Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 418
Alerts This Week
Warning Icon 1 418

SUSE Multipath-Tools Security Fix for Moderate Buffer Overflow Issue

suse
Calendar Grey July 23, 2026
Scroller Suse
Discover a moderate security update for multipath-tools in SUSE addressing integer overflow and unbounded write issues.
SUSE released a security update for multipath-tools addressing an integer overflow and an unbounded array write vulnerability in kpartx for specific SUSE Linux Enterprise products.

Summary

## This update for multipath-tools fixes the following issues Update to version 0.7.9+238+suse.1249506. * kpartx: integer overflow in the GPT partition table size calculation can lead to heap OOB read via crafted USB device or disk image (bsc#1268145). * kpartx: missing bounds check can lead to a DASD VOL1 unbounded array write via a crafted DASD disk with more than 256 consecutive format labels (bsc#1268144). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2026-3212=1 ## Package List:

References

* bsc#1268144

* bsc#1268145

Affected Products:

* SUSE Linux Enterprise Server 12 SP5

* SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security

* SUSE Linux Enterprise Server for SAP Applications 12 SP5

An update that has two security fixes can now be installed.

##

* https://bugzilla.suse.com/show_bug.cgi?id=1268144

* https://bugzilla.suse.com/show_bug.cgi?id=1268145

Severity
moderate
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:3212-1
Release Date: 2026-07-23T14:13:53Z
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.