An update that solves one vulnerability can now be installed.. # libexslt0-1.1.43-3.1 on GA media Announcement ID: openSUSE-SU-2025:15611-1 Rating: moderate Cross-References: * CVE-2025-10911 CVSS scores: * CVE-2025-10911 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-10911 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the libexslt0-1.1.43-3.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * libexslt0 1.1.43-3.1 * libxslt-devel 1.1.43-3.1 * libxslt-devel-32bit 1.1.43-3.1 * libxslt-tools 1.1.43-3.1 * libxslt1 1.1.43-3.1 * libxslt1-32bit 1.1.43-3.1 ## References: * https://www.suse.com/security/cve/CVE-2025-10911.html . An essential update for openSUSE Tumbleweed addressing a moderate severity issue in libexslt0 package, enhancing security.. libexslt, openSUSE Tumbleweed, security update, CVE-2025-10911. . LinuxSecurity.com Team
* bsc#1216109 * bsc#1216123 * bsc#1221400 * bsc#1226136 * bsc#1229858 . # Security update for kubernetes1.25 Announcement ID: SUSE-SU-2024:3344-1 Rating: important References: * bsc#1216109 * bsc#1216123 * bsc#1221400 * bsc#1226136 * bsc#1229858 * bsc#1229867 * bsc#1229869 * bsc#1230323 Cross-References: * CVE-2023-39325 * CVE-2023-44487 * CVE-2023-45288 * CVE-2024-24786 CVSS scores: * CVE-2023-39325 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-39325 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-44487 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-44487 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-45288 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-24786 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * Containers Module 15-SP5 * Containers Module 15-SP6 * openSUSE Leap 15.4 * openSUSE Leap 15.5 * openSUSE Leap 15.6 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS 15-SP4 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves four vulnerabilities and has four security fixes can now be installed. ## Description: This update for kubernetes1.25 fixes the following issues: * CVE-2023-45288: golang.org/x/net: excessive CPU consumption when processing unlimited sets of headers.(bsc#1229869) * CVE-2023-44487: google.golang.org/grpc, kube-apiserver: HTTP/2 rapid reset vulnerability. (bsc#1229869) * CVE-2024-24786: github.com/golang/protobuf: infinite loop when unmarshaling invalid JSON. (bsc#1229867) Bug fixes: * Update go to version 1.22.5 in build requirements. (bsc#1229858) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP4 LTSS 15-SP4 zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2024-3344=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2024-3344=1 * openSUSE Leap 15.4 zypper in -t patch SUSE-2024-3344=1 * openSUSE Leap 15.5 zypper in -t patch openSUSE-SLE-15.5-2024-3344=1 * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2024-3344=1 * Containers Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Containers-15-SP5-2024-3344=1 * Containers Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Containers-15-SP6-2024-3344=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2024-3344=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2024-3344=1 ## Package List: * SUSE Linux Enterprise Server 15 SP4 LTSS 15-SP4 (aarch64 ppc64le s390x x86_64) * kubernetes1.25-client-common-1.25.16-150400.9.16.1 * kubernetes1.25-client-1.25.16-150400.9.16.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * kubernetes1.25-client-common-1.25.16-150400.9.16.1 * kubernetes1.25-client-1.25.16-150400.9.16.1 * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64) * kubernetes1.25-client-common-1.25.16-150400.9.16.1 * kubernetes1.25-kubelet-1.25.16-150400.9.16.1 * kubernetes1.25-proxy-1.25.16-150400.9.16.1 * kubernetes1.25-kubelet-common-1.25.16-150400.9.16.1 * kubernetes1.25-client-1.25.16-150400.9.16.1 * kubernetes1.25-kubeadm-1.25.16-150400.9.16.1 * kubernetes1.25-scheduler-1.25.16-150400.9.16.1 * kubernetes1.25-apiserver-1.25.16-150400.9.16.1 * kubernetes1.25-controller-manager-1.25.16-150400.9.16.1 * openSUSE Leap 15.4 (noarch) * kubernetes1.25-client-bash-completion-1.25.16-150400.9.16.1 * kubernetes1.25-client-fish-completion-1.25.16-150400.9.16.1 * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64) * kubernetes1.25-client-common-1.25.16-150400.9.16.1 * kubernetes1.25-client-1.25.16-150400.9.16.1 * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64) * kubernetes1.25-client-common-1.25.16-150400.9.16.1 * kubernetes1.25-kubelet-1.25.16-150400.9.16.1 * kubernetes1.25-proxy-1.25.16-150400.9.16.1 * kubernetes1.25-kubelet-common-1.25.16-150400.9.16.1 * kubernetes1.25-client-1.25.16-150400.9.16.1 * kubernetes1.25-kubeadm-1.25.16-150400.9.16.1 * kubernetes1.25-scheduler-1.25.16-150400.9.16.1 * kubernetes1.25-apiserver-1.25.16-150400.9.16.1 * kubernetes1.25-controller-manager-1.25.16-150400.9.16.1 * openSUSE Leap 15.6 (noarch) * kubernetes1.25-client-bash-completion-1.25.16-150400.9.16.1 * kubernetes1.25-client-fish-completion-1.25.16-150400.9.16.1 * Containers Module 15-SP5 (aarch64 ppc64le s390x x86_64) * kubernetes1.25-client-common-1.25.16-150400.9.16.1 * kubernetes1.25-client-1.25.16-150400.9.16.1 * Containers Module 15-SP6 (aarch64 ppc64le s390x x86_64) * kubernetes1.25-client-common-1.25.16-150400.9.16.1 * kubernetes1.25-client-1.25.16-150400.9.16.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * kubernetes1.25-client-common-1.25.16-150400.9.16.1 * kubernetes1.25-client-1.25.16-150400.9.16.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) *kubernetes1.25-client-common-1.25.16-150400.9.16.1 * kubernetes1.25-client-1.25.16-150400.9.16.1 ## References: * https://www.suse.com/security/cve/CVE-2023-39325.html * https://www.suse.com/security/cve/CVE-2023-44487.html * https://www.suse.com/security/cve/CVE-2023-45288.html * https://www.suse.com/security/cve/CVE-2024-24786.html * https://bugzilla.suse.com/show_bug.cgi?id=1216109 * https://bugzilla.suse.com/show_bug.cgi?id=1216123 * https://bugzilla.suse.com/show_bug.cgi?id=1221400 * https://bugzilla.suse.com/show_bug.cgi?id=1226136 * https://bugzilla.suse.com/show_bug.cgi?id=1229858 * https://bugzilla.suse.com/show_bug.cgi?id=1229867 * https://bugzilla.suse.com/show_bug.cgi?id=1229869 * https://bugzilla.suse.com/show_bug.cgi?id=1230323 . Gentoo releases an urgent patch for nginx version 1.20 to resolve severe vulnerabilities. Update promptly to protect your infrastructure.. SUSE security update, kubernetes1.25, important patch. . Severity: Important. LinuxSecurity.com Team
An update that solves one vulnerability and has one errata is now available. . SUSE Security Update: Security update for openssl-1_1 ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:0851-1 Rating: important References: #1180995 #1196877 Cross-References: CVE-2022-0778 CVSS scores: CVE-2022-0778 (SUSE): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: SUSE Linux Enterprise High Performance Computing 15-ESPOS SUSE Linux Enterprise High Performance Computing 15-LTSS SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Server for SAP 15 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for openssl-1_1 fixes the following issues: - CVE-2022-0778: Infinite loop in BN_mod_sqrt() reachable when parsing certificates (bsc#1196877). - Add safe primes to DH parameter generation as recommended from RFC7919 and RFC3526 (bsc#1180995). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server for SAP 15: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-2022-851=1 - SUSE Linux Enterprise Server 15-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-2022-851=1 - SUSE Linux Enterprise High Performance Computing 15-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-2022-851=1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-2022-851=1 Package List: - SUSE Linux Enterprise Server for SAP 15 (ppc64le x86_64): libopenssl-1_1-devel-1.1.0i-4.66.1 libopenssl1_1-1.1.0i-4.66.1 libopenssl1_1-debuginfo-1.1.0i-4.66.1 libopenssl1_1-hmac-1.1.0i-4.66.1 openssl-1_1-1.1.0i-4.66.1 openssl-1_1-debuginfo-1.1.0i-4.66.1 openssl-1_1-debugsource-1.1.0i-4.66.1 - SUSE Linux Enterprise Server for SAP 15 (x86_64): libopenssl1_1-32bit-1.1.0i-4.66.1 libopenssl1_1-32bit-debuginfo-1.1.0i-4.66.1 libopenssl1_1-hmac-32bit-1.1.0i-4.66.1 - SUSE Linux Enterprise Server 15-LTSS (aarch64 s390x): libopenssl-1_1-devel-1.1.0i-4.66.1 libopenssl1_1-1.1.0i-4.66.1 libopenssl1_1-debuginfo-1.1.0i-4.66.1 libopenssl1_1-hmac-1.1.0i-4.66.1 openssl-1_1-1.1.0i-4.66.1 openssl-1_1-debuginfo-1.1.0i-4.66.1 openssl-1_1-debugsource-1.1.0i-4.66.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (aarch64 x86_64): libopenssl-1_1-devel-1.1.0i-4.66.1 libopenssl1_1-1.1.0i-4.66.1 libopenssl1_1-debuginfo-1.1.0i-4.66.1 libopenssl1_1-hmac-1.1.0i-4.66.1 openssl-1_1-1.1.0i-4.66.1 openssl-1_1-debuginfo-1.1.0i-4.66.1 openssl-1_1-debugsource-1.1.0i-4.66.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (x86_64): libopenssl1_1-32bit-1.1.0i-4.66.1 libopenssl1_1-32bit-debuginfo-1.1.0i-4.66.1 libopenssl1_1-hmac-32bit-1.1.0i-4.66.1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (aarch64 x86_64): libopenssl-1_1-devel-1.1.0i-4.66.1 libopenssl1_1-1.1.0i-4.66.1 libopenssl1_1-debuginfo-1.1.0i-4.66.1 libopenssl1_1-hmac-1.1.0i-4.66.1 openssl-1_1-1.1.0i-4.66.1 openssl-1_1-debuginfo-1.1.0i-4.66.1 openssl-1_1-debugsource-1.1.0i-4.66.1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (x86_64): libopenssl1_1-32bit-1.1.0i-4.66.1 libopenssl1_1-32bit-debuginfo-1.1.0i-4.66.1 libopenssl1_1-hmac-32bit-1.1.0i-4.66.1 References: https://www.suse.com/security/cve/CVE-2022-0778.html https://bugzilla.suse.com/1180995 https://bugzilla.suse.com/1196877 . SUSESecurity Patch addresses a critical vulnerability in openssl-1_1, improving defense mechanisms against prospective risks.. SUSE Linux Enterprise, OpenSSL Patch, Security Update, Software Protection. . Severity: Important. LinuxSecurity.com Team
Updated hplip packages that fix one security issue are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having [More...]. ==================================================================== Red Hat Security Advisory Synopsis: Important: hplip security update Advisory ID: RHSA-2013:1274-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2013:1274.html Issue date: 2013-09-19 CVE Names: CVE-2013-4325 ==================================================================== 1. Summary: Updated hplip packages that fix one security issue are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having important security impact. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available from the CVE link in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Desktop (v. 6) - i386, x86_64 Red Hat Enterprise Linux Server (v. 6) - i386, ppc64, x86_64 Red Hat Enterprise Linux Workstation (v. 6) - i386, x86_64 3. Description: The hplip packages contain the Hewlett-Packard Linux Imaging and Printing Project (HPLIP), which provides drivers for Hewlett-Packard printers and multi-function peripherals. HPLIP communicated with PolicyKit for authorization via a D-Bus API that is vulnerable to a race condition. This could lead to intended PolicyKit authorizations being bypassed. This update modifies HPLIP to communicate with PolicyKit via a different API that is not vulnerable to the race condition. (CVE-2013-4325) All users of hplip are advised to upgrade to these updated packages, which contain a backported patch to correct this issue. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. This update is available via the Red Hat Network. Details on how to usethe Red Hat Network to apply this update are available at https://access.redhat.com/site/articles/11258 5. Bugs fixed (http://bugzilla.redhat.com/): 1006674 - CVE-2013-4325 hplip: Insecure calling of polkit 6. Package List: Red Hat Enterprise Linux Desktop (v. 6): Source: i386: hpijs-3.12.4-4.el6_4.1.i686.rpm hplip-3.12.4-4.el6_4.1.i686.rpm hplip-common-3.12.4-4.el6_4.1.i686.rpm hplip-debuginfo-3.12.4-4.el6_4.1.i686.rpm hplip-gui-3.12.4-4.el6_4.1.i686.rpm hplip-libs-3.12.4-4.el6_4.1.i686.rpm libsane-hpaio-3.12.4-4.el6_4.1.i686.rpm x86_64: hpijs-3.12.4-4.el6_4.1.x86_64.rpm hplip-3.12.4-4.el6_4.1.x86_64.rpm hplip-common-3.12.4-4.el6_4.1.x86_64.rpm hplip-debuginfo-3.12.4-4.el6_4.1.i686.rpm hplip-debuginfo-3.12.4-4.el6_4.1.x86_64.rpm hplip-gui-3.12.4-4.el6_4.1.x86_64.rpm hplip-libs-3.12.4-4.el6_4.1.i686.rpm hplip-libs-3.12.4-4.el6_4.1.x86_64.rpm libsane-hpaio-3.12.4-4.el6_4.1.x86_64.rpm Red Hat Enterprise Linux Server (v. 6): Source: i386: hpijs-3.12.4-4.el6_4.1.i686.rpm hplip-3.12.4-4.el6_4.1.i686.rpm hplip-common-3.12.4-4.el6_4.1.i686.rpm hplip-debuginfo-3.12.4-4.el6_4.1.i686.rpm hplip-gui-3.12.4-4.el6_4.1.i686.rpm hplip-libs-3.12.4-4.el6_4.1.i686.rpm libsane-hpaio-3.12.4-4.el6_4.1.i686.rpm ppc64: hpijs-3.12.4-4.el6_4.1.ppc64.rpm hplip-3.12.4-4.el6_4.1.ppc64.rpm hplip-common-3.12.4-4.el6_4.1.ppc64.rpm hplip-debuginfo-3.12.4-4.el6_4.1.ppc.rpm hplip-debuginfo-3.12.4-4.el6_4.1.ppc64.rpm hplip-gui-3.12.4-4.el6_4.1.ppc64.rpm hplip-libs-3.12.4-4.el6_4.1.ppc.rpm hplip-libs-3.12.4-4.el6_4.1.ppc64.rpm libsane-hpaio-3.12.4-4.el6_4.1.ppc64.rpm x86_64: hpijs-3.12.4-4.el6_4.1.x86_64.rpm hplip-3.12.4-4.el6_4.1.x86_64.rpm hplip-common-3.12.4-4.el6_4.1.x86_64.rpm hplip-debuginfo-3.12.4-4.el6_4.1.i686.rpm hplip-debuginfo-3.12.4-4.el6_4.1.x86_64.rpm hplip-gui-3.12.4-4.el6_4.1.x86_64.rpm hplip-libs-3.12.4-4.el6_4.1.i686.rpm hplip-libs-3.12.4-4.el6_4.1.x86_64.rpm libsane-hpaio-3.12.4-4.el6_4.1.x86_64.rpm Red Hat Enterprise Linux Workstation (v.6): Source: i386: hpijs-3.12.4-4.el6_4.1.i686.rpm hplip-3.12.4-4.el6_4.1.i686.rpm hplip-common-3.12.4-4.el6_4.1.i686.rpm hplip-debuginfo-3.12.4-4.el6_4.1.i686.rpm hplip-gui-3.12.4-4.el6_4.1.i686.rpm hplip-libs-3.12.4-4.el6_4.1.i686.rpm libsane-hpaio-3.12.4-4.el6_4.1.i686.rpm x86_64: hpijs-3.12.4-4.el6_4.1.x86_64.rpm hplip-3.12.4-4.el6_4.1.x86_64.rpm hplip-common-3.12.4-4.el6_4.1.x86_64.rpm hplip-debuginfo-3.12.4-4.el6_4.1.i686.rpm hplip-debuginfo-3.12.4-4.el6_4.1.x86_64.rpm hplip-gui-3.12.4-4.el6_4.1.x86_64.rpm hplip-libs-3.12.4-4.el6_4.1.i686.rpm hplip-libs-3.12.4-4.el6_4.1.x86_64.rpm libsane-hpaio-3.12.4-4.el6_4.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://access.redhat.com/security/cve/CVE-2013-4325 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2013 Red Hat, Inc. . Crucial hplip security patch released for Red Hat Enterprise Linux, tackling critical authorization vulnerabilities and enhancing overall system security.. hplip Security Update, Red Hat Advisory, Authorization Bypass Issue. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.