Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

openSUSE Leap 15.6 logback Moderate ACE Configuration Vulnerability Alert

suse
Calendar Grey February 2, 2026
Dist Suse Esm H88
Update for logback fixes ACE vulnerability in openSUSE Leap 15.6. Install immediately to secure your systems.
An update that solves one vulnerability can now be installed.

Summary

## This update for logback fixes the following issues: * CVE-2026-1225: ACE vulnerability in configuration file (bsc#1257094) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2026-361=1 ## Package List: * openSUSE Leap 15.6 (noarch) * logback-1.2.13-150200.3.16.1 * logback-access-1.2.13-150200.3.16.1 * logback-javadoc-1.2.13-150200.3.16.1 * logback-examples-1.2.13-150200.3.16.1

References

* bsc#1257094

Cross-

* CVE-2026-1225

CVSS scores:

* CVE-2026-1225 ( SUSE ): 6.4 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

* CVE-2026-1225 ( NVD ): 1.8

CVSS:4.0/AV:L/AC:H/AT:P/PR:H/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:N/R:X/V:X/RE:M/U:Green

Affected Products:

* openSUSE Leap 15.6

An update that solves one vulnerability can now be installed.

##

* https://www.suse.com/security/cve/CVE-2026-1225.html

* https://bugzilla.suse.com/show_bug.cgi?id=1257094

Announcement ID: SUSE-SU-2026:0361-1
Release Date: 2026-02-02T13:20:46Z
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here