SLES 15

SLES 15 — netty — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — netty — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 19 June 2026 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2026:1353-1 (see also SUSE bugzilla) Related CVEs: CVE-2026-33870 CVE-2025-55163 CVE-2025-58056 CVE-2025-24970 CVE-2024-29025 CVE-2023-44487 CVE-2022-41881 CVE-2022-41915  +12 more Upstream summary: Netty is an asynchronous, event-driven network application framework. In versions prior to 4.1.132.Final […]

Read more
SLES 15 — tar — multiple vulnerabilities (8 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — tar — multiple vulnerabilities (8 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 17 June 2026 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory RHSA-2026:0002 (see also SUSE bugzilla) Related CVEs: CVE-2025-45582 CVE-2022-48303 CVE-2010-0624 CVE-2016-6321 CVE-2021-20193 CVE-2023-39804 CVE-2018-20482 CVE-2019-9923 Upstream summary: GNU Tar through 1.35 allows file overwrite via directory traversal in crafted TAR archives, with […]

Read more
SLES 15 — libraw23 — vulnerability — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — libraw23 — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 16 June 2026 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory RHSA-2026:11360 (see also SUSE bugzilla) Related CVEs: CVE-2026-24450 Upstream summary: An integer overflow vulnerability exists in the uncompressed_fp_dng_load_raw functionality of LibRaw Commit 8dc68e2. A specially crafted malicious file can lead to a […]

Read more
SLES 15 — libcapstone4 — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — libcapstone4 — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 13 June 2026 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory RHSA-2026:4898 (see also SUSE bugzilla) Related CVEs: CVE-2025-67873 CVE-2025-68114 Upstream summary: Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can […]

Read more
SLES 15 — openCryptoki — multiple vulnerabilities (3 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — openCryptoki — multiple vulnerabilities (3 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 12 June 2026 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory RHSA-2026:4717 (see also SUSE bugzilla) Related CVEs: CVE-2026-23893 CVE-2026-22791 CVE-2024-0914 Upstream summary: openCryptoki is a PKCS#11 library and provides tooling for Linux and AIX. Versions 2.3.2 and above are vulnerable to symlink-following […]

Read more
SLES 15 — haproxy — multiple vulnerabilities (13 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — haproxy — multiple vulnerabilities (13 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 11 June 2026 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-CU-2023:1459-1 (see also SUSE bugzilla) Related CVEs: CVE-2023-25725 CVE-2023-0056 CVE-2019-14241 CVE-2020-11100 CVE-2021-40346 CVE-2026-33555 CVE-2025-11230 CVE-2025-32464  +5 more Upstream summary: HAProxy before 2.7.3 may allow a bypass of access control because HTTP/1 headers […]

Read more
SLES 15 — libXvnc1 — multiple vulnerabilities (10 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — libXvnc1 — multiple vulnerabilities (10 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 10 June 2026 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE security advisory (see also SUSE bugzilla) Related CVEs: CVE-2014-0011 CVE-2020-26117 CVE-2026-34352 CVE-2014-8240 CVE-2019-15691 CVE-2019-15692 CVE-2019-15693 CVE-2019-15694  +2 more Upstream summary: Multiple heap-based buffer overflows in the ZRLE_DECODE function in common/rfb/zrleDecode.h in TigerVNC before […]

Read more
SLES 15 — python311-h11 — vulnerability — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — python311-h11 — vulnerability — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 8 June 2026 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2025:1430-1 (see also SUSE bugzilla) Related CVEs: CVE-2025-43859 Upstream summary: h11 is a Python implementation of HTTP/1.1. Prior to version 0.16.0, a leniency in h11's parsing of line terminators in chunked-coding message […]

Read more
SLES 15 — libIlmImf — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — libIlmImf — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 4 June 2026 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2026:1712-1 (see also SUSE bugzilla) Related CVEs: CVE-2026-40244 CVE-2026-40250 CVE-2021-20298 CVE-2021-3479 CVE-2021-3605 CVE-2021-20296 CVE-2021-20299 CVE-2021-20300  +12 more Upstream summary: OpenEXR provides the specification and reference implementation of the EXR file format, an […]

Read more
SLES 15 — expat — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — expat — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 3 June 2026 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-CU-2019:695-1 (see also SUSE bugzilla) Related CVEs: CVE-2016-9063 CVE-2026-32776 CVE-2026-32777 CVE-2025-59375 CVE-2024-8176 CVE-2024-28757 CVE-2022-43680 CVE-2022-40674  +12 more Upstream summary: An integer overflow during the parsing of XML using the Expat library. This […]

Read more
CHAT