SUSE-CU-2025:3276-1: Security update of bci/spack
sle-container-updates at lists.suse.com
sle-container-updates at lists.suse.com
Wed May 7 07:40:04 UTC 2025
SUSE Container Update Advisory: bci/spack
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2025:3276-1
Container Tags : bci/spack:0.23 , bci/spack:0.23.1 , bci/spack:0.23.1-9.4
Container Release : 9.4
Severity : moderate
Type : security
References : 1241020 1241078 CVE-2025-29087 CVE-2025-29088
-----------------------------------------------------------------
The container bci/spack was updated. The following patches have been included in this update:
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:1456-1
Released: Mon May 5 12:52:08 2025
Summary: Security update for sqlite3
Type: security
Severity: moderate
References: 1241020,1241078,CVE-2025-29087,CVE-2025-29088
This update for sqlite3 fixes the following issues:
- CVE-2025-29087: Fixed integer overflow in sqlite concat function (bsc#1241020)
- CVE-2025-29088: Fixed integer overflow through the SQLITE_DBCONFIG_LOOKASIDE component (bsc#1241078)
Other fixes:
- Updated to version 3.49.1 from Factory (jsc#SLE-16032)
The following package changes have been done:
- libgpg-error0-1.50-150700.1.8 updated
- libsqlite3-0-3.49.1-150000.3.27.1 updated
- libblkid1-2.40.4-150700.2.4 updated
- libopenssl3-3.2.3-150700.3.20 updated
- libgcrypt20-1.11.0-150700.3.5 updated
- libmount1-2.40.4-150700.2.4 updated
- libopenssl-3-fips-provider-3.2.3-150700.3.20 updated
- grep-3.11-150700.1.8 updated
- permissions-20240826-150700.14.4 updated
- openssl-3-3.2.3-150700.3.20 updated
- libnettle8-3.10.1-150700.2.16 updated
- libopenssl1_1-1.1.1w-150700.9.37 updated
- libhogweed6-3.10.1-150700.2.16 updated
- libopenssl-3-devel-3.2.3-150700.3.20 updated
- container:sles15-image-15.7.0-4.2.69 updated
More information about the sle-container-updates
mailing list