Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'suse-product-security-team'

View all threats tagged with 'suse-product-security-team'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: suse-product-security-team

Threats Tagged 'suse-product-security-team'

Click on any threat for detailed analysis and mitigation recommendations

Security update for csync2CVE-2026-41051
0

A security update for csync2 addresses CVE-2026-41051, which involves the use of insecure temporary directories when the software is compiled with C99 or later standards. This vulnerability affects specific SUSE versions of csync2 on aarch64 and i586 architectures. The issue could potentially lead to security risks related to temporary file handling. The severity is assessed as medium. No known exploits are reported in the wild. A patch or update has been issued by the SUSE Product Security Team to fix this vulnerability.

Join the discussion
Security update for postgresql14CVE-2026-6472
0

A security update for PostgreSQL 14 (version 14. 23) addresses multiple vulnerabilities including privilege enforcement, integer overflows, malicious time zone name handling, path traversal, unsafe function usage, timing attacks in authentication, unbounded recursion, and SQL injection with buffer overruns. These issues affect SUSE distributions of PostgreSQL 14 and are fixed in this update. No known exploits in the wild have been reported. The update also includes non-security fixes related to system compatibility and tooling.

Join the discussion
Security update for xzCVE-2026-34743
0

A high severity buffer overflow vulnerability (CVE-2026-34743) exists in the lzma_index_append() function of the xz compression utility as used in SUSE products. This issue is addressed by a security update from the SUSE Product Security Team. The vulnerability affects specific SUSE versions and packages including liblzma5 and xz on aarch64 architectures. No known exploits are reported in the wild at this time. Patch availability is implied by the security update advisory, though explicit patch links are not provided in the input data.

Join the discussion
Security update for perl-Net-CIDR-LiteCVE-2026-40198
0

Multiple vulnerabilities in perl-Net-CIDR-Lite can lead to IP ACL bypass due to improper validation of IP address formats and CIDR mask values. These include issues with trailing newlines or non-ASCII digits, extraneous leading zeros in CIDR masks, missing validation of IPv6 group counts, and mishandling of IPv4 mapped IPv6 addresses. The vulnerabilities affect SUSE Linux Enterprise Module for Development Tools 15 SP7 and related versions. No known exploits are reported in the wild. A security update addressing these issues has been released by the SUSE Product Security Team.

Join the discussion
Security update for openexrCVE-2026-41142
0

An integer overflow vulnerability (CVE-2026-41142) exists in the ImageChannel resize function of the openexr library, which can lead to a heap out-of-bounds write via the OpenEXRUtil public API. This issue affects specific SUSE package versions of openexr on the aarch64 architecture. The vulnerability is classified as high severity. No known exploits are reported in the wild at this time. A security update has been issued by the SUSE Product Security Team to address this vulnerability.

Join the discussion
Security update for gnutlsCVE-2026-33845
0

A security update for the gnutls library addresses multiple vulnerabilities affecting various components such as x509 name constraints, PKCS#7 unpadding, DTLS reassembly, and PKCS#11 token handling. These issues include potential overreading, use-after-free, information leakage, and improper validation of certificate constraints. The update is provided by the SUSE Product Security Team for affected SUSE versions and related packages. No known exploits are reported in the wild at this time.

Join the discussion
Security update for python-urllib3CVE-2026-44431
0

A security update for python-urllib3 addresses CVE-2026-44431, which involves sensitive information disclosure caused by sensitive headers being forwarded across origins during proxied low-level redirects. This vulnerability affects certain SUSE Linux Enterprise versions and python3-urllib3 package versions. The issue could lead to unintended exposure of sensitive headers when redirects occur through a proxy. The severity is rated as high by the vendor. No CVSS score is provided for this vulnerability.

Join the discussion

Showing 1 to 7 of 7 results

Filters:Tag: suse-product-security-team
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses