This update for grafana fixes the following issues:
* CVE-2025-27144: Fixed Go JOSE's Parsing Vulnerability (bsc#1237671)
## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.6
zypper in -t patch openSUSE-SLE-15.6-2025-1011=1
* SUSE Package Hub 15 15-SP6
zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP6-2025-1011=1
* openSUSE Leap 15.6 (ppc64le s390x x86_64)
* grafana-10.4.15-150200.3.69.1
* grafana-debuginfo-10.4.15-150200.3.69.1
* openSUSE Leap 15.6 (aarch64)
* grafana-debuginfo-10.4.15-150200.3.67.1
* grafana-10.4.15-150200.3.67.1
* SUSE Package Hub 15 15-SP6 (aarch64)
* grafana-debuginfo-10.4.15-150200.3.67.1
* grafana-10.4.15-150200.3.67.1
* SUSE Package Hub 15 15-SP6 (ppc64le s390x x86_64)
* grafana-10.4.15-150200.3.69.1
* grafana-debuginfo-10.4.15-150200.3.69.1
* bsc#1237671
* jsc#MSQA-935
## References:
* https://www.suse.com/security/cve/CVE-2025-27144.html
* https://bugzilla.suse.com/show_bug.cgi?id=1237671
* https://jira.suse.com/login.jsp?permissionViolation=true&os_destination=%2Fbrowse%2FMSQA-935&page_caps=&user_role=
Get the latest Linux and open source security news straight to your inbox.