Update Info

SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2023-3886


Security update for grafana


Type: security
Severity: important
Issued: 2023-09-28
Description:
This update for grafana fixes the following issues:

- CVE-2023-29409: Restrict RSA keys in certificates to less than or equal to 8192 bits to avoid DoSing client/server
  while validating signatures for extremely large RSA keys. (bsc#1213880)
  There are no direct source changes. The CVE is fixed rebuilding the sources with the patched Go version.


              

Packages


  • grafana-9.5.5-150200.3.47.1