SUSE-CU-2025:3252-1: Security update of bci/ruby

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Wed May 7 07:34:26 UTC 2025


SUSE Container Update Advisory: bci/ruby
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2025:3252-1
Container Tags        : bci/ruby:2 , bci/ruby:2.5 , bci/ruby:2.5-33.4 , bci/ruby:latest
Container Release     : 33.4
Severity              : moderate
Type                  : security
References            : 1241020 1241078 CVE-2025-29087 CVE-2025-29088 
-----------------------------------------------------------------

The container bci/ruby was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:1456-1
Released:    Mon May  5 12:52:08 2025
Summary:     Security update for sqlite3
Type:        security
Severity:    moderate
References:  1241020,1241078,CVE-2025-29087,CVE-2025-29088
This update for sqlite3 fixes the following issues:

  - CVE-2025-29087: Fixed integer overflow in sqlite concat function (bsc#1241020)
  - CVE-2025-29088: Fixed integer overflow through the SQLITE_DBCONFIG_LOOKASIDE component (bsc#1241078)

Other fixes:

- Updated to version 3.49.1 from Factory (jsc#SLE-16032)


The following package changes have been done:

- libsqlite3-0-3.49.1-150000.3.27.1 updated
- sqlite3-devel-3.49.1-150000.3.27.1 updated


More information about the sle-container-updates mailing list