SUSE Releases Security Updates for Helm and BIND Addressing Multiple Vulnerabilities
Article Content
- •SUSE released critical updates for Helm and BIND addressing multiple vulnerabilities.
- •The Helm update addresses 16 CVEs, with CVE-2026-35204 rated 8.4 (high severity).
- •The BIND update fixes three vulnerabilities, including CVE-2026-19666 and CVE-2026-19667, both rated 8.7.
SUSE has issued security updates for Helm and BIND, addressing several vulnerabilities. The Helm update (SUSE-SU-2026:23984-1) released on September 30, 2026, covers 16 CVEs, including CVE-2026-35204, which has a CVSS score of 8.4, indicating a high severity. The BIND update (SUSE-SU-2026:4597-1), released on October 8, 2026, resolves three vulnerabilities, including CVE-2026-19666 and CVE-2026-19667, both rated 8.7. Affected systems include various versions of SUSE Linux Enterprise Micro. Users are urged to apply the updates promptly to mitigate potential exploitation risks. The updates are available through standard SUSE installation methods like YaST and zypper.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track CVE-2026-19666 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What vulnerabilities are addressed in the Helm update?
How can I apply the BIND update?
Are these vulnerabilities actively exploited?
Continue Reading
Multiple CVEs Discovered in BIND 9 Affecting DNS Resolvers Three critical vulnerabilities (CVE-2026-76163, CVE-2026-80274, CVE-2026-19666) were published on September 16, 2026, affecting BIND 9 versions 9.11.0 through 9.21.25. These vulnerabilities can lead to unexpected program exits and denial-of-service conditions for DNS resolvers. CVE-2026-76163 allows attackers to…
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…