SUSE 5738 Published by Philipp Esselbach 0

Two critical security updates have been issued by openSUSE to patch significant vulnerabilities in Chromium across their SLE-15 backports. These specific patches fix twenty-six distinct issues that include memory access flaws in WebGL and WebRTC as well as integer overflows found within the ANGLE component.

openSUSE-SU-2026:0093-1: important: Security update for chromium
openSUSE-SU-2026:0094-1: important: Security update for chromium

SUSE 5738 Published by Philipp Esselbach 0

openSUSE has released two moderate security updates for Python packages on Tumbleweed GA media to address recent vulnerabilities. Users running python311 must upgrade to version 3.11.15 to resolve the high severity issue identified as CVE-2026-1299. Meanwhile, a different advisory targets python313 users who must install version 3.13.12 to patch the vulnerability known as CVE-2026-2297.

openSUSE-SU-2026:10398-1: moderate: python311-3.11.15-3.1 on GA media
openSUSE-SU-2026:10394-1: moderate: python313-3.13.12-2.1 on GA media

SUSE 5738 Published by Philipp Esselbach 0

Several security updates have been released for openSUSE Tumbleweed, Leap, and SUSE Linux Enterprise distributions to patch known vulnerabilities. GraphicsMagick receives an important update addressing buffer overflows while moderate fixes cover packages like Python libraries and the Mumble voice chat tool.

openSUSE-SU-2026:10393-1: moderate: python311-pyasn1-0.6.3-1.1 on GA media
openSUSE-SU-2026:10391-1: moderate: GraphicsMagick-1.3.46-3.1 on GA media
openSUSE-SU-2026:10388-1: moderate: mumble-1.5.857-2.1 on GA media
openSUSE-SU-2026:10390-1: moderate: tempo-cli-2.10.3-1.1 on GA media
SUSE-SU-2026:0935-1: low: Security update for php-composer2
SUSE-SU-2026:0938-1: important: Security update for GraphicsMagick

SUSE 5738 Published by Philipp Esselbach 0

Security patches have been released for OpenSUSE Tumbleweed and various SUSE Linux Enterprise products including important updates for freerdp, moderate fixes for cargo, and others to resolve vulnerabilities found in essential packages across the board. Critical flaws like heap-use-after-free errors in freerdp and certificate verification bypasses in tomcat have been targeted for repair under important severity ratings within the ecosystem. While the chromedriver update resolved over 31 distinct CVEs, other tools such as coturn and jq received patches to mitigate lower risk exposure across different product lines.

openSUSE-SU-2026:10383-1: moderate: cargo1.93-1.93.0-3.1 on GA media
openSUSE-SU-2026:10382-1: moderate: cargo1.92-1.92.0-2.1 on GA media
openSUSE-SU-2026:10380-1: moderate: python311-uv-0.10.11-1.1 on GA media
openSUSE-SU-2026:10376-1: moderate: chromedriver-146.0.7680.80-1.1 on GA media
openSUSE-SU-2026:10377-1: moderate: python312-3.12.13-2.1 on GA media
openSUSE-SU-2026:10375-1: moderate: coturn-4.9.0-1.1 on GA media
SUSE-SU-2026:0933-1: important: Security update for freerdp
SUSE-SU-2026:0931-1: low: Security update for jq
SUSE-SU-2026:0932-1: important: Security update for tomcat

SUSE 5738 Published by Philipp Esselbach 0

SUSE distributed numerous important advisories targeting critical vulnerabilities within their Linux ecosystem. Some high priority patches address severe flaws like chromium security issues that could impact over thirty distinct CVEs, while others fix moderate risks in development tools such as vim and curl.

SUSE-SU-2026:0911-1: important: Security update for curl
SUSE-SU-2026:0910-1: moderate: Security update for vim
openSUSE-SU-2026:0088-1: critical: Security update for krb5-appl
openSUSE-SU-2026:0086-1: important: Security update for python-simpleeval
SUSE-SU-2026:0917-1: important: Security update for kubernetes
SUSE-SU-2026:0913-1: important: Security update for 389-ds
SUSE-SU-2026:0914-1: important: Security update for 389-ds
SUSE-SU-2026:0928-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:20373-1: moderate: Security update for python-Django
openSUSE-SU-2026:20372-1: critical: Security update for chromium
openSUSE-SU-2026:20375-1: moderate: Security update for python-PyPDF2
openSUSE-SU-2026:20374-1: critical: Security update for krb5-appl
openSUSE-SU-2026:20366-1: important: Security update for docker-stable
openSUSE-SU-2026:10367-1: moderate: ruby4.0-rubygem-web-console-4.2.1-1.9 on GA media
openSUSE-SU-2026:10371-1: moderate: curl-8.19.0-1.1 on GA media
openSUSE-SU-2026:10369-1: moderate: skaffold-2.18.0-1.1 on GA media
openSUSE-SU-2026:10368-1: moderate: ruby4.0-rubygem-websocket-extensions-0.1.5-1.24 on GA media
openSUSE-SU-2026:10364-1: moderate: ruby4.0-rubygem-sprockets-4.2.1-1.9 on GA media
openSUSE-SU-2026:10366-1: moderate: ruby4.0-rubygem-thor-1.4.0-1.3 on GA media
openSUSE-SU-2026:10370-1: moderate: smb4k-4.0.5-1.2 on GA media
openSUSE-SU-2026:10365-1: moderate: ruby4.0-rubygem-sprockets-3.7-3.7.5-1.5 on GA media
SUSE-SU-2026:0923-1: important: Security update for gvfs

SUSE 5738 Published by Philipp Esselbach 0

SUSE 5738 Published by Philipp Esselbach 0

SUSE 5738 Published by Philipp Esselbach 0

OpenSUSE has issued multiple moderate security advisories for its Tumbleweed distribution. Several ruby4.0-rubygem packages including actiontext, activemodel, and activejob are affected by these security warnings. Each notice specifically cites CVE-2024-54133 as the root cause behind the required version 8.0.3-1.3 upgrade.

openSUSE-SU-2026:10339-1: moderate: ruby4.0-rubygem-actiontext-8.0-8.0.3-1.3 on GA media
openSUSE-SU-2026:10342-1: moderate: ruby4.0-rubygem-activemodel-8.0-8.0.3-1.3 on GA media
openSUSE-SU-2026:10341-1: moderate: ruby4.0-rubygem-activejob-8.0-8.0.3-1.3 on GA media
openSUSE-SU-2026:10337-1: moderate: ruby4.0-rubygem-actionmailer-8.0-8.0.3-1.3 on GA media
openSUSE-SU-2026:10335-1: moderate: ruby4.0-rubygem-actioncable-8.0-8.0.3-1.3 on GA media

SUSE 5738 Published by Philipp Esselbach 0

SUSE 5738 Published by Philipp Esselbach 0

A security update for libsoup was released to fix a vulnerability in the improper bounds handling that could allow out-of-bounds reads. The update is available for various SUSE products, including openSUSE Leap 15.6 and SUSE Linux Enterprise Desktop 15 SP7. A separate security update for glibc fixes four vulnerabilities related to memory alignment, DNS backend, posix functions, and double-free after allocation failure. This update is also available for multiple SUSE products, including openSUSE Leap 15.3, SUSE Linux Enterprise High Performance Computing 15 SP4, and SUSE Linux Enterprise Server 15 SP5.

SUSE-SU-2026:0894-1: moderate: Security update for libsoup
SUSE-SU-2026:0896-1: important: Security update for glibc
SUSE-SU-2026:0890-1: important: Security update for tomcat10
SUSE-SU-2026:0889-1: moderate: Security update for qemu

SUSE 5738 Published by Philipp Esselbach 0

Several security updates have been released for SUSE Linux, including updates for ImageMagick and GraphicsMagick. Other updated packages include MozillaFirefox, busybox, python, tomcat11, postgresql18, MozillaThunderbird, and postgresql16. These updates address various security vulnerabilities in the affected software and are considered important or moderate by SUSE. In addition to these SUSE-specific updates, some security updates have also been released for openSUSE Linux.

SUSE-SU-2026:0870-1: moderate: Security update for ImageMagick
SUSE-SU-2026:0874-1: moderate: Security update for GraphicsMagick
SUSE-SU-2026:0871-1: important: Security update for MozillaFirefox
SUSE-SU-2026:0875-1: moderate: Security update for go1.25
SUSE-SU-2026:0872-1: important: Security update for busybox
SUSE-SU-2026:0873-1: important: Security update for python
SUSE-SU-2026:0876-1: moderate: Security update for go1.26
SUSE-SU-2026:0877-1: important: Security update for tomcat11
SUSE-SU-2026:0881-1: important: Security update for postgresql18
SUSE-SU-2026:0880-1: important: Security update for MozillaThunderbird
SUSE-SU-2026:0882-1: important: Security update for postgresql16
SUSE-SU-2026:0883-1: important: Security update for postgresql17
openSUSE-SU-2026:20345-1: moderate: Security update for python-lxml_html_clean
openSUSE-SU-2026:20348-1: moderate: Security update for python-PyPDF2
openSUSE-SU-2026:20340-1: important: Security update for cJSON
SUSE-SU-2026:0885-1: important: Security update for curl
SUSE-SU-2026:0886-1: moderate: Security update for libsoup2

SUSE 5738 Published by Philipp Esselbach 0

SUSE 5738 Published by Philipp Esselbach 0

The last security patch for openSUSE Leap 15.6 will be removed from the mirrors on April 30, 2026, ending all future updates and leaving systems exposed to new vulnerabilities. After that date, the operating system will no longer receive bug‑fixes or driver support, which can break development workflows that depend on up‑to‑date libraries. The recommended remedy is to upgrade to openSUSE Leap 16.0 using the official zypper tool or a manual reinstall of packages from a saved list, ensuring all kernel modules and proprietary drivers are recompiled for the newer kernel. Prompt action before the EOL date guarantees continued security support and system stability.

SUSE 5738 Published by Philipp Esselbach 0

Several important and moderate security updates have been released for various packages in SUSE Linux. The "c3p0" and "mchange-commons" packages, as well as "python-aiohttp", received high-priority updates to address potential security issues. Additionally, openSUSE users are affected by security updates for "rclone" and "python311-pymongo". Security updates have also been made available for the "util-linux" package, with two separate updates addressing moderate security concerns.

SUSE-SU-2026:0855-1: important: Security update for c3p0 and mchange-commons
SUSE-SU-2026:0858-1: important: Security update for python-aiohttp
openSUSE-SU-2026:10313-1: moderate: rclone-1.73.2-1.1 on GA media
openSUSE-SU-2026:10312-1: moderate: python311-pymongo-4.16.0-1.1 on GA media
SUSE-SU-2026:0857-1: moderate: Security update for util-linux
SUSE-SU-2026:0856-1: moderate: Security update for util-linux

SUSE 5738 Published by Philipp Esselbach 0

SUSE 5738 Published by Philipp Esselbach 0

Several security updates have been released for SUSE Linux, including fixes for gitea-tea and chromium, which were labeled as moderate and important respectively. Additionally, multiple moderate-severity security updates address various packages such as kubeshark-cli, coredns, NetworkManager-applet-strongswan, chromedriver, and jetty-annotations on GA media. The release of these updates suggests that users should take action to ensure their system remains secure. It is essential for SUSE Linux users to review the available security patches and apply them promptly to protect against potential vulnerabilities.

openSUSE-SU-2026:0074-1: moderate: Security update for gitea-tea
openSUSE-SU-2026:0073-1: moderate: Security update for gitea-tea
openSUSE-SU-2026:0078-1: important: Security update for chromium
openSUSE-SU-2026:0077-1: important: Security update for chromium
openSUSE-SU-2026:10304-1: moderate: python311-nltk-3.9.3-1.1 on GA media
openSUSE-SU-2026:10302-1: moderate: kubeshark-cli-53.1.0-1.1 on GA media
openSUSE-SU-2026:10297-1: moderate: coredns-1.14.2-1.1 on GA media
openSUSE-SU-2026:10295-1: moderate: NetworkManager-applet-strongswan-1.6.4-1.1 on GA media
openSUSE-SU-2026:10296-1: moderate: chromedriver-145.0.7632.159-1.1 on GA media
openSUSE-SU-2026:10300-1: moderate: jetty-annotations-9.4.58-3.1 on GA media

SUSE 5738 Published by Philipp Esselbach 0

openSUSE has released several security updates to address vulnerabilities in various packages. These updates include fixes for libaec, chromium, helm, python-PyPDF2, python-uv, and gstreamer, among others. The updates resolve issues such as buffer overflows, integer overflows, and denial of service attacks, and are available for installation using the recommended openSUSE installation methods. Users are advised to install these security updates to ensure the integrity and security of their systems.

openSUSE-SU-2026:0072-1: moderate: Security update for libaec
openSUSE-SU-2026:20332-1: important: Security update for chromium
openSUSE-SU-2026:20327-1: moderate: Security update for helm
openSUSE-SU-2026:20333-1: important: Security update for python-PyPDF2
openSUSE-SU-2026:20330-1: important: Security update for python-uv
openSUSE-SU-2026:20329-1: moderate: Security update for gstreamer-rtsp-server, gstreamer-plugins-ugly, gstreamer-plugins-rs, gstreamer-plugins-libav, gstreamer-plugins-good, gstreamer-pl ...

SUSE 5738 Published by Philipp Esselbach 0

Several security updates have been released for SUSE Linux, including one marked as "important" and the rest as "moderate". These updates affect various packages such as libsoup, Django, joserfc, libblkid-devel, freetype2-devel, roundcubemail, and python-joserfc. The security update for libsoup is considered the most critical of these fixes due to its designation as "important".

SUSE-SU-2026:0833-1: important: Security update for libsoup
openSUSE-SU-2026:10292-1: moderate: python311-Django-5.2.12-1.1 on GA media
openSUSE-SU-2026:10293-1: moderate: python311-joserfc-1.6.3-1.1 on GA media
openSUSE-SU-2026:10288-1: moderate: libblkid-devel-2.41.3-4.1 on GA media
openSUSE-SU-2026:10289-1: moderate: freetype2-devel-2.14.2-1.1 on GA media
openSUSE-SU-2026:20323-1: important: Security update for roundcubemail
openSUSE-SU-2026:20322-1: important: Security update for python-joserfc

SUSE 5738 Published by Philipp Esselbach 0

Several security updates have been released for SUSE Linux, addressing vulnerabilities in various packages such as wireshark, libsoup2, and virtiofsd. The updates also include patches for mozilla-nss, python-Django, ruby4.0-rubygem-rack, mchange-commons, sdbootutil, and other packages. Some of the security fixes are considered low-risk, while others are rated as moderate or important, requiring immediate attention from system administrators.

SUSE-SU-2026:0810-1: low: Security update for wireshark
SUSE-SU-2026:0811-1: important: Security update for libsoup2
SUSE-SU-2026:0816-1: important: Security update for virtiofsd
SUSE-SU-2026:0813-1: moderate: Security update for mozilla-nss
SUSE-SU-2026:0821-1: moderate: Security update for python-Django
openSUSE-SU-2026:10286-1: moderate: ruby4.0-rubygem-rack-2.2-2.2.22-1.1 on GA media
openSUSE-SU-2026:10281-1: moderate: mchange-commons-0.4.0-1.1 on GA media
openSUSE-SU-2026:10287-1: moderate: sdbootutil-1+git20260303.90d816d-1.1 on GA media
openSUSE-SU-2026:10285-1: moderate: python311-pillow-heif-1.3.0-1.1 on GA media
openSUSE-SU-2026:10279-1: moderate: c3p0-0.12.0-1.1 on GA media
openSUSE-SU-2026:10283-1: moderate: python313-Django6-6.0.3-1.1 on GA media
openSUSE-SU-2026:10284-1: moderate: python311-PyPDF2-2.11.1-5.1 on GA media
openSUSE-SU-2026:10280-1: moderate: incus-6.22-1.1 on GA media
SUSE-SU-2026:0829-1: moderate: Security update for gnutls
SUSE-SU-2026:0830-1: important: Security update for ocaml
SUSE-SU-2026:0825-1: low: Security update for php-composer2
SUSE-SU-2026:0824-1: moderate: Security update for openCryptoki
SUSE-SU-2026:0826-1: moderate: Security update for expat
SUSE-SU-2026:0828-1: moderate: Security update for python-Authlib
SUSE-SU-2026:0831-1: important: Security update for openvpn
openSUSE-SU-2026:0071-1: important: Security update for roundcubemail
openSUSE-SU-2026:0070-1: important: Security update for roundcubemail
openSUSE-SU-2026:0069-1: important: Security update for python-nltk
openSUSE-SU-2026:20301-1: important: Security update for go1.25-openssl
openSUSE-SU-2026:20298-1: moderate: Security update for assertj-core
openSUSE-SU-2026:10282-1: moderate: python311-Django4-4.2.29-1.1 on GA media
openSUSE-SU-2026:10278-1: moderate: ImageMagick-7.1.2.15-2.1 on GA media

SUSE 5738 Published by Philipp Esselbach 0

SUSE has released three security updates to address vulnerabilities in various packages. The first update, SUSE-SU-2026:0801-1, fixes a moderate-level vulnerability in libxslt and can be installed on multiple products including openSUSE Leap 15.4 and 15.6. The second update, SUSE-SU-2026:0803-1, addresses a moderate-level vulnerability in util-linux that affects openSUSE Leap 15.6. The third update, SUSE-SU-2026:0805-1, fixes a low-level vulnerability in python-pip and can be installed on multiple products including openSUSE Leap 15.4 and 15.6.

SUSE-SU-2026:0801-1: moderate: Security update for libxslt
SUSE-SU-2026:0803-1: moderate: Security update for util-linux
SUSE-SU-2026:0805-1: low: Security update for python-pip