Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 505
Alerts This Week
Warning Icon 1 505

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -2 articles for you...
100

SUSE 15 SP7 Xen Moderate Patch for Buffer Overrun and vCPU Problems

An update that solves two vulnerabilities and has one security fix can now be installed.. # Security update for xen Announcement ID: SUSE-SU-2026:0589-1 Release Date: 2026-02-20T10:05:27Z Rating: moderate References: * bsc#1027519 * bsc#1256745 * bsc#1256747 Cross-References: * CVE-2025-58150 * CVE-2026-23553 CVSS scores: * CVE-2025-58150 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-58150 ( SUSE ): 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L * CVE-2025-58150 ( NVD ): 8.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H * CVE-2026-23553 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-23553 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2026-23553 ( NVD ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N Affected Products: * Basesystem Module 15-SP7 * Server Applications Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves two vulnerabilities and has one security fix can now be installed. ## Description: This update for xen fixes the following issues: * CVE-2025-58150: buffer overrun with shadow paging + tracing (XSA-477) (bsc#1256745). * CVE-2026-23553: incomplete IBPB for vCPU isolation (XSA-479) (bsc#1256747). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2026-589=1 * Server Applications Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP7-2026-589=1 ## Package List: * Basesystem Module 15-SP7 (x86_64) * xen-tools-domU-4.20.2_06-150700.3.25.1 *xen-libs-debuginfo-4.20.2_06-150700.3.25.1 * xen-debugsource-4.20.2_06-150700.3.25.1 * xen-tools-domU-debuginfo-4.20.2_06-150700.3.25.1 * xen-libs-4.20.2_06-150700.3.25.1 * Server Applications Module 15-SP7 (x86_64) * xen-4.20.2_06-150700.3.25.1 * xen-debugsource-4.20.2_06-150700.3.25.1 * xen-tools-debuginfo-4.20.2_06-150700.3.25.1 * xen-tools-4.20.2_06-150700.3.25.1 * xen-devel-4.20.2_06-150700.3.25.1 * Server Applications Module 15-SP7 (noarch) * xen-tools-xendomains-wait-disk-4.20.2_06-150700.3.25.1 ## References: * https://www.suse.com/security/cve/CVE-2025-58150.html * https://www.suse.com/security/cve/CVE-2026-23553.html * https://bugzilla.suse.com/show_bug.cgi?id=1027519 * https://bugzilla.suse.com/show_bug.cgi?id=1256745 * https://bugzilla.suse.com/show_bug.cgi?id=1256747 . SUSE updates address two vulnerabilities in Xen, including buffer overrun and vCPU isolation issues. Install the patch now.. Xen Security Patch,SUSE Update,Buffer Overrun Fix,vCPU Isolation Security. . LinuxSecurity.com Team

Calendar%202 Feb 20, 2026 SuSE
202

openSUSE Leap 15.4 xen Moderate Memory Access Buffer Overrun Vulnerability

An update that solves three vulnerabilities and has one security fix can now be installed.. # Security update for xen Announcement ID: SUSE-SU-2026:0394-1 Release Date: 2026-02-05T15:42:11Z Rating: moderate References: * bsc#1252692 * bsc#1254180 * bsc#1256745 * bsc#1256747 Cross-References: * CVE-2025-58149 * CVE-2025-58150 * CVE-2026-23553 CVSS scores: * CVE-2025-58149 ( SUSE ): 4.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:N/SC:H/SI:N/SA:N * CVE-2025-58149 ( SUSE ): 6.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2025-58149 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2025-58150 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-58150 ( SUSE ): 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L * CVE-2025-58150 ( NVD ): 8.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H * CVE-2026-23553 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-23553 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2026-23553 ( NVD ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 An update that solves three vulnerabilities and has one security fix can now be installed. ## Description: This update for xen fixes the following issues: Security fixes: * CVE-2025-58150: Fixed buffer overrun with shadow paging and tracing (XSA-477) (bsc#1256745) * CVE-2026-23553: Fixed incomplete IBPB for vCPU isolation (XSA-479) (bsc#1256747) * CVE-2025-58149: Fixed incorrect removal od permissions on PCI device unplug allow PV guests to access memory of devices no longer assigned to it (XSA-476) (bsc#1252692) Other fixes: * Fixed virtxend service restart. Caused by a failure to start xenstored (bsc#1254180) ## Special Instructions and Notes: * Please reboot the system after installing this update. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2026-394=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-394=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-394=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-394=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-394=1 ## Package List: * openSUSE Leap 15.4 (aarch64 x86_64 i586) * xen-debugsource-4.16.7_06-150400.4.78.1 * xen-tools-domU-debuginfo-4.16.7_06-150400.4.78.1 * xen-libs-4.16.7_06-150400.4.78.1 * xen-tools-domU-4.16.7_06-150400.4.78.1 * xen-devel-4.16.7_06-150400.4.78.1 * xen-libs-debuginfo-4.16.7_06-150400.4.78.1 * openSUSE Leap 15.4 (x86_64) * xen-libs-32bit-4.16.7_06-150400.4.78.1 * xen-libs-32bit-debuginfo-4.16.7_06-150400.4.78.1 * openSUSE Leap 15.4 (aarch64 x86_64) * xen-tools-4.16.7_06-150400.4.78.1 * xen-tools-debuginfo-4.16.7_06-150400.4.78.1 * xen-4.16.7_06-150400.4.78.1 * xen-doc-html-4.16.7_06-150400.4.78.1 * openSUSE Leap 15.4 (noarch) * xen-tools-xendomains-wait-disk-4.16.7_06-150400.4.78.1 * openSUSE Leap 15.4 (aarch64_ilp32) * xen-libs-64bit-4.16.7_06-150400.4.78.1 * xen-libs-64bit-debuginfo-4.16.7_06-150400.4.78.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (x86_64) * xen-libs-debuginfo-4.16.7_06-150400.4.78.1 * xen-libs-4.16.7_06-150400.4.78.1 * xen-debugsource-4.16.7_06-150400.4.78.1 * SUSE Linux Enterprise Micro 5.3 (x86_64) * xen-libs-debuginfo-4.16.7_06-150400.4.78.1 * xen-libs-4.16.7_06-150400.4.78.1 *xen-debugsource-4.16.7_06-150400.4.78.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (x86_64) * xen-libs-debuginfo-4.16.7_06-150400.4.78.1 * xen-libs-4.16.7_06-150400.4.78.1 * xen-debugsource-4.16.7_06-150400.4.78.1 * SUSE Linux Enterprise Micro 5.4 (x86_64) * xen-libs-debuginfo-4.16.7_06-150400.4.78.1 * xen-libs-4.16.7_06-150400.4.78.1 * xen-debugsource-4.16.7_06-150400.4.78.1 ## References: * https://www.suse.com/security/cve/CVE-2025-58149.html * https://www.suse.com/security/cve/CVE-2025-58150.html * https://www.suse.com/security/cve/CVE-2026-23553.html * https://bugzilla.suse.com/show_bug.cgi?id=1252692 * https://bugzilla.suse.com/show_bug.cgi?id=1254180 * https://bugzilla.suse.com/show_bug.cgi?id=1256745 * https://bugzilla.suse.com/show_bug.cgi?id=1256747 . A security update for openSUSE xen addresses three issues including buffer overrun and vCPU isolation threats.. openSUSE update xen security buffer overrun CVE. . LinuxSecurity.com Team

Calendar%202 Feb 05, 2026 OpenSUSE
100

SUSE Linux 12 SP5 Moderate Xen Buffer Overrun 2026-0328-1

An update that solves three vulnerabilities can now be installed.. # Security update for xen Announcement ID: SUSE-SU-2026:0328-1 Release Date: 2026-01-28T15:39:28Z Rating: moderate References: * bsc#1252692 * bsc#1256745 * bsc#1256747 Cross-References: * CVE-2025-58149 * CVE-2025-58150 * CVE-2026-23553 CVSS scores: * CVE-2025-58149 ( SUSE ): 4.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:N/SC:H/SI:N/SA:N * CVE-2025-58149 ( SUSE ): 6.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2025-58149 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2025-58150 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-58150 ( SUSE ): 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L * CVE-2025-58150 ( NVD ): 8.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H * CVE-2026-23553 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-23553 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2026-23553 ( NVD ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N Affected Products: * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves three vulnerabilities can now be installed. ## Description: This update for xen fixes the following issues: Security fixes: * CVE-2025-58150: Fixed buffer overrun with shadow paging and tracing (XSA-477) (bsc#1256745) * CVE-2026-23553: Fixed incomplete IBPB for vCPU isolation (XSA-479) (bsc#1256747) * CVE-2025-58149: Fixed incorrect removal od permissions on PCI device unplug allow PV guests to access memory of devices no longer assigned to it (XSA-476) (bsc#1252692) ## Special Instructions and Notes: * Please reboot the system after installing this update. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methodslike YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2026-328=1 ## Package List: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (x86_64) * xen-devel-4.12.4_64-3.137.1 * xen-libs-debuginfo-4.12.4_64-3.137.1 * xen-tools-domU-4.12.4_64-3.137.1 * xen-libs-debuginfo-32bit-4.12.4_64-3.137.1 * xen-4.12.4_64-3.137.1 * xen-libs-32bit-4.12.4_64-3.137.1 * xen-libs-4.12.4_64-3.137.1 * xen-debugsource-4.12.4_64-3.137.1 * xen-tools-4.12.4_64-3.137.1 * xen-tools-domU-debuginfo-4.12.4_64-3.137.1 * xen-tools-debuginfo-4.12.4_64-3.137.1 * xen-doc-html-4.12.4_64-3.137.1 ## References: * https://www.suse.com/security/cve/CVE-2025-58149.html * https://www.suse.com/security/cve/CVE-2025-58150.html * https://www.suse.com/security/cve/CVE-2026-23553.html * https://bugzilla.suse.com/show_bug.cgi?id=1252692 * https://bugzilla.suse.com/show_bug.cgi?id=1256745 * https://bugzilla.suse.com/show_bug.cgi?id=1256747 . SUSE security update addresses three issues in Xen, with moderate severity including buffer overrun and vCPU isolation.. SUSE Xen Security Update 2026 Moderate Buffer Overrun. . LinuxSecurity.com Team

Calendar%202 Jan 28, 2026 SuSE
100

SUSE 15 SP7 Xen Moderate Security Update - CVE-2025-58150, CVE-2026-23553

An update that solves two vulnerabilities can now be installed.. # Security update for xen Announcement ID: SUSE-SU-2026:0329-1 Release Date: 2026-01-28T15:39:41Z Rating: moderate References: * bsc#1256745 * bsc#1256747 Cross-References: * CVE-2025-58150 * CVE-2026-23553 CVSS scores: * CVE-2025-58150 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-58150 ( SUSE ): 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L * CVE-2025-58150 ( NVD ): 8.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H * CVE-2026-23553 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-23553 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2026-23553 ( NVD ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N Affected Products: * Basesystem Module 15-SP7 * Server Applications Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves two vulnerabilities can now be installed. ## Description: This update for xen fixes the following issues: * CVE-2025-58150: Fixed buffer overrun with shadow paging and tracing (XSA-477) (bsc#1256745) * CVE-2026-23553: Fixed incomplete IBPB for vCPU isolation (XSA-479) (bsc#1256747) ## Special Instructions and Notes: * Please reboot the system after installing this update. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2026-329=1 * Server Applications Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP7-2026-329=1 ## Package List: * Basesystem Module 15-SP7 (x86_64) *xen-tools-domU-4.20.2_04-150700.3.22.1 * xen-debugsource-4.20.2_04-150700.3.22.1 * xen-libs-4.20.2_04-150700.3.22.1 * xen-libs-debuginfo-4.20.2_04-150700.3.22.1 * xen-tools-domU-debuginfo-4.20.2_04-150700.3.22.1 * Server Applications Module 15-SP7 (x86_64) * xen-4.20.2_04-150700.3.22.1 * xen-debugsource-4.20.2_04-150700.3.22.1 * xen-tools-debuginfo-4.20.2_04-150700.3.22.1 * xen-devel-4.20.2_04-150700.3.22.1 * xen-tools-4.20.2_04-150700.3.22.1 * Server Applications Module 15-SP7 (noarch) * xen-tools-xendomains-wait-disk-4.20.2_04-150700.3.22.1 ## References: * https://www.suse.com/security/cve/CVE-2025-58150.html * https://www.suse.com/security/cve/CVE-2026-23553.html * https://bugzilla.suse.com/show_bug.cgi?id=1256745 * https://bugzilla.suse.com/show_bug.cgi?id=1256747 . SUSE update 2026:0329-1 addresses moderate security issues for Xen. Install fixes for buffer overrun and vCPU isolation.. SUSE Linux update Xen security moderate. . LinuxSecurity.com Team

Calendar%202 Jan 28, 2026 SuSE
100

Debian 10.9 Kernel Security Flaw Identified in DSA-5123-1 Update

An update that solves six vulnerabilities can now be installed.. # Security update for xen Announcement ID: SUSE-SU-2026:0303-1 Release Date: 2026-01-27T16:14:45Z Rating: moderate References: * bsc#1248807 * bsc#1252692 * bsc#1254180 * bsc#1256745 * bsc#1256747 Cross-References: * CVE-2025-27466 * CVE-2025-58142 * CVE-2025-58143 * CVE-2025-58149 * CVE-2025-58150 * CVE-2026-23553 CVSS scores: * CVE-2025-27466 ( SUSE ): 6.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H * CVE-2025-27466 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-58142 ( SUSE ): 6.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H * CVE-2025-58142 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-58143 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-58143 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-58149 ( SUSE ): 4.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:N/SC:H/SI:N/SA:N * CVE-2025-58149 ( SUSE ): 6.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2025-58149 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2025-58150 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-58150 ( SUSE ): 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L * CVE-2026-23553 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-23553 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * openSUSE Leap 15.3 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro for Rancher 5.2 An update that solves six vulnerabilities can now be installed. ## Description: This update for xen fixes the following issues: Security fixes: * CVE-2025-58150: Fixed buffer overrun with shadow paging and tracing (XSA-477) (bsc#1256745) * CVE-2026-23553: Fixed incomplete IBPB for vCPU isolation (XSA-479) (bsc#1256747) * CVE-2025-58149: Fixed incorrectremoval od permissions on PCI device unplug allow PV guests to access memory of devices no longer assigned to it (XSA-476) (bsc#1252692) * CVE-2025-27466, CVE-2025-58142, CVE-2025-58143: Fixed multiple vulnerabilities in the Viridian interface (XSA-472) (bsc#1248807) Other fixes: * Fixed virtxend service restart. Caused by a failure to start xenstored (bsc#1254180) ## Special Instructions and Notes: * Please reboot the system after installing this update. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2026-303=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-303=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-303=1 ## Package List: * openSUSE Leap 15.3 (aarch64 x86_64 i586) * xen-debugsource-4.14.6_28-150300.3.94.1 * xen-devel-4.14.6_28-150300.3.94.1 * xen-tools-domU-debuginfo-4.14.6_28-150300.3.94.1 * xen-libs-4.14.6_28-150300.3.94.1 * xen-libs-debuginfo-4.14.6_28-150300.3.94.1 * xen-tools-domU-4.14.6_28-150300.3.94.1 * openSUSE Leap 15.3 (x86_64) * xen-libs-32bit-4.14.6_28-150300.3.94.1 * xen-libs-32bit-debuginfo-4.14.6_28-150300.3.94.1 * openSUSE Leap 15.3 (aarch64 x86_64) * xen-tools-debuginfo-4.14.6_28-150300.3.94.1 * xen-doc-html-4.14.6_28-150300.3.94.1 * xen-4.14.6_28-150300.3.94.1 * xen-tools-4.14.6_28-150300.3.94.1 * openSUSE Leap 15.3 (noarch) * xen-tools-xendomains-wait-disk-4.14.6_28-150300.3.94.1 * openSUSE Leap 15.3 (aarch64_ilp32) * xen-libs-64bit-debuginfo-4.14.6_28-150300.3.94.1 * xen-libs-64bit-4.14.6_28-150300.3.94.1 * SUSE Linux Enterprise Micro 5.2 (x86_64) * xen-debugsource-4.14.6_28-150300.3.94.1 * xen-libs-4.14.6_28-150300.3.94.1 *xen-libs-debuginfo-4.14.6_28-150300.3.94.1 * SUSE Linux Enterprise Micro for Rancher 5.2 (x86_64) * xen-debugsource-4.14.6_28-150300.3.94.1 * xen-libs-4.14.6_28-150300.3.94.1 * xen-libs-debuginfo-4.14.6_28-150300.3.94.1 ## References: * https://www.suse.com/security/cve/CVE-2025-27466.html * https://www.suse.com/security/cve/CVE-2025-58142.html * https://www.suse.com/security/cve/CVE-2025-58143.html * https://www.suse.com/security/cve/CVE-2025-58149.html * https://www.suse.com/security/cve/CVE-2025-58150.html * https://www.suse.com/security/cve/CVE-2026-23553.html * https://bugzilla.suse.com/show_bug.cgi?id=1248807 * https://bugzilla.suse.com/show_bug.cgi?id=1252692 * https://bugzilla.suse.com/show_bug.cgi?id=1254180 * https://bugzilla.suse.com/show_bug.cgi?id=1256745 * https://bugzilla.suse.com/show_bug.cgi?id=1256747 . Update for SUSE fixes six vulnerabilities in Xen, ensuring system stability and security while addressing critical issues.. SUSE Linux, Xen security, system update, Linux vulnerabilities, openSUSE security. . LinuxSecurity.com Team

Calendar%202 Jan 28, 2026 SuSE
202

openSUSE Leap 15.5 Xen Moderate Issues CVE-2025-58150 2026-0304-1

An update that solves two vulnerabilities can now be installed.. # Security update for xen Announcement ID: SUSE-SU-2026:0304-1 Release Date: 2026-01-27T16:14:51Z Rating: moderate References: * bsc#1256745 * bsc#1256747 Cross-References: * CVE-2025-58150 * CVE-2026-23553 CVSS scores: * CVE-2025-58150 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-58150 ( SUSE ): 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L * CVE-2026-23553 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-23553 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise Micro 5.5 An update that solves two vulnerabilities can now be installed. ## Description: This update for xen fixes the following issues: * CVE-2025-58150: Fixed buffer overrun with shadow paging and tracing (XSA-477) (bsc#1256745) * CVE-2026-23553: Fixed incomplete IBPB for vCPU isolation (XSA-479) (bsc#1256747) ## Special Instructions and Notes: * Please reboot the system after installing this update. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -t patch SUSE-2026-304=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2026-304=1 ## Package List: * openSUSE Leap 15.5 (aarch64 x86_64 i586) * xen-tools-domU-debuginfo-4.17.6_04-150500.3.59.1 * xen-libs-debuginfo-4.17.6_04-150500.3.59.1 * xen-debugsource-4.17.6_04-150500.3.59.1 * xen-devel-4.17.6_04-150500.3.59.1 * xen-tools-domU-4.17.6_04-150500.3.59.1 * xen-libs-4.17.6_04-150500.3.59.1 * openSUSE Leap 15.5 (x86_64) * xen-libs-32bit-debuginfo-4.17.6_04-150500.3.59.1 * xen-libs-32bit-4.17.6_04-150500.3.59.1 * openSUSE Leap 15.5(aarch64 x86_64) * xen-tools-4.17.6_04-150500.3.59.1 * xen-4.17.6_04-150500.3.59.1 * xen-tools-debuginfo-4.17.6_04-150500.3.59.1 * xen-doc-html-4.17.6_04-150500.3.59.1 * openSUSE Leap 15.5 (noarch) * xen-tools-xendomains-wait-disk-4.17.6_04-150500.3.59.1 * openSUSE Leap 15.5 (aarch64_ilp32) * xen-libs-64bit-debuginfo-4.17.6_04-150500.3.59.1 * xen-libs-64bit-4.17.6_04-150500.3.59.1 * SUSE Linux Enterprise Micro 5.5 (x86_64) * xen-libs-4.17.6_04-150500.3.59.1 * xen-libs-debuginfo-4.17.6_04-150500.3.59.1 * xen-debugsource-4.17.6_04-150500.3.59.1 ## References: * https://www.suse.com/security/cve/CVE-2025-58150.html * https://www.suse.com/security/cve/CVE-2026-23553.html * https://bugzilla.suse.com/show_bug.cgi?id=1256745 * https://bugzilla.suse.com/show_bug.cgi?id=1256747 . Update for openSUSE fixes two vulnerabilities in Xen affecting system security and stability.. openSUSE Xen updates security issues, moderate vulnerabilities, system patch instructions. . LinuxSecurity.com Team

Calendar%202 Jan 28, 2026 OpenSUSE
202

openSUSE Leap 15.8 Security Advisory SUSE-2026-0408-1 Low Risk CVEs

An update that solves two vulnerabilities can now be installed.. # Security update for xen Announcement ID: SUSE-SU-2026:0306-1 Release Date: 2026-01-27T16:15:20Z Rating: moderate References: * bsc#1256745 * bsc#1256747 Cross-References: * CVE-2025-58150 * CVE-2026-23553 CVSS scores: * CVE-2025-58150 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-58150 ( SUSE ): 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L * CVE-2026-23553 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-23553 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * openSUSE Leap 15.6 An update that solves two vulnerabilities can now be installed. ## Description: This update for xen fixes the following issues: * CVE-2025-58150: Fixed buffer overrun with shadow paging and tracing (XSA-477) (bsc#1256745) * CVE-2026-23553: Fixed incomplete IBPB for vCPU isolation (XSA-479) (bsc#1256747) ## Special Instructions and Notes: * Please reboot the system after installing this update. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2026-306=1 openSUSE-SLE-15.6-2026-306=1 ## Package List: * openSUSE Leap 15.6 (aarch64 x86_64 i586) * xen-tools-domU-debuginfo-4.18.5_10-150600.3.37.1 * xen-tools-domU-4.18.5_10-150600.3.37.1 * xen-debugsource-4.18.5_10-150600.3.37.1 * xen-libs-debuginfo-4.18.5_10-150600.3.37.1 * xen-libs-4.18.5_10-150600.3.37.1 * xen-devel-4.18.5_10-150600.3.37.1 * openSUSE Leap 15.6 (x86_64) * xen-libs-32bit-4.18.5_10-150600.3.37.1 * xen-libs-32bit-debuginfo-4.18.5_10-150600.3.37.1 * openSUSE Leap 15.6 (aarch64 x86_64) * xen-tools-debuginfo-4.18.5_10-150600.3.37.1 *xen-tools-4.18.5_10-150600.3.37.1 * xen-4.18.5_10-150600.3.37.1 * xen-doc-html-4.18.5_10-150600.3.37.1 * openSUSE Leap 15.6 (noarch) * xen-tools-xendomains-wait-disk-4.18.5_10-150600.3.37.1 * openSUSE Leap 15.6 (aarch64_ilp32) * xen-libs-64bit-debuginfo-4.18.5_10-150600.3.37.1 * xen-libs-64bit-4.18.5_10-150600.3.37.1 ## References: * https://www.suse.com/security/cve/CVE-2025-58150.html * https://www.suse.com/security/cve/CVE-2026-23553.html * https://bugzilla.suse.com/show_bug.cgi?id=1256745 * https://bugzilla.suse.com/show_bug.cgi?id=1256747 . A security update for openSUSE addresses two moderate severity issues in xen software. Critical installation guidance included.. xen security patch, openSUSE vulnerabilities, buffer overflow fix, vCPU isolation update. . LinuxSecurity.com Team

Calendar%202 Jan 28, 2026 OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200