Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 586
Alerts This Week
Warning Icon 1 586

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 2,275 articles for you...
100

SUSE Linux Enterprise 12 SP5 Security Update: Critical ICU Buffer Overflow

* bsc#1243721 Cross-References: * CVE-2025-5222 . # Security update for icu Announcement ID: SUSE-SU-2025:02216-1 Release Date: 2025-07-03T10:09:05Z Rating: important References: * bsc#1243721 Cross-References: * CVE-2025-5222 CVSS scores: * CVE-2025-5222 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2025-5222 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server 12 SP5 LTSS * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves one vulnerability can now be installed. ## Description: This update for icu fixes the following issues: * CVE-2025-5222: Fixed stack buffer overflow in the SRBRoot:addTag function (bsc#1243721) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2025-2216=1 * SUSE Linux Enterprise Server 12 SP5 LTSS zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-2025-2216=1 ## Package List: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (x86_64) * libicu-devel-52.1-8.16.1 * libicu52_1-52.1-8.16.1 * icu-debuginfo-52.1-8.16.1 * libicu52_1-debuginfo-32bit-52.1-8.16.1 * libicu52_1-data-52.1-8.16.1 * libicu52_1-debuginfo-52.1-8.16.1 * icu-debugsource-52.1-8.16.1 * libicu52_1-32bit-52.1-8.16.1 * libicu-doc-52.1-8.16.1 * SUSE Linux Enterprise Server 12 SP5 LTSS (aarch64 ppc64le s390x x86_64) * libicu52_1-52.1-8.16.1 * libicu-devel-52.1-8.16.1 * icu-debuginfo-52.1-8.16.1 * libicu52_1-data-52.1-8.16.1 *libicu52_1-debuginfo-52.1-8.16.1 * icu-debugsource-52.1-8.16.1 * libicu-doc-52.1-8.16.1 * SUSE Linux Enterprise Server 12 SP5 LTSS (s390x x86_64) * libicu52_1-32bit-52.1-8.16.1 * libicu52_1-debuginfo-32bit-52.1-8.16.1 ## References: * https://www.suse.com/security/cve/CVE-2025-5222.html * https://bugzilla.suse.com/show_bug.cgi?id=1243721 . Urgent security patch released for SUSE icu tackles a memory overflow vulnerability and requires prompt implementation.. SUSE Security Update, Buffer Overflow, Important Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 03, 2025 Important SuSE
100

SUSE 5.2: 2025:02212-1 low severity fix for libsoup CVE-2025-4945

* bsc#1243314 Cross-References: * CVE-2025-4945 . # Security update for libsoup Announcement ID: SUSE-SU-2025:02212-1 Release Date: 2025-07-02T16:37:54Z Rating: low References: * bsc#1243314 Cross-References: * CVE-2025-4945 CVSS scores: * CVE-2025-4945 ( SUSE ): 2.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2025-4945 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2025-4945 ( NVD ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N Affected Products: * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro for Rancher 5.2 An update that solves one vulnerability can now be installed. ## Description: This update for libsoup fixes the following issues: * CVE-2025-4945: Add value checks for date/time parsing (bsc#1243314). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-2212=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-2212=1 ## Package List: * SUSE Linux Enterprise Micro 5.2 (aarch64 s390x x86_64) * libsoup-2_4-1-2.68.4-150200.4.12.1 * libsoup-2_4-1-debuginfo-2.68.4-150200.4.12.1 * libsoup-debugsource-2.68.4-150200.4.12.1 * SUSE Linux Enterprise Micro for Rancher 5.2 (aarch64 s390x x86_64) * libsoup-2_4-1-2.68.4-150200.4.12.1 * libsoup-2_4-1-debuginfo-2.68.4-150200.4.12.1 * libsoup-debugsource-2.68.4-150200.4.12.1 ## References: * https://www.suse.com/security/cve/CVE-2025-4945.html * https://bugzilla.suse.com/show_bug.cgi?id=1243314 . Critical notification regarding a minor vulnerability in libsoup for SUSE Linux, enhancing the security of date/time processing.. SUSE, libsoup update, security advisory, low severity, patch instructions. . Severity: Low.LinuxSecurity.com Team

Calendar%202 Jul 02, 2025 Low SuSE
100

SUSE Security Advisory 2025:02198-1 - runc File Creation Vulnerability

* bsc#1230092 Cross-References: * CVE-2024-45310 . # Security update for runc Announcement ID: SUSE-SU-2025:02198-1 Release Date: 2025-07-02T09:23:30Z Rating: low References: * bsc#1230092 Cross-References: * CVE-2024-45310 CVSS scores: * CVE-2024-45310 ( SUSE ): 3.6 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N * CVE-2024-45310 ( NVD ): 3.6 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N Affected Products: * Containers Module 15-SP6 * openSUSE Leap 15.6 * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.2 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves one vulnerability can now be installed. ## Description: This update forrunc fixes the following issues: * CVE-2024-45310: Fixed unintentional creation of empty files/directories on host (bsc#1230092) Other fixes: * Update to runc v1.2.6. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2025-2198=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-2198=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-2198=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-2198=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-2198=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2025-2198=1 * Containers Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Containers-15-SP6-2025-2198=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2025-2198=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2025-2198=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2025-2198=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2025-2198=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2025-2198=1 * SUSE Linux Enterprise Server 15 SP3 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2025-2198=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2025-2198=1 * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patchSUSE-SLE-Product-SLES-15-SP5-LTSS-2025-2198=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2025-2198=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2025-2198=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2025-2198=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2025-2198=1 * SUSE Linux Enterprise Micro 5.1 zypper in -t patch SUSE-SUSE-MicroOS-5.1-2025-2198=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-2198=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-2198=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Micro 5.5 (aarch64 ppc64le s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * Containers Module 15-SP6 (aarch64 ppc64le s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * runc-1.2.6-150000.73.2 *runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Server 15 SP3 LTSS (aarch64 ppc64le s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Micro 5.1 (aarch64 s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Micro 5.2 (aarch64 s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 * SUSE Linux Enterprise Micro for Rancher 5.2 (aarch64 s390x x86_64) * runc-1.2.6-150000.73.2 * runc-debuginfo-1.2.6-150000.73.2 ## References: * https://www.suse.com/security/cve/CVE-2024-45310.html * https://bugzilla.suse.com/show_bug.cgi?id=1230092 . Recent SUSE release addresses runc forminor urgency file generation vulnerability. Safeguard your environments with this updated patch.. SUSE, runc, security advisory, software update, low severity. . Severity: Low. LinuxSecurity.com Team

Calendar%202 Jul 02, 2025 Low SuSE
100

SUSE: 2025:02192-1 important: xorg-x11-server integer overflow

* bsc#1244084 Cross-References: * CVE-2025-49176 . # Security update for xorg-x11-server Announcement ID: SUSE-SU-2025:02192-1 Release Date: 2025-07-01T15:07:21Z Rating: important References: * bsc#1244084 Cross-References: * CVE-2025-49176 CVSS scores: * CVE-2025-49176 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-49176 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-49176 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves one vulnerability can now be installed. ## Description: This update for xorg-x11-server fixes the following issues: * CVE-2025-49176: Fixed the integer overflow in Big Requests Extension (bsc#1244084). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-2192=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2025-2192=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2025-2192=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2025-2192=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patchSUSE-SLE-Product-SLES_SAP-15-SP4-2025-2192=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.3-2025-2192=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch- Server-4.3-2025-2192=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.3-2025-2192=1 ## Package List: * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586) * xorg-x11-server-extra-1.20.3-150400.38.60.1 * xorg-x11-server-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-debugsource-1.20.3-150400.38.60.1 * xorg-x11-server-1.20.3-150400.38.60.1 * xorg-x11-server-extra-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-source-1.20.3-150400.38.60.1 * xorg-x11-server-sdk-1.20.3-150400.38.60.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * xorg-x11-server-extra-1.20.3-150400.38.60.1 * xorg-x11-server-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-debugsource-1.20.3-150400.38.60.1 * xorg-x11-server-1.20.3-150400.38.60.1 * xorg-x11-server-extra-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-sdk-1.20.3-150400.38.60.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * xorg-x11-server-extra-1.20.3-150400.38.60.1 * xorg-x11-server-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-debugsource-1.20.3-150400.38.60.1 * xorg-x11-server-1.20.3-150400.38.60.1 * xorg-x11-server-extra-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-sdk-1.20.3-150400.38.60.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * xorg-x11-server-extra-1.20.3-150400.38.60.1 * xorg-x11-server-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-debugsource-1.20.3-150400.38.60.1 * xorg-x11-server-1.20.3-150400.38.60.1 * xorg-x11-server-extra-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-sdk-1.20.3-150400.38.60.1 * SUSE Linux EnterpriseServer for SAP Applications 15 SP4 (ppc64le x86_64) * xorg-x11-server-extra-1.20.3-150400.38.60.1 * xorg-x11-server-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-debugsource-1.20.3-150400.38.60.1 * xorg-x11-server-1.20.3-150400.38.60.1 * xorg-x11-server-extra-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-sdk-1.20.3-150400.38.60.1 * SUSE Manager Proxy 4.3 (x86_64) * xorg-x11-server-extra-1.20.3-150400.38.60.1 * xorg-x11-server-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-debugsource-1.20.3-150400.38.60.1 * xorg-x11-server-1.20.3-150400.38.60.1 * xorg-x11-server-extra-debuginfo-1.20.3-150400.38.60.1 * SUSE Manager Retail Branch Server 4.3 (x86_64) * xorg-x11-server-extra-1.20.3-150400.38.60.1 * xorg-x11-server-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-debugsource-1.20.3-150400.38.60.1 * xorg-x11-server-1.20.3-150400.38.60.1 * xorg-x11-server-extra-debuginfo-1.20.3-150400.38.60.1 * SUSE Manager Server 4.3 (ppc64le s390x x86_64) * xorg-x11-server-extra-1.20.3-150400.38.60.1 * xorg-x11-server-debuginfo-1.20.3-150400.38.60.1 * xorg-x11-server-debugsource-1.20.3-150400.38.60.1 * xorg-x11-server-1.20.3-150400.38.60.1 * xorg-x11-server-extra-debuginfo-1.20.3-150400.38.60.1 ## References: * https://www.suse.com/security/cve/CVE-2025-49176.html * https://bugzilla.suse.com/show_bug.cgi?id=1244084 . A critical advisory regarding the xorg-x11-server has emerged, highlighting an integer overflow flaw that poses a risk to SUSE environments.. xorg-x11-server, SUSE update, important security fix, integer overflow. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 01, 2025 Important SuSE
100

SUSE Linux 15 SP4: 2025:02178-1 important: sudo local escalation

* bsc#1245274 Cross-References: * CVE-2025-32462 . # Security update for sudo Announcement ID: SUSE-SU-2025:02178-1 Release Date: 2025-06-30T17:53:51Z Rating: important References: * bsc#1245274 Cross-References: * CVE-2025-32462 CVSS scores: * CVE-2025-32462 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-32462 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves one vulnerability can now be installed. ## Description: This update for sudo fixes the following issues: * CVE-2025-32462: Fixed a possible local privilege escalation via the --host option (bsc#1245274). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2025-2178=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2025-2178=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2025-2178=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patchSUSE-SLE-Product-SLES_SAP-15-SP4-2025-2178=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.3-2025-2178=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch- Server-4.3-2025-2178=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.3-2025-2178=1 * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-2178=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-2178=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-2178=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-2178=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-2178=1 ## Package List: * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 * sudo-devel-1.9.9-150400.4.39.1 * sudo-plugin-python-debuginfo-1.9.9-150400.4.39.1 * sudo-plugin-python-1.9.9-150400.4.39.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 * sudo-devel-1.9.9-150400.4.39.1 * sudo-plugin-python-debuginfo-1.9.9-150400.4.39.1 * sudo-plugin-python-1.9.9-150400.4.39.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 * sudo-devel-1.9.9-150400.4.39.1 * sudo-plugin-python-debuginfo-1.9.9-150400.4.39.1 * sudo-plugin-python-1.9.9-150400.4.39.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 *sudo-debuginfo-1.9.9-150400.4.39.1 * sudo-devel-1.9.9-150400.4.39.1 * sudo-plugin-python-debuginfo-1.9.9-150400.4.39.1 * sudo-plugin-python-1.9.9-150400.4.39.1 * SUSE Manager Proxy 4.3 (x86_64) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 * sudo-devel-1.9.9-150400.4.39.1 * sudo-plugin-python-debuginfo-1.9.9-150400.4.39.1 * sudo-plugin-python-1.9.9-150400.4.39.1 * SUSE Manager Retail Branch Server 4.3 (x86_64) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 * sudo-devel-1.9.9-150400.4.39.1 * sudo-plugin-python-debuginfo-1.9.9-150400.4.39.1 * sudo-plugin-python-1.9.9-150400.4.39.1 * SUSE Manager Server 4.3 (ppc64le s390x x86_64) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 * sudo-devel-1.9.9-150400.4.39.1 * sudo-plugin-python-debuginfo-1.9.9-150400.4.39.1 * sudo-plugin-python-1.9.9-150400.4.39.1 * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 * sudo-devel-1.9.9-150400.4.39.1 * sudo-plugin-python-debuginfo-1.9.9-150400.4.39.1 * sudo-plugin-python-1.9.9-150400.4.39.1 * sudo-test-1.9.9-150400.4.39.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) *sudo-1.9.9-150400.4.39.1 * sudo-debugsource-1.9.9-150400.4.39.1 * sudo-debuginfo-1.9.9-150400.4.39.1 ## References: * https://www.suse.com/security/cve/CVE-2025-32462.html * https://bugzilla.suse.com/show_bug.cgi?id=1245274 . An important sudo security update addresses local privilege escalation risks in SUSE systems. Act now to secure!. SUSE Linux, security patch, sudo update, local escalation, SUSE advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 30, 2025 Important SuSE
100

SUSE Security Update 2025:20480-1 Critical: libnetwork buffer overflow risk

* bsc#1243226 Cross-References: * CVE-2025-6019 . # Security update for libblockdev Announcement ID: SUSE-SU-2025:20440-1 Release Date: 2025-06-18T08:51:18Z Rating: moderate References: * bsc#1243226 Cross-References: * CVE-2025-6019 CVSS scores: * CVE-2025-6019 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-6019 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-6019 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Micro 6.1 An update that solves one vulnerability can now be installed. ## Description: This update for libblockdev fixes the following issues: * CVE-2025-6019: Suppress privilege escalation during xfs fs resize ( (bsc#1243226) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.1 zypper in -t patch SUSE-SLE-Micro-6.1-150=1 ## Package List: * SUSE Linux Micro 6.1 (aarch64 ppc64le s390x x86_64) * libbd_utils2-2.28-slfo.1.1_2.1 * libbd_fs2-2.28-slfo.1.1_2.1 * libblockdev-debugsource-2.28-slfo.1.1_2.1 * libbd_part2-2.28-slfo.1.1_2.1 * libbd_fs2-debuginfo-2.28-slfo.1.1_2.1 * libbd_mdraid2-2.28-slfo.1.1_2.1 * libblockdev2-2.28-slfo.1.1_2.1 * libblockdev-debuginfo-2.28-slfo.1.1_2.1 * libbd_crypto2-2.28-slfo.1.1_2.1 * libbd_lvm2-2.28-slfo.1.1_2.1 * libbd_loop2-debuginfo-2.28-slfo.1.1_2.1 * libbd_lvm2-debuginfo-2.28-slfo.1.1_2.1 * libbd_btrfs2-debuginfo-2.28-slfo.1.1_2.1 * libbd_utils2-debuginfo-2.28-slfo.1.1_2.1 * libbd_loop2-2.28-slfo.1.1_2.1 * libblockdev2-debuginfo-2.28-slfo.1.1_2.1 * libbd_mdraid2-debuginfo-2.28-slfo.1.1_2.1 * libbd_crypto2-debuginfo-2.28-slfo.1.1_2.1 * libbd_swap2-2.28-slfo.1.1_2.1 * libbd_part2-debuginfo-2.28-slfo.1.1_2.1 *libbd_swap2-debuginfo-2.28-slfo.1.1_2.1 * libbd_btrfs2-2.28-slfo.1.1_2.1 * libblockdev-2.28-slfo.1.1_2.1 ## References: * https://www.suse.com/security/cve/CVE-2025-6019.html * https://bugzilla.suse.com/show_bug.cgi?id=1243226 . SUSE Linux Micro 6.1 has released a security patch to tackle a moderate vulnerability found in libblockdev, aimed at mitigating potential privilege escalation threats.. SUSE Linux Micro, libblockdev, security update, privilege escalation, software patch. . LinuxSecurity.com Team

Calendar%202 Jun 30, 2025 SuSE
100

SUSE Linux Micro 6.1: 2025:20446-1 important: libsoup update

* bsc#1240750 * bsc#1240752 * bsc#1240754 * bsc#1240756 * bsc#1240757 . # Security update for libsoup Announcement ID: SUSE-SU-2025:20446-1 Release Date: 2025-06-25T08:16:46Z Rating: important References: * bsc#1240750 * bsc#1240752 * bsc#1240754 * bsc#1240756 * bsc#1240757 * bsc#1241162 * bsc#1241164 * bsc#1241214 * bsc#1241222 * bsc#1241223 * bsc#1241226 * bsc#1241238 * bsc#1241252 * bsc#1241263 * bsc#1241686 * bsc#1241688 Cross-References: * CVE-2025-2784 * CVE-2025-32050 * CVE-2025-32051 * CVE-2025-32052 * CVE-2025-32053 * CVE-2025-32906 * CVE-2025-32907 * CVE-2025-32908 * CVE-2025-32909 * CVE-2025-32910 * CVE-2025-32911 * CVE-2025-32912 * CVE-2025-32913 * CVE-2025-32914 * CVE-2025-46420 * CVE-2025-46421 CVSS scores: * CVE-2025-2784 ( SUSE ): 8.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N * CVE-2025-2784 ( SUSE ): 7.0 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2025-2784 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N * CVE-2025-2784 ( NVD ): 7.0 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2025-32050 ( SUSE ): 6.0 CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-32050 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-32050 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-32051 ( SUSE ): 6.0 CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-32051 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-32051 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-32052 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-32052 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L * CVE-2025-32052 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L * CVE-2025-32053 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-32053( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L * CVE-2025-32053 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L * CVE-2025-32906 ( SUSE ): 8.2 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H * CVE-2025-32906 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-32907 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-32907 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-32907 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-32908 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-32908 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-32908 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-32909 ( SUSE ): 8.8 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N * CVE-2025-32909 ( SUSE ): 8.6 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2025-32909 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-32910 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-32910 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-32910 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-32911 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-32911 ( NVD ): 9.0 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H * CVE-2025-32912 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-32912 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-32913 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-32913 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-32914 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2025-32914 ( NVD ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H * CVE-2025-46420 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-46420 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-46420 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-46421 ( SUSE ): 6.8 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N * CVE-2025-46421 ( NVD ): 6.8 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N Affected Products: * SUSE Linux Micro 6.1 An update that solves 16 vulnerabilities can now be installed. ## Description: This update for libsoup fixes the following issues: * CVE-2025-2784: Fixed Heap buffer over-read in `skip_insignificant_space` when sniffing content (bsc#1240750) * CVE-2025-32050:Fixed Integer overflow in append_param_quoted (bsc#1240752) * CVE-2025-32051:Fixed Segmentation fault when parsing malformed data URI (bsc#1240754) * CVE-2025-32052:Fixed Heap buffer overflow in sniff_unknown() (bsc#1240756) * CVE-2025-32053:Fixed Heap buffer overflows in sniff_feed_or_html() and skip_insignificant_space() (bsc#1240757) * CVE-2025-32913:Fixed NULL pointer dereference in soup_message_headers_get_content_disposition (bsc#1241162) * CVE-2025-32914:Fixed out of bounds read in `soup_multipart_new_from_message()` (bsc#1241164) * CVE-2025-32912:Fixed NULL pointer dereference in SoupAuthDigest (bsc#1241214) * CVE-2025-32907:Fixed excessive memory consumption in server when client requests a large amount of overlapping ranges in a single HTTP request (bsc#1241222) * CVE-2025-32908:Fixed HTTP request leading to server crash due to HTTP/2 server not fully validating the values of pseudo-headers (bsc#1241223) * CVE-2025-32909:Fixed NULL pointer dereference in the sniff_mp4 function in soup-content-sniffer.c (bsc#1241226) * CVE-2025-32911:Fixed Double free on soup_message_headers_get_content_disposition() via "params" (bsc#1241238) * CVE-2025-32910:Fixed null pointer deference on client when server omits the 'realm' parameter in an Unauthorized responsewith Digest authentication (bsc#1241252) * CVE-2025-32906:Fixed Out of bounds reads in soup_headers_parse_request() (bsc#1241263) * CVE-2025-46420:Fixed Memory leak on soup_header_parse_quality_list() via soup-headers.c (bsc#1241686) * CVE-2025-46421:Fixed HTTP Authorization Header leak via an HTTP redirect (bsc#1241688) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.1 zypper in -t patch SUSE-SLE-Micro-6.1-158=1 ## Package List: * SUSE Linux Micro 6.1 (aarch64 ppc64le s390x x86_64) * libsoup-3_0-0-debuginfo-3.4.4-slfo.1.1_3.1 * libsoup-3_0-0-3.4.4-slfo.1.1_3.1 * libsoup-debugsource-3.4.4-slfo.1.1_3.1 ## References: * https://www.suse.com/security/cve/CVE-2025-2784.html * https://www.suse.com/security/cve/CVE-2025-32050.html * https://www.suse.com/security/cve/CVE-2025-32051.html * https://www.suse.com/security/cve/CVE-2025-32052.html * https://www.suse.com/security/cve/CVE-2025-32053.html * https://www.suse.com/security/cve/CVE-2025-32906.html * https://www.suse.com/security/cve/CVE-2025-32907.html * https://www.suse.com/security/cve/CVE-2025-32908.html * https://www.suse.com/security/cve/CVE-2025-32909.html * https://www.suse.com/security/cve/CVE-2025-32910.html * https://www.suse.com/security/cve/CVE-2025-32911.html * https://www.suse.com/security/cve/CVE-2025-32912.html * https://www.suse.com/security/cve/CVE-2025-32913.html * https://www.suse.com/security/cve/CVE-2025-32914.html * https://www.suse.com/security/cve/CVE-2025-46420.html * https://www.suse.com/security/cve/CVE-2025-46421.html * https://bugzilla.suse.com/show_bug.cgi?id=1240750 * https://bugzilla.suse.com/show_bug.cgi?id=1240752 * https://bugzilla.suse.com/show_bug.cgi?id=1240754 * https://bugzilla.suse.com/show_bug.cgi?id=1240756 *https://bugzilla.suse.com/show_bug.cgi?id=1240757 * https://bugzilla.suse.com/show_bug.cgi?id=1241162 * https://bugzilla.suse.com/show_bug.cgi?id=1241164 * https://bugzilla.suse.com/show_bug.cgi?id=1241214 * https://bugzilla.suse.com/show_bug.cgi?id=1241222 * https://bugzilla.suse.com/show_bug.cgi?id=1241223 * https://bugzilla.suse.com/show_bug.cgi?id=1241226 * https://bugzilla.suse.com/show_bug.cgi?id=1241238 * https://bugzilla.suse.com/show_bug.cgi?id=1241252 * https://bugzilla.suse.com/show_bug.cgi?id=1241263 * https://bugzilla.suse.com/show_bug.cgi?id=1241686 * https://bugzilla.suse.com/show_bug.cgi?id=1241688 . SUSE issues significant patch for libsoup that tackles various concerns, improving both security and overall system reliability.. libsoup patch, SUSE security update, buffer overflow, important security fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 30, 2025 Important SuSE
100

SUSE 2025:20448-1 Key Update: Kernel Livepatch MICRO-6-0 Update 2 Fixes

* bsc#1232908 * bsc#1232927 * bsc#1232929 * bsc#1233245 * bsc#1233680 . # Security update for kernel-livepatch-MICRO-6-0_Update_2 Announcement ID: SUSE-SU-2025:20448-1 Release Date: 2025-06-24T14:52:22Z Rating: important References: * bsc#1232908 * bsc#1232927 * bsc#1232929 * bsc#1233245 * bsc#1233680 * bsc#1233708 * bsc#1235062 * bsc#1235086 * bsc#1235129 * bsc#1235231 * bsc#1236244 Cross-References: * CVE-2024-50124 * CVE-2024-50125 * CVE-2024-50127 * CVE-2024-50257 * CVE-2024-50279 * CVE-2024-50301 * CVE-2024-53074 * CVE-2024-53208 * CVE-2024-56582 * CVE-2024-56601 * CVE-2024-56605 CVSS scores: * CVE-2024-50124 ( SUSE ): 7.5 CVSS:4.0/AV:A/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-50124 ( SUSE ): 7.1 CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50124 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50124 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50125 ( SUSE ): 7.5 CVSS:4.0/AV:A/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-50125 ( SUSE ): 7.1 CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50125 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50125 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50127 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-50127 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50127 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50127 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50257 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-50257 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50257 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50257 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50279 ( SUSE ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H * CVE-2024-50279 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2024-50301 ( SUSE ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2024-50301 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2024-53074 ( SUSE ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2024-53074 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-53208 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-53208 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53208 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53208 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56582 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56582 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56582 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56582 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56601 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56601 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56601 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56601 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56605 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56605 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56605 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56605 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Micro 6.1 An update that solves 11 vulnerabilities can now be installed. ## Description: This update for kernel-livepatch-MICRO-6-0_Update_2 fixes the following issues: * CVE-2024-56601: net: inet: do notleave a dangling sk pointer in inet_create() (bsc#1235231) * CVE-2024-50279: dm cache: fix out-of-bounds access to the dirty bitset when resizing (bsc#1233708) * CVE-2024-50301: security/keys: fix slab-out-of-bounds in key_task_permission (bsc#1233680) * CVE-2024-53074: wifi: iwlwifi: mvm: don't leak a link on AP removal (bsc#1235086) * CVE-2024-56582: btrfs: fix use-after-free in btrfs_encoded_read_endio() (bsc#1235129) * CVE-2024-53208: Bluetooth: MGMT: Fix slab-use-after-free Read in set_powered_sync (bsc#1236244) * CVE-2024-50257: netfilter: fix use-after-free in get_info() (bsc#1233245) * CVE-2024-50127: net: sched: fix use-after-free in taprio_change() (bsc#1232908) * CVE-2024-56605: Bluetooth: L2CAP: do not leave dangling sk pointer on error in l2cap_sock_create() (bsc#1235062) * CVE-2024-50125: Bluetooth: SCO: Fix UAF on sco_sock_timeout (bsc#1232929) * CVE-2024-50124: Bluetooth: ISO: Fix UAF on iso_sock_timeout (bsc#1232927) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.1 zypper in -t patch SUSE-SLE-Micro-6.1-kernel-47=1 ## Package List: * SUSE Linux Micro 6.1 (s390x x86_64) * kernel-livepatch-MICRO-6-0_Update_2-debugsource-7-1.1 * kernel-livepatch-6_4_0-19-default-7-1.1 * kernel-livepatch-6_4_0-19-default-debuginfo-7-1.1 ## References: * https://www.suse.com/security/cve/CVE-2024-50124.html * https://www.suse.com/security/cve/CVE-2024-50125.html * https://www.suse.com/security/cve/CVE-2024-50127.html * https://www.suse.com/security/cve/CVE-2024-50257.html * https://www.suse.com/security/cve/CVE-2024-50279.html * https://www.suse.com/security/cve/CVE-2024-50301.html * https://www.suse.com/security/cve/CVE-2024-53074.html * https://www.suse.com/security/cve/CVE-2024-53208.html *https://www.suse.com/security/cve/CVE-2024-56582.html * https://www.suse.com/security/cve/CVE-2024-56601.html * https://www.suse.com/security/cve/CVE-2024-56605.html * https://bugzilla.suse.com/show_bug.cgi?id=1232908 * https://bugzilla.suse.com/show_bug.cgi?id=1232927 * https://bugzilla.suse.com/show_bug.cgi?id=1232929 * https://bugzilla.suse.com/show_bug.cgi?id=1233245 * https://bugzilla.suse.com/show_bug.cgi?id=1233680 * https://bugzilla.suse.com/show_bug.cgi?id=1233708 * https://bugzilla.suse.com/show_bug.cgi?id=1235062 * https://bugzilla.suse.com/show_bug.cgi?id=1235086 * https://bugzilla.suse.com/show_bug.cgi?id=1235129 * https://bugzilla.suse.com/show_bug.cgi?id=1235231 * https://bugzilla.suse.com/show_bug.cgi?id=1236244 . Crucial SUSE patch for kernel-livepatch resolves various vulnerabilities and strengthens system protection.. kernel livepatch, security update, SUSE patches, out-of-bounds fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 30, 2025 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200