thunderbird (SL7)

Synopsis: Important: thunderbird security update Advisory ID: SLSA-2023:1401-1 Issue Date: 2023-03-24 CVE Numbers: CVE-2023-25751 CVE-2023-25752 CVE-2023-28162 CVE-2023-28164 CVE-2023-28176 — This update upgrades Thunderbird to version 102.9.0. Security Fix(es): * Mozilla: Incorrect code generation during JIT compilation (CVE-2023-25751) * Mozilla: Memory … Read More

openssl (SL7)

Synopsis: Important: openssl security update Advisory ID: SLSA-2023:1335-1 Issue Date: 2023-03-22 CVE Numbers: CVE-2023-0286 — Security Fix(es): * openssl: X.400 address type confusion in X.509 GeneralName (CVE-2023-0286) For more details about the security issue(s), including the impact, a CVSS score, … Read More

nss (SL7)

Synopsis: Important: nss security update Advisory ID: SLSA-2023:1332-1 Issue Date: 2023-03-22 CVE Numbers: CVE-2023-0767 — Security Fix(es): * nss: Arbitrary memory write via PKCS 12 (CVE-2023-0767) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, … Read More

firefox (SL7)

Synopsis: Important: firefox security update Advisory ID: SLSA-2023:1333-1 Issue Date: 2023-03-22 CVE Numbers: CVE-2023-25751 CVE-2023-25752 CVE-2023-28162 CVE-2023-28164 CVE-2023-28176 — This update upgrades Firefox to version 102.9.0 ESR. Security Fix(es): * Mozilla: Incorrect code generation during JIT compilation (CVE-2023-25751) * Mozilla: … Read More

openssl (SL7)

Synopsis: Important: openssl security update Advisory ID: SLSA-2023:1335-1 Issue Date: 2023-03-22 CVE Numbers: CVE-2023-0286 — Security Fix(es): * openssl: X.400 address type confusion in X.509 GeneralName (CVE-2023-0286) For more details about the security issue(s), including the impact, a CVSS score, … Read More

nss (SL7)

Synopsis: Important: nss security update Advisory ID: SLSA-2023:1332-1 Issue Date: 2023-03-22 CVE Numbers: CVE-2023-0767 — Security Fix(es): * nss: Arbitrary memory write via PKCS 12 (CVE-2023-0767) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, … Read More

firefox (SL7)

Synopsis: Important: firefox security update Advisory ID: SLSA-2023:1333-1 Issue Date: 2023-03-22 CVE Numbers: CVE-2023-25751 CVE-2023-25752 CVE-2023-28162 CVE-2023-28164 CVE-2023-28176 — This update upgrades Firefox to version 102.9.0 ESR. Security Fix(es): * Mozilla: Incorrect code generation during JIT compilation (CVE-2023-25751) * Mozilla: … Read More

kernel (SL7)

Synopsis: Important: kernel security and bug fix update Advisory ID: SLSA-2023:1091-1 Issue Date: 2023-03-07 CVE Numbers: CVE-2022-42703 CVE-2022-4378 — Security Fix(es): * kernel: stack overflow in do_proc_dointvec and proc_skip_spaces (CVE-2022-4378) * kernel: use-after-free related to leaf anon_vma double reuse (CVE-2022-42703) … Read More

zlib (SL7)

Synopsis: Moderate: zlib security update Advisory ID: SLSA-2023:1095-1 Issue Date: 2023-03-07 CVE Numbers: CVE-2022-37434 — Security Fix(es): * zlib: heap-based buffer over-read and overflow in inflate() in inflate.c via a large gzip header extra field (CVE-2022-37434) For more details about … Read More

samba (SL7)

Synopsis: Important: samba security update Advisory ID: SLSA-2023:1090-1 Issue Date: 2023-03-07 CVE Numbers: CVE-2022-38023 — Security Fix(es): * samba: RC4/HMAC-MD5 NetLogon Secure Channel is weak and should be avoided (CVE-2022-38023) For more details about the security issue(s), including the impact, … Read More