From null at suse.de Mon Jul 6 12:32:30 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:32:30 -0000 Subject: SUSE-SU-2026:2774-1: important: Maintenance update for Multi-Linux Manager 5.1: Server, Proxy and Retail Branch Server Message-ID: <178334115040.556.7289075696576578768@dc2e3449a402> # Maintenance update for Multi-Linux Manager 5.1: Server, Proxy and Retail Branch Server Announcement ID: SUSE-SU-2026:2774-1 Release Date: 2026-07-06T07:52:26Z Rating: important References: * bsc#1208800 * bsc#1226578 * bsc#1234567 * bsc#1238890 * bsc#1242916 * bsc#1245107 * bsc#1247707 * bsc#1248699 * bsc#1249243 * bsc#1253032 * bsc#1254900 * bsc#1257583 * bsc#1257894 * bsc#1258041 * bsc#1258079 * bsc#1258144 * bsc#1258382 * bsc#1258816 * bsc#1259087 * bsc#1259230 * bsc#1259261 * bsc#1259474 * bsc#1259479 * bsc#1259482 * bsc#1259521 * bsc#1259590 * bsc#1259591 * bsc#1259700 * bsc#1259739 * bsc#1259787 * bsc#1259960 * bsc#1260031 * bsc#1260614 * bsc#1260806 * bsc#1261305 * bsc#1261307 * bsc#1261327 * bsc#1261631 * bsc#1261723 * bsc#1261753 * bsc#1261841 * bsc#1261902 * bsc#1262090 * bsc#1262222 * bsc#1262285 * bsc#1262460 * bsc#1262471 * bsc#1262492 * bsc#1262595 * bsc#1262708 * bsc#1262720 * bsc#1262760 * bsc#1262761 * bsc#1262950 * bsc#1263501 * bsc#1263814 * bsc#1263841 * bsc#1263986 * bsc#1263987 * bsc#1264149 * bsc#1264174 * bsc#1264234 * bsc#1264256 * bsc#1264966 * bsc#1265134 * bsc#1265281 * bsc#1265282 * bsc#1265283 * bsc#1265284 * bsc#1265285 * bsc#1265286 * bsc#1265287 * bsc#1265288 * bsc#1265289 * bsc#1265290 * bsc#1265319 * bsc#1265358 * bsc#1265975 * bsc#1266012 * bsc#1266556 * bsc#1266600 * bsc#1269253 * bsc#1269534 * jsc#MSQA-1056 * jsc#SUMA-320 Cross-References: * CVE-2022-21698 * CVE-2026-28374 * CVE-2026-28376 * CVE-2026-28379 * CVE-2026-28380 * CVE-2026-28383 * CVE-2026-33376 * CVE-2026-33377 * CVE-2026-33378 * CVE-2026-33380 * CVE-2026-33381 * CVE-2026-34986 * CVE-2026-39821 * CVE-2026-40179 * CVE-2026-41602 * CVE-2026-42151 * CVE-2026-42154 * CVE-2026-42198 CVSS scores: * CVE-2022-21698 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2022-21698 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28374 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2026-28374 ( SUSE ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N * CVE-2026-28374 ( NVD ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N * CVE-2026-28376 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-28376 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28376 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28379 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-28379 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28379 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28380 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-28380 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-28380 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-28383 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-28383 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28383 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-33376 ( SUSE ): 9.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-33376 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33376 ( NVD ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33377 ( SUSE ): 6.9 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-33377 ( SUSE ): 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N * CVE-2026-33377 ( NVD ): 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N * CVE-2026-33378 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-33378 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-33378 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-33380 ( SUSE ): 7.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N * CVE-2026-33380 ( SUSE ): 7.7 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2026-33380 ( NVD ): 6.3 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2026-33380 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2026-33381 ( SUSE ): 7.4 CVSS:4.0/AV:N/AC:H/AT:P/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-33381 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33381 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33381 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N * CVE-2026-34986 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-34986 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-34986 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-34986 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-39821 ( SUSE ): 9.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-39821 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-39821 ( NVD ): 9.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N * CVE-2026-39821 ( NVD ): 8.2 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N * CVE-2026-40179 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2026-40179 ( SUSE ): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N * CVE-2026-40179 ( NVD ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-40179 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-41602 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-41602 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-41602 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-41602 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42151 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-42151 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-42151 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-42154 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42154 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42154 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42198 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42198 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42198 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Enterprise Server 15 SP7 * SUSE Multi-Linux Manager Proxy 5.1 Extension for SLE * SUSE Multi-Linux Manager Retail Branch Server 5.1 Extension for SLE * SUSE Multi-Linux Manager Server 5.1 Extension for SLE An update that solves 18 vulnerabilities, contains two features and has 65 security fixes can now be installed. ## Recommended update 5.1.4 for Multi-Linux Manager Proxy ### Description: This update fixes the following issues: Release Notes Highlights: * Update to SUSE Multi-Linux Manager 5.1.4: * Bugs mentioned: bsc#1208800, bsc#1234567, bsc#1238890, bsc#1253032, bsc#1257894 bsc#1258382, bsc#1259474, bsc#1259739, bsc#1260806, bsc#1261902 bsc#1262708, bsc#1264966, bsc#1266012 Container images and uyuni-tools changes: proxy-httpd-image, proxy-salt-broker-image, proxy-salt-broker-image, proxy- squid-image, proxy-ssh-image: * Removed unused repositories proxy-tftpd-image: * Use custom entry id for grub saltboot entries (bsc#1258382, bsc#1208800) * Removed unused repositories uyuni-tools: * Version 5.1.29-0 * Check backup status only after database is started (bsc#1262492) * Version 5.1.28-0 * Removed waitForTraefik function (bsc#1261902) * Fixed inspect: missing registry for db image (bsc#1259739) * Preserve hub replicas during upgrade (bsc#1262708) * Stop automatically unhealthy container * Ignore spacewalk-service stop return code. * Use correct CA for Report DB (bsc#1260806) * Do not call podman healthcheck run to wait for pods to be ready (bsc#1266012) The following packages are underlying build dependencies and system components used by the containers: spacecmd: * Version 5.1.14-0 * Updated translation strings spacewalk-backend: * Version 5.1.17-0 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Kickstart profile for RHEL 8 requires venv-salt-minion instead of salt- minion (bsc#1259474) * security(checksums): drop md5 and sha1 from checksum choices (bsc#1234567) * Use PBKDF2-SHA256 (600000 iterations) for new password hashes; verify legacy SHA-256 crypt(3) hashes transparently spacewalk-web: * Version 5.1.21-0 * UI changes to support migration from SLES 15 to SLES 16 * Fixed issue causing a blank tab to appear in the Image Building Details page (bsc#1253032) * Minor UI improvements and fixed spinning icon glitch in Admin ? Setup Wizard * Fixed an issue where the "Create Token" modal could become unresponsive when opened * Fixed an issue causing all existing tokens to be deleted in a loop * Improved visibility of all parent rows in permissions table * Enhanced buttons placement for a more intuitive experience * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Aligned subscription matching page warning with dashboard warning for expiring subscriptions (bsc#1257894) * Added missing fragment import (bsc#1264966) supportutils-plugin-susemanager-client: * Version 5.1.6-0 * No customer facing changes susemanager-build-keys: * Added Nvidia Cuda Tools key Added: nvidia-cudatools-9CD0A493D42D0685.asc uyuni-common-libs: * Version 5.1.6-0 * security(checksums): dropped md5 and sha1 from checksum choices (bsc#1234567) * Replaced deprecated inspect.getargspec with EAFP usedforsecurity detection How to apply this update: 1. Log in as root user to the SUSE Multi-Linux Manager Proxy. 2. Upgrade mgrpxy. 3. If you are in a disconnected environment, upgrade the image packages. 4. Reboot the system. 5. Run `mgrpxy upgrade podman` which will use the default image tags. ## Recommended update 5.1.4 for Multi-Linux Manager Retail Branch Server ### Description: This update fixes the following issues: Release Notes Highlights: * Update to SUSE Multi-Linux Manager 5.1.4: * Bugs mentioned: bsc#1208800, bsc#1234567, bsc#1238890, bsc#1253032, bsc#1257894 bsc#1258382, bsc#1259474, bsc#1259739, bsc#1260806, bsc#1261902 bsc#1262708, bsc#1264966, bsc#1266012 Container images and uyuni-tools changes: proxy-httpd-image, proxy-salt-broker-image, proxy-salt-broker-image, proxy- squid-image, proxy-ssh-image: * Removed unused repositories proxy-tftpd-image: * Use custom entry id for grub saltboot entries (bsc#1258382, bsc#1208800) * Removed unused repositories uyuni-tools: * Version 5.1.29-0 * Check backup status only after database is started (bsc#1262492) * Version 5.1.28-0 * Removed waitForTraefik function (bsc#1261902) * Fixed inspect: missing registry for db image (bsc#1259739) * Preserve hub replicas during upgrade (bsc#1262708) * Stop automatically unhealthy container * Ignore spacewalk-service stop return code. * Use correct CA for Report DB (bsc#1260806) * Do not call podman healthcheck run to wait for pods to be ready (bsc#1266012) The following packages are underlying build dependencies and system components used by the containers: spacecmd: * Version 5.1.14-0 * Updated translation strings spacewalk-backend: * Version 5.1.17-0 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Kickstart profile for RHEL 8 requires venv-salt-minion instead of salt- minion (bsc#1259474) * security(checksums): drop md5 and sha1 from checksum choices (bsc#1234567) * Use PBKDF2-SHA256 (600000 iterations) for new password hashes; verify legacy SHA-256 crypt(3) hashes transparently spacewalk-web: * Version 5.1.21-0 * UI changes to support migration from SLES 15 to SLES 16 * Fixed issue causing a blank tab to appear in the Image Building Details page (bsc#1253032) * Minor UI improvements and fixed spinning icon glitch in Admin ? Setup Wizard * Fixed an issue where the "Create Token" modal could become unresponsive when opened * Fixed an issue causing all existing tokens to be deleted in a loop * Improved visibility of all parent rows in permissions table * Enhanced buttons placement for a more intuitive experience * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Aligned subscription matching page warning with dashboard warning for expiring subscriptions (bsc#1257894) * Added missing fragment import (bsc#1264966) supportutils-plugin-susemanager-client: * Version 5.1.6-0 * No customer facing changes susemanager-build-keys: * Added Nvidia Cuda Tools key Added: nvidia-cudatools-9CD0A493D42D0685.asc uyuni-common-libs: * Version 5.1.6-0 * security(checksums): dropped md5 and sha1 from checksum choices (bsc#1234567) * Replaced deprecated inspect.getargspec with EAFP usedforsecurity detection How to apply this update: 1. Log in as root user to the SUSE Multi-Linux Manager Retail Branch Server. 2. Upgrade mgrpxy. 3. If you are in a disconnected environment, upgrade the image packages. 4. Reboot the system. 5. Run `mgrpxy upgrade podman` which will use the default image tags. ## Security update 5.1.4 for Multi-Linux Manager Server ### Description: This update fixes the following issues: Release Notes Highlights: * Update to SUSE Multi-Linux Manager 5.1.4 * Added note about migration for SUSE Linux Enterprise Server 16 on SSH managed minions * Product Migration from SUSE Linux Enterprise Server 15 SP7 to 16.0 * SUSE Liberty Linux 9.6 Support * New API Endpoint - listMigrationTargetsWithChannels * Debian 12 End-of-Life Notice * SUSE Registry URL Change * Security fixes: CVE-2026-34986, CVE-2026-41602, CVE-2026-39821, CVE-2026-42198 CVE-2022-21698, CVE-2026-40179, CVE-2026-42151, CVE-2026-42154 CVE-2026-28374, CVE-2026-28376, CVE-2026-28379, CVE-2026-28380 CVE-2026-28383, CVE-2026-33376, CVE-2026-33377, CVE-2026-33378 CVE-2026-33380, CVE-2026-33381 * Bugs mentioned: bsc#1226578, bsc#1234567, bsc#1238890, bsc#1242916, bsc#1245107 bsc#1247707, bsc#1248699, bsc#1249243, bsc#1253032, bsc#1257583 bsc#1257894, bsc#1258041, bsc#1258079, bsc#1258144, bsc#1258382 bsc#1258816, bsc#1259087, bsc#1259230, bsc#1259261, bsc#1259474 bsc#1259479, bsc#1259482, bsc#1259521, bsc#1259590, bsc#1259591 bsc#1259700, bsc#1259739, bsc#1259787, bsc#1259960, bsc#1260031 bsc#1260614, bsc#1260806, bsc#1261305, bsc#1261307, bsc#1261327 bsc#1261631, bsc#1261723, bsc#1261753, bsc#1261841, bsc#1261902 bsc#1262090, bsc#1262285, bsc#1262460, bsc#1262471, bsc#1262492 bsc#1262595, bsc#1262708, bsc#1262720, bsc#1262761, bsc#1263814 bsc#1263841, bsc#1264149, bsc#1264234, bsc#1264256, bsc#1264966 bsc#1265134, bsc#1265319, bsc#1265358, bsc#1265975, bsc#1266012 bsc#1262950, bsc#1263501, bsc#1266600, bsc#1266556, bsc#1264174 bsc#1262222, bsc#1263986, bsc#1263987, bsc#1265290, bsc#1265289 bsc#1265288, bsc#1265287, bsc#1265286, bsc#1265285, bsc#1265284 bsc#1265283, bsc#1265282, bsc#1265281, bsc#1269253, bsc#1269534 Container images and uyuni-tools changes: server-attestation-image: * Version 5.1.15 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-hub-xmlrpc-api-image: * Version 5.1.14 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-image: * Version 5.1.15 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Added mozilla-nss-sysinit to Dockerfile required for FIPS (bsc#1247707) * Do not get repositories from SCC in the server container (bsc#1242916) * Added "susemanager-tools", "susemanager" and "susemanager-tools-salt" packages to server-image server-migration-14-16-image: * Version 5.1.14 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-postgresql-image: * Version 5.1.13 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Added needed pg_hba rules on upgrade (bsc#1262492, bsc#1264149) server-saline-image: * Version 5.1.14 * Use python3*-tornado6 package to make it working with Python 3.11 uyuni-tools: * Version 5.1.29-0 Check backup status only after database is started (bsc#1262492) * Version 5.1.28-0 * Remove waitForTraefik function (bsc#1261902) * Fix inspect: missing registry for db image (bsc#1259739) * Preserve hub replicas during upgrade (bsc#1262708) * Stop automatically unhealthy container * Ignore spacewalk-service stop return code. * Use correct CA for Report DB (bsc#1260806) * Do not call podman healthcheck run to wait for pods to be ready (bsc#1266012) The following packages are underlying build dependencies and system components used by the containers: cobbler: * Added the distro signature for rhel10 (bsc#1265134) liberate-formula: * Version 0.1.4 * No customer facing changes * Version 0.1.3 * Liberate formula support for EL10 (bsc#1265975) prometheus-exporters-formula: * Version 1.4.3 * Added support for Python 3.13 * Drop migrate_formula_data script as it is obsolete prometheus-postgres_exporter: * CVE-2022-21698: Replace github.com/prometheus/client_golang with version 1.11.1 (bsc#1248699) saline: * Update to version 2026.05.18: * Explicitly set port number for Prometheus target * Fixed the issue of using non-vendored tornado with Python 3.11 salt: * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) saltboot-formula: * Update to version 1.1.0 * When autoselecting saltboot device, ignore cd/dvd (bsc#1259960) spacecmd: * Version 5.1.14-0 * Update translation strings spacewalk-backend: * Version 5.1.17-0 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Kickstart profile for RHEL 8 requires venv-salt-minion instead of salt- minion (bsc#1259474) * security(checksums): drop md5 and sha1 from checksum choices (bsc#1234567) * Use PBKDF2-SHA256 (600000 iterations) for new password hashes; verify legacy SHA-256 crypt(3) hashes transparently spacewalk-java: * Version 5.1.28-0 * Check access rights on two formula API calls (bsc#1269253) * Sanitize uploaded image name (bsc#1269534) * Version 5.1.26-0 * Added listMigrationTargetsWithChannels endpoint to return the valid migration targets channels (jsc#SUMA-320) * Fixed CSV export failure on system Details > Custom Info page * Added support for migration from SLES 15 to SLES 16 * Minor UI improvements and fixed spinning icon glitch in Admin ? Setup Wizard * Updated the tab label for eligible subscription systems (bsc#1249243) * Fixed missing field labels in the Create User form. (bsc#1259591) * Enhance buttons readability and consistency across the product * Fixed missing translations (bsc#1259787) * Fixed hub SCC forwarding registration credential filter (bsc#1260031) * Sanitize inputs to avoid injection in rhn_conf of http proxy settings inputs (bsc#1245107) * Move Salt > Remote Commands to its own RBAC namespace (bsc#1261305) * Make OIDC JWKS initialization startup-safe * Sync package removal permissions in packages API with the Web UI (bsc#1261327) * Run ANALYZE asynchronously after CLM alignment to avoid deadlocks (bsc#1261753) * Fixed enforcement of consecutive chars in password policy (bsc#1262761) * Use salt's network module if host or nslookup are not installed (bsc#1262720) * Fixed Remote Commands hang on direct hostname (bsc#1226578) * Fixed Python SyntaxWarning for invalid escape sequence '\s' in RHUI extract repo data script (bsc#1262595) * Added 'unpushed' to AdvisoryStatus enum to handle EPEL errata with unpushed status (bsc#1264234) * Kickstart profile for RHEL 8 requires venv-salt-minion instead of salt- minion (bsc#1259474) * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Remove validation of packages in kickstart profiles which are not supported anymore (bsc#1259474) * Numeric branch names should not be stored in double format (bsc#1258382) * Added missing pxeeventfailed notification message * Do not add non-FQDN hostnames to the proxy fqdn list (bsc#1263841) * Use supscription matcher output for subscription expiration warning (bsc#1257894) * Fixed Oval data sync for ubuntu 26.04 (bsc#1265319) * Recognize PBKDF2-SHA256 hashes alongside legacy SHA-256 crypt(3) in the Java password check helpers * security(saml2): default signature algorithm to rsa-sha256 (bsc#1234567) * security(tls): remove TLSv1/TLSv1.1, allow TLSv1.3 for SMTP (bsc#1234567) * Fixed CSRFTokenValidator FIPS compatibility by using platform-default SecureRandom (bsc#1247707) * Fixed conflicting cobbler system migrations spacewalk-web: * Version 5.1.21-0 * UI changes to support migration from SLES 15 to SLES 16 * Fixed issue causing a blank tab to appear in the Image Building Details page (bsc#1253032) * Minor UI improvements and fixed spinning icon glitch in Admin ? Setup Wizard * Fixed an issue where the "Create Token" modal could become unresponsive when opened * Fixed an issue causing all existing tokens to be deleted in a loop * Improved visibility of all parent rows in permissions table * Enhance buttons placement for a more intuitive experience * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Align subscription matching page warning with dashboard warning for expiring subscriptions (bsc#1257894) * Added missing fragment import (bsc#1264966) subscription-matcher: * Version 0.44 * Fixed 2 missing part numbers (bsc#1264256) susemanager: * Version 5.1.17-0 * Added SUSE LibertyLinux 9.6 x86_64 bootstrap repository definition * Removed spacewalk-diskcheck enablement * Use correct CA for Report DB (bsc#1260806) * Relicensed mgr-salt-ssh under Apache-2.0 and move it to a separated package named susemanager-tools-salt susemanager-build-keys: * Added Nvidia Cuda Tools key Added: nvidia-cudatools-9CD0A493D42D0685.asc susemanager-docs_en: * Updated the supported features table in the Client Configuration Guide to include Red Hat Linux Enterprise 10 and clones * Added documentation on space usage percentage on the server and db container which can be set using DISKCHECKALERT and DISKTHRESHOLD * Added Code 16 to Monitoring documentation (bsc#1263814) * Added documentation for deleting SCAP scan results to Administration Guide (bsc#1262471) * Rephrased instructions for RBAC in Administration Guide (bsc#1258079) * Added troubleshooting section for BTRFS to Administration Guide (bcs#1258816) * Removed mentions of Leap 15.5 and 15.4 and specified SUSE requiring general or LTS support in Client Configuration Guide (bsc#1262285) * Added information about availability of SLE 16 and SL Micro 6.2 support in the product versions 5.1.2 and later (bsc#1260614) * Removed mention of CIS profile (bsc#1262460) * Corrected path for Salt minion in Retail Guide (#1262090) * Added explanation for translating mgradm arguments to YAML in Installation and Upgrade Guide (bsc#1258144) * Removed Google Cloud Compute from PAYG documentation (bsc#1261631) * Added link to proxy creation from client to an existing document in Installation and Upgrade Guide * Updated features table for EL 10 based distributions * Document Debian 13 * Added support for Open Enterprise Server 25.4 * Clarified how to get PTF images in air-gapped setup in Installation and Upgrade Guide (bsc#1261307) * SUSE Multi-Linux Support does not support autoinstallation (bsc#1259261) * Added instructions about accessing git repositories when building images to Administration Guide * Added online database backup instructions to Administration Guide * Fixed comamnd for product deployment in Installation and Upgrade Guide (bsc#1259479) * Added online database backup instructions susemanager-schema: * Version 5.1.19-0 * Added the RBAC mapping for listMigrationTargetsWithChannels end point (jsc#SUMA-320) * Added index on rhnPackage (checksum_id) (bsc#1258041) * Move Salt > Remote Commands to its own RBAC namespace (bsc#1261305) * Sync package removal permissions in packages API with the Web UI (bsc#1261327) * Added 'unpushed' to rhn_errata_adv_status_ck constraint to allow importing EPEL errata with unpushed status (bsc#1264234) * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Added missing indexes for channels and tokens (bsc#1259590) * Increase source_url on table rhncontentsource (bsc#1259230) susemanager-sls: * Version 5.1.25-0 * Added salt states to support migration from SLES 15 to SLES 16 * Ignore podman interfaces when resolving FQDNs (bsc#1262720) * Fixed GPG key import on first key deploy (bsc#1259482) * Use either ansible-core or ansible packages for Ansible Control node, prefer ansible-core (bsc#1259087) * Fixed CPU reporting for ppc64le clients (bsc#1259521) * Fixed refresh of virtual instance information (bsc#1261723) susemanager-sync-data: * Version 5.1.10-0 * Added missing RES-EMS channel family (bsc#1265358) * Version 5.1.9-0 * Added SUSE Liberty Linux 9.6 x86_64 product entries uyuni-common-libs: * Version 5.1.6-0 * security(checksums): drop md5 and sha1 from checksum choices (bsc#1234567) * Replaced deprecated inspect.getargspec with EAFP usedforsecurity detection uyuni-reportdb-schema: * version 5.1.7-0 * Increased url on table repository (bsc#1259230) uyuni-setup-reportdb: * Version 5.1.5-0 * Fixed delete of a reportdb user with uyuni-setup-reportdb-user (bsc#1261841) virtual-host-gatherer: * Version 1.0.31-0 * Dropped SUSECloud module as not longer maintainednor used * Version 1.0.30-0 * No customer facing changes How to apply this update: 1. Log in as root user to the SUSE Multi-Linux Manager Server. 2. Upgrade mgradm and mgrctl. 3. If you are in a disconnected environment, upgrade the image packages. 4. Reboot the system. 5. Run `mgradm upgrade podman` which will use the default image tags. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Server 5.1 Extension for SLE zypper in -t patch SUSE-Multi-Linux-Manager-Server-SLE-5.1-2026-2774=1 * SUSE Multi-Linux Manager Retail Branch Server 5.1 Extension for SLE zypper in -t patch SUSE-Multi-Linux-Manager-Retail-Branch-Server- SLE-5.1-2026-2774=1 * SUSE Multi-Linux Manager Proxy 5.1 Extension for SLE zypper in -t patch SUSE-Multi-Linux-Manager-Proxy-SLE-5.1-2026-2774=1 ## Package List: * SUSE Multi-Linux Manager Proxy 5.1 Extension for SLE (noarch) * mgrpxy-lang-5.1.29-150700.3.26.1 * mgrpxy-bash-completion-5.1.29-150700.3.26.1 * mgrpxy-zsh-completion-5.1.29-150700.3.26.1 * SUSE Multi-Linux Manager Proxy 5.1 Extension for SLE (aarch64) * suse-multi-linux-manager-5.1-aarch64-proxy-tftpd-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-aarch64-proxy-squid-image-5.1.4-8.20.11 * suse-multi-linux-manager-5.1-aarch64-proxy-httpd-image-5.1.4-8.22.22 * suse-multi-linux-manager-5.1-aarch64-proxy-salt-broker-image-5.1.4-9.20.25 * suse-multi-linux-manager-5.1-aarch64-proxy-ssh-image-5.1.4-8.20.12 * SUSE Multi-Linux Manager Proxy 5.1 Extension for SLE (aarch64 ppc64le s390x x86_64) * mgrpxy-5.1.29-150700.3.26.1 * mgrpxy-debuginfo-5.1.29-150700.3.26.1 * SUSE Multi-Linux Manager Proxy 5.1 Extension for SLE (x86_64) * suse-multi-linux-manager-5.1-x86_64-proxy-ssh-image-5.1.4-8.20.12 * suse-multi-linux-manager-5.1-x86_64-proxy-tftpd-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-x86_64-proxy-httpd-image-5.1.4-8.22.22 * suse-multi-linux-manager-5.1-x86_64-proxy-squid-image-5.1.4-8.20.11 * suse-multi-linux-manager-5.1-x86_64-proxy-salt-broker-image-5.1.4-9.20.25 * SUSE Multi-Linux Manager Proxy 5.1 Extension for SLE (ppc64le) * suse-multi-linux-manager-5.1-ppc64le-proxy-httpd-image-5.1.4-8.22.22 * suse-multi-linux-manager-5.1-ppc64le-proxy-ssh-image-5.1.4-8.20.12 * suse-multi-linux-manager-5.1-ppc64le-proxy-salt-broker-image-5.1.4-9.20.25 * suse-multi-linux-manager-5.1-ppc64le-proxy-tftpd-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-ppc64le-proxy-squid-image-5.1.4-8.20.11 * SUSE Multi-Linux Manager Proxy 5.1 Extension for SLE (s390x) * suse-multi-linux-manager-5.1-s390x-proxy-ssh-image-5.1.4-8.20.12 * suse-multi-linux-manager-5.1-s390x-proxy-salt-broker-image-5.1.4-9.20.25 * suse-multi-linux-manager-5.1-s390x-proxy-httpd-image-5.1.4-8.22.22 * suse-multi-linux-manager-5.1-s390x-proxy-tftpd-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-s390x-proxy-squid-image-5.1.4-8.20.11 * SUSE Multi-Linux Manager Server 5.1 Extension for SLE (ppc64le) * suse-multi-linux-manager-5.1-ppc64le-server-hub-xmlrpc-api-image-5.1.4-8.20.12 * suse-multi-linux-manager-5.1-ppc64le-server-postgresql-image-5.1.4-6.24.3 * suse-multi-linux-manager-5.1-ppc64le-server-attestation-image-5.1.4-8.22.10 * suse-multi-linux-manager-5.1-ppc64le-server-migration-14-16-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-ppc64le-server-image-5.1.4-8.20.34 * suse-multi-linux-manager-5.1-ppc64le-server-saline-image-5.1.4-9.20.24 * SUSE Multi-Linux Manager Server 5.1 Extension for SLE (x86_64) * suse-multi-linux-manager-5.1-x86_64-server-saline-image-5.1.4-9.20.24 * suse-multi-linux-manager-5.1-x86_64-server-image-5.1.4-8.20.34 * suse-multi-linux-manager-5.1-x86_64-server-postgresql-image-5.1.4-6.24.3 * suse-multi-linux-manager-5.1-x86_64-server-migration-14-16-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-x86_64-server-attestation-image-5.1.4-8.22.10 * suse-multi-linux-manager-5.1-x86_64-server-hub-xmlrpc-api-image-5.1.4-8.20.12 * SUSE Multi-Linux Manager Server 5.1 Extension for SLE (noarch) * mgrctl-zsh-completion-5.1.29-150700.3.26.1 * mgrctl-lang-5.1.29-150700.3.26.1 * mgradm-bash-completion-5.1.29-150700.3.26.1 * mgrctl-bash-completion-5.1.29-150700.3.26.1 * mgradm-zsh-completion-5.1.29-150700.3.26.1 * mgradm-lang-5.1.29-150700.3.26.1 * SUSE Multi-Linux Manager Server 5.1 Extension for SLE (aarch64 ppc64le s390x x86_64) * mgrctl-debuginfo-5.1.29-150700.3.26.1 * mgradm-5.1.29-150700.3.26.1 * mgradm-debuginfo-5.1.29-150700.3.26.1 * mgrctl-5.1.29-150700.3.26.1 * SUSE Multi-Linux Manager Server 5.1 Extension for SLE (aarch64) * suse-multi-linux-manager-5.1-aarch64-server-image-5.1.4-8.20.34 * suse-multi-linux-manager-5.1-aarch64-server-postgresql-image-5.1.4-6.24.3 * suse-multi-linux-manager-5.1-aarch64-server-hub-xmlrpc-api-image-5.1.4-8.20.12 * suse-multi-linux-manager-5.1-aarch64-server-attestation-image-5.1.4-8.22.10 * suse-multi-linux-manager-5.1-aarch64-server-saline-image-5.1.4-9.20.24 * suse-multi-linux-manager-5.1-aarch64-server-migration-14-16-image-5.1.4-8.20.13 * SUSE Multi-Linux Manager Server 5.1 Extension for SLE (s390x) * suse-multi-linux-manager-5.1-s390x-server-migration-14-16-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-s390x-server-saline-image-5.1.4-9.20.24 * suse-multi-linux-manager-5.1-s390x-server-attestation-image-5.1.4-8.22.10 * suse-multi-linux-manager-5.1-s390x-server-hub-xmlrpc-api-image-5.1.4-8.20.12 * suse-multi-linux-manager-5.1-s390x-server-image-5.1.4-8.20.34 * suse-multi-linux-manager-5.1-s390x-server-postgresql-image-5.1.4-6.24.3 * SUSE Multi-Linux Manager Retail Branch Server 5.1 Extension for SLE (noarch) * mgrpxy-lang-5.1.29-150700.3.26.1 * mgrpxy-bash-completion-5.1.29-150700.3.26.1 * mgrpxy-zsh-completion-5.1.29-150700.3.26.1 * SUSE Multi-Linux Manager Retail Branch Server 5.1 Extension for SLE (ppc64le) * suse-multi-linux-manager-5.1-ppc64le-proxy-httpd-image-5.1.4-8.22.22 * suse-multi-linux-manager-5.1-ppc64le-proxy-ssh-image-5.1.4-8.20.12 * suse-multi-linux-manager-5.1-ppc64le-proxy-salt-broker-image-5.1.4-9.20.25 * suse-multi-linux-manager-5.1-ppc64le-proxy-tftpd-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-ppc64le-proxy-squid-image-5.1.4-8.20.11 * SUSE Multi-Linux Manager Retail Branch Server 5.1 Extension for SLE (aarch64) * suse-multi-linux-manager-5.1-aarch64-proxy-tftpd-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-aarch64-proxy-squid-image-5.1.4-8.20.11 * suse-multi-linux-manager-5.1-aarch64-proxy-httpd-image-5.1.4-8.22.22 * suse-multi-linux-manager-5.1-aarch64-proxy-salt-broker-image-5.1.4-9.20.25 * suse-multi-linux-manager-5.1-aarch64-proxy-ssh-image-5.1.4-8.20.12 * SUSE Multi-Linux Manager Retail Branch Server 5.1 Extension for SLE (s390x) * suse-multi-linux-manager-5.1-s390x-proxy-ssh-image-5.1.4-8.20.12 * suse-multi-linux-manager-5.1-s390x-proxy-httpd-image-5.1.4-8.22.22 * suse-multi-linux-manager-5.1-s390x-proxy-salt-broker-image-5.1.4-9.20.25 * suse-multi-linux-manager-5.1-s390x-proxy-tftpd-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-s390x-proxy-squid-image-5.1.4-8.20.11 * SUSE Multi-Linux Manager Retail Branch Server 5.1 Extension for SLE (aarch64 ppc64le s390x x86_64) * mgrpxy-debuginfo-5.1.29-150700.3.26.1 * mgrpxy-5.1.29-150700.3.26.1 * SUSE Multi-Linux Manager Retail Branch Server 5.1 Extension for SLE (x86_64) * suse-multi-linux-manager-5.1-x86_64-proxy-ssh-image-5.1.4-8.20.12 * suse-multi-linux-manager-5.1-x86_64-proxy-tftpd-image-5.1.4-8.20.13 * suse-multi-linux-manager-5.1-x86_64-proxy-httpd-image-5.1.4-8.22.22 * suse-multi-linux-manager-5.1-x86_64-proxy-squid-image-5.1.4-8.20.11 * suse-multi-linux-manager-5.1-x86_64-proxy-salt-broker-image-5.1.4-9.20.25 ## References: * https://www.suse.com/security/cve/CVE-2022-21698.html * https://www.suse.com/security/cve/CVE-2026-28374.html * https://www.suse.com/security/cve/CVE-2026-28376.html * https://www.suse.com/security/cve/CVE-2026-28379.html * https://www.suse.com/security/cve/CVE-2026-28380.html * https://www.suse.com/security/cve/CVE-2026-28383.html * https://www.suse.com/security/cve/CVE-2026-33376.html * https://www.suse.com/security/cve/CVE-2026-33377.html * https://www.suse.com/security/cve/CVE-2026-33378.html * https://www.suse.com/security/cve/CVE-2026-33380.html * https://www.suse.com/security/cve/CVE-2026-33381.html * https://www.suse.com/security/cve/CVE-2026-34986.html * https://www.suse.com/security/cve/CVE-2026-39821.html * https://www.suse.com/security/cve/CVE-2026-40179.html * https://www.suse.com/security/cve/CVE-2026-41602.html * https://www.suse.com/security/cve/CVE-2026-42151.html * https://www.suse.com/security/cve/CVE-2026-42154.html * https://www.suse.com/security/cve/CVE-2026-42198.html * https://bugzilla.suse.com/show_bug.cgi?id=1208800 * https://bugzilla.suse.com/show_bug.cgi?id=1226578 * https://bugzilla.suse.com/show_bug.cgi?id=1234567 * https://bugzilla.suse.com/show_bug.cgi?id=1238890 * https://bugzilla.suse.com/show_bug.cgi?id=1242916 * https://bugzilla.suse.com/show_bug.cgi?id=1245107 * https://bugzilla.suse.com/show_bug.cgi?id=1247707 * https://bugzilla.suse.com/show_bug.cgi?id=1248699 * https://bugzilla.suse.com/show_bug.cgi?id=1249243 * https://bugzilla.suse.com/show_bug.cgi?id=1253032 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1257894 * https://bugzilla.suse.com/show_bug.cgi?id=1258041 * https://bugzilla.suse.com/show_bug.cgi?id=1258079 * https://bugzilla.suse.com/show_bug.cgi?id=1258144 * https://bugzilla.suse.com/show_bug.cgi?id=1258382 * https://bugzilla.suse.com/show_bug.cgi?id=1258816 * https://bugzilla.suse.com/show_bug.cgi?id=1259087 * https://bugzilla.suse.com/show_bug.cgi?id=1259230 * https://bugzilla.suse.com/show_bug.cgi?id=1259261 * https://bugzilla.suse.com/show_bug.cgi?id=1259474 * https://bugzilla.suse.com/show_bug.cgi?id=1259479 * https://bugzilla.suse.com/show_bug.cgi?id=1259482 * https://bugzilla.suse.com/show_bug.cgi?id=1259521 * https://bugzilla.suse.com/show_bug.cgi?id=1259590 * https://bugzilla.suse.com/show_bug.cgi?id=1259591 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1259787 * https://bugzilla.suse.com/show_bug.cgi?id=1259960 * https://bugzilla.suse.com/show_bug.cgi?id=1260031 * https://bugzilla.suse.com/show_bug.cgi?id=1260614 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1261305 * https://bugzilla.suse.com/show_bug.cgi?id=1261307 * https://bugzilla.suse.com/show_bug.cgi?id=1261327 * https://bugzilla.suse.com/show_bug.cgi?id=1261631 * https://bugzilla.suse.com/show_bug.cgi?id=1261723 * https://bugzilla.suse.com/show_bug.cgi?id=1261753 * https://bugzilla.suse.com/show_bug.cgi?id=1261841 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262090 * https://bugzilla.suse.com/show_bug.cgi?id=1262222 * https://bugzilla.suse.com/show_bug.cgi?id=1262285 * https://bugzilla.suse.com/show_bug.cgi?id=1262460 * https://bugzilla.suse.com/show_bug.cgi?id=1262471 * https://bugzilla.suse.com/show_bug.cgi?id=1262492 * https://bugzilla.suse.com/show_bug.cgi?id=1262595 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262720 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1262761 * https://bugzilla.suse.com/show_bug.cgi?id=1262950 * https://bugzilla.suse.com/show_bug.cgi?id=1263501 * https://bugzilla.suse.com/show_bug.cgi?id=1263814 * https://bugzilla.suse.com/show_bug.cgi?id=1263841 * https://bugzilla.suse.com/show_bug.cgi?id=1263986 * https://bugzilla.suse.com/show_bug.cgi?id=1263987 * https://bugzilla.suse.com/show_bug.cgi?id=1264149 * https://bugzilla.suse.com/show_bug.cgi?id=1264174 * https://bugzilla.suse.com/show_bug.cgi?id=1264234 * https://bugzilla.suse.com/show_bug.cgi?id=1264256 * https://bugzilla.suse.com/show_bug.cgi?id=1264966 * https://bugzilla.suse.com/show_bug.cgi?id=1265134 * https://bugzilla.suse.com/show_bug.cgi?id=1265281 * https://bugzilla.suse.com/show_bug.cgi?id=1265282 * https://bugzilla.suse.com/show_bug.cgi?id=1265283 * https://bugzilla.suse.com/show_bug.cgi?id=1265284 * https://bugzilla.suse.com/show_bug.cgi?id=1265285 * https://bugzilla.suse.com/show_bug.cgi?id=1265286 * https://bugzilla.suse.com/show_bug.cgi?id=1265287 * https://bugzilla.suse.com/show_bug.cgi?id=1265288 * https://bugzilla.suse.com/show_bug.cgi?id=1265289 * https://bugzilla.suse.com/show_bug.cgi?id=1265290 * https://bugzilla.suse.com/show_bug.cgi?id=1265319 * https://bugzilla.suse.com/show_bug.cgi?id=1265358 * https://bugzilla.suse.com/show_bug.cgi?id=1265975 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://bugzilla.suse.com/show_bug.cgi?id=1266556 * https://bugzilla.suse.com/show_bug.cgi?id=1266600 * https://bugzilla.suse.com/show_bug.cgi?id=1269253 * https://bugzilla.suse.com/show_bug.cgi?id=1269534 * https://jira.suse.com/browse/MSQA-1056 * https://jira.suse.com/browse/SUMA-320 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:33:06 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:33:06 -0000 Subject: SUSE-RU-2026:2773-1: moderate: Recommended update 5.1.4 for Multi-Linux Manager Client Tools Message-ID: <178334118658.556.8643166770917355267@dc2e3449a402> # Recommended update 5.1.4 for Multi-Linux Manager Client Tools Announcement ID: SUSE-RU-2026:2773-1 Release Date: 2026-07-06T07:50:54Z Rating: moderate References: * bsc#1227579 * bsc#1229105 * bsc#1232641 * bsc#1249400 * bsc#1249532 * bsc#1253174 * bsc#1254900 * bsc#1255418 * bsc#1257583 * bsc#1259700 * bsc#1259739 * bsc#1260806 * bsc#1260905 * bsc#1261902 * bsc#1262409 * bsc#1262708 * bsc#1262760 * bsc#1263157 * bsc#1263823 * bsc#1266012 * jsc#MSQA-1056 Affected Products: * SUSE Multi-Linux Manager Client Tools for Ubuntu 22.04 2204 An update that contains one feature and has 20 fixes can now be installed. ## Description: This update fixes the following issues: scap-security-guide: * Non customer facing changes spacecmd updated to version 5.2.8: * Key Update Highlights (v5.2.3-0): * Fixed typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Key Update Highlights (v5.2.1-0): * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fixed methods in api namespace in spacecmd (bsc#1249532) * Other changes (v5.2.2-0 to 5.2.8-0): * Translation strings updates * Internal updates with non customer facing changes uyuni-tools updated to version 5.2.12: * Key Update Highlights (v5.2.11-0): * Improved pod readiness checks (bsc#1266012) * Key Update Highlights (v5.2.10-0): * Preserve hub replicas during upgrade (bsc#1262708) * Added mgrctl "ssh" and "ssh remove_known_host" commands * Fixed startup checks for main server container (bsc#1263157) * Fixed service dependencies (bsc#1263823) * Updated default tag to 5.1.3.1 (bsc#1262760) * Fixed missing registry for db image (bsc#1259739) * Fixed Report DB CA certificate (bsc#1260806) * Key Update Highlights (v5.2.7-0): * Admin secrets no longer required on upgrades (bsc#1262409) * Key Update Highlights (v5.2.6-0): * Fixed database online backup * mgrctl copy command now infers target name automatically * Restored TFTP port to proxy (bsc#1260905) * TFTP disabled by default on server * Key Update Highlights (v5.2.5-0): * Removed migrate command * Removed hub register command * Split TFTP server into separate container * Removed Kubernetes install/upgrade from mgrpxy * Key Update Highlights (v5.2.1-0): * Fixed --dbupgrade-tag parameter (bsc#1249400) * Added --registry-host, --registry-user, --registry-password options * Deprecated --registry option * Added SUSE Linux Enterprise 15 SP7 support * Migrated custom SSL CA certificates (bsc#1232641) * Other changes (v5.2.1-0 to v5.2.12-0): * Translation strings updates * Internal updates with version bump but without customer facing changes venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Calculate UUID grain for Xen PV guests (bsc#1255418) * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * Hardened Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) * Fixed testsuite failures ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for Ubuntu 22.04 2204 zypper in -t patch SUSE-MultiLinuxManagerTools-Ubuntu-22.04-2026-2773=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for Ubuntu 22.04 2204 (all) * spacecmd-5.2.8-220402.3.18.3 * mgrctl-bash-completion-5.2.12-220402.3.18.1 * scap-security-guide-ubuntu-0.1.79-220402.2.12.2 * mgrctl-fish-completion-5.2.12-220402.3.18.1 * mgrctl-zsh-completion-5.2.12-220402.3.18.1 * SUSE Multi-Linux Manager Client Tools for Ubuntu 22.04 2204 (amd64) * mgrctl-5.2.12-220402.3.18.1 * venv-salt-minion-3006.0-220402.3.25.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1229105 * https://bugzilla.suse.com/show_bug.cgi?id=1232641 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1255418 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1260905 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262409 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1263157 * https://bugzilla.suse.com/show_bug.cgi?id=1263823 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://jira.suse.com/browse/MSQA-1056 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:33:41 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:33:41 -0000 Subject: SUSE-RU-2026:2772-1: moderate: Recommended update 5.1.4 for Multi-Linux Manager Client Tools Message-ID: <178334122192.556.5473342135076857088@dc2e3449a402> # Recommended update 5.1.4 for Multi-Linux Manager Client Tools Announcement ID: SUSE-RU-2026:2772-1 Release Date: 2026-07-06T07:50:30Z Rating: moderate References: * bsc#1227579 * bsc#1229105 * bsc#1232641 * bsc#1249400 * bsc#1249532 * bsc#1253174 * bsc#1254900 * bsc#1255418 * bsc#1257583 * bsc#1259700 * bsc#1259739 * bsc#1260806 * bsc#1260905 * bsc#1261902 * bsc#1262409 * bsc#1262708 * bsc#1262760 * bsc#1263157 * bsc#1263823 * bsc#1266012 * jsc#MSQA-1056 Affected Products: * SUSE Multi-Linux Manager Client Tools for Ubuntu 24.04 2404 An update that contains one feature and has 20 fixes can now be installed. ## Description: This update fixes the following issues: spacecmd updated to version 5.2.8: * Key Update Highlights (v5.2.3-0): * Fixed typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Key Update Highlights (v5.2.1-0): * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fixed methods in api namespace in spacecmd (bsc#1249532) * Other changes (v5.2.2-0 to 5.2.8-0): * Translation strings updates * Internal updates with non customer facing changes uyuni-tools updated to version 5.2.12: * Key Update Highlights (v5.2.11-0) * Improved pod readiness checks (bsc#1266012) * Key Update Highlights (v5.2.10-0) * Preserve hub replicas during upgrade (bsc#1262708) * Added mgrctl "ssh" and "ssh remove_known_host" commands * Fixed startup checks for main server container (bsc#1263157) * Fixed service dependencies (bsc#1263823) * Updated default tag to 5.1.3.1 (bsc#1262760) * Fixed missing registry for db image (bsc#1259739) * Fixed Report DB CA certificate (bsc#1260806) * Key Update Highlights (v5.2.7-0) * Admin secrets no longer required on upgrades (bsc#1262409) * Key Update Highlights (v5.2.6-0) * Fixed database online backup * mgrctl copy command now infers target name automatically * Restored TFTP port to proxy (bsc#1260905) * TFTP disabled by default on server * Key Update Highlights (v5.2.5-0) * Removed migrate command * Removed hub register command * Split TFTP server into separate container * Removed Kubernetes install/upgrade from mgrpxy * Key Update Highlights (v5.2.1-0) * Fixed --dbupgrade-tag parameter (bsc#1249400) * Added --registry-host, --registry-user, --registry-password options * Deprecated --registry option * Added SUSE Linux Enterprise 15 SP7 support * Migrated custom SSL CA certificates (bsc#1232641) * Other changes (v5.2.1-0 to v5.2.12-0): * Translation strings updates * Internal updates with version bump but without customer facing changes venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Calculate UUID grain for Xen PV guests (bsc#1255418) * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * Hardened Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for Ubuntu 24.04 2404 zypper in -t patch SUSE-MultiLinuxManagerTools-Ubuntu-24.04-2026-2772=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for Ubuntu 24.04 2404 (amd64) * mgrctl-5.2.12-240402.3.18.1 * venv-salt-minion-3006.0-240402.3.25.1 * SUSE Multi-Linux Manager Client Tools for Ubuntu 24.04 2404 (all) * mgrctl-fish-completion-5.2.12-240402.3.18.1 * mgrctl-zsh-completion-5.2.12-240402.3.18.1 * mgrctl-bash-completion-5.2.12-240402.3.18.1 * spacecmd-5.2.8-240402.3.23.3 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1229105 * https://bugzilla.suse.com/show_bug.cgi?id=1232641 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1255418 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1260905 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262409 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1263157 * https://bugzilla.suse.com/show_bug.cgi?id=1263823 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://jira.suse.com/browse/MSQA-1056 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:34:17 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:34:17 -0000 Subject: SUSE-RU-2026:2771-1: moderate: Recommended update 5.1.4 for Multi-Linux Manager Client Tools Message-ID: <178334125777.556.15682688993868642388@dc2e3449a402> # Recommended update 5.1.4 for Multi-Linux Manager Client Tools Announcement ID: SUSE-RU-2026:2771-1 Release Date: 2026-07-06T07:50:00Z Rating: moderate References: * bsc#1227579 * bsc#1229105 * bsc#1232641 * bsc#1249400 * bsc#1249532 * bsc#1253174 * bsc#1254900 * bsc#1255418 * bsc#1257583 * bsc#1259700 * bsc#1259739 * bsc#1260806 * bsc#1260905 * bsc#1261902 * bsc#1262409 * bsc#1262708 * bsc#1262760 * bsc#1263157 * bsc#1263823 * bsc#1266012 * jsc#MSQA-1056 Affected Products: * SUSE Multi-Linux Manager Client Tools for Debian 12 An update that contains one feature and has 20 fixes can now be installed. ## Description: This update fixes the following issues: spacecmd updated to version 5.2.8: * Key Update Highlights (v5.2.3-0): * Fixed typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Key Update Highlights (v5.2.1-0): * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fixed methods in api namespace in spacecmd (bsc#1249532) * Other changes (v5.2.2-0 to 5.2.8-0): * Translation strings updates * Internal updates with non customer facing changes uyuni-tools updated to version 5.2.12: * Key Update Highlights (v5.2.11-0): * Improved pod readiness checks (bsc#1266012) * Key Update Highlights (v5.2.10-0): * Preserve hub replicas during upgrade (bsc#1262708) * Added mgrctl "ssh" and "ssh remove_known_host" commands * Fixed startup checks for main server container (bsc#1263157) * Fixed service dependencies (bsc#1263823) * Updated default tag to 5.1.3.1 (bsc#1262760) * Fixed missing registry for db image (bsc#1259739) * Fixed Report DB CA certificate (bsc#1260806) * Key Update Highlights (v5.2.7-0): * Admin secrets no longer required on upgrades (bsc#1262409) * Key Update Highlights (v5.2.6-0): * Fixed database online backup * mgrctl copy command now infers target name automatically * Restored TFTP port to proxy (bsc#1260905) * TFTP disabled by default on server * Key Update Highlights (v5.2.5-0): * Removed migrate command * Removed hub register command * Split TFTP server into separate container * Removed Kubernetes install/upgrade from mgrpxy * Key Update Highlights (v5.2.1-0): * Fixed --dbupgrade-tag parameter (bsc#1249400) * Added --registry-host, --registry-user, --registry-password options * Deprecated --registry option * Added SUSE Linux Enterprise 15 SP7 support * Migrated custom SSL CA certificates (bsc#1232641) * Other changes (v5.2.1-0 to v5.2.12-0): * Translation strings updates * Internal updates with version bump but without customer facing changes venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Calculate UUID grain for Xen PV guests (bsc#1255418) * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * BDSA-2025-60810: Harden Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for Debian 12 zypper in -t patch SUSE-MultiLinuxManagerTools-Debian-12-2026-2771=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for Debian 12 (all) * mgrctl-bash-completion-5.2.12-120002.3.20.1 * mgrctl-zsh-completion-5.2.12-120002.3.20.1 * mgrctl-fish-completion-5.2.12-120002.3.20.1 * spacecmd-5.2.8-120002.3.20.1 * SUSE Multi-Linux Manager Client Tools for Debian 12 (amd64 arm64) * venv-salt-minion-3006.0-120002.3.27.1 * mgrctl-5.2.12-120002.3.20.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1229105 * https://bugzilla.suse.com/show_bug.cgi?id=1232641 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1255418 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1260905 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262409 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1263157 * https://bugzilla.suse.com/show_bug.cgi?id=1263823 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://jira.suse.com/browse/MSQA-1056 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:34:54 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:34:54 -0000 Subject: SUSE-RU-2026:2770-1: moderate: Recommended update 5.1.4 for Multi-Linux Manager Client Tools Message-ID: <178334129405.556.244017371511386293@dc2e3449a402> # Recommended update 5.1.4 for Multi-Linux Manager Client Tools Announcement ID: SUSE-RU-2026:2770-1 Release Date: 2026-07-06T07:49:31Z Rating: moderate References: * bsc#1227579 * bsc#1229105 * bsc#1232641 * bsc#1249400 * bsc#1249532 * bsc#1253174 * bsc#1254900 * bsc#1255418 * bsc#1257583 * bsc#1259700 * bsc#1259739 * bsc#1260806 * bsc#1260905 * bsc#1261902 * bsc#1262409 * bsc#1262708 * bsc#1262760 * bsc#1263157 * bsc#1263823 * bsc#1266012 * jsc#MSQA-1056 Affected Products: * SUSE Multi-Linux Manager Client Tools for Debian 13 An update that contains one feature and has 20 fixes can now be installed. ## Description: This update fixes the following issues: spacecmd updated to version 5.2.8: * Key Update Highlights (v5.2.3-0): * Fixed typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Key Update Highlights (v5.2.1-0): * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fixed methods in api namespace in spacecmd (bsc#1249532) * Other changes (v5.2.2-0 to 5.2.8-0): * Translation strings updates * Internal updates with non customer facing changes uyuni-tools updated to version 5.2.12: * Key Update Highlights (v5.2.11-0): * Improved pod readiness checks (bsc#1266012) * Key Update Highlights (v5.2.10-0): * Preserve hub replicas during upgrade (bsc#1262708) * Added mgrctl "ssh" and "ssh remove_known_host" commands * Fixed startup checks for main server container (bsc#1263157) * Fixed service dependencies (bsc#1263823) * Updated default tag to 5.1.3.1 (bsc#1262760) * Fixed missing registry for db image (bsc#1259739) * Fixed Report DB CA certificate (bsc#1260806) * Key Update Highlights (v5.2.7-0): * Admin secrets no longer required on upgrades (bsc#1262409) * Key Update Highlights (v5.2.6-0): * Fixed database online backup * mgrctl copy command now infers target name automatically * Restored TFTP port to proxy (bsc#1260905) * TFTP disabled by default on server * Key Update Highlights (v5.2.5-0): * Removed migrate command * Removed hub register command * Split TFTP server into separate container * Removed Kubernetes install/upgrade from mgrpxy * Key Update Highlights (v5.2.1-0): * Fixed --dbupgrade-tag parameter (bsc#1249400) * Added --registry-host, --registry-user, --registry-password options * Deprecated --registry option * Added SUSE Linux Enterprise 15 SP7 support * Migrated custom SSL CA certificates (bsc#1232641) * Other changes (v5.2.1-0 to v5.2.12-0): * Translation strings updates * Internal updates with version bump but without customer facing changes venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Calculate UUID grain for Xen PV guests (bsc#1255418) * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * BDSA-2025-60810: Harden Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for Debian 13 zypper in -t patch SUSE-MultiLinuxManagerTools-Debian-13-2026-2770=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for Debian 13 (all) * mgrctl-zsh-completion-5.2.12-130002.2.6.1 * spacecmd-5.2.8-130002.2.6.1 * mgrctl-fish-completion-5.2.12-130002.2.6.1 * mgrctl-bash-completion-5.2.12-130002.2.6.1 * SUSE Multi-Linux Manager Client Tools for Debian 13 (amd64 arm64) * venv-salt-minion-3006.0-130002.2.10.1 * mgrctl-5.2.12-130002.2.6.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1229105 * https://bugzilla.suse.com/show_bug.cgi?id=1232641 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1255418 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1260905 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262409 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1263157 * https://bugzilla.suse.com/show_bug.cgi?id=1263823 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://jira.suse.com/browse/MSQA-1056 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:35:05 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:35:05 -0000 Subject: SUSE-RU-2026:2769-1: important: Recommended update 5.1.4 for Multi-Linux Manager Salt Bundle Message-ID: <178334130530.556.4279548041090864735@dc2e3449a402> # Recommended update 5.1.4 for Multi-Linux Manager Salt Bundle Announcement ID: SUSE-RU-2026:2769-1 Release Date: 2026-07-06T07:49:03Z Rating: important References: * bsc#1254900 * bsc#1255418 * bsc#1257583 * bsc#1259700 * jsc#MSQA-1056 Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 * SUSE Linux Enterprise Desktop 15 SP1 * SUSE Linux Enterprise Desktop 15 SP2 * SUSE Linux Enterprise Desktop 15 SP3 * SUSE Linux Enterprise Desktop 15 SP4 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise High Performance Computing 15 * SUSE Linux Enterprise High Performance Computing 15 SP1 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Micro 5.0 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP1 * SUSE Linux Enterprise Real Time 15 SP2 * SUSE Linux Enterprise Real Time 15 SP3 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 * SUSE Linux Enterprise Server 15 SP1 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 * SUSE Linux Enterprise Server for SAP Applications 15 SP1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Multi-Linux Manager Client Tools for SLE 15 * SUSE Multi-Linux Manager Client Tools for SLE Micro 5 An update that contains one feature and has four fixes can now be installed. ## Description: This update fixes the following issues: venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Calculate UUID grain for Xen PV guests (bsc#1255418) * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * BDSA-2025-60810: Harden Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SLE 15 zypper in -t patch SUSE-MultiLinuxManagerTools-SLE-15-2026-2769=1 * SUSE Multi-Linux Manager Client Tools for SLE Micro 5 zypper in -t patch SUSE-MultiLinuxManagerTools-SLE-Micro-5-2026-2769=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SLE 15 (aarch64 ppc64le s390x x86_64) * venv-salt-minion-3006.0-150002.5.19.1 * SUSE Multi-Linux Manager Client Tools for SLE Micro 5 (aarch64 ppc64le s390x x86_64) * venv-salt-minion-3006.0-150002.5.19.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1255418 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://jira.suse.com/browse/MSQA-1056 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:36:08 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:36:08 -0000 Subject: SUSE-SU-2026:2768-1: important: Security update 5.1.4 for Multi-Linux Manager Client Tools Message-ID: <178334136806.556.18308234316352153659@dc2e3449a402> # Security update 5.1.4 for Multi-Linux Manager Client Tools Announcement ID: SUSE-SU-2026:2768-1 Release Date: 2026-07-06T07:48:37Z Rating: important References: * bsc#1227579 * bsc#1229105 * bsc#1232641 * bsc#1248699 * bsc#1248707 * bsc#1249400 * bsc#1249532 * bsc#1253174 * bsc#1259739 * bsc#1260806 * bsc#1260870 * bsc#1260905 * bsc#1261810 * bsc#1261902 * bsc#1262222 * bsc#1262409 * bsc#1262708 * bsc#1262760 * bsc#1262950 * bsc#1263157 * bsc#1263501 * bsc#1263823 * bsc#1263986 * bsc#1263987 * bsc#1265281 * bsc#1265282 * bsc#1265283 * bsc#1265284 * bsc#1265285 * bsc#1265286 * bsc#1265287 * bsc#1265288 * bsc#1265289 * bsc#1265290 * bsc#1266012 * bsc#1266556 * bsc#1266600 * bsc#1266608 * bsc#1267153 * jsc#MSQA-1056 * jsc#PED-14816 Cross-References: * CVE-2022-21698 * CVE-2026-25680 * CVE-2026-25681 * CVE-2026-27136 * CVE-2026-28374 * CVE-2026-28376 * CVE-2026-28379 * CVE-2026-28380 * CVE-2026-28383 * CVE-2026-33376 * CVE-2026-33377 * CVE-2026-33378 * CVE-2026-33380 * CVE-2026-33381 * CVE-2026-34986 * CVE-2026-39821 * CVE-2026-40179 * CVE-2026-41602 * CVE-2026-42151 * CVE-2026-42154 * CVE-2026-42502 * CVE-2026-42506 CVSS scores: * CVE-2022-21698 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2022-21698 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-25680 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-25680 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-25680 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2026-25681 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2026-25681 ( SUSE ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-25681 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-27136 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2026-27136 ( SUSE ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-27136 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-28374 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2026-28374 ( SUSE ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N * CVE-2026-28374 ( NVD ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N * CVE-2026-28376 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-28376 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28376 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28379 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-28379 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28379 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28380 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-28380 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-28380 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-28383 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-28383 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28383 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-33376 ( SUSE ): 9.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-33376 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33376 ( NVD ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33377 ( SUSE ): 6.9 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-33377 ( SUSE ): 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N * CVE-2026-33377 ( NVD ): 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N * CVE-2026-33378 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-33378 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-33378 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-33380 ( SUSE ): 7.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N * CVE-2026-33380 ( SUSE ): 7.7 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2026-33380 ( NVD ): 6.3 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2026-33380 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2026-33381 ( SUSE ): 7.4 CVSS:4.0/AV:N/AC:H/AT:P/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-33381 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33381 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33381 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N * CVE-2026-34986 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-34986 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-34986 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-34986 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-39821 ( SUSE ): 9.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-39821 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-39821 ( NVD ): 9.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N * CVE-2026-39821 ( NVD ): 8.2 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N * CVE-2026-40179 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2026-40179 ( SUSE ): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N * CVE-2026-40179 ( NVD ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-40179 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-41602 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-41602 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-41602 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-41602 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42151 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-42151 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-42151 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-42154 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42154 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42154 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42502 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2026-42502 ( SUSE ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-42502 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-42506 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2026-42506 ( SUSE ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-42506 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 * SUSE Linux Enterprise Desktop 15 SP1 * SUSE Linux Enterprise Desktop 15 SP2 * SUSE Linux Enterprise Desktop 15 SP3 * SUSE Linux Enterprise Desktop 15 SP4 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise High Performance Computing 15 * SUSE Linux Enterprise High Performance Computing 15 SP1 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Micro 5.0 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP1 * SUSE Linux Enterprise Real Time 15 SP2 * SUSE Linux Enterprise Real Time 15 SP3 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 * SUSE Linux Enterprise Server 15 SP1 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 * SUSE Linux Enterprise Server for SAP Applications 15 SP1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Multi-Linux Manager Client Tools for SLE 15 * SUSE Multi-Linux Manager Client Tools for SLE Micro 5 An update that solves 22 vulnerabilities, contains two features and has 17 security fixes can now be installed. ## Description: This update fixes the following issues: dracut-saltboot updated to version 1.2.1: * Key Update Highlights (v1.2.1) * Added wait check for minion start (default 10s), configurable using rd.saltboot.salt_start_timeout option (bsc#1260870) * Decouple salt key wait check to use separate configurable option rd.saltboot.salt_key_timeout, with default 60s * Introduce rd.saltboot namespace for all options, mark old as deprecated golang-github-QubitProducts-exporter_exporter: * Security issues fixed: * CVE-2022-21698: Fixed prometheus/client_golang possible denial of service using InstrumentHandlerCounter (bsc#1248699) golang-github-boynux-squid_exporter: * Non customer facing changes golang-github-lusitaniae-apache_exporter: * Non customer facing changes golang-github-prometheus-alertmanager: * Non customer facing changes golang-github-prometheus-node_exporter updated to version 1.10.2: * Key Update Highlights (v1.10.0 to v1.10.2): * New Collectors: Added new collectors for PCIe devices and swaps. * New Metrics: Introduced metrics for Zswap/Zswapped, Systemd Virtualization, and WiFi packets (received/transmitted) * Bug Fixes: Resolved a duplicate collection bug in filesystem mount points, fixed a Zswap metric typo, and patched a logging race condition in systemd. * Changes: Switched mdadm to use sysfs for RAID metrics, and added erofs to the default excluded filesystems list. * Internal Refactoring: filesystem mountinfo parsing refactor (bsc#1261810) golang-github-prometheus-prometheus updated to version 3.5.3: * Security issues fixed: * CVE-2026-42151: AzureAD remote write: Fixed OAuth client_secret being exposed in plaintext via /-/config endpoint (v3.5.3) (bsc#1263986) * CVE-2026-42154: Remote-read: Reject snappy-compressed requests whose declared decoded length exceeds the limit (v3.5.3) (bsc#1263987) * CVE-2026-40179: UI: Fixed stored XSS via unescaped le label values in old UI heatmap chart tick labels (v3.5.2) (bsc#1262222). * CVE-2026-39821: Fixed validation bypass and privilege escalation by updating golang.org/x/net to version 0.55.0 (backported patch) (bsc#1266608) * Other changes: * Remote-Write: Reject snappy-compressed requests whose declared decoded length exceeds the decode limit (v3.5.3) * Use systemd tmpfiles.d to create /var/lib/prometheus hierarchy (jsc#PED-14816) * Internal update with non customer facing changes (v3.5.1) grafana updated to version 11.6.14+security-04: * Security issues fixed in v11.6.14+security-04: * CVE-2026-28374: Fixed insecure direct object reference in Annotations API (bsc#1265290) * CVE-2026-28376: Fixed unbounded memory allocation in Grafana Live push endpoint (bsc#1265289) * CVE-2026-28383: Fixed unbounded memory allocation in Grafana plugin resources (bsc#1265286) * CVE-2026-28380: Fixed broken access control in Snapshot API (bsc#1265287) * CVE-2026-33376: Fixed Auth Proxy IPv6 whitelist bypass (bsc#1265285) * CVE-2026-28379: Fixed viewer-triggered race condition in Grafana Live (bsc#1265288) * CVE-2026-33377: Fixed dashboard Editor Privilege Escalation (bsc#1265284) * CVE-2026-33378: Fixed OOM exception in Grafana Data Source Plugin (bsc#1265283) * CVE-2026-33381: Prevent users from generating Service Account tokens after permissions removal (bsc#1265281) * CVE-2026-33380: Fixed vulnerability in SQL Expressions allowing an authenticated attacker to read arbitrary files from the Grafana server?s filesystem (bsc#1265282) * Security issues fixed through backported patches: * CVE-2026-39821: Fixed validation bypass and privilege escalation by updating golang.org/x/net to version 0.55.0 (bsc#1266600) * CVE-2026-34986: Fixed panic in JWE decryption (bsc#1262950) * CVE-2026-41602: Fixed Integer Overflow or Wraparound vulnerability in Apache Thrift (bsc#1263501) * CVE-2026-25680, CVE-2026-42502, CVE-2026-27136, CVE-2026-25681, CVE-2026-42506: Fixed multiple issues when parsing HTML files (bsc#1267153) mgr-push updated to version 5.2.4: * Internal updates with no customer facing changes across versions (v5.2.1-0 to v5.2.4-0) prometheus-blackbox_exporter: * Security issues fixed: * CVE-2026-39821: Fixed validation bypass and privilege escalation by updating golang.org/x/net to version 0.55.0 (bsc#1266556) prometheus-postgres_exporter: * Security issues fixed: * CVE-2022-21698: Fixed prometheus/client_golang possible denial of service using InstrumentHandlerCounter (bsc#1248699) rhnlib updated to version 5.2.5: * Internal updates with non customer facing changes across versions (v5.2.1-0 to v5.2.5-0) spacecmd updated to version 5.2.8: * Key Update Highlights (v5.2.3-0): * Fixed typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Key Update Highlights (v5.2.1-0): * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fixed methods in api namespace in spacecmd (bsc#1249532) * Other changes (v5.2.2-0 to 5.2.8-0): * Translation strings updates * Internal updates with non customer facing changes spacewalk-client-tools updated to version 5.2.6: * Internal updates with non customer facing changes across versions (v5.2.1-0 to v5.2.6-0) supportutils-plugin-salt: * Non customer facing changes supportutils-plugin-susemanager-client updated to version 5.2.3: * Internal updates with non customer facing changes across versions (v5.2.1-0 to v5.2.3-0) uyuni-tools updated to version 5.2.12: * Key Update Highlights (v5.2.11-0) * Improved pod readiness checks (bsc#1266012) * Key Update Highlights (v5.2.10-0) * Preserve hub replicas during upgrade (bsc#1262708) * Added mgrctl "ssh" and "ssh remove_known_host" commands * Fixed startup checks for main server container (bsc#1263157) * Fixed service dependencies (bsc#1263823) * Updated default tag to 5.1.3.1 (bsc#1262760) * Fixed missing registry for db image (bsc#1259739) * Internal SANs for db and reportdb are no longer required * Generate the same certificate for server and reportdb * Fixed Report DB CA certificate (bsc#1260806) * Removed waitForTraefik function (bsc#1261902) * Key Update Highlights (v5.2.8-0) * Generate service template only after secrets are created * Key Update Highlights (v5.2.7-0) * Admin secrets no longer required on upgrades (bsc#1262409) * Key Update Highlights (v5.2.6-0): * Use podman secrets for SSL on proxy * Fixed database online backup * mgrctl copy command now infers target name automatically * Restored TFTP port to proxy (bsc#1260905) * TFTP disabled by default on server * Fixed incorrect package dependencies declaration (bsc#1229105) * Prevent cobbler port from being exposed * Bumped zerolog to 1.34 * Ignore spacewalk-service stop return code. * Stop automatically unhealthy container * Use container based server setup instead tools bundled one * Key Update Highlights (v5.2.5-0) * Removed migrate command * Removed hub register command * Split TFTP server into separate container * Removed Kubernetes install/upgrade from mgrpxy * Key Update Highlights (v5.2.1-0) * Fixed --dbupgrade-tag parameter (bsc#1249400) * Added --registry-host, --registry-user, --registry-password options * Deprecated --registry option * Added SUSE Linux Enterprise 15 SP7 support * Migrated custom SSL CA certificates (bsc#1232641) * Other changes (v5.2.1-0 to v5.2.12-0): * Translation strings updates * Internal updates with version bump but without customer facing changes uyuni-common-libs updated to version 5.2.5: * Key Update Highlights (v5.2.5-0): * Cleaned up the checksum module by removing legacy MD5/SHA1 fallback imports in favor of using standard hashlib directly * Other changes: * Internal updates with non customer facing changes across versions (v5.2.1-0 to v5.2.5-0) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SLE Micro 5 zypper in -t patch SUSE-MultiLinuxManagerTools-SLE-Micro-5-2026-2768=1 * SUSE Multi-Linux Manager Client Tools for SLE 15 zypper in -t patch SUSE-MultiLinuxManagerTools-SLE-15-2026-2768=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SLE Micro 5 (aarch64 ppc64le s390x x86_64) * mgrctl-5.2.12-150002.3.17.1 * golang-github-prometheus-node_exporter-1.10.2-150002.3.6.2 * golang-github-prometheus-node_exporter-debuginfo-1.10.2-150002.3.6.2 * mgrctl-debuginfo-5.2.12-150002.3.17.1 * SUSE Multi-Linux Manager Client Tools for SLE Micro 5 (noarch) * mgrctl-zsh-completion-5.2.12-150002.3.17.1 * mgrctl-lang-5.2.12-150002.3.17.1 * dracut-saltboot-1.2.1-150002.3.9.1 * mgrctl-bash-completion-5.2.12-150002.3.17.1 * SUSE Multi-Linux Manager Client Tools for SLE 15 (aarch64 ppc64le s390x x86_64) * golang-github-prometheus-node_exporter-1.10.2-150002.3.6.2 * prometheus-blackbox_exporter-0.26.0-150002.3.11.1 * grafana-debuginfo-11.6.14+security04-150002.4.21.1 * golang-github-prometheus-prometheus-debuginfo-3.5.3-150002.3.13.1 * grafana-11.6.14+security04-150002.4.21.1 * golang-github-prometheus-alertmanager-0.28.1-150002.4.11.1 * golang-github-lusitaniae-apache_exporter-debuginfo-1.0.10-150002.3.9.2 * golang-github-prometheus-prometheus-3.5.3-150002.3.13.1 * golang-github-prometheus-node_exporter-debuginfo-1.10.2-150002.3.6.2 * golang-github-QubitProducts-exporter_exporter-0.4.0-150002.3.6.2 * prometheus-postgres_exporter-0.10.1-150002.3.3.2 * golang-github-prometheus-alertmanager-debuginfo-0.28.1-150002.4.11.1 * prometheus-postgres_exporter-debuginfo-0.10.1-150002.3.3.2 * mgrctl-debuginfo-5.2.12-150002.3.17.1 * golang-github-lusitaniae-apache_exporter-1.0.10-150002.3.9.2 * golang-github-boynux-squid_exporter-1.13.0-150002.3.6.2 * firewalld-prometheus-config-0.1-150002.3.13.1 * golang-github-boynux-squid_exporter-debuginfo-1.13.0-150002.3.6.2 * mgrctl-5.2.12-150002.3.17.1 * SUSE Multi-Linux Manager Client Tools for SLE 15 (noarch) * python3-mgr-push-5.2.4-150002.3.9.1 * python3-spacewalk-client-tools-5.2.6-150002.3.9.1 * mgrctl-zsh-completion-5.2.12-150002.3.17.1 * python3-defusedxml-0.7.1-150002.1.3.1 * spacecmd-5.2.8-150002.3.12.1 * supportutils-plugin-susemanager-client-5.2.3-150002.3.9.1 * dracut-saltboot-1.2.1-150002.3.9.1 * python3-uyuni-common-libs-5.2.5-150002.3.6.1 * mgr-push-5.2.4-150002.3.9.1 * mgrctl-bash-completion-5.2.12-150002.3.17.1 * mgrctl-lang-5.2.12-150002.3.17.1 * spacewalk-client-tools-5.2.6-150002.3.9.1 * python3-rhnlib-5.2.5-150002.3.9.1 * supportutils-plugin-salt-1.2.3-150002.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2022-21698.html * https://www.suse.com/security/cve/CVE-2026-25680.html * https://www.suse.com/security/cve/CVE-2026-25681.html * https://www.suse.com/security/cve/CVE-2026-27136.html * https://www.suse.com/security/cve/CVE-2026-28374.html * https://www.suse.com/security/cve/CVE-2026-28376.html * https://www.suse.com/security/cve/CVE-2026-28379.html * https://www.suse.com/security/cve/CVE-2026-28380.html * https://www.suse.com/security/cve/CVE-2026-28383.html * https://www.suse.com/security/cve/CVE-2026-33376.html * https://www.suse.com/security/cve/CVE-2026-33377.html * https://www.suse.com/security/cve/CVE-2026-33378.html * https://www.suse.com/security/cve/CVE-2026-33380.html * https://www.suse.com/security/cve/CVE-2026-33381.html * https://www.suse.com/security/cve/CVE-2026-34986.html * https://www.suse.com/security/cve/CVE-2026-39821.html * https://www.suse.com/security/cve/CVE-2026-40179.html * https://www.suse.com/security/cve/CVE-2026-41602.html * https://www.suse.com/security/cve/CVE-2026-42151.html * https://www.suse.com/security/cve/CVE-2026-42154.html * https://www.suse.com/security/cve/CVE-2026-42502.html * https://www.suse.com/security/cve/CVE-2026-42506.html * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1229105 * https://bugzilla.suse.com/show_bug.cgi?id=1232641 * https://bugzilla.suse.com/show_bug.cgi?id=1248699 * https://bugzilla.suse.com/show_bug.cgi?id=1248707 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1260870 * https://bugzilla.suse.com/show_bug.cgi?id=1260905 * https://bugzilla.suse.com/show_bug.cgi?id=1261810 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262222 * https://bugzilla.suse.com/show_bug.cgi?id=1262409 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1262950 * https://bugzilla.suse.com/show_bug.cgi?id=1263157 * https://bugzilla.suse.com/show_bug.cgi?id=1263501 * https://bugzilla.suse.com/show_bug.cgi?id=1263823 * https://bugzilla.suse.com/show_bug.cgi?id=1263986 * https://bugzilla.suse.com/show_bug.cgi?id=1263987 * https://bugzilla.suse.com/show_bug.cgi?id=1265281 * https://bugzilla.suse.com/show_bug.cgi?id=1265282 * https://bugzilla.suse.com/show_bug.cgi?id=1265283 * https://bugzilla.suse.com/show_bug.cgi?id=1265284 * https://bugzilla.suse.com/show_bug.cgi?id=1265285 * https://bugzilla.suse.com/show_bug.cgi?id=1265286 * https://bugzilla.suse.com/show_bug.cgi?id=1265287 * https://bugzilla.suse.com/show_bug.cgi?id=1265288 * https://bugzilla.suse.com/show_bug.cgi?id=1265289 * https://bugzilla.suse.com/show_bug.cgi?id=1265290 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://bugzilla.suse.com/show_bug.cgi?id=1266556 * https://bugzilla.suse.com/show_bug.cgi?id=1266600 * https://bugzilla.suse.com/show_bug.cgi?id=1266608 * https://bugzilla.suse.com/show_bug.cgi?id=1267153 * https://jira.suse.com/browse/MSQA-1056 * https://jira.suse.com/browse/PED-14816 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:36:18 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:36:18 -0000 Subject: SUSE-RU-2026:2767-1: important: Recommended update 5.1.4 for Multi-Linux Manager Salt Bundle Message-ID: <178334137844.556.1755238385634333579@dc2e3449a402> # Recommended update 5.1.4 for Multi-Linux Manager Salt Bundle Announcement ID: SUSE-RU-2026:2767-1 Release Date: 2026-07-06T07:48:02Z Rating: important References: * bsc#1254900 * bsc#1255418 * bsc#1257583 * bsc#1259700 * jsc#MSQA-1056 Affected Products: * SUSE Linux Enterprise Desktop 12 * SUSE Linux Enterprise Desktop 12 SP1 * SUSE Linux Enterprise Desktop 12 SP2 * SUSE Linux Enterprise Desktop 12 SP3 * SUSE Linux Enterprise Desktop 12 SP4 * SUSE Linux Enterprise High Performance Computing 12 SP2 * SUSE Linux Enterprise High Performance Computing 12 SP3 * SUSE Linux Enterprise High Performance Computing 12 SP4 * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 * SUSE Linux Enterprise Server 12 SP1 * SUSE Linux Enterprise Server 12 SP2 * SUSE Linux Enterprise Server 12 SP3 * SUSE Linux Enterprise Server 12 SP4 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server for SAP Applications 12 * SUSE Linux Enterprise Server for SAP Applications 12 SP1 * SUSE Linux Enterprise Server for SAP Applications 12 SP2 * SUSE Linux Enterprise Server for SAP Applications 12 SP3 * SUSE Linux Enterprise Server for SAP Applications 12 SP4 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 * SUSE Multi-Linux Manager Client Tools for SLE 12 An update that contains one feature and has four fixes can now be installed. ## Description: This update fixes the following issues: venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Calculate UUID grain for Xen PV guests (bsc#1255418) * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * BDSA-2025-60810: Harden Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SLE 12 zypper in -t patch SUSE-MultiLinuxManagerTools-SLE-12-2026-2767=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SLE 12 (aarch64 ppc64le s390x x86_64) * venv-salt-minion-3006.0-120002.5.19.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1255418 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://jira.suse.com/browse/MSQA-1056 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:36:51 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:36:51 -0000 Subject: SUSE-SU-2026:2766-1: important: Security update 5.1.4 for Multi-Linux Manager Client Tools Message-ID: <178334141117.556.15198724712644075749@dc2e3449a402> # Security update 5.1.4 for Multi-Linux Manager Client Tools Announcement ID: SUSE-SU-2026:2766-1 Release Date: 2026-07-06T07:47:40Z Rating: important References: * bsc#1227579 * bsc#1229105 * bsc#1232641 * bsc#1248699 * bsc#1248707 * bsc#1249400 * bsc#1249532 * bsc#1253174 * bsc#1259739 * bsc#1260806 * bsc#1260905 * bsc#1261810 * bsc#1261902 * bsc#1262409 * bsc#1262708 * bsc#1262760 * bsc#1263157 * bsc#1263823 * bsc#1266012 * jsc#MSQA-1056 Cross-References: * CVE-2022-21698 CVSS scores: * CVE-2022-21698 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2022-21698 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Enterprise Desktop 12 * SUSE Linux Enterprise Desktop 12 SP1 * SUSE Linux Enterprise Desktop 12 SP2 * SUSE Linux Enterprise Desktop 12 SP3 * SUSE Linux Enterprise Desktop 12 SP4 * SUSE Linux Enterprise High Performance Computing 12 SP2 * SUSE Linux Enterprise High Performance Computing 12 SP3 * SUSE Linux Enterprise High Performance Computing 12 SP4 * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 * SUSE Linux Enterprise Server 12 SP1 * SUSE Linux Enterprise Server 12 SP2 * SUSE Linux Enterprise Server 12 SP3 * SUSE Linux Enterprise Server 12 SP4 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server for SAP Applications 12 * SUSE Linux Enterprise Server for SAP Applications 12 SP1 * SUSE Linux Enterprise Server for SAP Applications 12 SP2 * SUSE Linux Enterprise Server for SAP Applications 12 SP3 * SUSE Linux Enterprise Server for SAP Applications 12 SP4 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 * SUSE Multi-Linux Manager Client Tools for SLE 12 An update that solves one vulnerability, contains one feature and has 18 security fixes can now be installed. ## Description: This update fixes the following issues: golang-github-QubitProducts-exporter_exporter: * CVE-2022-21698: Replace github.com/prometheus/client_golang with version 1.11.1 (bsc#1248707) golang-github-boynux-squid_exporter: * Non customer facing changes golang-github-lusitaniae-apache_exporter: * Non customer facing changes golang-github-prometheus-node_exporter: * Update to 1.10.2: * [BUGFIX] meminfo: Fix typo in Zswap metric name * Update to 1.10.1: * [BUGFIX] filesystem: Fix mount points being collected multiple times * [BUGFIX] filesystem: Refactor mountinfo parsing (bsc#1261810) * [BUGFIX] meminfo: Add Zswap/Zswapped metrics * Update to 1.10.0: * [CHANGE] mdadm: Use sysfs for RAID metrics * [CHANGE] filesystem: Add erofs in default excluded fs * [CHANGE] tcpstat: Use std lib binary.NativeEndian * [FEATURE] pcidevice: Add new collector for PCIe devices * [FEATURE] systemd: Add Virtualization metrics * [FEATURE] swaps: Add new collector * [ENHANCEMENT] wifi: Add packet received and transmitted metrics * [ENHANCEMENT] filesystem: Take super options into account for read-only * [ENHANCEMENT] pcidevice: Add additional metrics * [ENHANCEMENT] perf: Add tlb_data metrics * [BUGFIX] diskstats: Simplify condition * [BUGFIX] thermal: Sanitize darwin thermal strings * [BUGFIX] cpufreq: Fix: collector enable * [BUGFIX] ethtool: Fix returning 0 for sanitized metrics * [BUGFIX] systemd: Fix logging race mgr-push: * Version 5.2.4-0 * Non customer facing changes * Version 5.2.3-0 * Non customer facing changes * Version 5.2.2-0 * Non customer facing changes * Version 5.2.1-0 * Non customer facing changes prometheus-postgres_exporter: * CVE-2022-21698: Replace github.com/prometheus/client_golang with version 1.11.1 (bsc#1248699) rhnlib: * Version 5.2.5-0 * Non customer facing changes * Version 5.2.4-0 * Non customer facing changes * Version 5.2.3-0 * Non customer facing changes * Version 5.2.2-0 * Non customer facing changes * Version 5.2.1-0 * Non customer facing changes spacecmd: * Version 5.2.8-0 * Non customer facing changes * Version 5.2.7-0 * Add proxy_container_config_nossl command * Version 5.2.6-0 * Update translation strings * Version 5.2.5-0 * Update translation strings * Version 5.2.4-0 * Update translation strings * Version 5.2.3-0 * Fix typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Version 5.2.2-0 * Update translation strings * Version 5.2.1-0 * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fix methods in api namespace in spacecmd (bsc#1249532) spacewalk-client-tools: * Version 5.2.6-0 * Non customer facing changes * Version 5.2.5-0 * Update translations * Version 5.2.4-0 * Non customer facing changes * Version 5.2.3-0 * Non customer facing changes * Version 5.2.2-0 * Update translation strings1260806 * Version 5.2.1-0 * Non customer facing changes supportutils-plugin-susemanager-client: * Version 5.2.3-0 * Non customer facing changes * Version 5.2.2-0 * Non customer facing changes * Version 5.2.1-0 * Non customer facing changes uyuni-tools: * Version 5.2.12-0 * No customer facing changes * Version 5.2.11-0 * Do not call podman healthcheck run to wait for pods to be ready (bsc#1266012) * Version 5.2.10-0 * Preserve hub replicas during upgrade (bsc#1262708) * Add mgrctl commands "ssh" and "ssh remove_known_host" * Use a startup check with no limit for the main server container bsc#1263157) * Make uyuni-server service dependent on uyuni-db (bsc#1263823) * Internal SANs for db and reportdb are no longer required * Generate the same certificate for server and reportdb * Update the default tag to 5.1.3.1 (bsc#1262760) * Remove waitForTraefik function (bsc#1261902) * Fix inspect: missing registry for db image (bsc#1259739) * Use correct CA for Report DB (bsc#1260806) * Version 5.2.9-0 * Do not stop container on health check failure Temporary workaround for bsc#1263157 * Version 5.2.8-0 * Generate service template only after secrets are created * Version 5.2.7-0 * Do not require admin secrets on upgrades (bsc#1262409) * Version 5.2.6-0 * Use podman secrets for SSL on proxy * Fix db online backup with new pg_hba settings * mgrctl copy can now infer target name if not set * No need to expose the cobbler port * Add the TFTP port back to the proxy (bsc#1260905) * Fix the macros in the spec file (bsc#1229105) * Disable TFTP by default on the server * Bump zerolog to 1.34 * Ignore spacewalk-service stop return code. * Stop automatically unhealthy container * Use container based server setup instead tools bundled one * Version 5.2.5-0 * Remove migrate command * Remove template script from mgradm: use the one in the image * Split the TFTP server into a separate container * Adjust mgrctl server filter to work with the new helm chart labels * Remove hub register command * Remove the Kubernetes install and upgrade from mgrpxy - Version 5.2.4-0 * Move the SSL checks at the begining of the migration * Remove Kubernetes code for the mgrdam * Use single universal image to migrate between PostgreSQL versions * Version 5.2.3-0 * Update translation strings * Version 5.2.2-0 * Non customer facing changes * Version 5.2.1-0 * Actually use the --dbupgrade-tag parameter when computing the image URL (bsc#1249400) * Detect custom Apache and Squid config in the /etc/uyuni/proxy folder * Fix generated DB certificate subject alternate names * add --registry-host, --registry-user and --registry-password to pull images from an authenticate registry * deprecate --registry uyuni-common-libs: * Version 5.2.5-0 * Remove legacy md5/sha1 fallback imports from checksum module; use hashlib directly * Version 5.2.4-0 * Build uyuni-common-libs noarch * Version 5.2.3-0 * Non customer facing changes * Version 5.2.2-0 * Non customer facing changes * Version 5.2.1-0 * Bump version to 5.2.0 ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SLE 12 zypper in -t patch SUSE-MultiLinuxManagerTools-SLE-12-2026-2766=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SLE 12 (aarch64 ppc64le s390x x86_64) * prometheus-postgres_exporter-0.10.1-120002.3.3.2 * golang-github-prometheus-node_exporter-1.10.2-120002.3.6.3 * mgrctl-debuginfo-5.2.12-120002.3.15.2 * golang-github-prometheus-node_exporter-debuginfo-1.10.2-120002.3.6.3 * golang-github-boynux-squid_exporter-1.13.0-120002.3.6.1 * mgrctl-5.2.12-120002.3.15.2 * prometheus-postgres_exporter-debuginfo-0.10.1-120002.3.3.2 * golang-github-lusitaniae-apache_exporter-debuginfo-1.0.10-120002.3.9.2 * golang-github-QubitProducts-exporter_exporter-0.4.0-120002.3.6.1 * golang-github-lusitaniae-apache_exporter-1.0.10-120002.3.9.2 * golang-github-boynux-squid_exporter-debuginfo-1.13.0-120002.3.6.1 * SUSE Multi-Linux Manager Client Tools for SLE 12 (noarch) * mgr-push-5.2.4-120002.3.9.1 * python-defusedxml-0.6.0-120002.1.3.1 * python2-rhnlib-5.2.5-120002.3.9.1 * mgrctl-lang-5.2.12-120002.3.15.2 * supportutils-plugin-salt-1.2.3-120002.3.3.1 * python2-uyuni-common-libs-5.2.5-120002.3.6.1 * mgrctl-zsh-completion-5.2.12-120002.3.15.2 * spacecmd-5.2.8-120002.3.12.1 * spacewalk-client-tools-5.2.6-120002.3.9.1 * python2-spacewalk-client-tools-5.2.6-120002.3.9.1 * mgrctl-bash-completion-5.2.12-120002.3.15.2 * python2-mgr-push-5.2.4-120002.3.9.1 * supportutils-plugin-susemanager-client-5.2.3-120002.3.9.1 ## References: * https://www.suse.com/security/cve/CVE-2022-21698.html * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1229105 * https://bugzilla.suse.com/show_bug.cgi?id=1232641 * https://bugzilla.suse.com/show_bug.cgi?id=1248699 * https://bugzilla.suse.com/show_bug.cgi?id=1248707 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1260905 * https://bugzilla.suse.com/show_bug.cgi?id=1261810 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262409 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1263157 * https://bugzilla.suse.com/show_bug.cgi?id=1263823 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://jira.suse.com/browse/MSQA-1056 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:37:16 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:37:16 -0000 Subject: SUSE-SU-2026:2765-1: important: Security update 5.1.4 for Multi-Linux Manager Client Tools Message-ID: <178334143646.556.522433468384727260@dc2e3449a402> # Security update 5.1.4 for Multi-Linux Manager Client Tools Announcement ID: SUSE-SU-2026:2765-1 Release Date: 2026-07-06T07:47:16Z Rating: important References: * bsc#1227579 * bsc#1235516 * bsc#1236516 * bsc#1238686 * bsc#1248699 * bsc#1248707 * bsc#1249532 * bsc#1253174 * bsc#1254900 * bsc#1255418 * bsc#1257583 * bsc#1259700 * bsc#1261810 * jsc#MSQA-1056 * jsc#PED-12485 * jsc#PED-7893 * jsc#PED-7928 Cross-References: * CVE-2022-21698 * CVE-2023-45288 * CVE-2025-22870 CVSS scores: * CVE-2022-21698 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2022-21698 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-45288 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2023-45288 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2023-45288 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-22870 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-22870 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L * CVE-2025-22870 ( NVD ): 4.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L Affected Products: * SUSE Liberty Linux 7 * SUSE Liberty Linux 7 LTSS * SUSE Liberty Linux LTSS 7 for Oracle Linux * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 7, RHEL and clones An update that solves three vulnerabilities, contains four features and has 10 security fixes can now be installed. ## Description: This update fixes the following issues: golang-github-QubitProducts-exporter_exporter: * Security issue fixed: * CVE-2022-21698: Fixed prometheus/client_golang possible denial of service using InstrumentHandlerCounter (bsc#1248699) golang-github-lusitaniae-apache_exporter: * Non customer facing changes golang-github-prometheus-node_exporter updated to version 1.10.2: * Security issues fixed: * CVE-2025-22870: Fixed potential proxy bypass using IPv6 zone IDs (v1.9.1) (bsc#1238686) * CVE-2023-45288: Close connections when receiving too many headers (v1.9.0) (bsc#1236516) * Highlights of other changes and bug fixes: * Backward Compatibility and packaging changes: * Added compatibility for Go 1.22/1.23 needed in older RHEL toolchains * Pinned golang.org/x/net to v0.37.0 for Go 1.22 compatibility * Version 1.10.2: * Fixed typo in Zswap metric name (meminfo) * Version 1.10.1: * Fixed mount points being collected multiple times (filesystem) * Refactored mountinfo parsing (bsc#1261810) * Added Zswap/Zswapped metrics (meminfo) * Version 1.10.0: * New collectors: PCIe devices, swaps * Added systemd virtualization metrics, AIX metrics * WiFi packet metrics, additional PCIe and TLB metrics * Changed mdadm to use sysfs, added erofs to excluded filesystems * Fixed bugs: cpufreq collector, ethtool metrics * Version 1.9.1: * Fixed missing IRQ on older kernels (pressure) * Version 1.9.0 (jsc#PED-12485): * Switched to Go log/slog for logging * Converted meminfo to use procfs library * New features: filesystem mount info, Btrfs commit stats, interrupt filtering, slabinfo filters, IRQ PSI metrics, hwmon filtering, network interface alias labels, GPU clock frequencies, AIX support, * Enhancements: TCP receive queue drop, block device rotational status, CPU online status, performance optimizations * Fixed: ZFS integer underflow, CPU pressure on limited systems, dataset name parsing * Use systemd-sysusers to configure the user in a dedicated 'system-user-prometheus' subpackage (bsc#1235516) * Version 1.8.x: * Fixed CPU pressure metric collection, pressure collector nil reference * Version 1.8.0: * New collectors: xfrm (IPsec), watchdog * Added CPU vulnerability mitigation labels, TCP out-of-order queue metrics, filesystem device error surfacing * Removed caching of os-release file modtime/filename * Fixed: hwmon nil pointer, ethtool metric sanitization, NetClass data race * Version 1.7.0 (jsc#PED-7893, jsc#PED-7928): * New: CPU vulnerabilities reporting from sysfs * Enhancements: parallelized filesystem stat calls, missing link speeds in ethtool, CPU MHz values, qdisc performance, hwmon filtering, rtnetlink for ARP stats * Fixed: netdev 32-bit fallback, btrfs handle leaks, NFSd v4 index * Version 1.6.0: * Deprecated ntp and supervisord collectors * Removed bcache cache_readaheads_totals metrics * Improved offline CPU handling (removed metrics for offline CPUs) * New: softirqs collector * Enhancements: ZFS zpool states and memory metrics, network interface admin state, CPU frequency governor, reduced btrfs privileges * Fixed: perf tracefs detection, thermal zone noise, Linux aarch64 interrupts mgr-push updated to version 5.2.4: * Internal updates with no customer facing changes across versions (v5.2.1-0 to v5.2.4-0) prometheus-postgres_exporter: * Security issue fixed: * CVE-2022-21698: Fixed denial of service using InstrumentHandlerCounter (bsc#1248699) python-simplejson: * Non customer facing changes rhnlib updated to version 5.2.5: * Internal updates with non customer facing changes across versions (v5.2.1-0 to v5.2.5-0) spacecmd updated to version 5.2.8: * Key Update Highlights (v5.2.3-0): * Fixed typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Key Update Highlights (v5.2.1-0): * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fixed methods in api namespace in spacecmd (bsc#1249532) * Other changes (v5.2.2-0 to 5.2.8-0): * Translation strings updates * Internal updates with non customer facing changes spacewalk-client-tools updated to version 5.2.6: * Internal updates with non customer facing changes across versions (v5.2.1-0 to v5.2.6-0) uyuni-common-libs updated to version 5.2.5: * Key Update Highlights (v5.2.5-0): * Cleaned up the checksum module by removing legacy MD5/SHA1 fallback imports in favor of using standard hashlib directly * Other changes: * Internal updates with non customer facing changes across versions (v5.2.1-0 to v5.2.5-0) venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Calculate UUID grain for Xen PV guests (bsc#1255418) * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * Hardened Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 7, RHEL and clones zypper in -t patch SUSE-MultiLinuxManagerTools-RES-7-2026-2765=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 7, RHEL and clones (aarch64 ppc64le x86_64) * python-simplejson-3.3.1-70002.1.3.1 * venv-salt-minion-3006.0-70002.5.19.1 * prometheus-postgres_exporter-0.10.1-70002.3.3.3 * golang-github-lusitaniae-apache_exporter-1.0.10-70002.3.9.3 * golang-github-prometheus-node_exporter-1.10.2-70002.3.3.3 * golang-github-QubitProducts-exporter_exporter-0.4.0-70002.3.6.2 * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 7, RHEL and clones (noarch) * spacewalk-client-tools-5.2.6-70002.3.9.1 * mgr-push-5.2.4-70002.3.9.2 * python2-rhnlib-5.2.5-70002.3.9.1 * python2-uyuni-common-libs-5.2.5-70002.3.6.1 * spacecmd-5.2.8-70002.3.12.1 * python2-spacewalk-client-tools-5.2.6-70002.3.9.1 * python2-mgr-push-5.2.4-70002.3.9.2 ## References: * https://www.suse.com/security/cve/CVE-2022-21698.html * https://www.suse.com/security/cve/CVE-2023-45288.html * https://www.suse.com/security/cve/CVE-2025-22870.html * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1235516 * https://bugzilla.suse.com/show_bug.cgi?id=1236516 * https://bugzilla.suse.com/show_bug.cgi?id=1238686 * https://bugzilla.suse.com/show_bug.cgi?id=1248699 * https://bugzilla.suse.com/show_bug.cgi?id=1248707 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1255418 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1261810 * https://jira.suse.com/browse/MSQA-1056 * https://jira.suse.com/browse/PED-12485 * https://jira.suse.com/browse/PED-7893 * https://jira.suse.com/browse/PED-7928 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:37:57 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:37:57 -0000 Subject: SUSE-SU-2026:2764-1: important: Security update 5.1.4 for Multi-Linux Manager Client Tools Message-ID: <178334147782.556.73851766760023200@dc2e3449a402> # Security update 5.1.4 for Multi-Linux Manager Client Tools Announcement ID: SUSE-SU-2026:2764-1 Release Date: 2026-07-06T07:46:41Z Rating: important References: * bsc#1227579 * bsc#1229105 * bsc#1232641 * bsc#1235516 * bsc#1236516 * bsc#1238686 * bsc#1248699 * bsc#1248707 * bsc#1249400 * bsc#1249532 * bsc#1253174 * bsc#1254900 * bsc#1257583 * bsc#1259700 * bsc#1259739 * bsc#1260806 * bsc#1260905 * bsc#1261810 * bsc#1261902 * bsc#1262409 * bsc#1262708 * bsc#1262760 * bsc#1263157 * bsc#1263823 * bsc#1266012 * jsc#MSQA-1056 * jsc#PED-12485 * jsc#PED-7893 * jsc#PED-7928 Cross-References: * CVE-2022-21698 * CVE-2023-45288 * CVE-2025-22870 CVSS scores: * CVE-2022-21698 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2022-21698 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-45288 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2023-45288 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2023-45288 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-22870 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-22870 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L * CVE-2025-22870 ( NVD ): 4.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L Affected Products: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 8, RHEL and clones An update that solves three vulnerabilities, contains four features and has 22 security fixes can now be installed. ## Description: This update fixes the following issues: golang-github-QubitProducts-exporter_exporter: * Security issue fixed: * CVE-2022-21698: Fixed prometheus/client_golang possible denial of service using InstrumentHandlerCounter (bsc#1248699) golang-github-lusitaniae-apache_exporter: * Non customer facing changes golang-github-prometheus-node_exporter updated to version 1.10.2: * Security issues fixed: * CVE-2025-22870: Fixed potential proxy bypass using IPv6 zone IDs (v1.9.1) (bsc#1238686) * CVE-2023-45288: Close connections when receiving too many headers (v1.9.0) (bsc#1236516) * Highlights of other changes and bug fixes: * Backward Compatibility and packaging changes: * Added compatibility for Go 1.22/1.23 needed in older RHEL toolchains * Pinned golang.org/x/net to v0.37.0 for Go 1.22 compatibility * Version 1.10.2: * Fixed typo in Zswap metric name (meminfo) * Version 1.10.1: * Fixed mount points being collected multiple times (filesystem) * Refactored mountinfo parsing (bsc#1261810) * Added Zswap/Zswapped metrics (meminfo) * Version 1.10.0: * New collectors: PCIe devices, swaps * Added systemd virtualization metrics, AIX metrics * WiFi packet metrics, additional PCIe and TLB metrics * Changed mdadm to use sysfs, added erofs to excluded filesystems * Fixed bugs: cpufreq collector, ethtool metrics * Version 1.9.1: * Fixed missing IRQ on older kernels (pressure) * Version 1.9.0 (jsc#PED-12485): * Switched to Go log/slog for logging * Converted meminfo to use procfs library * New features: filesystem mount info, Btrfs commit stats, interrupt filtering, slabinfo filters, IRQ PSI metrics, hwmon filtering, network interface alias labels, GPU clock frequencies, AIX support, * Enhancements: TCP receive queue drop, block device rotational status, CPU online status, performance optimizations * Fixed: ZFS integer underflow, CPU pressure on limited systems, dataset name parsing * Use systemd-sysusers to configure the user in a dedicated 'system-user-prometheus' subpackage (bsc#1235516) * Version 1.8.x: * Fixed CPU pressure metric collection, pressure collector nil reference * Version 1.8.0: * New collectors: xfrm (IPsec), watchdog * Added CPU vulnerability mitigation labels, TCP out-of-order queue metrics, filesystem device error surfacing * Removed caching of os-release file modtime/filename * Fixed: hwmon nil pointer, ethtool metric sanitization, NetClass data race * Version 1.7.0 (jsc#PED-7893, jsc#PED-7928): * New: CPU vulnerabilities reporting from sysfs * Enhancements: parallelized filesystem stat calls, missing link speeds in ethtool, CPU MHz values, qdisc performance, hwmon filtering, rtnetlink for ARP stats * Fixed: netdev 32-bit fallback, btrfs handle leaks, NFSd v4 index * Version 1.6.0: * Deprecated ntp and supervisord collectors * Removed bcache cache_readaheads_totals metrics * Improved offline CPU handling (removed metrics for offline CPUs) * New: softirqs collector * Enhancements: ZFS zpool states and memory metrics, network interface admin state, CPU frequency governor, reduced btrfs privileges * Fixed: perf tracefs detection, thermal zone noise, Linux aarch64 interrupts prometheus-postgres_exporter: * Security Fixes: * CVE-2022-21698: Fixed denial of service using InstrumentHandlerCounter (bsc#1248699) scap-security-guide: * Non customer facing changes spacecmd updated to version 5.2.8: * Key Update Highlights (v5.2.3-0): * Fixed typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Key Update Highlights (v5.2.1-0): * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fixed methods in api namespace in spacecmd (bsc#1249532) * Other changes (v5.2.2-0 to 5.2.8-0): * Translation strings updates * Internal updates with non customer facing changes uyuni-tools updated to version 5.2.12: * Key Update Highlights (v5.2.11-0) * Improved pod readiness checks (bsc#1266012) * Key Update Highlights (v5.2.10-0) * Preserve hub replicas during upgrade (bsc#1262708) * Added mgrctl "ssh" and "ssh remove_known_host" commands * Fixed startup checks for main server container (bsc#1263157) * Fixed service dependencies (bsc#1263823) * Updated default tag to 5.1.3.1 (bsc#1262760) * Fixed missing registry for db image (bsc#1259739) * Fixed Report DB CA certificate (bsc#1260806) * Key Update Highlights (v5.2.7-0) * Admin secrets no longer required on upgrades (bsc#1262409) * Key Update Highlights (v5.2.6-0) * Fixed database online backup * mgrctl copy command now infers target name automatically * Restored TFTP port to proxy (bsc#1260905) * TFTP disabled by default on server * Key Update Highlights (v5.2.5-0) * Removed migrate command * Removed hub register command * Split TFTP server into separate container * Removed Kubernetes install/upgrade from mgrpxy * Key Update Highlights (v5.2.1-0) * Fixed --dbupgrade-tag parameter (bsc#1249400) * Added --registry-host, --registry-user, --registry-password options * Deprecated --registry option * Added SUSE Linux Enterprise 15 SP7 support * Migrated custom SSL CA certificates (bsc#1232641) * Other changes (v5.2.1-0 to v5.2.12-0): * Translation strings updates * Internal updates with version bump but without customer facing changes venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * Hardened Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 8, RHEL and clones zypper in -t patch SUSE-MultiLinuxManagerTools-EL-8-2026-2764=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 8, RHEL and clones (noarch) * scap-security-guide-redhat-0.1.79-80002.3.9.6 * mgrctl-zsh-completion-5.2.12-80002.3.12.4 * mgrctl-bash-completion-5.2.12-80002.3.12.4 * spacecmd-5.2.8-80002.3.12.4 * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 8, RHEL and clones (aarch64 ppc64le x86_64) * prometheus-postgres_exporter-0.10.1-80002.3.3.6 * mgrctl-5.2.12-80002.3.12.4 * golang-github-prometheus-node_exporter-1.10.2-80002.3.3.6 * golang-github-QubitProducts-exporter_exporter-debuginfo-0.4.0-80002.3.6.6 * golang-github-QubitProducts-exporter_exporter-debugsource-0.4.0-80002.3.6.6 * golang-github-QubitProducts-exporter_exporter-0.4.0-80002.3.6.6 * golang-github-lusitaniae-apache_exporter-1.0.10-80002.3.9.6 * venv-salt-minion-3006.0-80002.5.19.1 ## References: * https://www.suse.com/security/cve/CVE-2022-21698.html * https://www.suse.com/security/cve/CVE-2023-45288.html * https://www.suse.com/security/cve/CVE-2025-22870.html * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1229105 * https://bugzilla.suse.com/show_bug.cgi?id=1232641 * https://bugzilla.suse.com/show_bug.cgi?id=1235516 * https://bugzilla.suse.com/show_bug.cgi?id=1236516 * https://bugzilla.suse.com/show_bug.cgi?id=1238686 * https://bugzilla.suse.com/show_bug.cgi?id=1248699 * https://bugzilla.suse.com/show_bug.cgi?id=1248707 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1260905 * https://bugzilla.suse.com/show_bug.cgi?id=1261810 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262409 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1263157 * https://bugzilla.suse.com/show_bug.cgi?id=1263823 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://jira.suse.com/browse/MSQA-1056 * https://jira.suse.com/browse/PED-12485 * https://jira.suse.com/browse/PED-7893 * https://jira.suse.com/browse/PED-7928 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:38:44 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:38:44 -0000 Subject: SUSE-SU-2026:2763-1: important: Security update 5.1.4 for Multi-Linux Manager Client Tools Message-ID: <178334152471.556.2199864914490694645@dc2e3449a402> # Security update 5.1.4 for Multi-Linux Manager Client Tools Announcement ID: SUSE-SU-2026:2763-1 Release Date: 2026-07-06T07:46:11Z Rating: important References: * bsc#1227579 * bsc#1229105 * bsc#1232641 * bsc#1235516 * bsc#1236516 * bsc#1238686 * bsc#1248699 * bsc#1248707 * bsc#1249400 * bsc#1249532 * bsc#1253174 * bsc#1254900 * bsc#1257583 * bsc#1259700 * bsc#1259739 * bsc#1260806 * bsc#1260905 * bsc#1261810 * bsc#1261902 * bsc#1262409 * bsc#1262708 * bsc#1262760 * bsc#1263157 * bsc#1263823 * bsc#1266012 * jsc#MSQA-1056 * jsc#PED-12485 * jsc#PED-7893 * jsc#PED-7928 Cross-References: * CVE-2022-21698 * CVE-2023-45288 * CVE-2025-22870 CVSS scores: * CVE-2022-21698 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2022-21698 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-45288 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2023-45288 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2023-45288 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-22870 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-22870 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L * CVE-2025-22870 ( NVD ): 4.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L Affected Products: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 9, RHEL and clones An update that solves three vulnerabilities, contains four features and has 22 security fixes can now be installed. ## Description: This update fixes the following issues: golang-github-QubitProducts-exporter_exporter: * Security issue fixed: * CVE-2022-21698: Fixed prometheus/client_golang possible denial of service using InstrumentHandlerCounter (bsc#1248699) golang-github-lusitaniae-apache_exporter: * Non customer facing changes golang-github-prometheus-node_exporter updated to version 1.10.2: * Security issues fixed: * CVE-2025-22870: Fixed potential proxy bypass using IPv6 zone IDs (v1.9.1) (bsc#1238686) * CVE-2023-45288: Close connections when receiving too many headers (v1.9.0) (bsc#1236516) * Highlights of other changes and bug fixes: * Backward Compatibility and packaging changes: * Added compatibility for Go 1.22/1.23 needed in older RHEL toolchains * Pinned golang.org/x/net to v0.37.0 for Go 1.22 compatibility * Version 1.10.2: * Fixed typo in Zswap metric name (meminfo) * Version 1.10.1: * Fixed mount points being collected multiple times (filesystem) * Refactored mountinfo parsing (bsc#1261810) * Added Zswap/Zswapped metrics (meminfo) * Version 1.10.0: * New collectors: PCIe devices, swaps * Added systemd virtualization metrics, AIX metrics * WiFi packet metrics, additional PCIe and TLB metrics * Changed mdadm to use sysfs, added erofs to excluded filesystems * Fixed bugs: cpufreq collector, ethtool metrics * Version 1.9.1: * Fixed missing IRQ on older kernels (pressure) * Version 1.9.0 (jsc#PED-12485): * Switched to Go log/slog for logging * Converted meminfo to use procfs library * New features: filesystem mount info, Btrfs commit stats, interrupt filtering, slabinfo filters, IRQ PSI metrics, hwmon filtering, network interface alias labels, GPU clock frequencies, AIX support, * Enhancements: TCP receive queue drop, block device rotational status, CPU online status, performance optimizations * Fixed: ZFS integer underflow, CPU pressure on limited systems, dataset name parsing * Use systemd-sysusers to configure the user in a dedicated 'system-user-prometheus' subpackage (bsc#1235516) * Version 1.8.x: * Fixed CPU pressure metric collection, pressure collector nil reference * Version 1.8.0: * New collectors: xfrm (IPsec), watchdog * Added CPU vulnerability mitigation labels, TCP out-of-order queue metrics, filesystem device error surfacing * Removed caching of os-release file modtime/filename * Fixed: hwmon nil pointer, ethtool metric sanitization, NetClass data race * Version 1.7.0 (jsc#PED-7893, jsc#PED-7928): * New: CPU vulnerabilities reporting from sysfs * Enhancements: parallelized filesystem stat calls, missing link speeds in ethtool, CPU MHz values, qdisc performance, hwmon filtering, rtnetlink for ARP stats * Fixed: netdev 32-bit fallback, btrfs handle leaks, NFSd v4 index * Version 1.6.0: * Deprecated ntp and supervisord collectors * Removed bcache cache_readaheads_totals metrics * Improved offline CPU handling (removed metrics for offline CPUs) * New: softirqs collector * Enhancements: ZFS zpool states and memory metrics, network interface admin state, CPU frequency governor, reduced btrfs privileges * Fixed: perf tracefs detection, thermal zone noise, Linux aarch64 interrupts prometheus-postgres_exporter: * Security Fixes: * CVE-2022-21698: Fixed denial of service using InstrumentHandlerCounter (bsc#1248699) scap-security-guide: * Non customer facing changes spacecmd updated to version 5.2.8: * Key Update Highlights (v5.2.3-0): * Fixed typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Key Update Highlights (v5.2.1-0): * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fixed methods in api namespace in spacecmd (bsc#1249532) * Other changes (v5.2.2-0 to 5.2.8-0): * Translation strings updates * Internal updates with non customer facing changes uyuni-tools: uyuni-tools updated to version 5.2.12: * Key Update Highlights (v5.2.11-0) * Improved pod readiness checks (bsc#1266012) * Key Update Highlights (v5.2.10-0) * Preserve hub replicas during upgrade (bsc#1262708) * Added mgrctl "ssh" and "ssh remove_known_host" commands * Fixed startup checks for main server container (bsc#1263157) * Fixed service dependencies (bsc#1263823) * Updated default tag to 5.1.3.1 (bsc#1262760) * Fixed missing registry for db image (bsc#1259739) * Fixed Report DB CA certificate (bsc#1260806) * Key Update Highlights (v5.2.7-0) * Admin secrets no longer required on upgrades (bsc#1262409) * Key Update Highlights (v5.2.6-0) * Fixed database online backup * mgrctl copy command now infers target name automatically * Restored TFTP port to proxy (bsc#1260905) * TFTP disabled by default on server * Key Update Highlights (v5.2.5-0) * Removed migrate command * Removed hub register command * Split TFTP server into separate container * Removed Kubernetes install/upgrade from mgrpxy * Key Update Highlights (v5.2.1-0) * Fixed --dbupgrade-tag parameter (bsc#1249400) * Added --registry-host, --registry-user, --registry-password options * Deprecated --registry option * Added SUSE Linux Enterprise 15 SP7 support * Migrated custom SSL CA certificates (bsc#1232641) * Other changes (v5.2.1-0 to v5.2.12-0): * Translation strings updates * Internal updates with version bump but without customer facing changes venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * Hardened Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 9, RHEL and clones zypper in -t patch SUSE-MultiLinuxManagerTools-EL-9-2026-2763=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 9, RHEL and clones (aarch64 ppc64le s390x x86_64) * mgrctl-5.2.12-90002.3.12.1 * golang-github-lusitaniae-apache_exporter-1.0.10-90002.3.9.4 * venv-salt-minion-3006.0-90002.5.19.1 * golang-github-QubitProducts-exporter_exporter-debugsource-0.4.0-90002.3.6.4 * golang-github-QubitProducts-exporter_exporter-0.4.0-90002.3.6.4 * golang-github-QubitProducts-exporter_exporter-debuginfo-0.4.0-90002.3.6.4 * prometheus-postgres_exporter-0.10.1-90002.3.3.4 * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 9, RHEL and clones (noarch) * spacecmd-5.2.8-90002.3.12.1 * scap-security-guide-redhat-0.1.79-90002.3.9.1 * mgrctl-bash-completion-5.2.12-90002.3.12.1 * mgrctl-zsh-completion-5.2.12-90002.3.12.1 * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 9, RHEL and clones (aarch64 ppc64le x86_64) * golang-github-prometheus-node_exporter-1.10.2-90002.3.3.4 ## References: * https://www.suse.com/security/cve/CVE-2022-21698.html * https://www.suse.com/security/cve/CVE-2023-45288.html * https://www.suse.com/security/cve/CVE-2025-22870.html * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1229105 * https://bugzilla.suse.com/show_bug.cgi?id=1232641 * https://bugzilla.suse.com/show_bug.cgi?id=1235516 * https://bugzilla.suse.com/show_bug.cgi?id=1236516 * https://bugzilla.suse.com/show_bug.cgi?id=1238686 * https://bugzilla.suse.com/show_bug.cgi?id=1248699 * https://bugzilla.suse.com/show_bug.cgi?id=1248707 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1260905 * https://bugzilla.suse.com/show_bug.cgi?id=1261810 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262409 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1263157 * https://bugzilla.suse.com/show_bug.cgi?id=1263823 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://jira.suse.com/browse/MSQA-1056 * https://jira.suse.com/browse/PED-12485 * https://jira.suse.com/browse/PED-7893 * https://jira.suse.com/browse/PED-7928 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 12:39:20 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 12:39:20 -0000 Subject: SUSE-RU-2026:2762-1: important: Recommended update 5.1.4 for Multi-Linux Manager Client Tools Message-ID: <178334156070.556.11763063898995775383@dc2e3449a402> # Recommended update 5.1.4 for Multi-Linux Manager Client Tools Announcement ID: SUSE-RU-2026:2762-1 Release Date: 2026-07-06T07:45:36Z Rating: important References: * bsc#1227579 * bsc#1229105 * bsc#1232641 * bsc#1249400 * bsc#1249532 * bsc#1253174 * bsc#1254900 * bsc#1255418 * bsc#1257583 * bsc#1259700 * bsc#1259739 * bsc#1260806 * bsc#1260905 * bsc#1261810 * bsc#1261902 * bsc#1262409 * bsc#1262708 * bsc#1262760 * bsc#1263157 * bsc#1263823 * bsc#1266012 * jsc#MSQA-1056 Affected Products: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 10, RHEL and clones An update that contains one feature and has 21 fixes can now be installed. ## Description: This update fixes the following issues: golang-github-prometheus-node_exporter: * Initial package release providing version 1.10.2 spacecmd updated to version 5.2.8: * Key Update Highlights (v5.2.3-0): * Fixed typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Key Update Highlights (v5.2.1-0): * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fixed methods in api namespace in spacecmd (bsc#1249532) * Other changes (v5.2.2-0 to 5.2.8-0): * Translation strings updates * Internal updates with non customer facing changes uyuni-tools updated to version 5.2.12: * Key Update Highlights (v5.2.11-0): * Improved pod readiness checks (bsc#1266012) * Key Update Highlights (v5.2.10-0): * Preserve hub replicas during upgrade (bsc#1262708) * Added mgrctl "ssh" and "ssh remove_known_host" commands * Fixed startup checks for main server container (bsc#1263157) * Fixed service dependencies (bsc#1263823) * Updated default tag to 5.1.3.1 (bsc#1262760) * Fixed missing registry for db image (bsc#1259739) * Fixed Report DB CA certificate (bsc#1260806) * Key Update Highlights (v5.2.7-0): * Admin secrets no longer required on upgrades (bsc#1262409) * Key Update Highlights (v5.2.6-0): * Fixed database online backup * mgrctl copy command now infers target name automatically * Restored TFTP port to proxy (bsc#1260905) * TFTP disabled by default on server * Key Update Highlights (v5.2.5-0): * Removed migrate command * Removed hub register command * Split TFTP server into separate container * Removed Kubernetes install/upgrade from mgrpxy * Key Update Highlights (v5.2.1-0): * Fixed --dbupgrade-tag parameter (bsc#1249400) * Added --registry-host, --registry-user, --registry-password options * Deprecated --registry option * Added SUSE Linux Enterprise 15 SP7 support * Migrated custom SSL CA certificates (bsc#1232641) * Other changes (v5.2.1-0 to v5.2.12-0): * Translation strings updates * Internal updates with version bump but without customer facing changes venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Calculate UUID grain for Xen PV guests (bsc#1255418) * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * BDSA-2025-60810: Harden Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 10, RHEL and clones zypper in -t patch SUSE-MultiLinuxManagerTools-EL-10-2026-2762=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 10, RHEL and clones (aarch64 ppc64le s390x x86_64) * golang-github-prometheus-node_exporter-debuginfo-1.10.2-100002.1.3.1 * golang-github-prometheus-node_exporter-debugsource-1.10.2-100002.1.3.1 * golang-github-prometheus-node_exporter-1.10.2-100002.1.3.1 * venv-salt-minion-3006.0-100002.1.10.1 * mgrctl-5.2.12-100002.1.6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Liberty Linux 10, RHEL and clones (noarch) * mgrctl-bash-completion-5.2.12-100002.1.6.1 * spacecmd-5.2.8-100002.1.6.1 * mgrctl-zsh-completion-5.2.12-100002.1.6.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1229105 * https://bugzilla.suse.com/show_bug.cgi?id=1232641 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1255418 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1260905 * https://bugzilla.suse.com/show_bug.cgi?id=1261810 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262409 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1263157 * https://bugzilla.suse.com/show_bug.cgi?id=1263823 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://jira.suse.com/browse/MSQA-1056 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 6 16:35:28 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 06 Jul 2026 16:35:28 -0000 Subject: SUSE-SU-2026:22493-1: important: Security update 5.1.4 for Multi-Linux Manager Client Tools and Salt Bundle Message-ID: <178335572808.4636.7613388961989393409@4d746be3175e> # Security update 5.1.4 for Multi-Linux Manager Client Tools and Salt Bundle Announcement ID: SUSE-SU-2026:22493-1 Release Date: 2026-07-06T08:48:50Z Rating: important References: * bsc#1208800 * bsc#1224788 * bsc#1226578 * bsc#1227579 * bsc#1229105 * bsc#1232641 * bsc#1234567 * bsc#1238890 * bsc#1242916 * bsc#1244925 * bsc#1245107 * bsc#1247707 * bsc#1248699 * bsc#1248707 * bsc#1248848 * bsc#1249243 * bsc#1249400 * bsc#1249532 * bsc#1251305 * bsc#1252974 * bsc#1253032 * bsc#1253174 * bsc#1254400 * bsc#1254401 * bsc#1254866 * bsc#1254867 * bsc#1254900 * bsc#1254997 * bsc#1255418 * bsc#1255764 * bsc#1256070 * bsc#1256331 * bsc#1257029 * bsc#1257031 * bsc#1257041 * bsc#1257042 * bsc#1257044 * bsc#1257046 * bsc#1257100 * bsc#1257108 * bsc#1257181 * bsc#1257583 * bsc#1257894 * bsc#1258041 * bsc#1258079 * bsc#1258144 * bsc#1258382 * bsc#1258816 * bsc#1259087 * bsc#1259230 * bsc#1259240 * bsc#1259261 * bsc#1259474 * bsc#1259479 * bsc#1259482 * bsc#1259521 * bsc#1259590 * bsc#1259591 * bsc#1259611 * bsc#1259630 * bsc#1259700 * bsc#1259734 * bsc#1259735 * bsc#1259739 * bsc#1259787 * bsc#1259804 * bsc#1259808 * bsc#1259960 * bsc#1260026 * bsc#1260031 * bsc#1260589 * bsc#1260614 * bsc#1260806 * bsc#1260905 * bsc#1261305 * bsc#1261307 * bsc#1261327 * bsc#1261631 * bsc#1261723 * bsc#1261753 * bsc#1261810 * bsc#1261841 * bsc#1261902 * bsc#1262222 * bsc#1262285 * bsc#1262409 * bsc#1262460 * bsc#1262471 * bsc#1262492 * bsc#1262595 * bsc#1262708 * bsc#1262720 * bsc#1262760 * bsc#1262761 * bsc#1262950 * bsc#1263157 * bsc#1263501 * bsc#1263814 * bsc#1263823 * bsc#1263841 * bsc#1263986 * bsc#1263987 * bsc#1264149 * bsc#1264234 * bsc#1264256 * bsc#1264966 * bsc#1265134 * bsc#1265281 * bsc#1265282 * bsc#1265283 * bsc#1265284 * bsc#1265285 * bsc#1265286 * bsc#1265287 * bsc#1265288 * bsc#1265289 * bsc#1265290 * bsc#1265319 * bsc#1265358 * bsc#1265975 * bsc#1266012 * bsc#1266556 * bsc#1266600 * bsc#1266608 * bsc#1267153 * bsc#1268381 * jsc#MSQA-1056 * jsc#PED-14816 * jsc#SUMA-320 Cross-References: * CVE-2022-21698 * CVE-2023-52425 * CVE-2024-35195 * CVE-2024-47081 * CVE-2024-52804 * CVE-2025-11468 * CVE-2025-12084 * CVE-2025-12781 * CVE-2025-13462 * CVE-2025-13836 * CVE-2025-13837 * CVE-2025-15282 * CVE-2025-15366 * CVE-2025-15367 * CVE-2025-15444 * CVE-2025-50181 * CVE-2025-6069 * CVE-2025-6075 * CVE-2025-66418 * CVE-2025-66471 * CVE-2025-67724 * CVE-2025-67725 * CVE-2025-67726 * CVE-2025-69277 * CVE-2025-8194 * CVE-2025-8291 * CVE-2026-0672 * CVE-2026-0865 * CVE-2026-10649 * CVE-2026-1299 * CVE-2026-21441 * CVE-2026-2297 * CVE-2026-24049 * CVE-2026-25645 * CVE-2026-25680 * CVE-2026-25681 * CVE-2026-27136 * CVE-2026-27448 * CVE-2026-27459 * CVE-2026-28374 * CVE-2026-28376 * CVE-2026-28379 * CVE-2026-28380 * CVE-2026-28383 * CVE-2026-31958 * CVE-2026-33376 * CVE-2026-33377 * CVE-2026-33378 * CVE-2026-33380 * CVE-2026-33381 * CVE-2026-34986 * CVE-2026-3644 * CVE-2026-39821 * CVE-2026-40179 * CVE-2026-41602 * CVE-2026-42151 * CVE-2026-42154 * CVE-2026-4224 * CVE-2026-42502 * CVE-2026-42506 * CVE-2026-4519 CVSS scores: * CVE-2022-21698 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2022-21698 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52425 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52425 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52425 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-35195 ( SUSE ): 6.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N * CVE-2024-47081 ( SUSE ): 8.2 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2024-47081 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2024-47081 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N * CVE-2024-52804 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2024-52804 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2024-52804 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-11468 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2025-11468 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N * CVE-2025-11468 ( NVD ): 5.7 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:P/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-12084 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-12084 ( SUSE ): 4.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L * CVE-2025-12084 ( NVD ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-12084 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-12781 ( SUSE ): 2.0 CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2025-12781 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N * CVE-2025-12781 ( NVD ): 6.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-12781 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2025-13462 ( SUSE ): 2.0 CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2025-13462 ( SUSE ): 2.5 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N * CVE-2025-13462 ( NVD ): 2.0 CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-13462 ( NVD ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N * CVE-2025-13836 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-13836 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-13836 ( NVD ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-13836 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-13837 ( SUSE ): 2.1 CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-13837 ( SUSE ): 4.0 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-13837 ( NVD ): 2.1 CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-13837 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-15282 ( SUSE ): 5.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-15282 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H * CVE-2025-15282 ( NVD ): 6.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-15366 ( SUSE ): 6.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-15366 ( SUSE ): 6.7 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:H * CVE-2025-15366 ( NVD ): 5.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-15367 ( SUSE ): 6.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-15367 ( SUSE ): 6.7 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:H * CVE-2025-15367 ( NVD ): 5.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-15444 ( SUSE ): 6.8 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N * CVE-2025-15444 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-50181 ( SUSE ): 6.0 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2025-50181 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2025-50181 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2025-50181 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2025-6069 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:H * CVE-2025-6069 ( SUSE ): 6.8 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H * CVE-2025-6069 ( NVD ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L * CVE-2025-6075 ( SUSE ): 1.8 CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-6075 ( SUSE ): 2.5 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L * CVE-2025-6075 ( NVD ): 1.8 CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-6075 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2025-66418 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-66418 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-66418 ( NVD ): 8.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-66418 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-66471 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-66471 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-66471 ( NVD ): 8.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-66471 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-67724 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2025-67724 ( SUSE ): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N * CVE-2025-67724 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2025-67724 ( NVD ): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N * CVE-2025-67725 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-67725 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-67725 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-67726 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-67726 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-67726 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-69277 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2025-69277 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N * CVE-2025-69277 ( NVD ): 4.5 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N * CVE-2025-8194 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-8194 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-8194 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-8291 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2025-8291 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N * CVE-2025-8291 ( NVD ): 4.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N * CVE-2026-0672 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-0672 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N * CVE-2026-0672 ( NVD ): 6.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-0865 ( SUSE ): 5.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-0865 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H * CVE-2026-0865 ( NVD ): 5.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-10649 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-10649 ( NVD ): 8.6 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2026-10649 ( NVD ): 8.6 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2026-1299 ( SUSE ): 8.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-1299 ( SUSE ): 8.2 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N * CVE-2026-1299 ( NVD ): 6.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-21441 ( SUSE ): 2.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2026-21441 ( SUSE ): 4.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L * CVE-2026-21441 ( NVD ): 8.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-21441 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-21441 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-2297 ( SUSE ): 5.7 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-2297 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-2297 ( NVD ): 5.7 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-24049 ( SUSE ): 7.2 CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:P/VC:N/VI:H/VA:H/SC:H/SI:H/SA:H * CVE-2026-24049 ( SUSE ): 7.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H * CVE-2026-24049 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H * CVE-2026-24049 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N * CVE-2026-24049 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H * CVE-2026-25645 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-25645 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-25645 ( NVD ): 4.4 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N * CVE-2026-25645 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-25680 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-25680 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-25680 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2026-25681 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2026-25681 ( SUSE ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-25681 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-27136 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2026-27136 ( SUSE ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-27136 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-27448 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2026-27448 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2026-27448 ( NVD ): 1.7 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-27448 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2026-27459 ( SUSE ): 8.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N * CVE-2026-27459 ( SUSE ): 7.0 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2026-27459 ( NVD ): 7.2 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-27459 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-27459 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-28374 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2026-28374 ( SUSE ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N * CVE-2026-28374 ( NVD ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N * CVE-2026-28376 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-28376 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28376 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28379 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-28379 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28379 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28380 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-28380 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-28380 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-28383 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-28383 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-28383 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-31958 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-31958 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-31958 ( NVD ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-31958 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-33376 ( SUSE ): 9.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-33376 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33376 ( NVD ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33377 ( SUSE ): 6.9 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-33377 ( SUSE ): 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N * CVE-2026-33377 ( NVD ): 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N * CVE-2026-33378 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-33378 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-33378 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-33380 ( SUSE ): 7.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N * CVE-2026-33380 ( SUSE ): 7.7 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2026-33380 ( NVD ): 6.3 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2026-33380 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2026-33381 ( SUSE ): 7.4 CVSS:4.0/AV:N/AC:H/AT:P/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-33381 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33381 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N * CVE-2026-33381 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N * CVE-2026-34986 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-34986 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-34986 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-34986 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-3644 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2026-3644 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N * CVE-2026-3644 ( NVD ): 6.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-3644 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N * CVE-2026-39821 ( SUSE ): 9.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-39821 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-39821 ( NVD ): 9.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N * CVE-2026-39821 ( NVD ): 8.2 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N * CVE-2026-40179 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2026-40179 ( SUSE ): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N * CVE-2026-40179 ( NVD ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-40179 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-41602 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-41602 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-41602 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-41602 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42151 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-42151 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-42151 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-42154 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42154 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42154 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-4224 ( SUSE ): 8.2 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-4224 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-4224 ( NVD ): 6.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-4224 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-42502 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2026-42502 ( SUSE ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-42502 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-42506 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2026-42506 ( SUSE ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-42506 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2026-4519 ( SUSE ): 7.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:N/VI:H/VA:N/SC:L/SI:H/SA:N * CVE-2026-4519 ( SUSE ): 6.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:H/A:N * CVE-2026-4519 ( NVD ): 7.0 CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:A/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-4519 ( NVD ): 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N * CVE-2026-4519 ( NVD ): 7.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:L Affected Products: * SUSE Linux Enterprise Server 16.0 * SUSE Linux Enterprise Server for SAP applications 16.0 * SUSE Linux Enterprise Server High Availability Extension 16.0 * SUSE Linux Micro 6.1 * SUSE Linux Micro 6.2 * SUSE Multi-Linux Manager Client Tools for SLE 16 * SUSE Multi-Linux Manager Proxy 5.1 * SUSE Multi-Linux Manager Retail Branch Server 5.1 * SUSE Multi-Linux Manager Server 5.1 An update that solves 61 vulnerabilities, contains three features and has 65 fixes can now be installed. ## Security update 5.1.4 for Multi-Linux Manager Client Tools and Salt Bundle ### Description: This update fixes the following issues: golang-github-QubitProducts-exporter_exporter: * Security issues fixed: * CVE-2022-21698: Fixed prometheus/client_golang possible denial of service using InstrumentHandlerCounter (bsc#1248699) golang-github-prometheus-node_exporter updated to version 1.10.2: * Key Update Highlights (v1.10.0 to v1.10.2): * New Collectors: Added new collectors for PCIe devices and swaps. * New Metrics: Introduced metrics for Zswap/Zswapped, Systemd Virtualization, and WiFi packets (received/transmitted) * Bug Fixes: Resolved a duplicate collection bug in filesystem mount points, fixed a Zswap metric typo, and patched a logging race condition in systemd. * Changes: Switched mdadm to use sysfs for RAID metrics, and added erofs to the default excluded filesystems list. * Internal Refactoring: filesystem mountinfo parsing refactor (bsc#1261810) golang-github-prometheus-prometheus updated to version 3.5.3: * Security issues fixed: * CVE-2026-42151: AzureAD remote write: Fix OAuth client_secret being exposed in plaintext via /-/config endpoint (v3.5.3) (bsc#1263986) * CVE-2026-42154: Remote-read: Reject snappy-compressed requests whose declared decoded length exceeds the decode limit (v3.5.3) (bsc#1263987) * CVE-2026-40179: UI: Fix stored XSS via unescaped le label values in old UI heatmap chart tick labels (v3.5.2) (bsc#1262222) * CVE-2026-39821: Fixed validation bypass and privilege escalation by updating golang.org/x/net to version 0.55.0 (backported patch) (bsc#1266608) * Other changes: * Remote-Write: Reject snappy-compressed requests whose declared decoded length exceeds the decode limit (v3.5.3) * Use systemd tmpfiles.d to create /var/lib/prometheus hierarchy (jsc#PED-14816) * Internal update with non customer facing changes (v3.5.1) grafana updated to version 11.6.14+security-04: * Security issues fixed in v11.6.14+security-04: * CVE-2026-28374: Fixed insecure direct object reference in Annotations API (bsc#1265290) * CVE-2026-28376: Fixed unbounded memory allocation in Grafana Live push endpoint (bsc#1265289) * CVE-2026-28383: Fixed unbounded memory allocation in Grafana plugin resources (bsc#1265286) * CVE-2026-28380: Fixed broken access control in Snapshot API (bsc#1265287) * CVE-2026-33376: Fixed Auth Proxy IPv6 whitelist bypass (bsc#1265285) * CVE-2026-28379: Fixed viewer-triggered race condition in Grafana Live (bsc#1265288) * CVE-2026-33377: Fixed dashboard Editor Privilege Escalation (bsc#1265284) * CVE-2026-33378: Fixed OOM exception in Grafana Data Source Plugin (bsc#1265283) * CVE-2026-33381: Prevent users from generating Service Account tokens after permissions removal (bsc#1265281) * CVE-2026-33380: Fixed vulnerability in SQL Expressions allowing an authenticated attacker to read arbitrary files from the Grafana server filesystem (bsc#1265282) * Security issues fixed through backported patches: * CVE-2026-39821: Fixed validation bypass and privilege escalation by updating golang.org/x/net to version 0.55.0 (bsc#1266600) * CVE-2026-34986: Fixed panic in JWE decryption (bsc#1262950) * CVE-2026-41602: Fixed Integer Overflow or Wraparound vulnerability in Apache Thrift (bsc#1263501) * CVE-2026-25680, CVE-2026-42502, CVE-2026-27136, CVE-2026-25681, CVE-2026-42506: Fixed multiple issues when parsing HTML files (bsc#1267153) prometheus-blackbox_exporter: * Security issues fixed: * CVE-2026-39821: Fixed validation bypass and privilege escalation by updating golang.org/x/net to version 0.55.0 (bsc#1266556) prometheus-postgres_exporter: * Security issues fixed: * CVE-2022-21698: Fixed prometheus/client_golang possible denial of service using InstrumentHandlerCounter (bsc#1248699) spacecmd updated to version 5.2.8: * Key Update Highlights (v5.2.3-0): * Fixed typo in spacecmd help ca-cert flag (bsc#1253174) * Add subcommand to check if reboot is needed after applying all available patches * Key Update Highlights (v5.2.1-0): * Use JSON instead of pickle for spacecmd cache (bsc#1227579) * Fixed methods in api namespace in spacecmd (bsc#1249532) * Other changes (v5.2.2-0 to 5.2.8-0): * Translation strings updates * Internal updates with non customer facing changes supportutils-plugin-susemanager-client updated to version 5.2.3: * Internal updates with non customer facing changes across versions (v5.2.1-0 to v5.2.3-0) uyuni-tools updated to version 5.2.12: * Key Update Highlights (v5.2.11-0) * Improved pod readiness checks (bsc#1266012) * Key Update Highlights (v5.2.10-0) * Preserve hub replicas during upgrade (bsc#1262708) * Added mgrctl "ssh" and "ssh remove_known_host" commands * Fixed startup checks for main server container (bsc#1263157) * Fixed service dependencies (bsc#1263823) * Updated default tag to 5.1.3.1 (bsc#1262760) * Fixed missing registry for db image (bsc#1259739) * Internal SANs for db and reportdb are no longer required * Generate the same certificate for server and reportdb * Fixed Report DB CA certificate (bsc#1260806) * Removed waitForTraefik function (bsc#1261902) * Key Update Highlights (v5.2.8-0) * Generate service template only after secrets are created * Key Update Highlights (v5.2.7-0) * Admin secrets no longer required on upgrades (bsc#1262409) * Key Update Highlights (v5.2.6-0): * Use podman secrets for SSL on proxy * Fixed database online backup * mgrctl copy command now infers target name automatically * Restored TFTP port to proxy (bsc#1260905) * TFTP disabled by default on server * Fixed incorrect package dependencies declaration (bsc#1229105) * Prevent cobbler port from being exposed * Bumped zerolog to 1.34 * Ignore spacewalk-service stop return code. * Stop automatically unhealthy container * Use container based server setup instead tools bundled one * Key Update Highlights (v5.2.5-0) * Removed migrate command * Removed hub register command * Split TFTP server into separate container * Removed Kubernetes install/upgrade from mgrpxy * Key Update Highlights (v5.2.1-0) * Fixed --dbupgrade-tag parameter (bsc#1249400) * Added --registry-host, --registry-user, --registry-password options * Deprecated --registry option * Added SUSE Linux Enterprise 15 SP7 support * Migrated custom SSL CA certificates (bsc#1232641) * Other changes (v5.2.1-0 to v5.2.12-0): * Translation strings updates * Internal updates with version bump but without customer facing changes venv-salt-minion: * Improved shutdown reliability when the salt-master/minion is terminated * Fixed broken "pkg.info_installed" after migration to salt.utils.timeutil * Calculate UUID grain for Xen PV guests (bsc#1255418) * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) * BDSA-2025-60810: Harden Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) ## Security update for pacemaker ### Description: This update for pacemaker fixes the following issues: * CVE-2026-10649: Fixed denial of service via integer overflow in remote message decompression (bsc#1268381). ## Recommended update 5.1.4 for Multi-Linux Manager ### Description: This update fixes the following issues: proxy-httpd-image: * Version 5.1.16 * Remove unused repos proxy-salt-broker-image: * Version 5.1.15 * Remove unused repos proxy-squid-image: * Version 5.1.14 * Remove unused repos proxy-ssh-image: * Version 5.1.14 * Remove unused repos proxy-tftpd-image: * Version 5.1.14 * Use custom entry id for grub saltboot entries (bsc#1258382, bsc#1208800) * Remove unused repos server-attestation-image: * Version 5.1.15 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-hub-xmlrpc-api-image: * Version 5.1.14 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-image: * Version 5.1.15 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Add mozilla-nss-sysinit to Dockerfile required for FIPS (bsc#1247707) * Do not get repositories from SCC in the server container (bsc#1242916) * Add "susemanager-tools", "susemanager" and "susemanager-tools-salt" packages to server-image server-migration-14-16-image: * Version 5.1.14 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-postgresql-image: * Version 5.1.13 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Add needed pg_hba rules on upgrade (bsc#1262492, bsc#1264149) server-saline-image: * Version 5.1.14 * Use python3*-tornado6 package to make it working with Python 3.11 uyuni-tools: * Version 5.1.29-0 Check backup status only after database is started (bsc#1262492) * Version 5.1.28-0 * Remove waitForTraefik function (bsc#1261902) * Fix inspect: missing registry for db image (bsc#1259739) * Preserve hub replicas during upgrade (bsc#1262708) * Stop automatically unhealthy container * Ignore spacewalk-service stop return code. * Use correct CA for Report DB (bsc#1260806) * Do not call podman healthcheck run to wait for pods to be ready (bsc#1266012) The following packages are underlying build dependencies and system components used by the containers: cobbler: * Added the distro signature for rhel10 (bsc#1265134) liberate-formula: * Version 0.1.4 * No customer facing changes * Version 0.1.3 * Liberate formula support for EL10 (bsc#1265975) prometheus-exporters-formula: * Version 1.4.3 * Add support for Python 3.13 * Drop migrate_formula_data script as it is obsolete prometheus-postgres_exporter: * CVE-2022-21698: Replace github.com/prometheus/client_golang with version 1.11.1 (bsc#1248699) saline: * Update to version 2026.05.18: * Explicitly set port number for Prometheus target * Fix the issue of using non-vendored tornado with Python 3.11 salt: * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) saltboot-formula: * Update to version 1.1.0 * When autoselecting saltboot device, ignore cd/dvd (bsc#1259960) spacecmd: * Version 5.1.14-0 * Update translation strings spacewalk-backend: * Version 5.1.17-0 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Kickstart profile for RHEL 8 requires venv-salt-minion instead of salt- minion (bsc#1259474) * security(checksums): drop md5 and sha1 from checksum choices (bsc#1234567) * Use PBKDF2-SHA256 (600000 iterations) for new password hashes; verify legacy SHA-256 crypt(3) hashes transparently spacewalk-java: * Version 5.1.26-0 * Added listMigrationTargetsWithChannels endpoint to return the valid migration targets channels (jsc#SUMA-320) * Fix CSV export failure on system Details > Custom Info page * Added support for migration from SLES 15 to SLES 16 * Minor UI improvements and fixed spinning icon glitch in Admin -> Setup Wizard * Updated the tab label for eligible subscription systems (bsc#1249243) * Fixed missing field labels in the Create User form. (bsc#1259591) * Enhance buttons readability and consistency across the product * Fix missing translations (bsc#1259787) * Fix hub SCC forwarding registration credential filter (bsc#1260031) * Sanitize inputs to avoid injection in rhn_conf of http proxy settings inputs (bsc#1245107) * Move Salt > Remote Commands to its own RBAC namespace (bsc#1261305) * Make OIDC JWKS initialization startup-safe * Sync package removal permissions in packages API with the Web UI (bsc#1261327) * Run ANALYZE asynchronously after CLM alignment to avoid deadlocks (bsc#1261753) * Fix enforcement of consecutive chars in password policy (bsc#1262761) * Use salt's network module if host or nslookup are not installed (bsc#1262720) * Fix Remote Commands hang on direct hostname (bsc#1226578) * Fix Python SyntaxWarning for invalid escape sequence '\s' in RHUI extract repo data script (bsc#1262595) * Add 'unpushed' to AdvisoryStatus enum to handle EPEL errata with unpushed status (bsc#1264234) * Kickstart profile for RHEL 8 requires venv-salt-minion instead of salt- minion (bsc#1259474) * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Remove validation of packages in kickstart profiles which are not supported anymore (bsc#1259474) * Numeric branch names should not be stored in double format (bsc#1258382) * Add missing pxeeventfailed notification message * Do not add non-FQDN hostnames to the proxy fqdn list (bsc#1263841) * Use supscription matcher output for subscription expiration warning (bsc#1257894) * Fix Oval data sync for ubuntu 26.04 (bsc#1265319) * Recognize PBKDF2-SHA256 hashes alongside legacy SHA-256 crypt(3) in the Java password check helpers * Fix non-ASCII em dash in Pbkdf2Sha256Crypt breaking javadoc build with US- ASCII encoding * security(saml2): default signature algorithm to rsa-sha256 (bsc#1234567) * security(tls): remove TLSv1/TLSv1.1, allow TLSv1.3 for SMTP (bsc#1234567) * Fix CSRFTokenValidator FIPS compatibility by using platform-default SecureRandom (bsc#1247707) * Fix conflicting cobbler system migrations spacewalk-web: * Version 5.1.21-0 * UI changes to support migration from SLES 15 to SLES 16 * Fixed issue causing a blank tab to appear in the Image Building Details page (bsc#1253032) * Minor UI improvements and fixed spinning icon glitch in Admin -> Setup Wizard * Fixed an issue where the "Create Token" modal could become unresponsive when opened * Fixed an issue causing all existing tokens to be deleted in a loop * Improved visibility of all parent rows in permissions table * Enhance buttons placement for a more intuitive experience * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Align subscription matching page warning with dashboard warning for expiring subscriptions (bsc#1257894) * Add missing fragment import (bsc#1264966) subscription-matcher: * Version 0.44 * Fix 2 missing part numbers (bsc#1264256) supportutils-plugin-susemanager-client: * Version 5.1.6-0 * No customer facing changes susemanager: * Version 5.1.17-0 * Add SUSE LibertyLinux 9.6 x86_64 bootstrap repository definition * Remove spacewalk-diskcheck enablement * Use correct CA for Report DB (bsc#1260806) * Relicense mgr-salt-ssh under Apache-2.0 and move it to a separated package named susemanager-tools-salt susemanager-build-keys: * Add Nvidia Cuda Tools key Added: nvidia-cudatools-9CD0A493D42D0685.asc susemanager-docs_en: * Updated the supported features table in the Client Configuration Guide to include Red Hat Linux Enterprise 10 and clones * Added documentation on space usage percentage on the server and db container which can be set using DISKCHECKALERT and DISKTHRESHOLD * Added Code 16 to Monitoring documentation (bsc#1263814) * Added documentation for deleting SCAP scan results to Administration Guide (bsc#1262471) * Rephrased instructions for RBAC in Administration Guide (bsc#1258079) * Added troubleshooting section for BTRFS to Administration Guide (bsc#1258816) * Removed mentions of Leap 15.5 and 15.4 and specified SUSE requiring general or LTS support in Client Configuration Guide (bsc#1262285) * Added information about availability of SLE 16 and SL Micro 6.2 support in the product versions 5.1.2 and later (bsc#1260614) * Removed mention of CIS profile (bsc#1262460) * Corrected path for Salt minion in Retail Guide (#1262090) * Added explanation for translating mgradm arguments to YAML in Installation and Upgrade Guide (bsc#1258144) * Removed Google Cloud Compute from PAYG documentation (bsc#1261631) * Added link to proxy creation from client to an existing document in Installation and Upgrade Guide * Updated features table for EL 10 based distributions * Document Debian 13 * Added support for Open Enterprise Server 25.4 * Clarified how to get PTF images in air-gapped setup in Installation and Upgrade Guide (bsc#1261307) * SUSE Multi-Linux Support does not support autoinstallation (bsc#1259261) * Added instructions about accessing git repositories when building images to Administration Guide * Added online database backup instructions to Administration Guide * Fixed command for product deployment in Installation and Upgrade Guide (bsc#1259479) * Added online database backup instructions susemanager-schema: * Version 5.1.19-0 * Added the RBAC mapping for listMigrationTargetsWithChannels end point (jsc#SUMA-320) * Add index on rhnPackage (checksum_id) (bsc#1258041) (gh#uyuni- project/uyuni#11585) * Move Salt > Remote Commands to its own RBAC namespace (bsc#1261305) * Sync package removal permissions in packages API with the Web UI (bsc#1261327) * Add 'unpushed' to rhn_errata_adv_status_ck constraint to allow importing EPEL errata with unpushed status (bsc#1264234) * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Add missing indexes for channels and tokens (bsc#1259590) * Increase source_url on table rhncontentsource (bsc#1259230) susemanager-sls: * Version 5.1.25-0 * Added salt states to support migration from SLES 15 to SLES 16 * Ignore podman interfaces when resolving FQDNs (bsc#1262720) * Fix GPG key import on first key deploy (bsc#1259482) * Use either ansible-core or ansible packages for Ansible Control node, prefer ansible-core (bsc#1259087) * Fix CPU reporting for ppc64le clients (bsc#1259521) * Fix refresh of virtual instance information (bsc#1261723) susemanager-sync-data: * Version 5.1.10-0 * Add missing RES-EMS channel family (bsc#1265358) * Version 5.1.9-0 * Add SUSE Liberty Linux 9.6 x86_64 product entries uyuni-common-libs: * Version 5.1.6-0 * security(checksums): drop md5 and sha1 from checksum choices (bsc#1234567) * Replace deprecated inspect.getargspec with EAFP usedforsecurity detection uyuni-setup-reportdb: * Version 5.1.5-0 * Fix delete of a reportdb user with uyuni-setup-reportdb-user (bsc#1261841) virtual-host-gatherer: * Version 1.0.31-0 * Drop SUSECloud module as not longer maintained nor used * Version 1.0.30-0 * No customer facing changes How to apply this update: SUSE Multi-Linux Manager Server: 1. Log in as root user to the SUSE Multi-Linux Manager Server. 2. Upgrade mgradm and mgrctl. 3. If you are in a disconnected environment, upgrade the image packages. 4. Reboot the system. 5. Run which will use the default image tags. SUSE Multi-Linux Manager Proxy / Retail Branch Server: 1. Log in as root user to the SUSE Multi-Linux Manager Proxy / Retail Branch Server. 2. Upgrade mgrpxy. 3. If you are in a disconnected environment, upgrade the image packages. 4. Reboot the system. 5. Run which will use the default image tags. ## Recommended update 5.1.4 for Multi-Linux Manager ### Description: This update fixes the following issues: proxy-httpd-image: * Version 5.1.16 * Remove unused repos proxy-salt-broker-image: * Version 5.1.15 * Remove unused repos proxy-squid-image: * Version 5.1.14 * Remove unused repos proxy-ssh-image: * Version 5.1.14 * Remove unused repos proxy-tftpd-image: * Version 5.1.14 * Use custom entry id for grub saltboot entries (bsc#1258382, bsc#1208800) * Remove unused repos server-attestation-image: * Version 5.1.15 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-hub-xmlrpc-api-image: * Version 5.1.14 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-image: * Version 5.1.15 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Add mozilla-nss-sysinit to Dockerfile required for FIPS (bsc#1247707) * Do not get repositories from SCC in the server container (bsc#1242916) * Add "susemanager-tools", "susemanager" and "susemanager-tools-salt" packages to server-image server-migration-14-16-image: * Version 5.1.14 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-postgresql-image: * Version 5.1.13 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Add needed pg_hba rules on upgrade (bsc#1262492, bsc#1264149) server-saline-image: * Version 5.1.14 * Use python3*-tornado6 package to make it working with Python 3.11 uyuni-tools: * Version 5.1.29-0 Check backup status only after database is started (bsc#1262492) * Version 5.1.28-0 * Remove waitForTraefik function (bsc#1261902) * Fix inspect: missing registry for db image (bsc#1259739) * Preserve hub replicas during upgrade (bsc#1262708) * Stop automatically unhealthy container * Ignore spacewalk-service stop return code. * Use correct CA for Report DB (bsc#1260806) * Do not call podman healthcheck run to wait for pods to be ready (bsc#1266012) The following packages are underlying build dependencies and system components used by the containers: cobbler: * Added the distro signature for rhel10 (bsc#1265134) liberate-formula: * Version 0.1.4 * No customer facing changes * Version 0.1.3 * Liberate formula support for EL10 (bsc#1265975) prometheus-exporters-formula: * Version 1.4.3 * Add support for Python 3.13 * Drop migrate_formula_data script as it is obsolete prometheus-postgres_exporter: * CVE-2022-21698: Replace github.com/prometheus/client_golang with version 1.11.1 (bsc#1248699) saline: * Update to version 2026.05.18: * Explicitly set port number for Prometheus target * Fix the issue of using non-vendored tornado with Python 3.11 salt: * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) saltboot-formula: * Update to version 1.1.0 * When autoselecting saltboot device, ignore cd/dvd (bsc#1259960) spacecmd: * Version 5.1.14-0 * Update translation strings spacewalk-backend: * Version 5.1.17-0 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Kickstart profile for RHEL 8 requires venv-salt-minion instead of salt- minion (bsc#1259474) * security(checksums): drop md5 and sha1 from checksum choices (bsc#1234567) * Use PBKDF2-SHA256 (600000 iterations) for new password hashes; verify legacy SHA-256 crypt(3) hashes transparently spacewalk-java: * Version 5.1.26-0 * Added listMigrationTargetsWithChannels endpoint to return the valid migration targets channels (jsc#SUMA-320) * Fix CSV export failure on system Details > Custom Info page * Added support for migration from SLES 15 to SLES 16 * Minor UI improvements and fixed spinning icon glitch in Admin -> Setup Wizard * Updated the tab label for eligible subscription systems (bsc#1249243) * Fixed missing field labels in the Create User form. (bsc#1259591) * Enhance buttons readability and consistency across the product * Fix missing translations (bsc#1259787) * Fix hub SCC forwarding registration credential filter (bsc#1260031) * Sanitize inputs to avoid injection in rhn_conf of http proxy settings inputs (bsc#1245107) * Move Salt > Remote Commands to its own RBAC namespace (bsc#1261305) * Make OIDC JWKS initialization startup-safe * Sync package removal permissions in packages API with the Web UI (bsc#1261327) * Run ANALYZE asynchronously after CLM alignment to avoid deadlocks (bsc#1261753) * Fix enforcement of consecutive chars in password policy (bsc#1262761) * Use salt's network module if host or nslookup are not installed (bsc#1262720) * Fix Remote Commands hang on direct hostname (bsc#1226578) * Fix Python SyntaxWarning for invalid escape sequence '\s' in RHUI extract repo data script (bsc#1262595) * Add 'unpushed' to AdvisoryStatus enum to handle EPEL errata with unpushed status (bsc#1264234) * Kickstart profile for RHEL 8 requires venv-salt-minion instead of salt- minion (bsc#1259474) * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Remove validation of packages in kickstart profiles which are not supported anymore (bsc#1259474) * Numeric branch names should not be stored in double format (bsc#1258382) * Add missing pxeeventfailed notification message * Do not add non-FQDN hostnames to the proxy fqdn list (bsc#1263841) * Use supscription matcher output for subscription expiration warning (bsc#1257894) * Fix Oval data sync for ubuntu 26.04 (bsc#1265319) * Recognize PBKDF2-SHA256 hashes alongside legacy SHA-256 crypt(3) in the Java password check helpers * Fix non-ASCII em dash in Pbkdf2Sha256Crypt breaking javadoc build with US- ASCII encoding * security(saml2): default signature algorithm to rsa-sha256 (bsc#1234567) * security(tls): remove TLSv1/TLSv1.1, allow TLSv1.3 for SMTP (bsc#1234567) * Fix CSRFTokenValidator FIPS compatibility by using platform-default SecureRandom (bsc#1247707) * Fix conflicting cobbler system migrations spacewalk-web: * Version 5.1.21-0 * UI changes to support migration from SLES 15 to SLES 16 * Fixed issue causing a blank tab to appear in the Image Building Details page (bsc#1253032) * Minor UI improvements and fixed spinning icon glitch in Admin -> Setup Wizard * Fixed an issue where the "Create Token" modal could become unresponsive when opened * Fixed an issue causing all existing tokens to be deleted in a loop * Improved visibility of all parent rows in permissions table * Enhance buttons placement for a more intuitive experience * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Align subscription matching page warning with dashboard warning for expiring subscriptions (bsc#1257894) * Add missing fragment import (bsc#1264966) subscription-matcher: * Version 0.44 * Fix 2 missing part numbers (bsc#1264256) supportutils-plugin-susemanager-client: * Version 5.1.6-0 * No customer facing changes susemanager: * Version 5.1.17-0 * Add SUSE LibertyLinux 9.6 x86_64 bootstrap repository definition * Remove spacewalk-diskcheck enablement * Use correct CA for Report DB (bsc#1260806) * Relicense mgr-salt-ssh under Apache-2.0 and move it to a separated package named susemanager-tools-salt susemanager-build-keys: * Add Nvidia Cuda Tools key Added: nvidia-cudatools-9CD0A493D42D0685.asc susemanager-docs_en: * Updated the supported features table in the Client Configuration Guide to include Red Hat Linux Enterprise 10 and clones * Added documentation on space usage percentage on the server and db container which can be set using DISKCHECKALERT and DISKTHRESHOLD * Added Code 16 to Monitoring documentation (bsc#1263814) * Added documentation for deleting SCAP scan results to Administration Guide (bsc#1262471) * Rephrased instructions for RBAC in Administration Guide (bsc#1258079) * Added troubleshooting section for BTRFS to Administration Guide (bsc#1258816) * Removed mentions of Leap 15.5 and 15.4 and specified SUSE requiring general or LTS support in Client Configuration Guide (bsc#1262285) * Added information about availability of SLE 16 and SL Micro 6.2 support in the product versions 5.1.2 and later (bsc#1260614) * Removed mention of CIS profile (bsc#1262460) * Corrected path for Salt minion in Retail Guide (#1262090) * Added explanation for translating mgradm arguments to YAML in Installation and Upgrade Guide (bsc#1258144) * Removed Google Cloud Compute from PAYG documentation (bsc#1261631) * Added link to proxy creation from client to an existing document in Installation and Upgrade Guide * Updated features table for EL 10 based distributions * Document Debian 13 * Added support for Open Enterprise Server 25.4 * Clarified how to get PTF images in air-gapped setup in Installation and Upgrade Guide (bsc#1261307) * SUSE Multi-Linux Support does not support autoinstallation (bsc#1259261) * Added instructions about accessing git repositories when building images to Administration Guide * Added online database backup instructions to Administration Guide * Fixed command for product deployment in Installation and Upgrade Guide (bsc#1259479) * Added online database backup instructions susemanager-schema: * Version 5.1.19-0 * Added the RBAC mapping for listMigrationTargetsWithChannels end point (jsc#SUMA-320) * Add index on rhnPackage (checksum_id) (bsc#1258041) (gh#uyuni- project/uyuni#11585) * Move Salt > Remote Commands to its own RBAC namespace (bsc#1261305) * Sync package removal permissions in packages API with the Web UI (bsc#1261327) * Add 'unpushed' to rhn_errata_adv_status_ck constraint to allow importing EPEL errata with unpushed status (bsc#1264234) * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Add missing indexes for channels and tokens (bsc#1259590) * Increase source_url on table rhncontentsource (bsc#1259230) susemanager-sls: * Version 5.1.25-0 * Added salt states to support migration from SLES 15 to SLES 16 * Ignore podman interfaces when resolving FQDNs (bsc#1262720) * Fix GPG key import on first key deploy (bsc#1259482) * Use either ansible-core or ansible packages for Ansible Control node, prefer ansible-core (bsc#1259087) * Fix CPU reporting for ppc64le clients (bsc#1259521) * Fix refresh of virtual instance information (bsc#1261723) susemanager-sync-data: * Version 5.1.10-0 * Add missing RES-EMS channel family (bsc#1265358) * Version 5.1.9-0 * Add SUSE Liberty Linux 9.6 x86_64 product entries uyuni-common-libs: * Version 5.1.6-0 * security(checksums): drop md5 and sha1 from checksum choices (bsc#1234567) * Replace deprecated inspect.getargspec with EAFP usedforsecurity detection uyuni-setup-reportdb: * Version 5.1.5-0 * Fix delete of a reportdb user with uyuni-setup-reportdb-user (bsc#1261841) virtual-host-gatherer: * Version 1.0.31-0 * Drop SUSECloud module as not longer maintained nor used * Version 1.0.30-0 * No customer facing changes How to apply this update: SUSE Multi-Linux Manager Server: 1. Log in as root user to the SUSE Multi-Linux Manager Server. 2. Upgrade mgradm and mgrctl. 3. If you are in a disconnected environment, upgrade the image packages. 4. Reboot the system. 5. Run which will use the default image tags. SUSE Multi-Linux Manager Proxy / Retail Branch Server: 1. Log in as root user to the SUSE Multi-Linux Manager Proxy / Retail Branch Server. 2. Upgrade mgrpxy. 3. If you are in a disconnected environment, upgrade the image packages. 4. Reboot the system. 5. Run which will use the default image tags. ## Recommended update 5.1.4 for Multi-Linux Manager ### Description: This update fixes the following issues: proxy-httpd-image: * Version 5.1.16 * Remove unused repos proxy-salt-broker-image: * Version 5.1.15 * Remove unused repos proxy-squid-image: * Version 5.1.14 * Remove unused repos proxy-ssh-image: * Version 5.1.14 * Remove unused repos proxy-tftpd-image: * Version 5.1.14 * Use custom entry id for grub saltboot entries (bsc#1258382, bsc#1208800) * Remove unused repos server-attestation-image: * Version 5.1.15 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-hub-xmlrpc-api-image: * Version 5.1.14 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-image: * Version 5.1.15 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Add mozilla-nss-sysinit to Dockerfile required for FIPS (bsc#1247707) * Do not get repositories from SCC in the server container (bsc#1242916) * Add "susemanager-tools", "susemanager" and "susemanager-tools-salt" packages to server-image server-migration-14-16-image: * Version 5.1.14 * Image rebuilt to the newest version with updated dependencies for SUSE Multi-Linux Manager 5.1.4 server-postgresql-image: * Version 5.1.13 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Add needed pg_hba rules on upgrade (bsc#1262492, bsc#1264149) server-saline-image: * Version 5.1.14 * Use python3*-tornado6 package to make it working with Python 3.11 uyuni-tools: * Version 5.1.29-0 Check backup status only after database is started (bsc#1262492) * Version 5.1.28-0 * Remove waitForTraefik function (bsc#1261902) * Fix inspect: missing registry for db image (bsc#1259739) * Preserve hub replicas during upgrade (bsc#1262708) * Stop automatically unhealthy container * Ignore spacewalk-service stop return code. * Use correct CA for Report DB (bsc#1260806) * Do not call podman healthcheck run to wait for pods to be ready (bsc#1266012) The following packages are underlying build dependencies and system components used by the containers: cobbler: * Added the distro signature for rhel10 (bsc#1265134) liberate-formula: * Version 0.1.4 * No customer facing changes * Version 0.1.3 * Liberate formula support for EL10 (bsc#1265975) prometheus-exporters-formula: * Version 1.4.3 * Add support for Python 3.13 * Drop migrate_formula_data script as it is obsolete prometheus-postgres_exporter: * CVE-2022-21698: Replace github.com/prometheus/client_golang with version 1.11.1 (bsc#1248699) saline: * Update to version 2026.05.18: * Explicitly set port number for Prometheus target * Fix the issue of using non-vendored tornado with Python 3.11 salt: * Use non vendored tornado with Python 3.11 (bsc#1257583, bsc#1259700) saltboot-formula: * Update to version 1.1.0 * When autoselecting saltboot device, ignore cd/dvd (bsc#1259960) spacecmd: * Version 5.1.14-0 * Update translation strings spacewalk-backend: * Version 5.1.17-0 * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Kickstart profile for RHEL 8 requires venv-salt-minion instead of salt- minion (bsc#1259474) * security(checksums): drop md5 and sha1 from checksum choices (bsc#1234567) * Use PBKDF2-SHA256 (600000 iterations) for new password hashes; verify legacy SHA-256 crypt(3) hashes transparently spacewalk-java: * Version 5.1.26-0 * Added listMigrationTargetsWithChannels endpoint to return the valid migration targets channels (jsc#SUMA-320) * Fix CSV export failure on system Details > Custom Info page * Added support for migration from SLES 15 to SLES 16 * Minor UI improvements and fixed spinning icon glitch in Admin -> Setup Wizard * Updated the tab label for eligible subscription systems (bsc#1249243) * Fixed missing field labels in the Create User form. (bsc#1259591) * Enhance buttons readability and consistency across the product * Fix missing translations (bsc#1259787) * Fix hub SCC forwarding registration credential filter (bsc#1260031) * Sanitize inputs to avoid injection in rhn_conf of http proxy settings inputs (bsc#1245107) * Move Salt > Remote Commands to its own RBAC namespace (bsc#1261305) * Make OIDC JWKS initialization startup-safe * Sync package removal permissions in packages API with the Web UI (bsc#1261327) * Run ANALYZE asynchronously after CLM alignment to avoid deadlocks (bsc#1261753) * Fix enforcement of consecutive chars in password policy (bsc#1262761) * Use salt's network module if host or nslookup are not installed (bsc#1262720) * Fix Remote Commands hang on direct hostname (bsc#1226578) * Fix Python SyntaxWarning for invalid escape sequence '\s' in RHUI extract repo data script (bsc#1262595) * Add 'unpushed' to AdvisoryStatus enum to handle EPEL errata with unpushed status (bsc#1264234) * Kickstart profile for RHEL 8 requires venv-salt-minion instead of salt- minion (bsc#1259474) * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Remove validation of packages in kickstart profiles which are not supported anymore (bsc#1259474) * Numeric branch names should not be stored in double format (bsc#1258382) * Add missing pxeeventfailed notification message * Do not add non-FQDN hostnames to the proxy fqdn list (bsc#1263841) * Use supscription matcher output for subscription expiration warning (bsc#1257894) * Fix Oval data sync for ubuntu 26.04 (bsc#1265319) * Recognize PBKDF2-SHA256 hashes alongside legacy SHA-256 crypt(3) in the Java password check helpers * Fix non-ASCII em dash in Pbkdf2Sha256Crypt breaking javadoc build with US- ASCII encoding * security(saml2): default signature algorithm to rsa-sha256 (bsc#1234567) * security(tls): remove TLSv1/TLSv1.1, allow TLSv1.3 for SMTP (bsc#1234567) * Fix CSRFTokenValidator FIPS compatibility by using platform-default SecureRandom (bsc#1247707) * Fix conflicting cobbler system migrations spacewalk-web: * Version 5.1.21-0 * UI changes to support migration from SLES 15 to SLES 16 * Fixed issue causing a blank tab to appear in the Image Building Details page (bsc#1253032) * Minor UI improvements and fixed spinning icon glitch in Admin -> Setup Wizard * Fixed an issue where the "Create Token" modal could become unresponsive when opened * Fixed an issue causing all existing tokens to be deleted in a loop * Improved visibility of all parent rows in permissions table * Enhance buttons placement for a more intuitive experience * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Align subscription matching page warning with dashboard warning for expiring subscriptions (bsc#1257894) * Add missing fragment import (bsc#1264966) subscription-matcher: * Version 0.44 * Fix 2 missing part numbers (bsc#1264256) supportutils-plugin-susemanager-client: * Version 5.1.6-0 * No customer facing changes susemanager: * Version 5.1.17-0 * Add SUSE LibertyLinux 9.6 x86_64 bootstrap repository definition * Remove spacewalk-diskcheck enablement * Use correct CA for Report DB (bsc#1260806) * Relicense mgr-salt-ssh under Apache-2.0 and move it to a separated package named susemanager-tools-salt susemanager-build-keys: * Add Nvidia Cuda Tools key Added: nvidia-cudatools-9CD0A493D42D0685.asc susemanager-docs_en: * Updated the supported features table in the Client Configuration Guide to include Red Hat Linux Enterprise 10 and clones * Added documentation on space usage percentage on the server and db container which can be set using DISKCHECKALERT and DISKTHRESHOLD * Added Code 16 to Monitoring documentation (bsc#1263814) * Added documentation for deleting SCAP scan results to Administration Guide (bsc#1262471) * Rephrased instructions for RBAC in Administration Guide (bsc#1258079) * Added troubleshooting section for BTRFS to Administration Guide (bsc#1258816) * Removed mentions of Leap 15.5 and 15.4 and specified SUSE requiring general or LTS support in Client Configuration Guide (bsc#1262285) * Added information about availability of SLE 16 and SL Micro 6.2 support in the product versions 5.1.2 and later (bsc#1260614) * Removed mention of CIS profile (bsc#1262460) * Corrected path for Salt minion in Retail Guide (#1262090) * Added explanation for translating mgradm arguments to YAML in Installation and Upgrade Guide (bsc#1258144) * Removed Google Cloud Compute from PAYG documentation (bsc#1261631) * Added link to proxy creation from client to an existing document in Installation and Upgrade Guide * Updated features table for EL 10 based distributions * Document Debian 13 * Added support for Open Enterprise Server 25.4 * Clarified how to get PTF images in air-gapped setup in Installation and Upgrade Guide (bsc#1261307) * SUSE Multi-Linux Support does not support autoinstallation (bsc#1259261) * Added instructions about accessing git repositories when building images to Administration Guide * Added online database backup instructions to Administration Guide * Fixed command for product deployment in Installation and Upgrade Guide (bsc#1259479) * Added online database backup instructions susemanager-schema: * Version 5.1.19-0 * Added the RBAC mapping for listMigrationTargetsWithChannels end point (jsc#SUMA-320) * Add index on rhnPackage (checksum_id) (bsc#1258041) (gh#uyuni- project/uyuni#11585) * Move Salt > Remote Commands to its own RBAC namespace (bsc#1261305) * Sync package removal permissions in packages API with the Web UI (bsc#1261327) * Add 'unpushed' to rhn_errata_adv_status_ck constraint to allow importing EPEL errata with unpushed status (bsc#1264234) * Healthcheck on disk usage based on taskomatic (bsc#1238890) * Add missing indexes for channels and tokens (bsc#1259590) * Increase source_url on table rhncontentsource (bsc#1259230) susemanager-sls: * Version 5.1.25-0 * Added salt states to support migration from SLES 15 to SLES 16 * Ignore podman interfaces when resolving FQDNs (bsc#1262720) * Fix GPG key import on first key deploy (bsc#1259482) * Use either ansible-core or ansible packages for Ansible Control node, prefer ansible-core (bsc#1259087) * Fix CPU reporting for ppc64le clients (bsc#1259521) * Fix refresh of virtual instance information (bsc#1261723) susemanager-sync-data: * Version 5.1.10-0 * Add missing RES-EMS channel family (bsc#1265358) * Version 5.1.9-0 * Add SUSE Liberty Linux 9.6 x86_64 product entries uyuni-common-libs: * Version 5.1.6-0 * security(checksums): drop md5 and sha1 from checksum choices (bsc#1234567) * Replace deprecated inspect.getargspec with EAFP usedforsecurity detection uyuni-setup-reportdb: * Version 5.1.5-0 * Fix delete of a reportdb user with uyuni-setup-reportdb-user (bsc#1261841) virtual-host-gatherer: * Version 1.0.31-0 * Drop SUSECloud module as not longer maintained nor used * Version 1.0.30-0 * No customer facing changes How to apply this update: SUSE Multi-Linux Manager Server: 1. Log in as root user to the SUSE Multi-Linux Manager Server. 2. Upgrade mgradm and mgrctl. 3. If you are in a disconnected environment, upgrade the image packages. 4. Reboot the system. 5. Run which will use the default image tags. SUSE Multi-Linux Manager Proxy / Retail Branch Server: 1. Log in as root user to the SUSE Multi-Linux Manager Proxy / Retail Branch Server. 2. Upgrade mgrpxy. 3. If you are in a disconnected environment, upgrade the image packages. 4. Reboot the system. 5. Run which will use the default image tags. ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Proxy 5.1 zypper in -t patch SUSE-Multi-Linux-Manager-5.1-8=1 * SUSE Multi-Linux Manager Server 5.1 zypper in -t patch SUSE-Multi-Linux-Manager-5.1-8=1 SUSE-Multi-Linux- Manager-5.1-8=1 * SUSE Linux Enterprise Server High Availability Extension 16.0 zypper in -t patch SUSE-SLES-HA-16.0-1108=1 * SUSE Multi-Linux Manager Client Tools for SLE 16 zypper in -t patch Multi-Linux-ManagerTools-SLE-16-4=1 * SUSE Multi-Linux Manager Retail Branch Server 5.1 zypper in -t patch SUSE-Multi-Linux-Manager-5.1-8=1 SUSE-Multi-Linux- Manager-5.1-8=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SLE 16 (aarch64 s390x x86_64) * golang-github-prometheus-alertmanager-0.28.1-160002.2.1 * grafana-11.6.14+security04-160002.1.1 * golang-github-prometheus-prometheus-3.5.3-160002.1.1 * prometheus-postgres_exporter-debuginfo-0.10.1-160002.2.1 * golang-github-prometheus-alertmanager-debuginfo-0.28.1-160002.2.1 * golang-github-prometheus-prometheus-debuginfo-3.5.3-160002.1.1 * mgrctl-5.2.12-160002.1.1 * venv-salt-minion-3006.0-160002.6.1 * golang-github-QubitProducts-exporter_exporter-0.4.0-160002.3.1 * grafana-debuginfo-11.6.14+security04-160002.1.1 * prometheus-blackbox_exporter-0.26.0-160002.2.1 * golang-github-prometheus-node_exporter-1.10.2-160002.1.1 * mgrctl-debuginfo-5.2.12-160002.1.1 * prometheus-postgres_exporter-0.10.1-160002.2.1 * golang-github-QubitProducts-exporter_exporter-debuginfo-0.4.0-160002.3.1 * prometheus-blackbox_exporter-debuginfo-0.26.0-160002.2.1 * golang-github-prometheus-node_exporter-debuginfo-1.10.2-160002.1.1 * SUSE Multi-Linux Manager Client Tools for SLE 16 (noarch) * mgrctl-zsh-completion-5.2.12-160002.1.1 * mgrctl-lang-5.2.12-160002.1.1 * supportutils-plugin-susemanager-client-5.2.3-160002.1.1 * spacecmd-5.2.8-160002.1.1 * mgrctl-bash-completion-5.2.12-160002.1.1 * SUSE Linux Enterprise Server High Availability Extension 16.0 (noarch) * pacemaker-schemas-3.0.0+20250218.64cd85422c-160000.4.1 * python3-pacemaker-3.0.0+20250218.64cd85422c-160000.4.1 * pacemaker-cts-3.0.0+20250218.64cd85422c-160000.4.1 * SUSE Linux Enterprise Server High Availability Extension 16.0 (ppc64le s390x x86_64) * pacemaker-remote-3.0.0+20250218.64cd85422c-160000.4.1 * pacemaker-3.0.0+20250218.64cd85422c-160000.4.1 * pacemaker-remote-debuginfo-3.0.0+20250218.64cd85422c-160000.4.1 * pacemaker-cli-3.0.0+20250218.64cd85422c-160000.4.1 * pacemaker-debugsource-3.0.0+20250218.64cd85422c-160000.4.1 * pacemaker-libs-debuginfo-3.0.0+20250218.64cd85422c-160000.4.1 * pacemaker-cli-debuginfo-3.0.0+20250218.64cd85422c-160000.4.1 * pacemaker-debuginfo-3.0.0+20250218.64cd85422c-160000.4.1 * pacemaker-devel-3.0.0+20250218.64cd85422c-160000.4.1 * pacemaker-libs-3.0.0+20250218.64cd85422c-160000.4.1 * SUSE Multi-Linux Manager Server 5.1 (s390x) * suse-multi-linux-manager-5.1-s390x-server-migration-14-16-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-s390x-server-image-5.1.4-8.20.25 * suse-multi-linux-manager-5.1-s390x-server-attestation-image-5.1.4-8.22.7 * suse-multi-linux-manager-5.1-s390x-server-saline-image-5.1.4-9.20.18 * suse-multi-linux-manager-5.1-s390x-server-postgresql-image-5.1.4-6.22.10 * suse-multi-linux-manager-5.1-s390x-server-hub-xmlrpc-api-image-5.1.4-8.20.9 * SUSE Multi-Linux Manager Server 5.1 (noarch) * mgrctl-bash-completion-5.1.29-slfo.1.1.1 * mgradm-lang-5.1.29-slfo.1.1.1 * mgrctl-lang-5.1.29-slfo.1.1.1 * mgrctl-zsh-completion-5.1.29-slfo.1.1.1 * mgradm-bash-completion-5.1.29-slfo.1.1.1 * mgradm-zsh-completion-5.1.29-slfo.1.1.1 * SUSE Multi-Linux Manager Server 5.1 (x86_64) * suse-multi-linux-manager-5.1-x86_64-server-postgresql-image-5.1.4-6.22.10 * suse-multi-linux-manager-5.1-x86_64-server-migration-14-16-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-x86_64-server-attestation-image-5.1.4-8.22.7 * suse-multi-linux-manager-5.1-x86_64-server-image-5.1.4-8.20.25 * suse-multi-linux-manager-5.1-x86_64-server-saline-image-5.1.4-9.20.18 * suse-multi-linux-manager-5.1-x86_64-server-hub-xmlrpc-api-image-5.1.4-8.20.9 * SUSE Multi-Linux Manager Server 5.1 (aarch64 ppc64le s390x x86_64) * mgrctl-debuginfo-5.1.29-slfo.1.1.1 * mgrctl-5.1.29-slfo.1.1.1 * mgradm-debuginfo-5.1.29-slfo.1.1.1 * mgradm-5.1.29-slfo.1.1.1 * SUSE Multi-Linux Manager Server 5.1 (ppc64le) * suse-multi-linux-manager-5.1-ppc64le-server-migration-14-16-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-ppc64le-server-saline-image-5.1.4-9.20.18 * suse-multi-linux-manager-5.1-ppc64le-server-postgresql-image-5.1.4-6.22.10 * suse-multi-linux-manager-5.1-ppc64le-server-attestation-image-5.1.4-8.22.7 * suse-multi-linux-manager-5.1-ppc64le-server-image-5.1.4-8.20.25 * suse-multi-linux-manager-5.1-ppc64le-server-hub-xmlrpc-api-image-5.1.4-8.20.9 * SUSE Multi-Linux Manager Server 5.1 (aarch64) * suse-multi-linux-manager-5.1-aarch64-server-postgresql-image-5.1.4-6.22.10 * suse-multi-linux-manager-5.1-aarch64-server-saline-image-5.1.4-9.20.18 * suse-multi-linux-manager-5.1-aarch64-server-attestation-image-5.1.4-8.22.7 * suse-multi-linux-manager-5.1-aarch64-server-image-5.1.4-8.20.25 * suse-multi-linux-manager-5.1-aarch64-server-migration-14-16-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-aarch64-server-hub-xmlrpc-api-image-5.1.4-8.20.9 * SUSE Multi-Linux Manager Retail Branch Server 5.1 (noarch) * mgrpxy-zsh-completion-5.1.29-slfo.1.1.1 * mgrpxy-lang-5.1.29-slfo.1.1.1 * mgrpxy-bash-completion-5.1.29-slfo.1.1.1 * SUSE Multi-Linux Manager Retail Branch Server 5.1 (x86_64) * suse-multi-linux-manager-5.1-x86_64-proxy-ssh-image-5.1.4-8.20.9 * suse-multi-linux-manager-5.1-x86_64-proxy-salt-broker-image-5.1.4-9.20.19 * suse-multi-linux-manager-5.1-x86_64-proxy-tftpd-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-x86_64-proxy-squid-image-5.1.4-8.20.8 * suse-multi-linux-manager-5.1-x86_64-proxy-httpd-image-5.1.4-8.22.17 * SUSE Multi-Linux Manager Retail Branch Server 5.1 (aarch64 ppc64le s390x x86_64) * mgrpxy-5.1.29-slfo.1.1.1 * mgrpxy-debuginfo-5.1.29-slfo.1.1.1 * SUSE Multi-Linux Manager Retail Branch Server 5.1 (s390x) * suse-multi-linux-manager-5.1-s390x-proxy-salt-broker-image-5.1.4-9.20.19 * suse-multi-linux-manager-5.1-s390x-proxy-ssh-image-5.1.4-8.20.9 * suse-multi-linux-manager-5.1-s390x-proxy-tftpd-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-s390x-proxy-squid-image-5.1.4-8.20.8 * suse-multi-linux-manager-5.1-s390x-proxy-httpd-image-5.1.4-8.22.17 * SUSE Multi-Linux Manager Retail Branch Server 5.1 (aarch64) * suse-multi-linux-manager-5.1-aarch64-proxy-ssh-image-5.1.4-8.20.9 * suse-multi-linux-manager-5.1-aarch64-proxy-squid-image-5.1.4-8.20.8 * suse-multi-linux-manager-5.1-aarch64-proxy-httpd-image-5.1.4-8.22.17 * suse-multi-linux-manager-5.1-aarch64-proxy-tftpd-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-aarch64-proxy-salt-broker-image-5.1.4-9.20.19 * SUSE Multi-Linux Manager Retail Branch Server 5.1 (ppc64le) * suse-multi-linux-manager-5.1-ppc64le-proxy-salt-broker-image-5.1.4-9.20.19 * suse-multi-linux-manager-5.1-ppc64le-proxy-ssh-image-5.1.4-8.20.9 * suse-multi-linux-manager-5.1-ppc64le-proxy-tftpd-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-ppc64le-proxy-squid-image-5.1.4-8.20.8 * suse-multi-linux-manager-5.1-ppc64le-proxy-httpd-image-5.1.4-8.22.17 * SUSE Multi-Linux Manager Proxy 5.1 (x86_64) * suse-multi-linux-manager-5.1-x86_64-proxy-ssh-image-5.1.4-8.20.9 * suse-multi-linux-manager-5.1-x86_64-proxy-salt-broker-image-5.1.4-9.20.19 * suse-multi-linux-manager-5.1-x86_64-proxy-tftpd-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-x86_64-proxy-squid-image-5.1.4-8.20.8 * suse-multi-linux-manager-5.1-x86_64-proxy-httpd-image-5.1.4-8.22.17 * SUSE Multi-Linux Manager Proxy 5.1 (ppc64le) * suse-multi-linux-manager-5.1-ppc64le-proxy-salt-broker-image-5.1.4-9.20.19 * suse-multi-linux-manager-5.1-ppc64le-proxy-ssh-image-5.1.4-8.20.9 * suse-multi-linux-manager-5.1-ppc64le-proxy-tftpd-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-ppc64le-proxy-squid-image-5.1.4-8.20.8 * suse-multi-linux-manager-5.1-ppc64le-proxy-httpd-image-5.1.4-8.22.17 * SUSE Multi-Linux Manager Proxy 5.1 (noarch) * mgrpxy-zsh-completion-5.1.29-slfo.1.1.1 * mgrpxy-bash-completion-5.1.29-slfo.1.1.1 * mgrpxy-lang-5.1.29-slfo.1.1.1 * SUSE Multi-Linux Manager Proxy 5.1 (aarch64 ppc64le s390x x86_64) * mgrpxy-5.1.29-slfo.1.1.1 * mgrpxy-debuginfo-5.1.29-slfo.1.1.1 * SUSE Multi-Linux Manager Proxy 5.1 (s390x) * suse-multi-linux-manager-5.1-s390x-proxy-salt-broker-image-5.1.4-9.20.19 * suse-multi-linux-manager-5.1-s390x-proxy-ssh-image-5.1.4-8.20.9 * suse-multi-linux-manager-5.1-s390x-proxy-tftpd-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-s390x-proxy-squid-image-5.1.4-8.20.8 * suse-multi-linux-manager-5.1-s390x-proxy-httpd-image-5.1.4-8.22.17 * SUSE Multi-Linux Manager Proxy 5.1 (aarch64) * suse-multi-linux-manager-5.1-aarch64-proxy-ssh-image-5.1.4-8.20.9 * suse-multi-linux-manager-5.1-aarch64-proxy-squid-image-5.1.4-8.20.8 * suse-multi-linux-manager-5.1-aarch64-proxy-httpd-image-5.1.4-8.22.17 * suse-multi-linux-manager-5.1-aarch64-proxy-tftpd-image-5.1.4-8.20.10 * suse-multi-linux-manager-5.1-aarch64-proxy-salt-broker-image-5.1.4-9.20.19 ## References: * https://www.suse.com/security/cve/CVE-2022-21698.html * https://www.suse.com/security/cve/CVE-2023-52425.html * https://www.suse.com/security/cve/CVE-2024-35195.html * https://www.suse.com/security/cve/CVE-2024-47081.html * https://www.suse.com/security/cve/CVE-2024-52804.html * https://www.suse.com/security/cve/CVE-2025-11468.html * https://www.suse.com/security/cve/CVE-2025-12084.html * https://www.suse.com/security/cve/CVE-2025-12781.html * https://www.suse.com/security/cve/CVE-2025-13462.html * https://www.suse.com/security/cve/CVE-2025-13836.html * https://www.suse.com/security/cve/CVE-2025-13837.html * https://www.suse.com/security/cve/CVE-2025-15282.html * https://www.suse.com/security/cve/CVE-2025-15366.html * https://www.suse.com/security/cve/CVE-2025-15367.html * https://www.suse.com/security/cve/CVE-2025-15444.html * https://www.suse.com/security/cve/CVE-2025-50181.html * https://www.suse.com/security/cve/CVE-2025-6069.html * https://www.suse.com/security/cve/CVE-2025-6075.html * https://www.suse.com/security/cve/CVE-2025-66418.html * https://www.suse.com/security/cve/CVE-2025-66471.html * https://www.suse.com/security/cve/CVE-2025-67724.html * https://www.suse.com/security/cve/CVE-2025-67725.html * https://www.suse.com/security/cve/CVE-2025-67726.html * https://www.suse.com/security/cve/CVE-2025-69277.html * https://www.suse.com/security/cve/CVE-2025-8194.html * https://www.suse.com/security/cve/CVE-2025-8291.html * https://www.suse.com/security/cve/CVE-2026-0672.html * https://www.suse.com/security/cve/CVE-2026-0865.html * https://www.suse.com/security/cve/CVE-2026-10649.html * https://www.suse.com/security/cve/CVE-2026-1299.html * https://www.suse.com/security/cve/CVE-2026-21441.html * https://www.suse.com/security/cve/CVE-2026-2297.html * https://www.suse.com/security/cve/CVE-2026-24049.html * https://www.suse.com/security/cve/CVE-2026-25645.html * https://www.suse.com/security/cve/CVE-2026-25680.html * https://www.suse.com/security/cve/CVE-2026-25681.html * https://www.suse.com/security/cve/CVE-2026-27136.html * https://www.suse.com/security/cve/CVE-2026-27448.html * https://www.suse.com/security/cve/CVE-2026-27459.html * https://www.suse.com/security/cve/CVE-2026-28374.html * https://www.suse.com/security/cve/CVE-2026-28376.html * https://www.suse.com/security/cve/CVE-2026-28379.html * https://www.suse.com/security/cve/CVE-2026-28380.html * https://www.suse.com/security/cve/CVE-2026-28383.html * https://www.suse.com/security/cve/CVE-2026-31958.html * https://www.suse.com/security/cve/CVE-2026-33376.html * https://www.suse.com/security/cve/CVE-2026-33377.html * https://www.suse.com/security/cve/CVE-2026-33378.html * https://www.suse.com/security/cve/CVE-2026-33380.html * https://www.suse.com/security/cve/CVE-2026-33381.html * https://www.suse.com/security/cve/CVE-2026-34986.html * https://www.suse.com/security/cve/CVE-2026-3644.html * https://www.suse.com/security/cve/CVE-2026-39821.html * https://www.suse.com/security/cve/CVE-2026-40179.html * https://www.suse.com/security/cve/CVE-2026-41602.html * https://www.suse.com/security/cve/CVE-2026-42151.html * https://www.suse.com/security/cve/CVE-2026-42154.html * https://www.suse.com/security/cve/CVE-2026-4224.html * https://www.suse.com/security/cve/CVE-2026-42502.html * https://www.suse.com/security/cve/CVE-2026-42506.html * https://www.suse.com/security/cve/CVE-2026-4519.html * https://bugzilla.suse.com/show_bug.cgi?id=1208800 * https://bugzilla.suse.com/show_bug.cgi?id=1224788 * https://bugzilla.suse.com/show_bug.cgi?id=1226578 * https://bugzilla.suse.com/show_bug.cgi?id=1227579 * https://bugzilla.suse.com/show_bug.cgi?id=1229105 * https://bugzilla.suse.com/show_bug.cgi?id=1232641 * https://bugzilla.suse.com/show_bug.cgi?id=1234567 * https://bugzilla.suse.com/show_bug.cgi?id=1238890 * https://bugzilla.suse.com/show_bug.cgi?id=1242916 * https://bugzilla.suse.com/show_bug.cgi?id=1244925 * https://bugzilla.suse.com/show_bug.cgi?id=1245107 * https://bugzilla.suse.com/show_bug.cgi?id=1247707 * https://bugzilla.suse.com/show_bug.cgi?id=1248699 * https://bugzilla.suse.com/show_bug.cgi?id=1248707 * https://bugzilla.suse.com/show_bug.cgi?id=1248848 * https://bugzilla.suse.com/show_bug.cgi?id=1249243 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249532 * https://bugzilla.suse.com/show_bug.cgi?id=1251305 * https://bugzilla.suse.com/show_bug.cgi?id=1252974 * https://bugzilla.suse.com/show_bug.cgi?id=1253032 * https://bugzilla.suse.com/show_bug.cgi?id=1253174 * https://bugzilla.suse.com/show_bug.cgi?id=1254400 * https://bugzilla.suse.com/show_bug.cgi?id=1254401 * https://bugzilla.suse.com/show_bug.cgi?id=1254866 * https://bugzilla.suse.com/show_bug.cgi?id=1254867 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1254997 * https://bugzilla.suse.com/show_bug.cgi?id=1255418 * https://bugzilla.suse.com/show_bug.cgi?id=1255764 * https://bugzilla.suse.com/show_bug.cgi?id=1256070 * https://bugzilla.suse.com/show_bug.cgi?id=1256331 * https://bugzilla.suse.com/show_bug.cgi?id=1257029 * https://bugzilla.suse.com/show_bug.cgi?id=1257031 * https://bugzilla.suse.com/show_bug.cgi?id=1257041 * https://bugzilla.suse.com/show_bug.cgi?id=1257042 * https://bugzilla.suse.com/show_bug.cgi?id=1257044 * https://bugzilla.suse.com/show_bug.cgi?id=1257046 * https://bugzilla.suse.com/show_bug.cgi?id=1257100 * https://bugzilla.suse.com/show_bug.cgi?id=1257108 * https://bugzilla.suse.com/show_bug.cgi?id=1257181 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1257894 * https://bugzilla.suse.com/show_bug.cgi?id=1258041 * https://bugzilla.suse.com/show_bug.cgi?id=1258079 * https://bugzilla.suse.com/show_bug.cgi?id=1258144 * https://bugzilla.suse.com/show_bug.cgi?id=1258382 * https://bugzilla.suse.com/show_bug.cgi?id=1258816 * https://bugzilla.suse.com/show_bug.cgi?id=1259087 * https://bugzilla.suse.com/show_bug.cgi?id=1259230 * https://bugzilla.suse.com/show_bug.cgi?id=1259240 * https://bugzilla.suse.com/show_bug.cgi?id=1259261 * https://bugzilla.suse.com/show_bug.cgi?id=1259474 * https://bugzilla.suse.com/show_bug.cgi?id=1259479 * https://bugzilla.suse.com/show_bug.cgi?id=1259482 * https://bugzilla.suse.com/show_bug.cgi?id=1259521 * https://bugzilla.suse.com/show_bug.cgi?id=1259590 * https://bugzilla.suse.com/show_bug.cgi?id=1259591 * https://bugzilla.suse.com/show_bug.cgi?id=1259611 * https://bugzilla.suse.com/show_bug.cgi?id=1259630 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1259734 * https://bugzilla.suse.com/show_bug.cgi?id=1259735 * https://bugzilla.suse.com/show_bug.cgi?id=1259739 * https://bugzilla.suse.com/show_bug.cgi?id=1259787 * https://bugzilla.suse.com/show_bug.cgi?id=1259804 * https://bugzilla.suse.com/show_bug.cgi?id=1259808 * https://bugzilla.suse.com/show_bug.cgi?id=1259960 * https://bugzilla.suse.com/show_bug.cgi?id=1260026 * https://bugzilla.suse.com/show_bug.cgi?id=1260031 * https://bugzilla.suse.com/show_bug.cgi?id=1260589 * https://bugzilla.suse.com/show_bug.cgi?id=1260614 * https://bugzilla.suse.com/show_bug.cgi?id=1260806 * https://bugzilla.suse.com/show_bug.cgi?id=1260905 * https://bugzilla.suse.com/show_bug.cgi?id=1261305 * https://bugzilla.suse.com/show_bug.cgi?id=1261307 * https://bugzilla.suse.com/show_bug.cgi?id=1261327 * https://bugzilla.suse.com/show_bug.cgi?id=1261631 * https://bugzilla.suse.com/show_bug.cgi?id=1261723 * https://bugzilla.suse.com/show_bug.cgi?id=1261753 * https://bugzilla.suse.com/show_bug.cgi?id=1261810 * https://bugzilla.suse.com/show_bug.cgi?id=1261841 * https://bugzilla.suse.com/show_bug.cgi?id=1261902 * https://bugzilla.suse.com/show_bug.cgi?id=1262222 * https://bugzilla.suse.com/show_bug.cgi?id=1262285 * https://bugzilla.suse.com/show_bug.cgi?id=1262409 * https://bugzilla.suse.com/show_bug.cgi?id=1262460 * https://bugzilla.suse.com/show_bug.cgi?id=1262471 * https://bugzilla.suse.com/show_bug.cgi?id=1262492 * https://bugzilla.suse.com/show_bug.cgi?id=1262595 * https://bugzilla.suse.com/show_bug.cgi?id=1262708 * https://bugzilla.suse.com/show_bug.cgi?id=1262720 * https://bugzilla.suse.com/show_bug.cgi?id=1262760 * https://bugzilla.suse.com/show_bug.cgi?id=1262761 * https://bugzilla.suse.com/show_bug.cgi?id=1262950 * https://bugzilla.suse.com/show_bug.cgi?id=1263157 * https://bugzilla.suse.com/show_bug.cgi?id=1263501 * https://bugzilla.suse.com/show_bug.cgi?id=1263814 * https://bugzilla.suse.com/show_bug.cgi?id=1263823 * https://bugzilla.suse.com/show_bug.cgi?id=1263841 * https://bugzilla.suse.com/show_bug.cgi?id=1263986 * https://bugzilla.suse.com/show_bug.cgi?id=1263987 * https://bugzilla.suse.com/show_bug.cgi?id=1264149 * https://bugzilla.suse.com/show_bug.cgi?id=1264234 * https://bugzilla.suse.com/show_bug.cgi?id=1264256 * https://bugzilla.suse.com/show_bug.cgi?id=1264966 * https://bugzilla.suse.com/show_bug.cgi?id=1265134 * https://bugzilla.suse.com/show_bug.cgi?id=1265281 * https://bugzilla.suse.com/show_bug.cgi?id=1265282 * https://bugzilla.suse.com/show_bug.cgi?id=1265283 * https://bugzilla.suse.com/show_bug.cgi?id=1265284 * https://bugzilla.suse.com/show_bug.cgi?id=1265285 * https://bugzilla.suse.com/show_bug.cgi?id=1265286 * https://bugzilla.suse.com/show_bug.cgi?id=1265287 * https://bugzilla.suse.com/show_bug.cgi?id=1265288 * https://bugzilla.suse.com/show_bug.cgi?id=1265289 * https://bugzilla.suse.com/show_bug.cgi?id=1265290 * https://bugzilla.suse.com/show_bug.cgi?id=1265319 * https://bugzilla.suse.com/show_bug.cgi?id=1265358 * https://bugzilla.suse.com/show_bug.cgi?id=1265975 * https://bugzilla.suse.com/show_bug.cgi?id=1266012 * https://bugzilla.suse.com/show_bug.cgi?id=1266556 * https://bugzilla.suse.com/show_bug.cgi?id=1266600 * https://bugzilla.suse.com/show_bug.cgi?id=1266608 * https://bugzilla.suse.com/show_bug.cgi?id=1267153 * https://bugzilla.suse.com/show_bug.cgi?id=1268381 * https://jira.suse.com/browse/MSQA-1056 * https://jira.suse.com/browse/PED-14816 * https://jira.suse.com/browse/SUMA-320 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:30:38 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:30:38 -0000 Subject: SUSE-SU-2026:22536-1: important: Security update for update 5.1.3 for SUSE_Multi-Linux_Manager Client Tools and Salt Bundle Message-ID: <178368663824.1052.5859264630579322988@5ed4f61072e9> # Security update for update 5.1.3 for SUSE_Multi-Linux_Manager Client Tools and Salt Bundle Announcement ID: SUSE-SU-2026:22536-1 Release Date: 2026-06-15T07:20:25Z Rating: important References: * bsc#1250367 * bsc#1252548 * bsc#1252964 * bsc#1254154 * bsc#1254619 * bsc#1254629 * bsc#1257447 * bsc#1257660 * bsc#1257831 * bsc#1257941 * bsc#1258015 * bsc#1258418 * bsc#1258927 * bsc#1258957 * bsc#1259208 * bsc#1259553 * bsc#1259554 Cross-References: * CVE-2026-31958 CVSS scores: * CVE-2026-31958 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-31958 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-31958 ( NVD ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-31958 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that solves one vulnerability and has 16 fixes can now be installed. ## Description: This update fixes the following issues: golang-github-lusitaniae-apache_exporter: * Internal changes to fix build issues with no impact for customers uyuni-tools: * version 5.1.26-0 * Fixed applying PTF with images from RPMs (bsc#1252548) * Fixed Ssl Key file that can miss if CA password is blank (bsc#1254154) * mgrpxy ssh tuning should happens before crypto policies (bsc#1254619) * Fixed default value for helm registry (bsc#1258927). * Removed hub register command * Optimized postgres migration disk space usage (bsc#1257447) * Added continuous database backup support (bsc#1250367) * Explicitly start proxy pods after operations (bsc#1258015) * Use static supportconfig name to avoid dynamic search (bsc#1257941) * Do not nest multiple tarball files and instead collect all files into one tarball (bsc#1252964) * Show where final tarball was generated (bsc#1259208) * Set proxy config file permissions (bsc#1257660) * version 5.1.25-0 * If PTF image doesn't exists, use the current service image (bsc#1258418) venv-salt-minion: * Security issues fixed: * CVE-2026-31958: Security patch for Salt vendored tornado: Added limits on multipart form data parsing (bsc#1259554) * Added x86_64_v2 as a possible rpm package architecture * Make users with backslash working for salt-ssh (bsc#1254629) * Fixed ansible.playbooks extra-vars quoting (bsc#1257831) * Fixed virtualenv call in test helper to use proper python version * Fixed the issue preventing SELinux profile to be loaded on SLES 16 deployed using cloud images (bsc#1258957) * Fixed the typo causing buiding EL9 bundle without binary dependencies ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-64=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-zsh-completion-5.1.26-1.1 * mgrctl-lang-5.1.26-1.1 * mgrctl-bash-completion-5.1.26-1.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * mgrctl-5.1.26-1.1 * mgrctl-debuginfo-5.1.26-1.1 * venv-salt-minion-3006.0-11.1 ## References: * https://www.suse.com/security/cve/CVE-2026-31958.html * https://bugzilla.suse.com/show_bug.cgi?id=1250367 * https://bugzilla.suse.com/show_bug.cgi?id=1252548 * https://bugzilla.suse.com/show_bug.cgi?id=1252964 * https://bugzilla.suse.com/show_bug.cgi?id=1254154 * https://bugzilla.suse.com/show_bug.cgi?id=1254619 * https://bugzilla.suse.com/show_bug.cgi?id=1254629 * https://bugzilla.suse.com/show_bug.cgi?id=1257447 * https://bugzilla.suse.com/show_bug.cgi?id=1257660 * https://bugzilla.suse.com/show_bug.cgi?id=1257831 * https://bugzilla.suse.com/show_bug.cgi?id=1257941 * https://bugzilla.suse.com/show_bug.cgi?id=1258015 * https://bugzilla.suse.com/show_bug.cgi?id=1258418 * https://bugzilla.suse.com/show_bug.cgi?id=1258927 * https://bugzilla.suse.com/show_bug.cgi?id=1258957 * https://bugzilla.suse.com/show_bug.cgi?id=1259208 * https://bugzilla.suse.com/show_bug.cgi?id=1259553 * https://bugzilla.suse.com/show_bug.cgi?id=1259554 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:31:23 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:31:23 -0000 Subject: SUSE-SU-2026:22535-1: important: Security update 5.1.2 for Multi-Linux Manager Client Tools and Salt Bundle Message-ID: <178368668384.1052.14272493666775874849@5ed4f61072e9> # Security update 5.1.2 for Multi-Linux Manager Client Tools and Salt Bundle Announcement ID: SUSE-SU-2026:22535-1 Release Date: 2026-06-15T07:20:17Z Rating: important References: * bsc#1175946 * bsc#1227207 * bsc#1240532 * bsc#1246130 * bsc#1247644 * bsc#1247721 * bsc#1248848 * bsc#1249400 * bsc#1249434 * bsc#1250520 * bsc#1250940 * bsc#1250976 * bsc#1250981 * bsc#1251044 * bsc#1251138 * bsc#1251776 * bsc#1252244 * bsc#1252285 * bsc#1253282 * bsc#1253347 * bsc#1253738 * bsc#1253966 * bsc#1254325 * bsc#1254478 * bsc#1254903 * bsc#1254904 * bsc#1254905 * bsc#1255781 * jsc#MSQA-1040 Cross-References: * CVE-2025-13836 * CVE-2025-62348 * CVE-2025-62349 CVSS scores: * CVE-2025-13836 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-13836 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-13836 ( NVD ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-13836 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-62348 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62348 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62348 ( NVD ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-62348 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62349 ( SUSE ): 7.5 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N * CVE-2025-62349 ( SUSE ): 6.2 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L * CVE-2025-62349 ( NVD ): 7.5 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-62349 ( NVD ): 6.2 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that solves three vulnerabilities, contains one feature and has 25 fixes can now be installed. ## Description: This update fixes the following issues: uyuni-tools: * Version 5.1.24-0 * Actually use the --dbupgrade-tag parameter when computing the image URL (bsc#1249400) * Handle CA files with symlinks during migration (bsc#1251044) * Adjust traefik exposed configuration for chart v27+ (bsc#1247721) * Fix systemd object initialization in server rename. (bsc#1250981) * Add SSL secrets to the db setup container during migration. (bsc#1250976) * Fix images handling in mgrpxy support ptf (bsc#1250940) * Fix helm upgrade parameters (bsc#1253966) * Detect custom apache and squid config in the /etc/uyuni/proxy folder * Add ssh tuning to configure sshd (bsc#1253738) * Move the SSL checks at the begining of the migration * Remove cgroup mount for podman containers (bsc#1253347) * Convert the traefik install time to local time (bsc#1251138) * During migration, krb5.conf.d should be copied in /etc/rhn (bsc#1254478) * Read env var from http conf file (bsc#1253282) * Add --registry-host, --registry-user and --registry-password to pull images from an authenticate registry * Deprecate --registry * Unify backup create and restore dryrun option case * Fix calling of squid -z in mgrpxy cache clear (bsc#1247644) * Always start database container even if enabled * Remove extra ipv6 mapping and nftables workaround (bsc#1248848) * Remove old PostgreSQL exporter environment file before migration * Support config command parse correctly supportconfig output (bsc#1255781) * Version 5.1.23-0 * Update the default tag * Version 5.1.22-0 * Fix cobbler config migration to standalone files * Fix generated DB certificate subject alternate names * Version 5.1.21-0 * Remove extraneous quotes when getting the running image (bsc#1249434) venv-salt-minion: * Security issues fixed: * CVE-2025-67724: Fixed missing validation of supplied reason phrase (bsc#1254903) * CVE-2025-67725: Fixed DoS via malicious HTTP request (bsc#1254905) * CVE-2025-67726: Fixed HTTP header parameter parsing algorithm (bsc#1254904) * CVE-2025-62349: Added minimum_auth_version to enforce security (bsc#1254257) * CVE-2025-62348: Fixed Junos module yaml loader (bsc#1254256) * Fixed TLS and x509 modules for OSes with older cryptography module * Fixed Salt for Python > 3.11 (bsc#1252285) (bsc#1252244) * Use external tornado on Python > 3.11 * Make tls and x509 to use python-cryptography * Remove usage of spwd * Fixed payload signature verification on Tumbleweed (bsc#1251776) * Fixed known_hosts error on gitfs (bsc#1250520) (bsc#1227207) * Made syntax in httputil_test compatible with Python 3.6 * Fixed KeyError in postgres module with PostgreSQL 17 (bsc#1254325) * Use internal deb classes instead of external aptsource lib * Speed up wheel key.finger call (bsc#1240532) * Improved utils.find_json function (bsc#1246130) * Extended warn_until period to 2027 golang-github-QubitProducts-exporter_exporter: * New package at version 0.4.0 golang-github-lusitaniae-apache_exporter: * Build without apparmor for openSUSE Leap 16, SLES 16 or newer * Require Go 1.23 for building * Update to version 1.0.10 * Update github.com/prometheus/client_golang to 1.21.1 * Update github.com/prometheus/common to 0.63.0 * Update github.com/prometheus/exporter-toolkit to 0.14.0 * Update to version 1.0.9 * Update github.com/prometheus/client_golang to 1.20.4 * Update github.com/prometheus/common to 0.59.1 * Update github.com/prometheus/exporter-toolkit to 0.13.0 * Migrate logging to log/slog * Fix signal handler logging golang-github-prometheus-node_exporter: * Non-customer-facing optimization around source building ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-63=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-lang-5.1.24-1.1 * mgrctl-zsh-completion-5.1.24-1.1 * mgrctl-bash-completion-5.1.24-1.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * golang-github-prometheus-node_exporter-1.9.1-2.1 * mgrctl-debuginfo-5.1.24-1.1 * venv-salt-minion-3006.0-10.1 * mgrctl-5.1.24-1.1 * golang-github-prometheus-node_exporter-debuginfo-1.9.1-2.1 ## References: * https://www.suse.com/security/cve/CVE-2025-13836.html * https://www.suse.com/security/cve/CVE-2025-62348.html * https://www.suse.com/security/cve/CVE-2025-62349.html * https://bugzilla.suse.com/show_bug.cgi?id=1175946 * https://bugzilla.suse.com/show_bug.cgi?id=1227207 * https://bugzilla.suse.com/show_bug.cgi?id=1240532 * https://bugzilla.suse.com/show_bug.cgi?id=1246130 * https://bugzilla.suse.com/show_bug.cgi?id=1247644 * https://bugzilla.suse.com/show_bug.cgi?id=1247721 * https://bugzilla.suse.com/show_bug.cgi?id=1248848 * https://bugzilla.suse.com/show_bug.cgi?id=1249400 * https://bugzilla.suse.com/show_bug.cgi?id=1249434 * https://bugzilla.suse.com/show_bug.cgi?id=1250520 * https://bugzilla.suse.com/show_bug.cgi?id=1250940 * https://bugzilla.suse.com/show_bug.cgi?id=1250976 * https://bugzilla.suse.com/show_bug.cgi?id=1250981 * https://bugzilla.suse.com/show_bug.cgi?id=1251044 * https://bugzilla.suse.com/show_bug.cgi?id=1251138 * https://bugzilla.suse.com/show_bug.cgi?id=1251776 * https://bugzilla.suse.com/show_bug.cgi?id=1252244 * https://bugzilla.suse.com/show_bug.cgi?id=1252285 * https://bugzilla.suse.com/show_bug.cgi?id=1253282 * https://bugzilla.suse.com/show_bug.cgi?id=1253347 * https://bugzilla.suse.com/show_bug.cgi?id=1253738 * https://bugzilla.suse.com/show_bug.cgi?id=1253966 * https://bugzilla.suse.com/show_bug.cgi?id=1254325 * https://bugzilla.suse.com/show_bug.cgi?id=1254478 * https://bugzilla.suse.com/show_bug.cgi?id=1254903 * https://bugzilla.suse.com/show_bug.cgi?id=1254904 * https://bugzilla.suse.com/show_bug.cgi?id=1254905 * https://bugzilla.suse.com/show_bug.cgi?id=1255781 * https://jira.suse.com/browse/MSQA-1040 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:31:53 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:31:53 -0000 Subject: SUSE-SU-2026:22534-1: important: Security update 5.0.8 for Multi-Linux Manager Client Tools, Salt Bundle and Salt Message-ID: <178368671330.1052.17620573807790652805@5ed4f61072e9> # Security update 5.0.8 for Multi-Linux Manager Client Tools, Salt Bundle and Salt Announcement ID: SUSE-SU-2026:22534-1 Release Date: 2026-06-03T12:47:13Z Rating: important References: * bsc#1252964 * bsc#1254619 * bsc#1254629 * bsc#1254900 * bsc#1257583 * bsc#1257831 * bsc#1257941 * bsc#1258927 * bsc#1258957 * bsc#1259208 * bsc#1259554 * bsc#1259700 * bsc#1259804 * bsc#1259808 * bsc#1261810 Cross-References: * CVE-2026-27448 * CVE-2026-27459 * CVE-2026-31958 CVSS scores: * CVE-2026-27448 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2026-27448 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2026-27448 ( NVD ): 1.7 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-27448 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2026-27459 ( SUSE ): 8.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N * CVE-2026-27459 ( SUSE ): 7.0 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2026-27459 ( NVD ): 7.2 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-27459 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-27459 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-31958 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-31958 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-31958 ( NVD ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-31958 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that solves three vulnerabilities and has 12 fixes can now be installed. ## Description: This update fixes the following issues: golang-github-prometheus-node_exporter: * Version 1.10.2: * meminfo: Fix typo in Zswap metric name * Version 1.10.1: * filesystem: Fix mount points being collected multiple times * filesystem: Refactor mountinfo parsing (bsc#1261810) * meminfo: Add Zswap/Zswapped metrics * Version 1.10.0: * Changes: * mdadm: Use sysfs for RAID metrics * filesystem: Add erofs in default excluded fs * tcpstat: Use std lib binary.NativeEndian * New Features: * pcidevice: Add new collector for PCIe devices * AIX: Add more metrics * systemd: Add Virtualization metrics * swaps: Add new collector * Enhancements: * wifi: Add packet received and transmitted metrics * filesystem: Take super options into account for read-only * pcidevice: Add additional metrics * perf: Add tlb_data metrics * Bugs fixed: * interrupts: Fix OpenBSD interrupt device parsing * diskstats: Simplify condition * thermal: Sanitize darwin thermal strings * filesystem: Fix Darwin collector cgo memory leak * cpufreq: Fix: collector enable * ethtool: Fix returning 0 for sanitized metrics * netdev: Fix Darwin netdev i/o bytes metric * systemd: Fix logging race * filesystem: Fix duplicate Darwin CGO import salt: * Security issues fixed: * CVE-2026-31958: tornado: Fixed parsing large multipart bodies with many parts can cause a denial of service (bsc#1259554) * Other updates and bugfixes: * Use non vendored Tornado with Python 3.11 (bsc#1257583, bsc#1259700) * Hardened Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) * Fixed testsuite failures * Make users with backslash working for salt-ssh (bsc#1254629) * Fixed ansible.playbooks extra-vars quoting (bsc#1257831) * Fixed virtualenv call in test helper to use proper python version uyuni-tools: * Version 0.1.39-0: * mgrpxy ssh tuning should happen before crypto policies (bsc#1254619) * Fixed default value for helm registry (bsc#1258927). * Use static supportconfig name to avoid dynamic search (bsc#1257941) * Do not nest multiple tarball files and instead collect all files into one tarball (bsc#1252964) * Show where final tarball was generated (bsc#1259208) venv-salt-minion: * Security issues fixed: * CVE-2026-31958: tornado: Fixed parsing large multipart bodies with many parts can cause a denial of service (bsc#1259554) * CVE-2026-27459: pyOpenSSL: Fixed issue with large cookie value that can lead to a buffer overflow (bsc#1259808) * CVE-2026-27448: pyOpenSSL: Fixed unhandled exception can result in connection not being cancelled (bsc#1259804) * Other updates and bugfixes: * Use non vendored Tornado with Python 3.11 (bsc#1257583, bsc#1259700) * Hardened Tornado from invalid HTTP reason phrases * Read full URI from ldap pillar config (bsc#1254900) * Make users with backslash work for `salt-ssh` (bsc#1254629). * Fixed `ansible.playbooks` `extra-vars` quoting (bsc#1257831), * Fixed `virtualenv` call in test helper to use proper Python version. * Fixed the issue preventing SELinux profile to be loaded on SLES 16 deployed using cloud images (bsc#1258957) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-6740=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-zsh-completion-0.1.39-1.1 * mgrctl-lang-0.1.39-1.1 * mgrctl-bash-completion-0.1.39-1.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * mgrctl-debuginfo-0.1.39-1.1 * golang-github-prometheus-node_exporter-debuginfo-1.10.2-1.1 * venv-salt-minion-3006.0-11.1 * mgrctl-0.1.39-1.1 * golang-github-prometheus-node_exporter-1.10.2-1.1 ## References: * https://www.suse.com/security/cve/CVE-2026-27448.html * https://www.suse.com/security/cve/CVE-2026-27459.html * https://www.suse.com/security/cve/CVE-2026-31958.html * https://bugzilla.suse.com/show_bug.cgi?id=1252964 * https://bugzilla.suse.com/show_bug.cgi?id=1254619 * https://bugzilla.suse.com/show_bug.cgi?id=1254629 * https://bugzilla.suse.com/show_bug.cgi?id=1254900 * https://bugzilla.suse.com/show_bug.cgi?id=1257583 * https://bugzilla.suse.com/show_bug.cgi?id=1257831 * https://bugzilla.suse.com/show_bug.cgi?id=1257941 * https://bugzilla.suse.com/show_bug.cgi?id=1258927 * https://bugzilla.suse.com/show_bug.cgi?id=1258957 * https://bugzilla.suse.com/show_bug.cgi?id=1259208 * https://bugzilla.suse.com/show_bug.cgi?id=1259554 * https://bugzilla.suse.com/show_bug.cgi?id=1259700 * https://bugzilla.suse.com/show_bug.cgi?id=1259804 * https://bugzilla.suse.com/show_bug.cgi?id=1259808 * https://bugzilla.suse.com/show_bug.cgi?id=1261810 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:32:18 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:32:18 -0000 Subject: SUSE-SU-2026:22533-1: important: Security update 5.0.7 for Multi-Linux Manager for Client Tools, Salt Bundle, Salt Message-ID: <178368673887.1052.9250838464263669724@5ed4f61072e9> # Security update 5.0.7 for Multi-Linux Manager for Client Tools, Salt Bundle, Salt Announcement ID: SUSE-SU-2026:22533-1 Release Date: 2026-03-24T06:26:01Z Rating: important References: * bsc#1240532 * bsc#1246130 * bsc#1253347 * bsc#1253738 * bsc#1254256 * bsc#1254257 * bsc#1254325 * bsc#1254589 * bsc#1254903 * bsc#1254904 * bsc#1254905 * bsc#1255781 * bsc#1256803 * bsc#1257941 Cross-References: * CVE-2025-62348 * CVE-2025-62349 * CVE-2025-67724 * CVE-2025-67725 * CVE-2025-67726 CVSS scores: * CVE-2025-62348 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62348 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62348 ( NVD ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-62348 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62349 ( SUSE ): 7.5 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N * CVE-2025-62349 ( SUSE ): 6.2 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L * CVE-2025-62349 ( NVD ): 7.5 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-62349 ( NVD ): 6.2 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L * CVE-2025-67724 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2025-67724 ( SUSE ): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N * CVE-2025-67724 ( NVD ): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N * CVE-2025-67724 ( NVD ): 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2025-67725 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-67725 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-67725 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-67726 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-67726 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-67726 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that solves five vulnerabilities and has nine fixes can now be installed. ## Description: This update for fixes the following issues: golang-github-prometheus-node_exporter: * Require gcc11-c++ for building with SLE 12 uyuni-tools: * Version 0.1.38-0: * Fixed cobbler config migration to standalone files (bsc#1256803) * Detect custom apache and squid config in the /etc/uyuni/proxy folder * Added ssh tuning to configure sshd (bsc#1253738) * Ignore supportconfig errors (bsc#1255781) * Bumped the default image tag to 5.0.7 * Remove cgroup mount for podman containers (bsc#1253347) * Registry flag can be a string (bsc#1254589) * Use static supportconfig name to avoid dynamic search (bsc#1257941) venv-salt-minion: * Security issues fixed: * CVE-2025-67724: missing validation of supplied reason phrase (bsc#1254903) * CVE-2025-67725: fix DoS via malicious HTTP request (bsc#1254905) * CVE-2025-67726: fix HTTP header parameter parsing algorithm (bsc#1254904) * CVE-2025-62349: Add minimum_auth_version to enforce security (bsc#1254257) * CVE-2025-62348: Junos module yaml loader fix (bsc#1254256) * Fixed the typo causing buiding EL9 bundle without binary dependencies * Make syntax in httputil_test compatible with Python 3.6 * Fixed KeyError in postgres module with PostgreSQL 17 (bsc#1254325) * Use internal deb classes instead of external aptsource lib * Speed up wheel key.finger call (bsc#1240532) * Simplify and speed up utils.find_json function (bsc#1246130) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-6635=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-zsh-completion-0.1.38-1.1 * mgrctl-lang-0.1.38-1.1 * mgrctl-bash-completion-0.1.38-1.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * golang-github-prometheus-node_exporter-1.9.1-2.1 * venv-salt-minion-3006.0-10.1 * mgrctl-debuginfo-0.1.38-1.1 * golang-github-prometheus-node_exporter-debuginfo-1.9.1-2.1 * mgrctl-0.1.38-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62348.html * https://www.suse.com/security/cve/CVE-2025-62349.html * https://www.suse.com/security/cve/CVE-2025-67724.html * https://www.suse.com/security/cve/CVE-2025-67725.html * https://www.suse.com/security/cve/CVE-2025-67726.html * https://bugzilla.suse.com/show_bug.cgi?id=1240532 * https://bugzilla.suse.com/show_bug.cgi?id=1246130 * https://bugzilla.suse.com/show_bug.cgi?id=1253347 * https://bugzilla.suse.com/show_bug.cgi?id=1253738 * https://bugzilla.suse.com/show_bug.cgi?id=1254256 * https://bugzilla.suse.com/show_bug.cgi?id=1254257 * https://bugzilla.suse.com/show_bug.cgi?id=1254325 * https://bugzilla.suse.com/show_bug.cgi?id=1254589 * https://bugzilla.suse.com/show_bug.cgi?id=1254903 * https://bugzilla.suse.com/show_bug.cgi?id=1254904 * https://bugzilla.suse.com/show_bug.cgi?id=1254905 * https://bugzilla.suse.com/show_bug.cgi?id=1255781 * https://bugzilla.suse.com/show_bug.cgi?id=1256803 * https://bugzilla.suse.com/show_bug.cgi?id=1257941 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:33:04 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:33:04 -0000 Subject: SUSE-SU-2026:22532-1: important: Security update 5.0.6 for Multi-Linux Manager Client Tools, Salt and Salt Bundle Message-ID: <178368678403.1052.10041767845916491251@5ed4f61072e9> # Security update 5.0.6 for Multi-Linux Manager Client Tools, Salt and Salt Bundle Announcement ID: SUSE-SU-2026:22532-1 Release Date: 2025-12-16T07:28:05Z Rating: important References: * bsc#1227207 * bsc#1243611 * bsc#1243704 * bsc#1244027 * bsc#1244127 * bsc#1244534 * bsc#1245099 * bsc#1245740 * bsc#1246068 * bsc#1246320 * bsc#1246553 * bsc#1246662 * bsc#1246738 * bsc#1246789 * bsc#1246882 * bsc#1246906 * bsc#1246925 * bsc#1247688 * bsc#1247721 * bsc#1250520 * bsc#1250755 * bsc#1251044 * bsc#1251138 * bsc#1251776 * bsc#1252244 * bsc#1252285 * bsc#1254256 * bsc#1254257 Cross-References: * CVE-2025-62348 * CVE-2025-62349 CVSS scores: * CVE-2025-62348 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62348 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62348 ( NVD ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-62348 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62349 ( SUSE ): 7.5 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N * CVE-2025-62349 ( SUSE ): 6.2 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L * CVE-2025-62349 ( NVD ): 7.5 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-62349 ( NVD ): 6.2 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that solves two vulnerabilities and has 26 fixes can now be installed. ## Description: This update fixes the following issues: salt: * Security issues fixed: * CVE-2025-62349: Added minimum_auth_version to enforce security (bsc#1254257) * CVE-2025-62348: Fixed Junos module yaml loader (bsc#1254256) * Backport security fixes for vendored tornado * BDSA-2024-3438 * BDSA-2024-3439 * BDSA-2024-9026 * Other changes and bugs fixed: * Fixed TLS and x509 modules for OSes with older cryptography module * Fixed Salt for Python > 3.11 (bsc#1252285) (bsc#1252244) * Use external tornado on Python > 3.11 * Make tls and x509 to use python-cryptography * Remove usage of spwd * Fixed payload signature verification on Tumbleweed (bsc#1251776) * Fixed broken symlink on migration to Leap 16.0 (bsc#1250755) * Fixed known_hosts error on gitfs (bsc#1250520) (bsc#1227207) * Fixed functional.states.test_user for SLES 16 and Micro systems * Fixed the tests failing on AlmaLinux 10 and other clones * Improved SL Micro 6.2 detection with grains * Require Python dependencies only for used Python version * Reverted requirement of M2Crypto >= 0.44.0 for SUSE Family distros * Set python-CherryPy as required for python-salt-testsuite uyuni-tools: * Version 0.1.37-0 * Added --registry-host, --registry-user and --registry-password to pull images from an authenticate registry * Added a lowercase version of --logLevel (bsc#1243611) * Added migration for server monitoring configuration (bsc#1247688) * Added SLE15SP7 to buildin productmap * Adjusted traefik exposed configuration for chart v27+ (bsc#1247721) * Automatically get up-to-date systemid file on salt based proxy hosts (bsc#1246789) * Check for restorecon presence before calling (bsc#1246925) * Convert the traefik install time to local time (bsc#1251138) * Deprecated --registry * Do not require backups to be at the same location for restoring (bsc#1246906) * Do not use sudo when running as a root user (bsc#1246882) * Fixed channel override for distro copy * Fixed loading product map from mgradm configuration file (bsc#1246068) * Fixed recomputing proxy images when installing a ptf or test (bsc#1246553) * Handle CA files with symlinks during migration (bsc#1251044) * Migrate custom auto installation snippets (bsc#1246320) * Run smdba and reindex only during migration (bsc#1244534) * Stop executing scripts in temporary folder (bsc#1243704) * Support config: collect podman inspect for hub container(bsc#1245099) * Use new dedicated path for Cobbler settings (bsc#1244027) * Version 0.1.36-0 * Bump the default image tag to 5.0.5.1 * Version 0.1.35-0 * Restore SELinux contexts for restored backup volumes (bsc#1244127) * Version 0.1.34-0 * Fixed mgradm backup create handling of images and systemd files (bsc#1246738) * Version 0.1.33-0 * Restore volumes using tar instead of podman import (bsc#1244127) * Version 0.1.32-0 * Fixed version compare by backport from main (bsc#1246662) venv-salt-minion: * Security issues fixed: * CVE-2025-62349: Added minimum_auth_version to enforce security (bsc#1254257) * CVE-2025-62348: Fixed Junos module yaml loader (bsc#1254256) * Backport security fixes for vendored tornado * BDSA-2024-3438 * BDSA-2024-3439 * BDSA-2024-9026 * Other changes and bugs fixed: * Added `minion_legacy_req_warnings` option to avoid noisy warnings * Fixed TLS and x509 modules for OSes with older cryptography module * Fixed Salt for Python > 3.11 (bsc#1252285) (bsc#1252244) * Use external tornado on Python > 3.11 * Make tls and x509 to use python-cryptography * Remove usage of spwd * Filter out zero-length check as the empty files are expected there * Filter out env-script-interpreter for ssh-id-wrapper as not used with the Salt Bundle, but present inside the salt module * Fixed functional.states.test_user for SLES 16 and Micro systems * Fixed known_hosts error on gitfs (bsc#1250520) (bsc#1227207) * Fixed payload signature verification on Tumbleweed (bsc#1251776) * Fixed the tests failing on AlmaLinux 10 and other clones * Improve SL Micro 6.2 detection with grains * Removed unused activate script (bsc#1245740) * Use more strict way to Fixed shebang in the bundle scripts * Use versioned python interpreter for salt-ssh ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-6535=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * mgrctl-0.1.37-1.1 * mgrctl-debuginfo-0.1.37-1.1 * venv-salt-minion-3006.0-9.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-zsh-completion-0.1.37-1.1 * mgrctl-lang-0.1.37-1.1 * mgrctl-bash-completion-0.1.37-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62348.html * https://www.suse.com/security/cve/CVE-2025-62349.html * https://bugzilla.suse.com/show_bug.cgi?id=1227207 * https://bugzilla.suse.com/show_bug.cgi?id=1243611 * https://bugzilla.suse.com/show_bug.cgi?id=1243704 * https://bugzilla.suse.com/show_bug.cgi?id=1244027 * https://bugzilla.suse.com/show_bug.cgi?id=1244127 * https://bugzilla.suse.com/show_bug.cgi?id=1244534 * https://bugzilla.suse.com/show_bug.cgi?id=1245099 * https://bugzilla.suse.com/show_bug.cgi?id=1245740 * https://bugzilla.suse.com/show_bug.cgi?id=1246068 * https://bugzilla.suse.com/show_bug.cgi?id=1246320 * https://bugzilla.suse.com/show_bug.cgi?id=1246553 * https://bugzilla.suse.com/show_bug.cgi?id=1246662 * https://bugzilla.suse.com/show_bug.cgi?id=1246738 * https://bugzilla.suse.com/show_bug.cgi?id=1246789 * https://bugzilla.suse.com/show_bug.cgi?id=1246882 * https://bugzilla.suse.com/show_bug.cgi?id=1246906 * https://bugzilla.suse.com/show_bug.cgi?id=1246925 * https://bugzilla.suse.com/show_bug.cgi?id=1247688 * https://bugzilla.suse.com/show_bug.cgi?id=1247721 * https://bugzilla.suse.com/show_bug.cgi?id=1250520 * https://bugzilla.suse.com/show_bug.cgi?id=1250755 * https://bugzilla.suse.com/show_bug.cgi?id=1251044 * https://bugzilla.suse.com/show_bug.cgi?id=1251138 * https://bugzilla.suse.com/show_bug.cgi?id=1251776 * https://bugzilla.suse.com/show_bug.cgi?id=1252244 * https://bugzilla.suse.com/show_bug.cgi?id=1252285 * https://bugzilla.suse.com/show_bug.cgi?id=1254256 * https://bugzilla.suse.com/show_bug.cgi?id=1254257 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:33:35 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:33:35 -0000 Subject: SUSE-SU-2026:22531-1: important: Security update 5.1.1 for Multi-Linux Manager Client Tools and Salt Bundle Message-ID: <178368681545.1052.8644806323609470226@5ed4f61072e9> # Security update 5.1.1 for Multi-Linux Manager Client Tools and Salt Bundle Announcement ID: SUSE-SU-2026:22531-1 Release Date: 2025-10-23T15:29:04Z Rating: important References: * bsc#1229825 * bsc#1243331 * bsc#1243611 * bsc#1243704 * bsc#1244027 * bsc#1244127 * bsc#1245099 * bsc#1245120 * bsc#1245740 * bsc#1246068 * bsc#1246320 * bsc#1246553 * bsc#1246628 * bsc#1246789 * bsc#1246864 * bsc#1246882 * bsc#1246906 * bsc#1247688 * bsc#1247836 * jsc#MSQA-1023 Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that contains one feature and has 19 fixes can now be installed. ## Description: This update fixes the following issues: uyuni-tools: * Version 5.1.20-0 * Add migration for server monitoring configuration (bsc#1247688) * Version 5.1.19-0 * Add a lowercase version of --logLevel (bsc#1243611) * Stop executing scripts in temporary folder (bsc#1243704) * support config: collect podman inspect for hub container (bsc#1245099) * Use new dedicated path for Cobbler settings (bsc#1244027) * Migrate custom auto installation snippets (bsc#1246320) * Add SUSE Linux Enterprise 15 SP7 to buildin productmap * Fix loading product map from mgradm configuration file (bsc#1246068) * Fix channel override for distro copy * Do not use sudo when running as a root user (bsc#1246882) * Do not require backups to be at the same location for restoring (bsc#1246906) * Fix recomputing proxy images when installing a PTF or TEST (bsc#1246553) * Add mgradm server rename to change the server FQDN (bsc#1229825) * If no DB SSL CA parameter is given, use the other one (bsc#1245120) * More fault tolerant mgradm stop (bsc#1243331) * Backup systemd dropin directory too and create if missing * Add 3rd party SSL options for upgrade and migration scenarios * Do not consider stderr output of podman as an error (bsc#1247836) * Restore SELinux contexts for restored backup volumes (bsc#1244127) * Automatically get up-to-date systemid file on salt based proxy hosts (bsc#1246789) * Bump the default image tag to 5.1.1 * Version 5.1.18-0 * Update translation strings * Version 5.1.17-0 * upgrade saline should use scale function (bsc#1246864) * Version 5.1.16-0 * Use database backup volume as temporary backup location (bsc#1246628) venv-salt-minion: * Improve SL Micro 6.2 detection with grains * Fix functional.states.test_user for SLES 16 and Micro systems * Fix the tests failing on AlmaLinux 10 and other clones * Add `minion_legacy_req_warnings` option to avoid noisy warnings * Use more strict way to fix shebang in the bundle scripts * Remove unused activate script (bsc#1245740) * Filter out zero-length check as the empty files are expected there * Filter out env-script-interpreter for ssh-id-wrapper as not used with the Salt Bundle, but present inside the salt module * venv-salt-minion-rpmlintrc ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-62=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-bash-completion-5.1.20-1.4 * mgrctl-lang-5.1.20-1.4 * mgrctl-zsh-completion-5.1.20-1.4 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * mgrctl-debuginfo-5.1.20-1.4 * mgrctl-5.1.20-1.4 * venv-salt-minion-3006.0-9.2 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1229825 * https://bugzilla.suse.com/show_bug.cgi?id=1243331 * https://bugzilla.suse.com/show_bug.cgi?id=1243611 * https://bugzilla.suse.com/show_bug.cgi?id=1243704 * https://bugzilla.suse.com/show_bug.cgi?id=1244027 * https://bugzilla.suse.com/show_bug.cgi?id=1244127 * https://bugzilla.suse.com/show_bug.cgi?id=1245099 * https://bugzilla.suse.com/show_bug.cgi?id=1245120 * https://bugzilla.suse.com/show_bug.cgi?id=1245740 * https://bugzilla.suse.com/show_bug.cgi?id=1246068 * https://bugzilla.suse.com/show_bug.cgi?id=1246320 * https://bugzilla.suse.com/show_bug.cgi?id=1246553 * https://bugzilla.suse.com/show_bug.cgi?id=1246628 * https://bugzilla.suse.com/show_bug.cgi?id=1246789 * https://bugzilla.suse.com/show_bug.cgi?id=1246864 * https://bugzilla.suse.com/show_bug.cgi?id=1246882 * https://bugzilla.suse.com/show_bug.cgi?id=1246906 * https://bugzilla.suse.com/show_bug.cgi?id=1247688 * https://bugzilla.suse.com/show_bug.cgi?id=1247836 * https://jira.suse.com/browse/MSQA-1023 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:34:13 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:34:13 -0000 Subject: SUSE-SU-2026:22530-1: important: Security update 5.0.5 for Multi-Linux Manager Client Tools, Salt and Salt Bundle Message-ID: <178368685343.1052.1294634901852370500@5ed4f61072e9> # Security update 5.0.5 for Multi-Linux Manager Client Tools, Salt and Salt Bundle Announcement ID: SUSE-SU-2026:22530-1 Release Date: 2025-07-23T13:31:05Z Rating: important References: * bsc#1236621 * bsc#1236877 * bsc#1238686 * bsc#1238849 * bsc#1238929 * bsc#1240626 * bsc#1240698 * bsc#1242174 * bsc#1243105 * bsc#1243268 * bsc#1243274 * bsc#1243297 * bsc#1243802 * bsc#1244561 * bsc#1244564 * bsc#1244565 * bsc#1244566 * bsc#1244567 * bsc#1244568 * bsc#1244570 * bsc#1244571 * bsc#1244572 * bsc#1244574 * bsc#1244575 * jsc#MSQA-993 Cross-References: * CVE-2024-38822 * CVE-2024-38823 * CVE-2024-38824 * CVE-2024-38825 * CVE-2025-22236 * CVE-2025-22237 * CVE-2025-22238 * CVE-2025-22239 * CVE-2025-22240 * CVE-2025-22241 * CVE-2025-22242 * CVE-2025-22870 * CVE-2025-47287 CVSS scores: * CVE-2024-38822 ( SUSE ): 5.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2024-38822 ( SUSE ): 2.7 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N * CVE-2024-38822 ( NVD ): 2.7 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N * CVE-2024-38823 ( SUSE ): 8.2 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2024-38823 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N * CVE-2024-38823 ( NVD ): 2.7 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N * CVE-2024-38824 ( SUSE ): 9.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N * CVE-2024-38824 ( SUSE ): 9.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N * CVE-2024-38824 ( NVD ): 9.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N * CVE-2024-38824 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N * CVE-2024-38825 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2024-38825 ( SUSE ): 6.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N * CVE-2024-38825 ( NVD ): 6.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N * CVE-2025-22236 ( SUSE ): 6.1 CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:L * CVE-2025-22236 ( SUSE ): 8.1 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:L * CVE-2025-22236 ( NVD ): 8.1 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:L * CVE-2025-22237 ( SUSE ): 8.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-22237 ( SUSE ): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2025-22237 ( NVD ): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2025-22238 ( SUSE ): 6.7 CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2025-22238 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N * CVE-2025-22238 ( NVD ): 4.2 CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N * CVE-2025-22239 ( SUSE ): 6.1 CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:L * CVE-2025-22239 ( SUSE ): 8.1 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:L * CVE-2025-22239 ( NVD ): 8.1 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:L * CVE-2025-22240 ( SUSE ): 5.4 CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-22240 ( SUSE ): 6.3 CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H * CVE-2025-22240 ( NVD ): 6.3 CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H * CVE-2025-22241 ( SUSE ): 5.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:A/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2025-22241 ( SUSE ): 5.6 CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:N * CVE-2025-22241 ( NVD ): 5.6 CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:N * CVE-2025-22242 ( SUSE ): 6.7 CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-22242 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H * CVE-2025-22242 ( NVD ): 5.6 CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:H * CVE-2025-22870 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-22870 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L * CVE-2025-22870 ( NVD ): 4.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L * CVE-2025-47287 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-47287 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-47287 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that solves 13 vulnerabilities, contains one feature and has 11 fixes can now be installed. ## Description: This update fixes the following issues: golang-github-prometheus-node_exporter: * Security issues fixed: * CVE-2025-22870: Prevent a matching of hosts against proxy patterns to improperly treat an IPv6 zone ID as a hostname component (bsc#1238686) * Other bugs fixed: * Fixed Darwin memory leak * pressure: Fix missing IRQ on older kernels salt, venv-salt-minion: * Security issues fixed: * CVE-2024-38822: Fixed Minion token validation (bsc#1244561) * CVE-2024-38823: Fixed server vulnerability to replay attacks when not using a TLS encrypted transport (bsc#1244564) * CVE-2024-38824: Fixed directory traversal vulnerability in recv_file method (bsc#1244565) * CVE-2024-38825: Fixed salt.auth.pki module authentication issue (bsc#1244566) * CVE-2025-22240: Fixed arbitrary directory creation or file deletion with GitFS (bsc#1244567) * CVE-2025-22236: Fixed Minion event bus authorization bypass (bsc#1244568) * CVE-2025-22241: Fixed the use of un-validated input in the VirtKey class (bsc#1244570) * CVE-2025-22237: Fixed exploitation of the 'on demand' pillar functionality (bsc#1244571) * CVE-2025-22238: Fixed the master's default cache vulnerability to a directory traversal attack (bsc#1244572) * CVE-2025-22239: Fixed the arbitrary event injection on the Salt Master (bsc#1244574) * CVE-2025-22242: Fixed a Denial of Service vulnerability through file read operation (bsc#1244575) * CVE-2025-47287: Fixed a Denial of Service vulnerability in Tornado logging behavior (bsc#1243268) * Other bugs fixed: * Added subsystem filter to udev.exportdb (bsc#1236621) * Added `minion_legacy_req_warnings` option to avoid noisy warnings * Fixed Ubuntu 24.04 edge-case test failures * Fixed refresh of osrelease and related grains on Python 3.10+ * Fixed issue requiring proper Python flavor for dependencies * Require M2Crypto version 0.44.0 or higher * venv-salt-minion: Fixed bundle path in pyvenv.cfg uyuni-tools: * Version 0.1.31-0: * Added the info message about End User License Agreement * Don't migrate py2*-compat-salt.conf files (bsc#1240626) * Check for restorecon before using it (bsc#1240698) * Adjust the distro path in cobbler files after migration (bsc#1238929) * Added mgradm support ptf podman --pullPolicy flag (bsc#1236877) * Support: don't dump files in bound folders (bsc#1243297) * Cleanup host supportconfig files (bsc#1242174) * During migration, check if backup already exists (bsc#1243105) * Removed SHM size limits from all containers (bsc#1243274) * Don't migrate /etc/apache2/vhosts.d/cobbler.conf * Fixed migration --prepare for autoinstallable distributions (bsc#1243802) * Skip instalation if the server is already set up (bsc#1238849) * Bumped the default image tag to 5.0.5 ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-6392=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-bash-completion-0.1.31-1.1 * mgrctl-zsh-completion-0.1.31-1.1 * mgrctl-lang-0.1.31-1.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * venv-salt-minion-3006.0-8.1 * mgrctl-0.1.31-1.1 * golang-github-prometheus-node_exporter-1.9.1-1.1 * golang-github-prometheus-node_exporter-debuginfo-1.9.1-1.1 * mgrctl-debuginfo-0.1.31-1.1 ## References: * https://www.suse.com/security/cve/CVE-2024-38822.html * https://www.suse.com/security/cve/CVE-2024-38823.html * https://www.suse.com/security/cve/CVE-2024-38824.html * https://www.suse.com/security/cve/CVE-2024-38825.html * https://www.suse.com/security/cve/CVE-2025-22236.html * https://www.suse.com/security/cve/CVE-2025-22237.html * https://www.suse.com/security/cve/CVE-2025-22238.html * https://www.suse.com/security/cve/CVE-2025-22239.html * https://www.suse.com/security/cve/CVE-2025-22240.html * https://www.suse.com/security/cve/CVE-2025-22241.html * https://www.suse.com/security/cve/CVE-2025-22242.html * https://www.suse.com/security/cve/CVE-2025-22870.html * https://www.suse.com/security/cve/CVE-2025-47287.html * https://bugzilla.suse.com/show_bug.cgi?id=1236621 * https://bugzilla.suse.com/show_bug.cgi?id=1236877 * https://bugzilla.suse.com/show_bug.cgi?id=1238686 * https://bugzilla.suse.com/show_bug.cgi?id=1238849 * https://bugzilla.suse.com/show_bug.cgi?id=1238929 * https://bugzilla.suse.com/show_bug.cgi?id=1240626 * https://bugzilla.suse.com/show_bug.cgi?id=1240698 * https://bugzilla.suse.com/show_bug.cgi?id=1242174 * https://bugzilla.suse.com/show_bug.cgi?id=1243105 * https://bugzilla.suse.com/show_bug.cgi?id=1243268 * https://bugzilla.suse.com/show_bug.cgi?id=1243274 * https://bugzilla.suse.com/show_bug.cgi?id=1243297 * https://bugzilla.suse.com/show_bug.cgi?id=1243802 * https://bugzilla.suse.com/show_bug.cgi?id=1244561 * https://bugzilla.suse.com/show_bug.cgi?id=1244564 * https://bugzilla.suse.com/show_bug.cgi?id=1244565 * https://bugzilla.suse.com/show_bug.cgi?id=1244566 * https://bugzilla.suse.com/show_bug.cgi?id=1244567 * https://bugzilla.suse.com/show_bug.cgi?id=1244568 * https://bugzilla.suse.com/show_bug.cgi?id=1244570 * https://bugzilla.suse.com/show_bug.cgi?id=1244571 * https://bugzilla.suse.com/show_bug.cgi?id=1244572 * https://bugzilla.suse.com/show_bug.cgi?id=1244574 * https://bugzilla.suse.com/show_bug.cgi?id=1244575 * https://jira.suse.com/browse/MSQA-993 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:34:32 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:34:32 -0000 Subject: SUSE-RU-2026:22529-1: moderate: Recommended update 5.0.4 for Multi-Linux Manager Client Tools and Salt Bundle Message-ID: <178368687206.1052.2272296369884361483@5ed4f61072e9> # Recommended update 5.0.4 for Multi-Linux Manager Client Tools and Salt Bundle Announcement ID: SUSE-RU-2026:22529-1 Release Date: 2025-04-14T09:56:59Z Rating: moderate References: * bsc#1215484 * bsc#1220905 * bsc#1226964 * bsc#1230642 * bsc#1230944 * bsc#1231605 * bsc#1234022 * bsc#1234881 * bsc#1235658 * bsc#1235861 * jsc#MSQA-934 * jsc#PED-12480 * jsc#PED-12485 Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that contains three features and has 10 fixes can now be installed. ## Description: This update for fixes the following issues: uyuni-tools: * Version 0.1.29-0 * Fixed label of proxy configuration files on SELinux (bsc#1235658) * Reverted use of :z flag on Server volumes (bsc#1235861) venv-salt-minion: * Fixed aptpkg 'NoneType object has no attribute split' error * Detect openEuler as RedHat family OS * Ensure the correct crypt module is loaded * Implement multiple inventory for ansible.targets * Made x509 module compatible with M2Crypto 0.44.0 * Removed deprecated code from x509.certificate_managed test mode * Move logrotate config to /usr/etc/logrotate.d where possible * Added DEB822 apt repository format support * Made Salt-SSH work with all SSH passwords (bsc#1215484) * Removed strict binary dependency for libcrypt.so for EL9 bundle to make it compatible with openEuler and make using passlib instead. * Fixed virt_query outputter and added support for block devices * Made _auth calls visible with master stats * Repaired mount.fstab_present always returning pending changes * Set virtual grain in Podman systemd container * Fixed crash due wrong client reference on `SaltMakoTemplateLookup` * Enhanced batch async and fixed some detected issues * Fixed tests failures after "repo.saltproject.io" deprecation * Fixed error to stat '/root/.gitconfig' on gitfs (bsc#1230944) (bsc#1234881) (bsc#1220905) * Adapt to removal of hex attribute in pygit2 v1.15.0 (bsc#1230642) * Enhanced smart JSON parsing when garbage is present (bsc#1231605) * Fixed virtual grains for VMs running on Nutanix AHV (bsc#1234022) * Fixed issues running on Python 3.12 and 3.13 (bsc#1226964) golang-github-prometheus-node_exporter: * Implementation of `golang-github-prometheus-node_exporter` at version 1.9.0 (jsc#PED-12480, jsc#PED-12485) system-user-prometheus: * Implementation of `system-user-prometheus` at version 1.0.0 (jsc#PED-12480, jsc#PED-12485) ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-6285=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-lang-0.1.29-1.1 * mgrctl-bash-completion-0.1.29-1.1 * mgrctl-zsh-completion-0.1.29-1.1 * system-user-prometheus-1.0.0-2.4 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * mgrctl-0.1.29-1.1 * venv-salt-minion-3006.0-5.1 * golang-github-prometheus-node_exporter-debuginfo-1.9.0-1.1 * golang-github-prometheus-node_exporter-1.9.0-1.1 * mgrctl-debuginfo-0.1.29-1.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1215484 * https://bugzilla.suse.com/show_bug.cgi?id=1220905 * https://bugzilla.suse.com/show_bug.cgi?id=1226964 * https://bugzilla.suse.com/show_bug.cgi?id=1230642 * https://bugzilla.suse.com/show_bug.cgi?id=1230944 * https://bugzilla.suse.com/show_bug.cgi?id=1231605 * https://bugzilla.suse.com/show_bug.cgi?id=1234022 * https://bugzilla.suse.com/show_bug.cgi?id=1234881 * https://bugzilla.suse.com/show_bug.cgi?id=1235658 * https://bugzilla.suse.com/show_bug.cgi?id=1235861 * https://jira.suse.com/browse/MSQA-934 * https://jira.suse.com/browse/PED-12480 * https://jira.suse.com/browse/PED-12485 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:35:01 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:35:01 -0000 Subject: SUSE-SU-2026:22528-1: moderate: Security update for SUSE Manager Client Tools Message-ID: <178368690162.1052.4539791634029425479@5ed4f61072e9> # Security update for SUSE Manager Client Tools Announcement ID: SUSE-SU-2026:22528-1 Release Date: 2025-02-13T08:42:02Z Rating: moderate References: * bsc#1228182 * bsc#1228690 * bsc#1229079 * bsc#1229104 * bsc#1231497 * bsc#1231568 * bsc#1231618 * bsc#1231759 * bsc#1232575 * bsc#1232769 * bsc#1232817 * bsc#1233202 * bsc#1233279 * bsc#1233630 * bsc#1233660 * bsc#1233667 * bsc#1234123 * jsc#MSQA-914 Cross-References: * CVE-2024-22037 CVSS scores: * CVE-2024-22037 ( SUSE ): 5.7 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:L/SI:L/SA:L * CVE-2024-22037 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2024-22037 ( NVD ): 5.7 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2024-22037 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that solves one vulnerability, contains one feature and has 16 fixes can now be installed. ## Description: This update fixes the following issues: salt: * Revert setting SELinux context for minion service (bsc#1233667) * Removed System V init support * Fix the condition of alternatives for Tumbleweed and Leap 16 * Build all python bindings for all flavors * Make minion reconnecting on changing master IP (bsc#1228182) * Handle logger exception when flushing already closed file * Include passlib as a recommended dependency * Make Salt Bundle more tolerant to long running jobs (bsc#1228690) uyuni-tools was updated from version 0.1.23-0 to 0.1.27-0: * Security issues fixed: * CVE-2024-22037: Use podman secret to store the database credentials (bsc#1231497) * Other changes and bugs fixed: * Version 0.1.27-0 * Bump the default image tag to 5.0.3 * IsInstalled function fix * Run systemctl daemon-reload after changing the container image config (bsc#1233279) * Coco-replicas-upgrade * Persist search server indexes (bsc#1231759) * Sync deletes files during migration (bsc#1233660) * Ignore coco and hub images when applying PTF if they are not ailable (bsc#1229079) * Add --registry back to mgrpxy (bsc#1233202) * Only add java.hostname on migrated server if not present * Consider the configuration file to detect the coco or hub api images should be pulled (bsc#1229104) * Only raise an error if cloudguestregistryauth fails for PAYG (bsc#1233630) * Add registry.suse.com login to mgradm upgrade podman list (bsc#1234123) * Version 0.1.26-0 * Ignore all zypper caches during migration (bsc#1232769) * Use the uyuni network for all podman containers (bsc#1232817) * Version 0.1.25-0 * Don't migrate enabled systemd services, recreate them (bsc#1232575) * Version 0.1.24-0 * Redact JSESSIONID and pxt-session-cookie values from logs and console output (bsc#1231568) venv-salt-minion: * Included D-Bus python module for SUSE distros (bsc#1231618) * Reverted setting SELinux context for minion service (bsc#1233667) * Make minion reconnecting on changing master IP (bsc#1228182) * Fixed post_start_cleanup.sh shebang to work on all systems * Handle logger exception when flushing already closed file * Made Salt Bundle more tolerant to long running jobs (bsc#1228690) * Modified: * include-rpm * filter-requires.sh ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-6211=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * mgrctl-debuginfo-0.1.28-1.1 * venv-salt-minion-3006.0-4.1 * mgrctl-0.1.28-1.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-zsh-completion-0.1.28-1.1 * mgrctl-bash-completion-0.1.28-1.1 * mgrctl-lang-0.1.28-1.1 ## References: * https://www.suse.com/security/cve/CVE-2024-22037.html * https://bugzilla.suse.com/show_bug.cgi?id=1228182 * https://bugzilla.suse.com/show_bug.cgi?id=1228690 * https://bugzilla.suse.com/show_bug.cgi?id=1229079 * https://bugzilla.suse.com/show_bug.cgi?id=1229104 * https://bugzilla.suse.com/show_bug.cgi?id=1231497 * https://bugzilla.suse.com/show_bug.cgi?id=1231568 * https://bugzilla.suse.com/show_bug.cgi?id=1231618 * https://bugzilla.suse.com/show_bug.cgi?id=1231759 * https://bugzilla.suse.com/show_bug.cgi?id=1232575 * https://bugzilla.suse.com/show_bug.cgi?id=1232769 * https://bugzilla.suse.com/show_bug.cgi?id=1232817 * https://bugzilla.suse.com/show_bug.cgi?id=1233202 * https://bugzilla.suse.com/show_bug.cgi?id=1233279 * https://bugzilla.suse.com/show_bug.cgi?id=1233630 * https://bugzilla.suse.com/show_bug.cgi?id=1233660 * https://bugzilla.suse.com/show_bug.cgi?id=1233667 * https://bugzilla.suse.com/show_bug.cgi?id=1234123 * https://jira.suse.com/browse/MSQA-914 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:35:36 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:35:36 -0000 Subject: SUSE-SU-2026:22527-1: important: Security update for SUSE Manager Client Tools and Salt Bundle Message-ID: <178368693675.1052.17600130929861567328@5ed4f61072e9> # Security update for SUSE Manager Client Tools and Salt Bundle Announcement ID: SUSE-SU-2026:22527-1 Release Date: 2025-02-03T09:00:46Z Rating: important References: * bsc#1219041 * bsc#1220357 * bsc#1222842 * bsc#1226141 * bsc#1226447 * bsc#1226448 * bsc#1226469 * bsc#1227547 * bsc#1228105 * bsc#1228780 * bsc#1229109 * bsc#1229539 * bsc#1229654 * bsc#1229704 * bsc#1229873 * bsc#1229994 * bsc#1229995 * bsc#1229996 * bsc#1230058 * bsc#1230059 * bsc#1230322 * jsc#MSQA-863 Cross-References: * CVE-2024-0397 * CVE-2024-3651 * CVE-2024-37891 * CVE-2024-4032 * CVE-2024-5569 * CVE-2024-6345 * CVE-2024-6923 * CVE-2024-7592 * CVE-2024-8088 CVSS scores: * CVE-2024-0397 ( SUSE ): 4.8 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L * CVE-2024-0397 ( NVD ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H * CVE-2024-3651 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-3651 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-3651 ( NVD ): 6.2 CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-37891 ( SUSE ): 4.4 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N * CVE-2024-37891 ( NVD ): 4.4 CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N * CVE-2024-37891 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2024-4032 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2024-4032 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2024-5569 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L * CVE-2024-5569 ( NVD ): 6.2 CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-6345 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2024-6345 ( NVD ): 8.8 CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2024-6923 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N * CVE-2024-6923 ( NVD ): 5.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2024-7592 ( SUSE ): 2.6 CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:L * CVE-2024-7592 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-7592 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-8088 ( SUSE ): 5.9 CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2024-8088 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2024-8088 ( NVD ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:N/R:U/V:X/RE:L/U:X Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that solves nine vulnerabilities, contains one feature and has 12 fixes can now be installed. ## Description: This update for SUSE Manager Client Tools and Salt Bundle the following issues: uyuni-tools: venv-salt-minion: * Security fixes on Python 3.11 interpreter: * CVE-2024-7592: Fixed quadratic complexity in parsing -quoted cookie values with backslashes (bsc#1229873, bsc#1230059) * CVE-2024-8088: Prevent malformed payload to cause infinite loops in zipfile.Path (bsc#1229704, bsc#1230058) * CVE-2024-6923: Prevent email header injection due to unquoted newlines (bsc#1228780) * CVE-2024-4032: Rearranging definition of private global IP addresses (bsc#1226448) * CVE-2024-0397: ssl.SSLContext.cert_store_stats() and ssl.SSLContext.get_ca_certs() now correctly lock access to the certificate store, when the ssl.SSLContext is shared across multiple threads (bsc#1226447) * Security fixes on Python dependencies: * CVE-2024-5569: zipp: Fixed a Denial of Service (DoS) vulnerability in the jaraco/zipp library (bsc#1227547, bsc#1229996) * CVE-2024-6345: setuptools: Sanitize any VCS URL used for download (bsc#1228105, bsc#1229995) * CVE-2024-3651: idna: Fix a potential DoS via resource consumption via specially crafted inputs to idna.encode() (bsc#1222842, bsc#1229994) * CVE-2024-37891: urllib3: Added the `Proxy-Authorization` header to the list of headers to strip from requests when redirecting to a different host (bsc#1226469, bsc#1229654) * Other bugs fixed: * Fixed failing x509 tests with OpenSSL < 1.1 * Avoid explicit reading of /etc/salt/minion (bsc#1220357) * Allow NamedLoaderContexts to be returned from loader * Reverted the change making reactor less blocking (bsc#1230322) * Use --cachedir for extension_modules in salt-call (bsc#1226141) * Prevent using SyncWrapper with no reason * Enable post_start_cleanup.sh to work in a transaction * Fixed the SELinux context for Salt Minion service (bsc#1219041) * Increase warn_until_date date for code we still support * Avoid crash on wrong output of systemctl version (bsc#1229539) * Improved error handling with different OpenSSL versions * Fixed cloud Minion configuration for multiple Masters (bsc#1229109) * Use Pygit2 id instead of deprecated oid in gitfs * Added passlib Python module to the bundle ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-669=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * mgrctl-debuginfo-0.1.23-2.1 * mgrctl-0.1.23-2.1 * venv-salt-minion-3006.0-3.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-zsh-completion-0.1.23-2.1 * mgrctl-lang-0.1.23-2.1 * mgrctl-bash-completion-0.1.23-2.1 ## References: * https://www.suse.com/security/cve/CVE-2024-0397.html * https://www.suse.com/security/cve/CVE-2024-3651.html * https://www.suse.com/security/cve/CVE-2024-37891.html * https://www.suse.com/security/cve/CVE-2024-4032.html * https://www.suse.com/security/cve/CVE-2024-5569.html * https://www.suse.com/security/cve/CVE-2024-6345.html * https://www.suse.com/security/cve/CVE-2024-6923.html * https://www.suse.com/security/cve/CVE-2024-7592.html * https://www.suse.com/security/cve/CVE-2024-8088.html * https://bugzilla.suse.com/show_bug.cgi?id=1219041 * https://bugzilla.suse.com/show_bug.cgi?id=1220357 * https://bugzilla.suse.com/show_bug.cgi?id=1222842 * https://bugzilla.suse.com/show_bug.cgi?id=1226141 * https://bugzilla.suse.com/show_bug.cgi?id=1226447 * https://bugzilla.suse.com/show_bug.cgi?id=1226448 * https://bugzilla.suse.com/show_bug.cgi?id=1226469 * https://bugzilla.suse.com/show_bug.cgi?id=1227547 * https://bugzilla.suse.com/show_bug.cgi?id=1228105 * https://bugzilla.suse.com/show_bug.cgi?id=1228780 * https://bugzilla.suse.com/show_bug.cgi?id=1229109 * https://bugzilla.suse.com/show_bug.cgi?id=1229539 * https://bugzilla.suse.com/show_bug.cgi?id=1229654 * https://bugzilla.suse.com/show_bug.cgi?id=1229704 * https://bugzilla.suse.com/show_bug.cgi?id=1229873 * https://bugzilla.suse.com/show_bug.cgi?id=1229994 * https://bugzilla.suse.com/show_bug.cgi?id=1229995 * https://bugzilla.suse.com/show_bug.cgi?id=1229996 * https://bugzilla.suse.com/show_bug.cgi?id=1230058 * https://bugzilla.suse.com/show_bug.cgi?id=1230059 * https://bugzilla.suse.com/show_bug.cgi?id=1230322 * https://jira.suse.com/browse/MSQA-863 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:36:12 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:36:12 -0000 Subject: SUSE-RU-2026:22526-1: moderate: Recommended update for uyuni-tools, venv-salt-minion, saltbundlepy-pyopenssl, saltbundlepy-cryptography Message-ID: <178368697234.1052.16873941439282585090@5ed4f61072e9> # Recommended update for uyuni-tools, venv-salt-minion, saltbundlepy-pyopenssl, saltbundlepy-cryptography Announcement ID: SUSE-RU-2026:22526-1 Release Date: 2025-02-03T08:49:59Z Rating: moderate References: * bsc#1220136 * bsc#1222684 * bsc#1224349 * bsc#1225349 * bsc#1226191 * bsc#1226284 * bsc#1226437 * bsc#1226759 * bsc#1226793 * bsc#1226847 * bsc#1226914 * bsc#1227195 * bsc#1227244 * bsc#1227245 * bsc#1227505 * bsc#1227584 * bsc#1227586 * bsc#1227588 * bsc#1227718 * bsc#1227951 * bsc#1228026 * bsc#1228183 Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that has 22 fixes can now be installed. ## Description: This update for uyuni-tools, venv-salt-minion, saltbundlepy-pyopenssl, saltbundlepy-cryptography fixes the following issues: saltbundlepy-cryptography: \- Apply fips-mode.patch and definitions- ERR_GET.patch on Ubuntu 24.04 and fix the condition in advance for future products saltbundlepy-pyopenssl: \- Make the module compatible with older OpenSSL versions not having `X509_CRL_set1_lastUpdate` and `X509_CRL_set1_nextUpdate` defined by using `X509_CRL_set_lastUpdate` and `X509_CRL_set_nextUpdate` instead. uyuni-tools: \- version 0.1.21-0 * mgrpxy: Fix typo on Systemd template \- version 0.1.20-0 * Update the push tag to 5.0.1 * mgrpxy: expose port on IPv6 network (bsc#1227951) \- version 0.1.19-0 * Skip updating Tomcat remote debug if conf file is not present \- version 0.1.18-0 * Setup Confidential Computing container during migration (bsc#1227588) * Add the /etc/uyuni/uyuni-tools.yaml path to the config help * Split systemd config files to not loose configuration at upgrade (bsc#1227718) * Use the same logic for image computation in mgradm and mgrpxy (bsc#1228026) * Allow building with different Helm and container default registry paths (bsc#1226191) * Fix recursion in mgradm upgrade podman list --help * Setup hub xmlrpc API service in migration to Podman (bsc#1227588) * Setup disabled hub xmlrpc API service in all cases (bsc#1227584) * Clean the inspection code to make it faster * Properly detect IPv6 enabled on Podman network (bsc#1224349) * Fix the log file path generation * Write scripts output to uyuni-tools.log file * Add uyuni-hubxml-rpc to the list of values in mgradm scale --help * Use path in mgradm support sql file input (bsc#1227505) * On Ubuntu build with go1.21 instead of go1.20 * Enforce Cobbler setup (bsc#1226847) * Expose port on IPv6 network (bsc#1227951) * show output of podman image search --list-tags command * Implement mgrpxy support config command * During migration, ignore /etc/sysconfig/tomcat and /etc/tomcat/tomcat.conf (bsc#1228183) * During migration, remove java.annotation,com.sun.xml.bind and UseConcMarkSweepGC settings * Disable node exporter port for Kubernetes * Fix start, stop and restart in Kubernetes * Increase start timeout in Kubernetes * Fix traefik query * Fix password entry usability (bsc#1226437) * Add --prepare option to migrate command * Fix random error during installation of CA certificate (bsc#1227245) * Clarify and fix distro name guessing when not provided (bsc#1226284) * Replace not working Fatal error by plain error return (bsc#1220136) * Allow server installation with preexisting storage volumes * Do not report error when purging mounted volume (bsc#1225349) * Preserve PAGER settings from the host for interactive sql usage (bsc#1226914) * Add mgrpxy command to clear the Squid cache * Use local images for Confidential Computing and Hub containers (bsc#1227586) \- version 0.1.17-0 * Allow GPG files to be loaded from the local file (bsc#1227195) \- version 0.1.16-0 * Prefer local images in all migration steps (bsc#1227244) \- version 0.1.15-0 * Define --registry flag behaviour (bsc#1226793) \- version 0.1.14-0 * Do not rely on hardcoded registry, remove any FQDN \- version 0.1.13-0 * Fix mgradm support config tarball creation (bsc#1226759) \- version 0.1.12-0 * Detection of k8s on Proxy was wrongly influenced by Server setting venv-salt-minion: \- Fix rich rule comparison in firewalld module (bsc#1222684) \- test_vultrpy: adjust test expectation to prevent failure after Debian 10 EOL \- Make auth.pam more robust with Salt Bundle and fix tests \- Fix performance of user.list_groups with many remote groups \- Fix "status.diskusage" function and exclude some tests for Salt Bundle ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-641=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * mgrctl-debuginfo-0.1.21-1.1 * venv-salt-minion-3006.0-2.1 * mgrctl-0.1.21-1.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-zsh-completion-0.1.21-1.1 * mgrctl-bash-completion-0.1.21-1.1 * mgrctl-lang-0.1.21-1.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1220136 * https://bugzilla.suse.com/show_bug.cgi?id=1222684 * https://bugzilla.suse.com/show_bug.cgi?id=1224349 * https://bugzilla.suse.com/show_bug.cgi?id=1225349 * https://bugzilla.suse.com/show_bug.cgi?id=1226191 * https://bugzilla.suse.com/show_bug.cgi?id=1226284 * https://bugzilla.suse.com/show_bug.cgi?id=1226437 * https://bugzilla.suse.com/show_bug.cgi?id=1226759 * https://bugzilla.suse.com/show_bug.cgi?id=1226793 * https://bugzilla.suse.com/show_bug.cgi?id=1226847 * https://bugzilla.suse.com/show_bug.cgi?id=1226914 * https://bugzilla.suse.com/show_bug.cgi?id=1227195 * https://bugzilla.suse.com/show_bug.cgi?id=1227244 * https://bugzilla.suse.com/show_bug.cgi?id=1227245 * https://bugzilla.suse.com/show_bug.cgi?id=1227505 * https://bugzilla.suse.com/show_bug.cgi?id=1227584 * https://bugzilla.suse.com/show_bug.cgi?id=1227586 * https://bugzilla.suse.com/show_bug.cgi?id=1227588 * https://bugzilla.suse.com/show_bug.cgi?id=1227718 * https://bugzilla.suse.com/show_bug.cgi?id=1227951 * https://bugzilla.suse.com/show_bug.cgi?id=1228026 * https://bugzilla.suse.com/show_bug.cgi?id=1228183 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:36:19 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:36:19 -0000 Subject: SUSE-RU-2026:22525-1: critical: Recommended update for SUSE Manager Client Tools Message-ID: <178368697976.1052.6667797725189755760@5ed4f61072e9> # Recommended update for SUSE Manager Client Tools Announcement ID: SUSE-RU-2026:22525-1 Release Date: 2025-02-03T08:45:43Z Rating: critical References: * bsc#1224081 * bsc#1226436 * jsc#MSQA-812 * jsc#PED-7843 Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that contains two features and has two fixes can now be installed. ## Description: This update for fixes the following issues: uyuni-tools: * Version 0.1.11-0 * Require Netavark network backend for Podman (bsc#1224081) * Fix --registry option (bsc#1226436) * Copy the server CA certificate to the host * Delete /etc/uyuni/proxy folder during mgrpxy uninstall * Check permissions of /etc/uyuni folder to prevent Squid failures * Correctly prepend default namespace for mgrpxy containers * Re-add Podman extra args for install and migrate * Version 0.1.10-0 * Provide mgrctl to SUSE Linux Enterprise 15 client tools (jsc#PED-7843) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-66=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-lang-0.1.11-1.1 * mgrctl-bash-completion-0.1.11-1.1 * mgrctl-zsh-completion-0.1.11-1.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * mgrctl-0.1.11-1.1 * mgrctl-debuginfo-0.1.11-1.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1224081 * https://bugzilla.suse.com/show_bug.cgi?id=1226436 * https://jira.suse.com/browse/MSQA-812 * https://jira.suse.com/browse/PED-7843 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Fri Jul 10 12:36:25 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Fri, 10 Jul 2026 12:36:25 -0000 Subject: SUSE-RU-2026:22524-1: moderate: Recommended update for SUSE Manager Salt Bundle Message-ID: <178368698542.1052.5766000908420781110@5ed4f61072e9> # Recommended update for SUSE Manager Salt Bundle Announcement ID: SUSE-RU-2026:22524-1 Release Date: 2025-02-03T08:45:42Z Rating: moderate References: * bsc#1216063 * jsc#MSQA-808 Affected Products: * SUSE Linux Micro 6.0 * SUSE Linux Micro 6.1 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 An update that contains one feature and has one fix can now be installed. ## Description: This update fixes the following issues: venv-salt-minion: * Add a timer to delete old env post update for venv-minion * Several fixes for tests to avoid errors and failures in some OSes * Speed up salt.matcher.confirm_top by using **context** * Do not call the async wrapper calls with the separate thread * Prevent OOM with high amount of batch async calls (bsc#1216063) * Add missing contextvars dependency in salt.version * Skip tests for unsupported algorithm on old OpenSSL version * Remove redundant `_file_find` call to the master * Prevent possible exception in tornado.concurrent.Future._set_done * Make reactor engine less blocking the EventPublisher * Make salt-master self recoverable on killing EventPublisher * Improve broken events catching and reporting * Make logging calls lighter * Remove unused import causing delays on starting salt-master * Include libffi and libyaml to the bundle for all of the clients to avoid extra dependencies from the client OS. * Update Python version from 3.10 to 3.11 * Fix updating the venv-salt-minion pkg with itself * Enable build for SLE 11 ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 zypper in -t patch Multi-Linux-ManagerTools-SL-Micro-65=1 ## Package List: * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64) * mgrctl-5.2.12-1.2 * golang-github-prometheus-node_exporter-debuginfo-1.10.2-1.2 * golang-github-prometheus-node_exporter-1.10.2-1.2 * venv-salt-minion-3006.0-13.1 * mgrctl-debuginfo-5.2.12-1.2 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (noarch) * mgrctl-zsh-completion-5.2.12-1.2 * supportutils-plugin-susemanager-client-5.2.3-1.1 * supportutils-plugin-salt-1.2.3-1.1 * mgrctl-lang-5.2.12-1.2 * mgrctl-bash-completion-5.2.12-1.2 * SUSE Multi-Linux Manager Client Tools for SUSE Linux Micro 6 (aarch64 ppc64le s390x x86_64) * venv-salt-minion-3006.0-1.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1216063 * https://jira.suse.com/browse/MSQA-808 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Wed Jul 15 16:35:03 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Wed, 15 Jul 2026 16:35:03 -0000 Subject: SUSE-SU-2026:3043-1: important: Security update for curl Message-ID: <178413330307.13854.9394955015861165439@fcb35a5fe5ab> # Security update for curl Announcement ID: SUSE-SU-2026:3043-1 Release Date: 2026-07-15T11:51:45Z Rating: important References: * bsc#1268402 * bsc#1268407 * bsc#1268409 * bsc#1268413 * bsc#1268415 * bsc#1268416 * bsc#1268417 * bsc#1268420 * bsc#1268422 * bsc#1268427 Cross-References: * CVE-2026-10536 * CVE-2026-12064 * CVE-2026-8286 * CVE-2026-8458 * CVE-2026-8924 * CVE-2026-8927 * CVE-2026-9079 * CVE-2026-9080 * CVE-2026-9545 * CVE-2026-9547 CVSS scores: * CVE-2026-10536 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-10536 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2026-10536 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-12064 ( SUSE ): 9.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-12064 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-12064 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N * CVE-2026-8286 ( SUSE ): 9.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-8286 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-8286 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N * CVE-2026-8458 ( SUSE ): 2.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2026-8458 ( SUSE ): 4.2 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N * CVE-2026-8458 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-8924 ( SUSE ): 8.6 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-8924 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N * CVE-2026-8924 ( NVD ): 9.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-8927 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-8927 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2026-8927 ( NVD ): 9.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-9079 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-9079 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-9079 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-9080 ( SUSE ): 8.2 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2026-9080 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-9080 ( NVD ): 7.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L * CVE-2026-9545 ( SUSE ): 8.2 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-9545 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-9545 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-9547 ( SUSE ): 9.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-9547 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2026-9547 ( NVD ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise Desktop 15 SP4 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves 10 vulnerabilities can now be installed. ## Description: This update for curl fixes the following issues * CVE-2026-8286: wrong STARTTLS connection reuse (bsc#1268402). * CVE-2026-8458: wrong reuse for different services (bsc#1268407). * CVE-2026-8924: traling dot domain super cookie (bsc#1268409). * CVE-2026-8927: env-set cross-proxy Digest auth state leak (bsc#1268413). * CVE-2026-9079: stale proxy password leak (bsc#1268415). * CVE-2026-9080: UAF after pause in socket callback (bsc#1268416). * CVE-2026-9545: exposing HTTP/3 early data (bsc#1268417). * CVE-2026-9547: SSH improper host validation (bsc#1268420). * CVE-2026-10536: HTTP/2 stream-dependency tree UAF (bsc#1268422). * CVE-2026-12064: proto-default skips SSH verification (bsc#1268427). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2026-3043=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-3043=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-3043=1 * SUSE Linux Enterprise Server 15 SP5 zypper in -t patch SUSE-SLE-INSTALLER-15-SP5-2026-3043=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-INSTALLER-15-SP5-2026-3043=1 SUSE-SLE-Product- SLES_SAP-15-SP5-2026-3043=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2026-3043=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-3043=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2026-3043=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-3043=1 * openSUSE Leap 15.4 zypper in -t patch SUSE-2026-3043=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2026-3043=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2026-3043=1 * SUSE Linux Enterprise High Performance Computing 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3043=1 * SUSE Linux Enterprise Server 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3043=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3043=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3043=1 SUSE-SLE-Product- SLES_SAP-15-SP4-2026-3043=1 * SUSE Linux Enterprise Desktop 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3043=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3043=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3043=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-3043=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-3043=1 * SUSE Linux Enterprise High Performance Computing 15 SP5 zypper in -t patch SUSE-SLE-INSTALLER-15-SP5-2026-3043=1 * SUSE Linux Enterprise Desktop 15 SP5 zypper in -t patch SUSE-SLE-INSTALLER-15-SP5-2026-3043=1 ## Package List: * SUSE Linux Enterprise Server 15 SP4 LTSS (x86_64) * libcurl4-32bit-debuginfo-8.14.1-150400.5.86.1 * libcurl4-32bit-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl-devel-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Micro 5.5 (aarch64 ppc64le s390x x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * openSUSE Leap 15.4 (aarch64 i586 ppc64le s390x x86_64) * curl-mini-debugsource-8.14.1-150400.5.86.1 * libcurl-mini4-8.14.1-150400.5.86.1 * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl-mini4-debuginfo-8.14.1-150400.5.86.1 * libcurl-devel-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * openSUSE Leap 15.4 (x86_64) * libcurl4-32bit-debuginfo-8.14.1-150400.5.86.1 * libcurl-devel-32bit-8.14.1-150400.5.86.1 * libcurl4-32bit-8.14.1-150400.5.86.1 * openSUSE Leap 15.4 (noarch) * curl-zsh-completion-8.14.1-150400.5.86.1 * libcurl-devel-doc-8.14.1-150400.5.86.1 * curl-fish-completion-8.14.1-150400.5.86.1 * openSUSE Leap 15.4 (aarch64_ilp32) * libcurl4-64bit-8.14.1-150400.5.86.1 * libcurl-devel-64bit-8.14.1-150400.5.86.1 * libcurl4-64bit-debuginfo-8.14.1-150400.5.86.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl-devel-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (x86_64) * libcurl4-32bit-debuginfo-8.14.1-150400.5.86.1 * libcurl4-32bit-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl-devel-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (x86_64) * libcurl4-32bit-debuginfo-8.14.1-150400.5.86.1 * libcurl4-32bit-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl-devel-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (x86_64) * libcurl4-32bit-debuginfo-8.14.1-150400.5.86.1 * libcurl4-32bit-8.14.1-150400.5.86.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl-devel-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (x86_64) * libcurl4-32bit-debuginfo-8.14.1-150400.5.86.1 * libcurl4-32bit-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (x86_64) * libcurl4-32bit-debuginfo-8.14.1-150400.5.86.1 * libcurl4-32bit-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl-devel-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl-devel-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (x86_64) * libcurl4-32bit-debuginfo-8.14.1-150400.5.86.1 * libcurl4-32bit-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * libcurl4-8.14.1-150400.5.86.1 * curl-debuginfo-8.14.1-150400.5.86.1 * libcurl-devel-8.14.1-150400.5.86.1 * libcurl4-debuginfo-8.14.1-150400.5.86.1 * curl-debugsource-8.14.1-150400.5.86.1 * curl-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (x86_64) * libcurl4-32bit-debuginfo-8.14.1-150400.5.86.1 * libcurl4-32bit-8.14.1-150400.5.86.1 * SUSE Manager Server 4.3 (ppc64le s390x x86_64) * libcurl4-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Server 15 SP4 (aarch64 ppc64le s390x x86_64) * libcurl4-8.14.1-150400.5.86.1 * SUSE Linux Enterprise High Performance Computing 15 SP5 (aarch64 x86_64) * libcurl4-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Desktop 15 SP5 (x86_64) * libcurl4-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Server 15 SP5 (aarch64 ppc64le s390x x86_64) * libcurl4-8.14.1-150400.5.86.1 * SUSE Linux Enterprise High Performance Computing 15 SP4 (aarch64 x86_64) * libcurl4-8.14.1-150400.5.86.1 * SUSE Linux Enterprise Desktop 15 SP4 (x86_64) * libcurl4-8.14.1-150400.5.86.1 * SUSE Manager Retail Branch Server 4.3 (x86_64) * libcurl4-8.14.1-150400.5.86.1 * SUSE Manager Proxy 4.3 (x86_64) * libcurl4-8.14.1-150400.5.86.1 ## References: * https://www.suse.com/security/cve/CVE-2026-10536.html * https://www.suse.com/security/cve/CVE-2026-12064.html * https://www.suse.com/security/cve/CVE-2026-8286.html * https://www.suse.com/security/cve/CVE-2026-8458.html * https://www.suse.com/security/cve/CVE-2026-8924.html * https://www.suse.com/security/cve/CVE-2026-8927.html * https://www.suse.com/security/cve/CVE-2026-9079.html * https://www.suse.com/security/cve/CVE-2026-9080.html * https://www.suse.com/security/cve/CVE-2026-9545.html * https://www.suse.com/security/cve/CVE-2026-9547.html * https://bugzilla.suse.com/show_bug.cgi?id=1268402 * https://bugzilla.suse.com/show_bug.cgi?id=1268407 * https://bugzilla.suse.com/show_bug.cgi?id=1268409 * https://bugzilla.suse.com/show_bug.cgi?id=1268413 * https://bugzilla.suse.com/show_bug.cgi?id=1268415 * https://bugzilla.suse.com/show_bug.cgi?id=1268416 * https://bugzilla.suse.com/show_bug.cgi?id=1268417 * https://bugzilla.suse.com/show_bug.cgi?id=1268420 * https://bugzilla.suse.com/show_bug.cgi?id=1268422 * https://bugzilla.suse.com/show_bug.cgi?id=1268427 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Wed Jul 15 16:36:12 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Wed, 15 Jul 2026 16:36:12 -0000 Subject: SUSE-RU-2026:3034-1: moderate: Recommended update for scap-security-guide Message-ID: <178413337203.13854.13524030470345728474@fcb35a5fe5ab> # Recommended update for scap-security-guide Announcement ID: SUSE-RU-2026:3034-1 Release Date: 2026-07-15T09:56:32Z Rating: moderate References: * jsc#ECO-3319 Affected Products: * Basesystem Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Micro 5.0 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP6 LTSS * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Manager Client Tools for SLE Micro 5 An update that contains one feature can now be installed. ## Description: This update for scap-security-guide fixes the following issues: * Add Hummingbird product support * updated to 0.1.81 (jsc#ECO-3319): * Create SLE16 ANSSI profiles * Update SLE15 STIG version to V2R7 * Update SLE12 STIG version to V3R5 * Update SLEM5 STIG version to V1R3 * Add Claude Code skills for content development workflows * Create Claude Skill for creating new products * Various updates for SLE 12/15 ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2026-3034=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-3034=1 * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2026-3034=1 * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2026-3034=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP6-2026-3034=1 * SUSE Linux Enterprise Server 15 SP6 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP6-LTSS-2026-3034=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-3034=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-3034=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2026-3034=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-3034=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2026-3034=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-3034=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-3034=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-3034=1 * SUSE Manager Client Tools for SLE Micro 5 zypper in -t patch SUSE-SLE-Manager-Tools-For-Micro-5-2026-3034=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2026-3034=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2026-3034=1 ## Package List: * SUSE Linux Enterprise Server 15 SP5 LTSS (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise Server 15 SP6 LTSS (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * Basesystem Module 15-SP7 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise Micro 5.3 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise Micro 5.5 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise Micro 5.4 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Manager Client Tools for SLE Micro 5 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 (noarch) * scap-security-guide-0.1.81-150000.1.109.1 * scap-security-guide-ubuntu-0.1.81-150000.1.109.1 * scap-security-guide-debian-0.1.81-150000.1.109.1 * scap-security-guide-redhat-0.1.81-150000.1.109.1 ## References: * https://jira.suse.com/browse/ECO-3319 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Mon Jul 20 08:31:11 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Mon, 20 Jul 2026 08:31:11 -0000 Subject: SUSE-RU-2026:3118-1: moderate: Recommended update for gcc15 Message-ID: <178453627104.1473.18131218601242437824@178315a69387> # Recommended update for gcc15 Announcement ID: SUSE-RU-2026:3118-1 Release Date: 2026-07-17T20:20:09Z Rating: moderate References: * bsc#1252306 * bsc#1253043 * bsc#1257463 * jsc#PED-15601 Affected Products: * Basesystem Module 15-SP7 * Development Tools Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP4 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing 15 SP6 * SUSE Linux Enterprise High Performance Computing 15 SP7 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP6 LTSS * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 * SUSE Package Hub 15 15-SP7 An update that contains one feature and has three fixes can now be installed. ## Description: This update for gcc15 fixes the following issues: * Update to GCC 15.3 release * Drop -fhardened from RPM_OPT_FLAGS * Avoid conflicts between %gcc_libc_bootstrap packages of different versions if update-alternatives are still in use (SLE 15 and older) * Allow conversions to/from uint32_t. Filter out -Wtime_t-conversion from flags to build D target library files. [jsc#PED-15601] * Remove loongarch64 from quadmath_arch. On LoongArch long double is IEEE quad, so libquadmath is not needed and no longer built. * includes fix for bogus expression simplification [bsc#1257463] even when not available at build time. [bsc#1253043] * Backport fix that cures a miscompile of libgo on arm. [bsc#1252306] * Check availability of builtins at expand time ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2026-3118=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-3118=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2026-3118=1 * SUSE Linux Enterprise High Performance Computing 15 SP5 zypper in -t patch SUSE-SLE-INSTALLER-15-SP5-2026-3118=1 * SUSE Linux Enterprise Server 15 SP5 zypper in -t patch SUSE-SLE-INSTALLER-15-SP5-2026-3118=1 * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2026-3118=1 * SUSE Package Hub 15 15-SP7 zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP7-2026-3118=1 * SUSE Linux Enterprise Server 15 SP6 zypper in -t patch SUSE-SLE-INSTALLER-15-SP6-2026-3118=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-3118=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-3118=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-INSTALLER-15-SP5-2026-3118=1 SUSE-SLE-Product- SLES_SAP-15-SP5-2026-3118=1 * Development Tools Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP7-2026-3118=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 zypper in -t patch SUSE-SLE-INSTALLER-15-SP6-2026-3118=1 SUSE-SLE-Product- SLES_SAP-15-SP6-2026-3118=1 * SUSE Linux Enterprise Server 15 SP6 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP6-LTSS-2026-3118=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2026-3118=1 * SUSE Linux Enterprise Server 15 SP7 zypper in -t patch SUSE-SLE-INSTALLER-15-SP7-2026-3118=1 * SUSE Linux Enterprise High Performance Computing 15 SP7 zypper in -t patch SUSE-SLE-INSTALLER-15-SP7-2026-3118=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-3118=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-3118=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2026-3118=1 * SUSE Linux Enterprise Desktop 15 SP5 zypper in -t patch SUSE-SLE-INSTALLER-15-SP5-2026-3118=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-3118=1 * SUSE Linux Enterprise High Performance Computing 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3118=1 * SUSE Linux Enterprise Server 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3118=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3118=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 zypper in -t patch SUSE-SLE-INSTALLER-15-SP7-2026-3118=1 * SUSE Linux Enterprise Desktop 15 SP7 zypper in -t patch SUSE-SLE-INSTALLER-15-SP7-2026-3118=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-3118=1 SUSE-SLE- INSTALLER-15-SP4-2026-3118=1 * SUSE Linux Enterprise High Performance Computing 15 SP6 zypper in -t patch SUSE-SLE-INSTALLER-15-SP6-2026-3118=1 * SUSE Linux Enterprise Desktop 15 SP6 zypper in -t patch SUSE-SLE-INSTALLER-15-SP6-2026-3118=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2026-3118=1 * SUSE Linux Enterprise Desktop 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3118=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3118=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3118=1 ## Package List: * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * libasan8-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-locale-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-c++-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * libhwasan0-15.3.0+git11272-150000.1.12.1 * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch) * gcc15-info-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * libasan8-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (ppc64le x86_64) * libquadmath0-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 x86_64) * libhwasan0-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (ppc64le s390x x86_64) * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP6 LTSS (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * cross-nvptx-gcc15-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * cross-nvptx-gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * cross-nvptx-newlib15-devel-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP6 LTSS (aarch64 ppc64le s390x x86_64) * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-locale-15.3.0+git11272-150000.1.12.1 * libasan8-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-c++-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP6 LTSS (aarch64 x86_64) * libhwasan0-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP6 LTSS (aarch64 ppc64le x86_64) * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP6 LTSS (ppc64le x86_64) * libquadmath0-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP6 LTSS (noarch) * gcc15-info-15.3.0+git11272-150000.1.12.1 * Basesystem Module 15-SP7 (aarch64 ppc64le s390x x86_64) * libasan8-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * Basesystem Module 15-SP7 (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * Basesystem Module 15-SP7 (ppc64le x86_64) * libquadmath0-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * Basesystem Module 15-SP7 (aarch64 x86_64) * libhwasan0-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * libasan8-15.3.0+git11272-150000.1.12.1 * gcc15-locale-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-debuginfo-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-c++-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * libhwasan0-15.3.0+git11272-150000.1.12.1 * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (noarch) * gcc15-info-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 (ppc64le x86_64) * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * libasan8-15.3.0+git11272-150000.1.12.1 * gcc15-locale-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * libquadmath0-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-c++-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * cross-nvptx-gcc15-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libhwasan0-15.3.0+git11272-150000.1.12.1 * cross-nvptx-gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * cross-nvptx-newlib15-devel-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 (noarch) * gcc15-info-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * libasan8-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (ppc64le x86_64) * libquadmath0-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 x86_64) * libhwasan0-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * libasan8-15.3.0+git11272-150000.1.12.1 * gcc15-locale-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-c++-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libhwasan0-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (noarch) * gcc15-info-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * libasan8-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-locale-15.3.0+git11272-150000.1.12.1 * libquadmath0-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-c++-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libhwasan0-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch) * gcc15-info-15.3.0+git11272-150000.1.12.1 * SUSE Package Hub 15 15-SP7 (aarch64 ppc64le s390x x86_64) * gcc15-ada-15.3.0+git11272-150000.1.12.1 * libm2iso20-15.3.0+git11272-150000.1.12.1 * gcc15-ada-debuginfo-15.3.0+git11272-150000.1.12.1 * libm2log20-15.3.0+git11272-150000.1.12.1 * libm2cor20-15.3.0+git11272-150000.1.12.1 * libada15-15.3.0+git11272-150000.1.12.1 * libm2cor20-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-obj-c++-15.3.0+git11272-150000.1.12.1 * gcc15-go-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-m2-15.3.0+git11272-150000.1.12.1 * gcc15-go-15.3.0+git11272-150000.1.12.1 * gcc15-m2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-objc-debuginfo-15.3.0+git11272-150000.1.12.1 * libada15-debuginfo-15.3.0+git11272-150000.1.12.1 * libgo24-debuginfo-15.3.0+git11272-150000.1.12.1 * libm2pim20-debuginfo-15.3.0+git11272-150000.1.12.1 * libm2min20-15.3.0+git11272-150000.1.12.1 * libm2min20-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-obj-c++-debuginfo-15.3.0+git11272-150000.1.12.1 * libm2pim20-15.3.0+git11272-150000.1.12.1 * gcc15-objc-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * libgo24-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libm2log20-debuginfo-15.3.0+git11272-150000.1.12.1 * libm2iso20-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Package Hub 15 15-SP7 (x86_64) * libgdruntime6-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-d-32bit-15.3.0+git11272-150000.1.12.1 * libada15-32bit-15.3.0+git11272-150000.1.12.1 * libm2cor20-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libm2log20-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgo24-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-go-32bit-15.3.0+git11272-150000.1.12.1 * libgdruntime6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-m2-32bit-15.3.0+git11272-150000.1.12.1 * libm2iso20-32bit-15.3.0+git11272-150000.1.12.1 * libm2pim20-32bit-15.3.0+git11272-150000.1.12.1 * libgphobos6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-ada-32bit-15.3.0+git11272-150000.1.12.1 * libm2log20-32bit-15.3.0+git11272-150000.1.12.1 * libgo24-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-obj-c++-32bit-15.3.0+git11272-150000.1.12.1 * libm2min20-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libm2pim20-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libm2iso20-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgphobos6-32bit-15.3.0+git11272-150000.1.12.1 * libm2min20-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-objc-32bit-15.3.0+git11272-150000.1.12.1 * libm2cor20-32bit-15.3.0+git11272-150000.1.12.1 * libada15-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Package Hub 15 15-SP7 (aarch64 s390x x86_64) * gcc15-d-debuginfo-15.3.0+git11272-150000.1.12.1 * libgdruntime6-15.3.0+git11272-150000.1.12.1 * libgphobos6-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-d-15.3.0+git11272-150000.1.12.1 * libgdruntime6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgphobos6-15.3.0+git11272-150000.1.12.1 * Development Tools Module 15-SP7 (aarch64 ppc64le s390x x86_64) * gcc15-c++-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * Development Tools Module 15-SP7 (x86_64) * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * cross-nvptx-gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * cross-nvptx-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * cross-nvptx-newlib15-devel-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * Development Tools Module 15-SP7 (noarch) * gcc15-info-15.3.0+git11272-150000.1.12.1 * Development Tools Module 15-SP7 (ppc64le x86_64) * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-locale-15.3.0+git11272-150000.1.12.1 * libasan8-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-c++-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * libhwasan0-15.3.0+git11272-150000.1.12.1 * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch) * gcc15-info-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * libgcc_s1-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * libgcc_s1-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * gcc15-fortran-15.3.0+git11272-150000.1.12.1 * gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * gcc15-locale-15.3.0+git11272-150000.1.12.1 * libasan8-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-debuginfo-15.3.0+git11272-150000.1.12.1 * libhwasan0-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-15.3.0+git11272-150000.1.12.1 * liblsan0-15.3.0+git11272-150000.1.12.1 * liblsan0-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-c++-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-15.3.0+git11272-150000.1.12.1 * libhwasan0-15.3.0+git11272-150000.1.12.1 * libobjc4-debuginfo-15.3.0+git11272-150000.1.12.1 * cpp15-15.3.0+git11272-150000.1.12.1 * libasan8-debuginfo-15.3.0+git11272-150000.1.12.1 * libtsan2-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-PIE-15.3.0+git11272-150000.1.12.1 * libubsan1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgomp1-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-locale-15.3.0+git11272-150000.1.12.1 * gcc15-c++-15.3.0+git11272-150000.1.12.1 * cpp15-debuginfo-15.3.0+git11272-150000.1.12.1 * libubsan1-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libitm1-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-15.3.0+git11272-150000.1.12.1 * libgfortran5-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (x86_64) * libgfortran5-32bit-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgfortran5-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-15.3.0+git11272-150000.1.12.1 * gcc15-c++-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libobjc4-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * gcc15-32bit-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libgcc_s1-32bit-15.3.0+git11272-150000.1.12.1 * libubsan1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * libasan8-32bit-15.3.0+git11272-150000.1.12.1 * libgomp1-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-devel-gcc15-15.3.0+git11272-150000.1.12.1 * libstdc++6-32bit-15.3.0+git11272-150000.1.12.1 * libstdc++6-pp-32bit-15.3.0+git11272-150000.1.12.1 * gcc15-fortran-32bit-15.3.0+git11272-150000.1.12.1 * libquadmath0-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-32bit-15.3.0+git11272-150000.1.12.1 * libitm1-32bit-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (noarch) * gcc15-info-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * libgcc_s1-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * libgcc_s1-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP7 (aarch64 ppc64le s390x x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Micro 5.5 (aarch64 ppc64le s390x x86_64) * libgcc_s1-15.3.0+git11272-150000.1.12.1 * libstdc++6-15.3.0+git11272-150000.1.12.1 * libstdc++6-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-debuginfo-15.3.0+git11272-150000.1.12.1 * libatomic1-15.3.0+git11272-150000.1.12.1 * libgcc_s1-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Micro 5.5 (aarch64 s390x x86_64) * gcc15-debugsource-15.3.0+git11272-150000.1.12.1 * gcc15-debuginfo-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP5 (aarch64 ppc64le s390x x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP6 (aarch64 ppc64le s390x x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing 15 SP5 (aarch64 x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing 15 SP4 (aarch64 x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server 15 SP4 (aarch64 ppc64le s390x x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing 15 SP6 (aarch64 x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Desktop 15 SP5 (x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Manager Server 4.3 (ppc64le s390x x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Desktop 15 SP4 (x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Manager Retail Branch Server 4.3 (x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Manager Proxy 4.3 (x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 (ppc64le x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise High Performance Computing 15 SP7 (aarch64 x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Desktop 15 SP7 (x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 * SUSE Linux Enterprise Desktop 15 SP6 (x86_64) * libstdc++6-15.3.0+git11272-150000.1.12.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1252306 * https://bugzilla.suse.com/show_bug.cgi?id=1253043 * https://bugzilla.suse.com/show_bug.cgi?id=1257463 * https://jira.suse.com/browse/PED-15601 -------------- next part -------------- An HTML attachment was scrubbed... URL: From null at suse.de Wed Jul 22 16:48:37 2026 From: null at suse.de (SUSE-MANAGER-UPDATES) Date: Wed, 22 Jul 2026 16:48:37 -0000 Subject: SUSE-RU-2026:3174-1: important: Recommended update for release-notes-sles Message-ID: <178473891722.189.5082620683403706156@cbbac00f79c6> # Recommended update for release-notes-sles Announcement ID: SUSE-RU-2026:3174-1 Release Date: 2026-07-22T07:09:18Z Rating: important References: * bsc#1200759 * bsc#1201981 * bsc#1212186 * bsc#1219730 * bsc#933411 * jsc#PED-10574 * jsc#SLE-21484 * jsc#TEAM-815 Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise Desktop 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that contains three features and has five fixes can now be installed. ## Description: This update for release-notes-sles fixes the following issues: * Update to version 15.4.20260709 (bsc#933411) * Document removal of scsi_mod.use_blk_mq (bsc#1201981) * Provide documentation link for Python 3 module lifecycle (bsc#1200759) * Update to version 15.4.20260227 (bsc#933411) * Updated note to say that AArch64 supports both 4K and 64K block sizes (bsc#1212186) * Added note about KubeVirt support (bsc#1219730) * Added note about cronie minute change (jsc#DOCTEAM-815) * Added note about libmfx being removed (jsc#PED-10574) * Added note about Vagrant 2.2.18 (jsc#SLE-21484) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-3174=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3174=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3174=1 * SUSE Linux Enterprise High Performance Computing 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3174=1 * SUSE Linux Enterprise Desktop 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3174=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3174=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3174=1 * SUSE Linux Enterprise Server 15 SP4 zypper in -t patch SUSE-SLE-INSTALLER-15-SP4-2026-3174=1 * openSUSE Leap 15.4 zypper in -t patch SUSE-2026-3174=1 ## Package List: * SUSE Linux Enterprise Server 15 SP4 LTSS (noarch) * release-notes-sles-15.4.20260709-150400.3.35.3 * SUSE Linux Enterprise High Performance Computing 15 SP4 (noarch) * release-notes-sles-15.4.20260709-150400.3.35.3 * SUSE Linux Enterprise Server 15 SP4 (noarch) * release-notes-sles-15.4.20260709-150400.3.35.3 * SUSE Manager Server 4.3 (noarch) * release-notes-sles-15.4.20260709-150400.3.35.3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch) * release-notes-sles-15.4.20260709-150400.3.35.3 * SUSE Linux Enterprise Desktop 15 SP4 (noarch) * release-notes-sles-15.4.20260709-150400.3.35.3 * SUSE Manager Retail Branch Server 4.3 (noarch) * release-notes-sles-15.4.20260709-150400.3.35.3 * SUSE Manager Proxy 4.3 (noarch) * release-notes-sles-15.4.20260709-150400.3.35.3 * openSUSE Leap 15.4 (noarch) * release-notes-sles-15.4.20260709-150400.3.35.3 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1200759 * https://bugzilla.suse.com/show_bug.cgi?id=1201981 * https://bugzilla.suse.com/show_bug.cgi?id=1212186 * https://bugzilla.suse.com/show_bug.cgi?id=1219730 * https://bugzilla.suse.com/show_bug.cgi?id=933411 * https://jira.suse.com/browse/PED-10574 * https://jira.suse.com/browse/SLE-21484 * https://jira.suse.com/browse/TEAM-815 -------------- next part -------------- An HTML attachment was scrubbed... URL: