SUSE 5673 Published by Philipp Esselbach 0

SUSE 5673 Published by Philipp Esselbach 0

SUSE has released a broad set of security advisories targeting multiple software packages across its enterprise and community distributions. These updates address dozens of vulnerabilities that could allow attackers to execute remote code, cause system crashes, or leak sensitive information through flaws in components like the Linux kernel, PHP, PostgreSQL, and dnsmasq. Administrators should prioritize applying these patches immediately since several issues carry critical ratings and directly impact network services and application stability. You can deploy the fixes using standard zypper commands or the YaST online update tool on affected openSUSE Leap and SUSE Linux Enterprise systems.

SUSE-SU-2026:1997-1: important: Security update for the Linux Kernel (Live Patch 31 for SUSE Linux Enterprise 15 SP5)
openSUSE-SU-2026:20762-1: important: Security update for go1.26
openSUSE-SU-2026:20763-1: important: Security update for go1.25
openSUSE-SU-2026:20764-1: important: Security update for glibc
openSUSE-SU-2026:20759-1: moderate: Security update for emacs
openSUSE-SU-2026:20753-1: important: Security update for agama
openSUSE-SU-2026:20761-1: important: Security update for google-guest-agent
openSUSE-SU-2026:20758-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:20757-1: important: Security update for openssh
openSUSE-SU-2026:20750-1: moderate: Security update for ibus-rime, librime
openSUSE-SU-2026:20755-1: important: Security update for openexr
openSUSE-SU-2026:20754-1: important: Security update for rsync
openSUSE-SU-2026:20752-1: important: Security update for alloy
openSUSE-SU-2026:20749-1: important: Security update for tree-sitter
openSUSE-SU-2026:20745-1: critical: Security update for php8
openSUSE-SU-2026:20747-1: important: Security update for ImageMagick
openSUSE-SU-2026:20743-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:20742-1: moderate: Security update for ongres-scram, ongres-stringprep, plexus-testing, maven, maven-doxia, mojo-parent, sisu
openSUSE-SU-2026:20737-1: moderate: Security update for python-lxml
openSUSE-SU-2026:20748-1: important: Security update for dnsmasq
openSUSE-SU-2026:20741-1: moderate: Security update for MozillaFirefox
openSUSE-SU-2026:10805-1: moderate: perl-HTTP-Tiny-0.094-1.1 on GA media
openSUSE-SU-2026:10808-1: moderate: postgresql16-16.14-1.1 on GA media
openSUSE-SU-2026:10806-1: moderate: postgresql14-14.23-1.1 on GA media
openSUSE-SU-2026:10810-1: moderate: traefik-3.6.17-1.1 on GA media
openSUSE-SU-2026:10804-1: moderate: openssh-10.3p1-4.1 on GA media
SUSE-SU-2026:1999-1: important: Security update for postgresql15
SUSE-SU-2026:2003-1: moderate: Security update for GraphicsMagick
SUSE-SU-2026:2001-1: important: Security update for postgresql16
SUSE-SU-2026:2004-1: important: Security update for python-Pillow
SUSE-SU-2026:2008-1: important: Security update for haveged
SUSE-SU-2026:2010-1: important: Security update for erlang26
SUSE-SU-2026:2009-1: important: Security update for haveged
openSUSE-SU-2026:0171-1: important: Security update for git-bug
openSUSE-SU-2026:0170-1: important: Security update for perl-CryptX

SUSE 5673 Published by Philipp Esselbach 0

SUSE has released a batch of important security advisories addressing numerous vulnerabilities across its Linux distributions and key software packages. These updates target critical issues in widely used tools like the Linux kernel, PHP, PostgreSQL, nginx, and curl, with several flaws posing risks of remote code execution or privilege escalation. Administrators managing openSUSE Leap and SUSE Linux Enterprise systems should apply the recommended patches immediately through standard package management utilities to mitigate these threats. The advisories also include live kernel patches that allow security fixes without requiring a full system reboot for supported environments.

SUSE-SU-2026:1967-1: important: Security update for tiff
SUSE-SU-2026:1970-1: important: Security update for php-composer2
SUSE-SU-2026:1960-1: important: Security update for the Linux Kernel (Live Patch 9 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:1876-1: important: Security update for openssh
SUSE-SU-2026:1885-1: important: Security update for the Linux Kernel (Live Patch 72 for SUSE Linux Enterprise 12 SP5)
SUSE-SU-2026:1878-1: important: Security update for the Linux Kernel (Live Patch 10 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1899-1: important: Security update for the Linux Kernel
SUSE-SU-2026:1875-1: important: Security update for the Linux Kernel (Live Patch 28 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:1877-1: important: Security update for the Linux Kernel (Live Patch 35 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:1880-1: important: Security update for the Linux Kernel (Live Patch 67 for SUSE Linux Enterprise 12 SP5)
SUSE-SU-2026:1896-1: important: Security update for the Linux Kernel (Live Patch 5 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:1908-1: important: Security update for the Linux Kernel
SUSE-SU-2026:1905-1: important: Security update for the Linux Kernel (Live Patch 10 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:1909-1: important: Security update for the Linux Kernel
SUSE-SU-2026:1907-1: important: Security update for the Linux Kernel
SUSE-SU-2026:1906-1: important: Security update for the Linux Kernel (Live Patch 40 for SUSE Linux Enterprise 15 SP4)
openSUSE-SU-2026:10796-1: moderate: nginx-1.31.0-1.1 on GA media
openSUSE-SU-2026:10798-1: moderate: python311-urllib3-2.7.0-1.1 on GA media
openSUSE-SU-2026:10800-1: moderate: xen-4.21.1_06-1.1 on GA media
openSUSE-SU-2026:0169-1: important: Security update for cacti
SUSE-SU-2026:1939-1: important: Security update for PackageKit
SUSE-SU-2026:1934-1: important: Security update for dnsmasq
SUSE-SU-2026:1931-1: important: Security update for podman
SUSE-SU-2026:1933-1: moderate: Security update for xen
SUSE-SU-2026:1940-1: important: Security update for curl
SUSE-SU-2026:1943-1: important: Security update for postgresql17
SUSE-SU-2026:1941-1: moderate: Security update for sed
SUSE-SU-2026:1948-1: important: Security update for cups-filters
SUSE-SU-2026:1947-1: important: Security update for python310
SUSE-SU-2026:1944-1: important: Security update for postgresql18
SUSE-SU-2026:1950-1: important: Security update for valkey
SUSE-SU-2026:1956-1: important: Security update for mozjs78
SUSE-SU-2026:1953-1: important: Security update for nginx
SUSE-SU-2026:1917-1: important: Security update for the Linux Kernel (Live Patch 74 for SUSE Linux Enterprise 12 SP5)
SUSE-SU-2026:1994-1: important: Security update for the Linux Kernel (Live Patch 69 for SUSE Linux Enterprise 12 SP5)
SUSE-SU-2026:1980-1: important: Security update for cloud-init
SUSE-SU-2026:1957-1: critical: Security update for php8
SUSE-SU-2026:1962-1: moderate: Security update for util-linux
SUSE-SU-2026:1961-1: important: Security update for python-python-multipart
SUSE-SU-2026:1964-1: important: Security update for rmt-server

SUSE 5673 Published by Philipp Esselbach 0

openSUSE Tumbleweed users have several new security patches available for their systems. These updates target critical packages including the Linux kernel, Apache HTTP Server, multiple Java OpenJ9 versions, ChromeDriver, Expat, and Apache Commons Configuration2. Each release resolves dozens of distinct vulnerabilities that carry moderate overall ratings alongside high individual CVSS scores. Administrators should install these updates promptly to protect their environments from potential exploitation.

openSUSE-SU-2026:10793-1: moderate: kernel-devel-7.0.7-1.1 on GA media
openSUSE-SU-2026:10784-1: moderate: apache-commons-configuration2-2.15.0-1.1 on GA media
openSUSE-SU-2026:10792-1: moderate: java-25-openj9-25.0.3.0-2.1 on GA media
openSUSE-SU-2026:10789-1: moderate: java-17-openj9-17.0.19.0-2.1 on GA media
openSUSE-SU-2026:10788-1: moderate: java-11-openj9-11.0.31.0-2.1 on GA media
openSUSE-SU-2026:10785-1: moderate: apache2-2.4.67-1.1 on GA media
openSUSE-SU-2026:10790-1: moderate: java-1_8_0-openj9-1.8.0.492-2.1 on GA media
openSUSE-SU-2026:10786-1: moderate: chromedriver-148.0.7778.167-2.1 on GA media
openSUSE-SU-2026:10787-1: moderate: expat-2.8.1-1.1 on GA media
openSUSE-SU-2026:10791-1: moderate: java-21-openj9-21.0.11.0-2.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

openSUSE Tumbleweed users need to install three recent security patches that address moderate vulnerabilities across several key packages. The first update fixes a single flaw in the perl-libwww-perl library, while another patch resolves issues within the entire keylime-config suite of tools. A third release tackles four separate weaknesses in the perl-Net-CIDR-Lite module that could potentially allow unauthorized data access or system manipulation.

openSUSE-SU-2026:10781-1: moderate: perl-libwww-perl-6.830.0-1.1 on GA media
openSUSE-SU-2026:10779-1: moderate: keylime-config-7.14.2-1.1 on GA media
openSUSE-SU-2026:10780-1: moderate: perl-Net-CIDR-Lite-0.240.0-1.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

SUSE has released a batch of security advisories addressing multiple vulnerabilities across its openSUSE Leap and SUSE Linux Enterprise distributions. These updates target critical packages like apptainer, mozjs115, and the Linux kernel live patch while also covering moderate risks in tools such as ffmpeg, glibc, and firewalld. Administrators should prioritize applying these patches immediately since several flaws could allow remote code execution or system crashes without proper authentication. The recommended installation method involves using zypper patch or YaST online_update to ensure all affected systems receive the necessary security fixes.

SUSE-SU-2026:1870-1: important: Security update for mozjs115
openSUSE-SU-2026:20726-1: moderate: Security update for ffmpeg-4
openSUSE-SU-2026:20730-1: critical: Security update for apptainer
openSUSE-SU-2026:20723-1: important: Security update for kdenlive
openSUSE-SU-2026:10775-1: moderate: rsync-3.4.1-5.1 on GA media
openSUSE-SU-2026:10776-1: moderate: tekton-cli-0.45.0-1.1 on GA media
openSUSE-SU-2026:10777-1: moderate: ImageMagick-7.1.2.22-1.1 on GA media
openSUSE-SU-2026:10774-1: moderate: perl-Text-CSV_XS-1.620.0-1.1 on GA media
openSUSE-SU-2026:10772-1: moderate: libIex-3_4-33-3.4.11-1.1 on GA media
openSUSE-SU-2026:10769-1: moderate: flux2-cli-2.8.7-1.1 on GA media
openSUSE-SU-2026:10770-1: moderate: glibc-2.43-3.1 on GA media
openSUSE-SU-2026:10768-1: moderate: ffmpeg-7-7.1.3-3.1 on GA media
openSUSE-SU-2026:10773-1: moderate: perl-CryptX-0.89.0-1.1 on GA media
openSUSE-SU-2026:0167-1: moderate: Security update for gosec
SUSE-SU-2026:1872-1: moderate: Security update for firewalld
SUSE-SU-2026:1871-1: moderate: Security update for openvswitch
SUSE-SU-2026:1873-1: important: Security update for the Linux Kernel (Live Patch 12 for SUSE Linux Enterprise 15 SP7)

SUSE 5673 Published by Philipp Esselbach 0

SUSE has released a series of security patches addressing multiple vulnerabilities across its Linux distributions and openSUSE Tumbleweed systems. The most critical update fixes kernel issue CVE-2026-43284, which impacts numerous SLE variants and requires administrators to reboot affected machines after installation. Additional moderate severity updates target common software tools like ffmpeg, GitPython, Dovecot, and various Python packages by replacing outdated versions with patched releases on the general availability media.

SUSE-SU-2026:1857-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:10759-1: moderate: python-Twisted-doc-26.4.0-1.1 on GA media
openSUSE-SU-2026:10767-1: moderate: ffmpeg-4-4.4.6-12.1 on GA media
openSUSE-SU-2026:10765-1: moderate: amazon-ssm-agent-3.3.4268.0-2.1 on GA media
openSUSE-SU-2026:10760-1: moderate: python311-click-8.3.3-2.1 on GA media
openSUSE-SU-2026:10766-1: moderate: dovecot24-2.4.4-1.1 on GA media
openSUSE-SU-2026:10762-1: moderate: rclone-1.74.1-1.1 on GA media
openSUSE-SU-2026:10758-1: moderate: python311-GitPython-3.1.49-1.1 on GA media
openSUSE-SU-2026:10764-1: moderate: syncthing-2.1.0-1.1 on GA media
openSUSE-SU-2026:10763-1: moderate: regclient-0.11.4-1.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

SUSE recently pushed out a series of security patches that tackle numerous flaws across its enterprise and community Linux distributions. These updates hit major applications including the Linux kernel, Tor, Python modules, and Mesa graphics drivers while resolving dangerous problems like memory corruption, path traversal exploits, and denial of service attacks. System administrators should deploy the fixes quickly through zypper or YaST on any affected SUSE Linux Enterprise or openSUSE Leap installation. Delaying this rollout leaves networks exposed to the remote vulnerabilities that attackers could easily exploit.

openSUSE-SU-2026:0165-1: important: Security update for python-jupyterlab
openSUSE-SU-2026:0164-1: critical: Security update for tor
openSUSE-SU-2026:20720-1: moderate: Security update for trivy
openSUSE-SU-2026:20717-1: important: Security update for raylib
SUSE-SU-2026:1819-1: important: Security update for python-Mako
SUSE-SU-2026:1821-1: moderate: Security update for NetworkManager
SUSE-SU-2026:1827-1: important: Security update for dnsmasq
SUSE-SU-2026:1818-1: important: Security update for python39
SUSE-SU-2026:1816-1: moderate: Security update for krb5
SUSE-SU-2026:1835-1: moderate: Security update for Mesa
SUSE-SU-2026:1839-1: moderate: Security update for Mesa
SUSE-SU-2026:1840-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:10748-1: moderate: jupyter-jupyterlab-4.5.7-1.1 on GA media
openSUSE-SU-2026:10752-1: moderate: OpenImageIO-3.1.13.1-2.1 on GA media
openSUSE-SU-2026:10751-1: moderate: libvinylapi3-9.0.0-1.1 on GA media
SUSE-SU-2026:1840-2: important: Security update for the Linux Kernel
SUSE-SU-2026:1842-1: important: Security update for python-Pillow

SUSE 5673 Published by Philipp Esselbach 0

OpenSUSE recently released a set of security updates for its Tumbleweed distribution that address multiple flaws across several important packages. The patches specifically target the Go programming environment, the Qt6 SVG rendering library, Mozilla Thunderbird, and the assimp development toolkit. Several of these issues carry CVSS scores near or above 7.5, creating serious risks like remote code execution or service disruption if left unpatched. IT teams should prioritize installing these fixes to protect their systems from the newly disclosed exploits.

openSUSE-SU-2026:10741-1: moderate: go1.26-1.26.3-1.1 on GA media
openSUSE-SU-2026:10742-1: moderate: libQt6Svg6-6.11.0-2.1 on GA media
openSUSE-SU-2026:10738-1: moderate: MozillaThunderbird-140.10.2-1.1 on GA media
openSUSE-SU-2026:10739-1: moderate: assimp-devel-6.0.5-2.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

Recent SUSE security bulletins address numerous vulnerabilities across their Linux distributions and associated software packages. These patches cover the Linux kernel, php-composer2, libmodsecurity3, Java OpenJ9, mcphost, and krb5 authentication libraries to resolve flaws that could enable unauthorized access or service disruptions. Many of the referenced CVEs carry high severity scores, with specific mitigations targeting memory corruption in network schedulers and command injection vulnerabilities within development tools.

SUSE-SU-2026:1787-1: important: Security update for the Linux Kernel (Live Patch 18 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1784-1: important: Security update for php-composer2
SUSE-SU-2026:1793-1: important: Security update for the Linux Kernel (Live Patch 13 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1802-1: important: Security update for the Linux Kernel (Live Patch 21 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1801-1: important: Security update for the Linux Kernel (Live Patch 19 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1798-1: important: Security update for the Linux Kernel (Live Patch 32 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:1804-1: important: Security update for the Linux Kernel (Live Patch 33 for SUSE Linux Enterprise 15 SP5)
openSUSE-SU-2026:10732-1: moderate: libmodsecurity3-3.0.15-1.1 on GA media
openSUSE-SU-2026:10728-1: moderate: java-25-openj9-25.0.3.0-1.1 on GA media
openSUSE-SU-2026:10731-1: moderate: mcphost-0.34.0-1.1 on GA media
openSUSE-SU-2026:10729-1: moderate: krb5-1.22.2-3.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

SUSE recently pushed out a batch of security patches for Tumbleweed and Leap 16.0 that tackle multiple flaws across several key applications. You will find fixes for popular software like Tor, various Java OpenJ9 releases, Go, Django, glibc, FRR, Firefox ESR, Valkey, and more scattered throughout these announcements. Some of the vulnerabilities carry moderate ratings while others are marked critical, meaning administrators should prioritize the higher risk patches first. Installing these updates is straightforward since you can rely on familiar tools like zypper or YaST to handle the patching process smoothly.

openSUSE-SU-2026:20709-1: critical: Security update for tor
openSUSE-SU-2026:10719-1: moderate: valkey-9.0.4-1.1 on GA media
openSUSE-SU-2026:10727-1: moderate: java-21-openj9-21.0.11.0-1.1 on GA media
openSUSE-SU-2026:10726-1: moderate: java-1_8_0-openj9-1.8.0.492-1.1 on GA media
openSUSE-SU-2026:10724-1: moderate: java-11-openj9-11.0.31.0-1.1 on GA media
openSUSE-SU-2026:10723-1: moderate: go1.25-1.25.10-1.1 on GA media
openSUSE-SU-2026:10718-1: moderate: python311-Django-5.2.14-1.1 on GA media
openSUSE-SU-2026:10722-1: moderate: glibc-2.43-2.1 on GA media
openSUSE-SU-2026:10721-1: moderate: frr-10.6.1-1.1 on GA media
openSUSE-SU-2026:10725-1: moderate: java-17-openj9-17.0.19.0-1.1 on GA media
openSUSE-SU-2026:10720-1: moderate: firefox-esr-140.10.2-1.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

Recent updates for openSUSE Tumbleweed address moderate security vulnerabilities across six different packages on the general availability media. These patches resolve multiple common vulnerability identifiers across libtree-sitter, copacetic, redis, libexif-devel, semaphore, and Django, with severity ratings that span from low to high impact. System administrators should apply these package upgrades as soon as possible to eliminate the identified attack vectors. Keeping your infrastructure current with these fixes will help maintain a secure baseline while avoiding unnecessary downtime during deployment.

openSUSE-SU-2026:10715-1: moderate: libtree-sitter0_26-0.26.8-2.1 on GA media
openSUSE-SU-2026:10716-1: moderate: copacetic-0.14.0-1.1 on GA media
openSUSE-SU-2026:10711-1: moderate: redis-8.6.3-1.1 on GA media
openSUSE-SU-2026:10717-1: moderate: libexif-devel-0.6.26-1.1 on GA media
openSUSE-SU-2026:10712-1: moderate: semaphore-2.18.1-1.1 on GA media
openSUSE-SU-2026:10708-1: moderate: python311-Django4-4.2.30-2.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

SUSE has issued a wide array of security updates for openSUSE Leap and SUSE Linux Enterprise systems that address numerous vulnerabilities across both critical and moderate severity levels. These patches cover essential software including Wireshark, Django, nginx, and multiple Linux kernel live patches, alongside fixes for graphics libraries, container runtimes, and development tools. The resolved issues primarily involve memory corruption flaws, denial-of-service triggers, and privilege escalation risks that could destabilize systems or leak sensitive information. System administrators are advised to deploy these updates immediately through standard zypper patch commands to maintain a secure computing environment.

openSUSE-SU-2026:20699-1: moderate: Security update for openCryptoki
openSUSE-SU-2026:20704-1: moderate: Security update for python-Django
openSUSE-SU-2026:20697-1: low: Security update for cairo
openSUSE-SU-2026:20692-1: moderate: Security update for python-pytest
openSUSE-SU-2026:20688-1: moderate: Security update for Mesa
openSUSE-SU-2026:20685-1: important: Security update for wireshark
SUSE-SU-2026:1776-1: important: Security update for the Linux Kernel (Live Patch 11 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1761-1: important: Security update for nginx
SUSE-SU-2026:1768-1: important: Security update for the Linux Kernel (Live Patch 41 for SUSE Linux Enterprise 15 SP4)
SUSE-SU-2026:1771-1: important: Security update for the Linux Kernel (Live Patch 12 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1770-1: important: Security update for the Linux Kernel (Live Patch 34 for SUSE Linux Enterprise 15 SP5)
openSUSE-SU-2026:10707-1: moderate: postfix-3.11.2-1.1 on GA media
openSUSE-SU-2026:10706-1: moderate: podman-5.8.2-1.1 on GA media
openSUSE-SU-2026:10705-1: moderate: libpcp-devel-6.3.8-1.1 on GA media
openSUSE-SU-2026:10704-1: moderate: micropython-1.28.0-2.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

SUSE issued a series of security advisories to patch numerous vulnerabilities across its enterprise and community Linux distributions. These updates address critical flaws in widely used software like Java, Python frameworks, web browsers, and system libraries, with several patches carrying important ratings due to their potential for remote exploitation or service disruption. System administrators should apply the recommended fixes immediately through YaST or zypper commands to protect affected SUSE Linux Enterprise and openSUSE Leap installations. The release also bundles multiple kernel live patches that resolve high-risk networking and memory issues without forcing a full system restart.

SUSE-SU-2026:1753-1: important: Security update for 389-ds
SUSE-SU-2026:1755-1: important: Security update for freeipmi
SUSE-SU-2026:1744-1: moderate: Security update for python-pytest
SUSE-SU-2026:1732-1: important: Security update for java-17-openjdk
SUSE-SU-2026:1740-1: moderate: Security update for python-Django
SUSE-SU-2026:1749-1: moderate: Security update for webkit2gtk3
SUSE-SU-2026:1750-1: important: Security update for librsvg
SUSE-SU-2026:1735-1: important: Security update for the Linux Kernel (Live Patch 20 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1728-1: important: Security update for the Linux Kernel (Live Patch 17 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1736-1: important: Security update for the Linux Kernel (Live Patch 22 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1733-1: important: Security update for the Linux Kernel (Live Patch 30 for SUSE Linux Enterprise 15 SP5)
openSUSE-SU-2026:10691-1: moderate: gnutls-3.8.13-1.1 on GA media
openSUSE-SU-2026:10690-1: moderate: cri-tools-1.36.0-1.1 on GA media
openSUSE-SU-2026:10696-1: moderate: nix-2.34.7-1.1 on GA media
openSUSE-SU-2026:10692-1: moderate: grafana-11.6.14+security01-3.1 on GA media
openSUSE-SU-2026:10694-1: moderate: libmariadbd-devel-11.8.6-1.1 on GA media
openSUSE-SU-2026:10695-1: moderate: mutt-2.3.2-1.1 on GA media
openSUSE-SU-2026:10689-1: moderate: chromedriver-148.0.7778.96-1.1 on GA media
openSUSE-SU-2026:10688-1: moderate: cf-cli-8.18.3+git.0.83ce51d9c-1.1 on GA media
openSUSE-SU-2026:10697-1: moderate: traefik-3.6.15-1.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

SUSE issued a comprehensive set of security patches that address numerous vulnerabilities across their Linux distributions. These updates tackle critical flaws in essential software like the Linux kernel live patch, Python three, Java twenty one OpenJDK, and curl, alongside moderate fixes for applications including Thunderbird, Erlang, and OpenSSL three. System administrators can mitigate risks involving privilege escalation, credential exposure, and remote service disruptions by running the provided zypper or YaST commands on their specific SUSE Linux Enterprise or openSUSE Leap installations. Each advisory includes detailed package lists and targeted installation steps to help organizations quickly secure their environments against these newly disclosed threats.

SUSE-SU-2026:1700-1: important: Security update for PackageKit
SUSE-SU-2026:1705-1: important: Security update for java-21-openjdk
openSUSE-SU-2026:10685-1: moderate: libthrift-0_23_0-0.23.0-1.1 on GA media
openSUSE-SU-2026:10683-1: moderate: skim-4.6.1-1.1 on GA media
openSUSE-SU-2026:10682-1: moderate: rclone-1.74.0-1.1 on GA media
openSUSE-SU-2026:10687-1: moderate: MozillaThunderbird-140.10.1-1.1 on GA media
openSUSE-SU-2026:10681-1: moderate: python311-social-auth-core-4.8.7-1.1 on GA media
openSUSE-SU-2026:10678-1: moderate: liblxc-devel-7.0.0-1.1 on GA media
SUSE-SU-2026:1715-1: important: Security update for python3
SUSE-SU-2026:1711-1: moderate: Security update for openssl-3
SUSE-SU-2026:1714-1: important: Security update for erlang
SUSE-SU-2026:1723-1: moderate: Security update for openCryptoki
SUSE-SU-2026:1717-1: important: Security update for curl
SUSE-SU-2026:1718-1: important: Security update for the Linux Kernel (Live Patch 40 for SUSE Linux Enterprise 15 SP4)

SUSE 5673 Published by Philipp Esselbach 0

SUSE has released a batch of moderate security updates to patch multiple vulnerabilities across several key software packages. The fixes target widely used tools such as Xen, curl, Firefox, Grafana, and Prometheus on openSUSE Tumbleweed, Leap 15.4, and SUSE Linux Enterprise Micro systems. These patches resolve specific cross-referenced CVEs that could potentially allow local privilege escalation or denial of service attacks. Administrators need to apply the updates right away through zypper or YaST, and they must reboot any machines running Xen to complete the process.

SUSE-SU-2026:1692-1: moderate: Security update for xen
openSUSE-SU-2026:10676-1: moderate: golang-github-prometheus-prometheus-3.11.3-1.1 on GA media
openSUSE-SU-2026:10675-1: moderate: dpkg-1.22.22-1.1 on GA media
openSUSE-SU-2026:10674-1: moderate: curl-8.20.0-1.1 on GA media
openSUSE-SU-2026:10673-1: moderate: coredns-1.14.3-1.1 on GA media
openSUSE-SU-2026:10670-1: moderate: avahi-0.8-43.1 on GA media
openSUSE-SU-2026:10677-1: moderate: grafana-11.6.14+security01-2.1 on GA media
openSUSE-SU-2026:10671-1: moderate: bubblewrap-0.11.2-1.1 on GA media
openSUSE-SU-2026:10668-1: moderate: MozillaFirefox-150.0.1-1.1 on GA media
openSUSE-SU-2026:10669-1: moderate: alloy-1.16.0-2.1 on GA media
openSUSE-SU-2026:10672-1: moderate: cmctl-2.5.0-1.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

SUSE recently pushed a batch of security patches for openSUSE systems that tackle dozens of vulnerabilities across several key packages. MozillaThunderbird and FreeRDP receive the most urgent attention, as their updates resolve severe memory corruption flaws and potential remote execution risks. Additional updates cover moderate and important vulnerabilities in Helm, Trivy, Xen, himmelblau, plus a necessary kernel refresh for Leap 15.6.

openSUSE-SU-2026:10660-1: moderate: xen-4.21.1_04-1.1 on GA media
openSUSE-SU-2026:20657-1: important: Security update for freerdp
openSUSE-SU-2026:20662-1: moderate: Security update for hauler
openSUSE-SU-2026:20664-1: important: Security update for MozillaThunderbird
openSUSE-SU-2026:20659-1: moderate: Security update for libspectre
openSUSE-SU-2026:20655-1: moderate: Security update for helm
openSUSE-SU-2026:20658-1: moderate: Security update for himmelblau
SUSE-SU-2026:1671-2: important: Security update for the Linux Kernel
openSUSE-SU-2026:0163-1: important: Security update for trivy

SUSE 5673 Published by Philipp Esselbach 0

SUSE has rolled out a batch of security patches addressing flaws across multiple Linux distributions and software packages. The highest priority fix targets Chromium with thirty-three critical vulnerabilities, including several dangerous use after free errors that could destabilize systems. OpenSUSE Tumbleweed users need to install moderate updates for core tools like OpenJDK, Vim, Trivy, and libtiff to patch known weaknesses. Lower severity adjustments also improve regex processing in python-Pygments across various SUSE Linux Enterprise modules.

openSUSE-SU-2026:0161-1: critical: Security update for chromium
SUSE-SU-2026:1666-1: low: Security update for python-Pygments
SUSE-SU-2026:1667-1: low: Security update for python-Pygments
openSUSE-SU-2026:10658-1: moderate: python311-pypdf-6.10.2-2.1 on GA media
openSUSE-SU-2026:10657-1: moderate: krb5-appl-clients-1.0.3-6.1 on GA media
openSUSE-SU-2026:10655-1: moderate: google-osconfig-agent-20260330.00-2.1 on GA media
openSUSE-SU-2026:10652-1: moderate: gvim-9.2.0398-1.1 on GA media
openSUSE-SU-2026:10656-1: moderate: java-1_8_0-openjdk-1.8.0.492-1.1 on GA media
openSUSE-SU-2026:10654-1: moderate: google-guest-agent-20260402.00-2.1 on GA media
openSUSE-SU-2026:10651-1: moderate: trivy-0.70.0-1.1 on GA media
openSUSE-SU-2026:10649-1: moderate: sed-4.10-1.1 on GA media
openSUSE-SU-2026:10650-1: moderate: libtiff-devel-32bit-4.7.1-5.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

SUSE has released a comprehensive batch of security advisories targeting numerous open source packages across its Linux distributions. The updates address critical and important vulnerabilities in widely used tools like grafana, radare2, libssh, and libsodium, alongside several Python and Java libraries. Administrators will find fixes for dozens of common vulnerability identifiers, with some flaws carrying severity scores that reach the maximum level due to remote code execution or denial of service risks. System owners can apply these patches immediately using standard zypper commands or the YaST online update utility to keep their openSUSE Leap and Tumbleweed environments secure.

openSUSE-SU-2026:20654-1: critical: Security update for grafana
openSUSE-SU-2026:20651-1: important: Security update for ntfs-3g_ntfsprogs
openSUSE-SU-2026:20647-1: moderate: Security update for libssh
openSUSE-SU-2026:20653-1: critical: Security update for radare2
openSUSE-SU-2026:20642-1: moderate: Security update for libsodium
openSUSE-SU-2026:20646-1: important: Security update for PackageKit
openSUSE-SU-2026:20652-1: important: Security update for openexr
openSUSE-SU-2026:20645-1: important: Security update for python-Mako
openSUSE-SU-2026:20650-1: moderate: Security update for python-PyNaCl
openSUSE-SU-2026:20644-1: important: Security update for python-jwcrypto
SUSE-SU-2026:1662-1: important: Security update for glibc-livepatches
openSUSE-SU-2026:10648-1: moderate: python315-3.15.0~a8-3.1 on GA media
openSUSE-SU-2026:10639-1: moderate: java-25-openjdk-25.0.3.0-1.1 on GA media
openSUSE-SU-2026:10646-1: moderate: python311-pyOpenSSL-26.1.0-1.1 on GA media
openSUSE-SU-2026:10642-1: moderate: libmozjs-140-0-140.10.0-1.1 on GA media
openSUSE-SU-2026:10644-1: moderate: prometheus-postgres_exporter-0.10.1-6.1 on GA media
openSUSE-SU-2026:10640-1: moderate: libpng12-0-1.2.59-5.1 on GA media
openSUSE-SU-2026:10641-1: moderate: libixml11-1.18.5-1.1 on GA media

SUSE 5673 Published by Philipp Esselbach 0

SUSE rolled out a batch of security advisories to patch vulnerabilities across its enterprise Linux distributions and several core software packages. The highest priority update focuses on the Linux Kernel, where fourteen separate flaws were resolved to prevent potential local privilege escalation and system crashes. Other moderate fixes address memory management bugs and race conditions within python-requests, xen, openCryptoki, sed, and dnsdist. IT teams need to apply these patches through standard package managers right away, though they should plan for a mandatory server restart after installing the kernel or Xen components.

SUSE-SU-2026:1643-1: important: Security update for the Linux Kernel
SUSE-SU-2026:1644-1: moderate: Security update for python-requests
SUSE-SU-2026:1647-1: moderate: Security update for python-requests
SUSE-SU-2026:1657-1: important: Security update for xen
SUSE-SU-2026:1658-1: moderate: Security update for openCryptoki
SUSE-SU-2026:1659-1: moderate: Security update for sed
openSUSE-SU-2026:10632-1: moderate: dnsdist-2.0.5-1.1 on GA media