gpp_maybe
Security update for golang prometheus
SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2023-3888
This update for Golang Prometheus fixes the following issues: golang-github-prometheus-alertmanager: - CVE-2023-29409: Restrict RSA keys in certificates to less than or equal to 8192 bits to avoid DoSing client/server while validating signatures for extremely large RSA keys. (bsc#1213880) There are no direct source changes. The CVE is fixed rebuilding the sources with the patched Go version. golang-github-prometheus-node_exporter: - CVE-2023-29409: Restrict RSA keys in certificates to less than or equal to 8192 bits to avoid DoSing client/server while validating signatures for extremely large RSA keys. (bsc#1213880) There are no direct source changes. The CVE is fixed rebuilding the sources with the patched Go version.
-
Release DateSep 28 2023
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Package Hub 15.5 s390x
-
Packagesgolang-github-prometheus-alertmanager
Prometheus Alertmanager0.23.0-150100.4.16.2 lock rpm lock src
SUSE Package Hub 15.5 x86_64
-
Packagesgolang-github-prometheus-alertmanager
Prometheus Alertmanager0.23.0-150100.4.16.2 lock rpm lock src
SUSE Package Hub 15.5 aarch64
-
Packagesgolang-github-prometheus-alertmanager
Prometheus Alertmanager0.23.0-150100.4.16.2 lock rpm lock src
SUSE Package Hub 15.5 ppc64le
-
Packagesgolang-github-prometheus-alertmanager
Prometheus Alertmanager0.23.0-150100.4.16.2 lock rpm lock src