SLES

SLES 16 — ansible — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — ansible — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 27 November 2025 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory openSUSE-SU-2024:14536-1 Related CVEs: CVE-2014-4966 CVE-2014-4967 CVE-2016-9587 CVE-2017-7466 CVE-2018-10875 CVE-2018-16837 CVE-2019-14904 CVE-2019-14905  +12 more Upstream summary: Ansible before 1.6.7 does not prevent inventory data with "{{" and "lookup" substrings, and does not prevent […]

Read more
SLES 16 — python313-M2Crypto — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — python313-M2Crypto — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 November 2025 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory SUSE-FU-2024:1448-1 (see also SUSE bugzilla) Related CVEs: CVE-2020-25657 Upstream summary: A flaw was found in all released versions of m2crypto, where they are vulnerable to Bleichenbacher timing attacks in the RSA decryption […]

Read more
SLES 16 — tack — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — tack — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 25 November 2025 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory RHSA-2025:12876 (see also SUSE bugzilla) Related CVEs: CVE-2022-29458 Upstream summary: ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library. Table of […]

Read more
SLES 16 — python313-eventlet — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — python313-eventlet — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 25 November 2025 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory RHSA-2024:9423 (see also SUSE bugzilla) Related CVEs: CVE-2023-29483 Upstream summary: eventlet before 0.35.2, as used in dnspython before 2.6.0, allows remote attackers to interfere with DNS name resolution by quickly sending an […]

Read more
SLES 16 — libtcmu2 — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — libtcmu2 — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 November 2025 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory SUSE-IU-2021:1-1 (see also SUSE bugzilla) Related CVEs: CVE-2020-28374 Upstream summary: In drivers/target/target_core_xcopy.c in the Linux kernel before 5.10.7, insufficient identifier checking in the LIO SCSI target code can be used by remote […]

Read more
SLES 16 — libiniparser4 — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — libiniparser4 — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 25 November 2025 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2023:2692-1 (see also SUSE bugzilla) Related CVEs: CVE-2023-33461 CVE-2025-0633 Upstream summary: iniparser v4.1 is vulnerable to NULL Pointer Dereference in function iniparser_getlongint which misses check NULL for function iniparser_getstring's return. Table of […]

Read more
SLES 16 — newt — vulnerability — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — newt — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 24 November 2025 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory SUSE-SR:2009:017 (see also SUSE bugzilla) Related CVEs: CVE-2009-2905 Upstream summary: Heap-based buffer overflow in textbox.c in newt 0.51.5, 0.51.6, and 0.52.2 allows local users to cause a denial of service (application crash) […]

Read more
SLES 16 — libcares2 — multiple vulnerabilities (12 CVEs) — patch and remediation guide — diagnosis and fix on SLES 16

SLES 16 — libcares2 — multiple vulnerabilities (12 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 24 November 2025 Affected versions: SLES 16 📖 ~4 min read  •  Source: SUSE advisory SUSE-CU-2020:778-1 (see also SUSE bugzilla) Related CVEs: CVE-2020-8277 CVE-2021-3672 CVE-2023-32067 CVE-2025-62408 CVE-2016-5180 CVE-2017-1000381 CVE-2022-4904 CVE-2023-31124  +4 more Upstream summary: A Node.js application that allows an attacker to trigger a DNS request for […]

Read more
SLES 15 — slurm — multiple vulnerabilities (11 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — slurm — multiple vulnerabilities (11 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 23 November 2025 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2025:01751-1 (see also SUSE bugzilla) Related CVEs: CVE-2025-43904 CVE-2023-49936 CVE-2023-49937 CVE-2023-41914 CVE-2021-31215 CVE-2020-27745 CVE-2023-49933 CVE-2023-49935  +3 more Upstream summary: In SchedMD Slurm before 24.11.5, 24.05.8, and 23.11.11, the accounting system can allow […]

Read more
SLES 15 — libbd_fs2 — vulnerability — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — libbd_fs2 — vulnerability — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 23 November 2025 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory RHSA-2025:10796 (see also SUSE bugzilla) Related CVEs: CVE-2025-6019 Upstream summary: A Local Privilege Escalation (LPE) vulnerability was found in libblockdev. Generally, the "allow_active" setting in Polkit permits a physically present user to […]

Read more
CHAT