gpp_maybe
Security update for ovmf
SUSE-SLE-Micro-6.1-508
This update for ovmf fixes the following issues: - CVE-2026-25833: mbedtls: buffer overflow in the `x509_inet_pton_ipv6()` function (bsc#1261476). - CVE-2026-25834: mbedtls: client accepts signature algorithm chosen by server even if not advertised in client hello (bsc#1261477). - CVE-2026-25835: mbedtls: no pseudo-random number generator reseed when cloning an application (bsc#1261478). - CVE-2026-34874: mbedtls: NULL pointer dereference in distinguished name parsing (bsc#1261469).
-
Release DateApr 24 2026
-
ReferencesBugzilla: 1261469, 1261476, 1261477, 1261478
CVEs: CVE-2026-25833, CVE-2026-25834, CVE-2026-25835, CVE-2026-34874 -
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Micro 6.1 aarch64
-
Packages
SUSE Linux Micro 6.1 x86_64
-
Packagesqemu-ovmf-x86_64
Open Virtual Machine Firmware - QEMU rom images (x86_64)202402-slfo.1.1_3.1 lock rpm