SUSE-IU-2024:1584-1: Security update of suse/sle-micro/5.5

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Tue Oct 22 07:02:29 UTC 2024


SUSE Image Update Advisory: suse/sle-micro/5.5
-----------------------------------------------------------------
Image Advisory ID : SUSE-IU-2024:1584-1
Image Tags        : suse/sle-micro/5.5:2.0.4 , suse/sle-micro/5.5:2.0.4-5.5.169 , suse/sle-micro/5.5:latest
Image Release     : 5.5.169
Severity          : moderate
Type              : security
References        : 1214612 1231208 1231499 CVE-2024-9407 CVE-2024-9675 
-----------------------------------------------------------------

The container suse/sle-micro/5.5 was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2024:3741-1
Released:    Mon Oct 21 14:33:31 2024
Summary:     Security update for podman
Type:        security
Severity:    moderate
References:  1214612,1231208,1231499,CVE-2024-9407,CVE-2024-9675
This update for podman fixes the following issues:

- CVE-2024-9675: Fixed cache arbitrary directory mount (bsc#1231499).
- CVE-2024-9407: Fixed improper Input Validation in bind-propagation Option of Dockerfile RUN --mount Instruction (bsc#1231208).

The following non-security bug was fixed:

- rootless ipv6 containers can't be started (bsc#1214612).


The following package changes have been done:

- podman-4.9.5-150500.3.25.1 updated


More information about the sle-container-updates mailing list