SUSE-IU-2026:1642-1: Security update of suse/sl-micro/6.2/baremetal-os-container

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Tue Mar 31 07:10:28 UTC 2026


SUSE Image Update Advisory: suse/sl-micro/6.2/baremetal-os-container
-----------------------------------------------------------------
Image Advisory ID : SUSE-IU-2026:1642-1
Image Tags        : suse/sl-micro/6.2/baremetal-os-container:2.3.0 , suse/sl-micro/6.2/baremetal-os-container:2.3.0-7.86 , suse/sl-micro/6.2/baremetal-os-container:latest
Image Release     : 7.86
Severity          : moderate
Type              : security
References        : 1254132 1257960 1258083 CVE-2025-14831 CVE-2025-9820 
-----------------------------------------------------------------

The container suse/sl-micro/6.2/baremetal-os-container was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: 464
Released:    Mon Mar 30 16:36:07 2026
Summary:     Security update for gnutls
Type:        security
Severity:    moderate
References:  1254132,1257960,1258083,CVE-2025-14831,CVE-2025-9820
This update for gnutls fixes the following issues:

- CVE-2025-14831: Fixed DoS via excessive resource consumption during certificate verification. (bsc#1257960)
- CVE-2025-9820: Fixed a buffer overflow in gnutls_pkcs11_token_init. (bsc#1254132)
- Add the functionality to allow to specify the hash algorithm for the PSK. This fixes a bug in the current implementation where the binder is always calculated with SHA256. (bsc#1258083, jsc#PED-15752, jsc#PED-15753)


The following package changes have been done:

- libgnutls30-3.8.10-160000.2.1 updated


More information about the sle-container-updates mailing list