SUSE-IU-2026:6613-1: Security update of suse/sl-micro/6.0/kvm-os-container
sle-container-updates at lists.suse.com
sle-container-updates at lists.suse.com
Sat Aug 29 07:15:42 UTC 2026
SUSE Image Update Advisory: suse/sl-micro/6.0/kvm-os-container
-----------------------------------------------------------------
Image Advisory ID : SUSE-IU-2026:6613-1
Image Tags : suse/sl-micro/6.0/kvm-os-container:2.1.3 , suse/sl-micro/6.0/kvm-os-container:2.1.3-6.210 , suse/sl-micro/6.0/kvm-os-container:latest
Image Release : 6.210
Severity : moderate
Type : security
References : 1269623 1272554 CVE-2026-41992
-----------------------------------------------------------------
The container suse/sl-micro/6.0/kvm-os-container was updated. The following patches have been included in this update:
-----------------------------------------------------------------
Advisory ID: 868
Released: Fri Aug 28 13:23:15 2026
Summary: Security update for gzip
Type: security
Severity: moderate
References: 1269623,1272554,CVE-2026-41992
This update for gzip fixes the following issues:
- CVE-2026-41992: global buffer overflow in the LZH decompression logic due to improper reuse of shared global state
between different decompression formats within a single execution (bsc#1269623).
- crafted LZW file followed by a crafted LZH file can cause an out-of-bounds memory buffer access (bsc#1272554).
The following package changes have been done:
- gzip-1.13-3.1 updated
- SL-Micro-release-6.0-25.126 updated
- container:SL-Micro-base-container-2.1.3-7.199 updated
More information about the sle-container-updates
mailing list