SLES 12

SLES 12 — libtasn1 — multiple vulnerabilities (11 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — libtasn1 — multiple vulnerabilities (11 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 18 February 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-CU-2022:2738-1 (see also SUSE bugzilla) Related CVEs: CVE-2021-46848 CVE-2024-12133 CVE-2018-6003 CVE-2025-13151 CVE-2014-3467 CVE-2014-3468 CVE-2014-3469 CVE-2015-2806  +3 more Upstream summary: GNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects […]

Read more
SLES 12 — net-snmp — multiple vulnerabilities (16 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — net-snmp — multiple vulnerabilities (16 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 6 February 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory RHSA-2026:0668 (see also SUSE bugzilla) Related CVEs: CVE-2025-68615 CVE-2020-15862 CVE-2015-5621 CVE-2018-18065 CVE-2022-44792 CVE-2022-44793 CVE-2022-24805 CVE-2022-24806  +8 more Upstream summary: net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 […]

Read more
SLES 12 — libxml2 — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — libxml2 — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 5 February 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory RHSA-2025:12447 (see also SUSE bugzilla) Related CVEs: CVE-2025-7425 CVE-2025-49794 CVE-2025-49796 CVE-2025-6021 CVE-2024-56171 CVE-2022-49043 CVE-2024-25062 CVE-2022-40303  +12 more Upstream summary: A flaw was found in libxslt where the attribute type, atype, flags are […]

Read more
SLES 12 — libodbc2 — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — libodbc2 — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 3 February 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2024:2978-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-1013 Upstream summary: An out-of-bounds stack write flaw was found in unixODBC on 64-bit architectures where the caller has 4 bytes and callee writes 8 […]

Read more
SLES 12 — apache-commons-lang — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — apache-commons-lang — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 29 January 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2025:02785-1 (see also SUSE bugzilla) Related CVEs: CVE-2025-48924 Upstream summary: Uncontrolled Recursion vulnerability in Apache Commons Lang. This issue affects Apache Commons Lang: Starting with commons-lang:commons-lang 2.0 to 2.6, and, from org.apache.commons:commons-lang3 […]

Read more
SLES 12 — libcares2 — multiple vulnerabilities (3 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — libcares2 — multiple vulnerabilities (3 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 26 January 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2023:3690-1 (see also SUSE bugzilla) Related CVEs: CVE-2020-22217 CVE-2024-25629 CVE-2022-4904 Upstream summary: Buffer overflow vulnerability in c-ares before 1_16_1 thru 1_17_0 via function ares_parse_soa_reply in ares_parse_soa_reply.c. Table of contents Symptom & Impact […]

Read more
SLES 12 — python-Twisted — multiple vulnerabilities (11 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — python-Twisted — multiple vulnerabilities (11 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 24 January 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2024:2732-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-41671 CVE-2020-10108 CVE-2020-10109 CVE-2022-21716 CVE-2022-21712 CVE-2024-41810 CVE-2022-24801 CVE-2016-1000111  +3 more Upstream summary: Twisted is an event-based framework for internet applications, supporting Python 3.6+. The HTTP […]

Read more
SLES 12 — rear116 — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — rear116 — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 16 January 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2024:0135-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-23301 Upstream summary: Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. This allows local attackers to gain access to system secrets […]

Read more
SLES 12 — ruby2.1 — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — ruby2.1 — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 16 January 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2024:3939-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-47220 CVE-2018-1000074 CVE-2020-10663 CVE-2021-31799 CVE-2021-31810 CVE-2021-32066 CVE-2018-8777 CVE-2015-9096  +12 more Upstream summary: An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. It […]

Read more
SLES 12 — orc — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — orc — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 12 January 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory RHSA-2024:6184 (see also SUSE bugzilla) Related CVEs: CVE-2024-40897 Upstream summary: Stack-based buffer overflow vulnerability exists in orcparse.c of ORC versions prior to 0.4.39. If a developer is tricked to process a specially […]

Read more
CHAT