SUSE-CU-2021:420-1: Security update of suse/sles12sp3

sle-security-updates at lists.suse.com sle-security-updates at lists.suse.com
Wed Oct 20 06:44:27 UTC 2021


SUSE Container Update Advisory: suse/sles12sp3
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2021:420-1
Container Tags        : suse/sles12sp3:2.0.2 , suse/sles12sp3:24.314 , suse/sles12sp3:latest
Container Release     : 24.314
Severity              : moderate
Type                  : security
References            : 1081947 1082293 1084671 1085196 1106214 1122417 1125886 1135534
                        1135708 1151708 1168235 1168389 1169006 1174942 1175514 1175623
                        1178236 1178554 1178825 1188921 CVE-2021-37600 
-----------------------------------------------------------------

The container suse/sles12sp3 was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2021:3463-1
Released:    Tue Oct 19 09:27:38 2021
Summary:     Security update for util-linux
Type:        security
Severity:    moderate
References:  1081947,1082293,1084671,1085196,1106214,1122417,1125886,1135534,1135708,1151708,1168235,1168389,1169006,1174942,1175514,1175623,1178236,1178554,1178825,1188921,CVE-2021-37600
This update for util-linux fixes the following issues:

- CVE-2021-37600: Fixed an integer overflow which could lead to buffer overflow in get_sem_elements. (bsc#1188921)
- Prevent outdated pam files (bsc#1082293, bsc#1081947#c68).
- Do not trim read-only volumes (bsc#1106214).
- libmount: To prevent incorrect behavior, recognize more pseudofs and netfs (bsc#1122417).
- raw.service: Add RemainAfterExit=yes (bsc#1135534).
- agetty: Reload issue only if it is really needed (bsc#1085196)
- agetty: Return previous response of agetty for special characters (bsc#1085196, bsc#1125886)
- blockdev: Do not fail --report on kpartx-style partitions on multipath. (bsc#1168235)
- nologin: Add support for -c to prevent error from su -c. (bsc#1151708)
- Avoid triggering autofs in lookup_umount_fs_by_statfs. (bsc#1168389)
- libblkid: Do not trigger CDROM autoclose. (bsc#1084671)
- Avoid sulogin failing on not existing or not functional console devices. (bsc#1175514)
- Build with libudev support to support non-root users. (bsc#1169006)
- lscpu: avoid segfault on PowerPC systems with valid hardware configurations. (bsc#1175623, bsc#1178554, bsc#1178825)
- Fix for warning on mounts to CIFS with mount. (SG#57988, bsc#1174942)



More information about the sle-security-updates mailing list