critical
Security update for lasso
SUSE-SLES-16.0-52
This update for lasso fixes the following issues: - CVE-2025-46404: specially crafted SAML response can lead to a denial of service (bsc#1253092). - CVE-2025-46705: specially crafted SAML assertion response can lead to a denial of service (bsc#1253093). - CVE-2025-47151: type confusion vulnerability exists in the lasso_node_impl_init_from_xml functionality can lead to an arbitrary code execution (bsc#1253095).
-
Release DateNov 25 2025
-
References
-
Typesecurity
-
Severitycritical
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Enterprise Server for SAP applications 16.0 ppc64le
-
Packagesliblasso-devel
Lasso development headers and documentationliblasso32.8.2-160000.3.1 lock rpm
Lasso runtime libraries2.8.2-160000.3.1 lock rpm
SUSE Linux Enterprise Server for SAP applications 16.0 x86_64
-
Packagesliblasso-devel
Lasso development headers and documentationliblasso32.8.2-160000.3.1 lock rpm
Lasso runtime libraries2.8.2-160000.3.1 lock rpm
SUSE Linux Enterprise Server 16.0 x86_64
-
Packagesliblasso-devel
Lasso development headers and documentationliblasso32.8.2-160000.3.1 lock rpm
Lasso runtime libraries2.8.2-160000.3.1 lock rpm
SUSE Linux Enterprise Server 16.0 s390x
-
Packagesliblasso-devel
Lasso development headers and documentationliblasso32.8.2-160000.3.1 lock rpm
Lasso runtime libraries2.8.2-160000.3.1 lock rpm
SUSE Linux Enterprise Server 16.0 ppc64le
-
Packagesliblasso-devel
Lasso development headers and documentationliblasso32.8.2-160000.3.1 lock rpm
Lasso runtime libraries2.8.2-160000.3.1 lock rpm
SUSE Linux Enterprise Server 16.0 aarch64
-
Packagesliblasso-devel
Lasso development headers and documentationliblasso32.8.2-160000.3.1 lock rpm
Lasso runtime libraries2.8.2-160000.3.1 lock rpm