SUSE-CU-2026:9433-1: Security update of suse/kubectl
sle-container-updates at lists.suse.com
sle-container-updates at lists.suse.com
Wed Sep 2 08:11:02 UTC 2026
SUSE Container Update Advisory: suse/kubectl
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2026:9433-1
Container Tags : suse/kubectl:1.33 , suse/kubectl:1.33.11 , suse/kubectl:1.33.11-2.70.12 , suse/kubectl:oldstable
Container Release : 70.12
Severity : moderate
Type : security
References : 1271660 1272402 1276510 1276514 CVE-2026-41178 CVE-2026-50151
CVE-2026-63308
-----------------------------------------------------------------
The container suse/kubectl was updated. The following patches have been included in this update:
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2026:3882-1
Released: Mon Aug 31 16:29:31 2026
Summary: Security update for helm
Type: security
Severity: moderate
References: 1271660,1272402,1276510,1276514,CVE-2026-41178,CVE-2026-50151,CVE-2026-63308
This update for helm fixes the following issues:
- CVE-2026-41178: `go.opentelemetry.io/otel/baggage`,`go.opentelemetry.io/otel/propagation`: no rejection of raw-length
headers in baggage parsing allows for DoS via oversized inputs (bsc#1276510).
- CVE-2026-63308: processing zero-length byte slices in template chart files can trigger an index out-of-range panic
(bsc#1272402).
- gRPC-Go: several issues affecting the xDS RBAC authorization engine and the HTTP/2 transport server implementation
(bsc#1276514).
Changes for helm:
- Bump vendor to address various security issues:
* golang.org/x/mod at v0.40.0
* oras.land/oras-go/v2 at v2.6.2
* google.golang.org/grpc at v1.82.1
* go.opentelemetry.io/otel at v1.44.0
The following package changes have been done:
- helm-3.21.3-150000.1.93.1 updated
More information about the sle-container-updates
mailing list