Vulnerability Scan Report for registry.suse.com/bci/openjdk-devel:17-11.8
OpenJDK 17 development container based on the SLE Base Container Image.
Last scanned on: May 10, 2025 19:05

OpenJDK 17 development container based on the SLE Base Container Image.
Last scanned on: May 10, 2025 19:05
Package Name | Severity | Status | Description | Reference links | |
---|---|---|---|---|---|
openssh-fips | HIGH | fixed |
Security update for openssh Vulnerability ID: SUSE-SU-2024:0596-1 Installed Version: 8.4p1-150300.3.12.2 Fixed Version: 8.4p1-150300.3.30.1 This update for openssh fixes the following issues: - CVE-2023-51385: Limit the use of shell metacharacters in host- and user names to avoid command injection. (bsc#1218215) |
||
openssh-fips | MEDIUM | fixed |
Security update for openssh Vulnerability ID: SUSE-SU-2025:0605-1 Installed Version: 8.4p1-150300.3.12.2 Fixed Version: 8.4p1-150300.3.42.1 This update for openssh fixes the following issues: - CVE-2025-26465: Fixed MitM attack against OpenSSH's VerifyHostKeyDNS-enabled client (bsc#1237040). |
||
openssl-1_1 | HIGH | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2023:0311-1 Installed Version: 1.1.1l-150400.7.16.1 Fixed Version: 1.1.1l-150400.7.22.1 This update for openssl-1_1 fixes the following issues: - CVE-2023-0286: Fixed X.400 address type confusion in X.509 GENERAL_NAME_cmp for x400Address (bsc#1207533). - CVE-2023-0215: Fixed use-after-free following BIO_new_NDEF() (bsc#1207536). - CVE-2022-4450: Fixed double free after calling PEM_read_bio_ex() (bsc#1207538). - CVE-2022-4304: Fixed timing Oracle in RSA Decryption (bsc#1207534). |
||
openssl-1_1 | HIGH | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2024:2089-1 Installed Version: 1.1.1l-150400.7.16.1 Fixed Version: 1.1.1l-150400.7.69.1 This update for openssl-1_1 fixes the following issues: - CVE-2024-4741: Fixed a use-after-free with SSL_free_buffers. (bsc#1225551) |
||
openssl-1_1 | MEDIUM | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2023:1745-1 Installed Version: 1.1.1l-150400.7.16.1 Fixed Version: 1.1.1l-150400.7.31.2 This update for openssl-1_1 fixes the following issues: - CVE-2023-0464: Fixed excessive Resource Usage Verifying X.509 Policy Constraints (bsc#1209624). |