SUSE-CU-2025:7617-1: Security update of bci/bci-base-fips
sle-container-updates at lists.suse.com
sle-container-updates at lists.suse.com
Tue Oct 28 08:33:44 UTC 2025
SUSE Container Update Advisory: bci/bci-base-fips
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2025:7617-1
Container Tags : bci/bci-base-fips:15.6 , bci/bci-base-fips:15.6.36.3
Container Release : 36.3
Severity : important
Type : security
References : 1249584 CVE-2025-59375
-----------------------------------------------------------------
The container bci/bci-base-fips was updated. The following patches have been included in this update:
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2025:3624-1
Released: Thu Oct 16 21:59:19 2025
Summary: Security update for expat
Type: security
Severity: important
References: 1249584,CVE-2025-59375
This update for expat fixes the following issues:
- CVE-2025-59375: memory amplification vulnerability allows attackers to trigger excessive dynamic memory allocations
by submitting crafted XML input (bsc#1249584).
The following package changes have been done:
- libexpat1-2.7.1-150400.3.31.1 updated
- container:registry.suse.com-bci-bci-base-15.6-4a0457aee30dfe45c61fd8659c66aaf72ab3ff16a243da33921454932d702808-0 updated
More information about the sle-container-updates
mailing list