SUSE-CU-2025:5073-1: Security update of bci/spack

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Tue Jul 8 15:33:17 UTC 2025


SUSE Container Update Advisory: bci/spack
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2025:5073-1
Container Tags        : bci/spack:0.23 , bci/spack:0.23.1 , bci/spack:0.23.1-13.16 , bci/spack:latest
Container Release     : 13.16
Severity              : moderate
Type                  : security
References            : 1242827 1243935 CVE-2025-4598 
-----------------------------------------------------------------

The container bci/spack was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:2244-1
Released:    Tue Jul  8 10:44:02 2025
Summary:     Security update for systemd
Type:        security
Severity:    moderate
References:  1242827,1243935,CVE-2025-4598
This update for systemd fixes the following issues:

- CVE-2025-4598: Fixed race condition that allows a local attacker to crash a SUID program and gain read access to the resulting core dump (bsc#1243935).

Other bugfixes:

- logs-show: get timestamp and boot ID only when necessary (bsc#1242827).


The following package changes have been done:

- libopenssl3-3.2.3-150700.5.10.1 updated
- libopenssl-3-fips-provider-3.2.3-150700.5.10.1 updated
- openssl-3-3.2.3-150700.5.10.1 updated
- libsystemd0-254.25-150600.4.40.1 updated
- container:registry.suse.com-bci-bci-base-15.7-f2b1cfe0af5829ac28493242a7a9b6b5b578979851467643d1bf5c5b4ca69b32-0 updated


More information about the sle-container-updates mailing list