openSUSE Leap 15.6

openSUSE Leap 15.6 — freeradius-server — vulnerability — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.6

openSUSE Leap 15.6 — freeradius-server — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read  •  Source: SUSE advisory ESSA-2024:0650 (see also SUSE bugzilla) Related CVEs: CVE-2024-3596 Upstream summary: RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can modify any valid Response (Access-Accept, […]

Read more
openSUSE Leap 15.6 — ghostscript — multiple vulnerabilities (17 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.6

openSUSE Leap 15.6 — ghostscript — multiple vulnerabilities (17 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2025:14953-1 (see also SUSE bugzilla) Related CVEs: CVE-2025-27832 CVE-2025-27835 CVE-2025-27836 CVE-2024-46951 CVE-2024-46953 CVE-2024-46956 CVE-2024-33871 CVE-2025-59798  +9 more Upstream summary: An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device […]

Read more
openSUSE Leap 15.6 — trivy — multiple vulnerabilities (11 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.6

openSUSE Leap 15.6 — trivy — multiple vulnerabilities (11 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2025:0056-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-3817 CVE-2025-46569 CVE-2024-6257 CVE-2025-11065 CVE-2025-47291 CVE-2024-51744 CVE-2024-34155 CVE-2024-34156  +3 more Upstream summary: HashiCorp's go-getter library is vulnerable to argument injection when executing Git to […]

Read more
openSUSE Leap 15.6 — tomcat — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.6

openSUSE Leap 15.6 — tomcat — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2024:14525-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-52316 CVE-2025-66614 CVE-2025-55752 CVE-2025-48989 CVE-2025-48988 CVE-2025-49125 CVE-2025-31650 CVE-2025-31651  +12 more Upstream summary: Unchecked Error Condition vulnerability in Apache Tomcat. If Tomcat is configured to […]

Read more
openSUSE Leap 15.6 — gstreamer-plugins-rs — vulnerability — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.6

openSUSE Leap 15.6 — gstreamer-plugins-rs — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2024:0130-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-32650 Upstream summary: Rustls is a modern TLS library written in Rust. `rustls::ConnectionCommon::complete_io` could fall into an infinite loop based on network input. When […]

Read more
openSUSE Leap 15.6 — proftpd — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.6

openSUSE Leap 15.6 — proftpd — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2025:14636-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-48651 CVE-2024-57392 Upstream summary: In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants unintended access to GID 0 because of the lack of […]

Read more
openSUSE Leap 15.6 — sqlite3 — multiple vulnerabilities (6 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.6

openSUSE Leap 15.6 — sqlite3 — multiple vulnerabilities (6 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read  •  Source: SUSE advisory RHSA-2025:11802 (see also SUSE bugzilla) Related CVEs: CVE-2025-6965 CVE-2025-70873 CVE-2025-7709 CVE-2025-3277 CVE-2025-29087 CVE-2025-29088 Upstream summary: There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could […]

Read more
openSUSE Leap 15.6 — nginx — multiple vulnerabilities (4 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.6

openSUSE Leap 15.6 — nginx — multiple vulnerabilities (4 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2023:0360-1 (see also SUSE bugzilla) Related CVEs: CVE-2023-44487 CVE-2025-23419 CVE-2024-7347 CVE-2025-53859 Upstream summary: The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams […]

Read more
openSUSE Leap 15.6 — ntpd-rs — vulnerability — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.6

openSUSE Leap 15.6 — ntpd-rs — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 5–30 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2024:0300-1 Related CVEs: CVE-2024-38528 Upstream summary: nptd-rs is a tool for synchronizing your computer's clock, implementing the NTP and NTS protocols. There is a missing limit for accepted NTS-KE connections. This […]

Read more
openSUSE Leap 15.6 — gnutls — multiple vulnerabilities (7 CVEs) — patch and remediation guide — diagnosis and fix on openSUSE Leap 15.6

openSUSE Leap 15.6 — gnutls — multiple vulnerabilities (7 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read  •  Source: SUSE advisory RHSA-2025:16116 (see also SUSE bugzilla) Related CVEs: CVE-2025-32988 CVE-2025-14831 CVE-2025-9820 CVE-2025-32989 CVE-2025-32990 CVE-2025-6395 CVE-2024-12243 Upstream summary: A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect […]

Read more
CHAT