An update that solves two vulnerabilities can now be installed.
* bsc#1242617 * bsc#1243862 Cross-References: * CVE-2024-12224
* bsc#1246602 * bsc#1246604 * bsc#1247938 * bsc#1247939
* bsc#1246602 * bsc#1246604 * bsc#1247938 * bsc#1247939
* bsc#1249391 Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5
* jsc#PED-11136 Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6
An update that contains one feature can now be installed.
* bsc#1248252 Cross-References: * CVE-2025-53192
An update that solves one vulnerability can now be installed.
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
An update that solves 2 vulnerabilities can now be installed.
An update that solves 2 vulnerabilities can now be installed.
An update that solves 11 vulnerabilities can now be installed.
Multiple vulnerabilities were found in PAM namespace module used to configure private namespaces for user sessions. CVE-2024-22365
https://security-tracker.debian.org/tracker/DSA-6007-1
Notorious APT group Turla collaborates with Gamaredon, both FSB-associated groups, to compromise high‑profile targets in Ukraine
Fix Out of bounds read for cookie path (CVE-2025-9086) Fix predictable WebSocket mask (CVE-2025-10148)
New upstream release fixing the following security weaknesses (CVE-2025-8114, CVE-2025-8277)
* bsc#1247589 Cross-References: * CVE-2025-50422
* bsc#1248461 Cross-References: * CVE-2025-9301
Long known to be a sweet spot for cybercriminals, small businesses are more likely to be victimized by ransomware than large enterprises
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, sandbox escape, information disclosure or bypass of the same-origin policy.
The system could be made to crash or run programs as an administrator.
The system could be made to crash or run programs as an administrator.
The system could be made to crash or run programs as an administrator.
The system could be made to crash or run programs as an administrator.
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. Google is aware that an exploit for CVE-2025-10585 exists in the wild.
https://security-tracker.debian.org/tracker/DSA-6006-1
https://security-tracker.debian.org/tracker/DSA-6005-1
https://security-tracker.debian.org/tracker/DSA-6004-1
* bsc#1233421 Cross-References: * CVE-2024-52615
* bsc#1246197 * bsc#1249191 * bsc#1249348 * bsc#1249367 * jsc#PED-13055
* bsc#1246197 * bsc#1249191 * bsc#1249348 * bsc#1249367 * jsc#PED-13055
https://security-tracker.debian.org/tracker/DSA-6003-1
HybridPetya is the fourth publicly known real or proof-of-concept bootkit with UEFI Secure Boot bypass functionality
* bsc#1236851 * bsc#1248070 Cross-References: * CVE-2025-23419
* bsc#1235673 * bsc#1235674 Cross-References: * CVE-2024-57822
* bsc#1243581 * bsc#1248410 * bsc#1248687 Cross-References:
