Alerts This Week
Warning Icon 1 758
Alerts This Week
Warning Icon 1 758

SUSE glibc Important Issues Fixed 2026-20563-1 CVE-2026-0915

suse
Calendar Grey March 5, 2026
Dist Suse Esm H88
An important update for glibc addresses multiple vulnerabilities, ensuring better security in SUSE environments.
An update that solves four vulnerabilities and has one fix can now be installed.

Summary

## This update for glibc fixes the following issues: Security fixes: * CVE-2025-0395: Fixed buffer overflow in the assert() function (bsc#1236282). * CVE-2026-0861: Fixed inadequate size check in the memalign suite may result in an integer overflow (bsc#1256766). * CVE-2026-0915: Fixed uninitialized stack buffer used as DNS query name when net==0 in _nss_dns_getnetbyaddr_r (bsc#1256822). * CVE-2025-15281: Fixed uninitialized memory may cause the process abort (bsc#1257005). Other fixes: * NPTL: Optimize trylock for high cache contention workloads (bsc#1256436) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro Extras 6.2

References

* bsc#1236282

* bsc#1256436

* bsc#1256766

* bsc#1256822

* bsc#1257005

Cross-

* CVE-2025-0395

* CVE-2025-15281

* CVE-2026-0861

* CVE-2026-0915

CVSS scores:

* CVE-2025-0395 ( SUSE ): 2.0

CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N

* CVE-2025-0395 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

* CVE-2025-0395 ( NVD ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

* CVE-2025-15281 ( SUSE ): 6.8

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

* CVE-2025-15281 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

* CVE-2025-15281 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

* CVE-2026-0861 ( SUSE ): 8.5

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:20563-1
Release Date: 2026-01-29T16:38:43Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here