Vulnerability Scan Report for registry.suse.com/bci/bci-init:15.5.8.35
Systemd environment for containers based on the SLE Base Container Image. This container is only supported with podman.
Last scanned on: June 07, 2025 06:04

Systemd environment for containers based on the SLE Base Container Image. This container is only supported with podman.
Last scanned on: June 07, 2025 06:04
Package Name | Severity | Status | Description | Reference links | |
---|---|---|---|---|---|
libopenssl1_1 | LOW | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2024:0549-1 Installed Version: 1.1.1l-150500.17.15.1 Fixed Version: 1.1.1l-150500.17.25.1 This update for openssl-1_1 fixes the following issues: - CVE-2024-0727: Denial of service when processing a maliciously formatted PKCS12 file (bsc#1219243). |
||
libopenssl1_1-hmac | HIGH | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2024:2051-1 Installed Version: 1.1.1l-150500.17.15.1 Fixed Version: 1.1.1l-150500.17.31.1 This update for openssl-1_1 fixes the following issues: - CVE-2024-4741: Fixed a use-after-free with SSL_free_buffers. (bsc#1225551) |
||
libopenssl1_1-hmac | MEDIUM | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2023:4518-1 Installed Version: 1.1.1l-150500.17.15.1 Fixed Version: 1.1.1l-150500.17.22.1 This update for openssl-1_1 fixes the following issues: - CVE-2023-5678: Fixed generating and checking of excessively long X9.42 DH keys that resulted in a possible Denial of Service (bsc#1216922). |
||
libopenssl1_1-hmac | MEDIUM | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2024:1808-1 Installed Version: 1.1.1l-150500.17.15.1 Fixed Version: 1.1.1l-150500.17.28.2 This update for openssl-1_1 fixes the following issues: - CVE-2024-2511: Fixed unconstrained session cache growth in TLSv1.3 (bsc#1222548). |
||
libopenssl1_1-hmac | MEDIUM | fixed |
Security update for openssl-1_1 Vulnerability ID: SUSE-SU-2024:2891-1 Installed Version: 1.1.1l-150500.17.15.1 Fixed Version: 1.1.1l-150500.17.34.1 This update for openssl-1_1 fixes the following issues: - CVE-2024-5535: Fixed a buffer overread in function SSL_select_next_proto() with an empty supported client protocols buffer (bsc#1227138) Other fixes: - Build with no-afalgeng (bsc#1226463) |