SUSE-CU-2025:3427-1: Security update of suse/sles/15.7/libguestfs-tools

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Thu May 15 07:26:51 UTC 2025


SUSE Container Update Advisory: suse/sles/15.7/libguestfs-tools
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2025:3427-1
Container Tags        : suse/sles/15.7/libguestfs-tools:1.5.0 , suse/sles/15.7/libguestfs-tools:1.5.0-150700.1.3 , suse/sles/15.7/libguestfs-tools:1.5.0.28.178
Container Release     : 28.178
Severity              : important
Type                  : security
References            : 1223330 1232234 1234128 1234452 1234713 1235481 1236033 1237374
                        1238591 1239625 1239637 1239663 1239883 1240414 CVE-2023-40403
                        CVE-2024-10041 CVE-2024-55549 CVE-2025-24855 CVE-2025-31115 
-----------------------------------------------------------------

The container suse/sles/15.7/libguestfs-tools was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:1125-1
Released:    Thu Apr  3 13:49:28 2025
Summary:     Security update for libxslt
Type:        security
Severity:    important
References:  1238591,1239625,1239637,CVE-2023-40403,CVE-2024-55549,CVE-2025-24855
This update for libxslt fixes the following issues:

- CVE-2023-40403: Fixed sensitive information disclosure during processing web content (bsc#1238591)
- CVE-2024-55549: Fixed use-after-free in xsltGetInheritedNsList (bsc#1239637)
- CVE-2025-24855: Fixed use-after-free in numbers.c (bsc#1239625)

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:1134-1
Released:    Thu Apr  3 16:17:44 2025
Summary:     Security update for apparmor
Type:        security
Severity:    moderate
References:  1234452
This update for apparmor fixes the following issue:

- Allow dovecot-auth to execute unix check password from /sbin, not only from /usr/bin (bsc#1234452).

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:1137-1
Released:    Thu Apr  3 17:11:02 2025
Summary:     Security update for xz
Type:        security
Severity:    important
References:  1240414,CVE-2025-31115
This update for xz fixes the following issues:

- CVE-2025-31115: Fixed heap use after free and writing to an address based on the null pointer plus an offset (bsc#1240414)

-----------------------------------------------------------------
Advisory ID: SUSE-RU-2025:1145-1
Released:    Mon Apr  7 06:41:42 2025
Summary:     Recommended update for hwinfo
Type:        recommended
Severity:    moderate
References:  1223330,1239663
This update for hwinfo fixes the following issues:

- Avoid reporting of spurious usb storage devices (bsc#1223330)
- Do not overdo usb device de-duplication (bsc#1239663)

-----------------------------------------------------------------
Advisory ID: SUSE-RU-2025:1198-1
Released:    Fri Apr 11 09:46:09 2025
Summary:     Recommended update for glibc
Type:        recommended
Severity:    important
References:  1234128,1234713,1239883
This update for glibc fixes the following issues:

- Fix the lost wakeup from a bug in signal stealing (bsc#1234128)
- Mark functions in libc_nonshared.a as hidden (bsc#1239883)
- Bump minimal kernel version to 4.3 to enable use of direct socketcalls
  on x86-32 and s390x (bsc#1234713)

-----------------------------------------------------------------
Advisory ID: SUSE-RU-2025:1242-1
Released:    Mon Apr 14 12:43:18 2025
Summary:     Recommended update for aaa_base
Type:        recommended
Severity:    moderate
References:  1235481,1236033
This update for aaa_base fixes the following issues:

- SP6 logrotate and rcsyslog binary (bsc#1236033)
- Update detection for systemd in rc.status
- Mountpoint for cgroup changed with cgroup2
- If a user switches the login shell respect the already set PATH
  environment (bsc#1235481)

-----------------------------------------------------------------
Advisory ID: SUSE-RU-2025:1245-1
Released:    Mon Apr 14 13:31:49 2025
Summary:     Recommended update for pkg-config
Type:        recommended
Severity:    moderate
References:  1237374
This update for rsync fixes the following issues:

- Security scan found old glib in pkg-config (bsc#1237374).
- This update for pkg-config changes attribute to the author who actually
  makes the change

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:1334-1
Released:    Thu Apr 17 09:03:05 2025
Summary:     Security update for pam
Type:        security
Severity:    moderate
References:  1232234,CVE-2024-10041
This update for pam fixes the following issues:

- CVE-2024-10041: sensitive data exposure while performing authentications. (bsc#1232234)


The following package changes have been done:

- glibc-2.38-150600.14.29.1 updated
- liblzma5-5.4.1-150600.3.3.1 updated
- libzstd1-1.5.7-150700.1.2 updated
- libuuid1-2.40.4-150700.2.4 updated
- libsmartcols1-2.40.4-150700.2.4 updated
- libnghttp2-14-1.64.0-150700.1.5 updated
- libgpg-error0-1.50-150700.1.8 updated
- libglib-2_0-0-2.78.6-150600.4.11.1 updated
- findutils-4.10.0-150700.2.6 updated
- libgcrypt20-1.11.0-150700.3.5 updated
- libblkid1-2.40.4-150700.2.4 updated
- libxml2-2-2.12.10-150700.2.1 updated
- libopenssl3-3.2.3-150700.3.20 updated
- grep-3.11-150700.1.8 updated
- libmount1-2.40.4-150700.2.4 updated
- libfdisk1-2.40.4-150700.2.4 updated
- libzck1-1.5.1-150700.1.2 updated
- libopenssl-3-fips-provider-3.2.3-150700.3.20 updated
- sles-release-15.7-150700.28.1 updated
- permissions-20240826-150700.14.4 updated
- pam-1.3.0-150000.6.76.1 updated
- util-linux-2.40.4-150700.2.4 updated
- aaa_base-84.87+git20180409.04c9dae-150300.10.28.2 updated
- kbd-2.4.0-150700.13.3 updated
- libguestfs-winsupport-1.55.6-150700.1.7 updated
- guestfs-tools-1.53.7-150700.1.2 updated
- libapparmor1-3.1.7-150600.5.6.1 updated
- libbpf1-1.5.0-150700.1.3 updated
- libdevmapper1_03-2.03.24_1.02.198-150700.5.3 updated
- libexpat1-2.6.4-150700.1.4 updated
- libgmodule-2_0-0-2.78.6-150600.4.11.1 updated
- libgobject-2_0-0-2.78.6-150600.4.11.1 updated
- libhivex0-1.3.24-150700.1.6 updated
- libnettle8-3.10.1-150700.2.16 updated
- libopenssl1_1-1.1.1w-150700.9.37 updated
- libusdm0-24.09.0-150700.1.3 updated
- libxslt1-1.1.34-150400.3.6.1 updated
- mdadm-4.4-150700.2.7 updated
- pigz-2.8-150700.1.4 updated
- pkg-config-0.29.2-150600.15.6.3 updated
- qemu-accel-tcg-x86-9.2.2-150700.1.4 updated
- qemu-ipxe-9.2.2-150700.1.4 updated
- qemu-seabios-9.2.21.16.3_3_g3d33c746-150700.1.4 updated
- qemu-vgabios-9.2.21.16.3_3_g3d33c746-150700.1.4 updated
- xz-5.4.1-150600.3.3.1 updated
- zstd-1.5.7-150700.1.2 updated
- libndctl6-80-150700.1.3 updated
- libhogweed6-3.10.1-150700.2.16 updated
- virtiofsd-1.12.0-150700.1.8 updated
- libqat4-24.09.0-150700.1.3 updated
- bind-utils-9.20.3-150700.1.6 updated
- hwinfo-21.87-150500.3.6.1 updated
- iproute2-6.4-150600.7.6.1 updated
- libmpath0-0.10.2+122+suse.51e02cc-150700.1.4 updated
- xen-libs-4.20.0_10-150700.1.3 updated
- libqatzip3-1.2.0-150700.1.2 updated
- qemu-vmsr-helper-9.2.2-150700.1.4 updated
- qemu-pr-helper-9.2.2-150700.1.4 updated
- qemu-img-9.2.2-150700.1.4 updated
- libgio-2_0-0-2.78.6-150600.4.11.1 updated
- glib2-tools-2.78.6-150600.4.11.1 updated
- qemu-tools-9.2.2-150700.1.4 updated
- util-linux-systemd-2.40.4-150700.2.4 updated
- libvirt-libs-11.0.0-150700.2.3 updated
- wicked-0.6.78-150700.1.4 updated
- wicked-service-0.6.78-150700.1.4 updated
- dracut-059+suse.562.g5ab4efaa-150700.1.11 updated
- supermin-5.3.5-150700.2.8 updated
- rdma-core-54.0-150700.1.9 updated
- dracut-fips-059+suse.562.g5ab4efaa-150700.1.11 updated
- libibverbs1-54.0-150700.1.9 updated
- libmlx5-1-54.0-150700.1.9 updated
- libosinfo-1_0-0-1.12.0-150700.1.4 updated
- libosinfo-1.12.0-150700.1.4 updated
- libmlx4-1-54.0-150700.1.9 updated
- libmana1-54.0-150700.1.9 updated
- libhns1-54.0-150700.1.9 updated
- libefa1-54.0-150700.1.9 updated
- libibverbs-54.0-150700.1.9 updated
- librdmacm1-54.0-150700.1.9 updated
- qemu-x86-9.2.2-150700.1.4 updated
- qemu-9.2.2-150700.1.4 updated
- qemu-ovmf-x86_64-202408-150700.1.3 updated
- libguestfs0-1.55.6-150700.1.7 updated
- libguestfs-devel-1.55.6-150700.1.7 updated
- libguestfs-appliance-1.55.6-150700.1.7 updated
- libguestfs-1.55.6-150700.1.7 updated
- container:sles15-image-15.7.0-3.68 updated


More information about the sle-container-updates mailing list