Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE Kubevirt Important Update Fixes DoS Issues 2026-0479-1

suse
Calendar Grey February 12, 2026
Dist Suse Esm H88
An important security update for kubevirt addresses two flaws that could enhance system stability and security.
An update that solves two vulnerabilities and has one security fix can now be installed.

Summary

## This update for kubevirt, virt-api-container, virt-controller-container, virt- exportproxy-container, virt-exportserver-container, virt-handler-container, virt-launcher-container, virt-libguestfs-tools-container, virt-operator- container, virt-pr-helper-container, virt-synchronization-controller-container fixes the following issues: Update to version 1.7.0. (bsc#1257128) Release notes https://github.com/kubevirt/kubevirt/releases/tag/v1.7.0 * CVE-2025-64435: Fixes logic flaw in the virt-controller can lead to incorrect status updates and potentially causing a DoS (bsc#1253189 ) * CVE-2024-45310: Fixes kubevirt vendored github.com/opencontainers/runc/libcontainer/utils: runc can be tricked into creating empty files/directories on host bsc#1257422

References

* bsc#1253189

* bsc#1257128

* bsc#1257422

Cross-

* CVE-2024-45310

* CVE-2025-64435

CVSS scores:

* CVE-2024-45310 ( SUSE ): 3.6 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N

* CVE-2024-45310 ( NVD ): 3.6 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N

* CVE-2024-45310 ( NVD ): 3.6 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N

* CVE-2025-64435 ( SUSE ): 6.0

CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N

* CVE-2025-64435 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H

* CVE-2025-64435 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H

Affected Products:

* Containers Module 15-SP7

* SUSE Linux Enterprise Real Time 15 SP7

* SUSE Linux Enterprise Server 15 SP7

* SUSE Linux Enterprise Server for SAP Applications 15 SP7

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:0479-1
Release Date: 2026-02-12T15:34:12Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here