shield Security update for ovmf
SUSE-SLE-Module-Packagehub-Subpackages-15-SP7-2026-1413


This update for ovmf fixes the following issue: - CVE-2025-59438: mbedtls: padding oracle attack possible through timing of cipher error reporting (bsc#1252441).

  • Release Date
    Apr 16 2026
  • References
    Bugzilla: 1252441
    CVEs: CVE-2025-59438
  • Type
    security
  • Severity
    moderate

cloud_download Downloads

SUSE Package Hub 15.7 aarch64
  • Packages
    ovmf
    Open Virtual Machine Firmware
    202408-150700.3.15.1 lock src
    qemu-ovmf-x86_64
    Open Virtual Machine Firmware - QEMU rom images (x86_64)
    202408-150700.3.15.1 lock rpm
    qemu-uefi-aarch32
    UEFI QEMU rom image (AArch32)
    202408-150700.3.15.1 lock rpm
    qemu-uefi-aarch64
    UEFI QEMU rom image (AArch64)
    202408-150700.3.15.1 lock rpm
SUSE Package Hub 15.7 x86_64
  • Packages
    ovmf
    Open Virtual Machine Firmware
    202408-150700.3.15.1 lock src
    qemu-ovmf-x86_64-debug
    Open Virtual Machine Firmware - debug symbols (x86_64)
    202408-150700.3.15.1 lock rpm
    qemu-uefi-aarch32
    UEFI QEMU rom image (AArch32)
    202408-150700.3.15.1 lock rpm
    qemu-uefi-aarch64
    UEFI QEMU rom image (AArch64)
    202408-150700.3.15.1 lock rpm