SUSE-CU-2021:571-1: Security update of bci/micro
sle-updates at lists.suse.com
sle-updates at lists.suse.com
Tue Dec 7 08:15:41 UTC 2021
SUSE Container Update Advisory: bci/micro
-----------------------------------------------------------------
Container Advisory ID : SUSE-CU-2021:571-1
Container Tags : bci/micro:15.3 , bci/micro:15.3.3.27 , bci/micro:latest
Container Release : 3.27
Severity : moderate
Type : security
References : 1172973 1172974 1187153 1187273 1188623 1190793 CVE-2019-20838
CVE-2020-14155 CVE-2021-39537
-----------------------------------------------------------------
The container bci/micro was updated. The following patches have been included in this update:
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2021:3490-1
Released: Wed Oct 20 16:31:55 2021
Summary: Security update for ncurses
Type: security
Severity: moderate
References: 1190793,CVE-2021-39537
This update for ncurses fixes the following issues:
- CVE-2021-39537: Fixed an heap-based buffer overflow in _nc_captoinfo. (bsc#1190793)
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2021:3529-1
Released: Wed Oct 27 09:23:32 2021
Summary: Security update for pcre
Type: security
Severity: moderate
References: 1172973,1172974,CVE-2019-20838,CVE-2020-14155
This update for pcre fixes the following issues:
Update pcre to version 8.45:
- CVE-2020-14155: Fixed integer overflow via a large number after a '(?C' substring (bsc#1172974).
- CVE-2019-20838: Fixed buffer over-read in JIT compiler (bsc#1172973)
-----------------------------------------------------------------
Advisory ID: SUSE-RU-2021:3799-1
Released: Wed Nov 24 18:07:54 2021
Summary: Recommended update for gcc11
Type: recommended
Severity: moderate
References: 1187153,1187273,1188623
This update for gcc11 fixes the following issues:
The additional GNU compiler collection GCC 11 is provided:
To select these compilers install the packages:
- gcc11
- gcc-c++11
- and others with 11 prefix.
to select them for building:
- CC='gcc-11'
- CXX='g++-11'
The compiler baselibraries (libgcc_s1, libstdc++6 and others) are being replaced by the GCC 11 variants.
The following package changes have been done:
- libgcc_s1-11.2.1+git610-1.3.9 updated
- libncurses6-6.1-5.9.1 updated
- libpcre1-8.45-20.10.1 updated
- libstdc++6-11.2.1+git610-1.3.9 updated
- terminfo-base-6.1-5.9.1 updated
More information about the sle-updates
mailing list