Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 511
Alerts This Week
Warning Icon 1 511

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 74 articles for you...
100

SUSE OVMF Significant mbedtls Memory Overflow Issues 2026-21981-1

An update that solves four vulnerabilities can now be installed.. # Security update for ovmf Announcement ID: SUSE-SU-2026:21981-1 Release Date: 2026-06-02T09:33:25Z Rating: important References: * bsc#1261469 * bsc#1261476 * bsc#1261477 * bsc#1261478 Cross-References: * CVE-2026-25833 * CVE-2026-25834 * CVE-2026-25835 * CVE-2026-34874 CVSS scores: * CVE-2026-25833 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-25833 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-25833 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-25834 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2026-25834 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L * CVE-2026-25834 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L * CVE-2026-25835 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-25835 ( SUSE ): 7.7 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-25835 ( NVD ): 7.7 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-34874 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-34874 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-34874 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Micro 6.2 An update that solves four vulnerabilities can now be installed. ## Description: This update for ovmf fixes the following issues: * CVE-2026-25833: mbedtls: buffer overflow in the `x509_inet_pton_ipv6()` function (bsc#1261476). * CVE-2026-25834: mbedtls: client accepts signature algorithm chosen by server even if not advertised in client hello (bsc#1261477). * CVE-2026-25835: mbedtls: no pseudo-random number generator reseed when cloning an application (bsc#1261478). * CVE-2026-34874: mbedtls: NULL pointer dereference in distinguishedname parsing (bsc#1261469). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.2 zypper in -t patch SUSE-SL-Micro-6.2-865=1 ## Package List: * SUSE Linux Micro 6.2 (noarch) * qemu-ovmf-x86_64-202502-160000.5.1 * qemu-uefi-aarch64-202502-160000.5.1 ## References: * https://www.suse.com/security/cve/CVE-2026-25833.html * https://www.suse.com/security/cve/CVE-2026-25834.html * https://www.suse.com/security/cve/CVE-2026-25835.html * https://www.suse.com/security/cve/CVE-2026-34874.html * https://bugzilla.suse.com/show_bug.cgi?id=1261469 * https://bugzilla.suse.com/show_bug.cgi?id=1261476 * https://bugzilla.suse.com/show_bug.cgi?id=1261477 * https://bugzilla.suse.com/show_bug.cgi?id=1261478 . This update addresses four significant issues in SUSE's OVMF package, enhancing overall system security.. SUSE Security Update, OVMF Fixes, mbedtls Vulnerabilities, Important Security Patches. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 03, 2026 Important SuSE
100

SUSE OVMF Important DoS Vulnerabilities Announced 2026-1952-1

An update that solves four vulnerabilities can now be installed.. # Security update for ovmf Announcement ID: SUSE-SU-2026:1952-1 Release Date: 2026-05-18T07:52:56Z Rating: important References: * bsc#1261469 * bsc#1261476 * bsc#1261477 * bsc#1261478 Cross-References: * CVE-2026-25833 * CVE-2026-25834 * CVE-2026-25835 * CVE-2026-34874 CVSS scores: * CVE-2026-25833 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-25833 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-25833 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-25834 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2026-25834 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L * CVE-2026-25834 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L * CVE-2026-25835 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-25835 ( SUSE ): 7.7 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-25835 ( NVD ): 7.7 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-34874 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-34874 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-34874 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * Server Applications Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Package Hub 15 15-SP7 An update that solves four vulnerabilities can now be installed. ## Description: This update for ovmf fixes the following issues * CVE-2026-25833: mbedtls: buffer underflow in x509_inet_pton_ipv6() (bsc#1261476). * CVE-2026-25834: mbedtls: Algorithm downgrade vulnerability (bsc#1261477). * CVE-2026-25835: mbedtls: PSA randomgenerator cloning (bsc#1261478). * CVE-2026-34874: mbedtls: NULL pointer dereference when setting a distinguished name (bsc#1261469). Changes for ovmf: * Update mbedtls to 3.6.6. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Package Hub 15 15-SP7 zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP7-2026-1952=1 * Server Applications Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP7-2026-1952=1 ## Package List: * SUSE Package Hub 15 15-SP7 (noarch) * qemu-uefi-aarch64-202408-150700.3.18.1 * qemu-ovmf-x86_64-202408-150700.3.18.1 * qemu-uefi-aarch32-202408-150700.3.18.1 * SUSE Package Hub 15 15-SP7 (x86_64) * qemu-ovmf-x86_64-debug-202408-150700.3.18.1 * Server Applications Module 15-SP7 (aarch64 x86_64) * ovmf-202408-150700.3.18.1 * ovmf-tools-202408-150700.3.18.1 * Server Applications Module 15-SP7 (noarch) * qemu-ovmf-x86_64-202408-150700.3.18.1 * qemu-uefi-aarch64-202408-150700.3.18.1 ## References: * https://www.suse.com/security/cve/CVE-2026-25833.html * https://www.suse.com/security/cve/CVE-2026-25834.html * https://www.suse.com/security/cve/CVE-2026-25835.html * https://www.suse.com/security/cve/CVE-2026-34874.html * https://bugzilla.suse.com/show_bug.cgi?id=1261469 * https://bugzilla.suse.com/show_bug.cgi?id=1261476 * https://bugzilla.suse.com/show_bug.cgi?id=1261477 * https://bugzilla.suse.com/show_bug.cgi?id=1261478 . SUSE update addresses four important vulnerabilities in ovmf. See CVE details and install instructions for Users.. SUSE Linux, ovmf update, important vulnerabilities, security patch, system security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 18, 2026 Important SuSE
100

SUSE Linux 16.0 OVMF Moderate Timing Attack Issue SUSE-SU-2026-21161-1

An update that solves one vulnerability can now be installed.. # Security update for ovmf Announcement ID: SUSE-SU-2026:21161-1 Release Date: 2026-04-09T15:10:40Z Rating: moderate References: * bsc#1252441 Cross-References: * CVE-2025-59438 CVSS scores: * CVE-2025-59438 ( SUSE ): 5.7 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2025-59438 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2025-59438 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N Affected Products: * SUSE Linux Enterprise Server 16.0 * SUSE Linux Enterprise Server for SAP applications 16.0 An update that solves one vulnerability can now be installed. ## Description: This update for ovmf fixes the following issue: * CVE-2025-59438: mbedtls: padding oracle attack possible through timing of cipher error reporting (bsc#1252441). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 16.0 zypper in -t patch SUSE-SLES-16.0-514=1 * SUSE Linux Enterprise Server for SAP applications 16.0 zypper in -t patch SUSE-SLES-16.0-514=1 ## Package List: * SUSE Linux Enterprise Server 16.0 (aarch64 x86_64) * ovmf-tools-202502-160000.4.1 * ovmf-202502-160000.4.1 * SUSE Linux Enterprise Server 16.0 (noarch) * qemu-ovmf-x86_64-202502-160000.4.1 * qemu-uefi-aarch64-202502-160000.4.1 * SUSE Linux Enterprise Server 16.0 (x86_64) * ovmf-debugsource-202502-160000.4.1 * ovmf-debuginfo-202502-160000.4.1 * SUSE Linux Enterprise Server for SAP applications 16.0 (x86_64) * ovmf-tools-202502-160000.4.1 * ovmf-202502-160000.4.1 * ovmf-debugsource-202502-160000.4.1 * ovmf-debuginfo-202502-160000.4.1 * SUSE Linux Enterprise Server for SAP applications 16.0 (noarch) * qemu-ovmf-x86_64-202502-160000.4.1 ## References: * https://www.suse.com/security/cve/CVE-2025-59438.html * https://bugzilla.suse.com/show_bug.cgi?id=1252441 . An update for ovmf addresses a moderate severity issue related to a timing attack. Install now for enhanced security.. SUSE Linux Enterprise, ovmf security, moderate security fix, SUSE update. . LinuxSecurity.com Team

Calendar%202 Apr 21, 2026 SuSE
100

SUSE OVMF 15 SP7 Moderate Timing Attack Fix 2026-1413-1 CVE-2025-59438

An update that solves one vulnerability can now be installed.. # Security update for ovmf Announcement ID: SUSE-SU-2026:1413-1 Release Date: 2026-04-16T13:34:01Z Rating: moderate References: * bsc#1252441 Cross-References: * CVE-2025-59438 CVSS scores: * CVE-2025-59438 ( SUSE ): 5.7 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2025-59438 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2025-59438 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N Affected Products: * Server Applications Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Package Hub 15 15-SP7 An update that solves one vulnerability can now be installed. ## Description: This update for ovmf fixes the following issue: * CVE-2025-59438: mbedtls: padding oracle attack possible through timing of cipher error reporting (bsc#1252441). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Package Hub 15 15-SP7 zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP7-2026-1413=1 * Server Applications Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP7-2026-1413=1 ## Package List: * SUSE Package Hub 15 15-SP7 (noarch) * qemu-uefi-aarch64-202408-150700.3.15.1 * qemu-ovmf-x86_64-202408-150700.3.15.1 * qemu-uefi-aarch32-202408-150700.3.15.1 * SUSE Package Hub 15 15-SP7 (x86_64) * qemu-ovmf-x86_64-debug-202408-150700.3.15.1 * Server Applications Module 15-SP7 (aarch64 x86_64) * ovmf-tools-202408-150700.3.15.1 * ovmf-202408-150700.3.15.1 * Server Applications Module 15-SP7 (noarch) * qemu-uefi-aarch64-202408-150700.3.15.1 *qemu-ovmf-x86_64-202408-150700.3.15.1 ## References: * https://www.suse.com/security/cve/CVE-2025-59438.html * https://bugzilla.suse.com/show_bug.cgi?id=1252441 . SUSE update for ovmf resolves a moderate timing attack vulnerability with detailed patching instructions.. SUSE Ovfm Moderate Security Update Patch CVE. . LinuxSecurity.com Team

Calendar%202 Apr 16, 2026 SuSE
202

openSUSE Tumbleweed ovmf Moderate Security Issue CVE-2025-2296

An update that solves one vulnerability can now be installed.. # ovmf-202602-6.1 on GA media Announcement ID: openSUSE-SU-2026:10467-1 Rating: moderate Cross-References: * CVE-2025-2296 CVSS scores: * CVE-2025-2296 ( SUSE ): 5.2 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:H/A:L * CVE-2025-2296 ( SUSE ): 5.7 CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:L/VI:H/VA:L/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the ovmf-202602-6.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * ovmf 202602-6.1 * ovmf-tools 202602-6.1 * qemu-ovmf-x86_64 202602-6.1 * qemu-ovmf-x86_64-debug 202602-6.1 * qemu-uefi-aarch64 202602-6.1 * qemu-uefi-riscv64 202602-6.1 ## References: * https://www.suse.com/security/cve/CVE-2025-2296.html . Update for openSUSE Tumbleweed ensures the resolution of a moderate-level security issue in ovmf software.. openSUSE Tumbleweed, ovmf update, moderate security patch, Linux security, open source software. . LinuxSecurity.com Team

Calendar%202 Apr 02, 2026 OpenSUSE
100

SUSE Linux Micro 6.1 OVFM Moderate Timing Attack Vuln 2026-20769-1

An update that solves one vulnerability can now be installed.. # Security update for ovmf Announcement ID: SUSE-SU-2026:20769-1 Release Date: 2026-03-20T11:57:43Z Rating: moderate References: * bsc#1252441 Cross-References: * CVE-2025-59438 CVSS scores: * CVE-2025-59438 ( SUSE ): 5.7 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2025-59438 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2025-59438 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N Affected Products: * SUSE Linux Micro 6.1 An update that solves one vulnerability can now be installed. ## Description: This update for ovmf fixes the following issue: * CVE-2025-59438: mbedtls: padding oracle attack possible through timing of cipher error reporting (bsc#1252441). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.1 zypper in -t patch SUSE-SLE-Micro-6.1-454=1 ## Package List: * SUSE Linux Micro 6.1 (noarch) * qemu-ovmf-x86_64-202402-slfo.1.1_2.1 * qemu-uefi-aarch64-202402-slfo.1.1_2.1 ## References: * https://www.suse.com/security/cve/CVE-2025-59438.html * https://bugzilla.suse.com/show_bug.cgi?id=1252441 . Install the latest updates for ovmf on SUSE Micro 6.1 to fix a timing attack vulnerability. Moderate severity advisory available.. ovmf update, SUSE Micro, timing attack, security patch, moderate security advisory. . LinuxSecurity.com Team

Calendar%202 Mar 24, 2026 SuSE
100

SUSE Linux Micro 6.0 ovmf Moderate Buffer Overflow Vuln 2026-20246-1

An update that solves one vulnerability can now be installed.. # Security update for ovmf Announcement ID: SUSE-SU-2026:20246-1 Release Date: 2026-01-16T13:05:29Z Rating: moderate References: * bsc#1218680 Cross-References: * CVE-2022-36765 CVSS scores: * CVE-2022-36765 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:H * CVE-2022-36765 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2022-36765 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:H Affected Products: * SUSE Linux Micro 6.0 An update that solves one vulnerability can now be installed. ## Description: This update for ovmf fixes the following issues: * CVE-2022-36765: Fixed integer overflow to buffer overflow via local network vulnerability (bsc#1218680). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.0 zypper in -t patch SUSE-SLE-Micro-6.0-562=1 ## Package List: * SUSE Linux Micro 6.0 (noarch) * qemu-uefi-aarch64-202305-3.1 * qemu-ovmf-x86_64-202305-3.1 ## References: * https://www.suse.com/security/cve/CVE-2022-36765.html * https://bugzilla.suse.com/show_bug.cgi?id=1218680 . SUSE updates for ovmf address moderate buffer overflow risks; quick installation methods advised for users.. ovmf security patch,SUSE Linux vulnerabilities,buffer overflow fix. . LinuxSecurity.com Team

Calendar%202 Feb 13, 2026 SuSE
202

Ubuntu 22.04 LTS Kernel Patch for USN-2023-1234-1 Now Available

An update that solves one vulnerability can now be installed.. # Security update for ovmf Announcement ID: SUSE-SU-2026:0213-1 Release Date: 2026-01-22T12:08:49Z Rating: important References: * bsc#1218680 Cross-References: * CVE-2022-36765 CVSS scores: * CVE-2022-36765 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:H * CVE-2022-36765 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2022-36765 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:H Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves one vulnerability can now be installed. ## Description: This update for ovmf fixes the following issues: * CVE-2022-36765: Fixed integer overflow to buffer overflow via local network vulnerability (bsc#1218680). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -t patch SUSE-2026-213=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2026-213=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2026-213=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2026-213=1 * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2026-213=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patchSUSE-SLE-Product-SLES_SAP-15-SP5-2026-213=1 ## Package List: * openSUSE Leap 15.5 (aarch64 x86_64) * ovmf-202208-150500.6.12.1 * ovmf-tools-202208-150500.6.12.1 * openSUSE Leap 15.5 (noarch) * qemu-uefi-aarch64-202208-150500.6.12.1 * qemu-ovmf-x86_64-202208-150500.6.12.1 * qemu-uefi-aarch32-202208-150500.6.12.1 * qemu-ovmf-ia32-202208-150500.6.12.1 * openSUSE Leap 15.5 (x86_64) * qemu-ovmf-x86_64-debug-202208-150500.6.12.1 * SUSE Linux Enterprise Micro 5.5 (noarch) * qemu-ovmf-x86_64-202208-150500.6.12.1 * qemu-uefi-aarch64-202208-150500.6.12.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * ovmf-202208-150500.6.12.1 * ovmf-tools-202208-150500.6.12.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (noarch) * qemu-ovmf-x86_64-202208-150500.6.12.1 * qemu-uefi-aarch64-202208-150500.6.12.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * ovmf-202208-150500.6.12.1 * ovmf-tools-202208-150500.6.12.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (noarch) * qemu-ovmf-x86_64-202208-150500.6.12.1 * qemu-uefi-aarch64-202208-150500.6.12.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 x86_64) * ovmf-202208-150500.6.12.1 * ovmf-tools-202208-150500.6.12.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (noarch) * qemu-ovmf-x86_64-202208-150500.6.12.1 * qemu-uefi-aarch64-202208-150500.6.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (x86_64) * ovmf-202208-150500.6.12.1 * ovmf-tools-202208-150500.6.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (noarch) * qemu-ovmf-x86_64-202208-150500.6.12.1 ## References: * https://www.suse.com/security/cve/CVE-2022-36765.html * https://bugzilla.suse.com/show_bug.cgi?id=1218680 . An important update for openSUSE addresses CVE-2022-36765, fixing a buffer overflow vulnerability in ovmf that affects several distributions..openSUSE update, buffer overflow, SUSE Linux, ovmf patch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jan 22, 2026 Important OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200