openSUSE google-osconfig-agent Vulnerabilities Addressed in July 2026 Updates

openSUSE google-osconfig-agent Vulnerabilities Addressed in July 2026 Updates

First seen 25 Jul 2026, 21:39 UTC Linuxsecurity 97% similarity 57.1

Article Content

Browse articles
ThreatCluster

Two moderate vulnerabilities have been identified in the google-osconfig-agent for openSUSE Tumbleweed. The first, CVE-2026-11349, addresses a security threat that could allow privilege escalation. The second, CVE-2026-11331, pertains to a denial-of-service (DoS) vulnerability. Both vulnerabilities were fixed in the google-osconfig-agent packages released on July 8, 2026. Users of openSUSE Tumbleweed are advised to update to the latest versions to mitigate risks. The vulnerabilities affect the google-osconfig-agent package specifically. No active exploitation has been reported for either vulnerability. The updates are available on the GA media of openSUSE Tumbleweed.

Key Points: • Two moderate vulnerabilities (CVE-2026-11349 and CVE-2026-11331) fixed in google-osconfig-agent. • CVE-2026-11349 involves privilege escalation while CVE-2026-11331 is a denial-of-service issue. • Users are urged to update to the latest google-osconfig-agent package to mitigate risks.

ThreatCluster AI

Timeline

2026-07-08
Updates released for google-osconfig-agent
openSUSE released google-osconfig-agent packages addressing CVE-2026-11349 and CVE-2026-11331.
Linuxsecurity
2026-07-23
Second vulnerability disclosed
Linuxsecurity published details on CVE-2026-11331, a DoS vulnerability in google-osconfig-agent.
Linuxsecurity
2026-07-25
Security advisories published
Linuxsecurity reported on the vulnerabilities in google-osconfig-agent, advising users to update.
Linuxsecurity

Community

Browse all →