SUSE-CU-2026:2155-1: Security update of private-registry/harbor-trivy-adapter

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Mon Mar 30 07:14:00 UTC 2026


SUSE Container Update Advisory: private-registry/harbor-trivy-adapter
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2026:2155-1
Container Tags        : private-registry/harbor-trivy-adapter:1.1.2 , private-registry/harbor-trivy-adapter:1.1.2-2.6 , private-registry/harbor-trivy-adapter:latest
Container Release     : 2.6
Severity              : important
Type                  : security
References            : 1258311 1259825 1259845 CVE-2026-27135 
-----------------------------------------------------------------

The container private-registry/harbor-trivy-adapter was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2026:1074-1
Released:    Thu Mar 26 13:39:49 2026
Summary:     Security update for nghttp2
Type:        security
Severity:    important
References:  1259845,CVE-2026-27135
This update for nghttp2 fixes the following issues:

- CVE-2026-27135: Assertion failure due to missing state validation can lead to DoS (bsc#1259845).

-----------------------------------------------------------------
Advisory ID: SUSE-RU-2026:1113-1
Released:    Fri Mar 27 10:34:35 2026
Summary:     Recommended update for crypto-policies
Type:        recommended
Severity:    moderate
References:  1258311,1259825
This update for crypto-policies fixes the following issues:

Enables PQC key exchange support for OpenSSH (bsc#1258311, bsc#1259825)

* The sntrup761x25519-sha512 hybrid keyexchange for OpenSSH is enabled.


The following package changes have been done:

- crypto-policies-20230920.570ea89-150600.3.16.1 updated
- libnghttp2-14-1.64.0-150700.3.3.1 updated
- system-user-harbor-2.14.3-150700.1.3 updated


More information about the sle-container-updates mailing list