* bsc#1242269 Cross-References: * CVE-2025-46802 . # Security update for screen Announcement ID: SUSE-SU-2025:02016-1 Release Date: 2025-06-19T07:14:49Z Rating: moderate References: * bsc#1242269 Cross-References: * CVE-2025-46802 CVSS scores: * CVE-2025-46802 ( SUSE ): 5.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2025-46802 ( SUSE ): 6.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N * CVE-2025-46802 ( NVD ): 5.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-46802 ( NVD ): 6.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N Affected Products: * Basesystem Module 15-SP6 * Basesystem Module 15-SP7 * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves one vulnerability can now be installed. ## Description: This update for screen fixes the following issues: Security issues fixed: * CVE-2025-46802: temporary `chmod` of a user's TTY to mode 0666 when attempting to attach to a multi-user session allows for TTY hijacking (bsc#1242269). Other issues fixed: * Use TTY file descriptor passing after a suspend (`MSG_CONT`). * Fix resume after suspend in multi-user mode. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively youcan run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2025-2016=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-2016=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-2016=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-2016=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-2016=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2025-2016=1 * Basesystem Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2025-2016=1 * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2025-2016=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64) * screen-4.6.2-150000.5.8.1 * screen-debuginfo-4.6.2-150000.5.8.1 * screen-debugsource-4.6.2-150000.5.8.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * screen-4.6.2-150000.5.8.1 * screen-debuginfo-4.6.2-150000.5.8.1 * screen-debugsource-4.6.2-150000.5.8.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * screen-4.6.2-150000.5.8.1 * screen-debuginfo-4.6.2-150000.5.8.1 * screen-debugsource-4.6.2-150000.5.8.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * screen-4.6.2-150000.5.8.1 * screen-debuginfo-4.6.2-150000.5.8.1 * screen-debugsource-4.6.2-150000.5.8.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * screen-4.6.2-150000.5.8.1 * screen-debuginfo-4.6.2-150000.5.8.1 * screen-debugsource-4.6.2-150000.5.8.1 * SUSE Linux Enterprise Micro 5.5 (aarch64 ppc64le s390x x86_64) * screen-4.6.2-150000.5.8.1 * screen-debuginfo-4.6.2-150000.5.8.1 * screen-debugsource-4.6.2-150000.5.8.1 * Basesystem Module 15-SP6 (aarch64 ppc64le s390x x86_64) * screen-4.6.2-150000.5.8.1 *screen-debuginfo-4.6.2-150000.5.8.1 * screen-debugsource-4.6.2-150000.5.8.1 * Basesystem Module 15-SP7 (aarch64 ppc64le s390x x86_64) * screen-4.6.2-150000.5.8.1 * screen-debuginfo-4.6.2-150000.5.8.1 * screen-debugsource-4.6.2-150000.5.8.1 ## References: * https://www.suse.com/security/cve/CVE-2025-46802.html * https://bugzilla.suse.com/show_bug.cgi?id=1242269 . Critical patch released for SUSE fixes potential TTY interception in screen tool. It is advisable to apply suggested updates for protection.. SUSE patch management, screen application, linux security update, security advisory, linux vulnerability. . Severity: Medium. LinuxSecurity.com Team
* bsc#1228578 Cross-References: * CVE-2024-41062 . # Security update for the Linux Kernel (Live Patch 17 for SLE 15 SP5) Announcement ID: SUSE-SU-2025:1120-1 Release Date: 2025-04-02T15:03:56Z Rating: important References: * bsc#1228578 Cross-References: * CVE-2024-41062 CVSS scores: * CVE-2024-41062 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-41062 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Live Patching 15-SP4 * SUSE Linux Enterprise Live Patching 15-SP5 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves one vulnerability can now be installed. ## Description: This update for the Linux Kernel 5.14.21-150500_55_73 fixes one issue. The following security issue was fixed: * CVE-2024-41062: Sync sock recv cb and release (bsc#1228578). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-1120=1 SUSE-2025-1115=1 SUSE-2025-1110=1 * SUSE Linux Enterprise Live Patching 15-SP4 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP4-2025-1120=1 SUSE-SLE- Module-Live-Patching-15-SP4-2025-1115=1 SUSE-SLE-Module-Live- Patching-15-SP4-2025-1110=1 * openSUSE Leap 15.5 zypper in -t patch SUSE-2025-1113=1SUSE-2025-1116=1 SUSE-2025-1117=1 SUSE-2025-1111=1 * SUSE Linux Enterprise Live Patching 15-SP5 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2025-1113=1 SUSE-SLE- Module-Live-Patching-15-SP5-2025-1116=1 SUSE-SLE-Module-Live- Patching-15-SP5-2025-1117=1 SUSE-SLE-Module-Live-Patching-15-SP5-2025-1111=1 ## Package List: * openSUSE Leap 15.4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_128-default-debuginfo-7-150400.2.1 * kernel-livepatch-5_14_21-150400_24_119-default-debuginfo-14-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_25-debugsource-15-150400.2.1 * kernel-livepatch-5_14_21-150400_24_116-default-debuginfo-15-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_29-debugsource-7-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_26-debugsource-14-150400.2.1 * kernel-livepatch-5_14_21-150400_24_128-default-7-150400.2.1 * kernel-livepatch-5_14_21-150400_24_116-default-15-150400.2.1 * kernel-livepatch-5_14_21-150400_24_119-default-14-150400.2.1 * SUSE Linux Enterprise Live Patching 15-SP4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_128-default-debuginfo-7-150400.2.1 * kernel-livepatch-5_14_21-150400_24_119-default-debuginfo-14-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_25-debugsource-15-150400.2.1 * kernel-livepatch-5_14_21-150400_24_116-default-debuginfo-15-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_29-debugsource-7-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_26-debugsource-14-150400.2.1 * kernel-livepatch-5_14_21-150400_24_128-default-7-150400.2.1 * kernel-livepatch-5_14_21-150400_24_116-default-15-150400.2.1 * kernel-livepatch-5_14_21-150400_24_119-default-14-150400.2.1 * openSUSE Leap 15.5 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150500_55_65-default-debuginfo-13-150500.2.1 * kernel-livepatch-5_14_21-150500_55_59-default-debuginfo-15-150500.2.1 * kernel-livepatch-SLE15-SP5_Update_12-debugsource-15-150500.2.1 *kernel-livepatch-5_14_21-150500_55_73-default-debuginfo-7-150500.2.1 * kernel-livepatch-SLE15-SP5_Update_15-debugsource-12-150500.2.1 * kernel-livepatch-5_14_21-150500_55_65-default-13-150500.2.1 * kernel-livepatch-SLE15-SP5_Update_14-debugsource-13-150500.2.1 * kernel-livepatch-5_14_21-150500_55_68-default-debuginfo-12-150500.2.1 * kernel-livepatch-5_14_21-150500_55_59-default-15-150500.2.1 * kernel-livepatch-5_14_21-150500_55_68-default-12-150500.2.1 * kernel-livepatch-5_14_21-150500_55_73-default-7-150500.2.1 * kernel-livepatch-SLE15-SP5_Update_17-debugsource-7-150500.2.1 * SUSE Linux Enterprise Live Patching 15-SP5 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150500_55_65-default-debuginfo-13-150500.2.1 * kernel-livepatch-5_14_21-150500_55_59-default-debuginfo-15-150500.2.1 * kernel-livepatch-SLE15-SP5_Update_12-debugsource-15-150500.2.1 * kernel-livepatch-5_14_21-150500_55_73-default-debuginfo-7-150500.2.1 * kernel-livepatch-SLE15-SP5_Update_15-debugsource-12-150500.2.1 * kernel-livepatch-5_14_21-150500_55_65-default-13-150500.2.1 * kernel-livepatch-SLE15-SP5_Update_14-debugsource-13-150500.2.1 * kernel-livepatch-5_14_21-150500_55_68-default-debuginfo-12-150500.2.1 * kernel-livepatch-5_14_21-150500_55_59-default-15-150500.2.1 * kernel-livepatch-5_14_21-150500_55_68-default-12-150500.2.1 * kernel-livepatch-5_14_21-150500_55_73-default-7-150500.2.1 * SUSE Linux Enterprise Live Patching 15-SP5 (ppc64le x86_64) * kernel-livepatch-SLE15-SP5_Update_17-debugsource-7-150500.2.1 ## References: * https://www.suse.com/security/cve/CVE-2024-41062.html * https://bugzilla.suse.com/show_bug.cgi?id=1228578 . Urgent patch for SUSE Linux tackling sync sock vulnerability, crucial for maintaining system protection and stability.. SUSE Kernel Update, Linux Security Patch, Kernel Vulnerability Fix. . Severity: Important. LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # python313-3.13.2-1.1 on GA media Announcement ID: openSUSE-SU-2025:14760-1 Rating: moderate Cross-References: * CVE-2025-0938 CVSS scores: * CVE-2025-0938 ( SUSE ): 4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N * CVE-2025-0938 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the python313-3.13.2-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * python313 3.13.2-1.1 * python313-32bit 3.13.2-1.1 * python313-curses 3.13.2-1.1 * python313-dbm 3.13.2-1.1 * python313-idle 3.13.2-1.1 * python313-tk 3.13.2-1.1 * python313-x86-64-v3 3.13.2-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-0938.html . Patch available for python313-3.13.2-1.1 on openSUSE to mitigate a moderate security vulnerability. Update now to safeguard your system.. openSUSE python313 security moderate update CVE-2025-0938. . LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # python314-3.14.0~a4-1.1 on GA media Announcement ID: openSUSE-SU-2025:14761-1 Rating: moderate Cross-References: * CVE-2025-0938 CVSS scores: * CVE-2025-0938 ( SUSE ): 4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N * CVE-2025-0938 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the python314-3.14.0~a4-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * python314 3.14.0~a4-1.1 * python314-curses 3.14.0~a4-1.1 * python314-dbm 3.14.0~a4-1.1 * python314-idle 3.14.0~a4-1.1 * python314-tk 3.14.0~a4-1.1 * python314-x86-64-v3 3.14.0~a4-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-0938.html . The openSUSE Tumbleweed team issued a security advisory for a moderate vulnerability in the python314-3.14.0~a4-1.1 package, essential for system integrity and performance. openSUSE Tumbleweed, python314 update, security advisory, moderate severity, python package. . LinuxSecurity.com Team
* bsc#1216190 * bsc#1216272 Cross-References: * CVE-2023-38552 . # Security update for nodejs12 Announcement ID: SUSE-SU-2023:4373-1 Rating: important References: * bsc#1216190 * bsc#1216272 Cross-References: * CVE-2023-38552 * CVE-2023-44487 CVSS scores: * CVE-2023-38552 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N * CVE-2023-38552 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N * CVE-2023-44487 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-44487 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Manager Server 4.2 An update that solves two vulnerabilities can now be installed. ## Description: This update for nodejs12 fixes the following issues: * CVE-2023-44487: Fixed the Rapid Reset attack in nghttp2. (bsc#1216190) * CVE-2023-38552: Fixed an integrity checks according to policies that could be circumvented. (bsc#1216272) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch openSUSE-SLE-15.4-2023-4373=1 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 zypper in -tpatch SUSE-SLE-Product-HPC-15-SP2-LTSS-2023-4373=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-ESPOS-2023-4373=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2023-4373=1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2023-4373=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2023-4373=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2023-4373=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2023-4373=1 * SUSE Manager Server 4.2 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.2-2023-4373=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2023-4373=1 ## Package List: * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64) * nodejs14-14.21.3-150200.15.52.2 * nodejs14-devel-14.21.3-150200.15.52.2 * corepack14-14.21.3-150200.15.52.2 * nodejs14-debugsource-14.21.3-150200.15.52.2 * npm14-14.21.3-150200.15.52.2 * nodejs14-debuginfo-14.21.3-150200.15.52.2 * openSUSE Leap 15.4 (noarch) * nodejs14-docs-14.21.3-150200.15.52.2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (aarch64 x86_64) * nodejs14-14.21.3-150200.15.52.2 * nodejs14-devel-14.21.3-150200.15.52.2 * nodejs14-debugsource-14.21.3-150200.15.52.2 * npm14-14.21.3-150200.15.52.2 * nodejs14-debuginfo-14.21.3-150200.15.52.2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (noarch) * nodejs14-docs-14.21.3-150200.15.52.2 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (aarch64 x86_64) * nodejs14-14.21.3-150200.15.52.2 * nodejs14-devel-14.21.3-150200.15.52.2 *nodejs14-debugsource-14.21.3-150200.15.52.2 * npm14-14.21.3-150200.15.52.2 * nodejs14-debuginfo-14.21.3-150200.15.52.2 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (noarch) * nodejs14-docs-14.21.3-150200.15.52.2 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * nodejs14-14.21.3-150200.15.52.2 * nodejs14-devel-14.21.3-150200.15.52.2 * nodejs14-debugsource-14.21.3-150200.15.52.2 * npm14-14.21.3-150200.15.52.2 * nodejs14-debuginfo-14.21.3-150200.15.52.2 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (noarch) * nodejs14-docs-14.21.3-150200.15.52.2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (aarch64 ppc64le s390x x86_64) * nodejs14-14.21.3-150200.15.52.2 * nodejs14-devel-14.21.3-150200.15.52.2 * nodejs14-debugsource-14.21.3-150200.15.52.2 * npm14-14.21.3-150200.15.52.2 * nodejs14-debuginfo-14.21.3-150200.15.52.2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (noarch) * nodejs14-docs-14.21.3-150200.15.52.2 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (aarch64 ppc64le s390x x86_64) * nodejs14-14.21.3-150200.15.52.2 * nodejs14-devel-14.21.3-150200.15.52.2 * nodejs14-debugsource-14.21.3-150200.15.52.2 * npm14-14.21.3-150200.15.52.2 * nodejs14-debuginfo-14.21.3-150200.15.52.2 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (noarch) * nodejs14-docs-14.21.3-150200.15.52.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (ppc64le x86_64) * nodejs14-14.21.3-150200.15.52.2 * nodejs14-devel-14.21.3-150200.15.52.2 * nodejs14-debugsource-14.21.3-150200.15.52.2 * npm14-14.21.3-150200.15.52.2 * nodejs14-debuginfo-14.21.3-150200.15.52.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (noarch) * nodejs14-docs-14.21.3-150200.15.52.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * nodejs14-14.21.3-150200.15.52.2 * nodejs14-devel-14.21.3-150200.15.52.2 *nodejs14-debugsource-14.21.3-150200.15.52.2 * npm14-14.21.3-150200.15.52.2 * nodejs14-debuginfo-14.21.3-150200.15.52.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (noarch) * nodejs14-docs-14.21.3-150200.15.52.2 * SUSE Manager Server 4.2 (ppc64le s390x x86_64) * nodejs14-14.21.3-150200.15.52.2 * nodejs14-devel-14.21.3-150200.15.52.2 * nodejs14-debugsource-14.21.3-150200.15.52.2 * npm14-14.21.3-150200.15.52.2 * nodejs14-debuginfo-14.21.3-150200.15.52.2 * SUSE Manager Server 4.2 (noarch) * nodejs14-docs-14.21.3-150200.15.52.2 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * nodejs14-14.21.3-150200.15.52.2 * nodejs14-devel-14.21.3-150200.15.52.2 * nodejs14-debugsource-14.21.3-150200.15.52.2 * npm14-14.21.3-150200.15.52.2 * nodejs14-debuginfo-14.21.3-150200.15.52.2 * SUSE Enterprise Storage 7.1 (noarch) * nodejs14-docs-14.21.3-150200.15.52.2 ## References: * https://www.suse.com/security/cve/CVE-2023-38552.html * https://www.suse.com/security/cve/CVE-2023-44487.html * https://bugzilla.suse.com/show_bug.cgi?id=1216190 * https://bugzilla.suse.com/show_bug.cgi?id=1216272 . SUSE-SU-2023:4374-1 tackles critical vulnerabilities in python3 impacting various SUSE platforms.. SUSE Nodejs Security Update, Security Patch for Nodejs, Linux Nodejs Update. . Severity: Important. LinuxSecurity.com Team
An update that fixes 11 vulnerabilities is now available. . SUSE Security Update: Security update for java-1_7_1-ibm ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:0051-1 Rating: moderate References: #1154212 #1158442 Cross-References: CVE-2019-2933 CVE-2019-2945 CVE-2019-2962 CVE-2019-2964 CVE-2019-2973 CVE-2019-2978 CVE-2019-2981 CVE-2019-2983 CVE-2019-2989 CVE-2019-2992 CVE-2019-2999 Affected Products: SUSE OpenStack Cloud Crowbar 8 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud 7 SUSE Linux Enterprise Software Development Kit 12-SP5 SUSE Linux Enterprise Software Development Kit 12-SP4 SUSE Linux Enterprise Server for SAP 12-SP3 SUSE Linux Enterprise Server for SAP 12-SP2 SUSE Linux Enterprise Server for SAP 12-SP1 SUSE Linux Enterprise Server 12-SP5 SUSE Linux Enterprise Server 12-SP4 SUSE Linux Enterprise Server 12-SP3-LTSS SUSE Linux Enterprise Server 12-SP3-BCL SUSE Linux Enterprise Server 12-SP2-LTSS SUSE Linux Enterprise Server 12-SP2-BCL SUSE Linux Enterprise Server 12-SP1-LTSS SUSE Enterprise Storage 5 HPE Helion Openstack 8 ______________________________________________________________________________ An update that fixes 11 vulnerabilities is now available. Description: This update for java-1_7_1-ibm fixes the following issues: - Update to 7.1 Service Refresh 4 Fix Pack 55 [bsc#1158442, bsc#1154212] * Security fixes: CVE-2019-2933 CVE-2019-2945 CVE-2019-2962 CVE-2019-2964 CVE-2019-2978 CVE-2019-2983 CVE-2019-2989 CVE-2019-2992 CVE-2019-2999 CVE-2019-2973 CVE-2019-2981 PatchInstructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud Crowbar 8: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-8-2020-51=1 - SUSE OpenStack Cloud 8: zypper in -t patch SUSE-OpenStack-Cloud-8-2020-51=1 - SUSE OpenStack Cloud 7: zypper in -t patch SUSE-OpenStack-Cloud-7-2020-51=1 - SUSE Linux Enterprise Software Development Kit 12-SP5: zypper in -t patch SUSE-SLE-SDK-12-SP5-2020-51=1 - SUSE Linux Enterprise Software Development Kit 12-SP4: zypper in -t patch SUSE-SLE-SDK-12-SP4-2020-51=1 - SUSE Linux Enterprise Server for SAP 12-SP3: zypper in -t patch SUSE-SLE-SAP-12-SP3-2020-51=1 - SUSE Linux Enterprise Server for SAP 12-SP2: zypper in -t patch SUSE-SLE-SAP-12-SP2-2020-51=1 - SUSE Linux Enterprise Server for SAP 12-SP1: zypper in -t patch SUSE-SLE-SAP-12-SP1-2020-51=1 - SUSE Linux Enterprise Server 12-SP5: zypper in -t patch SUSE-SLE-SERVER-12-SP5-2020-51=1 - SUSE Linux Enterprise Server 12-SP4: zypper in -t patch SUSE-SLE-SERVER-12-SP4-2020-51=1 - SUSE Linux Enterprise Server 12-SP3-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP3-2020-51=1 - SUSE Linux Enterprise Server 12-SP3-BCL: zypper in -t patch SUSE-SLE-SERVER-12-SP3-BCL-2020-51=1 - SUSE Linux Enterprise Server 12-SP2-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP2-2020-51=1 - SUSE Linux Enterprise Server 12-SP2-BCL: zypper in -t patch SUSE-SLE-SERVER-12-SP2-BCL-2020-51=1 - SUSE Linux Enterprise Server 12-SP1-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP1-2020-51=1 - SUSE Enterprise Storage 5: zypper in -t patch SUSE-Storage-5-2020-51=1 - HPE Helion Openstack 8: zypper in -t patch HPE-Helion-OpenStack-8-2020-51=1 Package List: - SUSE OpenStack Cloud Crowbar 8 (x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE OpenStack Cloud 8 (x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE OpenStack Cloud 7 (s390x x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-devel-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 - SUSE OpenStack Cloud 7 (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Software Development Kit 12-SP5 (ppc64le s390x x86_64): java-1_7_1-ibm-devel-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Software Development Kit 12-SP4 (ppc64le s390x x86_64): java-1_7_1-ibm-devel-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server for SAP 12-SP3 (ppc64le x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server for SAP 12-SP3 (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server for SAP 12-SP2 (ppc64le x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-devel-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server for SAP 12-SP2 (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server for SAP 12-SP1 (x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-devel-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP5 (ppc64le s390x x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP5 (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP4 (ppc64le s390x x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP4 (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP3-LTSS (ppc64le s390x x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP3-LTSS (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP3-BCL (x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP2-LTSS (ppc64le s390x x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-devel-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP2-LTSS (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP2-BCL (x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-devel-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP1-LTSS (ppc64le s390x x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-devel-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 - SUSE Linux Enterprise Server 12-SP1-LTSS (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - SUSE Enterprise Storage 5 (x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 - HPE Helion Openstack 8 (x86_64): java-1_7_1-ibm-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44.1 java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44.1 References: https://www.suse.com/security/cve/CVE-2019-2933.html https://www.suse.com/security/cve/CVE-2019-2945.html https://www.suse.com/security/cve/CVE-2019-2962.html https://www.suse.com/security/cve/CVE-2019-2964.html https://www.suse.com/security/cve/CVE-2019-2973.html https://www.suse.com/security/cve/CVE-2019-2978.html https://www.suse.com/security/cve/CVE-2019-2981.html https://www.suse.com/security/cve/CVE-2019-2983.html https://www.suse.com/security/cve/CVE-2019-2989.html https://www.suse.com/security/cve/CVE-2019-2992.html https://www.suse.com/security/cve/CVE-2019-2999.html https://bugzilla.suse.com/1154212 https://bugzilla.suse.com/1158442 _______________________________________________ sle-security-updates mailing list
Get the latest Linux and open source security news straight to your inbox.