Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2026:20720-1

Опубликовано: 12 мая 2026
Источник: suse-cvrf

Описание

Security update for trivy

This update for trivy fixes the following issues:

Changes in trivy:

  • update go-git to 5.18.0 (bsc#1264873, CVE-2026-41506)

Список пакетов

openSUSE Leap 16.0
trivy-0.70.0-bp160.2.1

Описание

go-git is an extensible git implementation library written in pure Go. Prior to versions 5.18.0 and 6.0.0-alpha.2, go-git may leak HTTP authentication credentials when following redirects during smart-HTTP clone and fetch operations. This issue has been patched in versions 5.18.0 and 6.0.0-alpha.2.


Затронутые продукты
openSUSE Leap 16.0:trivy-0.70.0-bp160.2.1

Ссылки