# Security update for kernel-livepatch-MICRO-6-0-RT_Update_21 Announcement ID: SUSE-SU-2026:21639-1 Release Date: 2026-05-11T09:34:16Z Rating: important References:. # Security update for kernel-livepatch-MICRO-6-0-RT_Update_21 Announcement ID: SUSE-SU-2026:21639-1 Release Date: 2026-05-11T09:34:16Z Rating: important References: Affected Products: * SUSE Linux Micro 6.1 An update that can now be installed. ## Description: New Livepatch SLE Micro 6.0/6.1 kernel rt update 21 ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.1 zypper in -t patch SUSE-SLE-Micro-6.1-kernel-398=1 ## Package List: * SUSE Linux Micro 6.1 (x86_64) * kernel-livepatch-6_4_0-43-rt-1-1.1 * kernel-livepatch-6_4_0-43-rt-debuginfo-1-1.1 * kernel-livepatch-MICRO-6-0-RT_Update_21-debugsource-1-1.1 . Updated kernel-livepatch for SUSE Linux Micro 6.1 improves system stability and security. Install now for protection.. Linux Micro 6.1, kernel updates, SUSE security, system enhancements. . Severity: Important. LinuxSecurity.com Team
* bsc#1246019 * bsc#1248631 * bsc#1249207 * bsc#1249208 . # Security update for the Linux Kernel RT (Live Patch 7 for SLE 15 SP6) Announcement ID: SUSE-SU-2025:3880-1 Release Date: 2025-10-31T05:35:32Z Rating: important References: * bsc#1246019 * bsc#1248631 * bsc#1249207 * bsc#1249208 Cross-References: * CVE-2024-53164 * CVE-2025-38617 * CVE-2025-38618 * CVE-2025-38664 CVSS scores: * CVE-2024-53164 ( SUSE ): 5.7 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2024-53164 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53164 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2025-38617 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38617 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38618 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38618 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38664 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38664 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Enterprise Live Patching 15-SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves four vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 6.4.0-150600_10_23 fixes several issues. The following security issues were fixed: * CVE-2025-38664: ice: Fix a null pointer dereference in ice_copy_and_init_pkg() (bsc#1248631). * CVE-2025-38617: net/packet: fix a race in packet_set_ring() and packet_notifier() (bsc#1249208). * CVE-2025-38618: vsock: Do not allow binding to VMADDR_PORT_ANY (bsc#1249207). * CVE-2024-53164: net: sched: fix ordering of qlen adjustment (bsc#1246019). ## PatchInstructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Live Patching 15-SP6 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP6-2025-3882=1 SUSE-SLE- Module-Live-Patching-15-SP6-2025-3880=1 SUSE-SLE-Module-Live- Patching-15-SP6-2025-3881=1 ## Package List: * SUSE Linux Enterprise Live Patching 15-SP6 (x86_64) * kernel-livepatch-SLE15-SP6-RT_Update_4-debugsource-19-150600.4.1 * kernel-livepatch-6_4_0-150600_10_20-rt-15-150600.4.1 * kernel-livepatch-6_4_0-150600_10_20-rt-debuginfo-15-150600.4.1 * kernel-livepatch-SLE15-SP6-RT_Update_7-debugsource-15-150600.4.1 * kernel-livepatch-6_4_0-150600_10_14-rt-19-150600.4.1 * kernel-livepatch-6_4_0-150600_10_14-rt-debuginfo-19-150600.4.1 * kernel-livepatch-6_4_0-150600_10_23-rt-15-150600.4.1 * kernel-livepatch-6_4_0-150600_10_23-rt-debuginfo-15-150600.4.1 * kernel-livepatch-SLE15-SP6-RT_Update_6-debugsource-15-150600.4.1 ## References: * https://www.suse.com/security/cve/CVE-2024-53164.html * https://www.suse.com/security/cve/CVE-2025-38617.html * https://www.suse.com/security/cve/CVE-2025-38618.html * https://www.suse.com/security/cve/CVE-2025-38664.html * https://bugzilla.suse.com/show_bug.cgi?id=1246019 * https://bugzilla.suse.com/show_bug.cgi?id=1248631 * https://bugzilla.suse.com/show_bug.cgi?id=1249207 * https://bugzilla.suse.com/show_bug.cgi?id=1249208 . A security update for SUSE Kernel RT addresses important issues with critical patches. Install now to protect systems.. kernel patch, SUSE security update, Linux kernel RT, important fixes, SUSE vulnerabilities. . Severity: Important. LinuxSecurity.com Team
* bsc#1247737 * bsc#1248176 * bsc#1248631 * bsc#1249207 * bsc#1249208 . # Security update for the Linux Kernel RT (Live Patch 2 for SLE 15 SP7) Announcement ID: SUSE-SU-2025:3886-1 Release Date: 2025-10-31T07:04:02Z Rating: important References: * bsc#1247737 * bsc#1248176 * bsc#1248631 * bsc#1249207 * bsc#1249208 Cross-References: * CVE-2025-38453 * CVE-2025-38511 * CVE-2025-38617 * CVE-2025-38618 * CVE-2025-38664 CVSS scores: * CVE-2025-38453 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38453 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38511 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38511 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38617 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38617 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38618 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38618 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38664 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38664 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Enterprise Live Patching 15-SP7 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves five vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 6.4.0-150700_7_8 fixes several issues. The following security issues were fixed: * CVE-2025-38664: ice: Fix a null pointer dereference in ice_copy_and_init_pkg() (bsc#1248631). * CVE-2025-38511: drm/xe/pf: Clear all LMTT pages on alloc (bsc#1248176). * CVE-2025-38617: net/packet: fix a race in packet_set_ring() and packet_notifier() (bsc#1249208). * CVE-2025-38453: kABI: io_uring: msg_ring ensure io_kiocb freeing is deferred (bsc#1247737). * CVE-2025-38618: vsock: Do not allow binding to VMADDR_PORT_ANY (bsc#1249207). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Live Patching 15-SP7 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP7-2025-3886=1 SUSE-SLE- Module-Live-Patching-15-SP7-2025-3890=1 SUSE-SLE-Module-Live- Patching-15-SP7-2025-3887=1 ## Package List: * SUSE Linux Enterprise Live Patching 15-SP7 (x86_64) * kernel-livepatch-6_4_0-150700_7_3-rt-debuginfo-7-150700.4.1 * kernel-livepatch-6_4_0-150700_7_8-rt-7-150700.4.1 * kernel-livepatch-6_4_0-150700_7_8-rt-debuginfo-7-150700.4.1 * kernel-livepatch-SLE15-SP7-RT_Update_1-debugsource-7-150700.4.1 * kernel-livepatch-6_4_0-150700_5-rt-debuginfo-7-150700.5.1 * kernel-livepatch-6_4_0-150700_7_3-rt-7-150700.4.1 * kernel-livepatch-SLE15-SP7-RT_Update_0-debugsource-7-150700.5.1 * kernel-livepatch-SLE15-SP7-RT_Update_2-debugsource-7-150700.4.1 * kernel-livepatch-6_4_0-150700_5-rt-7-150700.5.1 ## References: * https://www.suse.com/security/cve/CVE-2025-38453.html * https://www.suse.com/security/cve/CVE-2025-38511.html * https://www.suse.com/security/cve/CVE-2025-38617.html * https://www.suse.com/security/cve/CVE-2025-38618.html * https://www.suse.com/security/cve/CVE-2025-38664.html * https://bugzilla.suse.com/show_bug.cgi?id=1247737 * https://bugzilla.suse.com/show_bug.cgi?id=1248176 * https://bugzilla.suse.com/show_bug.cgi?id=1248631 * https://bugzilla.suse.com/show_bug.cgi?id=1249207 * https://bugzilla.suse.com/show_bug.cgi?id=1249208 . Security update for SUSE Linux Kernel RT addresses critical issues with important severity, enhancing system stability.. SUSE Linux Kernel, Security Update, ImportantAdvisories, RT Patch. . Severity: Important. LinuxSecurity.com Team
* bsc#1231862 * bsc#1245685 * bsc#1245795 * bsc#1246001 * bsc#1246356 . # Security update for the Linux Kernel RT (Live Patch 3 for SLE 15 SP6) Announcement ID: SUSE-SU-2025:03315-1 Release Date: 2025-09-24T03:03:59Z Rating: important References: * bsc#1231862 * bsc#1245685 * bsc#1245795 * bsc#1246001 * bsc#1246356 * bsc#1247499 * bsc#1248298 Cross-References: * CVE-2024-49860 * CVE-2025-21756 * CVE-2025-38109 * CVE-2025-38177 * CVE-2025-38181 * CVE-2025-38498 * CVE-2025-38555 CVSS scores: * CVE-2024-49860 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-49860 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-49860 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2025-21756 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-21756 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38109 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38109 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38177 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38177 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38181 ( SUSE ): 8.2 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-38181 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-38498 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38498 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38555 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38555 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Enterprise Live Patching 15-SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux EnterpriseServer for SAP Applications 15 SP6 An update that solves seven vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 6.4.0-150600_10_11 fixes several issues. The following security issues were fixed: * CVE-2024-49860: ACPI: sysfs: validate return type of _STR method (bsc#1231862). * CVE-2025-38177: sch_hfsc: make hfsc_qlen_notify() idempotent (bsc#1246356). * CVE-2025-38109: net/mlx5: fix ECVF vports unload on shutdown flow (bsc#1245685). * CVE-2025-38181: calipso: Fix null-ptr-deref in calipso_req_{set,del}attr() (bsc#1246001). * CVE-2025-21756: vsock: Keep the binding until socket destruction (bsc#1245795). * CVE-2025-21755: vsock: Orphan socket after transport release (bsc#1245795). * CVE-2025-38498: do_change_type(): refuse to operate on unmounted/not ours mounts (bsc#1247499). * CVE-2025-38555: usb: gadget : fix use-after-free in composite_dev_cleanup() (bsc#1248298). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Live Patching 15-SP6 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP6-2025-3315=1 SUSE-SLE- Module-Live-Patching-15-SP6-2025-3326=1 ## Package List: * SUSE Linux Enterprise Live Patching 15-SP6 (x86_64) * kernel-livepatch-SLE15-SP6-RT_Update_3-debugsource-17-150600.2.2 * kernel-livepatch-6_4_0-150600_10_11-rt-debuginfo-17-150600.2.2 * kernel-livepatch-SLE15-SP6-RT_Update_2-debugsource-17-150600.2.2 * kernel-livepatch-6_4_0-150600_10_11-rt-17-150600.2.2 * kernel-livepatch-6_4_0-150600_10_8-rt-debuginfo-17-150600.2.2 * kernel-livepatch-6_4_0-150600_10_8-rt-17-150600.2.2 ## References: * https://www.suse.com/security/cve/CVE-2024-49860.html * https://www.suse.com/security/cve/CVE-2025-21756.html * https://www.suse.com/security/cve/CVE-2025-38109.html *https://www.suse.com/security/cve/CVE-2025-38177.html * https://www.suse.com/security/cve/CVE-2025-38181.html * https://www.suse.com/security/cve/CVE-2025-38498.html * https://www.suse.com/security/cve/CVE-2025-38555.html * https://bugzilla.suse.com/show_bug.cgi?id=1231862 * https://bugzilla.suse.com/show_bug.cgi?id=1245685 * https://bugzilla.suse.com/show_bug.cgi?id=1245795 * https://bugzilla.suse.com/show_bug.cgi?id=1246001 * https://bugzilla.suse.com/show_bug.cgi?id=1246356 * https://bugzilla.suse.com/show_bug.cgi?id=1247499 * https://bugzilla.suse.com/show_bug.cgi?id=1248298 . Tackling critical vulnerabilities in the SUSE Linux Kernel RT with solutions for various security concerns and recommendations for implementation.. SUSE Linux Kernel RT patch, security update, Linux kernel vulnerabilities. . Severity: Important. LinuxSecurity.com Team
* bsc#1235062 * bsc#1235129 * bsc#1235231 Cross-References: . # Security update for the Linux Kernel RT (Live Patch 6 for SLE 15 SP6) Announcement ID: SUSE-SU-2025:02072-1 Release Date: 2025-06-23T20:03:58Z Rating: important References: * bsc#1235062 * bsc#1235129 * bsc#1235231 Cross-References: * CVE-2024-56582 * CVE-2024-56601 * CVE-2024-56605 CVSS scores: * CVE-2024-56582 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56582 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56582 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56582 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56601 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56601 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56601 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56601 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56605 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56605 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56605 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56605 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Enterprise Live Patching 15-SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves three vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 6.4.0-150600_10_20 fixes several issues. The following security issues were fixed: * CVE-2024-56601: net: inet: do not leave a dangling sk pointer in inet_create() (bsc#1235231). * CVE-2024-56582: btrfs: fix use-after-free in btrfs_encoded_read_endio() (bsc#1235129). * CVE-2024-56605:Bluetooth: L2CAP: do not leave dangling sk pointer on error in l2cap_sock_create() (bsc#1235062). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Live Patching 15-SP6 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP6-2025-2072=1 ## Package List: * SUSE Linux Enterprise Live Patching 15-SP6 (x86_64) * kernel-livepatch-SLE15-SP6-RT_Update_6-debugsource-7-150600.2.1 * kernel-livepatch-6_4_0-150600_10_20-rt-debuginfo-7-150600.2.1 * kernel-livepatch-6_4_0-150600_10_20-rt-7-150600.2.1 ## References: * https://www.suse.com/security/cve/CVE-2024-56582.html * https://www.suse.com/security/cve/CVE-2024-56601.html * https://www.suse.com/security/cve/CVE-2024-56605.html * https://bugzilla.suse.com/show_bug.cgi?id=1235062 * https://bugzilla.suse.com/show_bug.cgi?id=1235129 * https://bugzilla.suse.com/show_bug.cgi?id=1235231 . Apply essential patches for Linux Kernel RT to address significant vulnerabilities such as buffer overflows and memory corruption.. Linux Kernel RT Security, Live Patching Updates, SUSE Vulnerability Management. . Severity: Important. LinuxSecurity.com Team
Security fix for CVE-2014-9472 Security fix for CVE-2015-1165 Security fix for CVE-2015-1464. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-4698 2015-03-26 16:45:01 -------------------------------------------------------------------------------- Name : rt Product : Fedora 22 Version : 4.2.10 Release : 2.fc22 URL : https://requesttracker.com/request-tracker/ Summary : Request tracker Description : RT is an enterprise-grade ticketing system which enables a group of people to intelligently and efficiently manage tasks, issues, and requests submitted by a community of users. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2014-9472 Security fix for CVE-2015-1165 Security fix for CVE-2015-1464 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1200059 - CVE-2014-9472 rt: denial of service flaw in email gateway https://bugzilla.redhat.com/show_bug.cgi?id=1200059 [ 2 ] Bug #1200065 - CVE-2015-1165 rt: information disclosure flaw in RSS feed handler https://bugzilla.redhat.com/show_bug.cgi?id=1200065 [ 3 ] Bug #1200069 - CVE-2015-1464 rt: session hijaking flaw in RSS feed handler https://bugzilla.redhat.com/show_bug.cgi?id=1200069 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update rt' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailinglist
Get the latest Linux and open source security news straight to your inbox.