[SUSE-SU-2024:0327-1] Security update for bouncycastle, jsch

Severity Important
Affected Packages 31
CVEs 1

Security update for bouncycastle, jsch

This update for bouncycastle, jsch fixes the following issues:

  • Updated jsch to version 0.2.15:

    • CVE-2023-48795: Fixed a prefix truncation issue that could lead to disclosure of sensitive information (bsc#1218134).
  • Updated bouncycastle to version 1.77.

Package Affected Version
pkg:rpm/suse/jsch?arch=noarch&distro=sles-15&sp=4 < 0.2.15-150200.11.13.1
pkg:rpm/suse/jsch?arch=noarch&distro=sles-15&sp=3 < 0.2.15-150200.11.13.1
pkg:rpm/suse/jsch?arch=noarch&distro=sles-15&sp=2 < 0.2.15-150200.11.13.1
pkg:rpm/suse/jsch?arch=noarch&distro=sled-15&sp=4 < 0.2.15-150200.11.13.1
pkg:rpm/suse/jsch?arch=noarch&distro=opensuse-leap-15.5 < 0.2.15-150200.11.13.1
pkg:rpm/suse/jsch-javadoc?arch=noarch&distro=opensuse-leap-15.5 < 0.2.15-150200.11.13.1
pkg:rpm/suse/jsch-demo?arch=noarch&distro=opensuse-leap-15.5 < 0.2.15-150200.11.13.1
pkg:rpm/suse/bouncycastle?arch=noarch&distro=sles-15&sp=4 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle?arch=noarch&distro=sles-15&sp=3 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle?arch=noarch&distro=sles-15&sp=2 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle?arch=noarch&distro=sled-15&sp=4 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle?arch=noarch&distro=opensuse-leap-15.5 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sles-15&sp=4 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sles-15&sp=3 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sles-15&sp=2 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sled-15&sp=4 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=opensuse-leap-15.5 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-tls?arch=noarch&distro=opensuse-leap-15.5 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sles-15&sp=4 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sles-15&sp=3 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sles-15&sp=2 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sled-15&sp=4 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=opensuse-leap-15.5 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sles-15&sp=4 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sles-15&sp=3 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sles-15&sp=2 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sled-15&sp=4 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=opensuse-leap-15.5 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-mail?arch=noarch&distro=opensuse-leap-15.5 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-jmail?arch=noarch&distro=opensuse-leap-15.5 < 1.77-150200.3.24.1
pkg:rpm/suse/bouncycastle-javadoc?arch=noarch&distro=opensuse-leap-15.5 < 1.77-150200.3.24.1
ID
SUSE-SU-2024:0327-1
Severity
important
URL
https://www.suse.com/support/update/announcement/2024/suse-su-20240327-1/
Published
2024-02-05T12:21:15
(7 months ago)
Modified
2024-02-05T12:21:15
(7 months ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/jsch?arch=noarch&distro=sles-15&sp=4 suse jsch < 0.2.15-150200.11.13.1 sles-15 noarch
Affected pkg:rpm/suse/jsch?arch=noarch&distro=sles-15&sp=3 suse jsch < 0.2.15-150200.11.13.1 sles-15 noarch
Affected pkg:rpm/suse/jsch?arch=noarch&distro=sles-15&sp=2 suse jsch < 0.2.15-150200.11.13.1 sles-15 noarch
Affected pkg:rpm/suse/jsch?arch=noarch&distro=sled-15&sp=4 suse jsch < 0.2.15-150200.11.13.1 sled-15 noarch
Affected pkg:rpm/suse/jsch?arch=noarch&distro=opensuse-leap-15.5 suse jsch < 0.2.15-150200.11.13.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/jsch-javadoc?arch=noarch&distro=opensuse-leap-15.5 suse jsch-javadoc < 0.2.15-150200.11.13.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/jsch-demo?arch=noarch&distro=opensuse-leap-15.5 suse jsch-demo < 0.2.15-150200.11.13.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle?arch=noarch&distro=sles-15&sp=4 suse bouncycastle < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle?arch=noarch&distro=sles-15&sp=3 suse bouncycastle < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle?arch=noarch&distro=sles-15&sp=2 suse bouncycastle < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle?arch=noarch&distro=sled-15&sp=4 suse bouncycastle < 1.77-150200.3.24.1 sled-15 noarch
Affected pkg:rpm/suse/bouncycastle?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle < 1.77-150200.3.24.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sles-15&sp=4 suse bouncycastle-util < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sles-15&sp=3 suse bouncycastle-util < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sles-15&sp=2 suse bouncycastle-util < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sled-15&sp=4 suse bouncycastle-util < 1.77-150200.3.24.1 sled-15 noarch
Affected pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-util < 1.77-150200.3.24.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-tls?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-tls < 1.77-150200.3.24.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sles-15&sp=4 suse bouncycastle-pkix < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sles-15&sp=3 suse bouncycastle-pkix < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sles-15&sp=2 suse bouncycastle-pkix < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sled-15&sp=4 suse bouncycastle-pkix < 1.77-150200.3.24.1 sled-15 noarch
Affected pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-pkix < 1.77-150200.3.24.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sles-15&sp=4 suse bouncycastle-pg < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sles-15&sp=3 suse bouncycastle-pg < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sles-15&sp=2 suse bouncycastle-pg < 1.77-150200.3.24.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sled-15&sp=4 suse bouncycastle-pg < 1.77-150200.3.24.1 sled-15 noarch
Affected pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-pg < 1.77-150200.3.24.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-mail?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-mail < 1.77-150200.3.24.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-jmail?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-jmail < 1.77-150200.3.24.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-javadoc?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-javadoc < 1.77-150200.3.24.1 opensuse-leap-15.5 noarch
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...