SUSE: 2023:2477-1 suse/sle15 Security Update
Summary
Advisory ID: SUSE-RU-2023:2955-1 Released: Tue Jul 25 05:22:54 2023 Summary: Recommended update for util-linux Type: recommended Severity: moderate Advisory ID: SUSE-SU-2023:2956-1 Released: Tue Jul 25 08:33:38 2023 Summary: Security update for libcap Type: security Severity: moderate Advisory ID: SUSE-SU-2023:2961-1 Released: Tue Jul 25 09:32:56 2023 Summary: Security update for openssl-1_1 Type: security Severity: moderate Advisory ID: SUSE-RU-2023:3068-1 Released: Mon Jul 31 16:33:43 2023 Summary: Recommended update for openssl-1_1 Type: recommended Severity: moderate
References
References : 1193015 1211419 1213487 1213517 CVE-2023-2603 CVE-2023-3446
1193015
This update for util-linux fixes the following issues:
- Fix memory leak on parse errors in libmount. (bsc#1193015)
1211419,CVE-2023-2603
This update for libcap fixes the following issues:
- CVE-2023-2603: Fixed an integer overflow or wraparound in libcap/cap_alloc.c:_libcap_strdup() (bsc#1211419).
1213487,CVE-2023-3446
This update for openssl-1_1 fixes the following issues:
- CVE-2023-3446: Fixed DH_check() excessive time with over sized modulus (bsc#1213487).
1213517
This update for openssl-1_1 fixes the following issues:
- Dont pass zero length input to EVP_Cipher (bsc#1213517)
The following package changes have been done:
- libblkid1-2.33.2-150100.4.37.1 updated
- libcap2-2.26-150000.4.9.1 updated
- libfdisk1-2.33.2-150100.4.37.1 updated
- libmount1-2.33.2-150100.4.37.1 updated
- libopenssl1_1-1.1.0i-150100.14.62.1 updated
- libsmartcols1-2.33.2-150100.4.37.1 updated
- libuuid1-2.33.2-150100.4.37.1 ...
Read the Full Advisory