SUSE-IU-2025:2023-1: Security update of suse/sl-micro/6.0/base-os-container

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Wed Jul 23 20:08:32 UTC 2025


SUSE Image Update Advisory: suse/sl-micro/6.0/base-os-container
-----------------------------------------------------------------
Image Advisory ID : SUSE-IU-2025:2023-1
Image Tags        : suse/sl-micro/6.0/base-os-container:2.1.3 , suse/sl-micro/6.0/base-os-container:2.1.3-7.27 , suse/sl-micro/6.0/base-os-container:latest
Image Release     : 7.27
Severity          : important
Type              : security
References        : 1216091 1218459 1241052 1243772 CVE-2025-48964 
-----------------------------------------------------------------

The container suse/sl-micro/6.0/base-os-container was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: 388
Released:    Mon Jul 21 11:01:26 2025
Summary:     Recommended update for rpm
Type:        recommended
Severity:    important
References:  1216091,1218459,1241052
This update for rpm fixes the following issues:

- fix --runposttrans not working correctly with the --root
  option [bsc#1216091]

  * added 'rpm_fixed_runposttrans' provides for libzypp

- print scriptlet messages in --runposttrans
  * needed to fix leaking tmp files [bsc#1218459]

- fix memory leak in str2locale [bsc#1241052]


-----------------------------------------------------------------
Advisory ID: 390
Released:    Mon Jul 21 12:04:01 2025
Summary:     Security update for iputils
Type:        security
Severity:    moderate
References:  1243772,CVE-2025-48964
This update for iputils fixes the following issues:

- CVE-2025-48964: Fixed integer overflow in ping statistics via zero timestamp (bsc#1243772)


The following package changes have been done:

- rpm-4.18.0-7.1 updated
- iputils-20221126-6.1 updated
- SL-Micro-release-6.0-25.36 updated
- libzypp-17.37.12-1.1 updated
- container:suse-toolbox-image-1.0.0-9.15 updated


More information about the sle-container-updates mailing list