openSUSE Tumbleweed — rpm — multiple vulnerabilities (5 CVEs) — patch and remediation guide
🟠 High ⏱ 15–60 min Last verified: 25 May 2026 Affected versions: openSUSE Tumbleweed 📖 ~4 min read • Source: SUSE advisory openSUSE-SU-2018:2215-1 (see also SUSE bugzilla) Related CVEs: CVE-2017-7500 CVE-2021-35938 CVE-2021-35939 CVE-2021-3521 CVE-2021-3421 Upstream summary: It was found that rpm did not properly handle RPM installations when a destination path was a symbolic […]