SUSE-IU-2026:2726-1: Security update of suse/sl-micro/6.2/kvm-os-container

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Thu Apr 30 07:55:48 UTC 2026


SUSE Image Update Advisory: suse/sl-micro/6.2/kvm-os-container
-----------------------------------------------------------------
Image Advisory ID : SUSE-IU-2026:2726-1
Image Tags        : suse/sl-micro/6.2/kvm-os-container:2.3.0 , suse/sl-micro/6.2/kvm-os-container:2.3.0-7.115 , suse/sl-micro/6.2/kvm-os-container:latest
Image Release     : 7.115
Severity          : moderate
Type              : security
References        : 1246974 1249375 1258045 1258049 1258054 1258080 1258081 1260589
                        CVE-2025-8114 CVE-2025-8277 CVE-2026-0964 CVE-2026-0965 CVE-2026-0966
                        CVE-2026-0967 CVE-2026-0968 CVE-2026-25645 
-----------------------------------------------------------------

The container suse/sl-micro/6.2/kvm-os-container was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: 655
Released:    Wed Apr  8 16:11:12 2026
Summary:     Security update for python-requests
Type:        security
Severity:    moderate
References:  1246974,1249375,1258045,1258049,1258054,1258080,1258081,1260589,CVE-2025-8114,CVE-2025-8277,CVE-2026-0964,CVE-2026-0965,CVE-2026-0966,CVE-2026-0967,CVE-2026-0968,CVE-2026-25645
This update for python-requests fixes the following issue:

- CVE-2026-25645: `extract_zipped_paths()` uses predictable filenames when extracting files from zip archives and reuses
  target files that already exist without validation (bsc#1260589).


The following package changes have been done:

- libssh-config-0.11.4-160000.1.1 updated
- libssh4-0.11.4-160000.1.1 updated
- container:suse-sl-micro-6.2-base-os-container-latest-f72ddbb8b300f42c990d89d076f6ff1f645ff9728db1deee3659f3860132e524-0 updated


More information about the sle-container-updates mailing list