SUSE 5738 Published by Philipp Esselbach 0

SUSE issued a coordinated set of important and moderate security patches across openSUSE Leap, Tumbleweed, and SUSE Linux Enterprise environments to address dozens of active CVEs. The releases neutralize high-risk flaws ranging from use-after-free memory corruption in Chromium and a root code execution vulnerability in Dracut to seventy-five kernel defects affecting real-time system stability. Additional updates resolve authentication bypasses in the himmelblau directory service, heap corruption in pgadmin4, and multiple command injection risks tied to ansible and 7zip utilities.

openSUSE-SU-2026:0284-1: important: Security update for chromium
SUSE-SU-2026:3611-1: important: Security update for dracut
SUSE-SU-2026:3612-1: important: Security update for dracut
SUSE-SU-2026:3617-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:21573-1: important: Security update for himmelblau
openSUSE-SU-2026:11506-1: moderate: kernel-devel-7.1.8-1.1 on GA media
openSUSE-SU-2026:11509-1: moderate: python3-ansible-compat-26.8.0-1.1 on GA media
openSUSE-SU-2026:11502-1: moderate: 7zip-26.02-2.1 on GA media
openSUSE-SU-2026:11510-1: moderate: python313-nltk-3.10.2-1.1 on GA media
openSUSE-SU-2026:11503-1: moderate: ansible-lint-26.8.0-1.1 on GA media
openSUSE-SU-2026:11508-1: moderate: pgadmin4-9.17-1.1 on GA media
openSUSE-SU-2026:11507-1: moderate: molecule-26.8.0-1.1 on GA media
openSUSE-SU-2026:11504-1: moderate: dracut-112+suse.29.gc0c5e1d-1.1 on GA media

SUSE 5738 Published by Philipp Esselbach 0

SUSE issued two important security advisories to patch major vulnerabilities in the Linux kernel and OpenSSH for SUSE Linux Enterprise 15 SP6 and 15 SP7 systems. The kernel advisory addresses 77 distinct vulnerabilities across networking, storage, virtualization, and graphics drivers, while the OpenSSH advisory resolves eight flaws tied to SFTP file placement bypasses, scp cross-server copy errors, and pre-authentication denial of service conditions.

SUSE-SU-2026:3602-1: important: Security update for the Linux Kernel
SUSE-SU-2026:3605-1: important: Security update for openssh

SUSE 5738 Published by Philipp Esselbach 0

SUSE rolled out a fresh batch of security patches for their 2026 releases, targeting known vulnerabilities across dozens of system packages. The update cycle prioritizes critical fixes for Chromium alongside important advisories for the Linux kernel, OpenVPN, dracut, and RPM.

openSUSE-SU-2026:11500-1: moderate: stunnel-5.80-1.1 on GA media
openSUSE-SU-2026:11495-1: moderate: git-cliff-2.13.1-1.1 on GA media
openSUSE-SU-2026:11498-1: moderate: python313-scikit-learn-1.9.0-1.1 on GA media
openSUSE-SU-2026:11494-1: moderate: clusterctl-1.14.0-1.1 on GA media
SUSE-SU-2026:3596-1: important: Security update for openvpn
SUSE-SU-2026:3599-1: important: Security update for dracut
SUSE-SU-2026:3600-1: important: Security update for rpm
openSUSE-SU-2026:21561-1: critical: Security update for chromium
openSUSE-SU-2026:21563-1: important: Security update for librest0_7
openSUSE-SU-2026:21567-1: moderate: Security update for zk
openSUSE-SU-2026:21557-1: moderate: Security update for gleam
openSUSE-SU-2026:21553-1: important: Security update for GraphicsMagick
openSUSE-SU-2026:21551-1: important: Security update for govulncheck-vulndb
openSUSE-SU-2026:21548-1: important: Security update for gd
openSUSE-SU-2026:21546-1: important: Security update for nodejs24
openSUSE-SU-2026:21545-1: important: Security update for nodejs22
SUSE-SU-2026:3593-1: important: Security update for the Linux Kernel
SUSE-SU-2026:3595-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:0281-1: critical: Security update for chromium

SUSE 5738 Published by Philipp Esselbach 0

SUSE issued a batch of security advisories to address dozens of vulnerabilities across essential system packages. The updates focus on high-risk components including bind, erlang26, Python 3.11, Python 3.12, Perl, and the Chromium browser driver, carrying importance ratings from moderate to important. System administrators running SUSE Linux Enterprise Server 15 or any openSUSE Leap and Tumbleweed variant should deploy the fixes through YaST or zypper patch to neutralize attack vectors like buffer overflows and authentication bypasses. Additional advisories cover support libraries and utilities such as ImageMagick, xmlrpc-c, and the himmelblau authentication daemon to seal specific exploitation pathways.

SUSE-SU-2026:3549-1: moderate: Security update for python3-sqlparse
SUSE-SU-2026:3554-1: important: Security update for bind
SUSE-SU-2026:3558-1: important: Security update for perl
SUSE-SU-2026:3560-1: important: Security update for python311
SUSE-SU-2026:3561-1: moderate: Security update for PackageKit
SUSE-SU-2026:3569-1: important: Security update for python312
openSUSE-SU-2026:11487-1: moderate: java-1_8_0-openj9-1.8.0.502-1.1 on GA media
openSUSE-SU-2026:11490-1: moderate: libpcp-devel-6.3.8-3.1 on GA media
openSUSE-SU-2026:11482-1: moderate: wild-0.10.0-2.1 on GA media
openSUSE-SU-2026:11488-1: moderate: java-21-openj9-21.0.12.0-1.1 on GA media
openSUSE-SU-2026:11491-1: moderate: python313-Django5-5.2.17-1.1 on GA media
openSUSE-SU-2026:11489-1: moderate: java-25-openj9-25.0.4.0-1.1 on GA media
openSUSE-SU-2026:11486-1: moderate: java-17-openj9-17.0.20.0-1.1 on GA media
openSUSE-SU-2026:11485-1: moderate: java-11-openj9-11.0.32.0-1.1 on GA media
openSUSE-SU-2026:11484-1: moderate: chromedriver-151.0.7922.108-1.1 on GA media
openSUSE-SU-2026:11483-1: moderate: zpaqfranz-64.8-1.1 on GA media
SUSE-SU-2026:3571-1: moderate: Security update for ImageMagick
SUSE-SU-2026:3572-1: moderate: Security update for xmlrpc-c
SUSE-SU-2026:3573-1: moderate: Security update for gstreamer-plugins-bad
SUSE-SU-2026:3575-1: moderate: Security update for libarchive
SUSE-SU-2026:3576-1: important: Security update for himmelblau, himmelblau.SUSE_SLE-15-SP5_Update
SUSE-SU-2026:3577-1: important: Security update for snpguest
openSUSE-SU-2026:0280-1: important: Security update for go-sendxmpp
SUSE-SU-2026:3579-1: important: Security update for erlang26
SUSE-SU-2026:3588-1: moderate: Security update for python3-pip
SUSE-SU-2026:3589-1: moderate: Security update for python-pip

SUSE 5738 Published by Philipp Esselbach 0

SUSE released a series of security patches covering multiple enterprise and open-source distributions. The updates address critical vulnerabilities in core components like the Linux kernel, Python 3.11, FFmpeg, OpenSSH libraries, and OpenSSL live patches. System administrators can apply the fixes using standard YaST or zypper commands across SUSE Linux Enterprise versions ranging from 15 SP4 through SP7, as well as openSUSE Leap and Tumbleweed. The combined patches resolve dozens of CVEs that could otherwise allow remote code execution, memory corruption, denial of service, or unauthorized system access.

SUSE-SU-2026:3533-1: important: Security update for openssl-1_1-livepatches
SUSE-SU-2026:3536-1: important: Security update for podman
openSUSE-SU-2026:11477-1: moderate: librest-1_0-0-0.10.2-2.1 on GA media
openSUSE-SU-2026:11480-1: moderate: vlang-0.5.2-2.1 on GA media
openSUSE-SU-2026:11476-1: moderate: kernel-devel-7.1.7-1.1 on GA media
openSUSE-SU-2026:11478-1: moderate: python313-pymongo-4.17.0-1.1 on GA media
openSUSE-SU-2026:11479-1: moderate: libsdb2_5_0-6.2.0-1.1 on GA media
openSUSE-SU-2026:11473-1: moderate: dhcpcd-10.5.0-1.1 on GA media
openSUSE-SU-2026:11481-1: moderate: weechat-4.10.0-1.1 on GA media
openSUSE-SU-2026:11472-1: moderate: agama-web-ui-23+75.1a877fb50-50.1 on GA media
openSUSE-SU-2026:11474-1: moderate: gitoxide-0.56.0-1.1 on GA media
openSUSE-SU-2026:11475-1: moderate: kak-lsp-21.0.2-1.1 on GA media
SUSE-SU-2026:3541-1: important: Security update for libssh2_org
SUSE-SU-2026:3542-1: important: Security update for ffmpeg-4
SUSE-SU-2026:3547-1: moderate: Security update for suseconnect-ng
SUSE-SU-2026:3548-1: important: Security update for python311

SUSE 5738 Published by Philipp Esselbach 0

openSUSE released a batch of moderate security advisories addressing vulnerabilities in the tekton-cli, libXfont2-2, Django 4, and gleam packages. The tekton-cli 0.46.0-1.1 and gleam 1.18.1-1.1 updates each fix a single CVE with lower risk profiles. Developers using libXfont2-2-2.0.7-3.1 should prioritize this release after SUSE assigned CVSS scores of 9.0 to 9.5 for CVE-2026-44950 and CVE-2026-59679. Django 4 developers must also apply the python313-Django4 4.2.30-5.1 package to resolve four flaws, including a critical CVSS 9.9 vulnerability in CVE-2026-15307.

openSUSE-SU-2026:11471-1: moderate: tekton-cli-0.46.0-1.1 on GA media
openSUSE-SU-2026:11463-1: moderate: libXfont2-2-2.0.7-3.1 on GA media
openSUSE-SU-2026:11465-1: moderate: python313-Django4-4.2.30-5.1 on GA media
openSUSE-SU-2026:11462-1: moderate: gleam-1.18.1-1.1 on GA media

SUSE 5738 Published by Philipp Esselbach 0

SUSE issued a batch of security advisories addressing vulnerabilities across major software packages used in production environments. The patches update critical components including Python 3.10, FFmpeg 4, libssh2, Wireshark libraries, gstreamer-plugins-bad, azure-storage-azcopy, and Perl modules. Several advisories carry important ratings due to high-impact flaws like memory corruption in FFmpeg decoders, path traversal risks in the tarfile module, and privilege escalation in IDNA validation.

openSUSE-SU-2026:0278-1: moderate: Security update for perl-Mojolicious
openSUSE-SU-2026:11460-1: moderate: libwireshark19-4.6.7-3.1 on GA media
openSUSE-SU-2026:11461-1: moderate: fuse-overlayfs-1.17-1.1 on GA media
openSUSE-SU-2026:11454-1: moderate: libssh2-1-1.11.1-4.1 on GA media
SUSE-SU-2026:3527-1: moderate: Security update for gstreamer-plugins-bad
SUSE-SU-2026:3528-1: important: Security update for azure-storage-azcopy
SUSE-SU-2026:3529-1: important: Security update for ffmpeg-4
SUSE-SU-2026:3530-1: important: Security update for python310
openSUSE-SU-2026:0279-1: moderate: Security update for perl-Mojo-JWT

SUSE 5738 Published by Philipp Esselbach 0

SUSE have released a batch of critical, important, and moderate security patches covering php8, OpenSSL 1.1, OpenSSL 3, Node.js 22, Wireshark, and Rsyslog across SUSE Linux Enterprise Server 15 SP4 through SP6, openSUSE Leap 15.4 through 16.0, and openSUSE Tumbleweed. The php8 advisory addresses a severe SQL injection flaw in the PostgreSQL extension, while OpenSSL updates mitigate a remote denial-of-service vector targeting TLS ClientHello messages. Additional patches resolve HTTP/2 header manipulation issues and permission model bypasses in Node.js 22, fix stack corruption risks in Rsyslog, and close sixteen distinct protocol dissector crashes in Wireshark.

SUSE-SU-2026:3513-1: critical: Security update for php8
SUSE-SU-2026:3514-1: critical: Security update for php8
openSUSE-SU-2026:21535-1: important: Security update for rsyslog
openSUSE-SU-2026:21534-1: important: Security update for wireshark
openSUSE-SU-2026:21533-1: important: Security update for dnsdist
openSUSE-SU-2026:21532-1: critical: Security update for php8
openSUSE-SU-2026:11445-1: moderate: bouncycastle-1.85-1.1 on GA media
openSUSE-SU-2026:11450-1: moderate: perl-Mojo-JWT-1.20.0-2.1 on GA media
openSUSE-SU-2026:11448-1: moderate: ffmpeg-4-4.4.8-3.1 on GA media
openSUSE-SU-2026:11446-1: moderate: cockpit-repos-4.9-1.1 on GA media
openSUSE-SU-2026:11447-1: moderate: cockpit-subscriptions-16.3-1.1 on GA media
openSUSE-SU-2026:11442-1: moderate: OpenImageIO-3.1.16.0-1.1 on GA media
openSUSE-SU-2026:11444-1: moderate: azure-storage-azcopy-10.32.6-1.1 on GA media
openSUSE-SU-2026:11443-1: moderate: amazon-ecs-init-1.106.0-1.1 on GA media
SUSE-SU-2026:3515-1: important: Security update for openssl-1_1
SUSE-SU-2026:3516-1: important: Security update for openssl-3
SUSE-SU-2026:3518-1: important: Security update for rsyslog
SUSE-SU-2026:3521-1: important: Security update for nodejs22

SUSE 5738 Published by Philipp Esselbach 0

SUSE published a series of security advisories throughout 2026, with the August 5 batch addressing ratings from moderate to critical across openSUSE Leap and SUSE Linux Enterprise systems. The patches resolve more than two dozen CVEs affecting widely deployed software including php7, python-Django, openssl-3, pcp, nginx, python-nltk, vifm, rrdtool, python-httplib2, and evince. Operators managing these platforms should install the fixes right away to block vulnerabilities like SQL injection, command injection, buffer overflows, and remote denial of service. Admin teams can deploy the updates using the YaST online_update tool or execute the exact zypper patch commands provided in each advisory notice.

openSUSE-SU-2026:21524-1: important: Security update for nginx
openSUSE-SU-2026:21526-1: important: Security update for python-httplib2
openSUSE-SU-2026:21525-1: important: Security update for rrdtool
openSUSE-SU-2026:0277-1: important: Security update for python-nltk
openSUSE-SU-2026:0276-1: important: Security update for vifm
SUSE-SU-2026:3502-1: important: Security update for openssl-3
SUSE-SU-2026:3503-1: critical: Security update for python-Django
SUSE-SU-2026:3505-1: critical: Security update for pcp
SUSE-SU-2026:3506-1: critical: Security update for pcp
SUSE-SU-2026:3507-1: critical: Security update for pcp
SUSE-SU-2026:3510-1: critical: Security update for php7
SUSE-SU-2026:3512-1: moderate: Security update for evince

SUSE 5738 Published by Philipp Esselbach 0

SUSE released a batch of security advisories addressing vulnerabilities across more than thirty software packages distributed through their official repositories. The patches cover high-impact programs including OpenSSL versions one and three, nginx, bind, Python-ujson, ffmpeg, Node.js twenty-six, and several other critical system utilities. Severity ratings range from low to important, with the majority of updates flagged as either important or moderate due to potential privilege escalation, remote code execution risks, or data exposure flaws.

SUSE-SU-2026:3483-1: important: Security update for valkey
SUSE-SU-2026:3485-1: important: Security update for spice-vdagent
SUSE-SU-2026:3486-1: moderate: Security update for openssl-3
SUSE-SU-2026:3488-1: important: Security update for openssl-1_1
SUSE-SU-2026:3489-1: moderate: Security update for multipath-tools
SUSE-SU-2026:3490-1: low: Security update for wpa_supplicant
SUSE-SU-2026:3491-1: moderate: Security update for libgcrypt
SUSE-SU-2026:3492-1: moderate: Security update for alsa
SUSE-SU-2026:3493-1: important: Security update for libpng16
openSUSE-SU-2026:21518-1: important: Security update for python-ujson
openSUSE-SU-2026:21516-1: important: Security update for python-sh
openSUSE-SU-2026:21522-1: important: Security update for ffmpeg-4
openSUSE-SU-2026:11436-1: moderate: golang-github-prometheus-prometheus-3.13.2-1.1 on GA media
openSUSE-SU-2026:11438-1: moderate: alloy-1.18.0-1.1 on GA media
openSUSE-SU-2026:11437-1: moderate: podman-6.0.2-1.1 on GA media
openSUSE-SU-2026:11434-1: moderate: chromedriver-151.0.7922.71-1.1 on GA media
openSUSE-SU-2026:11440-1: moderate: nodejs26-26.5.1-1.1 on GA media
openSUSE-SU-2026:11439-1: moderate: corepack24-24.18.1-1.1 on GA media
openSUSE-SU-2026:11441-1: moderate: xen-4.22.0_02-1.1 on GA media
SUSE-SU-2026:3468-1: important: Security update for rrdtool
SUSE-SU-2026:3469-1: important: Security update for nginx
SUSE-SU-2026:3470-1: important: Security update for spice-vdagent
SUSE-SU-2026:3474-1: moderate: Security update for s390-tools
SUSE-SU-2026:3475-1: moderate: Security update for s390-tools
SUSE-SU-2026:3476-1: important: Security update for bind
SUSE-SU-2026:3477-1: important: Security update for bind
openSUSE-SU-2026:0275-1: important: Security update for thrift
openSUSE-SU-2026:0274-1: important: Security update for perl-HTTP-Tiny
openSUSE-SU-2026:0273-1: important: Security update for perl-YAML-Syck

SUSE 5738 Published by Philipp Esselbach 0

SUSE issued a batch of important and moderate security patches, covering widely deployed packages like nginx, BIND DNS, OpenSSL 1.1, Vim, Xen hypervisor, libssh, rsyslog, ImageMagick, and several Python libraries. The fixes address critical flaws ranging from heap buffer overflows in HTTP proxy modules to cross zone cache poisoning in DNS resolvers, arbitrary code execution through editor completion engines, and denial of service vectors in SSH client implementations. Each advisory provides specific CVSS scores, affected operating system versions spanning openSUSE Leap 15.4 through SUSE Linux Enterprise Server 15 SP7, and targeted zypper installation commands for immediate deployment.

SUSE-SU-2026:3448-1: important: Security update for nginx
SUSE-SU-2026:3452-1: important: Security update for bind
SUSE-SU-2026:3457-1: important: Security update for openssl-1_1
SUSE-SU-2026:3458-1: important: Security update for vim
SUSE-SU-2026:3459-1: important: Security update for python3-dulwich
openSUSE-SU-2026:11424-1: moderate: python313-pydantic-2.13.4-2.1 on GA media
openSUSE-SU-2026:11433-1: moderate: ImageMagick-7.1.2.28-2.1 on GA media
openSUSE-SU-2026:11428-1: moderate: python312-3.12.13-8.1 on GA media
openSUSE-SU-2026:11425-1: moderate: python313-sentry-sdk-2.66.1-1.1 on GA media
SUSE-SU-2026:3441-1: important: Security update for GraphicsMagick
SUSE-SU-2026:3442-1: important: Security update for rsyslog
SUSE-SU-2026:3462-1: important: Security update for xen
SUSE-SU-2026:3463-1: moderate: Security update for libssh

SUSE 5738 Published by Philipp Esselbach 0

SUSE Linux distributed a batch of system patches covering ten openSUSE-SU packages across its standard and GA media repositories. The most critical fix addresses a security flaw in WebKit2GTK3, while additional moderate updates target warewulf4, PHP 8.5, and several Python 3.13 libraries including GitPython and certifi. Administrators running these distributions should prioritize the WebKit patch to close known vulnerabilities before installing the remaining package upgrades. The updates ship through standard openSUSE update channels under their official SU reference numbers for easy tracking.

openSUSE-SU-2026:21508-1: important: Security update for webkit2gtk3
openSUSE-SU-2026:21509-1: moderate: Security update for warewulf4
openSUSE-SU-2026:11419-1: moderate: python313-GitPython-3.1.56-1.1 on GA media
openSUSE-SU-2026:11422-1: moderate: python313-huggingface-hub-1.26.0-1.1 on GA media
openSUSE-SU-2026:11418-1: moderate: php8-8.5.9-1.1 on GA media
openSUSE-SU-2026:11420-1: moderate: python313-asteval-1.0.9-1.1 on GA media
openSUSE-SU-2026:11417-1: moderate: libntpc1-1.2.5-1.1 on GA media
openSUSE-SU-2026:11421-1: moderate: python313-certifi-2026.7.22-1.1 on GA media
openSUSE-SU-2026:11416-1: moderate: gdk-pixbuf-loader-libheif-1.23.1-1.1 on GA media
openSUSE-SU-2026:11415-1: moderate: gio-branding-upstream-2.88.3-1.1 on GA media

SUSE 5738 Published by Philipp Esselbach 0

SUSE published seven security advisories for openSUSE covering dnsdist, libblkid-devel, PackageKit, warewulf4, ImageMagick, keybase-client, and chromium. The chromium update carries an important rating for addressing critical flaws, while the remaining six packages receive moderate severity classifications. Every advisory follows a specific identifier from the openSUSE-SU-2026 series and deploys directly to general availability media.

openSUSE-SU-2026:11411-1: moderate: dnsdist-2.0.7-1.1 on GA media
openSUSE-SU-2026:11408-1: moderate: libblkid-devel-2.42.2-1.1 on GA media
openSUSE-SU-2026:11406-1: moderate: PackageKit-1.3.6-1.1 on GA media
openSUSE-SU-2026:11404-1: moderate: warewulf4-4.7.0-4.1 on GA media
openSUSE-SU-2026:11405-1: moderate: ImageMagick-7.1.2.28-1.1 on GA media
openSUSE-SU-2026:0272-1: Security update for keybase-client
openSUSE-SU-2026:0271-1: important: Security update for chromium

SUSE 5738 Published by Philipp Esselbach 0

SUSE published a wave of security advisories that address critical and moderate vulnerabilities across openSUSE and SLE distributions. The patches protect widely deployed tools including OpenSSH, BIND, Tomcat 11, OpenVPN, Google Guest Agent, and several Python libraries like NLTK and sqlparse. System administrators should apply these updates right away to block known exploits targeting network services, web frameworks, and image rendering components. Installing the fixes now maintains infrastructure stability and shuts down security gaps before threat actors can weaponize them.

openSUSE-SU-2026:21500-1: important: Security update for yq
openSUSE-SU-2026:21489-1: important: Security update for bind
openSUSE-SU-2026:21496-1: moderate: Security update for perl-Mojolicious
openSUSE-SU-2026:21482-1: important: Security update for ignition
openSUSE-SU-2026:21490-1: important: Security update for tomcat11
openSUSE-SU-2026:21485-1: important: Security update for valkey
openSUSE-SU-2026:21488-1: important: Security update for openvpn
openSUSE-SU-2026:21483-1: important: Security update for govulncheck-vulndb
openSUSE-SU-2026:21477-1: important: Security update for openssh
openSUSE-SU-2026:21476-1: important: Security update for google-guest-agent
openSUSE-SU-2026:21479-1: important: Security update for libpng16
openSUSE-SU-2026:11400-1: moderate: tomcat10-10.1.57-1.1 on GA media
openSUSE-SU-2026:11399-1: moderate: tomcat-9.0.120-1.1 on GA media
openSUSE-SU-2026:11403-1: moderate: traefik2-2.11.53-1.1 on GA media
openSUSE-SU-2026:0267-1: moderate: Security update for nano
openSUSE-SU-2026:0268-1: moderate: Security update for kronosnet
SUSE-SU-2026:3434-1: moderate: Security update for python-sqlparse
SUSE-SU-2026:3435-1: moderate: Security update for python-sqlparse
openSUSE-SU-2026:0269-1: important: Security update for python-nltk

SUSE 5738 Published by Philipp Esselbach 0

SUSE issued multiple security advisories, patching vulnerabilities across a wide range of software including Python libraries, Kubernetes components, Apache Tomcat, OpenJDK 25, and graphics tools like ImageMagick. The updates span low to important severity levels, with notable fixes targeting the Xen hypervisor, Apptainer container tool, and cryptographic libraries such as liboqs and s2n to address known exploits. Infrastructure teams managing SUSE Linux Enterprise or openSUSE distributions need to apply these patches immediately to maintain secure operations across their systems. The release also covers routine maintenance for container utilities like Helm and Kubevirt, alongside web frameworks and media encoders, ensuring broader platform hardening across all supported releases.

SUSE-SU-2026:3424-1: low: Security update for python3-pyOpenSSL
SUSE-SU-2026:3425-1: important: Security update for python-urwid
SUSE-SU-2026:3429-1: moderate: Security update for libarchive
SUSE-SU-2026:3430-1: important: Security update for tomcat11
openSUSE-SU-2026:21473-1: important: Security update for apptainer
openSUSE-SU-2026:21471-1: low: Security update for keybase-client
openSUSE-SU-2026:21474-1: moderate: Security update for s2n
openSUSE-SU-2026:21468-1: low: Security update for GraphicsMagick
openSUSE-SU-2026:21467-1: important: Security update for java-25-openjdk
openSUSE-SU-2026:21459-1: important: Security update for python313, python3
openSUSE-SU-2026:11393-1: moderate: logcli-3.7.4-1.1 on GA media
openSUSE-SU-2026:11392-1: moderate: kubevirt1.8-container-disk-1.8.4-3.1 on GA media
openSUSE-SU-2026:11384-1: moderate: ffmpeg-7-7.1.5-1.1 on GA media
openSUSE-SU-2026:11389-1: moderate: kubernetes1.34-apiserver-1.34.10-1.1 on GA media
openSUSE-SU-2026:11391-1: moderate: kubernetes1.36-apiserver-1.36.3-1.1 on GA media
openSUSE-SU-2026:11390-1: moderate: kubernetes1.35-apiserver-1.35.7-1.1 on GA media
openSUSE-SU-2026:11386-1: moderate: helm-4.2.3-4.1 on GA media
openSUSE-SU-2026:11385-1: moderate: freerdp-3.30.0-1.1 on GA media
SUSE-SU-2026:3413-1: moderate: Security update for ImageMagick
SUSE-SU-2026:3415-1: important: Security update for perl-DBI
SUSE-SU-2026:3417-1: important: Security update for apptainer
SUSE-SU-2026:3420-1: important: Security update for liboqs, oqs-provider
SUSE-SU-2026:3422-1: important: Security update for python-sh
SUSE-SU-2026:3423-1: important: Security update for xen

SUSE 5738 Published by Philipp Esselbach 0

SUSE issued a new batch of security patches covering rsyslog, gimp, nsd, GraphicsMagick, webkit2gtk3, python-urllib3, python-ujson, PackageKit, java-17-openjdk, openvpn, and xen. The majority of these advisories carry an important severity rating, while PackageKit and python-urllib3 receive moderate fixes and GraphicsMagick gets a low-severity patch. The openSUSE announcement specifically addresses vulnerabilities in the nsd name server application to block active exploitation attempts.

SUSE-SU-2026:3398-1: important: Security update for rsyslog
SUSE-SU-2026:3399-1: important: Security update for gimp
openSUSE-SU-2026:0265-1: important: Security update for nsd
SUSE-SU-2026:3395-1: low: Security update for GraphicsMagick
SUSE-SU-2026:3396-1: important: Security update for webkit2gtk3
SUSE-SU-2026:3397-1: moderate: Security update for python-urllib3
SUSE-SU-2026:3402-1: important: Security update for python-ujson
SUSE-SU-2026:3404-1: moderate: Security update for PackageKit
SUSE-SU-2026:3406-1: important: Security update for java-17-openjdk
SUSE-SU-2026:3407-1: important: Security update for openvpn
SUSE-SU-2026:3409-1: important: Security update for xen

SUSE 5738 Published by Philipp Esselbach 0

SUSE published a batch of security advisories in 2026 that address vulnerabilities across multiple Linux distributions and enterprise platforms. The updates include critical Live Patch releases for the Linux Kernel targeting SUSE Linux Enterprise versions 15 SP4 through SP7, alongside fixes for widely used software like samba, chromium, nginx, and java-21-openjdk. Several openSUSE community advisories also landed on general availability media, covering packages such as valkey, python313-CherryPy, libssh-config, and ignition.

openSUSE-SU-2026:11381-1: moderate: valkey-9.1.1-1.1 on GA media
openSUSE-SU-2026:11378-1: moderate: python313-CherryPy-18.10.0-4.1 on GA media
openSUSE-SU-2026:11377-1: moderate: libssh-config-0.11.5-1.1 on GA media
openSUSE-SU-2026:11376-1: moderate: ignition-2.26.0-5.1 on GA media
SUSE-SU-2026:3319-1: important: Security update for the Linux Kernel (Live Patch 35 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:3300-1: important: Security update for ignition
SUSE-SU-2026:3316-1: important: Security update for the Linux Kernel RT (Live Patch 2 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:3327-1: important: Security update for yq
SUSE-SU-2026:3329-1: important: Security update for nginx
SUSE-SU-2026:3330-1: moderate: Security update for libssh
SUSE-SU-2026:3332-1: important: Security update for java-21-openjdk
SUSE-SU-2026:3335-1: important: Security update for ImageMagick
SUSE-SU-2026:3338-1: important: Security update for webkit2gtk3
SUSE-SU-2026:3340-1: moderate: Security update for nmap
SUSE-SU-2026:3341-1: important: Security update for glib2
SUSE-SU-2026:3350-1: important: Security update for the Linux Kernel (Live Patch 42 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:3351-1: important: Security update for the Linux Kernel (Live Patch 40 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:3344-1: important: Security update for the Linux Kernel (Live Patch 26 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:3345-1: important: Security update for the Linux Kernel (Live Patch 46 for SUSE Linux Enterprise 15 SP4)
openSUSE-SU-2026:21453-1: important: Security update for chromium
openSUSE-SU-2026:21448-1: important: Security update for agama-web-ui
SUSE-SU-2026:3362-1: important: Security update for samba
SUSE-SU-2026:3364-1: important: Security update for samba
SUSE-SU-2026:3365-1: important: Security update for samba
SUSE-SU-2026:3366-1: important: Security update for samba
SUSE-SU-2026:3368-1: moderate: Security update for sssd
SUSE-SU-2026:3354-1: important: Security update for the Linux Kernel (Live Patch 41 for SUSE Linux Enterprise 15 SP4)
SUSE-SU-2026:3372-1: important: Security update for the Linux Kernel (Live Patch 16 for SUSE Linux Enterprise 15 SP7)

SUSE 5738 Published by Philipp Esselbach 0

SUSE released a batch of security advisories addressing critical vulnerabilities across multiple core system libraries and applications. Patches target glib2, python-Pillow, Chromium, systemd, and the Linux kernel for SUSE Enterprise versions 15 SP5 through SP7 to resolve out-of-bounds memory access issues, denial-of-service flaws, and use-after-free conditions linked to over a dozen CVE identifiers. Most advisories carry an important rating, with kernel live patches addressing high-severity memory corruption and network stack flaws that demand immediate deployment on production infrastructure. Administrators should apply these updates through YaST or zypper patch to restore system integrity across openSUSE Leap releases and SUSE Linux Enterprise deployments without disrupting running workloads for live-patched components.

SUSE-SU-2026:3235-1: important: Security update for glib2
SUSE-SU-2026:3238-1: important: Security update for python-pyasn1
SUSE-SU-2026:3240-1: important: Security update for python-soupsieve
SUSE-SU-2026:3243-1: low: Security update for gpg2
SUSE-SU-2026:3244-1: moderate: Security update for systemd
SUSE-SU-2026:3254-1: important: Security update for the Linux Kernel (Live Patch 25 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:3256-1: important: Security update for the Linux Kernel (Live Patch 14 for SUSE Linux Enterprise 15 SP7)
openSUSE-SU-2026:0263-1: important: Security update for trivy
openSUSE-SU-2026:0264-1: important: Security update for chromium
openSUSE-SU-2026:11366-1: moderate: mcphost-0.34.0-9.1 on GA media
openSUSE-SU-2026:11369-1: moderate: opennlp-1.9.5-2.1 on GA media
openSUSE-SU-2026:11364-1: moderate: libknet-devel-1.33-2.1 on GA media
SUSE-SU-2026:3268-1: important: Security update for python-Pillow
SUSE-SU-2026:3270-1: moderate: Security update for alsa
SUSE-SU-2026:3289-1: important: Security update for the Linux Kernel (Live Patch 29 for SUSE Linux Enterprise 15 SP5)

SUSE 5738 Published by Philipp Esselbach 0

The openSUSE security advisory list covers eight distinct packages with severity ratings ranging from important to moderate. The two important priority patches address vulnerabilities in java-17-openjdk and nginx that require immediate installation. Moderate severity fixes arrive for MozillaFirefox, MozillaThunderbird, java-25-openjdk, ffmpeg-7, libsrt1_5, and python313-urwid on general availability media builds. System administrators should apply these updates through the standard package manager to close the disclosed security flaws across their Linux infrastructure.

openSUSE-SU-2026:21440-1: important: Security update for java-17-openjdk
openSUSE-SU-2026:21439-1: important: Security update for nginx
openSUSE-SU-2026:11358-1: moderate: MozillaFirefox-153.0-1.1 on GA media
openSUSE-SU-2026:11359-1: moderate: MozillaThunderbird-140.13.0-1.1 on GA media
openSUSE-SU-2026:11363-1: moderate: java-25-openjdk-25.0.4.0-1.1 on GA media
openSUSE-SU-2026:11361-1: moderate: ffmpeg-7-7.1.4-5.1 on GA media
openSUSE-SU-2026:11357-1: moderate: libsrt1_5-1.5.6-1.1 on GA media
openSUSE-SU-2026:11356-1: moderate: python313-urwid-4.0.5-1.1 on GA media

SUSE 5738 Published by Philipp Esselbach 0

SUSE distributed eight moderate severity security updates across its openSUSE general availability repositories. The release addresses vulnerabilities in widely used software including chromedriver, python313-astropy, perl modules, proftpd, ffmpeg, and cloud management tools like amazon-ecs-init and google-osconfig-agent. Each package received a targeted version bump designed to patch known flaws without altering system stability.

openSUSE-SU-2026:11346-1: moderate: chromedriver-150.0.7871.181-1.1 on GA media
openSUSE-SU-2026:11353-1: moderate: python313-astropy-8.0.1-1.1 on GA media
openSUSE-SU-2026:11351-1: moderate: perl-XML-Bare-0.53-7.1 on GA media
openSUSE-SU-2026:11350-1: moderate: perl-HTTP-Date-6.80.0-1.1 on GA media
openSUSE-SU-2026:11352-1: moderate: proftpd-1.3.9c-1.1 on GA media
openSUSE-SU-2026:11347-1: moderate: ffmpeg-8-8.1.2-2.1 on GA media
openSUSE-SU-2026:11345-1: moderate: amazon-ecs-init-1.105.0-2.1 on GA media
openSUSE-SU-2026:11349-1: moderate: google-osconfig-agent-20260708.00-3.1 on GA media