SUSE-IU-2026:7087-1: Security update of suse/sl-micro/6.1/kvm-os-container

sle-container-updates at lists.suse.com sle-container-updates at lists.suse.com
Thu Sep 17 08:47:05 UTC 2026


SUSE Image Update Advisory: suse/sl-micro/6.1/kvm-os-container
-----------------------------------------------------------------
Image Advisory ID : SUSE-IU-2026:7087-1
Image Tags        : suse/sl-micro/6.1/kvm-os-container:2.2.1 , suse/sl-micro/6.1/kvm-os-container:2.2.1-5.192 , suse/sl-micro/6.1/kvm-os-container:latest
Image Release     : 5.192
Severity          : important
Type              : security
References        : 1265578 1265580 1265581 1265582 1265583 1265584 1265585 1265586
                        1265587 1265588 1265589 1275441 CVE-2026-32792 CVE-2026-33278
                        CVE-2026-40622 CVE-2026-41292 CVE-2026-42534 CVE-2026-42923 CVE-2026-42944
                        CVE-2026-42959 CVE-2026-42960 CVE-2026-44390 CVE-2026-44608 CVE-2026-72693
-----------------------------------------------------------------

The container suse/sl-micro/6.1/kvm-os-container was updated. The following patches have been included in this update:

-----------------------------------------------------------------
Advisory ID: 732
Released:    Wed Sep 16 11:16:27 2026
Summary:     Security update for kbd
Type:        security
Severity:    important
References:  1265578,1265580,1265581,1265582,1265583,1265584,1265585,1265586,1265587,1265588,1265589,1275441,CVE-2026-32792,CVE-2026-33278,CVE-2026-40622,CVE-2026-41292,CVE-2026-42534,CVE-2026-42923,CVE-2026-42944,CVE-2026-42959,CVE-2026-42960,CVE-2026-44390,CVE-2026-44608,CVE-2026-72693
This update for kbd fixes the following issue:

- CVE-2026-72693: local privilege escalation in `openvt` due to incorrect process owner verification that allows
  `passwordless` root login (bsc#1275441).


The following package changes have been done:

- kbd-2.6.4-slfo.1.1_2.1 updated
- SL-Micro-release-6.1-slfo.1.12.76 updated
- container:SL-Micro-base-container-2.2.1-5.190 updated


More information about the sle-container-updates mailing list