{"affected":[{"ecosystem_specific":{"binaries":[{"libblkid1":"2.39.3-3.1","libfdisk1":"2.39.3-3.1","libmount1":"2.39.3-3.1","libsmartcols1":"2.39.3-3.1","libuuid1":"2.39.3-3.1","util-linux":"2.39.3-3.1","util-linux-systemd":"2.39.3-3.1"}]},"package":{"ecosystem":"SUSE:Linux Micro 6.0","name":"util-linux","purl":"pkg:rpm/suse/util-linux&distro=SUSE%20Linux%20Micro%206.0"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.39.3-3.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libblkid1":"2.39.3-3.1","libfdisk1":"2.39.3-3.1","libmount1":"2.39.3-3.1","libsmartcols1":"2.39.3-3.1","libuuid1":"2.39.3-3.1","util-linux":"2.39.3-3.1","util-linux-systemd":"2.39.3-3.1"}]},"package":{"ecosystem":"SUSE:Linux Micro 6.0","name":"util-linux-systemd","purl":"pkg:rpm/suse/util-linux-systemd&distro=SUSE%20Linux%20Micro%206.0"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.39.3-3.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for util-linux fixes the following issues:\n\nSecurity issue fixed:\n\n-  CVE-2024-28085: Properly neutralize escape sequences in wall to avoid potential account takeover. (bsc#1221831)\n\nNon-security issues fixed:\n \n- Fix hang of lscpu -e (bsc#1225598)\n- lscpu: Add more ARM cores (bsc#1223605)\n- Document that chcpu -g is not supported on IBM z/VM (bsc#1218609)\n- Processes not cleaned up after failed SSH session are using up 100% CPU (bsc#1220117)\n","id":"SUSE-SU-2025:20003-1","modified":"2025-02-03T08:46:07Z","published":"2025-02-03T08:46:07Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2025/suse-su-202520003-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1218609"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220117"},{"type":"REPORT","url":"https://bugzilla.suse.com/1221831"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223605"},{"type":"REPORT","url":"https://bugzilla.suse.com/1225598"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-28085"}],"related":["CVE-2024-28085"],"summary":"Security update for util-linux","upstream":["CVE-2024-28085"]}