.3.7 , suse/pcp:5.3.7-41.13 , suse/pcp:latest
Container Release41.13
The following patches have been included in this update:

SUSE-CU-2024:4152-1

Container Advisory IDSUSE-CU-2024:4152-1
Container Tagssuse/pcp:5 , suse/pcp:5-41.11 , suse/pcp:5.3 , suse/pcp:5.3-41.11 , suse/pcp:5.3.7 , suse/pcp:5.3.7-41.11 , suse/pcp:latest
Container Release41.11
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:3166-1
ReleasedMon Sep 9 12:25:30 2024
SummaryRecommended update for glibc
Typerecommended
Severitymoderate
References1228042
Description:

This update for glibc fixes the following issue:


SUSE-CU-2024:4038-1

Container Advisory IDSUSE-CU-2024:4038-1
Container Tagssuse/pcp:5 , suse/pcp:5-41.8 , suse/pcp:5.3 , suse/pcp:5.3-41.8 , suse/pcp:5.3.7 , suse/pcp:5.3.7-41.8 , suse/pcp:latest
Container Release41.8
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:3106-1
ReleasedTue Sep 3 17:00:40 2024
SummarySecurity update for openssl-3
Typesecurity
Severitymoderate
References1220523,1220690,1220693,1220696,1221365,1221751,1221752,1221753,1221760,1221786,1221787,1221821,1221822,1221824,1221827,1229465,CVE-2024-6119
Description:

This update for openssl-3 fixes the following issues:


Other fixes:


Advisory IDSUSE-RU-2024:3131-1
ReleasedTue Sep 3 17:42:24 2024
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1224113
Description:

This update for mozilla-nss fixes the following issues:


Advisory IDSUSE-RU-2024:3132-1
ReleasedTue Sep 3 17:43:10 2024
SummaryRecommended update for permissions
Typerecommended
Severitymoderate
References1228968,1229329
Description:

This update for permissions fixes the following issues:



SUSE-CU-2024:3937-1

Container Advisory IDSUSE-CU-2024:3937-1
Container Tagssuse/pcp:5 , suse/pcp:5-41.5 , suse/pcp:5.3 , suse/pcp:5.3-41.5 , suse/pcp:5.3.7 , suse/pcp:5.3.7-41.5 , suse/pcp:latest
Container Release41.5
The following patches have been included in this update:

SUSE-CU-2024:3861-1

Container Advisory IDSUSE-CU-2024:3861-1
Container Tagssuse/pcp:5 , suse/pcp:5-41.3 , suse/pcp:5.3 , suse/pcp:5.3-41.3 , suse/pcp:5.3.7 , suse/pcp:5.3.7-41.3 , suse/pcp:latest
Container Release41.3
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:2967-1
ReleasedMon Aug 19 15:41:29 2024
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1194818
Description:

This update for pam fixes the following issue:


SUSE-CU-2024:3769-1

Container Advisory IDSUSE-CU-2024:3769-1
Container Tagssuse/pcp:5 , suse/pcp:5-41.1 , suse/pcp:5.3 , suse/pcp:5.3-41.1 , suse/pcp:5.3.7 , suse/pcp:5.3.7-41.1 , suse/pcp:latest
Container Release41.1
The following patches have been included in this update:

SUSE-CU-2024:3679-1

Container Advisory IDSUSE-CU-2024:3679-1
Container Tagssuse/pcp:5 , suse/pcp:5-40.7 , suse/pcp:5.3 , suse/pcp:5.3-40.7 , suse/pcp:5.3.7 , suse/pcp:5.3.7-40.7 , suse/pcp:latest
Container Release40.7
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:2888-1
ReleasedTue Aug 13 11:07:41 2024
SummaryRecommended update for util-linux
Typerecommended
Severitymoderate
References1159034,1194818,1218609,1222285
Description:

This update for util-linux fixes the following issues:


SUSE-CU-2024:3614-1

Container Advisory IDSUSE-CU-2024:3614-1
Container Tagssuse/pcp:5 , suse/pcp:5-40.3 , suse/pcp:5.3 , suse/pcp:5.3-40.3 , suse/pcp:5.3.7 , suse/pcp:5.3.7-40.3 , suse/pcp:latest
Container Release40.3
The following patches have been included in this update:

SUSE-CU-2024:3531-1

Container Advisory IDSUSE-CU-2024:3531-1
Container Tagssuse/pcp:5 , suse/pcp:5-38.13 , suse/pcp:5.3 , suse/pcp:5.3-38.13 , suse/pcp:5.3.7 , suse/pcp:5.3.7-38.13 , suse/pcp:latest
Container Release38.13
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:2808-1
ReleasedWed Aug 7 09:49:32 2024
SummarySecurity update for shadow
Typesecurity
Severitymoderate
References1228770,CVE-2013-4235
Description:

This update for shadow fixes the following issues:


SUSE-CU-2024:3467-1

Container Advisory IDSUSE-CU-2024:3467-1
Container Tagssuse/pcp:5 , suse/pcp:5-38.9 , suse/pcp:5.3 , suse/pcp:5.3-38.9 , suse/pcp:5.3.7 , suse/pcp:5.3.7-38.9 , suse/pcp:latest
Container Release38.9
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:2779-1
ReleasedTue Aug 6 14:35:49 2024
SummaryRecommended update for permissions
Typerecommended
Severitymoderate
References1228548
Description:


This update for permissions fixes the following issue:


SUSE-CU-2024:3395-1

Container Advisory IDSUSE-CU-2024:3395-1
Container Tagssuse/pcp:5 , suse/pcp:5-37.2 , suse/pcp:5.3 , suse/pcp:5.3-37.2 , suse/pcp:5.3.7 , suse/pcp:5.3.7-37.2 , suse/pcp:latest
Container Release37.2
The following patches have been included in this update:

SUSE-CU-2024:3345-1

Container Advisory IDSUSE-CU-2024:3345-1
Container Tagssuse/pcp:5 , suse/pcp:5-36.15 , suse/pcp:5.3 , suse/pcp:5.3-36.15 , suse/pcp:5.3.7 , suse/pcp:5.3.7-36.15 , suse/pcp:latest
Container Release36.15
The following patches have been included in this update:
Advisory IDSUSE-RU-2024:2684-1
ReleasedWed Jul 31 20:04:41 2024
SummaryRecommended update for mozilla-nss
Typerecommended
Severitymoderate
References1214980,1222804,1222807,1222811,1222813,1222814,1222821,1222822,1222826,1222828,1222830,1222833,1222834,1223724,1224113,1224115,1224116,1224118,1227918,CVE-2023-5388
Description:

This update for mozilla-nss fixes the following issues:




Update to NSS 3.101.2:



update to NSS 3.101.1:

update to NSS 3.101:


Update to NSS 3.100:

Update to NSS 3.99:

Update to NSS 3.98:

Update to NSS 3.97:

Update to NSS 3.96.1:

Update to NSS 3.95:

Update to NSS 3.94:

Update to NSS 3.93:

Update to NSS 3.92:

Update to NSS 3.91:

Update to NSS 3.90.3:


SUSE-CU-2024:3296-1

Container Advisory IDSUSE-CU-2024:3296-1
Container Tagssuse/pcp:5 , suse/pcp:5-36.14 , suse/pcp:5.3 , suse/pcp:5.3-36.14 , suse/pcp:5.3.7 , suse/pcp:5.3.7-36.14 , suse/pcp:latest
Container Release36.14
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:2630-1
ReleasedTue Jul 30 09:12:44 2024
SummarySecurity update for shadow
Typesecurity
Severityimportant
References916845,CVE-2013-4235
Description:

This update for shadow fixes the following issues:


Advisory IDSUSE-SU-2024:2635-1
ReleasedTue Jul 30 09:14:09 2024
SummarySecurity update for openssl-3
Typesecurity
Severityimportant
References1222899,1223336,1226463,1227138,CVE-2024-5535
Description:

This update for openssl-3 fixes the following issues:
Security fixes:


Other fixes:


Advisory IDSUSE-RU-2024:2641-1
ReleasedTue Jul 30 09:29:36 2024
SummaryRecommended update for systemd
Typerecommended
Severitymoderate
References
Description:

This update for systemd fixes the following issues:
systemd was updated from version 254.13 to version 254.15:


* boot: cover for hardware keys on phones/tablets * Conditional PSI check to reflect changes done in 5.13 * core/dbus-manager: refuse SoftReboot() for user managers * core/exec-invoke: reopen OpenFile= fds with O_NOCTTY * core/exec-invoke: use sched_setattr instead of sched_setscheduler * core/unit: follow merged units before updating SourcePath= timestamp too * coredump: correctly take tmpfs size into account for compression * cryptsetup: improve TPM2 blob display * docs: Add section to HACKING.md on distribution packages * docs: fixed dead link to GNOME documentation * docs/CODING_STYLE: document that we nowadays prefer (const char*) for func ret type * Fixed typo in CAP_BPF description * LICENSES/README: expand text to summarize state for binaries and libs * man: fully adopt ~/.local/state/ * man/systemd.exec: list inaccessible files for ProtectKernelTunables * man/tmpfiles: remove outdated behavior regarding symlink ownership * meson: bpf: propagate 'sysroot' for cross compilation * meson: Define __TARGET_ARCH macros required by bpf * mkfs-util: Set sector size for btrfs as well * mkosi: drop CentOS 8 from CI * mkosi: Enable hyperscale-packages-experimental for CentOS * mountpoint-util: do not assume symlinks are not mountpoints * os-util: avoid matching on the wrong extension-release file * README: add missing CONFIG_MEMCG kernel config option for oomd * README: update requirements for signed dm-verity * resolved: allow the full TTL to be used by OPT records * resolved: correct parsing of OPT extended RCODEs * sysusers: handle NSS errors gracefully * TEST-58-REPART: reverse order of diff args * TEST-64-UDEV-STORAGE: Make nvme_subsystem expected pci symlinks more generic * test: fixed TEST-24-CRYPTSETUP on SUSE * test: install /etc/hosts * Use consistent spelling of systemd.condition_first_boot argument * util: make file_read() 64bit offset safe * vmm: make sure we can handle smbios objects without variable part
* analyze: show pcrs also in sha384 bank * chase: Tighten '.' and './' check * core/service: fixed accept-socket deserialization * efi-api: check /sys/class/tpm/tpm0/tpm_version_major, too * executor: check for all permission related errnos when setting up IPC namespace * install: allow removing symlinks even for units that are gone * json: use secure un{base64,hex}mem for sensitive variants * man,units: drop 'temporary' from description of systemd-tmpfiles * missing_loop.h: fixed LOOP_SET_STATUS_SETTABLE_FLAGS * repart: fixed memory leak * repart: Use CRYPT_ACTIVATE_PRIVATE * resolved: permit dnssec rrtype questions when we aren't validating * rules: Limit the number of device units generated for serial ttys * run: do not pass the pty slave fd to transient service in a machine * sd-dhcp-server: clear buffer before receive * strbuf: use GREEDY_REALLOC to grow the buffer


SUSE-CU-2024:3134-1

Container Advisory IDSUSE-CU-2024:3134-1
Container Tagssuse/pcp:5 , suse/pcp:5-36.10 , suse/pcp:5.3 , suse/pcp:5.3-36.10 , suse/pcp:5.3.7 , suse/pcp:5.3.7-36.10 , suse/pcp:latest
Container Release36.10
The following patches have been included in this update:

SUSE-CU-2024:3074-1

Container Advisory IDSUSE-CU-2024:3074-1
Container Tagssuse/pcp:5 , suse/pcp:5-36.8 , suse/pcp:5.3 , suse/pcp:5.3-36.8 , suse/pcp:5.3.7 , suse/pcp:5.3.7-36.8 , suse/pcp:latest
Container Release36.8
The following patches have been included in this update:
Advisory IDSUSE-SU-2024:2307-1
ReleasedFri Jul 5 12:04:34 2024
SummarySecurity update for krb5
Typesecurity
Severityimportant
References1227186,1227187,CVE-2024-37370,CVE-2024-37371
Description:

This update for krb5 fixes the following issues:


SUSE-CU-2024:3026-1

Container Advisory IDSUSE-CU-2024:3026-1
Container Tagssuse/pcp:5 , suse/pcp:5-36.5 , suse/pcp:5.3 , suse/pcp:5.3-36.5 , suse/pcp:5.3.7 , suse/pcp:5.3.7-36.5 , suse/pcp:latest
Container Release36.5
The following patches have been included in this update:
Advisory IDSUSE-RU-2018:2569-1
ReleasedFri Nov 2 19:00:18 2018
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1110700
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2018:2607-1
ReleasedWed Nov 7 15:42:48 2018
SummaryOptional update for gcc8
Typerecommended
Severitylow
References1084812,1084842,1087550,1094222,1102564
Description:


The GNU Compiler GCC 8 is being added to the Development Tools Module by this update.
The update also supplies gcc8 compatible libstdc++, libgcc_s1 and other gcc derived libraries for the Basesystem module of SUSE Linux Enterprise 15.
Various optimizers have been improved in GCC 8, several of bugs fixed, quite some new warnings added and the error pin-pointing and fix-suggestions have been greatly improved.
The GNU Compiler page for GCC 8 contains a summary of all the changes that have happened:
https://gcc.gnu.org/gcc-8/changes.html
Also changes needed or common pitfalls when porting software are described on:
https://gcc.gnu.org/gcc-8/porting_to.html


Advisory IDSUSE-SU-2018:2825-1
ReleasedMon Dec 3 15:35:02 2018
SummarySecurity update for pam
Typesecurity
Severityimportant
References1115640,CVE-2018-17953
Description:

This update for pam fixes the following issue:
Security issue fixed:


Advisory IDSUSE-SU-2018:2861-1
ReleasedThu Dec 6 14:32:01 2018
SummarySecurity update for ncurses
Typesecurity
Severityimportant
References1103320,1115929,CVE-2018-19211
Description:

This update for ncurses fixes the following issues:
Security issue fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2018:3044-1
ReleasedFri Dec 21 18:47:21 2018
SummarySecurity update for MozillaFirefox, mozilla-nspr and mozilla-nss
Typesecurity
Severityimportant
References1097410,1106873,1119069,1119105,CVE-2018-0495,CVE-2018-12384,CVE-2018-12404,CVE-2018-12405,CVE-2018-17466,CVE-2018-18492,CVE-2018-18493,CVE-2018-18494,CVE-2018-18498
Description:

This update for MozillaFirefox, mozilla-nss and mozilla-nspr fixes the following issues:
Issues fixed in MozillaFirefox:


Issues fixed in mozilla-nss:

Issues fixed in mozilla-nspr:


Advisory IDSUSE-RU-2019:6-1
ReleasedWed Jan 2 20:25:25 2019
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1099119,1099192
Description:



GCC 7 was updated to the GCC 7.4 release.


Advisory IDSUSE-RU-2019:44-1
ReleasedTue Jan 8 13:07:32 2019
SummaryRecommended update for acl
Typerecommended
Severitylow
References953659
Description:

This update for acl fixes the following issues:


Advisory IDSUSE-SU-2019:571-1
ReleasedThu Mar 7 18:13:46 2019
SummarySecurity update for file
Typesecurity
Severitymoderate
References1096974,1096984,1126117,1126118,1126119,CVE-2018-10360,CVE-2019-8905,CVE-2019-8906,CVE-2019-8907
Description:

This update for file fixes the following issues:
The following security vulnerabilities were addressed:


Advisory IDSUSE-SU-2019:788-1
ReleasedThu Mar 28 11:55:06 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1119687,CVE-2018-20346
Description:

This update for sqlite3 to version 3.27.2 fixes the following issue:
Security issue fixed:


Release notes: https://www.sqlite.org/releaselog/3_27_2.html


Advisory IDSUSE-RU-2019:905-1
ReleasedMon Apr 8 16:48:02 2019
SummaryRecommended update for gcc
Typerecommended
Severitymoderate
References1096008
Description:

This update for gcc fixes the following issues:


Advisory IDSUSE-RU-2019:1105-1
ReleasedTue Apr 30 12:10:58 2019
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1084842,1114592,1124644,1128794,1129389,1131264,SLE-6738
Description:

This update for gcc7 fixes the following issues:
Update to gcc-7-branch head (r270528).


Advisory IDSUSE-SU-2019:1127-1
ReleasedThu May 2 09:39:24 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1130325,1130326,CVE-2019-9936,CVE-2019-9937
Description:

This update for sqlite3 to version 3.28.0 fixes the following issues:
Security issues fixed:


Advisory IDSUSE-SU-2019:1368-1
ReleasedTue May 28 13:15:38 2019
SummaryRecommended update for sles12sp3-docker-image, sles12sp4-image, system-user-root
Typesecurity
Severityimportant
References1134524,CVE-2019-5021
Description:

This update for sles12sp3-docker-image, sles12sp4-image, system-user-root fixes the following issues:


Advisory IDSUSE-RU-2019:2142-1
ReleasedWed Aug 14 18:14:04 2019
SummaryRecommended update for mozilla-nspr, mozilla-nss
Typerecommended
Severitymoderate
References1141322
Description:


This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to NSS 3.45 (bsc#1141322) :


mozilla-nspr was updated to version 4.21


Advisory IDSUSE-SU-2019:2533-1
ReleasedThu Oct 3 15:02:50 2019
SummarySecurity update for sqlite3
Typesecurity
Severitymoderate
References1150137,CVE-2019-16168
Description:

This update for sqlite3 fixes the following issues:
Security issue fixed:


Advisory IDSUSE-SU-2019:2702-1
ReleasedWed Oct 16 18:41:30 2019
SummarySecurity update for gcc7
Typesecurity
Severitymoderate
References1071995,1141897,1142649,1148517,1149145,CVE-2019-14250,CVE-2019-15847
Description:

This update for gcc7 to r275405 fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:2730-1
ReleasedMon Oct 21 16:04:57 2019
SummarySecurity update for procps
Typesecurity
Severityimportant
References1092100,1121753,CVE-2018-1122,CVE-2018-1123,CVE-2018-1124,CVE-2018-1125,CVE-2018-1126
Description:

This update for procps fixes the following issues:
procps was updated to 3.3.15. (bsc#1092100)
Following security issues were fixed:



Also this non-security issue was fixed:

The update to 3.3.15 contains the following fixes:


Advisory IDSUSE-SU-2019:2997-1
ReleasedMon Nov 18 15:16:38 2019
SummarySecurity update for ncurses
Typesecurity
Severitymoderate
References1103320,1154036,1154037,CVE-2019-17594,CVE-2019-17595
Description:

This update for ncurses fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-SU-2019:3061-1
ReleasedMon Nov 25 17:34:22 2019
SummarySecurity update for gcc9
Typesecurity
Severitymoderate
References1114592,1135254,1141897,1142649,1142654,1148517,1149145,CVE-2019-14250,CVE-2019-15847,SLE-6533,SLE-6536
Description:



This update includes the GNU Compiler Collection 9.
A full changelog is provided by the GCC team on:
https://www.gnu.org/software/gcc/gcc-9/changes.html

The base system compiler libraries libgcc_s1, libstdc++6 and others are now built by the gcc 9 packages.
To use it, install 'gcc9' or 'gcc9-c++' or other compiler brands and use CC=gcc-9 / CXX=g++-9 during configuration for using it.

Security issues fixed:


Non-security issues fixed:


Advisory IDSUSE-SU-2019:3395-1
ReleasedMon Dec 30 14:05:06 2019
SummarySecurity update for mozilla-nspr, mozilla-nss
Typesecurity
Severitymoderate
References1141322,1158527,1159819,CVE-2018-18508,CVE-2019-11745,CVE-2019-17006
Description:

This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to NSS 3.47.1:
Security issues fixed:


mozilla-nspr was updated to version 4.23:


Advisory IDSUSE-RU-2020:10-1
ReleasedThu Jan 2 12:35:06 2020
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1146475
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-RU-2020:225-1
ReleasedFri Jan 24 06:49:07 2020
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1158830
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2020:395-1
ReleasedTue Feb 18 14:16:48 2020
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1160086
Description:


This update for gcc7 fixes the following issue:



Advisory IDSUSE-RU-2020:525-1
ReleasedFri Feb 28 11:49:36 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1164562
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2020:689-1
ReleasedFri Mar 13 17:09:01 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1166510
Description:


This update for PAM fixes the following issue:


Advisory IDSUSE-RU-2020:917-1
ReleasedFri Apr 3 15:02:25 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References1166510
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2020:948-1
ReleasedWed Apr 8 07:44:21 2020
SummarySecurity update for gmp, gnutls, libnettle
Typesecurity
Severitymoderate
References1152692,1155327,1166881,1168345,CVE-2020-11501
Description:

This update for gmp, gnutls, libnettle fixes the following issues:
Security issue fixed:


FIPS related bugfixes:


Advisory IDSUSE-RU-2020:1226-1
ReleasedFri May 8 10:51:05 2020
SummaryRecommended update for gcc9
Typerecommended
Severitymoderate
References1149995,1152590,1167898
Description:

This update for gcc9 fixes the following issues:
This update ships the GCC 9.3 release.


Advisory IDSUSE-SU-2020:1294-1
ReleasedMon May 18 07:38:36 2020
SummarySecurity update for file
Typesecurity
Severitymoderate
References1154661,1169512,CVE-2019-18218
Description:

This update for file fixes the following issues:
Security issues fixed:


Non-security issue fixed:


Advisory IDSUSE-RU-2020:1328-1
ReleasedMon May 18 17:16:04 2020
SummaryRecommended update for grep
Typerecommended
Severitymoderate
References1155271
Description:

This update for grep fixes the following issues:


Advisory IDSUSE-SU-2020:1677-1
ReleasedThu Jun 18 18:16:39 2020
SummarySecurity update for mozilla-nspr, mozilla-nss
Typesecurity
Severityimportant
References1159819,1169746,1171978,CVE-2019-17006,CVE-2020-12399
Description:

This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to version 3.53

Release notes: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.53_release_notes
mozilla-nspr to version 4.25


Advisory IDSUSE-RU-2020:2083-1
ReleasedThu Jul 30 10:27:59 2020
SummaryRecommended update for diffutils
Typerecommended
Severitymoderate
References1156913
Description:

This update for diffutils fixes the following issue:


Advisory IDSUSE-SU-2020:2947-1
ReleasedFri Oct 16 15:23:07 2020
SummarySecurity update for gcc10, nvptx-tools
Typesecurity
Severitymoderate
References1172798,1172846,1173972,1174753,1174817,1175168,CVE-2020-13844
Description:

This update for gcc10, nvptx-tools fixes the following issues:
This update provides the GCC10 compiler suite and runtime libraries.
The base SUSE Linux Enterprise libraries libgcc_s1, libstdc++6 are replaced by the gcc10 variants.
The new compiler variants are available with '-10' suffix, you can specify them via:
CC=gcc-10 CXX=g++-10
or similar commands.
For a detailed changelog check out https://gcc.gnu.org/gcc-10/changes.html
Changes in nvptx-tools:


Advisory IDSUSE-RU-2020:2958-1
ReleasedTue Oct 20 12:24:55 2020
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1158830
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2020:2983-1
ReleasedWed Oct 21 15:03:03 2020
SummaryRecommended update for file
Typerecommended
Severitymoderate
References1176123
Description:

This update for file fixes the following issues:


Advisory IDSUSE-SU-2020:3091-1
ReleasedThu Oct 29 16:35:37 2020
SummarySecurity update for MozillaThunderbird and mozilla-nspr
Typesecurity
Severityimportant
References1174230,1176384,1176756,1176899,1177977,CVE-2020-15673,CVE-2020-15676,CVE-2020-15677,CVE-2020-15678,CVE-2020-15683,CVE-2020-15969
Description:

This update for MozillaThunderbird and mozilla-nspr fixes the following issues:



Advisory IDSUSE-RU-2020:3462-1
ReleasedFri Nov 20 13:14:35 2020
SummaryRecommended update for pam and sudo
Typerecommended
Severitymoderate
References1174593,1177858,1178727
Description:

This update for pam and sudo fixes the following issue:
pam:


sudo:


Advisory IDSUSE-RU-2020:3620-1
ReleasedThu Dec 3 17:03:55 2020
SummaryRecommended update for pam
Typerecommended
Severitymoderate
References
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-SU-2020:3749-1
ReleasedThu Dec 10 14:39:28 2020
SummarySecurity update for gcc7
Typesecurity
Severitymoderate
References1150164,1161913,1167939,1172798,1178577,1178614,1178624,1178675,CVE-2020-13844
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-RU-2021:79-1
ReleasedTue Jan 12 10:49:34 2021
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1167939
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-RU-2021:220-1
ReleasedTue Jan 26 14:00:51 2021
SummaryRecommended update for keyutils
Typerecommended
Severitymoderate
References1180603
Description:

This update for keyutils fixes the following issues:


Advisory IDSUSE-RU-2021:293-1
ReleasedWed Feb 3 12:52:34 2021
SummaryRecommended update for gmp
Typerecommended
Severitymoderate
References1180603
Description:

This update for gmp fixes the following issues:


Advisory IDSUSE-OU-2021:339-1
ReleasedMon Feb 8 13:16:07 2021
SummaryOptional update for pam
Typeoptional
Severitylow
References
Description:

This update for pam fixes the following issues:


This patch is optional to be installed - it doesn't fix any bugs.


Advisory IDSUSE-RU-2021:596-1
ReleasedThu Feb 25 10:26:30 2021
SummaryRecommended update for gcc7
Typerecommended
Severitymoderate
References1181618
Description:

This update for gcc7 fixes the following issues:


Advisory IDSUSE-RU-2021:924-1
ReleasedTue Mar 23 10:00:49 2021
SummaryRecommended update for filesystem
Typerecommended
Severitymoderate
References1078466,1146705,1175519,1178775,1180020,1180083,1180596,1181011,1181831,1183094
Description:

This update for filesystem the following issues:


This update for systemd fixes the following issues:


Advisory IDSUSE-SU-2021:1007-1
ReleasedThu Apr 1 17:47:20 2021
SummarySecurity update for MozillaFirefox
Typesecurity
Severityimportant
References1183942,CVE-2021-23981,CVE-2021-23982,CVE-2021-23984,CVE-2021-23987
Description:

This update for MozillaFirefox fixes the following issues:


Advisory IDSUSE-RU-2021:1169-1
ReleasedTue Apr 13 15:01:42 2021
SummaryRecommended update for procps
Typerecommended
Severitylow
References1181976
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2021:1291-1
ReleasedWed Apr 21 14:04:06 2021
SummaryRecommended update for mpfr
Typerecommended
Severitymoderate
References1141190
Description:

This update for mpfr fixes the following issues:


Technical library fixes:


Advisory IDSUSE-RU-2021:1549-1
ReleasedMon May 10 13:48:00 2021
SummaryRecommended update for procps
Typerecommended
Severitymoderate
References1185417
Description:

This update for procps fixes the following issues:


Advisory IDSUSE-RU-2021:1643-1
ReleasedWed May 19 13:51:48 2021
SummaryRecommended update for pam
Typerecommended
Severityimportant
References1181443,1184358,1185562
Description:

This update for pam fixes the following issues:


Advisory IDSUSE-RU-2021:1861-1
ReleasedFri Jun 4 09:59:40 2021
SummaryRecommended update for gcc10
Typerecommended
Severitymoderate
References1029961,1106014,1178577,1178624,1178675,1182016
Description:

This update for gcc10 fixes the following issues:


Advisory IDSUSE-RU-2021:1926-1
ReleasedThu Jun 10 08:38:14 2021
SummaryRecommended update for gcc
Typerecommended
Severitymoderate
References1096677
Description:

This update for gcc fixes the following issues:


Advisory IDSUSE-RU-2021:2173-1
ReleasedMon Jun 28 14:59:45 2021
SummaryRecommended update for automake
Typerecommended
Severitymoderate
References1040589,1047218,1182604,1185540,1186049
Description:

This update for automake fixes the following issues:


This update for pcre fixes the following issues:

This update for brp-check-suse fixes the following issues:


Advisory IDSUSE-SU-2021:2320-1
ReleasedWed Jul 14 17:01:06 2021
SummarySecurity update for sqlite3
Typesecurity
Severityimportant
References1157818,1158812,1158958,1158959,1158960,1159491,1159715,1159847,1159850,1160309,1160438,1160439,1164719,1172091,1172115,1172234,1172236,1172240,1173641,928700,928701,CVE-2015-3414,CVE-2015-3415,CVE-2019-19244,CVE-2019-19317,CVE-2019-19603,CVE-2019-19645,CVE-2019-19646,CVE-2019-19880,CVE-2019-19923,CVE-2019-19924,CVE-2019-19925,CVE-2019-19926,CVE-2019-19959,CVE-2019-20218,CVE-2020-13434,CVE-2020-13435,CVE-2020-13630,CVE-2020-13631,CVE-2020-13632,CVE-2020-15358,CVE-2020-9327
Description:

This update for sqlite3 fixes the following issues:


Advisory IDSUSE-RU-2021:2627-1
ReleasedThu Aug 5 12:10:46 2021
SummaryRecommended maintenance update for systemd-default-settings
Typerecommended
Severitymoderate
References1188348
Description:

This update for systemd-default-settings fixes the following issue:


Advisory IDSUSE-RU-2021:2993-1
ReleasedThu Sep 9 14:31:33 2021
SummaryRecommended update for gcc
Typerecommended
Severitymoderate
References1185348
Description:

This update for gcc fixes the following issues:


Advisory IDSUSE-RU-2021:3001-1
ReleasedThu Sep 9 15:08:13 2021
SummaryRecommended update for netcfg
Typerecommended
Severitymoderate
References1189683
Description:

This update for netcfg fixes the following issues:


Advisory IDSUSE-RU-2021:3115-1
ReleasedThu Sep 16 14:04:26 2021
SummaryRecommended update for mozilla-nspr, mozilla-nss
Typerecommended
Severitymoderate
References1029961,1174697,1176206,1176934,1179382,1188891,CVE-2020-12400,CVE-2020-12401,CVE-2020-12403,CVE-2020-25648,CVE-2020-6829
Description:

This update for mozilla-nspr fixes the following issues:
mozilla-nspr was updated to version 4.32:



Mozilla NSS was updated to version 3.68:

update to NSS 3.67

update to NSS 3.66

update to NSS 3.65

update to NSS 3.64
disable_crypto_vsx.
  • bmo#1698320 - replace __builtin_cpu_supports('vsx') with
  • ppc_crypto_support() for clang.
  • bmo#1613235 - Add POWER ChaCha20 stream cipher vector
  • acceleration.
    Fixed in 3.63
    initialization to prevent build isses with GCC 4.8.
  • bmo#1683520 - [lib/freebl/ecl] P-384: allow zero scalars in dual
  • scalar multiplication.
  • bmo#1683520 - ECCKiila P521, change syntax of nested structs
  • initialization to prevent build isses with GCC 4.8.
  • bmo#1683520 - [lib/freebl/ecl] P-521: allow zero scalars in dual
  • scalar multiplication.
  • bmo#1696800 - HACL* update March 2021 - c95ab70fcb2bc21025d8845281bc4bc8987ca683.
  • bmo#1694214 - tstclnt can't enable middlebox compat mode.
  • bmo#1694392 - NSS does not work with PKCS #11 modules not supporting
  • profiles.
  • bmo#1685880 - Minor fix to prevent unused variable on early return.
  • bmo#1685880 - Fix for the gcc compiler version 7 to support setenv
  • with nss build.
  • bmo#1693217 - Increase nssckbi.h version number for March 2021 batch
  • of root CA changes, CA list version 2.48.
  • bmo#1692094 - Set email distrust after to 21-03-01 for Camerfirma's
  • 'Chambers of Commerce' and 'Global Chambersign' roots.
  • bmo#1618407 - Symantec root certs - Set CKA_NSS_EMAIL_DISTRUST_AFTER.
  • bmo#1693173 - Add GlobalSign R45, E45, R46, and E46 root certs to NSS.
  • bmo#1683738 - Add AC RAIZ FNMT-RCM SERVIDORES SEGUROS root cert to NSS.
  • bmo#1686854 - Remove GeoTrust PCA-G2 and VeriSign Universal root certs
  • from NSS.
  • bmo#1687822 - Turn off Websites trust bit for the โ€œStaat der
  • Nederlanden Root CA - G3โ€ root cert in NSS.
  • bmo#1692094 - Turn off Websites Trust Bit for 'Chambers of Commerce
  • Root - 2008' and 'Global Chambersign Root - 2008โ€™.
  • bmo#1694291 - Tracing fixes for ECH.

  • update to NSS 3.62
    can corrupt 'cachedCertTable'
  • bmo#1690583 - Fix CH padding extension size calculation
  • bmo#1690421 - Adjust 3.62 ABI report formatting for new libabigail
  • bmo#1690421 - Install packaged libabigail in docker-builds image
  • bmo#1689228 - Minor ECH -09 fixes for interop testing, fuzzing
  • bmo#1674819 - Fixup a51fae403328, enum type may be signed
  • bmo#1681585 - Add ECH support to selfserv
  • bmo#1681585 - Update ECH to Draft-09
  • bmo#1678398 - Add Export/Import functions for HPKE context
  • bmo#1678398 - Update HPKE to draft-07

  • update to NSS 3.61
    values under certain conditions.
  • bmo#1684300 - Fix default PBE iteration count when NSS is compiled
  • with NSS_DISABLE_DBM.
  • bmo#1651411 - Improve constant-timeness in RSA operations.
  • bmo#1677207 - Upgrade Google Test version to latest release.
  • bmo#1654332 - Add aarch64-make target to nss-try.

  • Update to NSS 3.60.1:
    Notable changes in NSS 3.60:
    Update to NSS 3.59.1:
    PKCS11 modules
    Update to NSS 3.59:
    Notable changes:

    Bugfixes
    root certs when SHA1 signatures are disabled.
  • bmo#1644209 - Fix broken SelectedCipherSuiteReplacer filter to
  • solve some test intermittents
  • bmo#1672703 - Tolerate the first CCS in TLS 1.3 to fix a regression in
  • our CVE-2020-25648 fix that broke purple-discord (boo#1179382)
  • bmo#1666891 - Support key wrap/unwrap with RSA-OAEP
  • bmo#1667989 - Fix gyp linking on Solaris
  • bmo#1668123 - Export CERT_AddCertToListHeadWithData and
  • CERT_AddCertToListTailWithData from libnss
  • bmo#1634584 - Set CKA_NSS_SERVER_DISTRUST_AFTER for Trustis FPS Root CA
  • bmo#1663091 - Remove unnecessary assertions in the streaming
  • ASN.1 decoder that affected decoding certain PKCS8 private keys when using NSS debug builds
  • bmo#670839 - Use ARM crypto extension for AES, SHA1 and SHA2 on MacOS.

  • update to NSS 3.58
    Bugs fixed:

    update to NSS 3.57

    update to NSS 3.56
    Notable changes
    detection.
  • bmo#1652729 - Add build flag to disable RC2 and relocate to
  • lib/freebl/deprecated.
  • bmo#1656429 - Correct RTT estimate used in 0-RTT anti-replay.
  • bmo#1588941 - Send empty certificate message when scheme selection
  • fails.
  • bmo#1652032 - Fix failure to build in Windows arm64 makefile
  • cross-compilation.
  • bmo#1625791 - Fix deadlock issue in nssSlot_IsTokenPresent.
  • bmo#1653975 - Fix 3.53 regression by setting 'all' as the default
  • makefile target.
  • bmo#1659792 - Fix broken libpkix tests with unexpired PayPal cert.
  • bmo#1659814 - Fix interop.sh failures with newer tls-interop
  • commit and dependencies.
  • bmo#1656519 - NSPR dependency updated to 4.28

  • update to NSS 3.55
    Notable changes
    Relevant Bugfixes

    update to NSS 3.54
    Notable changes


    Bugs fixed
    Root Certification Authority; C=TW' root.
  • bmo#1645199 - Remove AddTrust root certificates.
  • bmo#1641718 - Remove 'LuxTrust Global Root 2' root certificate.
  • bmo#1639987 - Remove 'Staat der Nederlanden Root CA - G2' root
  • certificate.
  • bmo#1618402 - Remove Symantec root certificates and disable email trust
  • bit.
  • bmo#1640516 - NSS 3.54 should depend on NSPR 4.26.
  • bmo#1642146 - Fix undefined reference to `PORT_ZAlloc_stub' in seed.c.
  • bmo#1642153 - Fix infinite recursion building NSS.
  • bmo#1642638 - Fix fuzzing assertion crash.
  • bmo#1642871 - Enable SSL_SendSessionTicket after resumption.
  • bmo#1643123 - Support SSL_ExportEarlyKeyingMaterial with External PSKs.
  • bmo#1643557 - Fix numerous compile warnings in NSS.
  • bmo#1644774 - SSL gtests to use ClearServerCache when resetting
  • self-encrypt keys.
  • bmo#1645479 - Don't use SECITEM_MakeItem in secutil.c.
  • bmo#1646520 - Stricter enforcement of ASN.1 INTEGER encoding.

  • Advisory IDSUSE-RU-2021:3182-1
    ReleasedTue Sep 21 17:04:26 2021
    SummaryRecommended update for file
    Typerecommended
    Severitymoderate
    References1189996
    Description:

    This update for file fixes the following issues:


    Advisory IDSUSE-SU-2021:3490-1
    ReleasedWed Oct 20 16:31:55 2021
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1190793,CVE-2021-39537
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2021:3494-1
    ReleasedWed Oct 20 16:48:46 2021
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1190052
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2021:3510-1
    ReleasedTue Oct 26 11:22:15 2021
    SummaryRecommended update for pam
    Typerecommended
    Severityimportant
    References1191987
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2021:3529-1
    ReleasedWed Oct 27 09:23:32 2021
    SummarySecurity update for pcre
    Typesecurity
    Severitymoderate
    References1172973,1172974,CVE-2019-20838,CVE-2020-14155
    Description:

    This update for pcre fixes the following issues:
    Update pcre to version 8.45:


    Advisory IDSUSE-RU-2021:3798-1
    ReleasedWed Nov 24 18:01:36 2021
    SummaryRecommended update for gcc7
    Typerecommended
    Severitymoderate
    References
    Description:



    This update for gcc7 fixes the following issues:


    Advisory IDSUSE-RU-2021:3799-1
    ReleasedWed Nov 24 18:07:54 2021
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1187153,1187273,1188623
    Description:

    This update for gcc11 fixes the following issues:
    The additional GNU compiler collection GCC 11 is provided:
    To select these compilers install the packages:


    to select them for building:

    The compiler baselibraries (libgcc_s1, libstdc++6 and others) are being replaced by the GCC 11 variants.


    Advisory IDSUSE-RU-2021:3891-1
    ReleasedFri Dec 3 10:21:49 2021
    SummaryRecommended update for keyutils
    Typerecommended
    Severitymoderate
    References1029961,1113013,1187654
    Description:

    This update for keyutils fixes the following issues:


    keyutils was updated to 1.6.3 (jsc#SLE-20016):

    Updated to 1.6:

    Updated to 1.5.11 (bsc#1113013)


    Advisory IDSUSE-SU-2021:3946-1
    ReleasedMon Dec 6 14:57:42 2021
    SummarySecurity update for gmp
    Typesecurity
    Severitymoderate
    References1192717,CVE-2021-43618
    Description:

    This update for gmp fixes the following issues:


    Advisory IDSUSE-RU-2022:692-1
    ReleasedThu Mar 3 15:46:47 2022
    SummaryRecommended update for filesystem
    Typerecommended
    Severitymoderate
    References1190447
    Description:

    This update for filesystem fixes the following issues:


    Advisory IDSUSE-RU-2022:789-1
    ReleasedThu Mar 10 11:22:05 2022
    SummaryRecommended update for update-alternatives
    Typerecommended
    Severitymoderate
    References1195654
    Description:

    This update for update-alternatives fixes the following issues:


    Advisory IDSUSE-RU-2022:808-1
    ReleasedFri Mar 11 06:07:58 2022
    SummaryRecommended update for procps
    Typerecommended
    Severitymoderate
    References1195468
    Description:

    This update for procps fixes the following issues:


    Advisory IDSUSE-RU-2022:861-1
    ReleasedTue Mar 15 23:31:21 2022
    SummaryRecommended update for openssl-1_1
    Typerecommended
    Severitymoderate
    References1182959,1195149,1195792,1195856
    Description:

    This update for openssl-1_1 fixes the following issues:
    openssl-1_1:

    glibc:
    linux-glibc-devel:

    libxcrypt:

    zlib:


    Advisory IDSUSE-RU-2022:936-1
    ReleasedTue Mar 22 18:10:17 2022
    SummaryRecommended update for filesystem and systemd-rpm-macros
    Typerecommended
    Severitymoderate
    References1196275,1196406
    Description:

    This update for filesystem and systemd-rpm-macros fixes the following issues:
    filesystem:


    systemd-rpm-macros:


    Advisory IDSUSE-RU-2022:1047-1
    ReleasedWed Mar 30 16:20:56 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1196093,1197024
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-RU-2022:1281-1
    ReleasedWed Apr 20 12:26:38 2022
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1196647
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2022:1409-1
    ReleasedTue Apr 26 12:54:57 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1195628,1196107
    Description:

    This update for gcc11 fixes the following issues:


    Advisory IDSUSE-RU-2022:1451-1
    ReleasedThu Apr 28 10:47:22 2022
    SummaryRecommended update for perl
    Typerecommended
    Severitymoderate
    References1193489
    Description:

    This update for perl fixes the following issues:


    Advisory IDSUSE-RU-2022:1655-1
    ReleasedFri May 13 15:36:10 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References1197794
    Description:

    This update for pam fixes the following issue:


    Advisory IDSUSE-RU-2022:1887-1
    ReleasedTue May 31 09:24:18 2022
    SummaryRecommended update for grep
    Typerecommended
    Severitymoderate
    References1040589
    Description:

    This update for grep fixes the following issues:


    Advisory IDSUSE-RU-2022:1899-1
    ReleasedWed Jun 1 10:43:22 2022
    SummaryRecommended update for libtirpc
    Typerecommended
    Severityimportant
    References1198176
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2022:2019-1
    ReleasedWed Jun 8 16:50:07 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1192951,1193659,1195283,1196861,1197065
    Description:

    This update for gcc11 fixes the following issues:
    Update to the GCC 11.3.0 release.


    Advisory IDSUSE-SU-2022:2294-1
    ReleasedWed Jul 6 13:34:15 2022
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1196025,1196026,1196168,1196169,1196171,1196784,CVE-2022-25235,CVE-2022-25236,CVE-2022-25313,CVE-2022-25314,CVE-2022-25315
    Description:

    This update for expat fixes the following issues:


    Advisory IDSUSE-SU-2022:2361-1
    ReleasedTue Jul 12 12:05:01 2022
    SummarySecurity update for pcre
    Typesecurity
    Severityimportant
    References1199232,CVE-2022-1586
    Description:

    This update for pcre fixes the following issues:


    Advisory IDSUSE-RU-2022:2406-1
    ReleasedFri Jul 15 11:49:01 2022
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1197718,1199140,1200334,1200855
    Description:

    This update for glibc fixes the following issues:


    This readds the s390 32bit glibc and libcrypt1 libraries (glibc-32bit, glibc-locale-base-32bit, libcrypt1-32bit).


    Advisory IDSUSE-SU-2022:2533-1
    ReleasedFri Jul 22 17:37:15 2022
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1192079,1192080,1192086,1192087,1192228,1198486,1200027,CVE-2022-31741
    Description:

    This update for mozilla-nss fixes the following issues:
    Various FIPS 140-3 related fixes were backported from SUSE Linux Enterprise 15 SP4:


    Version update to NSS 3.79:

    Version update to NSS 3.78.1:

    Version update to NSS 3.78:

    Version update to NSS 3.77:

    Version update to NSS 3.76.1

    Version update to NSS 3.75

    Version update to NSS 3.74


    Version update to NSS 3.73.1:

    Version update to NSS 3.73

    Fixed MFSA 2021-51 (bsc#1193170) CVE-2021-43527: Memory corruption via DER-encoded DSA and RSA-PSS signatures
    Version update to NSS 3.72

    Version update to NSS 3.71

    Version update to NSS 3.70

    Version update to NSS 3.69.1:

    NSS 3.69:

    Version Update to 3.68.4 (bsc#1200027)


    Mozilla NSPR was updated to version 4.34:


    Advisory IDSUSE-SU-2022:2595-1
    ReleasedFri Jul 29 16:00:42 2022
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1192079,1192080,1192086,1192087,1192228,1198486,1200027,CVE-2022-31741
    Description:

    This update for mozilla-nss fixes the following issues:
    Various FIPS 140-3 related fixes were backported from SUSE Linux Enterprise 15 SP4:


    Version update to NSS 3.79:

    Version update to NSS 3.78.1:

    Version update to NSS 3.78:

    Version update to NSS 3.77:

    Version update to NSS 3.76.1

    Version update to NSS 3.75

    Version update to NSS 3.74


    Version update to NSS 3.73.1:

    Version update to NSS 3.73

    Fixed MFSA 2021-51 (bsc#1193170) CVE-2021-43527: Memory corruption via DER-encoded DSA and RSA-PSS signatures
    Version update to NSS 3.72

    Version update to NSS 3.71

    Version update to NSS 3.70

    Version update to NSS 3.69.1:

    NSS 3.69:

    Version Update to 3.68.4 (bsc#1200027)


    Advisory IDSUSE-SU-2022:2632-1
    ReleasedWed Aug 3 09:51:00 2022
    SummarySecurity update for permissions
    Typesecurity
    Severityimportant
    References1198720,1200747,1201385
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-SU-2022:2717-1
    ReleasedTue Aug 9 12:54:16 2022
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1198627,CVE-2022-29458
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2022:2796-1
    ReleasedFri Aug 12 14:34:31 2022
    SummaryRecommended update for jitterentropy
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for jitterentropy fixes the following issues:
    jitterentropy is included in version 3.4.0 (jsc#SLE-24941):
    This is a FIPS 140-3 / NIST 800-90b compliant userspace jitter entropy generator library, used by other FIPS libraries.


    Advisory IDSUSE-RU-2022:2939-1
    ReleasedMon Aug 29 14:49:17 2022
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1201298,1202645
    Description:

    This update for mozilla-nss fixes the following issues:
    Update to NSS 3.79.1 (bsc#1202645)



    Advisory IDSUSE-RU-2022:2944-1
    ReleasedWed Aug 31 05:39:14 2022
    SummaryRecommended update for procps
    Typerecommended
    Severityimportant
    References1181475
    Description:

    This update for procps fixes the following issues:


    Advisory IDSUSE-RU-2022:3127-1
    ReleasedWed Sep 7 04:36:10 2022
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1198752,1200800
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-RU-2022:3262-1
    ReleasedTue Sep 13 15:34:29 2022
    SummaryRecommended update for gcc11
    Typerecommended
    Severitymoderate
    References1199140
    Description:


    This update for gcc11 ships some missing 32bit libraries for s390x. (bsc#1199140)


    Advisory IDSUSE-SU-2022:3271-1
    ReleasedWed Sep 14 06:45:39 2022
    SummarySecurity update for perl
    Typesecurity
    Severitymoderate
    References1047178,CVE-2017-6512
    Description:

    This update for perl fixes the following issues:


    Advisory IDSUSE-SU-2022:3305-1
    ReleasedMon Sep 19 11:45:57 2022
    SummarySecurity update for libtirpc
    Typesecurity
    Severityimportant
    References1201680,CVE-2021-46828
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-SU-2022:3307-1
    ReleasedMon Sep 19 13:26:51 2022
    SummarySecurity update for sqlite3
    Typesecurity
    Severitymoderate
    References1189802,1195773,1201783,CVE-2021-36690,CVE-2022-35737
    Description:

    This update for sqlite3 fixes the following issues:


    Advisory IDSUSE-RU-2022:3328-1
    ReleasedWed Sep 21 12:48:56 2022
    SummaryRecommended update for jitterentropy
    Typerecommended
    Severitymoderate
    References1202870
    Description:

    This update for jitterentropy fixes the following issues:


    Advisory IDSUSE-SU-2022:3353-1
    ReleasedFri Sep 23 15:23:40 2022
    SummarySecurity update for permissions
    Typesecurity
    Severitymoderate
    References1203018,CVE-2022-31252
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-SU-2022:3489-1
    ReleasedSat Oct 1 13:35:24 2022
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1203438,CVE-2022-40674
    Description:

    This update for expat fixes the following issues:


    Advisory IDSUSE-RU-2022:3555-1
    ReleasedMon Oct 10 14:05:12 2022
    SummaryRecommended update for aaa_base
    Typerecommended
    Severityimportant
    References1199492
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-RU-2022:3787-1
    ReleasedThu Oct 27 04:41:09 2022
    SummaryRecommended update for permissions
    Typerecommended
    Severityimportant
    References1194047,1203911
    Description:

    This update for permissions fixes the following issues:


    Advisory IDSUSE-SU-2022:3806-1
    ReleasedThu Oct 27 17:21:11 2022
    SummarySecurity update for dbus-1
    Typesecurity
    Severityimportant
    References1087072,1204111,1204112,1204113,CVE-2022-42010,CVE-2022-42011,CVE-2022-42012
    Description:

    This update for dbus-1 fixes the following issues:
    - CVE-2022-42010: Fixed potential crash that could be triggered by an invalid signature (bsc#1204111). - CVE-2022-42011: Fixed an out of bounds read caused by a fixed length array (bsc#1204112). - CVE-2022-42012: Fixed a use-after-free that could be trigged by a message in non-native endianness with out-of-band Unix file descriptor (bsc#1204113).
    Bugfixes:
    - Disable asserts (bsc#1087072).


    Advisory IDSUSE-RU-2022:3873-1
    ReleasedFri Nov 4 14:58:08 2022
    SummaryRecommended update for mozilla-nspr, mozilla-nss
    Typerecommended
    Severitymoderate
    References1191546,1198980,1201298,1202870,1204729
    Description:

    This update for mozilla-nspr, mozilla-nss fixes the following issues:
    mozilla-nspr was updated to version 4.34.1:


    mozilla-nss was updated to NSS 3.79.2 (bsc#1204729):

    Other fixes that were applied:


    Advisory IDSUSE-SU-2022:3884-1
    ReleasedMon Nov 7 10:59:26 2022
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1204708,CVE-2022-43680
    Description:

    This update for expat fixes the following issues:
    - CVE-2022-43680: Fixed use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate (bsc#1204708).


    Advisory IDSUSE-RU-2022:3910-1
    ReleasedTue Nov 8 13:05:04 2022
    SummaryRecommended update for pam
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for pam fixes the following issue:


    Advisory IDSUSE-RU-2022:3958-1
    ReleasedFri Nov 11 15:20:45 2022
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1191546,1198980,1201298,1202870,1204729
    Description:

    This update for mozilla-nss fixes the following issues:
    mozilla-nss was updated to NSS 3.79.2 (bsc#1204729)



    Advisory IDSUSE-SU-2022:4081-1
    ReleasedFri Nov 18 15:40:46 2022
    SummarySecurity update for dpkg
    Typesecurity
    Severitylow
    References1199944,CVE-2022-1664
    Description:

    This update for dpkg fixes the following issues:


    Advisory IDSUSE-RU-2022:4135-1
    ReleasedMon Nov 21 00:13:40 2022
    SummaryRecommended update for libeconf
    Typerecommended
    Severitymoderate
    References1198165
    Description:

    This update for libeconf fixes the following issues:



    Advisory IDSUSE-RU-2022:4256-1
    ReleasedMon Nov 28 12:36:32 2022
    SummaryRecommended update for gcc12
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for gcc12 fixes the following issues:
    This update ship the GCC 12 compiler suite and its base libraries.
    The compiler baselibraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 11 ones.
    The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP3 and SP4, and provided in the 'Development Tools' module.
    The Go, D and Ada language compiler parts are available unsupported via the PackageHub repositories.
    To use gcc12 compilers use:


    For a full changelog with all new GCC12 features, check out
    https://gcc.gnu.org/gcc-12/changes.html


    Advisory IDSUSE-RU-2022:4492-1
    ReleasedWed Dec 14 13:52:39 2022
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1191546,1198980,1201298
    Description:

    This update for mozilla-nss fixes the following issues:


    Advisory IDSUSE-SU-2022:4628-1
    ReleasedWed Dec 28 09:23:13 2022
    SummarySecurity update for sqlite3
    Typesecurity
    Severitymoderate
    References1206337,CVE-2022-46908
    Description:

    This update for sqlite3 fixes the following issues:


    Advisory IDSUSE-RU-2023:48-1
    ReleasedMon Jan 9 10:37:54 2023
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1199467
    Description:

    This update for libtirpc fixes the following issues:


    Advisory IDSUSE-SU-2023:119-1
    ReleasedFri Jan 20 10:28:07 2023
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1204272,1207038,CVE-2022-23491,CVE-2022-3479
    Description:

    This update for mozilla-nss fixes the following issues:


    Advisory IDSUSE-RU-2023:181-1
    ReleasedThu Jan 26 21:55:43 2023
    SummaryRecommended update for procps
    Typerecommended
    Severitylow
    References1206412
    Description:

    This update for procps fixes the following issues:


    Advisory IDSUSE-SU-2023:434-1
    ReleasedThu Feb 16 09:08:05 2023
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1208138,CVE-2023-0767
    Description:

    This update for mozilla-nss fixes the following issues:
    Updated to NSS 3.79.4 (bsc#1208138):
    - CVE-2023-0767: Fixed handling of unknown PKCS#12 safe bag types.


    Advisory IDSUSE-RU-2023:617-1
    ReleasedFri Mar 3 16:49:06 2023
    SummaryRecommended update for jitterentropy
    Typerecommended
    Severitymoderate
    References1207789
    Description:

    This update for jitterentropy fixes the following issues:


    Advisory IDSUSE-RU-2023:709-1
    ReleasedFri Mar 10 16:04:41 2023
    SummaryRecommended update for console-setup
    Typerecommended
    Severitymoderate
    References1202853
    Description:

    This update for console-setup and kbd fixes the following issue:


    Advisory IDSUSE-RU-2023:776-1
    ReleasedThu Mar 16 17:29:23 2023
    SummaryRecommended update for gcc12
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for gcc12 fixes the following issues:
    This update ships gcc12 also to the SUSE Linux Enterprise 15 SP1 LTSS and 15 SP2 LTSS products.
    SUSE Linux Enterprise 15 SP3 and SP4 get only refreshed builds without changes

    This update ship the GCC 12 compiler suite and its base libraries.
    The compiler baselibraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 11 ones.
    The new compilers for C, C++, and Fortran are provided in the SUSE Linux Enterprise Module for Development Tools.
    To use gcc12 compilers use:


    For a full changelog with all new GCC12 features, check out
    https://gcc.gnu.org/gcc-12/changes.html


    Advisory IDSUSE-RU-2023:1939-1
    ReleasedFri Apr 21 11:14:30 2023
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1191546,1207209,1208242,1208999
    Description:

    This update for mozilla-nss fixes the following issues:


    Advisory IDSUSE-RU-2023:2104-1
    ReleasedThu May 4 21:05:30 2023
    SummaryRecommended update for procps
    Typerecommended
    Severitymoderate
    References1209122
    Description:

    This update for procps fixes the following issue:


    Advisory IDSUSE-SU-2023:2111-1
    ReleasedFri May 5 14:34:00 2023
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1210434,CVE-2023-29491
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2023:2307-1
    ReleasedMon May 29 10:29:49 2023
    SummaryRecommended update for kbd
    Typerecommended
    Severitylow
    References1210702
    Description:

    This update for kbd fixes the following issue:


    Advisory IDSUSE-RU-2023:2625-1
    ReleasedFri Jun 23 17:16:11 2023
    SummaryRecommended update for gcc12
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for gcc12 fixes the following issues:


    * includes regression and other bug fixes


    Advisory IDSUSE-SU-2023:2765-1
    ReleasedMon Jul 3 20:28:14 2023
    SummarySecurity update for libcap
    Typesecurity
    Severitymoderate
    References1211418,1211419,CVE-2023-2602,CVE-2023-2603
    Description:

    This update for libcap fixes the following issues:


    Advisory IDSUSE-RU-2023:2788-1
    ReleasedThu Jul 6 11:51:02 2023
    SummaryRecommended update for mozilla-nspr, mozilla-nss
    Typerecommended
    Severitymoderate
    References1185116,1202118
    Description:

    This update for mozilla-nspr, mozilla-nss fixes the following issues:
    mozilla-nspr was updated to version 4.35


    mozilla-nss was update to NSS 3.90:


    update to NSS 3.89.1

    update to NSS 3.89

    update to NSS 3.88.1

    update to NSS 3.88

    update to NSS 3.87

    update to NSS 3.86

    update to NSS 3.85

    update to NSS 3.84
    update to NSS 3.83

    update to NSS 3.82

    update to NSS 3.81



    update to NSS 3.80
    by allocating it on initialization. Replaced redundant code with assert. Debug builds: Added buffer freeing/allocation for each record.
  • Mark 3.79 as an ESR release.
  • Bump nssckbi version number for June.
  • Remove Hellenic Academic 2011 Root.
  • Add E-Tugra Roots.
  • Add Certainly Roots.
  • Add DigitCert Roots.
  • Protect SFTKSlot needLogin with slotLock.
  • Compare signature and signatureAlgorithm fields in legacy certificate verifier.
  • Uninitialized value in cert_VerifyCertChainOld.
  • Unchecked return code in sec_DecodeSigAlg.
  • Uninitialized value in cert_ComputeCertType.
  • Avoid data race on primary password change.
  • Replace ppc64 dcbzl intrinisic.
  • Allow LDFLAGS override in makefile builds.

  • Advisory IDSUSE-RU-2023:2814-1
    ReleasedWed Jul 12 22:05:25 2023
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1185116,1202118
    Description:

    This update for mozilla-nss fixes the following issues:
    mozilla-nss was updated to NSS 3.90:



    update to NSS 3.89.1

    update to NSS 3.89

    update to NSS 3.88.1

    update to NSS 3.88

    update to NSS 3.87

    update to NSS 3.86

    update to NSS 3.85

    update to NSS 3.84

    update to NSS 3.83
    with retry configs in EncryptedExtensions and if not accepting ECH. Changed config setting behavior to skip configs with unsupported mandatory extensions instead of failing
  • Added ECH client support to BoGo shim. Changed
  • CHInner creation to skip TLS 1.2 only extensions to comply with BoGo
  • Added ECH server support to BoGo shim. Fixed NSS ECH server accept_confirmation bugs
  • Update BoGo tests to recent BoringSSL version
  • Bump minimum NSPR version to 4.34.1

  • update to NSS 3.82

    update to NSS 3.81



    update to NSS 3.80
    by allocating it on initialization. Replaced redundant code with assert. Debug builds: Added buffer freeing/allocation for each record.
  • Mark 3.79 as an ESR release.
  • Bump nssckbi version number for June.
  • Remove Hellenic Academic 2011 Root.
  • Add E-Tugra Roots.
  • Add Certainly Roots.
  • Add DigitCert Roots.
  • Protect SFTKSlot needLogin with slotLock.
  • Compare signature and signatureAlgorithm fields in legacy certificate verifier.
  • Uninitialized value in cert_VerifyCertChainOld.
  • Unchecked return code in sec_DecodeSigAlg.
  • Uninitialized value in cert_ComputeCertType.
  • Avoid data race on primary password change.
  • Replace ppc64 dcbzl intrinisic.
  • Allow LDFLAGS override in makefile builds.

  • Advisory IDSUSE-RU-2023:2827-1
    ReleasedFri Jul 14 11:27:47 2023
    SummaryRecommended update for libxml2
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2023:2847-1
    ReleasedMon Jul 17 08:40:42 2023
    SummaryRecommended update for audit
    Typerecommended
    Severitymoderate
    References1210004
    Description:

    This update for audit fixes the following issues:


    Advisory IDSUSE-SU-2023:2877-1
    ReleasedWed Jul 19 09:43:42 2023
    SummarySecurity update for dbus-1
    Typesecurity
    Severitymoderate
    References1212126,CVE-2023-34969
    Description:

    This update for dbus-1 fixes the following issues:


    Advisory IDSUSE-SU-2023:2882-1
    ReleasedWed Jul 19 11:49:39 2023
    SummarySecurity update for perl
    Typesecurity
    Severityimportant
    References1210999,CVE-2023-31484
    Description:

    This update for perl fixes the following issues:

    - CVE-2023-31484: Enable TLS cert verification in CPAN (bsc#1210999).


    Advisory IDSUSE-RU-2023:2966-1
    ReleasedTue Jul 25 14:26:14 2023
    SummaryRecommended update for libxml2
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-RU-2023:3410-1
    ReleasedThu Aug 24 06:56:32 2023
    SummaryRecommended update for audit
    Typerecommended
    Severitymoderate
    References1201519,1204844
    Description:

    This update for audit fixes the following issues:


    Advisory IDSUSE-SU-2023:3440-1
    ReleasedMon Aug 28 08:57:10 2023
    SummarySecurity update for gawk
    Typesecurity
    Severitylow
    References1214025,CVE-2023-4156
    Description:

    This update for gawk fixes the following issues:


    Advisory IDSUSE-SU-2023:3472-1
    ReleasedTue Aug 29 10:55:16 2023
    SummarySecurity update for procps
    Typesecurity
    Severitylow
    References1214290,CVE-2023-4016
    Description:

    This update for procps fixes the following issues:
    - CVE-2023-4016: Fixed ps buffer overflow (bsc#1214290).


    Advisory IDSUSE-RU-2023:3611-1
    ReleasedFri Sep 15 09:28:36 2023
    SummaryRecommended update for sysuser-tools
    Typerecommended
    Severitymoderate
    References1195391,1205161,1207778,1213240,1214140
    Description:

    This update for sysuser-tools fixes the following issues:


    Advisory IDSUSE-SU-2023:3661-1
    ReleasedMon Sep 18 21:44:09 2023
    SummarySecurity update for gcc12
    Typesecurity
    Severityimportant
    References1214052,CVE-2023-4039
    Description:

    This update for gcc12 fixes the following issues:


    Advisory IDSUSE-SU-2023:3666-1
    ReleasedMon Sep 18 21:52:18 2023
    SummarySecurity update for libxml2
    Typesecurity
    Severityimportant
    References1214768,CVE-2023-39615
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-SU-2023:3686-1
    ReleasedTue Sep 19 17:23:03 2023
    SummarySecurity update for gcc7
    Typesecurity
    Severityimportant
    References1195517,1196861,1204505,1205145,1214052,CVE-2023-4039
    Description:

    This update for gcc7 fixes the following issues:
    Security issue fixed:


    Other fixes:


    Advisory IDSUSE-SU-2023:3954-1
    ReleasedTue Oct 3 20:09:47 2023
    SummarySecurity update for libeconf
    Typesecurity
    Severityimportant
    References1211078,CVE-2023-22652,CVE-2023-30078,CVE-2023-30079,CVE-2023-32181
    Description:

    This update for libeconf fixes the following issues:
    Update to version 0.5.2.


    Advisory IDSUSE-RU-2023:4154-1
    ReleasedFri Oct 20 19:33:25 2023
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1107342,1215434
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2023:4162-1
    ReleasedMon Oct 23 15:33:03 2023
    SummarySecurity update for gcc13
    Typesecurity
    Severityimportant
    References1206480,1206684,1210557,1211427,1212101,1213915,1214052,1214460,CVE-2023-4039
    Description:

    This update for gcc13 fixes the following issues:
    This update ship the GCC 13.2 compiler suite and its base libraries.
    The compiler base libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 12 ones.
    The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP4 and SP5, and provided in the 'Development Tools' module.
    The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
    To use gcc13 compilers use:


    For a full changelog with all new GCC13 features, check out
    https://gcc.gnu.org/gcc-13/changes.html

    Detailed changes:




    Advisory IDSUSE-SU-2023:4215-1
    ReleasedThu Oct 26 12:19:25 2023
    SummarySecurity update for zlib
    Typesecurity
    Severitymoderate
    References1216378,CVE-2023-45853
    Description:

    This update for zlib fixes the following issues:


    Advisory IDSUSE-RU-2023:4310-1
    ReleasedTue Oct 31 14:10:47 2023
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1196647
    Description:

    This Update for libtirpc to 1.3.4, fixing the following issues: Update to 1.3.4 (bsc#1199467)
    * binddynport.c honor ip_local_reserved_ports - replaces: binddynport-honor-ip_local_reserved_ports.patch * gss-api: expose gss major/minor error in authgss_refresh() * rpcb_clnt.c: Eliminate double frees in delete_cache() * rpcb_clnt.c: memory leak in destroy_addr * portmapper: allow TCP-only portmapper * getnetconfigent: avoid potential DoS issue by removing unnecessary sleep * clnt_raw.c: fix a possible null pointer dereference * bindresvport.c: fix a potential resource leakage
    Update to 1.3.3:


    Update to 1.3.2:

    Update to 1.3.1:


    Advisory IDSUSE-SU-2023:4458-1
    ReleasedThu Nov 16 14:38:48 2023
    SummarySecurity update for gcc13
    Typesecurity
    Severityimportant
    References1206480,1206684,1210557,1211427,1212101,1213915,1214052,1214460,1215427,1216664,CVE-2023-4039
    Description:

    This update for gcc13 fixes the following issues:
    This update ship the GCC 13.2 compiler suite and its base libraries.
    The compiler base libraries are provided for all SUSE Linux Enterprise 15 versions and replace the same named GCC 12 ones.
    The new compilers for C, C++, and Fortran are provided for SUSE Linux Enterprise 15 SP4 and SP5, and provided in the 'Development Tools' module.
    The Go, D, Ada and Modula 2 language compiler parts are available unsupported via the PackageHub repositories.
    To use gcc13 compilers use:


    For a full changelog with all new GCC13 features, check out
    https://gcc.gnu.org/gcc-13/changes.html

    Detailed changes:




    Advisory IDSUSE-SU-2023:4504-1
    ReleasedTue Nov 21 13:27:50 2023
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1216129,CVE-2023-45322
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-SU-2023:4619-1
    ReleasedThu Nov 30 10:13:52 2023
    SummarySecurity update for sqlite3
    Typesecurity
    Severityimportant
    References1210660,CVE-2023-2137
    Description:

    This update for sqlite3 fixes the following issues:


    Advisory IDSUSE-RU-2023:4671-1
    ReleasedWed Dec 6 14:33:41 2023
    SummaryRecommended update for man
    Typerecommended
    Severitymoderate
    References
    Description:


    This update of man fixes the following problem:


    Advisory IDSUSE-RU-2023:4723-1
    ReleasedTue Dec 12 09:57:51 2023
    SummaryRecommended update for libtirpc
    Typerecommended
    Severitymoderate
    References1216862
    Description:

    This update for libtirpc fixes the following issue:


    Advisory IDSUSE-SU-2023:4891-1
    ReleasedMon Dec 18 16:31:49 2023
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1201384,1218014,CVE-2023-50495
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2024:11-1
    ReleasedTue Jan 2 13:24:52 2024
    SummaryRecommended update for procps
    Typerecommended
    Severitymoderate
    References1029961,1158830,1206798,1209122
    Description:

    This update for procps fixes the following issues:




    * library: Incremented to 8:3:0 (no removals or additions, internal changes only) * all: properly handle utf8 cmdline translations * kill: Pass int to signalled process * pgrep: Pass int to signalled process * pgrep: Check sanity of SG_ARG_MAX * pgrep: Add older than selection * pidof: Quiet mode * pidof: show worker threads * ps.1: Mention stime alias * ps: check also match on truncated 16 char comm names * ps: Add exe output option * ps: A lot more sorting available * pwait: New command waits for a process * sysctl: Match systemd directory order * sysctl: Document directory order * top: ensure config file backward compatibility * top: add command line 'e' for symmetry with 'E' * top: add '4' toggle for two abreast cpu display * top: add '!' toggle for combining multiple cpus * top: fix potential SEGV involving -p switch * vmstat: Wide mode gives wider proc columns * watch: Add environment variable for interval * watch: Add no linewrap option * watch: Support more colors * free,uptime,slabtop: complain about extra ops




    * library: Increment to 8:2:0
    No removals or functions Internal changes only, so revision is incremented. Previous version should have been 8:1:0 not 8:0:1
    * docs: Use correct symbols for -h option in free.1 * docs: ps.1 now warns about command name length * docs: install translated man pages * pgrep: Match on runstate * snice: Fix matching on pid * top: can now exploit 256-color terminals * top: preserves 'other filters' in configuration file * top: can now collapse/expand forest view children * top: parent %CPU time includes collapsed children * top: improve xterm support for vim navigation keys * top: avoid segmentation fault at program termination * 'ps -C' does not allow anymore an argument longer than 15 characters (bsc#1158830)


    Advisory IDSUSE-RU-2024:26-1
    ReleasedThu Jan 4 11:15:24 2024
    SummaryRecommended update for mozilla-nss
    Typerecommended
    Severitymoderate
    References1214980
    Description:

    This update for mozilla-nss fixes the following issues:
    Mozilla NSS was updated to NSS 3.90.1


    Advisory IDSUSE-RU-2024:62-1
    ReleasedMon Jan 8 11:44:47 2024
    SummaryRecommended update for libxcrypt
    Typerecommended
    Severitymoderate
    References1215496
    Description:

    This update for libxcrypt fixes the following issues:


    Advisory IDSUSE-SU-2024:136-1
    ReleasedThu Jan 18 09:53:47 2024
    SummarySecurity update for pam
    Typesecurity
    Severitymoderate
    References1217000,1218475,CVE-2024-22365
    Description:

    This update for pam fixes the following issues:


    Advisory IDSUSE-SU-2024:238-1
    ReleasedFri Jan 26 10:56:41 2024
    SummarySecurity update for cpio
    Typesecurity
    Severitymoderate
    References1218571,CVE-2023-7207
    Description:

    This update for cpio fixes the following issues:


    Advisory IDSUSE-RU-2024:303-1
    ReleasedThu Feb 1 15:21:30 2024
    SummaryRecommended update for gcc7
    Typerecommended
    Severitymoderate
    References1216488
    Description:

    This update for gcc7 fixes the following issues:


    Advisory IDSUSE-RU-2024:322-1
    ReleasedFri Feb 2 15:13:26 2024
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1107342,1215434
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2024:555-1
    ReleasedTue Feb 20 17:22:17 2024
    SummarySecurity update for libxml2
    Typesecurity
    Severitymoderate
    References1219576,CVE-2024-25062
    Description:

    This update for libxml2 fixes the following issues:


    Advisory IDSUSE-SU-2024:597-1
    ReleasedThu Feb 22 20:07:11 2024
    SummarySecurity update for mozilla-nss
    Typesecurity
    Severityimportant
    References1216198,CVE-2023-5388
    Description:

    This update for mozilla-nss fixes the following issues:
    Update to NSS 3.90.2:


    Advisory IDSUSE-RU-2024:615-1
    ReleasedMon Feb 26 11:32:32 2024
    SummaryRecommended update for netcfg
    Typerecommended
    Severitymoderate
    References1211886
    Description:

    This update for netcfg fixes the following issues:


    Advisory IDSUSE-RU-2024:641-1
    ReleasedWed Feb 28 09:13:19 2024
    SummaryRecommended update for gcc7
    Typerecommended
    Severitymoderate
    References1214934
    Description:

    This update for gcc7 fixes the following issues:


    Advisory IDSUSE-SU-2024:305-1
    ReleasedMon Mar 11 14:15:37 2024
    SummarySecurity update for cpio
    Typesecurity
    Severitymoderate
    References1218571,1219238,CVE-2023-7207
    Description:

    This update for cpio fixes the following issues:


    Advisory IDSUSE-RU-2024:849-1
    ReleasedTue Mar 12 15:38:03 2024
    SummaryRecommended update for cloud-init
    Typerecommended
    Severityimportant
    References1198533,1214169,1218952
    Description:

    This update for cloud-init contains the following fixes:





    Advisory IDSUSE-RU-2024:861-1
    ReleasedWed Mar 13 09:12:30 2024
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1218232
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-RU-2024:907-1
    ReleasedFri Mar 15 08:57:38 2024
    SummaryRecommended update for audit
    Typerecommended
    Severitymoderate
    References1215377
    Description:

    This update for audit fixes the following issue:


    Advisory IDSUSE-RU-2024:929-1
    ReleasedTue Mar 19 06:36:24 2024
    SummaryRecommended update for coreutils
    Typerecommended
    Severitymoderate
    References1219321
    Description:

    This update for coreutils fixes the following issues:


    Advisory IDSUSE-SU-2024:1129-1
    ReleasedMon Apr 8 09:12:08 2024
    SummarySecurity update for expat
    Typesecurity
    Severityimportant
    References1219559,1221289,CVE-2023-52425,CVE-2024-28757
    Description:

    This update for expat fixes the following issues:


    Advisory IDSUSE-SU-2024:1133-1
    ReleasedMon Apr 8 11:29:02 2024
    SummarySecurity update for ncurses
    Typesecurity
    Severitymoderate
    References1220061,CVE-2023-45918
    Description:

    This update for ncurses fixes the following issues:


    Advisory IDSUSE-RU-2024:1253-1
    ReleasedFri Apr 12 08:15:18 2024
    SummaryRecommended update for gcc13
    Typerecommended
    Severitymoderate
    References1210959,1214934,1217450,1217667,1218492,1219031,1219520,1220724,1221239
    Description:

    This update for gcc13 fixes the following issues:


    Advisory IDSUSE-RU-2024:1398-1
    ReleasedTue Apr 23 13:58:22 2024
    SummaryRecommended update for systemd-default-settings
    Typerecommended
    Severitymoderate
    References
    Description:

    This update for systemd-default-settings fixes the following issues:


    Advisory IDSUSE-RU-2024:1487-1
    ReleasedThu May 2 10:43:53 2024
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1211721,1221361,1221407,1222547
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-RU-2024:1665-1
    ReleasedThu May 16 08:00:09 2024
    SummaryRecommended update for coreutils
    Typerecommended
    Severitymoderate
    References1221632
    Description:

    This update for coreutils fixes the following issues:


    Advisory IDSUSE-SU-2024:1762-1
    ReleasedWed May 22 16:14:17 2024
    SummarySecurity update for perl
    Typesecurity
    Severityimportant
    References1082216,1082233,1213638,CVE-2018-6798,CVE-2018-6913
    Description:

    This update for perl fixes the following issues:
    Security issues fixed:


    Non-security issue fixed:


    Advisory IDSUSE-RU-2024:1876-1
    ReleasedFri May 31 06:47:32 2024
    SummaryRecommended update for aaa_base
    Typerecommended
    Severitymoderate
    References1221361
    Description:

    This update for aaa_base fixes the following issues:


    Advisory IDSUSE-SU-2024:1943-1
    ReleasedFri Jun 7 17:04:06 2024
    SummarySecurity update for util-linux
    Typesecurity
    Severityimportant
    References1218609,1220117,1221831,1223605,CVE-2024-28085
    Description:

    This update for util-linux fixes the following issues:


    Advisory IDSUSE-RU-2024:1954-1
    ReleasedFri Jun 7 18:01:06 2024
    SummaryRecommended update for glibc
    Typerecommended
    Severitymoderate
    References1221482
    Description:

    This update for glibc fixes the following issues:


    Advisory IDSUSE-RU-2024:1997-1
    ReleasedTue Jun 11 17:24:32 2024
    SummaryRecommended update for e2fsprogs
    Typerecommended
    Severitymoderate
    References1223596
    Description:

    This update for e2fsprogs fixes the following issues:


    Advisory IDSUSE-RU-2024:2024-1
    ReleasedThu Jun 13 16:15:18 2024
    SummaryRecommended update for jitterentropy
    Typerecommended
    Severitymoderate
    References1209627
    Description:

    This update for jitterentropy fixes the following issues:


    Updated to 3.4.1


    Advisory IDSUSE-SU-2024:2066-1
    ReleasedTue Jun 18 13:16:09 2024
    SummarySecurity update for openssl-3
    Typesecurity
    Severityimportant
    References1223428,1224388,1225291,1225551,CVE-2024-4603,CVE-2024-4741
    Description:

    This update for openssl-3 fixes the following issues:
    Security issues fixed:


    Other issues fixed:


    Advisory IDSUSE-RU-2024:2086-1
    ReleasedWed Jun 19 11:48:24 2024
    SummaryRecommended update for gcc13
    Typerecommended
    Severitymoderate
    References1188441
    Description:

    This update for gcc13 fixes the following issues:
    Update to GCC 13.3 release


    Advisory IDSUSE-SU-2024:2200-1
    ReleasedTue Jun 25 13:53:17 2024
    SummarySecurity update for avahi
    Typesecurity
    Severitymoderate
    References1216594,1216598,1226586,CVE-2023-38469,CVE-2023-38471
    Description:

    This update for avahi fixes the following issues:


    Advisory IDSUSE-RU-2024:2214-1
    ReleasedTue Jun 25 17:11:26 2024
    SummaryRecommended update for util-linux
    Typerecommended
    Severitymoderate
    References1225598
    Description:

    This update for util-linux fixes the following issue:


    Advisory IDSUSE-RU-2024:2239-1
    ReleasedWed Jun 26 13:09:10 2024
    SummaryRecommended update for systemd
    Typerecommended
    Severitycritical
    References1226415
    Description:

    This update for systemd contains the following fixes:





    Advisory IDSUSE-OU-2024:2282-1
    ReleasedTue Jul 2 22:41:28 2024
    SummaryOptional update for openscap, scap-security-guide
    Typeoptional
    Severitymoderate
    References
    Description:


    This update for scap-security-guide and openscap provides the SCAP tooling for SLE Micro 5.3, 5.4, 5.5.
    This includes shipping openscap dependencies libxmlsec1-1 and libxmlsec1-openssl for SLE Micro.


    Advisory IDSUSE-SU-2024:2290-1
    ReleasedWed Jul 3 11:35:00 2024
    SummarySecurity update for libxml2
    Typesecurity
    Severitylow
    References1224282,CVE-2024-34459
    Description:

    This update for libxml2 fixes the following issues: