Vulnerability Scan Report for registry.suse.com/bci/openjdk-devel:17-15.4
OpenJDK 17 development container based on the SLE Base Container Image.
Last scanned on: December 08, 2024 17:11
OpenJDK 17 development container based on the SLE Base Container Image.
Last scanned on: December 08, 2024 17:11
Package Name | Severity | Status | Description | Reference links | |
---|---|---|---|---|---|
openssl-1_1 | MEDIUM | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2024:3872-1 Installed Version: 1.1.1l-150400.7.37.1 Fixed Version: 1.1.1l-150400.7.75.1 This update for openssl-1_1 fixes the following issues: - CVE-2023-50782: Implicit rejection in PKCS#1 v1.5 (bsc#1220262) |
||
openssl-1_1 | LOW | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2024:0833-1 Installed Version: 1.1.1l-150400.7.37.1 Fixed Version: 1.1.1l-150400.7.63.1 This update for openssl-1_1 fixes the following issues: - CVE-2024-0727: Denial of service when processing a maliciously formatted PKCS12 file (bsc#1219243). |
||
pam | MEDIUM | fixed |
Security update for pam Vulnerability ID: SUSE-SU-2024:0136-1 Installed Version: 1.3.0-150000.6.61.1 Fixed Version: 1.3.0-150000.6.66.1 This update for pam fixes the following issues: - CVE-2024-22365: Fixed a local denial of service during PAM login due to a missing check during path manipulation (bsc#1218475). - Check localtime_r() return value to fix crashing (bsc#1217000) |
||
perl-base | HIGH | fixed |
Security update for perl Vulnerability ID: SUSE-SU-2023:2882-1 Installed Version: 5.26.1-150300.17.11.1 Fixed Version: 5.26.1-150300.17.14.1 This update for perl fixes the following issues: - CVE-2023-31484: Enable TLS cert verification in CPAN (bsc#1210999). |
||
perl-base | HIGH | fixed |
Security update for perl Vulnerability ID: SUSE-SU-2024:1762-1 Installed Version: 5.26.1-150300.17.11.1 Fixed Version: 5.26.1-150300.17.17.1 This update for perl fixes the following issues: Security issues fixed: - CVE-2018-6913: Fixed space calculation issues in pp_pack.c (bsc#1082216) - CVE-2018-6798: Fixed heap buffer overflow in regexec.c (bsc#1082233) Non-security issue fixed: - make Net::FTP work with TLS 1.3 (bsc#1213638) |