SUSE-CU-2025:1228-1: Security update of bci/spack

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Sat Feb 22 08:14:37 UTC 2025


SUSE Container Update Advisory: bci/spack
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2025:1228-1
Container Tags        : bci/spack:0.23 , bci/spack:0.23.0 , bci/spack:0.23.0-3.4 , bci/spack:latest
Container Release     : 3.4
Severity              : moderate
Type                  : security
References            : 1236136 1236771 CVE-2024-13176 
-----------------------------------------------------------------

The container bci/spack was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:613-1
Released:    Fri Feb 21 11:37:54 2025
Summary:     Security update for openssl-1_1
Type:        security
Severity:    moderate
References:  1236136,1236771,CVE-2024-13176
This update for openssl-1_1 fixes the following issues:

- CVE-2024-13176: Fixed timing side-channel in the ECDSA signature computation (bsc#1236136).

Other bugfixes:

- Non approved PBKDF parameters wrongly resulting as approved (bsc#1236771).


The following package changes have been done:

- libopenssl1_1-1.1.1w-150600.5.12.2 updated


More information about the sle-container-updates mailing list