SUSE-IU-2026:6850-1: Security update of suse/sle-micro/kvm-5.5
sle-container-updates at lists.suse.com
sle-container-updates at lists.suse.com
Tue Sep 8 18:37:04 UTC 2026
SUSE Image Update Advisory: suse/sle-micro/kvm-5.5
-----------------------------------------------------------------
Image Advisory ID : SUSE-IU-2026:6850-1
Image Tags : suse/sle-micro/kvm-5.5:2.0.4 , suse/sle-micro/kvm-5.5:2.0.4-3.5.607 , suse/sle-micro/kvm-5.5:latest
Image Release : 3.5.607
Severity : important
Type : security
References : 1224868 1267696 1276764 CVE-2026-10805 CVE-2026-19685
-----------------------------------------------------------------
The container suse/sle-micro/kvm-5.5 was updated. The following patches have been included in this update:
-----------------------------------------------------------------
Advisory ID: SUSE-SU-2026:4063-1
Released: Tue Sep 8 09:01:59 2026
Summary: Security update for NetworkManager
Type: security
Severity: important
References: 1224868,1267696,1276764,CVE-2026-10805,CVE-2026-19685
This update for NetworkManager fixes the following issues:
- CVE-2026-10805: local privilege escalation via malformed MUD URLs in dhclient backend (bsc#1267696).
- CVE-2026-19685: missing user ownership checks for 802.1X directory properties can allow WPA-Enterprise server
certificate validation bypass (bsc#1276764).
Changes for NetworkManager:
- Add config-server subpackage (bsc#1224868).
The following package changes have been done:
- libnm0-1.38.6-150500.3.10.1 updated
- NetworkManager-1.38.6-150500.3.10.1 updated
- container:suse-sle-micro-base-5.5-latest-2.0.4-5.8.315 updated
More information about the sle-container-updates
mailing list