This update for util-linux fixes the following issues:
* CVE-2025-14104: Fixed heap buffer overread in setpwnam() when processing
256-byte usernames (bsc#1254666).
* lscpu: Add support for NVIDIA Olympus arm64 core (jsc#PED-13682).
## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2026-117=1
* openSUSE Leap 15.5
zypper in -t patch SUSE-2026-117=1
* openSUSE Leap 15.6
zypper in -t patch openSUSE-SLE-15.6-2026-117=1
* SUSE Linux Enterprise Micro 5.5 (aarch64 ppc64le s390x x86_64)
* util-linux-2.37.4-150500.9.20.1
* libblkid1-2.37.4-150500.9.20.1
* libsmartcols1-debuginfo-2.37.4-150500.9.20.1
* libuuid1-2.37.4-150500.9.20.1
* libmount1-2.37.4-150500.9.20.1
* libmount1-debuginfo-2.37.4-150500.9.20.1
* libsmartcols1-2.37.4-150500.9.20.1
* util-linux-systemd-2.37.4-150500.9.20.1
* util-linux-systemd-debugsource-2.37.4-150500.9.20.1
* util-linux-debugsource-2.37.4-150500.9.20.1
* util-linux-debuginfo-2.37.4-150500.9.20.1
* libfdisk1-2.37.4-150500.9.20.1
* libblkid1-debuginfo-2.37.4-150500.9.20.1
* libuuid1-debuginfo-2.37.4-150500.9.20.1
* util-linux-systemd-debuginfo-2.37.4-150500.9.20.1
* libfdisk1-debuginfo-2.37.4-150500.9.20.1
* SUSE Linux Enterprise Micro 5.5 (s390x)
* util-linux-extra-2.37.4-150500.9.20.1
* util-linux-extra-debuginfo-2.37.4-150500.9.20.1
* openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64 i586)
* libblkid-devel-2.37.4-150500.9.20.1
* util-linux-2.37.4-150500.9.20.1
*...
Read the Full Advisory* bsc#1254666
* jsc#PED-13682
## References:
* https://www.suse.com/security/cve/CVE-2025-14104.html
* https://bugzilla.suse.com/show_bug.cgi?id=1254666
* https://jira.suse.com/browse/PED-13682
Get the latest Linux and open source security news straight to your inbox.