SUSE-CU-2025:5091-1: Security update of suse/cosign

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Wed Jul 9 07:15:56 UTC 2025


SUSE Container Update Advisory: suse/cosign
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2025:5091-1
Container Tags        : suse/cosign:2 , suse/cosign:2.5 , suse/cosign:2.5.0 , suse/cosign:2.5.0-11.12 , suse/cosign:latest
Container Release     : 11.12
Severity              : moderate
Type                  : security
References            : 1242827 1243935 CVE-2025-4598 
-----------------------------------------------------------------

The container suse/cosign was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:2244-1
Released:    Tue Jul  8 10:44:02 2025
Summary:     Security update for systemd
Type:        security
Severity:    moderate
References:  1242827,1243935,CVE-2025-4598
This update for systemd fixes the following issues:

- CVE-2025-4598: Fixed race condition that allows a local attacker to crash a SUID program and gain read access to the resulting core dump (bsc#1243935).

Other bugfixes:

- logs-show: get timestamp and boot ID only when necessary (bsc#1242827).


The following package changes have been done:

- libudev1-254.25-150600.4.40.1 updated
- container:suse-sle15-15.7-5796b2ea9eb033483ca60e09f9a5a6445df5299e288d32559b320afb2adb50ae-0 updated


More information about the sle-container-updates mailing list