SUSE-CU-2026:7515-1: Security update of bci/openjdk
sle-container-updates at lists.suse.com
sle-container-updates at lists.suse.com
Wed Jul 29 08:00:12 UTC 2026
SUSE Container Update Advisory: bci/openjdk
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2026:7515-1
Container Tags : bci/openjdk:17 , bci/openjdk:17-sles15 , bci/openjdk:17.0.19.0 , bci/openjdk:17.0.19.0-20.22
Container Release : 20.22
Severity : moderate
Type : security
References : 1261400 1261982 1261983 1262305 1267644 1267647 1268853 CVE-2026-40226
CVE-2026-56109
-----------------------------------------------------------------
The container bci/openjdk was updated. The following patches have been included in this update:
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2026:3244-1
Released: Fri Jul 24 15:11:25 2026
Summary: Security update for systemd
Type: security
Severity: moderate
References: 1261400,1261982,1261983,1262305,1267644,1267647,CVE-2026-40226
This update for systemd fixes the following issues
Security issues fixed:
- CVE-2026-40226: nspawn: escape-to-host via malformed optional config file (bsc#1261400).
Other updates and bugfixes:
- Fix soft reboot not restarting user services with default.target (bsc#1262305).
- Import commit e46e1952d5 (bsc#1267647 bsc#1262305 bsc#1267644).
- Import commit 429043ca9a (bsc#1261982 bsc#1261983).
- Import commit 58e5d2e21e (bsc#1261982).
- Import commit 4bd91117cc (bsc#1261983).
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2026:3270-1
Released: Mon Jul 27 13:01:22 2026
Summary: Security update for alsa
Type: security
Severity: moderate
References: 1268853,CVE-2026-56109
This update for alsa fixes the following issue
- CVE-2026-56109: double-free vulnerability in parse_def() in src/conf.c that can allow attackers to corrupt memory
(bsc#1268853).
The following package changes have been done:
- libasound2-1.2.10-150600.4.3.1 updated
- libsystemd0-254.27-150600.4.71.2 updated
More information about the sle-container-updates
mailing list