SUSE 5668 Published by Philipp Esselbach 0

This collection of openSUSE and SUSE Linux Enterprise security bulletins delivers urgent patches for dozens of widely used software packages across multiple distribution versions. Administrators will find critical and important fixes targeting severe flaws in MariaDB, PostgreSQL, Unbound, Keybase Client, and the X Window System server that could allow remote code execution or privilege escalation. Moderate updates also address memory corruption bugs, header smuggling risks, and denial of service vulnerabilities in tools like Tor, Tomcat, Grafana, and various Python libraries. System owners should apply these recommended zypper patches immediately to close dangerous attack surfaces before threat actors can exploit the disclosed common vulnerability enumerations.

openSUSE-SU-2026:0188-1: moderate: Security update for tor
openSUSE-SU-2026:0191-1: moderate: Security update for perl-HTTP-Tiny
openSUSE-SU-2026:0189-1: moderate: Security update for cacti
openSUSE-SU-2026:20897-1: moderate: Security update for python-pyOpenSSL
openSUSE-SU-2026:20902-1: important: Security update for keybase-client
openSUSE-SU-2026:20895-1: moderate: Security update for libsoup2
openSUSE-SU-2026:20901-1: important: Security update for postgresql18
openSUSE-SU-2026:20896-1: important: Security update for xorg-x11-server
openSUSE-SU-2026:20898-1: important: Security update for frr
openSUSE-SU-2026:10928-1: moderate: vifm-0.14.4-1.1 on GA media
openSUSE-SU-2026:10929-1: moderate: weblate-5.17.1-1.1 on GA media
openSUSE-SU-2026:10927-1: moderate: tomcat11-11.0.22-1.1 on GA media
openSUSE-SU-2026:10920-1: moderate: cacti-1.2.30+git457.e55c2aea-1.1 on GA media
openSUSE-SU-2026:10925-1: moderate: tomcat-9.0.118-1.1 on GA media
openSUSE-SU-2026:10926-1: moderate: tomcat10-10.1.55-1.1 on GA media
openSUSE-SU-2026:10924-1: moderate: perl-Sereal-Decoder-5.6.0-1.1 on GA media
openSUSE-SU-2026:10922-1: moderate: grafana-11.6.14+security01-4.1 on GA media
openSUSE-SU-2026:10923-1: moderate: mcphost-0.34.0-8.1 on GA media
openSUSE-SU-2026:10921-1: moderate: google-guest-agent-20260529.00-1.1 on GA media
SUSE-SU-2026:2281-1: important: Security update for unbound
SUSE-SU-2026:2282-1: critical: Security update for mariadb
SUSE-SU-2026:2280-1: important: Security update for ignition
SUSE-SU-2026:2284-1: critical: Security update for mariadb
SUSE-SU-2026:2285-1: important: Security update for yq
openSUSE-SU-2026:0192-1: critical: Security update for kanidm

SUSE 5668 Published by Philipp Esselbach 0

SUSE rolled out a series of important security advisories to patch multiple high severity flaws across several widely used software packages. The updates address dangerous command injection vulnerabilities in vim and evince that could let attackers execute arbitrary code on affected machines. Meanwhile glibc receives fixes for remote crash triggers and Python Pillow gets patched against resource exhaustion bugs caused by malformed files.

SUSE-SU-2026:2265-1: moderate: Maintenance update for Multi-Linux Manager 4.3 Release Notes Release Notes
SUSE-SU-2026:2231-1: important: Security update for glibc
SUSE-SU-2026:2234-1: important: Security update for python-Pillow
SUSE-SU-2026:2235-1: important: Security update for evince
SUSE-SU-2026:2232-1: important: Security update for evince
SUSE-SU-2026:2236-1: important: Security update for vim

SUSE 5668 Published by Philipp Esselbach 0

SUSE has rolled out a fresh batch of security patches that address multiple vulnerabilities across both openSUSE and enterprise distributions. Administrators will find critical fixes for widely used tools like cloudflared, apptainer, memcached, and several Python libraries alongside moderate updates for services such as Tor and Apache SSHD. The advisory list highlights a mix of important and moderate risk levels to help system owners prioritize which packages require immediate attention on their servers. IT teams should verify their current software versions against these release notes and apply the corresponding updates through standard package managers before attackers can exploit the known flaws.

openSUSE-SU-2026:20893-1: important: Security update for cloudflared
openSUSE-SU-2026:20888-1: important: Security update for apptainer
openSUSE-SU-2026:20887-1: important: Security update for python-PyMuPDF
openSUSE-SU-2026:20892-1: important: Security update for yq
openSUSE-SU-2026:20885-1: moderate: Security update for python-Flask
openSUSE-SU-2026:20886-1: moderate: Security update for python-CairoSVG
openSUSE-SU-2026:20877-1: important: Security update for rsync
openSUSE-SU-2026:20884-1: important: Security update for memcached
openSUSE-SU-2026:20883-1: important: Security update for busybox
openSUSE-SU-2026:20878-1: important: Security update for sdbootutil
openSUSE-SU-2026:20880-1: moderate: Security update for python-pip
openSUSE-SU-2026:20871-1: important: Security update for python-urllib3_1
openSUSE-SU-2026:20875-1: important: Security update for ovmf
openSUSE-SU-2026:20860-1: important: Security update for helm
openSUSE-SU-2026:20891-1: moderate: Security update for vorbis-tools
openSUSE-SU-2026:20861-1: important: Security update for python-urllib3
openSUSE-SU-2026:20863-1: important: Security update for tree-sitter
openSUSE-SU-2026:20889-1: moderate: Security update for tor
openSUSE-SU-2026:20864-1: moderate: Security update for evolution-data-server
openSUSE-SU-2026:10917-1: moderate: libsoup-2_4-1-2.74.3-21.1 on GA media
openSUSE-SU-2026:10916-1: moderate: libgphoto2-6-2.5.34-1.1 on GA media
openSUSE-SU-2026:10915-1: moderate: bind-9.20.23-2.1 on GA media
openSUSE-SU-2026:10919-1: moderate: apache-sshd-2.18.0-1.1 on GA media
openSUSE-SU-2026:10913-1: moderate: golang-github-v2fly-v2ray-core-5.51.2-1.1 on GA media
openSUSE-SU-2026:10911-1: moderate: libsoup-3_0-0-3.6.6-5.1 on GA media
openSUSE-SU-2026:10912-1: moderate: restic-0.18.1-3.1 on GA media
openSUSE-SU-2026:10910-1: moderate: libjxl-devel-0.11.2-2.1 on GA media
openSUSE-SU-2026:10914-1: moderate: atril-1.28.4-1.1 on GA media
SUSE-SU-2026:2252-1: important: Security update for salt
SUSE-SU-2026:2256-1: important: Security update for salt
SUSE-SU-2026:2259-1: moderate: Security update for python3-pyOpenSSL
SUSE-SU-2026:2261-1: moderate: Security update for python-pyOpenSSL

SUSE 5668 Published by Philipp Esselbach 0

SUSE has released a major batch of important and critical security patches that target the Linux kernel, HPLIP printer drivers, Xorg server components, and several Python libraries across multiple enterprise distributions. Administrators should prioritize these updates immediately since they address dozens of high-severity flaws including remote code execution risks in HP software, memory corruption bugs in graphics servers, and critical kernel vulnerabilities that could allow local privilege escalation. The fixes span a wide range of supported environments from openSUSE Leap 15.4 through 16.0 to SUSE Linux Enterprise Server versions 15 SP4 up to SP7, with most packages requiring a straightforward zypper patch command or YaST update tool.

SUSE-SU-2026:2214-1: important: Security update for the Linux Kernel (Live Patch 11 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:2212-1: important: Security update for the Linux Kernel (Live Patch 39 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:2215-1: important: Security update for the Linux Kernel
SUSE-SU-2026:2216-1: important: Security update for the Linux Kernel
SUSE-SU-2026:2218-1: important: Security update for python3-Twisted
SUSE-SU-2026:2219-1: important: Security update for python-Twisted
openSUSE-SU-2026:0182-1: important: Security update for libjxl
SUSE-SU-2026:2222-1: critical: Security update for hplip
SUSE-SU-2026:2223-1: important: Security update for xorg-x11-server
SUSE-SU-2026:2224-1: important: Security update for xorg-x11-server
SUSE-SU-2026:2226-1: important: Security update for xorg-x11-server
openSUSE-SU-2026:20857-1: important: Security update for mapserver
openSUSE-SU-2026:20855-1: important: Security update for ffmpeg-4
openSUSE-SU-2026:20856-1: important: Security update for shadowsocks-v2ray-plugin
openSUSE-SU-2026:20854-1: important: Security update for rqlite
openSUSE-SU-2026:20858-1: critical: Security update for hplip
openSUSE-SU-2026:10908-1: moderate: cloudflared-2026.5.2-1.1 on GA media
openSUSE-SU-2026:10904-1: moderate: vorbis-tools-1.4.3-2.1 on GA media
openSUSE-SU-2026:10909-1: moderate: kubelogin-0.2.18-1.1 on GA media
openSUSE-SU-2026:10905-1: moderate: LibVNCServer-devel-0.9.15-3.1 on GA media
openSUSE-SU-2026:10903-1: moderate: libunbound8-1.25.1-1.1 on GA media

SUSE 5668 Published by Philipp Esselbach 0

SUSE rolled out a comprehensive suite of critical security patches across their enterprise distributions. These updates tackle dozens of high severity flaws that could enable remote code execution or privilege escalation on vulnerable systems. Administrators must prioritize the kernel live patches for SUSE Linux Enterprise distributions first, then move on to patching widely used utilities like Chromium, busybox, and strongSwan before attackers can exploit them.

SUSE-SU-2026:2149-1: important: Security update for the Linux Kernel (Live Patch 30 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:2141-1: important: Security update for the Linux Kernel (Live Patch 45 for SUSE Linux Enterprise 15 SP4)
SUSE-SU-2026:2159-1: important: Security update for the Linux Kernel (Live Patch 36 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:2172-1: important: Security update for the Linux Kernel (Live Patch 21 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:2158-1: important: Security update for the Linux Kernel (Live Patch 49 for SUSE Linux Enterprise 15 SP4)
SUSE-SU-2026:2176-1: important: Security update for the Linux Kernel (Live Patch 2 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:2202-1: important: Security update for the Linux Kernel
SUSE-SU-2026:2200-1: important: Security update for the Linux Kernel (Live Patch 22 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:2204-1: important: Security update for busybox
SUSE-SU-2026:2199-1: important: Security update for the Linux Kernel (Live Patch 17 for SUSE Linux Enterprise 15 SP6)
openSUSE-SU-2026:20852-1: important: Security update for roundcubemail
openSUSE-SU-2026:20849-1: important: Security update for chromium
openSUSE-SU-2026:20842-1: important: Security update for openjpeg2
openSUSE-SU-2026:20846-1: important: Security update for python-python-multipart
openSUSE-SU-2026:20851-1: important: Security update for putty
openSUSE-SU-2026:20847-1: important: Security update for postgresql-jdbc
openSUSE-SU-2026:20841-1: important: Security update for apache-commons-lang3, apache-commons-text, apache-commons-configuration2, apache-commons-cli, apache-commons-io, apache-commons-codec
openSUSE-SU-2026:20845-1: important: Security update for libsoup
openSUSE-SU-2026:10896-1: moderate: libzypp-17.38.10-1.1 on GA media
openSUSE-SU-2026:10895-1: moderate: libsolv-demo-0.7.38-1.1 on GA media
openSUSE-SU-2026:10890-1: moderate: ffmpeg-8-8.1.1-3.1 on GA media
openSUSE-SU-2026:10892-1: moderate: ignition-2.26.0-4.1 on GA media
openSUSE-SU-2026:10893-1: moderate: java-26-openjdk-26.0.1.0-1.1 on GA media
openSUSE-SU-2026:10891-1: moderate: gsasl-2.2.3-1.1 on GA media
SUSE-SU-2026:2195-1: important: Security update for the Linux Kernel
SUSE-SU-2026:2197-1: important: Security update for strongswan
SUSE-SU-2026:2191-1: important: Security update for the Linux Kernel (Live Patch 51 for SUSE Linux Enterprise 15 SP4)
SUSE-SU-2026:2207-1: important: Security update for the Linux Kernel (Live Patch 13 for SUSE Linux Enterprise 15 SP7)
openSUSE-SU-2026:0181-1: critical: Security update for re

SUSE 5668 Published by Philipp Esselbach 0

openSUSE has rolled out a batch of moderate security patches for several widely used packages across Tumbleweed and SLE backports environments. Administrators need to apply these updates promptly because flaws in apptainer, memcached, Python Authlib, live555 media libraries, and Perl YAML Syck could expose systems to remote exploitation. The fixes target multiple CVE identifiers that previously allowed attackers to trigger memory corruption or execute unauthorized commands through unpatched network services. You can deploy these corrections immediately using standard zypper patch routines or the YaST management console without interrupting daily operations.

openSUSE-SU-2026:10887-1: moderate: apptainer-1.4.5-6.1 on GA media
openSUSE-SU-2026:10883-1: moderate: python311-Authlib-1.7.2-1.1 on GA media
openSUSE-SU-2026:10882-1: moderate: memcached-1.6.42-1.1 on GA media
openSUSE-SU-2026:10881-1: moderate: libBasicUsageEnvironment2-2026.04.22-1.1 on GA media
openSUSE-SU-2026:0180-1: moderate: Security update for perl-YAML-Syck

SUSE 5668 Published by Philipp Esselbach 0

SUSE rolled out a massive wave of security advisories to patch dozens of critical flaws across their Linux distributions. The kernel update dominates this release by fixing more than two hundred distinct issues that span memory corruption bugs, network stack race conditions, and hardware virtualization gaps. Enterprise applications including Samba, GnuTLS, PostgreSQL, and Vim also received urgent corrections for remote code execution risks alongside several authentication bypass vulnerabilities. System administrators need to deploy these patches right away using standard zypper commands or the YaST interface before attackers can exploit the unmitigated weaknesses in live environments.

SUSE-SU-2026:2105-1: moderate: Security update for xdg-desktop-portal
SUSE-SU-2026:2108-1: critical: Security update for samba
SUSE-SU-2026:2107-1: important: Security update for podman
SUSE-SU-2026:2115-1: important: Security update for gnutls
SUSE-SU-2026:2116-1: moderate: Security update for csync2
SUSE-SU-2026:2119-1: important: Security update for python-urllib3
SUSE-SU-2026:2121-1: moderate: Security update for frr
SUSE-SU-2026:2117-1: important: Security update for postgresql14
openSUSE-SU-2026:0179-1: important: Security update for chromium
openSUSE-SU-2026:20827-1: important: Security update for python-mistune
openSUSE-SU-2026:20826-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:20839-1: important: Security update for python-pytest-html
openSUSE-SU-2026:20833-1: important: Security update for trivy
openSUSE-SU-2026:20831-1: important: Security update for python-Pillow
openSUSE-SU-2026:20834-1: important: Security update for apptainer
openSUSE-SU-2026:20828-1: important: Security update for vim
openSUSE-SU-2026:20838-1: important: Security update for hauler
openSUSE-SU-2026:20821-1: moderate: Security update for localsearch
openSUSE-SU-2026:10874-1: moderate: bind-9.20.23-1.1 on GA media
openSUSE-SU-2026:10878-1: moderate: gdk-pixbuf-loader-libheif-1.22.2-1.1 on GA media
openSUSE-SU-2026:10879-1: moderate: libredwg-devel-0.13.4.8200-1.1 on GA media
openSUSE-SU-2026:10876-1: moderate: helm-4.2.0-3.1 on GA media
openSUSE-SU-2026:10875-1: moderate: hauler-1.4.3-4.1 on GA media
openSUSE-SU-2026:10873-1: moderate: azure-storage-azcopy-10.32.4-1.1 on GA media
openSUSE-SU-2026:10872-1: moderate: amazon-ssm-agent-3.3.4515.0-1.1 on GA media
openSUSE-SU-2026:10877-1: moderate: helm3-3.21.0-2.1 on GA media
openSUSE-SU-2026:10871-1: moderate: amazon-ecs-init-1.103.2-1.1 on GA media

SUSE 5668 Published by Philipp Esselbach 0

SUSE has rolled out a significant wave of critical security advisories covering essential packages like Apache2, Xen, Firefox, and Trivy across multiple openSUSE releases. Attackers could potentially exploit these flaws to bypass authentication controls, trigger remote code execution, or crash services through malformed network requests and memory corruption bugs. IT teams should apply the recommended zypper patches without delay because unpatched endpoints remain highly vulnerable to automated scanning tools and targeted intrusion attempts. You will need to restart affected systems after installation to fully activate the security fixes and restore normal operational stability.

SUSE-SU-2026:2102-1: important: Security update for xen
SUSE-SU-2026:2103-1: important: Security update for apache2
openSUSE-SU-2026:20816-1: important: Security update for alloy
openSUSE-SU-2026:20815-1: important: Security update for google-osconfig-agent
openSUSE-SU-2026:20813-1: important: Security update for xz
openSUSE-SU-2026:20814-1: important: Security update for docker-stable
openSUSE-SU-2026:20812-1: important: Security update for cups
openSUSE-SU-2026:20810-1: important: Security update for apache2
openSUSE-SU-2026:20809-1: important: Security update for trivy
openSUSE-SU-2026:20811-1: important: Security update for bubblewrap
openSUSE-SU-2026:20803-1: moderate: Security update for patterns-glibc-hwcaps
openSUSE-SU-2026:20798-1: important: Security update for trivy
openSUSE-SU-2026:10865-1: moderate: beets-2.11.0-1.1 on GA media
openSUSE-SU-2026:10863-1: moderate: MozillaFirefox-151.0.1-1.1 on GA media
openSUSE-SU-2026:10867-1: moderate: ffmpeg-7-7.1.4-2.1 on GA media
openSUSE-SU-2026:10864-1: moderate: MozillaThunderbird-140.11.1-1.1 on GA media
openSUSE-SU-2026:10866-1: moderate: ffmpeg-4-4.4.7-2.1 on GA media

SUSE 5668 Published by Philipp Esselbach 0

SUSE 5668 Published by Philipp Esselbach 0

SUSE rolled out a series of critical and important security patches to address several high-risk vulnerabilities across its Linux offerings. The samba updates stand out as particularly urgent since they resolve unauthenticated remote code execution flaws alongside network crashes that could easily disrupt directory services. Developers working with Python or Go will also get essential corrections for a urllib3 header forwarding bug and over a dozen separate security gaps in the OpenSSL linked builds.

SUSE-SU-2026:2067-1: important: Security update for python-urllib3_1
SUSE-SU-2026:2071-1: critical: Security update for samba
SUSE-SU-2026:2072-1: critical: Security update for samba
SUSE-SU-2026:2074-1: critical: Security update for samba
SUSE-SU-2026:2078-1: important: Security update for go1.26-openssl
SUSE-SU-2026:2079-1: important: Security update for go1.25-openssl

SUSE 5668 Published by Philipp Esselbach 0

SUSE has rolled out a fresh batch of security patches for openSUSE Leap, Tumbleweed, and several SLE releases to address dozens of newly discovered flaws. These updates target essential tools like Mozilla Firefox, nginx, Python, and busybox by closing dangerous gaps that could lead to remote code execution or system crashes. System administrators need to run zypper patch or use YaST right away since many of the fixed issues carry high severity ratings and involve tricky memory corruption bugs. Keeping these packages current remains a straightforward way to block attackers from exploiting known weaknesses before they cause real damage.

openSUSE-SU-2026:20792-1: moderate: Security update for perl-HTTP-Tiny
openSUSE-SU-2026:20788-1: important: Security update for mcphost
openSUSE-SU-2026:20789-1: important: Security update for MozillaFirefox
openSUSE-SU-2026:20781-1: important: Security update for assimp
openSUSE-SU-2026:20784-1: important: Security update for nginx
openSUSE-SU-2026:20786-1: moderate: Security update for GraphicsMagick
openSUSE-SU-2026:20778-1: important: Security update for gnutls
openSUSE-SU-2026:20783-1: moderate: Security update for leancrypto
openSUSE-SU-2026:20787-1: important: Security update for libsndfile
openSUSE-SU-2026:10854-1: moderate: perl-XML-LibXML-2.0212-1.1 on GA media
openSUSE-SU-2026:10856-1: moderate: rclone-1.74.2-1.1 on GA media
openSUSE-SU-2026:10857-1: moderate: rsync-3.4.3-1.1 on GA media
openSUSE-SU-2026:10851-1: moderate: nano-9.0-2.1 on GA media
openSUSE-SU-2026:10849-1: moderate: azure-storage-azcopy-10.32.2-3.1 on GA media
openSUSE-SU-2026:10853-1: moderate: libppsdocument4_0-6-50.1-2.1 on GA media
openSUSE-SU-2026:10848-1: moderate: amazon-ecs-init-1.103.0-2.1 on GA media
openSUSE-SU-2026:10852-1: moderate: nginx-1.31.1-1.1 on GA media
openSUSE-SU-2026:10855-1: moderate: python311-ocrmypdf-17.4.2-1.1 on GA media
SUSE-SU-2026:2053-1: important: Security update for busybox
SUSE-SU-2026:2050-1: important: Security update for nginx
SUSE-SU-2026:2051-1: important: Security update for xz
SUSE-SU-2026:2055-1: important: Security update for python312

SUSE 5668 Published by Philipp Esselbach 0

OpenSUSE recently published a comprehensive set of moderate security patches aimed at hardening the Tumbleweed distribution against several newly discovered threats. These updates cover six distinct packages such as mcphost, apptainer, hauler, perl-YAML-Syck, rqlite, and jfrog-cli. Administrators will find that each release resolves between one and six separate flaws capable of causing system instability or unauthorized data exposure. Running your standard package manager to apply these fixes immediately remains the best way to protect your infrastructure from potential exploitation.

openSUSE-SU-2026:10845-1: moderate: mcphost-0.34.0-5.1 on GA media
openSUSE-SU-2026:10846-1: moderate: perl-YAML-Syck-1.450.0-4.1 on GA media
openSUSE-SU-2026:10842-1: moderate: apptainer-1.4.5-5.1 on GA media
openSUSE-SU-2026:10843-1: moderate: hauler-1.4.3-3.1 on GA media
openSUSE-SU-2026:10847-1: moderate: rqlite-10.1.0-1.1 on GA media
openSUSE-SU-2026:10844-1: moderate: jfrog-cli-2.104.1-1.1 on GA media

SUSE 5668 Published by Philipp Esselbach 0

openSUSE has released two distinct security updates for its Linux distributions. The first patch tackles a critical chromium issue by resolving ninety-five vulnerabilities and one bug on openSUSE Leap 16.0. A second moderate update addresses a single flaw within the python311-impacket package for openSUSE Tumbleweed users. System administrators can deploy these fixes quickly using standard installation utilities like YaST or zypper commands.

openSUSE-SU-2026:20775-1: critical: Security update for chromium
openSUSE-SU-2026:10837-1: moderate: python311-impacket-0.13.1-1.1 on GA media

SUSE 5668 Published by Philipp Esselbach 0

SUSE has released multiple security updates across its Linux distributions to patch critical flaws in several popular applications. The highest priority fix addresses sixteen vulnerabilities in Chromium, including memory corruption issues and weak policy enforcement that could lead to unauthorized access. You should also install important patches for Cockpit to prevent remote command execution, while Rekor and Rootlesskit receive necessary rebuilds tied to recent Go security improvements. Finally, openSUSE Tumbleweed users can apply moderate updates to harden PostgreSQL components and the Oracle Cloud Infrastructure CLI against various exploits.

openSUSE-SU-2026:0175-1: critical: Security update for chromium
SUSE-SU-2026:2043-1: important: Security update for rekor
SUSE-SU-2026:2044-1: important: Security update for rootlesskit
openSUSE-SU-2026:10828-1: moderate: libecpg6-18.4-1.1 on GA media
openSUSE-SU-2026:10827-1: moderate: oci-cli-3.83.0-1.1 on GA media
openSUSE-SU-2026:0176-1: important: Security update for cockpit

SUSE 5668 Published by Philipp Esselbach 0

SUSE has released a series of critical security patches for several widely used software packages across its Linux distributions. These updates address numerous vulnerabilities in cpp-httplib, rsync, php8, mozjs115, dnsmasq, and GraphicsMagick that could otherwise allow attackers to execute arbitrary code or crash systems. Administrators should apply the recommended zypper patches immediately to prevent potential exploits like remote code execution and denial of service attacks. The fixes are available for various openSUSE Leap versions as well as SUSE Linux Enterprise Server releases.

openSUSE-SU-2026:0174-1: important: Security update for cpp-httplib
SUSE-SU-2026:2038-1: important: Security update for rsync
SUSE-SU-2026:2037-1: critical: Security update for php8
openSUSE-SU-2026:20769-1: important: Security update for mozjs115
openSUSE-SU-2026:10821-1: moderate: dnsmasq-2.92rel2-1.1 on GA media
openSUSE-SU-2026:10817-1: moderate: GraphicsMagick-1.3.46-7.1 on GA media

SUSE 5668 Published by Philipp Esselbach 0

SUSE 5668 Published by Philipp Esselbach 0

SUSE has released a broad set of security advisories targeting multiple software packages across its enterprise and community distributions. These updates address dozens of vulnerabilities that could allow attackers to execute remote code, cause system crashes, or leak sensitive information through flaws in components like the Linux kernel, PHP, PostgreSQL, and dnsmasq. Administrators should prioritize applying these patches immediately since several issues carry critical ratings and directly impact network services and application stability. You can deploy the fixes using standard zypper commands or the YaST online update tool on affected openSUSE Leap and SUSE Linux Enterprise systems.

SUSE-SU-2026:1997-1: important: Security update for the Linux Kernel (Live Patch 31 for SUSE Linux Enterprise 15 SP5)
openSUSE-SU-2026:20762-1: important: Security update for go1.26
openSUSE-SU-2026:20763-1: important: Security update for go1.25
openSUSE-SU-2026:20764-1: important: Security update for glibc
openSUSE-SU-2026:20759-1: moderate: Security update for emacs
openSUSE-SU-2026:20753-1: important: Security update for agama
openSUSE-SU-2026:20761-1: important: Security update for google-guest-agent
openSUSE-SU-2026:20758-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:20757-1: important: Security update for openssh
openSUSE-SU-2026:20750-1: moderate: Security update for ibus-rime, librime
openSUSE-SU-2026:20755-1: important: Security update for openexr
openSUSE-SU-2026:20754-1: important: Security update for rsync
openSUSE-SU-2026:20752-1: important: Security update for alloy
openSUSE-SU-2026:20749-1: important: Security update for tree-sitter
openSUSE-SU-2026:20745-1: critical: Security update for php8
openSUSE-SU-2026:20747-1: important: Security update for ImageMagick
openSUSE-SU-2026:20743-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:20742-1: moderate: Security update for ongres-scram, ongres-stringprep, plexus-testing, maven, maven-doxia, mojo-parent, sisu
openSUSE-SU-2026:20737-1: moderate: Security update for python-lxml
openSUSE-SU-2026:20748-1: important: Security update for dnsmasq
openSUSE-SU-2026:20741-1: moderate: Security update for MozillaFirefox
openSUSE-SU-2026:10805-1: moderate: perl-HTTP-Tiny-0.094-1.1 on GA media
openSUSE-SU-2026:10808-1: moderate: postgresql16-16.14-1.1 on GA media
openSUSE-SU-2026:10806-1: moderate: postgresql14-14.23-1.1 on GA media
openSUSE-SU-2026:10810-1: moderate: traefik-3.6.17-1.1 on GA media
openSUSE-SU-2026:10804-1: moderate: openssh-10.3p1-4.1 on GA media
SUSE-SU-2026:1999-1: important: Security update for postgresql15
SUSE-SU-2026:2003-1: moderate: Security update for GraphicsMagick
SUSE-SU-2026:2001-1: important: Security update for postgresql16
SUSE-SU-2026:2004-1: important: Security update for python-Pillow
SUSE-SU-2026:2008-1: important: Security update for haveged
SUSE-SU-2026:2010-1: important: Security update for erlang26
SUSE-SU-2026:2009-1: important: Security update for haveged
openSUSE-SU-2026:0171-1: important: Security update for git-bug
openSUSE-SU-2026:0170-1: important: Security update for perl-CryptX

SUSE 5668 Published by Philipp Esselbach 0

SUSE has released a batch of important security advisories addressing numerous vulnerabilities across its Linux distributions and key software packages. These updates target critical issues in widely used tools like the Linux kernel, PHP, PostgreSQL, nginx, and curl, with several flaws posing risks of remote code execution or privilege escalation. Administrators managing openSUSE Leap and SUSE Linux Enterprise systems should apply the recommended patches immediately through standard package management utilities to mitigate these threats. The advisories also include live kernel patches that allow security fixes without requiring a full system reboot for supported environments.

SUSE-SU-2026:1967-1: important: Security update for tiff
SUSE-SU-2026:1970-1: important: Security update for php-composer2
SUSE-SU-2026:1960-1: important: Security update for the Linux Kernel (Live Patch 9 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:1876-1: important: Security update for openssh
SUSE-SU-2026:1885-1: important: Security update for the Linux Kernel (Live Patch 72 for SUSE Linux Enterprise 12 SP5)
SUSE-SU-2026:1878-1: important: Security update for the Linux Kernel (Live Patch 10 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1899-1: important: Security update for the Linux Kernel
SUSE-SU-2026:1875-1: important: Security update for the Linux Kernel (Live Patch 28 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:1877-1: important: Security update for the Linux Kernel (Live Patch 35 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:1880-1: important: Security update for the Linux Kernel (Live Patch 67 for SUSE Linux Enterprise 12 SP5)
SUSE-SU-2026:1896-1: important: Security update for the Linux Kernel (Live Patch 5 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:1908-1: important: Security update for the Linux Kernel
SUSE-SU-2026:1905-1: important: Security update for the Linux Kernel (Live Patch 10 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:1909-1: important: Security update for the Linux Kernel
SUSE-SU-2026:1907-1: important: Security update for the Linux Kernel
SUSE-SU-2026:1906-1: important: Security update for the Linux Kernel (Live Patch 40 for SUSE Linux Enterprise 15 SP4)
openSUSE-SU-2026:10796-1: moderate: nginx-1.31.0-1.1 on GA media
openSUSE-SU-2026:10798-1: moderate: python311-urllib3-2.7.0-1.1 on GA media
openSUSE-SU-2026:10800-1: moderate: xen-4.21.1_06-1.1 on GA media
openSUSE-SU-2026:0169-1: important: Security update for cacti
SUSE-SU-2026:1939-1: important: Security update for PackageKit
SUSE-SU-2026:1934-1: important: Security update for dnsmasq
SUSE-SU-2026:1931-1: important: Security update for podman
SUSE-SU-2026:1933-1: moderate: Security update for xen
SUSE-SU-2026:1940-1: important: Security update for curl
SUSE-SU-2026:1943-1: important: Security update for postgresql17
SUSE-SU-2026:1941-1: moderate: Security update for sed
SUSE-SU-2026:1948-1: important: Security update for cups-filters
SUSE-SU-2026:1947-1: important: Security update for python310
SUSE-SU-2026:1944-1: important: Security update for postgresql18
SUSE-SU-2026:1950-1: important: Security update for valkey
SUSE-SU-2026:1956-1: important: Security update for mozjs78
SUSE-SU-2026:1953-1: important: Security update for nginx
SUSE-SU-2026:1917-1: important: Security update for the Linux Kernel (Live Patch 74 for SUSE Linux Enterprise 12 SP5)
SUSE-SU-2026:1994-1: important: Security update for the Linux Kernel (Live Patch 69 for SUSE Linux Enterprise 12 SP5)
SUSE-SU-2026:1980-1: important: Security update for cloud-init
SUSE-SU-2026:1957-1: critical: Security update for php8
SUSE-SU-2026:1962-1: moderate: Security update for util-linux
SUSE-SU-2026:1961-1: important: Security update for python-python-multipart
SUSE-SU-2026:1964-1: important: Security update for rmt-server

SUSE 5668 Published by Philipp Esselbach 0

openSUSE Tumbleweed users have several new security patches available for their systems. These updates target critical packages including the Linux kernel, Apache HTTP Server, multiple Java OpenJ9 versions, ChromeDriver, Expat, and Apache Commons Configuration2. Each release resolves dozens of distinct vulnerabilities that carry moderate overall ratings alongside high individual CVSS scores. Administrators should install these updates promptly to protect their environments from potential exploitation.

openSUSE-SU-2026:10793-1: moderate: kernel-devel-7.0.7-1.1 on GA media
openSUSE-SU-2026:10784-1: moderate: apache-commons-configuration2-2.15.0-1.1 on GA media
openSUSE-SU-2026:10792-1: moderate: java-25-openj9-25.0.3.0-2.1 on GA media
openSUSE-SU-2026:10789-1: moderate: java-17-openj9-17.0.19.0-2.1 on GA media
openSUSE-SU-2026:10788-1: moderate: java-11-openj9-11.0.31.0-2.1 on GA media
openSUSE-SU-2026:10785-1: moderate: apache2-2.4.67-1.1 on GA media
openSUSE-SU-2026:10790-1: moderate: java-1_8_0-openj9-1.8.0.492-2.1 on GA media
openSUSE-SU-2026:10786-1: moderate: chromedriver-148.0.7778.167-2.1 on GA media
openSUSE-SU-2026:10787-1: moderate: expat-2.8.1-1.1 on GA media
openSUSE-SU-2026:10791-1: moderate: java-21-openj9-21.0.11.0-2.1 on GA media

SUSE 5668 Published by Philipp Esselbach 0

openSUSE Tumbleweed users need to install three recent security patches that address moderate vulnerabilities across several key packages. The first update fixes a single flaw in the perl-libwww-perl library, while another patch resolves issues within the entire keylime-config suite of tools. A third release tackles four separate weaknesses in the perl-Net-CIDR-Lite module that could potentially allow unauthorized data access or system manipulation.

openSUSE-SU-2026:10781-1: moderate: perl-libwww-perl-6.830.0-1.1 on GA media
openSUSE-SU-2026:10779-1: moderate: keylime-config-7.14.2-1.1 on GA media
openSUSE-SU-2026:10780-1: moderate: perl-Net-CIDR-Lite-0.240.0-1.1 on GA media