SLES 16

SLES 16 — dom4j — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — dom4j — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 12 January 2026 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2020:1382-1 (see also SUSE bugzilla) Related CVEs: CVE-2020-10683 CVE-2018-1000632 Upstream summary: dom4j before 2.0.3 and 2.1.x before 2.1.3 allows external DTDs and External Entities by default, which might enable XXE attacks. However, […]

Read more
SLES 16 — argyllcms — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — argyllcms — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 11 January 2026 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE security advisory (see also SUSE bugzilla) Related CVEs: CVE-2012-1616 Upstream summary: Use-after-free vulnerability in icclib before 2.13, as used by Argyll CMS before 1.4 and possibly other programs, allows remote attackers to cause […]

Read more
SLES 16 — libSDL2_ttf — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — libSDL2_ttf — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 11 January 2026 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE security advisory (see also SUSE bugzilla) Related CVEs: CVE-2022-27470 Upstream summary: SDL_ttf v2.0.18 and below was discovered to contain an arbitrary memory write via the function TTF_RenderText_Solid(). This vulnerability is triggered via a […]

Read more
SLES 16 — zstd — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — zstd — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 5–30 min  Last verified: 10 January 2026 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2019:1845-1 (see also SUSE bugzilla) Related CVEs: CVE-2019-11922 Upstream summary: A race condition in the one-pass compression functions of Zstandard prior to version 1.3.8 could allow an attacker to write bytes out […]

Read more
SLES 16 — libXxf86vm1 — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — libXxf86vm1 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 10 January 2026 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2013:1103-1 (see also SUSE bugzilla) Related CVEs: CVE-2013-2001 Upstream summary: Buffer overflow in X.org libXxf86vm 1.1.2 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary […]

Read more
SLES 16 — xrdb — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — xrdb — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 10 January 2026 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory SUSE-SA:2011:016 (see also SUSE bugzilla) Related CVEs: CVE-2011-0465 Upstream summary: xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a […]

Read more
SLES 16 — rsync — multiple vulnerabilities (16 CVEs) — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — rsync — multiple vulnerabilities (16 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 10 January 2026 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2025:0118-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-12084 CVE-2020-14387 CVE-2022-29154 CVE-2024-12087 CVE-2007-4091 CVE-2007-6199 CVE-2011-1097 CVE-2014-2855  +8 more Upstream summary: A heap-based buffer overflow flaw was found in the rsync daemon. This issue […]

Read more
SLES 16 — ppc64-diag — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — ppc64-diag — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 9 January 2026 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2014:0928-1 (see also SUSE bugzilla) Related CVEs: CVE-2014-4038 CVE-2014-4039 Upstream summary: ppc64-diag 2.6.1 allows local users to overwrite arbitrary files via a symlink attack related to (1) rtas_errd/diag_support.c and /tmp/get_dt_files, (2) scripts/ppc64_diag_mkrsrc […]

Read more
SLES 16 — podman — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — podman — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 9 January 2026 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory RHSA-2025:15900 (see also SUSE bugzilla) Related CVEs: CVE-2025-9566 CVE-2019-10152 CVE-2021-20206 CVE-2022-1227 CVE-2022-21698 CVE-2024-11218 CVE-2024-1753 CVE-2024-3727  +12 more Upstream summary: There's a vulnerability in podman where an attacker may use the kube play […]

Read more
SLES 16 — bpftrace — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — bpftrace — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 8 January 2026 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory RHSA-2024:8830 (see also SUSE bugzilla) Related CVEs: CVE-2024-2313 Upstream summary: If kernel headers need to be extracted, bpftrace will attempt to load them from a temporary directory. An unprivileged attacker could use […]

Read more
CHAT