Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

openSUSE Leap 17.0 Security Update openSUSE-SU-2026-20487-3 CVE-2026-71235

opensuse
Calendar Grey March 25, 2026
Dist Opensuse Esm H88
An openSUSE update for mumble addresses a low-level issue with a client crash due to incorrect size calculations.
An update that solves one vulnerability and has one bug fix can now be installed.

Description

This update for mumble fixes the following issues:

Changes in mumble:

- CVE-2025-71264: (opus) incorrect size calculations allow for an

out-of-bounds array access and can lead to a client crash (boo#1259721)

- Update to version 1.5.857:

* fixes for undesired ACL behavior

* Client bug fixes: UI, memory leaks, audio mute/volume behavior

Patch instructions:

To install this openSUSE security update use the suse recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 16.0

zypper in -t patch openSUSE-Leap-16.0-packagehub-173=1

Patch

Package List

- openSUSE Leap 16.0:

mumble-1.5.857-bp160.1.1

mumble-server-1.5.857-bp160.1.1

References

* bsc#1259721

References:

* https://www.suse.com/security/cve/CVE-2025-71264.html

Severity
low
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2026:20394-1
Rating: low
Affected Products: openSUSE Leap 16.0 -------------------------------------------------------------

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here