SUSE Package Hub Updates

Update ID Severity Type Issued Description Packages
openSUSE-2026-222 low recommended 2026-06-29 - Chromium 149.0.7827.200 (boo#129061): * CVE-2026-13281: Integer overflow in Mojo * CVE-2026-13282: Use after free in Payments * CVE-2026-13283: Use after free in AdFilter
openSUSE-2026-221 moderate security 2026-06-29 This update for xtrabackup fixes the following issues: - CVE-2025-5918: embedded libarchive: Reading past EOF may be triggered for piped file streams (boo#1244285)
  • xtrabackup-2.4.26-bp157.2.6.1
SUSE-PackageHub-16.0-1098 important security 2026-06-28 This update for giflib fixes the following issue - CVE-2026-26740: heap out-of-bounds read when processing a specially crafted GIF file containing a GCE block with a truncated extension byte count ...
  • giflib-5.2.2-160000.4.1
SUSE-PackageHub-16.0-1097 moderate security 2026-06-28 This update for alsa fixes the following issue - CVE-2026-56109: double-free vulnerability in parse_def() in src/conf.c that allows attackers to corrupt memory (bsc#1268853).
  • alsa-1.2.14-160000.3.1
openSUSE-2026-220 moderate security 2026-06-28 This update for openbabel fixes the following issues: - CVE-2026-2704: bounds-check the transform3d DescribeAsString() matrix scan to fix an out-of-bounds read on crafted CIF input (boo#1258501)
  • openbabel-2.4.1-bp157.2.3.1
SUSE-PackageHub-16.0-packagehub-356 moderate security 2026-06-26 This update for python-pdm fixes the following issues: Changes in python-pdm: - CVE-2026-47763: Do not follow symlinks when writing config files (bsc#1268384) - CVE-2026-47763: Do not write to paths ...
  • python-pdm-2.22.3-bp160.2.1
SUSE-PackageHub-16.0-1093 important security 2026-06-26 This update for ImageMagick fixes the following issues Security issues: - CVE-2026-42050: Stack buffer overflow in XTileImage (bsc#1265048). - CVE-2026-42326: Information disclosure via malicious IP ...
  • ImageMagick-7.1.2.0-160000.10.1
SUSE-PackageHub-16.0-1092 important security 2026-06-26 This update for tar fixes the following issues - CVE-2026-5704: crafted archives can be used to to hide file injection (bsc#1261900). - Fix --dereference/-h not working properly after CVE-2025-45582 ...
  • tar-1.35-160000.4.1
SUSE-PackageHub-16.0-1091 important security 2026-06-26 This update for google-guest-agent fixes the following issues - CVE-2026-33186: google.golang.org/grpc: authorization bypass due to improper validation of the HTTP/2 :path pseudo- header (bsc#12602 ...
  • google-guest-agent-20260529.00-160000.1.1
SUSE-PackageHub-16.0-1087 important security 2026-06-26 This update for the SUSE Linux Enterprise Kernel 6.12.0-160000.31.1 fixes various security issues The following security issues were fixed: - CVE-2026-31402: nfsd: fix heap overflow in NFSv4.0 LOCK ...
  • kernel-livepatch-SLE16_Update_10-3-160000.1.1