SUSE-CU-2025:3164-1: Security update of suse/cosign
sle-container-updates at lists.suse.com
sle-container-updates at lists.suse.com
Tue May 6 07:28:37 UTC 2025
SUSE Container Update Advisory: suse/cosign
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2025:3164-1
Container Tags : suse/cosign:2 , suse/cosign:2.5 , suse/cosign:2.5.0 , suse/cosign:2.5.0-3.4 , suse/cosign:latest
Container Release : 3.4
Severity : moderate
Type : security
References : 1241020 1241078 CVE-2025-29087 CVE-2025-29088
-----------------------------------------------------------------
The container suse/cosign was updated. The following patches have been included in this update:
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:1456-1
Released: Mon May 5 12:52:08 2025
Summary: Security update for sqlite3
Type: security
Severity: moderate
References: 1241020,1241078,CVE-2025-29087,CVE-2025-29088
This update for sqlite3 fixes the following issues:
- CVE-2025-29087: Fixed integer overflow in sqlite concat function (bsc#1241020)
- CVE-2025-29088: Fixed integer overflow through the SQLITE_DBCONFIG_LOOKASIDE component (bsc#1241078)
Other fixes:
- Updated to version 3.49.1 from Factory (jsc#SLE-16032)
The following package changes have been done:
- libsqlite3-0-3.49.1-150000.3.27.1 updated
More information about the sle-container-updates
mailing list