SUSE Package Hub Updates

Update ID Severity Type Issued Description Packages
SUSE-SLE-Module-Packagehub-Subpackages-15-SP4-2022-3899 important security 2022-11-08 This update for sendmail fixes the following issues: - CVE-2022-31256: Fixed mail to root privilege escalation via sm-client.pre script (bsc#1204696, bsc#1202937).
  • sendmail-8.15.2-150000.8.9.1
SUSE-SLE-Module-Packagehub-Subpackages-15-SP3-2022-3907 moderate security 2022-11-08 This update for gstreamer-plugins-base fixes the following issues: - CVE-2021-3522: Fixed ID3v2 tag frame size check and potential invalid reads (bsc#1185448).
  • gstreamer-plugins-base-1.16.3-150200.4.6.2
SUSE-SLE-Module-Packagehub-Subpackages-15-SP3-2022-3899 important security 2022-11-08 This update for sendmail fixes the following issues: - CVE-2022-31256: Fixed mail to root privilege escalation via sm-client.pre script (bsc#1204696, bsc#1202937).
  • sendmail-8.15.2-150000.8.9.1
openSUSE-2022-10191 important security 2022-11-08 This update for exim fixes the following issues: - CVE-2022-3559: Fixed use after free in processing of the component Regex Handler (boo#1204427, Bug 2915)
  • exim-4.94.2-bp153.5.1
openSUSE-2022-10190 moderate security 2022-11-06 This update for deluge fixes the following issues: Update to version 2.1.1: - CVE-2021-3427: Fixed a XSS in webui via crafted torrent file (boo#1203162).
  • deluge-2.1.1-bp153.2.3.1
openSUSE-2022-10189 moderate security 2022-11-06 This update for deluge fixes the following issues: Update to version 2.1.1: - CVE-2021-3427: Fixed a XSS in webui via crafted torrent file (boo#1203162).
  • deluge-2.1.1-bp154.2.3.1
openSUSE-2022-10187 important security 2022-11-02 This update for EternalTerminal fixes the following issues: Update to 6.2.1: * CVE-2022-24949: Fixed race condition allows local attacker to hijack IPC socket (boo#1202435) * CVE-2022-24950: Fixed p ...
  • EternalTerminal-6.2.1-bp153.2.3.1
openSUSE-2022-10186 important security 2022-11-02 This update for privoxy fixes the following issues: privoxy was updated to 3.0.33 (boo#1193584): * CVE-2021-44543: Encode the template name to prevent XSS (cross-side scripting) when Privoxy is co ...
  • privoxy-3.0.33-bp154.3.3.1
openSUSE-2022-10185 important security 2022-11-02 This update for EternalTerminal fixes the following issues: Update to 6.2.1: * CVE-2022-24949: Fixed race condition allows local attacker to hijack IPC socket (boo#1202435) * CVE-2022-24950: Fixed p ...
  • EternalTerminal-6.2.1-bp154.2.3.1
openSUSE-2022-10184 moderate recommended 2022-11-01 This update for coturn fixes the following issues: - Drop @privileged SystemCallFilter, can prevent service from starting (status=31/SYS)
  • coturn-4.5.2-bp154.2.3.1