Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

openSUSE Leap 15.6: SUSE-SU-2025:0357-1 moderate: etcd security fix

opensuse
Calendar Grey February 6, 2025
Scroller Opensuse
Enhancements to etcd connections address vulnerabilities and bugs in openSUSE Leap 15.6, resulting in better reliability and efficiency.
An update that has two security fixes can now be installed.

Description

This update for etcd fixes the following issues: Security Update to version

3.5.18:

* Ensure all goroutines created by StartEtcd to exit before closing the errc

* mvcc: restore tombstone index if it's first revision

* Bump go toolchain to 1.22.11

* Avoid deadlock in etcd.Close when stopping during bootstrapping

* etcdutl/etcdutl: use datadir package to build wal/snapdir

* Remove duplicated <-s.ReadyNotify()

* Do not wait for ready notify if the server is stopping

* Fix mixVersion test case: ensure a snapshot to be sent out

* *: support custom content check offline in v2store

* Print warning message for deprecated flags if set

* fix runtime error: comparing uncomparable type

* add tls min/max version to grpc proxy

* Fixing a configuration data loss bug: Fillup really really wants that the

template and the target file actually follow the sysconfig format. The

current config and the current template do not fulfill this requirement.

Move the current...

Read the Full Advisory

Patch

## Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like

YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

* openSUSE Leap 15.6

zypper in -t patch openSUSE-SLE-15.6-2025-357=1

Package List

* openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64)

* etcdctl-3.5.18-150000.7.9.1

* etcd-3.5.18-150000.7.9.1

References

* bsc#1095184

* bsc#1183703

## References:

* https://bugzilla.suse.com/show_bug.cgi?id=1095184

* https://bugzilla.suse.com/show_bug.cgi?id=1183703

Announcement ID: SUSE-SU-2025:0357-1
Release Date: 2025-02-04T14:22:02Z
Affected Products: * openSUSE Leap 15.6

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.