Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2025:03001-1

Опубликовано: 27 авг. 2025
Источник: suse-cvrf

Описание

Security update for ignition

This update for ignition fixes the following issues:

  • CVE-2022-28948: Fixed an issue during unmarshaling in Go-Yaml v3 can lead to DoS via invalid input (bsc#1248548)

Список пакетов

SUSE Linux Enterprise Module for HPC 15 SP6
ignition-2.14.0-150400.9.12.1
ignition-dracut-grub2-2.14.0-150400.9.12.1
SUSE Linux Enterprise Module for HPC 15 SP7
ignition-2.14.0-150400.9.12.1
ignition-dracut-grub2-2.14.0-150400.9.12.1
openSUSE Leap 15.6
ignition-2.14.0-150400.9.12.1
ignition-dracut-grub2-2.14.0-150400.9.12.1

Описание

An issue in the Unmarshal function in Go-Yaml v3 causes the program to crash when attempting to deserialize invalid input.


Затронутые продукты
SUSE Linux Enterprise Module for HPC 15 SP6:ignition-2.14.0-150400.9.12.1
SUSE Linux Enterprise Module for HPC 15 SP6:ignition-dracut-grub2-2.14.0-150400.9.12.1
SUSE Linux Enterprise Module for HPC 15 SP7:ignition-2.14.0-150400.9.12.1
SUSE Linux Enterprise Module for HPC 15 SP7:ignition-dracut-grub2-2.14.0-150400.9.12.1

Ссылки