Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
This update for libkrun fixes the following issues:
Update vendored openssl crate to version 0.10.81 to deal with:
CVE-2026-41676 (boo#1270198), CVE-2025-24898 (boo#1270429),
CVE-2026-41677 (boo#1270582), CVE-2026-42327 (boo#1270470), CVE-2026-41678
(boo#1270683), CVE-2026-41898 (boo#1270831), CVE-2026-41681 (boo#1270721),
CVE-2026-44662 (boo#1270877).
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Backports SLE-15-SP7:
zypper in -t patch openSUSE-2026-255=1
- openSUSE Backports SLE-15-SP7 (aarch64 x86_64):
libkrun-devel-1.4.10-bp157.2.3.1
libkrun1-1.4.10-bp157.2.3.1
- openSUSE Backports SLE-15-SP7 (x86_64):
libkrun-sev-devel-1.4.10-bp157.2.3.1
libkrun-sev1-1.4.10-bp157.2.3.1
https://www.suse.com/security/cve/CVE-2025-24898.html
https://www.suse.com/security/cve/CVE-2026-41676.html
https://www.suse.com/security/cve/CVE-2026-41677.html
https://www.suse.com/security/cve/CVE-2026-41678.html
https://www.suse.com/security/cve/CVE-2026-41681.html
https://www.suse.com/security/cve/CVE-2026-41898.html
https://www.suse.com/security/cve/CVE-2026-42327.html
https://www.suse.com/security/cve/CVE-2026-44662.html
https://bugzilla.suse.com/1270198
https://bugzilla.suse.com/1270429
https://bugzilla.suse.com/1270470
https://bugzilla.suse.com/1270582
https://bugzilla.suse.com/1270683
https://bugzilla.suse.com/1270721
https://bugzilla.suse.com/1270831
https://bugzilla.suse.com/1270877
Get the latest Linux and open source security news straight to your inbox.