openSUSE Security Updates Address Multiple Vulnerabilities

openSUSE Security Updates Address Multiple Vulnerabilities

4h ago Linuxsecurity 73% similarity 57.9
Share:

Article Content

Browse articles
ThreatCluster

On June 12, 2026, openSUSE released security advisories for three vulnerabilities affecting various packages. The vulnerabilities include an important XSS SQL injection in RoundcubeMail (CVE-2026-0183), a serious Denial of Service in Assimp (CVE-2025-3548), and an update for Python's simpleeval package. The RoundcubeMail vulnerability could allow attackers to execute scripts in the context of a user's session. The Assimp vulnerability, published on April 14, 2025, could lead to service outages. Users are urged to apply the patches using the recommended installation methods. The updates affect multiple versions of openSUSE, including Backports for SLE-15-SP6 and SP7. The advisories emphasize the importance of timely patching to mitigate potential risks.

Key Points: • openSUSE issued critical security updates for RoundcubeMail, Assimp, and Python. • CVE-2026-0183 is an important XSS SQL injection vulnerability in RoundcubeMail. • CVE-2025-3548 poses a serious Denial of Service risk in Assimp.

ThreatCluster AI

Timeline

2025-04-14
CVE-2025-3548 published
CVE-2025-3548 was published, detailing a serious Denial of Service vulnerability in Assimp.
Linuxsecurity
2026-06-12
openSUSE security updates released
openSUSE released security updates addressing vulnerabilities in RoundcubeMail, Assimp, and Python.
Linuxsecurity
2026-06-12
Patch installation methods provided
Users are advised to use YaST online_update or 'zypper patch' for installing the updates.
Linuxsecurity

Community

Browse all →