Описание
Security update for expat
This update for expat fixes the following issues:
- CVE-2022-43680: Fixed use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate (bsc#1204708).
Список пакетов
Container bci/bci-init:15.3
libexpat1-2.2.5-150000.3.25.1
Container bci/node:12
libexpat1-2.2.5-150000.3.25.1
Container bci/python:3
libexpat1-2.2.5-150000.3.25.1
Container caasp/v4/cilium:1.6.6
libexpat1-2.2.5-150000.3.25.1
Container ses/7.1/ceph/haproxy:latest
libexpat1-2.2.5-150000.3.25.1
Container ses/7.1/ceph/keepalived:latest
libexpat1-2.2.5-150000.3.25.1
Container ses/7.1/cephcsi/cephcsi:latest
libexpat1-2.2.5-150000.3.25.1
Container ses/7.1/rook/ceph:latest
libexpat1-2.2.5-150000.3.25.1
Container suse/sle-micro-rancher/5.2:latest
libexpat1-2.2.5-150000.3.25.1
Container suse/sle-micro/5.1/toolbox:latest
libexpat1-2.2.5-150000.3.25.1
Container suse/sle-micro/5.2/toolbox:latest
libexpat1-2.2.5-150000.3.25.1
Container trento/trento-db:latest
libexpat1-2.2.5-150000.3.25.1
Container trento/trento-runner:latest
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP1-SAP-Azure-LI-BYOS-Production
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP1-SAPCAL-Azure
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP1-SAPCAL-EC2-HVM
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP1-SAPCAL-GCE
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-BYOS-Azure
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-BYOS-EC2-HVM
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-BYOS-GCE
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-HPC-BYOS-Azure
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-HPC-BYOS-EC2-HVM
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-SAP-Azure
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-SAP-Azure-LI-BYOS-Production
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-SAP-Azure-VLI-BYOS-Production
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-SAP-BYOS-Azure
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-SAP-BYOS-EC2-HVM
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-SAP-BYOS-GCE
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-SAP-EC2-HVM
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP2-SAP-GCE
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-BYOS-Azure
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-BYOS-EC2-HVM
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-BYOS-GCE
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-CHOST-BYOS-Aliyun
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-CHOST-BYOS-Azure
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-CHOST-BYOS-EC2
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-CHOST-BYOS-GCE
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-CHOST-BYOS-SAP-CCloud
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-HPC-BYOS-Azure
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-HPC-BYOS-EC2-HVM
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-HPC-BYOS-GCE
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-Azure
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-EC2-HVM
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-GCE
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-Azure
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-EC2-HVM
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-GCE
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Micro-5-1-BYOS-Azure
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Micro-5-1-BYOS-EC2-HVM
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Micro-5-1-BYOS-GCE
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Micro-5-2-BYOS-Azure
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Micro-5-2-BYOS-EC2-HVM
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-Micro-5-2-BYOS-GCE
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-SAP-Azure-LI-BYOS-Production
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-SAP-Azure-VLI-BYOS-Production
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-SAP-BYOS-Azure
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-SAP-BYOS-EC2-HVM
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-SAP-BYOS-GCE
expat-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-SAPCAL-Azure
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-SAPCAL-EC2-HVM
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
Image SLES15-SP3-SAPCAL-GCE
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
SUSE Enterprise Storage 6
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Enterprise Storage 7
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise High Performance Computing 15-ESPOS
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise High Performance Computing 15-LTSS
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise Micro 5.1
libexpat1-2.2.5-150000.3.25.1
SUSE Linux Enterprise Micro 5.2
libexpat1-2.2.5-150000.3.25.1
SUSE Linux Enterprise Module for Basesystem 15 SP3
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise Server 15 SP1-BCL
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise Server 15 SP1-LTSS
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise Server 15 SP2-BCL
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise Server 15 SP2-LTSS
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise Server 15-LTSS
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise Server for SAP Applications 15
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Manager Proxy 4.1
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Manager Retail Branch Server 4.1
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
SUSE Manager Server 4.1
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
openSUSE Leap 15.3
expat-2.2.5-150000.3.25.1
libexpat-devel-2.2.5-150000.3.25.1
libexpat-devel-32bit-2.2.5-150000.3.25.1
libexpat1-2.2.5-150000.3.25.1
libexpat1-32bit-2.2.5-150000.3.25.1
openSUSE Leap Micro 5.2
libexpat1-2.2.5-150000.3.25.1
Ссылки
- Link for SUSE-SU-2022:3912-1
- E-Mail link for SUSE-SU-2022:3912-1
- SUSE Security Ratings
- SUSE Bug 1204708
- SUSE CVE CVE-2022-43680 page
Описание
In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.
Затронутые продукты
Container bci/bci-init:15.3:libexpat1-2.2.5-150000.3.25.1
Container bci/node:12:libexpat1-2.2.5-150000.3.25.1
Container bci/python:3:libexpat1-2.2.5-150000.3.25.1
Container caasp/v4/cilium:1.6.6:libexpat1-2.2.5-150000.3.25.1
Ссылки
- CVE-2022-43680
- SUSE Bug 1204708
- SUSE Bug 1205590
- SUSE Bug 1205598
- SUSE Bug 1208339