Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

openSUSE Backports SLE-15-SP7 trivy Important Security Update 2026-0163-1

opensuse
Calendar Grey May 4, 2026
Dist Opensuse Esm H88
Addressing nine critical bugs in trivy enhances security on openSUSE Backports SLE-15-SP7, update advised.
An update that fixes 9 vulnerabilities is now available.

Description

This update for trivy fixes the following issues:

Update to version 0.70.0 ( boo#1260193, CVE-2026-33186, boo#1260971,

CVE-2026-33747, boo#1261052, CVE-2026-33748, boo#1262389, CVE-2026-39984,

boo#1262893, CVE-2026-34986):

* release: v0.70.0 [main] (#10105)

* chore(deps): bump go.opentelemetry.io/otel/sdk from 1.42.0 to 1.43.0

(#10496)

* chore(deps): bump github.com/sigstore/timestamp-authority/v2 from

2.0.3 to 2.0.6 (#10526)

* chore(deps): bump the common group across 1 directory with 8 updates

(#10540)

* chore(deps): bump the docker group across 1 directory with 2 updates

(#10538)

* fix: use Development category for GoReleaser discussions (#10530)

* chore(deps): bump testcontainers-go to v0.42.0 (#10531)

* chore: update CODEOWNERS (#10529)

* chore(deps): bump helm.sh/helm/v3 from 3.20.1 to 3.20.2 (#10511)

* chore(deps): bump github.com/hashicorp/go-getter from 1.8.5 to 1.8.6

(#10510)

...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Backports SLE-15-SP7:

zypper in -t patch openSUSE-2026-163=1

Package List

- openSUSE Backports SLE-15-SP7 (aarch64 i586 ppc64le s390x x86_64):

trivy-0.70.0-bp157.2.9.1

References

https://www.suse.com/security/cve/CVE-2025-64702.html

https://www.suse.com/security/cve/CVE-2025-66564.html

https://www.suse.com/security/cve/CVE-2025-69725.html

https://www.suse.com/security/cve/CVE-2026-25934.html

https://www.suse.com/security/cve/CVE-2026-33186.html

https://www.suse.com/security/cve/CVE-2026-33747.html

https://www.suse.com/security/cve/CVE-2026-33748.html

https://www.suse.com/security/cve/CVE-2026-34986.html

https://www.suse.com/security/cve/CVE-2026-39984.html

https://bugzilla.suse.com/1255366

https://bugzilla.suse.com/1258094

https://bugzilla.suse.com/1258513

https://bugzilla.suse.com/1260193

https://bugzilla.suse.com/1260971

https://bugzilla.suse.com/1261052

https://bugzilla.suse.com/1262389

https://bugzilla.suse.com/1262893

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2026:0163-1
Rating: important
Affected Products: openSUSE Backports SLE-15-SP7

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here