Recommended update for conmon

Announcement ID: SUSE-RU-2024:0261-2
Rating: moderate
References:
Affected Products:
  • Containers Module 15-SP4
  • SUSE Linux Enterprise High Performance Computing 15 SP4
  • SUSE Linux Enterprise Real Time 15 SP4
  • SUSE Linux Enterprise Server 15 SP4
  • SUSE Linux Enterprise Server for SAP Applications 15 SP4
  • SUSE Manager Proxy 4.3
  • SUSE Manager Retail Branch Server 4.3
  • SUSE Manager Server 4.3

An update that has two fixes can now be installed.

Description:

This update for conmon fixes the following issues:

  • New upstream release 2.1.10 Bug fixes:
  • Fix incorrect free in conn_sock
  • logging: Respect log-size-max immediately after open

  • Add patch for fixing regression in v2.1.9 (https://github.com/containers/conmon/issues/475 and https://github.com/containers/conmon/issues/477)

  • New upstream release 2.1.9 ### Bug fixes

  • fix some issues flagged by SAST scan
  • src: fix write after end of buffer
  • src: open all files with O_CLOEXEC
  • oom-score: restore oom score before running exit command ### Features
  • Forward more messages on the sd-notify socket
  • logging: -l passthrough accepts TTYs

  • [bsc#1215806]

  • Update to version 2.1.8:

  • stdio: ignore EIO for terminals (bsc#1217773)
  • ensure console socket buffers are properly sized
  • conmon: drop return after pexit()
  • ctrl: make accept4 failures fatal
  • logging: avoid opening /dev/null for each write
  • oom: restore old OOM score
  • Use default umask 0022
  • cli: log parsing errors to stderr
  • Changes to build conmon for riscv64
  • Changes to build conmon for ppc64le
  • Fix close_other_fds on FreeBSD

Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:

  • Containers Module 15-SP4
    zypper in -t patch SUSE-SLE-Module-Containers-15-SP4-2024-261=1

Package List:

  • Containers Module 15-SP4 (aarch64 ppc64le s390x x86_64)
    • conmon-2.1.10-150400.3.17.1
    • conmon-debuginfo-2.1.10-150400.3.17.1

References: