QID 754157

Date Published: 2023-07-25

QID 754157: SUSE Enterprise Linux Security Update for grpc, protobuf, python-Deprecated, python-PyGithub, python-aiocontextvars, python-avro, python-bcrypt, python-cryptography, python-cryptography-vectors, python-google-api-core, pyt (SUSE-SU-2023:2783-1)

SUSE has released a security update for grpc to fix the vulnerabilities.

Affected product(s):
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server 15 SP2|SUSE Linux Enterprise Server for SAP Applications 15 SP2
SUSE Linux Enterprise Server 15 SP1|SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Server 15 SP3|SUSE Linux Enterprise Server for SAP Applications 15 SP3

Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.

  • CVSS V3 rated as Critical - 9.1 severity.
  • CVSS V2 rated as High - 6.4 severity.
  • Solution
    Refer to SUSE security advisory SUSE-SU-2023:2783-1 for updates and patch information.
    Software Advisories
    Advisory ID Software Component Link
    SUSE-SU-2023:2783-1 SUSE Enterprise Linux URL Logo lists.suse.com/pipermail/sle-security-updates/2023-July/015451.html