SUSE-CU-2023:3835-1: Security update of bci/python

sle-security-updates at lists.suse.com sle-security-updates at lists.suse.com
Thu Nov 23 08:03:56 UTC 2023


SUSE Container Update Advisory: bci/python
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2023:3835-1
Container Tags        : bci/python:3 , bci/python:3-14.33 , bci/python:3.6 , bci/python:3.6-14.33
Container Release     : 14.33
Severity              : moderate
Type                  : security
References            : 1206667 CVE-2022-40897 
-----------------------------------------------------------------

The container bci/python was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2023:4517-1
Released:    Tue Nov 21 17:30:27 2023
Summary:     Security update for python3-setuptools
Type:        security
Severity:    moderate
References:  1206667,CVE-2022-40897
This update for python3-setuptools fixes the following issues:

- CVE-2022-40897: Fixed Regular Expression Denial of Service (ReDoS) in package_index.py (bsc#1206667).


The following package changes have been done:

- libxml2-2-2.10.3-150500.5.11.1 updated
- libopenssl1_1-1.1.1l-150500.17.22.1 updated
- libopenssl1_1-hmac-1.1.1l-150500.17.22.1 updated
- openssl-1_1-1.1.1l-150500.17.22.1 updated
- python3-setuptools-44.1.1-150400.9.6.1 updated
- container:sles15-image-15.0.0-36.5.57 updated


More information about the sle-security-updates mailing list