SUSE Security Updates Address Multiple Vulnerabilities in Linux Packages

SUSE Security Updates Address Multiple Vulnerabilities in Linux Packages

First seen 4 Sep 2026, 08:45 UTC Linuxsecurity 45.9

Article Content

Browse articles
ThreatCluster

SUSE has released security updates addressing three vulnerabilities in its Linux packages. The vulnerabilities include CVE-2026-63729, a heap use-after-free issue in texlive that could lead to application crashes or arbitrary code execution, published on 2026-07-21. CVE-2026-41254, an information disclosure or denial of service vulnerability in lcms2 due to an integer overflow, was published on 2026-04-18. Lastly, CVE-2026-78322, a stack buffer overflow in file-roller affecting 7z and RAR handlers, was published on 2026-08-25. The updates are applicable to SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security. Administrators are urged to apply the patches using recommended installation methods. The vulnerabilities have varying CVSS scores, indicating different levels of severity and impact. Current status shows that all vulnerabilities have patches available.

Key Points: • SUSE patched three vulnerabilities in texlive, lcms2, and file-roller. • CVE-2026-63729 can lead to arbitrary code execution if exploited. • Patches are available for all affected SUSE Linux Enterprise Server versions.

Ask AI about this cluster

Timeline

2026-04-18
CVE-2026-41254 published
Integer overflow vulnerability in lcms2 could lead to information disclosure or denial of service.
Linuxsecurity
2026-07-21
CVE-2026-63729 published
Heap use-after-free vulnerability in texlive can cause application crashes or arbitrary code execution.
Linuxsecurity
2026-08-25
CVE-2026-78322 published
Stack buffer overflow in file-roller affects 7z and RAR handlers, leading to potential exploitation.
Linuxsecurity
2026-09-02
SUSE releases patches for vulnerabilities
Patches for CVE-2026-63729, CVE-2026-41254, and CVE-2026-78322 are released for affected systems.
Linuxsecurity
2026-09-03
SUSE updates on vulnerabilities
SUSE confirms the availability of updates addressing the identified vulnerabilities in texlive, lcms2, and file-roller.
Linuxsecurity