SUSE-IU-2026:1153-1: Security update of suse/sle-micro/base-5.5

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Tue Feb 24 08:05:37 UTC 2026


SUSE Image Update Advisory: suse/sle-micro/base-5.5
-----------------------------------------------------------------
Image Advisory ID : SUSE-IU-2026:1153-1
Image Tags        : suse/sle-micro/base-5.5:2.0.4 , suse/sle-micro/base-5.5:2.0.4-5.8.242 , suse/sle-micro/base-5.5:latest
Image Release     : 5.8.242
Severity          : important
Type              : security
References        : 1256525 1256526 1257364 1257365 1258020 CVE-2025-28162 CVE-2025-28164
                        CVE-2026-22695 CVE-2026-22801 CVE-2026-25646 
-----------------------------------------------------------------

The container suse/sle-micro/base-5.5 was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: SUSE-SU-2026:596-1
Released:    Mon Feb 23 16:57:20 2026
Summary:     Security update for libpng16
Type:        security
Severity:    important
References:  1256525,1256526,1257364,1257365,1258020,CVE-2025-28162,CVE-2025-28164,CVE-2026-22695,CVE-2026-22801,CVE-2026-25646
This update for libpng16 fixes the following issues:

- CVE-2025-28162: memory leaks when running `pngimage` (bsc#1257364).
- CVE-2025-28164: memory leaks when running `pngimage` (bsc#1257365).
- CVE-2026-22695: heap buffer over-read in png_image_finish_read (bsc#1256525).
- CVE-2026-22801: integer truncation causing heap buffer over-read in png_image_write_* (bsc#1256526).
- CVE-2026-25646: heap buffer overflow vulnerability in png_set_dither/png_set_quantize (bsc#1258020).


The following package changes have been done:

- libpng16-16-1.6.34-150000.3.19.1 updated


More information about the sle-container-updates mailing list