SUSE 5616 Published by

A series of moderate security advisories has been released for openSUSE Tumbleweed targeting several key packages on the GA media. Users should update libradcli10, tekton-cli, crun, perl-XML-Parser and python315 to resolve multiple identified vulnerabilities within their systems.

openSUSE-SU-2026:10528-1: moderate: libradcli10-1.5.0-1.1 on GA media
openSUSE-SU-2026:10529-1: moderate: tekton-cli-0.44.1-1.1 on GA media
openSUSE-SU-2026:10527-1: moderate: perl-XML-Parser-2.570.0-1.1 on GA media
openSUSE-SU-2026:10524-1: moderate: crun-1.27-1.1 on GA media
openSUSE-SU-2026:10522-1: moderate: python315-3.15.0~a8-1.1 on GA media




openSUSE-SU-2026:10528-1: moderate: libradcli10-1.5.0-1.1 on GA media


# libradcli10-1.5.0-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10528-1
Rating: moderate

Cross-References:

* CVE-2024-3596

CVSS scores:

* CVE-2024-3596 ( SUSE ): 7.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the libradcli10-1.5.0-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* libradcli10 1.5.0-1.1
* radcli 1.5.0-1.1
* radcli-compat-devel 1.5.0-1.1
* radcli-devel 1.5.0-1.1

## References:

* https://www.suse.com/security/cve/CVE-2024-3596.html



openSUSE-SU-2026:10529-1: moderate: tekton-cli-0.44.1-1.1 on GA media


# tekton-cli-0.44.1-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10529-1
Rating: moderate

Cross-References:

* CVE-2026-33211
* CVE-2026-34986

Affected Products:

* openSUSE Tumbleweed

An update that solves 2 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the tekton-cli-0.44.1-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* tekton-cli 0.44.1-1.1
* tekton-cli-bash-completion 0.44.1-1.1
* tekton-cli-fish-completion 0.44.1-1.1
* tekton-cli-zsh-completion 0.44.1-1.1

## References:

* https://www.suse.com/security/cve/CVE-2026-33211.html
* https://www.suse.com/security/cve/CVE-2026-34986.html



openSUSE-SU-2026:10527-1: moderate: perl-XML-Parser-2.570.0-1.1 on GA media


# perl-XML-Parser-2.570.0-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10527-1
Rating: moderate

Cross-References:

* CVE-2006-10002
* CVE-2006-10003

CVSS scores:

* CVE-2006-10002 ( SUSE ): 8.6 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
* CVE-2006-10002 ( SUSE ): 8.8 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N
* CVE-2006-10003 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
* CVE-2006-10003 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves 2 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the perl-XML-Parser-2.570.0-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* perl-XML-Parser 2.570.0-1.1

## References:

* https://www.suse.com/security/cve/CVE-2006-10002.html
* https://www.suse.com/security/cve/CVE-2006-10003.html



openSUSE-SU-2026:10524-1: moderate: crun-1.27-1.1 on GA media


# crun-1.27-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10524-1
Rating: moderate

Cross-References:

* CVE-2026-30892

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the crun-1.27-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* crun 1.27-1.1

## References:

* https://www.suse.com/security/cve/CVE-2026-30892.html



openSUSE-SU-2026:10522-1: moderate: python315-3.15.0~a8-1.1 on GA media


# python315-3.15.0~a8-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10522-1
Rating: moderate

Cross-References:

* CVE-2026-2297
* CVE-2026-3479

CVSS scores:

* CVE-2026-2297 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
* CVE-2026-2297 ( SUSE ): 5.7 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N
* CVE-2026-3479 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
* CVE-2026-3479 ( SUSE ): 2 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves 2 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the python315-3.15.0~a8-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* python315 3.15.0~a8-1.1
* python315-curses 3.15.0~a8-1.1
* python315-dbm 3.15.0~a8-1.1
* python315-idle 3.15.0~a8-1.1
* python315-profiling 3.15.0~a8-1.1
* python315-tk 3.15.0~a8-1.1
* python315-x86-64-v3 3.15.0~a8-1.1

## References:

* https://www.suse.com/security/cve/CVE-2026-2297.html
* https://www.suse.com/security/cve/CVE-2026-3479.html