<div class="container">
<h1>Security update for libheif</h1>
<table class="table table-striped table-bordered">
<tbody>
<tr>
<th>Announcement ID:</th>
<td>SUSE-SU-2026:2622-1</td>
</tr>
<tr>
<th>Release Date:</th>
<td>2026-06-24T11:55:37Z</td>
</tr>
<tr>
<th>Rating:</th>
<td>important</td>
</tr>
<tr>
<th>References:</th>
<td>
<ul>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1255735">bsc#1255735</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1259544">bsc#1259544</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265874">bsc#1265874</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265875">bsc#1265875</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265876">bsc#1265876</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265877">bsc#1265877</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265878">bsc#1265878</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265879">bsc#1265879</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265979">bsc#1265979</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265980">bsc#1265980</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265981">bsc#1265981</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265982">bsc#1265982</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265983">bsc#1265983</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265987">bsc#1265987</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265988">bsc#1265988</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265989">bsc#1265989</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265990">bsc#1265990</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265992">bsc#1265992</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265995">bsc#1265995</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265996">bsc#1265996</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265997">bsc#1265997</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1266281">bsc#1266281</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1266282">bsc#1266282</a>
</li>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1267455">bsc#1267455</a>
</li>
</ul>
</td>
</tr>
<tr>
<th>
Cross-References:
</th>
<td>
<ul>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2025-68431.html">CVE-2025-68431</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-32738.html">CVE-2026-32738</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-32739.html">CVE-2026-32739</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-32740.html">CVE-2026-32740</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-32741.html">CVE-2026-32741</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-32814.html">CVE-2026-32814</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-32882.html">CVE-2026-32882</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-3949.html">CVE-2026-3949</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-3950.html">CVE-2026-3950</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-41069.html">CVE-2026-41069</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-41071.html">CVE-2026-41071</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-47178.html">CVE-2026-47178</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-47247.html">CVE-2026-47247</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-47251.html">CVE-2026-47251</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-47254.html">CVE-2026-47254</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-47709.html">CVE-2026-47709</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-47714.html">CVE-2026-47714</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-48029.html">CVE-2026-48029</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-49271.html">CVE-2026-49271</a>
</li>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2026-50142.html">CVE-2026-50142</a>
</li>
</ul>
</td>
</tr>
<tr>
<th>CVSS scores:</th>
<td>
<ul class="list-group">
<li class="list-group-item">
<span class="cvss-reference">CVE-2025-68431</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.8</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2025-68431</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">5.5</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2025-68431</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">6.5</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2025-68431</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">7.1</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32738</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.0</span>
<span class="cvss-vector">CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32738</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.5</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32738</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">6.5</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32738</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">6.5</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32739</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">5.7</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32739</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">5.5</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32739</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">6.5</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32740</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">8.5</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32740</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">7.8</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32740</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">8.8</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32741</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.9</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32741</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.1</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32741</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">7.1</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32814</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">5.7</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32814</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">5.5</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32814</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">6.5</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32882</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">7.0</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32882</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.1</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-32882</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">7.1</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-3949</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">4.8</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-3949</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">3.3</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-3949</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">1.9</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-3949</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">3.3</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-3950</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">4.8</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-3950</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">3.3</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-3950</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">1.9</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-3950</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">3.3</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-41069</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.9</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-41069</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">5.5</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-41069</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">6.5</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-41071</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">7.0</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-41071</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.8</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-41071</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">5.1</span>
<span class="cvss-vector">CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-41071</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">8.1</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47178</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">8.6</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47178</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">8.4</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47247</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.9</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47247</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.2</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47251</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.8</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47251</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.1</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47254</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">7.0</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47254</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.8</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47709</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.9</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47709</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.2</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47714</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">7.0</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-47714</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.1</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-48029</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">7.0</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-48029</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.1</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-49271</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.7</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-49271</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">5.5</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-49271</span>
<span class="cvss-source">
(
NVD
):
</span>
<span class="cvss-score">6.5</span>
<span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-50142</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.9</span>
<span class="cvss-vector">CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N</span>
</li>
<li class="list-group-item">
<span class="cvss-reference">CVE-2026-50142</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.2</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H</span>
</li>
</ul>
</td>
</tr>
<tr>
<th>Affected Products:</th>
<td>
<ul class="list-group">
<li class="list-group-item">Desktop Applications Module 15-SP7</li>
<li class="list-group-item">SUSE Linux Enterprise Desktop 15 SP7</li>
<li class="list-group-item">SUSE Linux Enterprise Real Time 15 SP7</li>
<li class="list-group-item">SUSE Linux Enterprise Server 15 SP7</li>
<li class="list-group-item">SUSE Linux Enterprise Server for SAP Applications 15 SP7</li>
<li class="list-group-item">SUSE Package Hub 15 15-SP7</li>
</ul>
</td>
</tr>
</tbody>
</table>
<p>An update that solves 20 vulnerabilities and has four security fixes can now be installed.</p>
<h2>Description:</h2>
<p>This update for libheif fixes the following issues</p>
<p>Update to 1.23.0:</p>
<ul>
<li>CVE-2025-68431: heap buffer over-read in <code>HeifPixelImage: overlay()</code> via crafted HEIF that exercises the overlay image
item (bsc#1255735).</li>
<li>CVE-2026-3950: manipulation of the component stsz/stts can lead to out-of-bounds read (bsc#1259544).</li>
<li>CVE-2026-32738: Heap OOB Read / SEGV Crash via Zero samples_per_chunk in stsc (bsc#1265874).</li>
<li>CVE-2026-32739: Infinite Loop DoS in stts Sample Duration Lookup (bsc#1265875).</li>
<li>CVE-2026-32740: Heap-Buffer-Overflow Write in Grid Tile Chroma Compositing (bsc#1265876).</li>
<li>CVE-2026-32741: heap buffer overflow in decode_mask_image() (bsc#1265877).</li>
<li>CVE-2026-32814: Uninitialized Heap Memory Information Leak via Failed Grid Tiles (bsc#1265878).</li>
<li>CVE-2026-32882: Heap Buffer OOB Read in overlay compositing due to wrong alpha stride (bsc#1265879).</li>
<li>CVE-2026-41069: Out-of-bounds vector access leading to invalid dereference (bsc#1265979).</li>
<li>CVE-2026-41071: Heap buffer over-read in SampleAuxInfoReader via crafted HEIF sequence file with mismatched saiz
sample count (bsc#1265980).</li>
<li>CVE-2026-47178: Heap Out Of Bounds Write in unci subsystem (bsc#1265981).</li>
<li>CVE-2026-47247: Heap Information Disclosure via Grid Image Gap + Uninitialized Pixel Plane Allocation (bsc#1265982).</li>
<li>CVE-2026-47251: integer overflow bypass in vvdec_push_data2 (bsc#1265983).</li>
<li>CVE-2026-47254: Heap Buffer Overflow in <code>Track: get_next_sample_raw_data()</code> -- OOB Chunk Vector Access (bsc#1265987).</li>
<li>CVE-2026-47709: NULL pointer dereference in heif_image_handle_get_image_tiling for malformed unci image missing ispe
(bsc#1265988).</li>
<li>CVE-2026-47714: Integer overflow in inline mask size calculation causes undersized buffer allocation (bsc#1265989).</li>
<li>CVE-2026-48029: heap OOB read in ImageItem_Grid: decode_grid_tile via irot-induced tile-coordinate underflow
(bsc#1265990).</li>
<li>CVE-2026-49271: Wrapped icef compressed-unit range check causes out-of-bounds read in uncompressed HEIF decoder
(bsc#1266282).</li>
<li>CVE-2026-50142: unbounded heap allocation in HEIF sequence parser (bsc#1267455).</li>
<li>Heap buffer overflow via uint32_t stride overflow in image plane allocation (+ 2 additional instances) (bsc#1265997).</li>
<li>Incorrect byte-count initialization in BitstreamRange constructor allows container-boundary check bypass
(bsc#1265995).</li>
<li>Integer Overflow in SampleAuxInfoReader Offset Calculation (bsc#1265992).</li>
<li>Out-of-bounds read and assertion-based DoS in EXIF parsing (find_exif_tag / read32) with short EXIF TIFF payload
(bsc#1265996).</li>
<li>Out-of-bounds write in inline mask region API when source mask exceeds declared region (bsc#1266281).</li>
</ul>
<p>Changes for libheif:</p>
<ul>
<li>version update to 1.23.0:</li>
<li>add API functions to read and write metadata:
ambient viewing environment
nominal diffuse white luminance</li>
<li>adds a output_image_nclx_profile_passthrough option to heif_decoding_options</li>
<li>CVE-2026-50142 (GHSA-jvmp-j3cw-84mh) - unbounded heap allocation in HEIF
sequence parser (stsz fixed-size mode missing bound check)</li>
<li>version update to 1.22.2:</li>
<li>build issues with OpenJPEG plugin (#1813)</li>
<li>non-plain C in header (#1812)</li>
<li>CVE-2026-49271 (GHSA-r7qj-cg5r-r6vf) - Wrapped icef compressed-unit
range check causes out-of-bounds read in uncompressed HEIF decoder</li>
<li>CVE TBD (GHSA-5hqq-636x-r3cr) - Out-of-bounds write in inline mask
region API when source mask exceeds declared region</li>
<li>update to 1.22.0:</li>
<li>This is a large release with substantial new functionality,
mainly focusing on generalized image formats (e.g., multi-
spectral images) and a reworked implementation of ISO/IEC
23001-17 (lossless image codec).</li>
<li>HDR up to 64 bpp</li>
<li>Multi-component images with arbitrary component layouts
(multi-spectral images, arbitrary non-visual data)</li>
<li>Filter-array (Bayer / mosaic) images, with debayering in
color transformation pipeline</li>
<li>Metadata: chroma-sample location (cloc), sample non-
uniformity (snuc), sensor bad-pixel map (sbpm), polarization
pattern (splz)</li>
<li>heif-dec can now convert to WebP (thanks to @torusrxxx).</li>
<li>heif-enc can now accept input from WebP, HEIF, pure raw files
(including floating point pixel data), and CMYK JPEG
(converted to RGB).</li>
<li>TIFF input can now read many TIFF formats used in geospatial
imaging, like: 16-bit, signed integers, float samples, tiled
TIFFs, GeoTIFF overview images, CMYK JPEG, YCbCr-as-JPEG.
TIFFs with image tiling and multi-resolution layers are now
reproduced as HEIFs when converted.</li>
<li>PNG decoder/encoder: cICP, cLLI, and mDCV chunk support
(#1697).</li>
<li>heif-dec: auto-correct option to fix known input errors (e.g.
mismatched NCLX/VUI).</li>
<li>Image, Track, Sequence samples, image component GIMI content
IDs</li>
<li>Embedding of Turtle (.ttl) metadata files; automatic parsing
of GIMI content IDs from Turtle</li>
<li>AOM encoder plugin now auto-selects IQ tune mode</li>
<li>mini-box syntax updated to the current HEIF version 4 draft
(thanks @bradh for the initial implementation)</li>
<li>unif brand (globally-unique-ID) support</li>
<li>OMAF (omnidirectional images): indicate ISO/IEC 23000-22
spherical/omnidirectional image projection</li>
<li>alpha bit-depth tracked through the color-conversion pipeline</li>
<li>CVE-2026-32738 (GHSA-7f2h-cmpf-v9ww) : Heap OOB Read / SEGV
Crash via Zero samples_per_chunk in stsc (bsc#1265874)</li>
<li>CVE-2026-32739 (GHSA-j9g7-q9hv-gq8c) : Infinite Loop DoS in
stts Sample Duration Lookup (bsc#1265875)</li>
<li>CVE-2026-32740 (GHSA-frfr-f3vg-2g6j) : Heap-Buffer-Overflow
Write in Grid Tile Chroma Compositing (bsc#1265876)</li>
<li>CVE-2026-32741 (GHSA-j3w5-7whq-p37q) : heap buffer overflow
in decode_mask_image() (bsc#1265877)</li>
<li>CVE-2026-32814 (GHSA-4m8r-34pg-rvwc) : Uninitialized Heap
Memory Information Leak via Failed Grid Tiles (bsc#1265878)</li>
<li>CVE-2026-32882 (GHSA-hg7q-rjr2-8x46) : Heap Buffer OOB Read
in overlay compositing due to wrong alpha stride (bsc#1265879)</li>
<li>CVE-2026-41069 (GHSA-p82x-fpmv-576r) : Out-of-bounds vector
access leading to invalid dereference (bsc#1265979)</li>
<li>CVE-2026-41071 (GHSA-xj92-xjff-h8w3) : Heap buffer over-read
in SampleAuxInfoReader via crafted HEIF sequence file with
mismatched saiz sample count (bsc#1265980)</li>
<li>CVE-2026-47178 (GHSA-5x55-x5pf-9c6g) : Heap Out Of Bounds
Write in unci subsystem (bsc#1265981)</li>
<li>CVE-2026-47247 (GHSA-2vh6-whr3-cmq3) : Heap Information
Disclosure via Grid Image Gap + Uninitialized Pixel Plane
Allocation (bsc#1265982)</li>
<li>CVE-2026-47251 (GHSA-p6q9-fhf2-vj9v) : Incomplete fix for
(bsc#1265983)
CVE-2026-3949: integer overflow bypass in vvdec_push_data2</li>
<li>CVE-2026-47254 (GHSA-wqjg-4x9g-6cvg) : Heap Buffer Overflow
in <code>Track::get_next_sample_raw_data()</code> -- OOB Chunk Vector
Access (bsc#1265987)</li>
<li>CVE-2026-47709 (GHSA-4h72-vqgp-9376) : NULL pointer
dereference in heif_image_handle_get_image_tiling for
malformed unci image missing ispe
(bsc#1265988)</li>
<li>CVE-2026-47714 (GHSA-h4wm-6wwf-qvhx) : Integer overflow in
inline mask size calculation causes undersized buffer
allocation (bsc#1265989)</li>
<li>CVE-2026-48029 (GHSA-6x5f-qchq-cxqv) : heap OOB read in
ImageItem_Grid::decode_grid_tile via irot-induced tile-
coordinate underflow (bsc#1265990)</li>
<li>(GHSA-95jx-g5vf-cpp8) : Integer Overflow in
SampleAuxInfoReader Offset Calculation (bsc#1265992)</li>
<li>(GHSA-p4r6-6972-g26m) : Incorrect byte-count initialization
in BitstreamRange constructor allows container-boundary check
bypass (bsc#1265995)</li>
<li>(GHSA-jh2w-m72q-q595) : Out-of-bounds read and assertion-
based DoS in EXIF parsing (find_exif_tag / read32) with short
EXIF TIFF payload (bsc#1265996)</li>
<li>(GHSA-9h96-c44j-jpq9) : Heap buffer overflow via uint32_t
stride overflow in image plane allocation (bsc#1265997)</li>
<li>
<h2>Build / CI</h2>
</li>
<li>requires C++20</li>
<li>oss-fuzz integration overhauled</li>
<li>fuzzers for tile API, generic API surface, and per-codec
encoders</li>
<li>update to 1.21.2:</li>
<li>build script for JS/WASM now supports building with JPEG2000 and
"ISO23001-17 Uncompressed" support.</li>
<li>image sequence SAI data now works when using the OpenH264 decoder
plugin</li>
<li>update to 1.21.1:</li>
<li>This patch release only fixes a build error with some GCC versions
because of a missing #include.</li>
<li>update to 1.21.0:</li>
<li>This release adds full support for reading and writing HEIF image
sequences. libheif will now encode HEIF image sequences with all
included codecs.</li>
<li>Since HEIF image sequences are very similar to MP4 videos, this new
version is also capable of decoding most MP4 videos (without audio,
of course).</li>
<li>heif-enc documentation for sequence encoding</li>
<li>API documentation for reading and writing sequences</li>
<li>Support for image sequences with alpha channels. For most codecs,
the alpha channel will be stored in a separate, auxiliary,
monochrome track. For ISO/IEC 23001-17 (uncompressed) streams, the
alpha channel is stored in the main video track.</li>
<li>Support for sequence track edit lists to define the number of
sequence repetitions (without actually repeating the video data).</li>
<li>New encoder plugin using x264 to write H.264-compressed video
streams and images.</li>
<li>The FFmpeg decoder plugin will now decode both H.265 and H.264.</li>
<li>Support for HEIF text items and language properties.</li>
<li>CVEs fixed: CVE-2025-68431</li>
<li>update to 1.20.2:</li>
<li>When opening tiled images, do not check against maximum image
size immediately to allow for tile-based decoding of very large
images.</li>
<li>Several smaller fixes in writing image sequences</li>
<li>CMake option to disable building of heif-view, which pulls in
dependency on SDL</li>
<li>Fixes reading/writing of GIMI content IDs</li>
<li>Some build fixes</li>
<li>Remove conditionals for openh264, we can build against noopenh264</li>
<li>update to 1.20.1:</li>
<li>Fixes a bug in decoder plugin loading.</li>
<li>Changes from 1.20.0:</li>
<li>Sequences:</li>
<li>API for reading and writing image sequences. You can read and
write sequences for all codecs (not just H.265 / AV1, but
also JPEG-2000, ISO-23001-17 uncompressed, ...). Currently
only intra-coded sequences are supported.</li>
<li>API for reading and writing metadata sequences. The metadata
tracks can contain any raw timed data.</li>
<li>Support for SAI (sample auxiliary information). Timed samples
(from image sequences or metadata) can have auxiliary data
attached. Currently we support TAI timestamps and GIMI
content description IDs.</li>
<li>Support for track references.</li>
<li>The API for sequences is described here:
https://github.com/strukturag/libheif/wiki/Reading-and-Writing-Sequences</li>
<li>New command line tool heif-view to show HEIF sequences
(requires libSDL).</li>
<li>Other new features:</li>
<li>You can specify a security limit for the maximum total memory
libheif may use for decoding. This is easier to handle than
specifying limits on the maximum image size or single memory
allocations.</li>
<li>Support for TAI timestamps (in images and sequences) has been
promoted from experimental to stable.</li>
<li>FFMPEG plugin now supports HDR decoding</li>
<li>Header files are now split into individual headers by topic.
However, it should still be backwards compatible with heif.h
being a catch-all covering the old content. For new
functionality (sequences, TAI), you will need to include the
specific headers.</li>
<li>All struct names of the API are now also typedefs.</li>
<li>add build requires for brotli which it looks for since 1.18</li>
<li>prepare building heif-view</li>
<li>update to 1.19.8:</li>
<li>Set essential flag for transformative properties as required by
MIAF. This fixes the display of AVIF images with transformations
encoded by libheif in Chrome, which checks whether this flag is
set. This mainly affected images encoded by ImageMagick.</li>
<li>If the environment variable LIBHEIF_SECURITY_LIMITS is set to OFF,
libheif will not check any security limits. This can be used if a
user works with large images and the application software does not
allow to adjust the libheif security limits.</li>
<li>Resolved processing 16-bit JPEG-2000</li>
<li>update to 1.19.7:</li>
<li>Fixes a build error with SVT-AV1 encoder plugin when using reduced
symbol visibility</li>
<li>update to 1.19.6:</li>
<li>C++ and Go wrapper licenses have been changed to MIT</li>
<li>supports SVT-AV1 v3.0.0 encoder</li>
<li>support emscripten builds for ES6 modules</li>
<li>Use correct license (these were changed in 2018)</li>
<li>Ensure Name: is conditionalized for the multibuild flavors to not
overwrite the .src.rpm (which is a processed .spec) and to allow
OBS to properly distinguish them flavors.</li>
</ul>
<h2>Patch Instructions:</h2>
<p>
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".<br/>
Alternatively you can run the command listed for your product:
</p>
<ul class="list-group">
<li class="list-group-item">
Desktop Applications Module 15-SP7
<br/>
<code>zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP7-2026-2622=1</code>
</li>
<li class="list-group-item">
SUSE Package Hub 15 15-SP7
<br/>
<code>zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP7-2026-2622=1</code>
</li>
</ul>
<h2>Package List:</h2>
<ul>
<li>
Desktop Applications Module 15-SP7 (aarch64 ppc64le s390x x86_64)
<ul>
<li>libheif-aom-debuginfo-1.23.0-150700.3.15.1</li>
<li>libheif-debugsource-1.23.0-150700.3.15.1</li>
<li>libheif-jpeg-debuginfo-1.23.0-150700.3.15.1</li>
<li>libheif-dav1d-1.23.0-150700.3.15.1</li>
<li>libheif1-debuginfo-1.23.0-150700.3.15.1</li>
<li>libheif1-1.23.0-150700.3.15.1</li>
<li>libheif-jpeg-1.23.0-150700.3.15.1</li>
<li>libheif-rav1e-1.23.0-150700.3.15.1</li>
<li>libheif-rav1e-debuginfo-1.23.0-150700.3.15.1</li>
<li>libheif-aom-1.23.0-150700.3.15.1</li>
<li>libheif-dav1d-debuginfo-1.23.0-150700.3.15.1</li>
</ul>
</li>
<li>
SUSE Package Hub 15 15-SP7 (aarch64 ppc64le s390x x86_64)
<ul>
<li>gdk-pixbuf-loader-libheif-1.23.0-150700.3.15.1</li>
<li>libheif-debugsource-1.23.0-150700.3.15.1</li>
<li>gdk-pixbuf-loader-libheif-debuginfo-1.23.0-150700.3.15.1</li>
<li>libheif-ffmpeg-debuginfo-1.23.0-150700.3.15.1</li>
<li>libheif-ffmpeg-1.23.0-150700.3.15.1</li>
<li>libheif-devel-1.23.0-150700.3.15.1</li>
</ul>
</li>
</ul>
<h2>References:</h2>
<ul>
<li>
<a href="https://www.suse.com/security/cve/CVE-2025-68431.html">https://www.suse.com/security/cve/CVE-2025-68431.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-32738.html">https://www.suse.com/security/cve/CVE-2026-32738.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-32739.html">https://www.suse.com/security/cve/CVE-2026-32739.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-32740.html">https://www.suse.com/security/cve/CVE-2026-32740.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-32741.html">https://www.suse.com/security/cve/CVE-2026-32741.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-32814.html">https://www.suse.com/security/cve/CVE-2026-32814.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-32882.html">https://www.suse.com/security/cve/CVE-2026-32882.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-3949.html">https://www.suse.com/security/cve/CVE-2026-3949.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-3950.html">https://www.suse.com/security/cve/CVE-2026-3950.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-41069.html">https://www.suse.com/security/cve/CVE-2026-41069.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-41071.html">https://www.suse.com/security/cve/CVE-2026-41071.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-47178.html">https://www.suse.com/security/cve/CVE-2026-47178.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-47247.html">https://www.suse.com/security/cve/CVE-2026-47247.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-47251.html">https://www.suse.com/security/cve/CVE-2026-47251.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-47254.html">https://www.suse.com/security/cve/CVE-2026-47254.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-47709.html">https://www.suse.com/security/cve/CVE-2026-47709.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-47714.html">https://www.suse.com/security/cve/CVE-2026-47714.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-48029.html">https://www.suse.com/security/cve/CVE-2026-48029.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-49271.html">https://www.suse.com/security/cve/CVE-2026-49271.html</a>
</li>
<li>
<a href="https://www.suse.com/security/cve/CVE-2026-50142.html">https://www.suse.com/security/cve/CVE-2026-50142.html</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1255735">https://bugzilla.suse.com/show_bug.cgi?id=1255735</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1259544">https://bugzilla.suse.com/show_bug.cgi?id=1259544</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265874">https://bugzilla.suse.com/show_bug.cgi?id=1265874</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265875">https://bugzilla.suse.com/show_bug.cgi?id=1265875</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265876">https://bugzilla.suse.com/show_bug.cgi?id=1265876</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265877">https://bugzilla.suse.com/show_bug.cgi?id=1265877</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265878">https://bugzilla.suse.com/show_bug.cgi?id=1265878</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265879">https://bugzilla.suse.com/show_bug.cgi?id=1265879</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265979">https://bugzilla.suse.com/show_bug.cgi?id=1265979</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265980">https://bugzilla.suse.com/show_bug.cgi?id=1265980</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265981">https://bugzilla.suse.com/show_bug.cgi?id=1265981</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265982">https://bugzilla.suse.com/show_bug.cgi?id=1265982</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265983">https://bugzilla.suse.com/show_bug.cgi?id=1265983</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265987">https://bugzilla.suse.com/show_bug.cgi?id=1265987</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265988">https://bugzilla.suse.com/show_bug.cgi?id=1265988</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265989">https://bugzilla.suse.com/show_bug.cgi?id=1265989</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265990">https://bugzilla.suse.com/show_bug.cgi?id=1265990</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265992">https://bugzilla.suse.com/show_bug.cgi?id=1265992</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265995">https://bugzilla.suse.com/show_bug.cgi?id=1265995</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265996">https://bugzilla.suse.com/show_bug.cgi?id=1265996</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1265997">https://bugzilla.suse.com/show_bug.cgi?id=1265997</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1266281">https://bugzilla.suse.com/show_bug.cgi?id=1266281</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1266282">https://bugzilla.suse.com/show_bug.cgi?id=1266282</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1267455">https://bugzilla.suse.com/show_bug.cgi?id=1267455</a>
</li>
</ul>
</div>