SUSE-RU-2026:3626-1: moderate: Recommended update for himmelblau
SLE-UPDATES
null at suse.de
Mon Aug 17 16:30:50 UTC 2026
# Recommended update for himmelblau
Announcement ID: SUSE-RU-2026:3626-1
Release Date: 2026-08-17T11:22:14Z
Rating: moderate
References:
* bsc#1273910
* bsc#1273911
* bsc#1273912
Affected Products:
* Basesystem Module 15-SP7
* SUSE Linux Enterprise Desktop 15 SP7
* SUSE Linux Enterprise Real Time 15 SP7
* SUSE Linux Enterprise Server 15 SP7
* SUSE Linux Enterprise Server for SAP Applications 15 SP7
An update that has three fixes can now be installed.
## Description:
This update for himmelblau fixes the following issues:
* Update to version 2.3.14+git0.e23b4c54:
* security: gate the o365 URL handler on a Microsoft 365 origin allowlist.
(bsc#1273910).
* fix(nss): avoid locked shadow entries
* fix(deps): update libhimmelblau lockfile
* fix(pam): make account denials terminal
* debian: make the pam_allow_groups denial terminal in the account phase
* security: reject RFC2307 ids in systemd's dynamic user range. (bsc#1273911).
* security: bind PamChangeAuthToken to the connecting peer. (bsc#1273912).
* Update cargo vet audits for backport
## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* Basesystem Module 15-SP7
zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2026-3626=1
## Package List:
* Basesystem Module 15-SP7 (aarch64 x86_64)
* pam-himmelblau-2.3.14+git0.e23b4c54-150700.3.25.1
* himmelblau-2.3.14+git0.e23b4c54-150700.3.25.1
* himmelblau-debuginfo-2.3.14+git0.e23b4c54-150700.3.25.1
* libnss_himmelblau2-2.3.14+git0.e23b4c54-150700.3.25.1
* Basesystem Module 15-SP7 (noarch)
* himmelblau-sshd-config-2.3.14+git0.e23b4c54-150700.3.25.1
## References:
* https://bugzilla.suse.com/show_bug.cgi?id=1273910
* https://bugzilla.suse.com/show_bug.cgi?id=1273911
* https://bugzilla.suse.com/show_bug.cgi?id=1273912
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.suse.com/pipermail/sle-updates/attachments/20260817/afaae5c9/attachment.htm>
More information about the sle-updates
mailing list