openSUSE Essential And Critical Security Patch Updates - Page 25
Find the information you need for your favorite open source distribution.
Find the information you need for your favorite open source distribution.
This update for rear23a fixes the following issues: CVE-2024-23301: Fixed ReaR creates world-readable initrd with GRUB_RESCUE=Y. (bsc#1218728)
This update for xorg-x11-server fixes the following issues: CVE-2024-0408: Fixed SELinux unlabeled GLX PBuffer. (bsc#1218845) CVE-2024-0409: Fixed SELinux context corruption. (bsc#1218846)
This update for sevctl fixes the following issues: CVE-2023-50711: Fixed out of bounds memory accesses in vmm-sys-util (bsc#1218502, bsc#1218499)
This update for cpio fixes the following issues: CVE-2023-7207: Fixed a path traversal issue that could lead to an arbitrary file write during archive extraction (bsc#1218571).
This update for jasper fixes the following issues: CVE-2023-51257: Fixed an out of bounds write in the JPC encoder (bsc#1218802).
This update for apache-parent, apache-sshd fixes the following issues: apache-parent was updated from version 28 to 31:
This update for MozillaFirefox fixes the following issues: Update to Firefox Extended Support Release 115.7.0 ESR (MFSA2024-02) (bsc#1218955):
An update that fixes 6 vulnerabilities is now available.
This update for bluez fixes the following issues: CVE-2023-50229: Fixed an out of bounds write in the primary version counter for the Phone Book Access Profile implementation (bsc#1218300).
This update for python-Pillow fixes the following issues: CVE-2023-50447: Fixed arbitrary code execution via the environment parameter. (bsc#1219048)
This update for tomcat10 fixes the following issues: Updated to Tomcat 10.1.18
This update for xwayland fixes the following issues: CVE-2024-0408: Fixed SELinux unlabeled GLX PBuffer. (bsc#1218845) CVE-2024-0409: Fixed SELinux context corruption. (bsc#1218846)
This update for redis7 fixes the following issues: CVE-2023-45145: Fixed a potential permission bypass due to a race condition during UNIX socket creation (bsc#1216376).
This update for bluez fixes the following issues: CVE-2023-50229: Fixed an out of bounds write in the primary version counter for the Phone Book Access Profile implementation (bsc#1218300).
This update for bluez fixes the following issues: CVE-2023-50229: Fixed an out of bounds write in the primary version counter for the Phone Book Access Profile implementation (bsc#1218300).
This update for openssl-3 fixes the following issues: CVE-2023-6129: Fixed vector register clobbering on PowerPC. (bsc#1218690) CVE-2023-6237: Fixed excessive time spent checking invalid RSA public keys.
An update that contains security fixes can now be installed.
This update for python-aiohttp fixes the following issues: Updated to version 3.8.6:
An update that fixes three vulnerabilities is now available.