File _patchinfo of Package patchinfo.28474

<patchinfo incident="28474">
  <issue tracker="cve" id="2023-25173"/>
  <issue tracker="cve" id="2023-25153"/>
  <issue tracker="bnc" id="1208423">VUL-0: CVE-2023-25153: containerd: OCI image importer memory exhaustion</issue>
  <issue tracker="bnc" id="1208426">VUL-0: CVE-2023-25173: containerd: Supplementary groups are not set up properly</issue>
  <packager>cyphar</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for containerd</summary>
  <description>This update for containerd fixes the following issues:

Update to containerd v1.6.19:

Security fixes:
    
- CVE-2023-25153: Fixed OCI image importer memory exhaustion (bnc#1208423).
- CVE-2023-25173: Fixed supplementary groups not set up properly (bnc#1208426).
</description>
</patchinfo>
openSUSE Build Service is sponsored by