An update that solves one vulnerability can now be installed.. # GraphicsMagick-1.3.46-4.1 on GA media Announcement ID: openSUSE-SU-2026:10399-1 Rating: moderate Cross-References: * CVE-2026-28690 CVSS scores: * CVE-2026-28690 ( SUSE ): 8.6 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2026-28690 ( SUSE ): 8.8 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the GraphicsMagick-1.3.46-4.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * GraphicsMagick 1.3.46-4.1 * GraphicsMagick-devel 1.3.46-4.1 * libGraphicsMagick++-Q16-12 1.3.46-4.1 * libGraphicsMagick++-devel 1.3.46-4.1 * libGraphicsMagick-Q16-3 1.3.46-4.1 * libGraphicsMagick3-config 1.3.46-4.1 * libGraphicsMagickWand-Q16-2 1.3.46-4.1 * perl-GraphicsMagick 1.3.46-4.1 ## References: * https://www.suse.com/security/cve/CVE-2026-28690.html . An essential update for openSUSE addressing a moderate severity risk in GraphicsMagick 1.3.46-4.1. Immediate installation recommended.. openSUSE GraphicsMagick update security fix. . LinuxSecurity.com Team
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-20609 http://linux.oracle.com/errata/ELSA-2025-20609.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: bpftool-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-core-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-debug-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-debug-core-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-debug-devel-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-debug-modules-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-debug-modules-extra-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-devel-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-doc-5.15.0-312.187.5.3.el9uek.noarch.rpm kernel-uek-modules-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-modules-extra-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-container-5.15.0-312.187.5.3.el9uek.x86_64.rpm kernel-uek-container-debug-5.15.0-312.187.5.3.el9uek.x86_64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/kernel-uek-5.15.0-312.187.5.3.el9uek.src.rpm Related CVEs: CVE-2025-38264 CVE-2025-38494 CVE-2025-38495 CVE-2025-38499 CVE-2025-38618 Description of changes: [5.15.0-312.187.5.3.el9uek] - HID: core: do not bypass hid_hw_raw_request (Benjamin Tissoires) [Orabug: 38454666] {CVE-2025-38494} - vsock: Do not allow binding to VMADDR_PORT_ANY (Budimir Markovic) [Orabug: 38454665] {CVE-2025-38618} - clone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right userns (Al Viro) [Orabug: 38454664] {CVE-2025-38499} - HID: core: ensure the allocated report buffer can contain the reserved report ID (Benjamin Tissoires) [Orabug: 38454662] {CVE-2025-38495} - nvme-tcp: sanitize request list handling (Hannes Reinecke) [Orabug: 38454661] {CVE-2025-38264} - llist: add interface to check if a node is on a list. (NeilBrown) [Orabug:38454661] _______________________________________________ El-errata mailing list
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-20404 http://linux.oracle.com/errata/ELSA-2025-20404.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: bpftool-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-core-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-debug-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-debug-core-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-debug-devel-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-debug-modules-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-debug-modules-extra-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-devel-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-doc-5.15.0-309.180.4.2.el8uek.noarch.rpm kernel-uek-modules-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-modules-extra-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-container-5.15.0-309.180.4.2.el8uek.x86_64.rpm kernel-uek-container-debug-5.15.0-309.180.4.2.el8uek.x86_64.rpm aarch64: bpftool-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-core-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-debug-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-debug-core-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-debug-devel-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-debug-modules-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-debug-modules-extra-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-devel-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-doc-5.15.0-309.180.4.2.el8uek.noarch.rpm kernel-uek-modules-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-modules-extra-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-container-5.15.0-309.180.4.2.el8uek.aarch64.rpm kernel-uek-container-debug-5.15.0-309.180.4.2.el8uek.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates/kernel-uek-5.15.0-309.180.4.2.el8uek.src.rpm RelatedCVEs: CVE-2024-36350 CVE-2024-36357 Description of changes: [5.15.0-309.180.4.2.el8uek] - Add Zen34 clients (Borislav Petkov (AMD)) [Orabug: 38129825] {CVE-2024-36350} {CVE-2024-36357} - x86/process: Move the buffer clearing before MONITOR (Kim Phillips) [Orabug: 38129825] {CVE-2024-36350} {CVE-2024-36357} - Add normal counters (Borislav Petkov (AMD)) [Orabug: 38129825] {CVE-2024-36350} {CVE-2024-36357} - KVM: SVM: Advertize TSA CPUID bits to guests (Borislav Petkov (AMD)) [Orabug: 38129825] {CVE-2024-36350} {CVE-2024-36357} - x86/bugs: Add a Transient Scheduler Attacks mitigation (Borislav Petkov (AMD)) [Orabug: 38129825] {CVE-2024-36350} {CVE-2024-36357} - x86/bugs: Rename MDS machinery to something more generic (Borislav Petkov (AMD)) [Orabug: 38129825] {CVE-2024-36350} {CVE-2024-36357} - x86/CPU/AMD: Add ZenX generations flags (Borislav Petkov (AMD)) [Orabug: 38129825] {CVE-2024-36350} {CVE-2024-36357} - x86/bugs: Free X86_BUG_AMD_APIC_C1E and X86_BUG_AMD_E400 bits (Boris Ostrovsky) [Orabug: 38129825] {CVE-2024-36350} {CVE-2024-36357} _______________________________________________ El-errata mailing list
Get the latest Linux and open source security news straight to your inbox.