SUSE-IU-2026:5874-1: Security update of suse/sl-micro/6.1/kvm-os-container

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Fri Jul 24 11:24:56 UTC 2026


SUSE Image Update Advisory: suse/sl-micro/6.1/kvm-os-container
-----------------------------------------------------------------
Image Advisory ID : SUSE-IU-2026:5874-1
Image Tags        : suse/sl-micro/6.1/kvm-os-container:2.2.1 , suse/sl-micro/6.1/kvm-os-container:2.2.1-5.160 , suse/sl-micro/6.1/kvm-os-container:latest
Image Release     : 5.160
Severity          : important
Type              : security
References        : 1228081 1254293 1256427 1259418 1259650 1259697 1259803 1262684
                        1269622 CVE-2026-29111 CVE-2026-30922 CVE-2026-4105 CVE-2026-41989
                        CVE-2026-41991 
-----------------------------------------------------------------

The container suse/sl-micro/6.1/kvm-os-container was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: 637
Released:    Fri Jul 24 09:24:05 2026
Summary:     Security update for gzip
Type:        security
Severity:    important
References:  1259803,1269622,CVE-2026-30922,CVE-2026-41991
This update for gzip fixes the following issue

- CVE-2026-41991: insecure temporary file handling in the `gzexe` utility when the `mktemp` utility is not available in
  a user's `PATH` (bsc#1269622).

-----------------------------------------------------------------
Advisory ID: 638
Released:    Fri Jul 24 09:28:58 2026
Summary:     Security update for libgcrypt
Type:        security
Severity:    moderate
References:  1228081,1254293,1256427,1259418,1259650,1259697,1262684,CVE-2026-29111,CVE-2026-4105,CVE-2026-41989
This update for libgcrypt fixes the following issue:

- CVE-2026-41989: crafted ECDH ciphertext can lead denial of service (bsc#1262684).


The following package changes have been done:

- libgcrypt20-1.10.3-slfo.1.1_4.1 updated
- gzip-1.13-slfo.1.1_3.1 updated
- SL-Micro-release-6.1-slfo.1.12.56 updated
- container:SL-Micro-base-container-2.2.1-5.157 updated


More information about the sle-container-updates mailing list