Vulnerability Scan Report for registry.suse.com/bci/openjdk-devel:17-15.4
OpenJDK 17 development container based on the SLE Base Container Image.
Last scanned on: July 05, 2025 23:30

OpenJDK 17 development container based on the SLE Base Container Image.
Last scanned on: July 05, 2025 23:30
Package Name | Severity | Status | Description | Reference links | |
---|---|---|---|---|---|
libopenssl1_1-hmac | MEDIUM | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2024:2927-1 Installed Version: 1.1.1l-150400.7.37.1 Fixed Version: 1.1.1l-150400.7.72.1 This update for openssl-1_1 fixes the following issues: - CVE-2024-5535: Fixed a buffer overread in function SSL_select_next_proto() with an empty supported client protocols buffer (bsc#1227138) Other fixes: - Build with no-afalgeng (bsc#1226463) |
||
libopenssl1_1-hmac | MEDIUM | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2024:3872-1 Installed Version: 1.1.1l-150400.7.37.1 Fixed Version: 1.1.1l-150400.7.75.1 This update for openssl-1_1 fixes the following issues: - CVE-2023-50782: Implicit rejection in PKCS#1 v1.5 (bsc#1220262) |
||
libopenssl1_1-hmac | MEDIUM | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2025:0349-1 Installed Version: 1.1.1l-150400.7.37.1 Fixed Version: 1.1.1l-150400.7.78.1 This update for openssl-1_1 fixes the following issues: - CVE-2024-13176: Fixed timing side-channel in the ECDSA signature computation (bsc#1236136) |
||
libopenssl1_1-hmac | LOW | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2024:0833-1 Installed Version: 1.1.1l-150400.7.37.1 Fixed Version: 1.1.1l-150400.7.63.1 This update for openssl-1_1 fixes the following issues: - CVE-2024-0727: Denial of service when processing a maliciously formatted PKCS12 file (bsc#1219243). |
||
libpcre2-8-0 | MEDIUM | fixed |
Security update for pcre2 Vulnerability ID: SUSE-SU-2023:3327-1 Installed Version: 10.39-150400.4.6.1 Fixed Version: 10.39-150400.4.9.1 This update for pcre2 fixes the following issues: - CVE-2022-41409: Fixed integer overflow vulnerability in pcre2test that allows attackers to cause a denial of service via negative input (bsc#1213514). |