SUSE 5554 Published by

Multiple security updates are available for openSUSE Tumbleweed, including fixes for vulnerabilities such as CVE-2025-68615 and CVE-2026-23989. These updates address various security issues in packages like cockpit-podman, python311-Django, micropython, libsnmp45, and more, with the most severe vulnerability rated 9.2 on the CVSS scale. The affected products include openSUSE Tumbleweed, and each update solves one or more vulnerabilities that can be installed.

openSUSE-SU-2026:10155-1: moderate: cockpit-podman-119.1-2.1 on GA media
openSUSE-SU-2026:10159-1: moderate: opencloud-server-5.0.2-1.1 on GA media
openSUSE-SU-2026:10160-1: moderate: python311-Django-5.2.11-1.1 on GA media
openSUSE-SU-2026:10156-1: moderate: micropython-1.26.1-2.1 on GA media
openSUSE-SU-2026:10157-1: moderate: libsnmp45-32bit-5.9.5.2-1.1 on GA media
openSUSE-SU-2026:10154-1: moderate: cockpit-354-3.1 on GA media




openSUSE-SU-2026:10155-1: moderate: cockpit-podman-119.1-2.1 on GA media


# cockpit-podman-119.1-2.1 on GA media

Announcement ID: openSUSE-SU-2026:10155-1
Rating: moderate

Cross-References:

* CVE-2025-13465

CVSS scores:

* CVE-2025-13465 ( SUSE ): 8.2 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
* CVE-2025-13465 ( SUSE ): 8.8 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the cockpit-podman-119.1-2.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* cockpit-podman 119.1-2.1

## References:

* https://www.suse.com/security/cve/CVE-2025-13465.html



openSUSE-SU-2026:10159-1: moderate: opencloud-server-5.0.2-1.1 on GA media


# opencloud-server-5.0.2-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10159-1
Rating: moderate

Cross-References:

* CVE-2026-23989

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the opencloud-server-5.0.2-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* opencloud-server 5.0.2-1.1

## References:

* https://www.suse.com/security/cve/CVE-2026-23989.html



openSUSE-SU-2026:10160-1: moderate: python311-Django-5.2.11-1.1 on GA media


# python311-Django-5.2.11-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10160-1
Rating: moderate

Cross-References:

* CVE-2025-13473
* CVE-2025-14550
* CVE-2026-1207
* CVE-2026-1285
* CVE-2026-1287
* CVE-2026-1312

CVSS scores:

* CVE-2025-13473 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
* CVE-2025-14550 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
* CVE-2026-1207 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
* CVE-2026-1285 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
* CVE-2026-1287 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
* CVE-2026-1312 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products:

* openSUSE Tumbleweed

An update that solves 6 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the python311-Django-5.2.11-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* python311-Django 5.2.11-1.1
* python312-Django 5.2.11-1.1
* python313-Django 5.2.11-1.1

## References:

* https://www.suse.com/security/cve/CVE-2025-13473.html
* https://www.suse.com/security/cve/CVE-2025-14550.html
* https://www.suse.com/security/cve/CVE-2026-1207.html
* https://www.suse.com/security/cve/CVE-2026-1285.html
* https://www.suse.com/security/cve/CVE-2026-1287.html
* https://www.suse.com/security/cve/CVE-2026-1312.html



openSUSE-SU-2026:10156-1: moderate: micropython-1.26.1-2.1 on GA media


# micropython-1.26.1-2.1 on GA media

Announcement ID: openSUSE-SU-2026:10156-1
Rating: moderate

Cross-References:

* CVE-2026-1998

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the micropython-1.26.1-2.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* micropython 1.26.1-2.1
* mpremote 1.26.1-2.1
* mpy-tools 1.26.1-2.1

## References:

* https://www.suse.com/security/cve/CVE-2026-1998.html



openSUSE-SU-2026:10157-1: moderate: libsnmp45-32bit-5.9.5.2-1.1 on GA media


# libsnmp45-32bit-5.9.5.2-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10157-1
Rating: moderate

Cross-References:

* CVE-2025-68615

CVSS scores:

* CVE-2025-68615 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
* CVE-2025-68615 ( SUSE ): 9.2 CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the libsnmp45-32bit-5.9.5.2-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* libsnmp45 5.9.5.2-1.1
* libsnmp45-32bit 5.9.5.2-1.1
* net-snmp 5.9.5.2-1.1
* net-snmp-devel 5.9.5.2-1.1
* net-snmp-devel-32bit 5.9.5.2-1.1
* perl-SNMP 5.9.5.2-1.1
* python311-net-snmp 5.9.5.2-1.1
* python312-net-snmp 5.9.5.2-1.1
* python313-net-snmp 5.9.5.2-1.1
* snmp-mibs 5.9.5.2-1.1

## References:

* https://www.suse.com/security/cve/CVE-2025-68615.html



openSUSE-SU-2026:10154-1: moderate: cockpit-354-3.1 on GA media


# cockpit-354-3.1 on GA media

Announcement ID: openSUSE-SU-2026:10154-1
Rating: moderate

Cross-References:

* CVE-2025-13465

CVSS scores:

* CVE-2025-13465 ( SUSE ): 8.2 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
* CVE-2025-13465 ( SUSE ): 8.8 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the cockpit-354-3.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* cockpit 354-3.1
* cockpit-bridge 354-3.1
* cockpit-devel 354-3.1
* cockpit-doc 354-3.1
* cockpit-firewalld 354-3.1
* cockpit-kdump 354-3.1
* cockpit-networkmanager 354-3.1
* cockpit-packagekit 354-3.1
* cockpit-selinux 354-3.1
* cockpit-storaged 354-3.1
* cockpit-system 354-3.1
* cockpit-ws 354-3.1
* cockpit-ws-selinux 354-3.1

## References:

* https://www.suse.com/security/cve/CVE-2025-13465.html