SUSE-CU-2020:561-1: Security update of suse/sle15

sle-security-updates at lists.suse.com sle-security-updates at lists.suse.com
Mon Oct 26 03:28:33 MDT 2020


SUSE Container Update Advisory: suse/sle15
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2020:561-1
Container Tags        : suse/sle15:15.0 , suse/sle15:15.0.4.22.286
Container Release     : 4.22.286
Severity              : moderate
Type                  : security
References            : 1175847 1176086 1176123 1176181 1176671 1177479 CVE-2020-24659
-----------------------------------------------------------------

The container suse/sle15 was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-RU-2020:2978-1
Released:    Wed Oct 21 11:36:05 2020
Summary:     Recommended update for openssl-1_1
Type:        recommended
Severity:    moderate
References:  1175847,1177479
This update for openssl-1_1 fixes the following issues:

FIPS:

* Adjust the Diffie-Hellman and Elliptic Curve Diffie-Hellman algorithms to be NIST SP800-56Arev3 compliant (bsc#1175847, bsc#1177479).
* Add shared secret KAT to FIPS DH selftest (bsc#1175847).


-----------------------------------------------------------------
Advisory ID: SUSE-RU-2020:2983-1
Released:    Wed Oct 21 15:03:03 2020
Summary:     Recommended update for file
Type:        recommended
Severity:    moderate
References:  1176123
This update for file fixes the following issues:

- Fixes an issue when file displays broken 'ELF' interpreter. (bsc#1176123)  
  
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2020:2988-1
Released:    Wed Oct 21 17:35:34 2020
Summary:     Security update for gnutls
Type:        security
Severity:    moderate
References:  1176086,1176181,1176671,CVE-2020-24659
This update for gnutls fixes the following issues:

- Fix heap buffer overflow in handshake with no_renegotiation alert sent (CVE-2020-24659 bsc#1176181)
- FIPS: Implement (EC)DH requirements from SP800-56Arev3 (bsc#1176086)
- FIPS: Use 2048 bit prime in DH selftest (bsc#1176086)
- FIPS: Add TLS KDF selftest (bsc#1176671)



More information about the sle-security-updates mailing list