SUSE-IU-2026:2120-1: Security update of suse/sl-micro/6.1/kvm-os-container

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Fri Apr 10 07:28:58 UTC 2026


SUSE Image Update Advisory: suse/sl-micro/6.1/kvm-os-container
-----------------------------------------------------------------
Image Advisory ID : SUSE-IU-2026:2120-1
Image Tags        : suse/sl-micro/6.1/kvm-os-container:2.2.1 , suse/sl-micro/6.1/kvm-os-container:2.2.1-5.114 , suse/sl-micro/6.1/kvm-os-container:latest
Image Release     : 5.114
Severity          : important
Type              : security
References        : 1243581 1248410 1248687 1258637 1260078 1260082 142461 544339
                        CVE-2025-46836 CVE-2026-26996 CVE-2026-4437 CVE-2026-4438 
-----------------------------------------------------------------

The container suse/sl-micro/6.1/kvm-os-container was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: 478
Released:    Thu Apr  9 13:38:10 2026
Summary:     Security update for glibc
Type:        security
Severity:    important
References:  1243581,1248410,1248687,1258637,1260078,1260082,142461,544339,CVE-2025-46836,CVE-2026-26996,CVE-2026-4437,CVE-2026-4438
This update for glibc fixes the following issues:

- CVE-2026-4437: incorrect DNS response parsing via crafted DNS server response (bsc#1260078).
- CVE-2026-4438: invalid DNS hostname returned via gethostbyaddr functions (bsc#1260082).


The following package changes have been done:

- glibc-2.38-slfo.1.1_7.1 updated
- SL-Micro-release-6.1-slfo.1.12.28 updated
- glibc-locale-base-2.38-slfo.1.1_7.1 updated
- container:SL-Micro-base-container-2.2.1-5.112 updated


More information about the sle-container-updates mailing list