Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 436
Alerts This Week
Warning Icon 1 436

openSUSE Cloud-init Important Security Fixes 2026-1980-1

suse
Calendar Grey May 18, 2026
Scroller Suse
Update for cloud-init on openSUSE fixes two issues and includes important security patches recommending timely installation.
An update that solves two vulnerabilities, contains two features and has six security fixes can now be installed.

Summary

## This update for cloud-init fixes the following issues: * Update to version 25.1.3 (bsc#1245403, CVE-2024-11584, CVE-2024-6174) * Update to version 25.1.1 (bsc#1239715, jsc#PED-8680, bsc#1228414, bsc#1237764) * Make sure a directory exists, if not create it, before writing in that location (bsc#1236720) * rsyslog warning, '~' is deprecated (bsc#1170154) * Support python 3.13 (bsc#1233649) * Move fdupes call back to %install (bsc#1214169) * Re-ship python dependencies, those have no source changes. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2026-1980=1 * openSUSE Leap 15.6

References

* bsc#1170154

* bsc#1214169

* bsc#1228414

* bsc#1233649

* bsc#1236720

* bsc#1237764

* bsc#1239715

* bsc#1245403

* jsc#PED-13380

* jsc#PED-8680

Cross-

* CVE-2024-11584

* CVE-2024-6174

CVSS scores:

* CVE-2024-11584 ( SUSE ): 5.1

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N

* CVE-2024-11584 ( SUSE ): 5.9 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

* CVE-2024-11584 ( NVD ): 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

* CVE-2024-11584 ( NVD ): 5.9 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

* CVE-2024-6174 ( SUSE ): 7.7

CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

* CVE-2024-6174 ( SUSE ): 8.8 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

* CVE-2024-6174 ( NVD ): 8.8 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:1980-1
Release Date: 2026-05-18T12:09:51Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.