SUSE 5547 Published by

Several security updates have been released for SUSE Linux, addressing various vulnerabilities in different packages. The affected packages include python314, ImageMagick, xen, python311-djangorestframework, python311-pypdf, icinga2, dirmngr, and logback, all of which are rated as moderate severity. These updates aim to improve the security of SUSE Linux by patching known vulnerabilities in these packages. Users running SUSE Linux on General Availability (GA) media should consider installing these security updates to protect their systems from potential threats.

openSUSE-SU-2026:10117-1: moderate: python314-3.14.2-2.1 on GA media
openSUSE-SU-2026:10119-1: moderate: ImageMagick-7.1.2.13-2.1 on GA media
openSUSE-SU-2026:10118-1: moderate: xen-4.21.0_04-1.1 on GA media
openSUSE-SU-2026:10115-1: moderate: python311-djangorestframework-3.16.1-2.1 on GA media
openSUSE-SU-2026:10116-1: moderate: python311-pypdf-6.6.2-1.1 on GA media
openSUSE-SU-2026:10113-1: moderate: icinga2-2.15.2-1.1 on GA media
openSUSE-SU-2026:10112-1: moderate: dirmngr-2.5.17-1.1 on GA media
openSUSE-SU-2026:10114-1: moderate: logback-1.2.13-2.1 on GA media




openSUSE-SU-2026:10117-1: moderate: python314-3.14.2-2.1 on GA media


# python314-3.14.2-2.1 on GA media

Announcement ID: openSUSE-SU-2026:10117-1
Rating: moderate

Cross-References:

* CVE-2025-11468

CVSS scores:

* CVE-2025-11468 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
* CVE-2025-11468 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the python314-3.14.2-2.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* python314 3.14.2-2.1
* python314-curses 3.14.2-2.1
* python314-dbm 3.14.2-2.1
* python314-idle 3.14.2-2.1
* python314-tk 3.14.2-2.1
* python314-x86-64-v3 3.14.2-2.1

## References:

* https://www.suse.com/security/cve/CVE-2025-11468.html



openSUSE-SU-2026:10119-1: moderate: ImageMagick-7.1.2.13-2.1 on GA media


# ImageMagick-7.1.2.13-2.1 on GA media

Announcement ID: openSUSE-SU-2026:10119-1
Rating: moderate

Cross-References:

* CVE-2026-22770
* CVE-2026-23874
* CVE-2026-23876
* CVE-2026-23952

CVSS scores:

* CVE-2026-22770 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H
* CVE-2026-22770 ( SUSE ): 8.3 CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N
* CVE-2026-23874 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
* CVE-2026-23874 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
* CVE-2026-23876 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
* CVE-2026-23876 ( SUSE ): 9.2 CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
* CVE-2026-23952 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
* CVE-2026-23952 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves 4 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the ImageMagick-7.1.2.13-2.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* ImageMagick 7.1.2.13-2.1
* ImageMagick-config-7-SUSE 7.1.2.13-2.1
* ImageMagick-devel 7.1.2.13-2.1
* ImageMagick-devel-32bit 7.1.2.13-2.1
* ImageMagick-doc 7.1.2.13-2.1
* ImageMagick-extra 7.1.2.13-2.1
* libMagick++-7_Q16HDRI5 7.1.2.13-2.1
* libMagick++-7_Q16HDRI5-32bit 7.1.2.13-2.1
* libMagick++-devel 7.1.2.13-2.1
* libMagick++-devel-32bit 7.1.2.13-2.1
* libMagickCore-7_Q16HDRI10 7.1.2.13-2.1
* libMagickCore-7_Q16HDRI10-32bit 7.1.2.13-2.1
* libMagickWand-7_Q16HDRI10 7.1.2.13-2.1
* libMagickWand-7_Q16HDRI10-32bit 7.1.2.13-2.1
* perl-PerlMagick 7.1.2.13-2.1

## References:

* https://www.suse.com/security/cve/CVE-2026-22770.html
* https://www.suse.com/security/cve/CVE-2026-23874.html
* https://www.suse.com/security/cve/CVE-2026-23876.html
* https://www.suse.com/security/cve/CVE-2026-23952.html



openSUSE-SU-2026:10118-1: moderate: xen-4.21.0_04-1.1 on GA media


# xen-4.21.0_04-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10118-1
Rating: moderate

Cross-References:

* CVE-2025-58150
* CVE-2026-23553

CVSS scores:

* CVE-2025-58150 ( SUSE ): 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
* CVE-2025-58150 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
* CVE-2026-23553 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
* CVE-2026-23553 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves 2 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the xen-4.21.0_04-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* xen 4.21.0_04-1.1
* xen-devel 4.21.0_04-1.1
* xen-doc-html 4.21.0_04-1.1
* xen-libs 4.21.0_04-1.1
* xen-tools 4.21.0_04-1.1
* xen-tools-domU 4.21.0_04-1.1
* xen-tools-xendomains-wait-disk 4.21.0_04-1.1

## References:

* https://www.suse.com/security/cve/CVE-2025-58150.html
* https://www.suse.com/security/cve/CVE-2026-23553.html



openSUSE-SU-2026:10115-1: moderate: python311-djangorestframework-3.16.1-2.1 on GA media


# python311-djangorestframework-3.16.1-2.1 on GA media

Announcement ID: openSUSE-SU-2026:10115-1
Rating: moderate

Cross-References:

* CVE-2024-21520

CVSS scores:

* CVE-2024-21520 ( SUSE ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the python311-djangorestframework-3.16.1-2.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* python311-djangorestframework 3.16.1-2.1
* python312-djangorestframework 3.16.1-2.1
* python313-djangorestframework 3.16.1-2.1

## References:

* https://www.suse.com/security/cve/CVE-2024-21520.html



openSUSE-SU-2026:10116-1: moderate: python311-pypdf-6.6.2-1.1 on GA media


# python311-pypdf-6.6.2-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10116-1
Rating: moderate

Cross-References:

* CVE-2026-24688

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the python311-pypdf-6.6.2-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* python311-pypdf 6.6.2-1.1
* python312-pypdf 6.6.2-1.1
* python313-pypdf 6.6.2-1.1

## References:

* https://www.suse.com/security/cve/CVE-2026-24688.html



openSUSE-SU-2026:10113-1: moderate: icinga2-2.15.2-1.1 on GA media


# icinga2-2.15.2-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10113-1
Rating: moderate

Cross-References:

* CVE-2026-24413

CVSS scores:

* CVE-2026-24413 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
* CVE-2026-24413 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the icinga2-2.15.2-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* icinga2 2.15.2-1.1
* icinga2-bin 2.15.2-1.1
* icinga2-common 2.15.2-1.1
* icinga2-doc 2.15.2-1.1
* icinga2-ido-mysql 2.15.2-1.1
* icinga2-ido-pgsql 2.15.2-1.1
* nano-icinga2 2.15.2-1.1
* vim-icinga2 2.15.2-1.1

## References:

* https://www.suse.com/security/cve/CVE-2026-24413.html



openSUSE-SU-2026:10112-1: moderate: dirmngr-2.5.17-1.1 on GA media


# dirmngr-2.5.17-1.1 on GA media

Announcement ID: openSUSE-SU-2026:10112-1
Rating: moderate

Cross-References:

* CVE-2026-24881
* CVE-2026-24882
* CVE-2026-24883

CVSS scores:

* CVE-2026-24881 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
* CVE-2026-24881 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
* CVE-2026-24882 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
* CVE-2026-24882 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
* CVE-2026-24883 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
* CVE-2026-24883 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Affected Products:

* openSUSE Tumbleweed

An update that solves 3 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the dirmngr-2.5.17-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* dirmngr 2.5.17-1.1
* gpg2 2.5.17-1.1
* gpg2-lang 2.5.17-1.1
* gpg2-tpm 2.5.17-1.1

## References:

* https://www.suse.com/security/cve/CVE-2026-24881.html
* https://www.suse.com/security/cve/CVE-2026-24882.html
* https://www.suse.com/security/cve/CVE-2026-24883.html



openSUSE-SU-2026:10114-1: moderate: logback-1.2.13-2.1 on GA media


# logback-1.2.13-2.1 on GA media

Announcement ID: openSUSE-SU-2026:10114-1
Rating: moderate

Cross-References:

* CVE-2026-1225

CVSS scores:

* CVE-2026-1225 ( SUSE ): 6.4 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the logback-1.2.13-2.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* logback 1.2.13-2.1
* logback-access 1.2.13-2.1
* logback-examples 1.2.13-2.1
* logback-javadoc 1.2.13-2.1

## References:

* https://www.suse.com/security/cve/CVE-2026-1225.html