SUSE-CU-2024:270-1: Security update of suse/registry
sle-security-updates at lists.suse.com
sle-security-updates at lists.suse.com
Sat Jan 20 08:03:50 UTC 2024
SUSE Container Update Advisory: suse/registry
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2024:270-1
Container Tags : suse/registry:2.8 , suse/registry:2.8-18.4 , suse/registry:latest
Container Release : 18.4
Severity : moderate
Type : security
References : 1217000 1218475 CVE-2024-22365
-----------------------------------------------------------------
The container suse/registry was updated. The following patches have been included in this update:
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2024:136-1
Released: Thu Jan 18 09:53:47 2024
Summary: Security update for pam
Type: security
Severity: moderate
References: 1217000,1218475,CVE-2024-22365
This update for pam fixes the following issues:
- CVE-2024-22365: Fixed a local denial of service during PAM login
due to a missing check during path manipulation (bsc#1218475).
- Check localtime_r() return value to fix crashing (bsc#1217000)
The following package changes have been done:
- pam-1.3.0-150000.6.66.1 updated
- container:micro-image-15.5.0-15.1 updated
More information about the sle-security-updates
mailing list