Oval Definition:oval:org.opensuse.security:def:69669
Revision Date:2021-06-11Version:1
Title:Security update for containerd, docker, runc (Important)
Description:

This update for containerd, docker, runc fixes the following issues:

Docker was updated to 20.10.6-ce (bsc#1184768, bsc#1182947, bsc#1181594)

Switch version to use -ce suffix rather than _ce to avoid confusing other tools (bsc#1182476). * CVE-2021-21284: Fixed a potential privilege escalation when the root user in the remapped namespace has access to the host filesystem (bsc#1181732) * CVE-2021-21285: Fixed an issue where pulling a malformed Docker image manifest crashes the dockerd daemon (bsc#1181730). * btrfs quotas being removed by Docker regularly (bsc#1183855, bsc#1175081)

runc was updated to v1.0.0~rc93 (bsc#1182451, bsc#1175821 bsc#1184962).

Use the upstream runc package (bsc#1181641, bsc#1181677, bsc#1175821). * Fixed /dev/null is not available (bsc#1168481). * CVE-2021-30465: Fixed a symlink-exchange attack vulnarability (bsc#1185405).

containerd was updated to v1.4.4

CVE-2021-21334: Fixed a potential information leak through environment variables (bsc#1183397). * Handle a requirement from docker (bsc#1181594).
Family:unixClass:patch
Status:Reference(s):1061210
1105173
1144522
1152684
1168481
1175081
1175821
1181594
1181641
1181677
1181730
1181732
1181749
1182451
1182476
1182947
1183024
1183855
1184768
1184962
1185405
CVE-2018-11212
CVE-2018-2790
CVE-2018-2794
CVE-2018-2795
CVE-2018-2796
CVE-2018-2797
CVE-2018-2798
CVE-2018-2799
CVE-2018-2814
CVE-2018-2825
CVE-2018-2826
CVE-2018-2940
CVE-2018-2952
CVE-2018-2972
CVE-2018-2973
CVE-2018-3136
CVE-2018-3139
CVE-2018-3149
CVE-2018-3150
CVE-2018-3157
CVE-2018-3169
CVE-2018-3180
CVE-2018-3183
CVE-2019-2422
CVE-2019-2426
CVE-2019-2602
CVE-2019-2684
CVE-2019-2745
CVE-2019-2762
CVE-2019-2766
CVE-2019-2769
CVE-2019-2786
CVE-2019-2816
CVE-2019-2818
CVE-2019-2821
CVE-2019-2894
CVE-2019-2933
CVE-2019-2945
CVE-2019-2949
CVE-2019-2958
CVE-2019-2962
CVE-2019-2964
CVE-2019-2973
CVE-2019-2975
CVE-2019-2977
CVE-2019-2978
CVE-2019-2981
CVE-2019-2983
CVE-2019-2987
CVE-2019-2988
CVE-2019-2989
CVE-2019-2992
CVE-2019-2999
CVE-2019-7317
CVE-2019-9853
CVE-2020-2583
CVE-2020-2590
CVE-2020-2593
CVE-2020-2601
CVE-2020-2604
CVE-2020-2654
CVE-2020-2655
CVE-2020-2754
CVE-2020-2755
CVE-2020-2756
CVE-2020-2757
CVE-2020-2767
CVE-2020-2773
CVE-2020-2778
CVE-2020-2781
CVE-2020-2800
CVE-2020-2803
CVE-2020-2805
CVE-2020-2816
CVE-2020-2830
CVE-2021-21284
CVE-2021-21285
CVE-2021-21334
CVE-2021-30465
SUSE-SU-2021:1954-1
Platform(s):SUSE Linux Enterprise Module for Basesystem 15 SP2
SUSE Linux Enterprise Server 15 SP1-BCL
SUSE Linux Enterprise Workstation Extension 15 SP1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND Package Information
  • java-11-openjdk-11.0.7.0-3.42 is installed
  • OR java-11-openjdk-demo-11.0.7.0-3.42 is installed
  • OR java-11-openjdk-devel-11.0.7.0-3.42 is installed
  • OR java-11-openjdk-headless-11.0.7.0-3.42 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15 SP1-BCL is installed
  • AND Package Information
  • containerd-1.4.4-5.32.1 is installed
  • OR docker-20.10.6_ce-6.49.3 is installed
  • OR docker-bash-completion-20.10.6_ce-6.49.3 is installed
  • OR runc-1.0.0~rc93-1.14.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • cmis-client-0.5.2-3.3 is installed
  • OR libcmis-0_5-5-0.5.2-3.3 is installed
  • OR libcmis-devel-0.5.2-3.3 is installed
  • OR libixion-0.15.0-4.6 is installed
  • OR libixion-0_15-0-0.15.0-4.6 is installed
  • OR libmwaw-0.3.15-4.6 is installed
  • OR libmwaw-0_3-3-0.3.15-4.6 is installed
  • OR liborcus-0.15.3-3.6 is installed
  • OR liborcus-0_15-0-0.15.3-3.6 is installed
  • OR liborcus-devel-0.15.3-3.6 is installed
  • OR myspell-af_ZA-20191016-3.12 is installed
  • OR myspell-ar-20191016-3.12 is installed
  • OR myspell-bg_BG-20191016-3.12 is installed
  • OR myspell-bn_BD-20191016-3.12 is installed
  • OR myspell-br_FR-20191016-3.12 is installed
  • OR myspell-ca-20191016-3.12 is installed
  • OR myspell-cs_CZ-20191016-3.12 is installed
  • OR myspell-da_DK-20191016-3.12 is installed
  • OR myspell-dictionaries-20191016-3.12 is installed
  • OR myspell-el_GR-20191016-3.12 is installed
  • OR myspell-et_EE-20191016-3.12 is installed
  • OR myspell-fr_FR-20191016-3.12 is installed
  • OR myspell-gl-20191016-3.12 is installed
  • OR myspell-gu_IN-20191016-3.12 is installed
  • OR myspell-he_IL-20191016-3.12 is installed
  • OR myspell-hi_IN-20191016-3.12 is installed
  • OR myspell-hr_HR-20191016-3.12 is installed
  • OR myspell-it_IT-20191016-3.12 is installed
  • OR myspell-lt_LT-20191016-3.12 is installed
  • OR myspell-lv_LV-20191016-3.12 is installed
  • OR myspell-nl_NL-20191016-3.12 is installed
  • OR myspell-nn_NO-20191016-3.12 is installed
  • OR myspell-pl_PL-20191016-3.12 is installed
  • OR myspell-pt_PT-20191016-3.12 is installed
  • OR myspell-si_LK-20191016-3.12 is installed
  • OR myspell-sk_SK-20191016-3.12 is installed
  • OR myspell-sl_SI-20191016-3.12 is installed
  • OR myspell-sr-20191016-3.12 is installed
  • OR myspell-sv_SE-20191016-3.12 is installed
  • OR myspell-te_IN-20191016-3.12 is installed
  • OR myspell-th_TH-20191016-3.12 is installed
  • OR myspell-tr_TR-20191016-3.12 is installed
  • OR myspell-uk_UA-20191016-3.12 is installed
  • OR myspell-zu_ZA-20191016-3.12 is installed
  • BACK