openSUSE Leap 15.5

openSUSE Leap 15.5 — libreoffice — multiple vulnerabilities (4 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.5

openSUSE Leap 15.5 — libreoffice — multiple vulnerabilities (4 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.5 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2024:3576-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-5261 CVE-2024-3044 CVE-2023-6185 CVE-2023-6186 Upstream summary: Improper Certificate Validation vulnerability in LibreOffice "LibreOfficeKit" mode disables TLS certification verification LibreOfficeKit can be used for accessing […]

Read more
openSUSE Leap 15.5 — hdf5-gnu-hpc — multiple vulnerabilities (5 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.5

openSUSE Leap 15.5 — hdf5-gnu-hpc — multiple vulnerabilities (5 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.5 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2018:1051-1 (see also SUSE bugzilla) Related CVEs: CVE-2016-4332 CVE-2021-37501 CVE-2018-11202 CVE-2019-8396 CVE-2020-10812 Upstream summary: The library's failure to check if certain message types support a particular flag, the HDF5 1.8.16 library […]

Read more
openSUSE Leap 15.5 — python311-django-ckeditor — vulnerability — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.5

openSUSE Leap 15.5 — python311-django-ckeditor — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.5 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2024:14557-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-24815 Upstream summary: CKEditor4 is an open source what-you-see-is-what-you-get HTML editor. A cross-site scripting vulnerability has been discovered in the core HTML parsing module […]

Read more
openSUSE Leap 15.5 — modsecurity — multiple vulnerabilities (4 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.5

openSUSE Leap 15.5 — modsecurity — multiple vulnerabilities (4 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.5 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2023:0257-1 (see also SUSE bugzilla) Related CVEs: CVE-2021-42717 CVE-2023-38285 CVE-2020-15598 CVE-2023-28882 Upstream summary: ModSecurity 3.x through 3.0.5 mishandles excessively nested JSON objects. Crafted JSON objects with nesting tens-of-thousands deep could result […]

Read more
openSUSE Leap 15.5 — ruby2.5-rubygem-json-jwt — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.5

openSUSE Leap 15.5 — ruby2.5-rubygem-json-jwt — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.5 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2025:0004-1 (see also SUSE bugzilla) Related CVEs: CVE-2019-18848 CVE-2023-51774 Upstream summary: The json-jwt gem before 1.11.0 for Ruby lacks an element count during the splitting of a JWE string. Table of […]

Read more
openSUSE Leap 15.5 — git — multiple vulnerabilities (6 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.5

openSUSE Leap 15.5 — git — multiple vulnerabilities (6 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.5 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2024:2579-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-24577 CVE-2024-32002 CVE-2024-32004 CVE-2024-32465 CVE-2024-32020 CVE-2024-32021 Upstream summary: libgit2 is a portable C implementation of the Git core methods provided as a linkable library […]

Read more
openSUSE Leap 15.5 — libgio — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.5

openSUSE Leap 15.5 — libgio — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.5 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2024:14487-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-52533 CVE-2024-34397 Upstream summary: gio/gsocks4aproxy.c in GNOME GLib before 2.82.1 has an off-by-one error and resultant buffer overflow because SOCKS4_CONN_MSG_LEN is not sufficient for […]

Read more
openSUSE Leap 15.5 — docker — multiple vulnerabilities (14 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.5

openSUSE Leap 15.5 — docker — multiple vulnerabilities (14 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.5 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2024:14446-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-41110 CVE-2024-24786 CVE-2024-3727 CVE-2024-1753 CVE-2024-23651 CVE-2023-28840 CVE-2024-28180 CVE-2024-23652  +6 more Upstream summary: Moby is an open-source project created by Docker for software containerization. A […]

Read more
openSUSE Leap 15.5 — net-snmp — multiple vulnerabilities (6 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.5

openSUSE Leap 15.5 — net-snmp — multiple vulnerabilities (6 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.5 📖 ~4 min read  •  Source: SUSE advisory RHSA-2024:7260 (see also SUSE bugzilla) Related CVEs: CVE-2022-24805 CVE-2022-24806 CVE-2022-24807 CVE-2022-24808 CVE-2022-24809 CVE-2022-24810 Upstream summary: net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a […]

Read more
CHAT