gpp_maybe
Security update for openssl-3-livepatches
SUSE-SLE-Module-Live-Patching-15-SP7-2026-4040
This update for openssl-3-livepatches fixes the following issues: - CVE-2026-14457: RPK server signature algorithm selection can dereference a missing certificate (bsc#1275145, bsc#1274792). - CVE-2026-63072: heap buffer overflow in CMS key unwrapping (bsc#1275133, bsc#1274788). - CVE-2026-63076: invalid pointer dereference in CMP server via crafted `protectionAlg` (bsc#1275143, bsc#1274790).
-
Release DateSep 7 2026
-
ReferencesBugzilla: 1274788, 1274790, 1274792, 1275133, 1275143, 1275145
CVEs: CVE-2026-14457, CVE-2026-63072, CVE-2026-63076 -
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Enterprise Live Patching 15.7 ppc64le
-
Packages
SUSE Linux Enterprise Live Patching 15.7 x86_64
-
Packages