SUSE-SU-2025:03540-1

Advisory lineage Upstream: 53 Downstream: 0
Published: 10 Oct 2025, 19:04
Last modified:04 Feb 2026, 02:38

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

10 Oct 2025, 19:04
Published
Vulnerability first disclosed
04 Feb 2026, 02:38
Last Modified
Vulnerability information updated

Description

Security update for docker-stable This update for docker-stable fixes the following issues: - Include historical changelog data from before the docker-stable fork. The initial changelog entry did technically provide all the necessary information, but our CVE tracking tools do not understand how the package is forked and so it seems that this package does not include fixes for ~12 years of updates. So, include a copy of the original package's changelog up until the fork point. (bsc#1250596) - Remove git-core recommends on SLE. Most SLE systems have installRecommends=yes by default and thus end up installing git with Docker. bsc#1250508 This feature is mostly intended for developers ('docker build git://') so most users already have the dependency installed, and the error when git is missing is fairly straightforward (so they can easily figure out what they need to install). - Backport <https://github.com/moby/moby/pull/48517>. bsc#1247362 - Update to docker-buildx v0.25.0. Upstream changelog: <https://github.com/docker/buildx/releases/tag/v0.25.0> - Do not try to inject SUSEConnect secrets when in Rootless Docker mode, as Docker does not have permission to access the host zypper credentials in this mode (and unprivileged users cannot disable the feature using /etc/docker/suse-secrets-enable.) bsc#1240150 - Initial docker-stable fork, forked from Docker 24.0.7-ce release (packaged on 2024-02-14). The original changelog is included below for historical reference.

Affected Systems

  • susedocker-stable&distro=SUSE Linux Enterprise Server 12 SP5-LTSS

    < 24.0.9_ce-1.20.1

  • susedocker-stable&distro=SUSE Linux Enterprise Server LTSS Extended Security 12 SP5

    < 24.0.9_ce-1.20.1

References (244)