SUSE-CU-2026:9433-1: Security update of suse/kubectl

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Wed Sep 2 08:11:02 UTC 2026


SUSE Container Update Advisory: suse/kubectl
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2026:9433-1
Container Tags        : suse/kubectl:1.33 , suse/kubectl:1.33.11 , suse/kubectl:1.33.11-2.70.12 , suse/kubectl:oldstable
Container Release     : 70.12
Severity              : moderate
Type                  : security
References            : 1271660 1272402 1276510 1276514 CVE-2026-41178 CVE-2026-50151
                        CVE-2026-63308 
-----------------------------------------------------------------

The container suse/kubectl was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2026:3882-1
Released:    Mon Aug 31 16:29:31 2026
Summary:     Security update for helm
Type:        security
Severity:    moderate
References:  1271660,1272402,1276510,1276514,CVE-2026-41178,CVE-2026-50151,CVE-2026-63308
This update for helm fixes the following issues:

	
- CVE-2026-41178: `go.opentelemetry.io/otel/baggage`,`go.opentelemetry.io/otel/propagation`: no rejection of raw-length
  headers in baggage parsing allows for DoS via oversized inputs (bsc#1276510).
- CVE-2026-63308: processing zero-length byte slices in template chart files can trigger an index out-of-range panic
  (bsc#1272402).
- gRPC-Go: several issues affecting the xDS RBAC authorization engine and the HTTP/2 transport server implementation
  (bsc#1276514).

Changes for helm:

- Bump vendor to address various security issues:
  * golang.org/x/mod at v0.40.0
  * oras.land/oras-go/v2 at v2.6.2
  * google.golang.org/grpc at v1.82.1
  * go.opentelemetry.io/otel at v1.44.0


The following package changes have been done:

- helm-3.21.3-150000.1.93.1 updated


More information about the sle-container-updates mailing list