## This update for cloud-init fixes the following issues: * Update to version 25.1.3 (bsc#1245403, CVE-2024-11584, CVE-2024-6174) * Update to version 25.1.1 (bsc#1239715, jsc#PED-8680, bsc#1228414, bsc#1237764) * Make sure a directory exists, if not create it, before writing in that location (bsc#1236720) * rsyslog warning, '~' is deprecated (bsc#1170154) * Support python 3.13 (bsc#1233649) * Move fdupes call back to %install (bsc#1214169) * Re-ship python dependencies, those have no source changes. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2026-1980=1 * openSUSE Leap 15.6
* bsc#1170154
* bsc#1214169
* bsc#1228414
* bsc#1233649
* bsc#1236720
* bsc#1237764
* bsc#1239715
* bsc#1245403
* jsc#PED-13380
* jsc#PED-8680
Cross-
* CVE-2024-11584
* CVE-2024-6174
CVSS scores:
* CVE-2024-11584 ( SUSE ): 5.1
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
* CVE-2024-11584 ( SUSE ): 5.9 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
* CVE-2024-11584 ( NVD ): 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
* CVE-2024-11584 ( NVD ): 5.9 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
* CVE-2024-6174 ( SUSE ): 7.7
CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
* CVE-2024-6174 ( SUSE ): 8.8 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
* CVE-2024-6174 ( NVD ): 8.8 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Get the latest Linux and open source security news straight to your inbox.