Описание
Security update for docker
This update for docker fixes the following issues:
- CVE-2025-58181: Fixed a bug in crypto/ssh where invalidated number of mechanisms can cause unbounded memory consumption. (bsc#1253904)
Список пакетов
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5
docker-28.5.1_ce-98.151.1
docker-bash-completion-28.5.1_ce-98.151.1
Ссылки
- Link for SUSE-SU-2026:0772-1
- E-Mail link for SUSE-SU-2026:0772-1
- SUSE Security Ratings
- SUSE Bug 1253904
- SUSE CVE CVE-2025-58181 page
Описание
SSH servers parsing GSSAPI authentication requests do not validate the number of mechanisms specified in the request, allowing an attacker to cause unbounded memory consumption.
Затронутые продукты
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:docker-28.5.1_ce-98.151.1
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:docker-bash-completion-28.5.1_ce-98.151.1
Ссылки
- CVE-2025-58181
- SUSE Bug 1253784