Alerts This Week
Warning Icon 1 905
Alerts This Week
Warning Icon 1 905

openSUSE: hauler Important Security Update 2025-20160-1 CVE-2024-0406

opensuse
Calendar Grey December 14, 2025
Dist Opensuse Esm H88
This important update for openSUSE hauler fixes 8 vulnerabilities and includes 8 bug fixes.
An update that solves 8 vulnerabilities and has 8 bug fixes can now be installed.

Description

This update for hauler fixes the following issues:

- Update to version 1.3.1 (bsc#1251516, CVE-2025-47911,

bsc#1251891, CVE-2025-11579, bsc#1251651, CVE-2025-58190,

bsc#1248937, CVE-2025-58058):

* bump github.com/containerd/containerd (#474)

* another fix to tests for new tests (#472)

* fixed typo in testdata (#471)

* fixed/cleaned new tests (#470)

* trying a new way for hauler testing (#467)

* update for cosign v3 verify (#469)

* added digests view to info (#465)

* bump github.com/nwaples/rardecode/v2 from 2.1.1 to 2.2.0 in the go_modules group across 1 directory (#457)

* update oras-go to v1.2.7 for security patches (#464)

* update cosign to v3.0.2+hauler.1 (#463)

* fixed homebrew directory deprecation (#462)

* add registry logout command (#460)

- Update to version 1.3.0:

* bump the go_modules group across 1 directory with 2 updates (#455)

* upgraded versions/dependencies/deprecations (#454)

* allow loading of docker tarballs (#452)

* bump the...

Read the Full Advisory

Patch

Package List

- openSUSE Leap 16.0:

hauler-1.3.1-bp160.1.1

References

* bsc#1235332

* bsc#1241184

* bsc#1241804

* bsc#1246722

* bsc#1248937

* bsc#1251516

* bsc#1251651

* bsc#1251891

References:

* https://www.suse.com/security/cve/CVE-2024-0406.html

* https://www.suse.com/security/cve/CVE-2024-45338.html

* https://www.suse.com/security/cve/CVE-2025-11579.html

* https://www.suse.com/security/cve/CVE-2025-22872.html

* https://www.suse.com/security/cve/CVE-2025-46569.html

* https://www.suse.com/security/cve/CVE-2025-47911.html

* https://www.suse.com/security/cve/CVE-2025-58058.html

* https://www.suse.com/security/cve/CVE-2025-58190.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2025-20160-1
Rating: important
Affected Products: openSUSE Leap 16.0 -------------------------------------------------------------

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here