SUSE-CU-2022:1404-1: Security update of bci/nodejs

sle-security-updates at lists.suse.com sle-security-updates at lists.suse.com
Tue Jul 5 07:48:10 UTC 2022


SUSE Container Update Advisory: bci/nodejs
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2022:1404-1
Container Tags        : bci/node:12 , bci/node:12-16.83 , bci/nodejs:12 , bci/nodejs:12-16.83
Container Release     : 16.83
Severity              : moderate
Type                  : security
References            : 1185637 1199166 1200550 CVE-2022-1292 CVE-2022-2068 
-----------------------------------------------------------------

The container bci/nodejs was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2022:2251-1
Released:    Mon Jul  4 09:52:25 2022
Summary:     Security update for openssl-1_1
Type:        security
Severity:    moderate
References:  1185637,1199166,1200550,CVE-2022-1292,CVE-2022-2068
This update for openssl-1_1 fixes the following issues:
	  
- CVE-2022-1292: Fixed command injection in c_rehash (bsc#1199166).
- CVE-2022-2068: Fixed more shell code injection issues in c_rehash. (bsc#1200550)


The following package changes have been done:

- libopenssl1_1-hmac-1.1.1d-150200.11.48.1 updated
- libopenssl1_1-1.1.1d-150200.11.48.1 updated
- openssl-1_1-1.1.1d-150200.11.48.1 updated
- container:sles15-image-15.0.0-17.17.19 updated


More information about the sle-security-updates mailing list