- NetworkManager
-
- Add NetworkManager-CVE-2025-9615.patch: avoid that non-admin user
using other users' certificates
(bsc#1257359, CVE-2025-9615, glfd#NetworkManager/NetworkManager!2324).
- aaa_base
-
- Update to version 84.87+git20260610.3b5a868c:
* Add missing "=" in alljava.csh (boo#1267423)
- Update to version 84.87+git20260602.e901e17e:
* Fix a typo + follow symlinks in alljava
- Update to version 84.87+git20260529.c4391e5:
* $status -> $?
* Simplifying the sh part too
* Addressing review comments and simplifying a bit
* Handle javas managed by libalternatives and by update-alternatives alike
- apache2:prefork
-
* Fix bsc#1263952 / CVE-2026-33857.
* Fix bsc#1263954 / CVE-2026-33007.
* Fix bsc#1264163 / CVE-2026-28780.
* Fix bsc#1264150 / CVE-2026-29168.
* Add patch files:
- CVE-2026-33857.patch
- CVE-2026-33007.patch
- CVE-2026-28780.patch
- CVE-2026-29168.patch
* Fix bsc#1263957 / CVE-2026-23918.
* Fix bsc#1263953 / CVE-2026-33523.
* Fix bsc#1263955 / CVE-2026-33006.
* Fix bsc#1263956 / CVE-2026-29169.
* Fix bsc#1263935 / CVE-2026-24072.
* Fix bsc#1263950 / CVE-2026-34059.
* Fix bsc#1263951 / CVE-2026-34032.
* Add patch files:
- CVE-2026-23918.patch
- CVE-2026-33523.patch
- CVE-2026-33006.patch
- CVE-2026-29169.patch
- CVE-2026-24072.patch
- CVE-2026-34059.patch
- CVE-2026-34032.patch
- apache2
-
* Fix bsc#1263952 / CVE-2026-33857.
* Fix bsc#1263954 / CVE-2026-33007.
* Fix bsc#1264163 / CVE-2026-28780.
* Fix bsc#1264150 / CVE-2026-29168.
* Add patch files:
- CVE-2026-33857.patch
- CVE-2026-33007.patch
- CVE-2026-28780.patch
- CVE-2026-29168.patch
* Fix bsc#1263957 / CVE-2026-23918.
* Fix bsc#1263953 / CVE-2026-33523.
* Fix bsc#1263955 / CVE-2026-33006.
* Fix bsc#1263956 / CVE-2026-29169.
* Fix bsc#1263935 / CVE-2026-24072.
* Fix bsc#1263950 / CVE-2026-34059.
* Fix bsc#1263951 / CVE-2026-34032.
* Add patch files:
- CVE-2026-23918.patch
- CVE-2026-33523.patch
- CVE-2026-33006.patch
- CVE-2026-29169.patch
- CVE-2026-24072.patch
- CVE-2026-34059.patch
- CVE-2026-34032.patch
- aws-cli-container
-
n/a
- aws-sdk-container
-
n/a
- binutils
-
- Migrate from update-alternatives to libalternatives (jsc#PED-15667).
- Update %suse_version > 1600 checks (jsc#PED-15792).
- Split new libsframe2 package from binutils (shared lib policy).
- Make (currently inactive) gold subpackage no require binutils
in a specific version.
- Add binutils-workaround-premature-libsframe-uninst.diff for
this to temporarily avoid 99-check-remove-rpms getting in the way.
- Add binutils-fix-c23.diff to fix a compile error with new glibc.
- curl
-
- Call http_size() first to prioritize Transfer-Encoding: chunked over a zero
Content-Length empty body check (bsc#1264971)
* Add patch: curl-http-prefer-chunked-encoding-over-Content-Length-0.patch
- Security fixes:
* CVE-2026-4873: connection reuse ignores TLS requirement (bsc#1262631)
* CVE-2026-5545: wrong reuse of HTTP Negotiate connection (bsc#1262632)
* CVE-2026-6253: proxy credentials leak over redirect-to proxy (bsc#1262635)
* CVE-2026-6276: stale custom cookie host causes cookie leak (bsc#1262636)
* CVE-2026-6429: netrc credential leak with reused proxy connection (bsc#1262638)
* Add patches:
- curl-CVE-2026-4873.patch
- curl-CVE-2026-5545.patch
- curl-CVE-2026-6253.patch
- curl-CVE-2026-6276.patch
- curl-CVE-2026-6429.patch
- dracut
-
- Update to version 059+suse.722.gdd9d67ff5:
* fix(network-legacy): sanitize DHCP values in dhclient-script.sh (bsc#1268322, CVE-2026-6893)
* fix(network-legacy): add input validation to RFC 3442 route parser
- Update to version 059+suse.720.g64cb9fbf:
Always include a defined set of kernel modules for aarch64 (bsc#1257955):
* fix(kernel-modules): always include arm/aarch64 specific modules in sloppy mode
* fix(kernel-modules): make sure block modules are always included
Other:
* test(BTRFSRAID): simplify and rework to avoid intermittent errors (bsc#1258960)
- glib-networking
-
- Add CVE-2026-10028.patch:
tls: detect cycles when setting issuer property
(CVE-2026-10028, bsc#1267979, glgo#GNOME/glib-networking!279)
- glib2
-
- Install the /usr/share/applications/gnome-mimeapps.list symlink
from the package instead of creating it from systemd-tmpfiles
since /usr is mounted read-only in immutble systems. This forces
to also install an empty file as the symlink target.
- Use systemd-tmpfiles to create the default mimeapps lists instead
of writing to /var in %post to fix immutable systems
(jsc#PED-14839)
- hwdata
-
- update to 0.406:
* Update pci and vendor ids
- update to 0.405:
* Update pci and vendor ids
- Update to version 0.397:
* Update pci and vendor ids
- Update to version 0.395:
* Update pci and vendor ids
- iproute2
-
- add DPLL support (bsc#1255752 jsc#PED-14083)
* patches/dpll-Add-dpll-command.patch
* patches/dpll-Fix-missing-notifications-in-monitor-mode.patch
* patches/dpll-Send-object-per-event-in-JSON-monitor-mode.patch
* patches/dpll-add-client-side-filtering-for-device-show.patch
* patches/dpll-add-client-side-filtering-for-pin-show.patch
* patches/dpll-add-direction-and-state-filtering-for-pin-show.patch
* patches/dpll-add-mode-setting-support.patch
* patches/dpll-add-pin-filtering-by-parent-device-and-parent-p.patch
* patches/dpll-add-support-for-fractional-frequency-offset-in-.patch
* patches/dpll-fix-pin-id-get-type-filter-parsing.patch
* patches/lib-Add-str_to_bool-helper-function.patch
* patches/lib-Move-mnlg-to-lib-for-shared-use.patch
* patches/sync-UAPI-header-copies-with-SL-16.0.patch
- refresh
* patches/ss-escape-characters-in-command-name.patch
- kernel-source:kernel-default
-
- Update
patches.suse/KVM-arm64-Reassign-nested_mmus-array-behind-mmu_lock.patch
(git-fixes CVE-2026-46317 bsc#1268018).
- Update
patches.suse/KVM-arm64-vgic-its-Drop-the-translation-cache-refere.patch
(git-fixes CVE-2026-46316 bsc#1267875).
- commit c70d539
- config: remove DEBUG_FS_DISALLOW_MOUNT
DEBUG_FS_DISALLOW_MOUNT was removed by the following SUSE commit:
5697d6916a00 debugfs: Remove broken no-mount mode (bsc#1265186)
Clean up config files by deleting CONFIG_DEBUG_FS_DISALLOW_MOUNT
- commit 3cc7250
- KVM: arm64: Take the SRCU lock for page table walks in fault
injection and AT emulation (git-fixes).
- commit b3cd8ff
- KVM: arm64: Reassign nested_mmus array behind mmu_lock (git-fixes).
- commit e33b225
- KVM: arm64: vgic-its: Drop the translation cache reference
only for the erased entry (git-fixes).
- commit 02c6192
- ALSA: aloop: Fix peer runtime UAF during format-change stop
(CVE-2026-46090 bsc#1267531).
- ALSA: aloop: Use guard() for spin locks (CVE-2026-46090
bsc#1267531).
- commit fedd5b0
- perf/arm-cmn: Reject unsupported hardware configurations (bsc#1264415 CVE-2026-43150)
- commit 100fc92
- drm/amd/display: Bound VBIOS record-chain walk loops
(git-fixes).
- commit ec5fd83
- Input: atkbd - skip deactivate for HONOR BCC-N's internal
keyboard (git-fixes).
- ALSA: seq: dummy: fix UMP event stack overread (git-fixes).
- ALSA: PCM: Fix wait queue list corruption in snd_pcm_drain()
on linked streams (git-fixes).
- drm/v3d: Fix vaddr leak when indirect CSD has zeroed workgroups
(git-fixes).
- drm/imx: Fix three kernel-doc warnings in dcss-scaler.c
(git-fixes).
- accel/ivpu: Add buffer overflow check in MS get_info_ioctl
(git-fixes).
- accel/ivpu: Add bounds checks for firmware log indices
(git-fixes).
- drm/xe: Clear pending_disable before signaling suspend fence
(git-fixes).
- drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore
on GFX11 (git-fixes).
- drm/amdkfd: fix NULL dereference in get_queue_ids() (git-fixes).
- drm/amd/display: Clamp HDMI HDCP2 rx_id_list read to buffer size
(git-fixes).
- drm/amd/display: Reject gpio_bitshift >= 32 in
bios_parser_get_gpio_pin_info() (git-fixes).
- drm/amd/display: Use krealloc_array() in dal_vector_reserve()
(git-fixes).
- drm/amd/display: Fix NULL deref and buffer over-read in SDP
debugfs (git-fixes).
- commit 83128fd
- netfilter: ctnetlink: zero expect NAT fields when CTA_EXPECT_NAT absent (CVE-2026-43026 bsc#1263932).
- commit 8e1a72c
- xfs: don't irele after failing to iget in xfs_attri_recover_work
(CVE-2026-43063 bsc#1264196).
- commit c357138
- xfs: stop reclaim before pushing AIL during unmount
(CVE-2026-31455 bsc#1262615).
- commit 1c66a53
- nfsd: Fix cred ref leak in nfsd_nl_listener_set_doit()
(CVE-2026-43394 bsc#1265081).
- commit c214b89
- btrfs: fix chunk map leak in btrfs_map_block() after btrfs_chunk_map_num_copies() (CVE-2026-43393 bsc#1264723).
- commit 07e9329
- Revert "arm64: zynqmp: Add an OP-TEE node to the device tree" (bsc#1264842 CVE-2025-71300)
- commit 3f93f34
- pmdomain: imx8mp-blk-ctrl: Keep the NOC_HDCP clock enabled (bsc#1263724 CVE-2026-31655)
- commit 5f829ce
- xfs: scrub: unlock dquot before early return in quota scrub
(CVE-2026-31556 bsc#1263062).
- commit 21140af
- selftests/bpf: Test access from RO map from xdp_store_bytes
(CVE-2026-45886 bsc#1266810).
- commit cefe3fc
- bpf: Fix bpf_xdp_store_bytes proto for read-only arg
(CVE-2026-45886 bsc#1266810).
- commit 432d546
- xfs: save ailp before dropping the AIL lock in push callbacks
(CVE-2026-31454 bsc#1262624).
- commit 8c595ea
- bpf: Fix regsafe() for pointers to packet (CVE-2026-43030
bsc#1264000).
- commit 18dc85e
- bpf: Fix tcx/netkit detach permissions when prog fd isn't given
(CVE-2026-45932 bsc#1266827).
- commit 8aff7da
- spi: fix resource leaks on device setup failure (bsc#1266696 CVE-2026-46083)
- commit bc027b4
- Bluetooth: MGMT: Fix backward compatibility with userspace
(git-fixes).
- Bluetooth: ISO: Fix not releasing hdev reference on
iso_conn_big_sync (git-fixes).
- Bluetooth: bnep: reject short frames before parsing (git-fixes).
- Bluetooth: hci_sync: reject oversized Broadcast Announcement
prepend (git-fixes).
- Bluetooth: RFCOMM: validate skb length in MCC handlers
(git-fixes).
- Bluetooth: MGMT: validate advertising TLV before type checks
(git-fixes).
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind()
(git-fixes).
- wifi: mac80211: limit injected antenna index in
ieee80211_parse_tx_radiotap (git-fixes).
- wifi: nl80211: reject oversized EMA RNR lists (git-fixes).
- mmc: sdhci: add signal voltage switch in sdhci_resume_host
(git-fixes).
- mmc: dw_mmc-rockchip: Add missing private data for very old
controllers (git-fixes).
- mmc: litex_mmc: Set mandatory idle clocks before CMD0
(git-fixes).
- mmc: litex_mmc: Use DIV_ROUND_UP for more accurate clock
calculation (git-fixes).
- mmc: renesas_sdhi: Add OF entry for RZ/G2H SoC (git-fixes).
- mmc: core: Fix host controller programming for fixed driver type
(git-fixes).
- commit e5e351d
- selftests/bpf: __not_msg() tag for test_loader framework
(CVE-2026-43009 bsc#1264014).
- commit 0877ac8
- btrfs: fix btrfs_ioctl_space_info() slot_count TOCTOU which
can lead to info-leak (bsc#1267652,CVE-2026-46159).
- commit df3cd12
- kabi: arm64: module: Update missing .init.text.ftrace_trampoline section message (bsc#1265579 bsc#1265170)
Message was supposed to give us a hint that these KMP's
will have issue when user try to ftrace them. But it turns out
to be just source confusion and worry.
- commit 4c4b0f7
- KVM: SVM: Flush the current TLB when transitioning from xAVIC =>
x2AVIC (git-fixes).
- commit 9d46ce6
- KVM: SVM: Provide helpers to set the error code (git-fixes).
- Refresh
patches.suse/KVM-SEV-Rename-kvm_ghcb_get_sw_exit_code-to-kvm_get_.patch.
- commit 119f538
- KVM: SVM: Convert plain error code numbers to defines
(git-fixes).
- Refresh
patches.suse/KVM-SEV-Rename-kvm_ghcb_get_sw_exit_code-to-kvm_get_.patch.
- commit 9b24d74
- KVM: SEV: Use READ_ONCE() when reading entries/indices from
PSC buffer (git-fixes).
- commit 49f92d6
- KVM: SEV: Check PSC request indices against the actual size
of the buffer (git-fixes).
- commit 2377b0b
- KVM: SEV: Don't explicitly pass PSC buffer to snp_begin_psc()
(git-fixes).
- commit d2e5128
- KVM: SEV: WARN if KVM attempts to setup scratch area with
min_len==0 (git-fixes).
- commit 21583d5
- KVM: SEV: Compute the correct max length of the in-GHCB scratch
area (git-fixes).
- commit 7b47a53
- KVM: SEV: Use the size of the PSC header as the minimum size
for PSC requests (git-fixes).
- commit a198651
- KVM: SEV: Ignore Port I/O requests of length '0' (git-fixes).
- commit 527f6a1
- KVM: SEV: Reject MMIO requests larger than 8 bytes with GHCB v2+
(git-fixes).
- commit debb8d0
- KVM: SEV: Ignore MMIO requests of length '0' (git-fixes).
- commit 94b31bc
- KVM: SEV: Require in-GHCB scratch area if GHCB v2+ is in use
(git-fixes).
- commit 757ab1d
- KVM: x86: Consolidate SEV-ES MMIO emulation into a single
public API (git-fixes).
- commit ab073d6
- KVM: x86: Dedup kvm_sev_es_mmio_{read,write}() (git-fixes).
- commit 1a3998f
- KVM: x86: Harden SEV-ES MMIO against on-stack use-after-free
(git-fixes).
- commit f79d28d
- KVM: x86: Move MMIO write tracing into vcpu_mmio_write()
(git-fixes).
- commit 7e820d3
- KVM: x86: Open code read vs. write userspace MMIO exits in
emulator_read_write() (git-fixes).
- commit 2f4a230
- KVM: x86: Use local MMIO fragment variable to clean up
emulator_read_write() (git-fixes).
- commit 03d5c57
- KVM: x86: Trace unsatisfied MMIO reads on a per-page basis
(git-fixes).
- commit d778225
- KVM: x86: Open code handling of completed MMIO reads in
emulator_read_write() (git-fixes).
- commit 8ec8a38
- gfs2: Fix use-after-free in iomap inline data write path
(CVE-2026-45984 bsc#1267214).
- commit 78b7449
- mctp: route: hold key->lock in mctp_flow_prepare_output()
(CVE-2026-43455 bsc#1264765).
- net: mctp: Ensure keys maintain only one ref to corresponding
dev (CVE-2026-43455 bsc#1264765).
- commit 43372c3
- io_uring/net: fix slab-out-of-bounds read in io_bundle_nbufs()
(CVE-2026-31774 bsc#1264040).
- commit c76e91c
- ima: return error early if file xattr cannot be changed (bsc#1261041).
- commit abe4d77
- RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event()
(CVE-2026-46181 bsc#1266826).
- bonding: alb: fix UAF in rlb_arp_recv during bond up/down
(CVE-2026-45970 bsc#1267205).
- commit 83cafaf
- x86: shadow stacks: proper error handling for mmap lock (bsc#1264484 CVE-2026-43109).
- commit eb1188f
- thermal: core: Fix thermal zone governor cleanup issues
(CVE-2026-46021 bsc#1267220).
- commit fc6c27a
- slip: reject VJ receive packets on instances with no rstate array (CVE-2026-45842 bsc#1266400)
- commit 38a2f5a
- drm/mediatek: dsi: Store driver data before invoking mipi_dsi_host_register (CVE-2026-31562 bsc#1263058)
- commit 32df08b
- media: mediatek: vcodec: fix use-after-free in encoder release path (CVE-2026-31584 bsc#1263180)
- commit b6ee0ee
- thermal: core: Fix thermal zone device registration error path (CVE-2026-43332 bsc#1265114)
- commit 071fb81
- rnbd-srv: Zero the rsp buffer before using it (CVE-2026-43184 bsc#1264622)
- commit 2328379
- xfrm_user: fix info leak in build_report() (CVE-2026-31671 bsc#1263115)
- commit 242dd53
- net: lan966x: fix page pool leak in error paths (CVE-2026-31645 bsc#1263794)
- commit 538760a
- batman-adv: avoid OGM aggregation when skb tailroom is insufficient (CVE-2026-31683 bsc#1263594)
- commit 11e7f44
- bareudp: fix NULL pointer dereference in bareudp_fill_metadata_dst() (CVE-2026-45846 bsc#1266394)
- commit ff7db37
- netconsole: avoid OOB reads, msg is not nul-terminated (CVE-2026-43197 bsc#1264609)
- commit 3a848f9
- net: ipv6: ndisc: fix ndisc_ra_useropt to initialize nduseropt_padX fields to zero to prevent an info-leak (CVE-2026-43040 bsc#1264091)
- commit 9299501
- debugfs: Fix default access mode config check (bsc#1265186).
- commit 64dc22e
- debugfs: Remove broken no-mount mode (bsc#1265186).
- commit 5697d69
- debugfs: Remove redundant access mode checks (bsc#1265186).
- commit 3bbda02
- Update
patches.suse/smb-client-reject-userspace-cifs-spnego-descriptions.patch
(bsc#1266238 CVE-2026-46243).
- commit 9550304
- ext4: fix bounds check in check_xattrs() to prevent
out-of-bounds access (bsc#1266927 CVE-2026-46094).
- commit 99aecd7
- writeback: Fix use after free in inode_switch_wbs_work_fn()
(bsc#1263883 CVE-2026-31703).
- commit 2118f65
- ext4: avoid allocate block from corrupted group in
ext4_mb_find_by_goal() (bsc#1264255 CVE-2026-43068).
- commit 84d369d
- mm: filemap: fix nr_pages calculation overflow in
filemap_map_pages() (bsc#1263579 CVE-2026-31648).
- commit fa1a630
- ext4: avoid infinite loops caused by residual data (bsc#1262622
CVE-2026-31448).
- commit b253df0
- ext4: fix iloc.bh leak in ext4_fc_replay_inode() error paths
(bsc#1264245 CVE-2026-43066).
- commit 94473f3
- ext4: always drain queued discard work in ext4_mb_release()
(bsc#1264243 CVE-2026-43065).
- commit 9392a17
- ext4: fix use-after-free in update_super_work when racing with
umount (bsc#1262619 CVE-2026-31446).
- commit 8d4620e
- ext4: fix e4b bitmap inconsistency reports (bsc#1266914
CVE-2026-45942).
- commit ed6da65
- arm64: tlb: Optimize ARM64_WORKAROUND_REPEAT_TLBI (git-fixes)
- commit 1d9af81
- arm64: tlb: Allow XZR argument to TLBI ops (git-fixes)
- commit d3c330f
- Bluetooth: serialize accept_q access (git-fixes).
- Refresh
patches.suse/Bluetooth-fix-UAF-in-l2cap_sock_cleanup_listen-vs-l2.patch.
- commit 649e53f
- auxdisplay: line-display: fix OOB read on zero-length
message_store() (git-fixes).
- security/keys: fix missed RCU read section on lookup
(stable-fixes).
- drm/bridge: chipone-icn6211: use devm_drm_bridge_add in i2c
probe (git-fixes).
- drm/amd/display: Validate payload length and link_index in
dc_process_dmub_aux_transfer_async (stable-fixes).
- drm/amd/display: Validate GPIO pin LUT table size before
iterating (stable-fixes).
- drm/amd/display: Fix integer overflow in bios_get_image()
(stable-fixes).
- drm/amdgpu/vpe: Force collaborate sync after TRAP
(stable-fixes).
- ALSA: asihpi: Fix potential OOB array access at reading cache
(stable-fixes).
- HID: quirks: really enable the intended work around for
appledisplay (git-fixes).
- HID: uclogic: Fix regression of input name assignment
(git-fixes).
- commit 5fdf340
- RDMA/rxe: Reject non-8-byte ATOMIC_WRITE payloads (CVE-2026-46114 bsc#1266972)
- commit aa23e21
- RDMA/uverbs: Validate wqe_size before using it in ib_uverbs_post_send (CVE-2026-45856 bsc#1266720)
- commit 3432226
- RDMA/mlx5: Fix error path fall-through in mlx5_ib_dev_res_srq_init() (CVE-2026-46176 bsc#1266816)
- commit 568bd06
- net: mana: Expose hardware diagnostic info via debugfs (bsc#1266414).
- net: mana: Use kvmalloc for large RX queue and buffer allocations (bsc#1266765).
- net: mana: Use per-queue allocation for tx_qp to reduce allocation size (bsc#1266765).
- net: mana: hardening: Reject zero max_num_queues from GDMA_QUERY_MAX_RESOURCES (git-fixes).
- net: mana: hardening: Reject zero max_num_queues from MANA_QUERY_VPORT_CONFIG (git-fixes).
- net: mana: Skip redundant detach on already-detached port (git-fixes).
- net: mana: Add NULL guards in teardown path to prevent panic on attach failure (git-fixes).
- RDMA/mana_ib: Report max_msg_sz in mana_ib_query_port (git-fixes).
- net: mana: validate rx_req_idx to prevent out-of-bounds array access (bsc#1266402).
- net: mana: Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer (bsc#1265928).
- commit 36776be
- dm: fix a buffer overflow in ioctl processing (git-fixes).
- scsi: ses: Handle positive SCSI error from ses_recv_diag()
(git-fixes).
- scsi: devinfo: Add BLIST_SKIP_IO_HINTS for Iomega ZIP
(git-fixes).
- scsi: mpi3mr: Clear reset history on ready and recheck state
after timeout (git-fixes).
- scsi: ufs: core: Fix shift out of bounds when MAXQ=32
(git-fixes).
- commit e61e502
- net: mvpp2: guard flow control update with global_tx_fc in buffer switching (CVE-2026-23438 bsc#1261619)
- commit 276a96c
- net: bonding: fix NULL deref in bond_debug_rlb_hash_show (CVE-2026-31546 bsc#1263006)
- commit 4cb3ae6
- net: macb: fix use-after-free access to PTP clock (CVE-2026-31396 bsc#1261791)
- commit b6d2420
- RDMA/rxe: Fix race condition in QP timer handlers (CVE-2026-45910 bsc#1266889)
- commit dee2812
- RDMA/iwcm: Fix workqueue list corruption by removing work_list (CVE-2026-45898 bsc#1266888)
- commit df19d9d
- RDMA/rxe: Fix double free in rxe_srq_from_init (CVE-2026-45852 bsc#1266711)
- commit 4885dd0
- cxl/mbox: validate payload size before accessing contents in cxl_payload_from_user_allowed() (CVE-2026-23327 bsc#1260548)
- commit 1acac91
- net: gro: fix outer network offset (CVE-2026-23254 bsc#1259884)
- commit 239e6d1
- smb: client: Don't log plaintext credentials in cifs_set_cifscreds (CVE-2026-23303 bsc#1260502)
- commit a1c8e29
- team: avoid NETDEV_CHANGEMTU event when unregistering slave
(CVE-2026-43234 bsc#1264409).
- commit 0f4d02d
- tipc: fix divide-by-zero in tipc_sk_filter_connect() (CVE-2026-43411 bsc#1264672)
- commit 9b26d10
- HID: bpf: prevent buffer overflow in hid_hw_request (CVE-2026-31401 bsc#1261603)
- commit ab69573
- RDMA/rxe: Validate pad and ICRC before payload_size() in rxe_rcv (CVE-2026-46043 bsc#1266901)
- commit dab2394
- esp: fix skb leak with espintcp and async crypto (CVE-2026-31518 bsc#1262606)
- commit 3a456fe
- net: stmmac: Prevent NULL deref when RX memory exhausted
(CVE-2026-46110 bsc#1266759).
- net: stmmac: rename STMMAC_GET_ENTRY() -> STMMAC_NEXT_ENTRY()
(CVE-2026-46110 bsc#1266759).
- net/mlx5: Fix switchdev mode rollback in case of failure
(CVE-2026-43012 bsc#1264016).
- net/mlx5: lag: Check for LAG device before creating debugfs
(CVE-2026-43013 bsc#1264011).
- net: ethernet: mtk_ppe: avoid NULL deref when gmac0 is disabled
(CVE-2026-31736 bsc#1263908).
- commit 5178a8b
- kabi: arm: io: Export ioremap_prot() symbol v2 (CVE-2026-23346 bsc#1260529 bsc#1266993)
First version of this kABI fix missed that ioremap_prot() now
accept only user-space mappings which breaks any out of tree
KMP's which used the function for legitimate kernel IO mappings.
Lets fix this by allowing kernel mappings and at same time
properly handle user-space mappings
[1] 9625623795d3 ("kabi: arm: io: Export ioremap_prot() symbol (CVE-2026-23346 bsc#1260529)")
- commit fb001f3
- Input: ims-pcu - fix usb_free_coherent() size in
ims_pcu_buffers_free() (git-fixes).
- Input: atmel_mxt_ts - fix boundary check in mxt_prepare_cfg_mem
(git-fixes).
- Input: xpad - fix out-of-bounds access for Share button
(git-fixes).
- Input: usbtouchscreen - clamp NEXIO data_len/x_len to URB
buffer size (git-fixes).
- commit d66e959
- btrfs: do not mark inode incompressible after inline attempt
fails (git-fixes).
- commit b9ec6e8
- USB: serial: cypress_m8: validate interrupt packet headers
(git-fixes).
- USB: serial: safe_serial: fix memory corruption with small
endpoint (git-fixes).
- USB: serial: omninet: fix memory corruption with small endpoint
(git-fixes).
- USB: serial: mxuport: fix memory corruption with small endpoint
(git-fixes).
- USB: serial: option: add missing RSVD(5) flag for Rolling
RW135R-GL (git-fixes).
- USB: serial: mct_u232: fix missing interrupt-in transfer sanity
check (git-fixes).
- USB: serial: keyspan: fix missing indat transfer sanity check
(git-fixes).
- USB: serial: belkin_sa: validate interrupt status length
(git-fixes).
- USB: cdc-acm: Fix bit overlap and move quirk definitions to
header (git-fixes).
- usb: dwc2: Fix use after free in debug code (git-fixes).
- usb: chipidea: core: convert ci_role_switch to local variable
(git-fixes).
- usb: gadget: f_fs: serialize DMABUF cancel against request
completion (git-fixes).
- usb: gadget: f_fs: copy only received bytes on short ep0 read
(git-fixes).
- usb: gadget: dummy_hcd: Reject hub port requests for
non-existent ports (git-fixes).
- usbip: vudc: Fix use after free bug in vudc_remove due to race
condition (git-fixes).
- usb: usbtmc: reject interrupt endpoints with small
wMaxPacketSize (git-fixes).
- usb: usbtmc: check URB actual_length for interrupt-IN
notifications (git-fixes).
- usb: gadget: uvc: hold opts->lock across XU walks in
uvc_function_bind (git-fixes).
- usb: gadget: net2280: Fix double free in probe error path
(git-fixes).
- usb: gadget: f_hid: fix device reference leak in hidg_alloc()
(git-fixes).
- usb: typec: ucsi: Don't update power_supply on power role
change if not connected (git-fixes).
- usb: typec: tcpm: improve handling of DISCOVER_MODES failures
(git-fixes).
- usb: cdns3: gadget: fix request skipping after clearing halt
(git-fixes).
- usb: cdns3: plat: fix unbalanced pm_runtime_forbid() call
permanently leaks the runtime PM usage counter across
bind/unbind cycles (git-fixes).
- usb: cdns3: plat: fix leaked usb2_phy initialization on usb3_phy
acquisition failure (git-fixes).
- thunderbolt: property: Reject dir_len < 4 to prevent size_t
underflow (git-fixes).
- thunderbolt: property: Reject u32 wrap in
tb_property_entry_valid() (git-fixes).
- usb: gadget: composite: fix integer underflow in WebUSB GET_URL
handling (git-fixes).
- tty: serial: samsung: Remove redundant port lock acquisition
in rx helpers (git-fixes).
- serial: qcom_geni: fix kfifo underflow when flush precedes
DMA completion IRQ (git-fixes).
- serial: fsl_lpuart: fix rx buffer and DMA map leaks in
start_rx_dma (git-fixes).
- serial: qcom-geni: fix UART_RX_PAR_EN bit position (git-fixes).
- tty: serial: pch_uart: add check for dma_alloc_coherent()
(git-fixes).
- parport: Fix race between port and client registration
(git-fixes).
- comedi: comedi_test: fix check for valid scan_begin_src in
waveform_ai_cmdtest() (git-fixes).
- comedi: comedi_test: Fix limiting of convert_arg in
waveform_ai_cmdtest() (git-fixes).
- iio: adc: viperboard: Fix error handling in vprbrd_iio_read_raw
(git-fixes).
- iio: gyro: itg3200: fix i2c read into the wrong stack location
(git-fixes).
- iio: dac: ad5686: acquire lock when doing powerdown control
(git-fixes).
- iio: temperature: tsys01: fix broken PROM checksum validation
(git-fixes).
- iio: buffer: hw-consumer: fix use-after-free in error path
(git-fixes).
- iio: dac: ad5686: fix input raw value check (git-fixes).
- iio: ssp_sensors: cancel delayed work_refresh on remove
(git-fixes).
- iio: dac: max5821: fix return value check in powerdown sync
(git-fixes).
- iio: adc: mt6359: fix unchecked return value in mt6358_read_imp
(git-fixes).
- iio: imu: st_lsm6dsx: fix stack leak in tagged FIFO buffer
(git-fixes).
- iio: light: cm3323: fix reg_conf not being initialized correctly
(git-fixes).
- iio: magnetometer: st_magn: fix default DRDY pin selection
for LIS2MDL (git-fixes).
- iio: buffer: Fix DMA fence leak in iio_buffer_enqueue_dmabuf()
(git-fixes).
- iio: adc: npcm: fix unbalanced clk_disable_unprepare()
(git-fixes).
- iio: gyro: adis16260: fix division by zero in write_raw
(git-fixes).
- iio: adc: xilinx-xadc: Fix sequencer mode in postdisable for
dual mux (git-fixes).
- drm/hyperv: validate VMBus packet size in receive callback
(git-fixes).
- drm/hyperv: validate resolution_count and fix WIN8 fallback
(git-fixes).
- drm/amd/pm/si: Disregard vblank time when no displays are
connected (git-fixes).
- drm/i915: Fix potential UAF in TTM object purge (git-fixes).
- commit b935350
- Bluetooth: hci_sync: Set HCI_CMD_DRAIN_WORKQUEUE during device
close (git-fixes).
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock
(git-fixes).
- Bluetooth: ISO: fix UAF in iso_recv_frame (git-fixes).
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp
(git-fixes).
- Bluetooth: l2cap: clear chan->ident on ECRED reconfiguration
success (git-fixes).
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync
(git-fixes).
- Bluetooth: 6lowpan: check skb_clone() return value in
send_mcast_pkt() (git-fixes).
- Bluetooth: btusb: Allow firmware re-download when version
matches (git-fixes).
- Bluetooth: HIDP: fix missing length checks in
hidp_input_report() (git-fixes).
- Bluetooth: L2CAP: use chan timer to close channels in
cleanup_listen() (git-fixes).
- Bluetooth: L2CAP: fix chan ref leak in l2cap_chan_timeout()
on !conn (git-fixes).
- ASoC: codecs: simple-mux: Fix enum control bounds check
(git-fixes).
- ASoC: qcom: q6asm-dai: fix error handling in prepare and
set_params (git-fixes).
- ASoC: qcom: q6asm-dai: close stream only when running
(git-fixes).
- ASoC: qcom: q6asm-dai: do not set stream state in event and
trigger callbacks (git-fixes).
- ASoC: Intel: bytcht_es8316: Fix MCLK leak on init errors
(git-fixes).
- ALSA: scarlett2: Fix 2i2 Gen 4 direct monitor gain on firmware
2417 (git-fixes).
- ALSA: pcm: oss: Fix setup list UAF on proc write error
(git-fixes).
- commit 029ff01
- Refresh patches.suse/selftests-bpf-Add-more-precision-tracking-tests-for-.patch. (CVE-2026-43009 bsc#1264014)
- commit 56216f8
- wifi: iwlwifi: mvm: don't send a 6E related command when not
supported (CVE-2026-43325 bsc#1265110).
- commit 84701d2
- btrfs: reserve enough transaction items for qgroup ioctls
(CVE-2026-43338 bsc#1264716).
- commit 062af51
- KVM: nSVM: Avoid incorrect injection of SVM_EXIT_CR0_SEL_WRITE
(git-fixes).
- commit fe5c353
- KVM: nSVM: Propagate SVM_EXIT_CR0_SEL_WRITE correctly for LMSW
emulation (git-fixes).
- commit b576a59
- KVM: SVM: Inject #UD for INVLPGA if EFER.SVME=0 (git-fixes).
- commit 0acb9df
- KVM: x86: Return the VM's configured APIC bus frequency when
queried (git-fixes).
- commit b075ab1
- selftests/bpf: add test for nullable PTR_TO_BUF access
(CVE-2026-43333 bsc#1264726).
- commit 5c9ba0e
- bpf: reject direct access to nullable PTR_TO_BUF pointers
(CVE-2026-43333 bsc#1264726).
- commit 05c4059
- xfrm: prevent policy_hthresh.work from racing with netns
teardown (CVE-2026-31516 bsc#1262755).
- commit ec34473
- mptcp: pm: in-kernel: always set ID as avail when rm endp
(CVE-2026-43252 bsc#1264300).
- commit 89a78a5
- net/ipv6: ioam6: prevent schema length wraparound in trace fill
(CVE-2026-43341 bsc#1265044).
- commit e6f9144
- btrfs: fix transaction abort on set received ioctl due to item
overflow (CVE-2026-43359 bsc#1264719).
- commit 2cf8c07
- btrfs: fix transaction abort when snapshotting received
subvolumes (CVE-2026-43361 bsc#1264722).
- commit 44cbaf6
- btrfs: fix transaction abort on file creation due to name hash
collision (CVE-2026-43360 bsc#1264720).
- commit 1bd108a
- slip: bound decode() reads against the compressed packet length
(CVE-2026-45843 bsc#1266395).
- commit ffc4b45
- s390/entry: Scrub r12 register on kernel entry
(bsc#1261590,bsc#1262771,CVE-2026-31483).
- s390/syscalls: Add spectre boundary for syscall dispatch table
(bsc#1261590,bsc#1262771,CVE-2026-31483).
- s390/barrier: Make array_index_mask_nospec() __always_inline
(bsc#1261590,bsc#1262771,CVE-2026-31483).
- commit d252494
- tracing: Fix potential deadlock in cpu hotplug with osnoise
(CVE-2026-31480 bsc#1262634).
- tracing: Switch trace_osnoise.c code over to use guard()
and __free() (bsc#1262634).
- commit 5767a84
- bpf: Fix stack-out-of-bounds write in devmap (bsc#1260584
CVE-2026-23359).
- commit 82c3529
- wifi: mac80211: always free skb on ieee80211_tx_prepare_skb()
failure (CVE-2026-23444 bsc#1266307).
- commit f26d039
- bcache: fix uninitialized closure object (git-fixes).
- commit c4a3456
- fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath
(bsc#1264437 CVE-2026-43112).
- commit 7f5ff04
- bcache: fix cached_dev.sb_bio use-after-free and crash
(CVE-2026-3150 bsc#1263169).
- scsi: target: tcm_loop: Drain commands in target_reset handler
(CVE-2026-43054 bsc#1264063).
- scsi: ibmvfc: Fix OOB access in ibmvfc_discover_targets_done()
(CVE-2026-31464 bsc#1262656).
- scsi: qla2xxx: Completely fix fcport double free (CVE-2026-43414
bsc#1264669).
- commit c9145a1
- smb: client: fix OOB reads parsing symlink error response
(bsc#1263769 CVE-2026-31613).
- commit 3ab8543
- smb: client: fix off-by-8 bounds check in check_wsl_eas()
(bsc#1263774 CVE-2026-31614).
- commit e5f975e
- smb: client: fix in-place encryption corruption in SMB2_write()
(bsc#1264989 CVE-2026-43362).
- commit 13921d6
- usb: typec: ucsi: skip connector validation before init
(CVE-2026-31729 bsc#1264112).
- commit aa7142a
- rtmutex: Use waiter::task instead of current in remove_waiter()
(bsc#1266001 CVE-2026-43499).
- commit 0d559b9
- tracing: Fix WARN_ON in tracing_buffers_mmap_close
(CVE-2026-23380 bsc#1260539).
- commit 91dbd7b
- module: Fix kernel panic when a symbol st_shndx is out of bounds
(CVE-2026-31521 bsc#1263102).
- commit bd11f0e
- s390/mm: Add missing secure storage access fixups for donated
memory (CVE-2026-31568,bsc#1263068).
- commit da1caad
- s390/pfault: Fix virtual vs physical address confusion
(bsc#1262754).
- commit 0e7ec9a
- cpufreq: governor: fix double free in
cpufreq_dbs_governor_init() error path (bsc#1264832
CVE-2026-43328).
- commit eaaf9be
- mm/userfaultfd: fix hugetlb fault mutex hash calculation
(CVE-2026-31575 bsc#1263067).
- commit 6137b29
- RDMA/efa: Fix possible deadlock (git-fixes)
- commit 1696c14
- RDMA/efa: Fix use of completion ctx after free (CVE-2026-31493 bsc#1262668)
- commit 533c918
- RDMA/efa: Improve admin completion context state machine (git-fixes)
- commit d54fb87
- RDMA/efa: Check stored completion CTX command ID with received one (git-fixes)
- commit 04f0f27
- RDMA/efa: Extend admin timeout error print (git-fixes)
- commit 7f61f89
- usb: typec: ucsi: validate connector number in
ucsi_notify_common() (CVE-2026-31729 bsc#1264112).
- commit fd2e020
- smb: client: reject userspace cifs.spnego descriptions
(bsc#1266238).
- commit 997890a
- iommu/amd: Use maximum PPR log buffer size when SNP is enabled
on Family 0x19 (bsc#1243603 CVE-2023-20585).
- iommu/amd: Use maximum Event log buffer size when SNP is
enabled on Family 0x19 (bsc#1243603 CVE-2023-20585).
- commit ccaf2dd
- hwmon: (pmbus/adm1266) register the nvmem device after
pmbus_do_probe() (git-fixes).
- hwmon: (pmbus/adm1266) register the gpio_chip after
pmbus_do_probe() (git-fixes).
- hwmon: (pmbus/adm1266) reject short block-read responses in
the GPIO accessors (git-fixes).
- hwmon: (pmbus/adm1266) don't clobber GPIO bits before PDIO
read in get_multiple (git-fixes).
- hwmon: (pmbus/adm1266) cap PDIO scan in get_multiple at
ADM1266_PDIO_NR (git-fixes).
- hwmon: (pmbus/adm1266) bounce blackbox records through a
protocol-sized buffer (git-fixes).
- hwmon: (pmbus/adm1266) include adapter number in GPIO line label
(git-fixes).
- hwmon: (pmbus/adm1266) include PEC byte in pmbus_block_xfer
read buffer (git-fixes).
- hwmon: (pmbus/adm1266) reject implausible blackbox record_count
(git-fixes).
- hwmon: (pmbus/adm1266) widen blackbox-info buffer to
I2C_SMBUS_BLOCK_MAX (git-fixes).
- hwmon: (pmbus/adm1266) seed timestamp from the real-time clock
(git-fixes).
- hwmon: (lenovo-ec-sensors): Fix EC "MCHP" signature validation
logic (git-fixes).
- hwmon: (lenovo-ec-sensors): Convert to devm_request_region()
(git-fixes).
- platform/x86: intel-vbtn: Check ACPI_HANDLE() against NULL
(git-fixes).
- platform/x86: intel-hid: Check ACPI_HANDLE() against NULL
(git-fixes).
- platform/x86: hp_accel: Check ACPI_COMPANION() against NULL
(git-fixes).
- platform/x86: adv_swbutton: Check ACPI_HANDLE() against NULL
(git-fixes).
- platform/surface: aggregator_registry: omit battery & AC nodes
on Surface Laptop 7 (git-fixes).
- spi: ti-qspi: fix use-after-free after DMA setup failure
(git-fixes).
- spi: sprd: fix error pointer deref after DMA setup failure
(git-fixes).
- spi: qup: fix error pointer deref after DMA setup failure
(git-fixes).
- spi: mtk-snfi: Fix resource leak in mtk_snand_read_page_cache()
(git-fixes).
- spi: ep93xx: fix error pointer deref after DMA setup failure
(git-fixes).
- wifi: ath11k: clear shared SRNG pointer state on restart
(git-fixes).
- wifi: ath11k: fix use after free in ath11k_dp_rx_msdu_coalesce()
(git-fixes).
- wifi: ath11k: fix peer resolution on rx path when peer_id=0
(git-fixes).
- wifi: ath10k: skip WMI and beacon transmission when device is
wedged (git-fixes).
- wifi: ath11k: fix error path leak in ath11k_tm_cmd_wmi_ftm()
(git-fixes).
- wifi: ath11k: fix error path leaks in some WMI calls
(git-fixes).
- wifi: ath11k: fix error path leaks in some WMI WOW calls
(git-fixes).
- wifi: mac80211: consume only present negotiated TTLM maps
(git-fixes).
- wifi: mac80211: fix multi-link element inheritance (git-fixes).
- wifi: mac80211: fix MLE defragmentation (git-fixes).
- wifi: cfg80211: advance loop vars in cfg80211_merge_profile()
(git-fixes).
- firmware: arm_ffa: Align RxTx buffer size before mapping
(git-fixes).
- firmware: arm_ffa: Fix per-vcpu self notifications handling
in workqueue (git-fixes).
- firmware: arm_ffa: Skip free_pages on RX buffer alloc failure
(git-fixes).
- firmware: arm_ffa: Check for NULL FF-A ID table while driver
registration (git-fixes).
- HID: playstation: Clamp num_touch_reports (git-fixes).
- media: i2c: og01a1b: Fix V4L2 subdevice data initialization
on probe (git-fixes).
- media: i2c: og01a1b: Replace client->dev usage (stable-fixes).
- commit b7519f6
- Bluetooth: fix UAF in l2cap_sock_cleanup_listen() vs
l2cap_conn_del() (git-fixes).
- commit f8d8f84
- drm/amdgpu: fix spelling typos (stable-fixes).
- commit 5152bc7
- drm/amdgpu: update the handle ptr in early_init (stable-fixes).
- Refresh
patches.suse/drm-amdgpu-mes11-implement-detect-and-reset-callback.patch.
- Refresh
patches.suse/drm-amdgpu-mes12-implement-detect-and-reset-callback.patch.
- commit 593cd3d
- device property: set fwnode->secondary to NULL in fwnode_init()
(git-fixes).
- drm/xe/oa: Fix exec_queue leak on width check in stream open
(git-fixes).
- drm/xe: Define CACHE_MODE_1 as MCR register (git-fixes).
- drm/xe/pf: Fix CFI failure in debugfs access (git-fixes).
- drm/xe/vf: Fix signature of print functions (git-fixes).
- drm/xe/gsc: Fix double-free of managed BO in error path
(git-fixes).
- drm/virtio: use uninterruptible resv lock for plane updates
(git-fixes).
- drm/bridge: megachips: remove bridge when irq request fails
(git-fixes).
- drm/bridge: it66121: acquire reset GPIO in probe (git-fixes).
- drm/radeon/evergreen_cs: Add missing NULL prefix check in
surface check (git-fixes).
- drm/amdgpu/vce3: Fix VCE 3 firmware size and offsets
(git-fixes).
- drm/amdgpu/vce2: Fix VCE 2 firmware size and offsets
(git-fixes).
- drm/i915/dp: Fix readback for target_rr in Adaptive Sync SDP
(git-fixes).
- drm/msm/snapshot: fix dumping of the unaligned regions
(git-fixes).
- drm/msm/dsi: don't dump registers past the mapped region
(git-fixes).
- ASoC: cs35l56: Fix flushing of IRQ work in cs35l56_sdw_remove()
(git-fixes).
- ALSA: seq: Serialize UMP output teardown with event_input
(git-fixes).
- ALSA: ua101: Reject too-short USB descriptors (git-fixes).
- ALSA: seq: avoid past-the-end iterator in snd_seq_create_port()
(git-fixes).
- ALSA: timer: avoid past-the-end iterator in
snd_timer_dev_register() (git-fixes).
- ALSA: pcm: Don't setup bogus iov_iter for silencing (git-fixes).
- Bluetooth: hci_uart: fix UAFs and race conditions in close
and init paths (git-fixes).
- Bluetooth: MGMT: validate Add Extended Advertising Data length
(git-fixes).
- Bluetooth: btmtk: fix urb->setup_packet leak in error paths
(git-fixes).
- Bluetooth: ISO: drop ISO_END frames received without prior
ISO_START (git-fixes).
- Bluetooth: bnep: Fix UAF read of dev->name (git-fixes).
- Bluetooth: L2CAP: ecred_reconfigure: send packed pdu, not
stack pointer (git-fixes).
- Bluetooth: btmtk: accept too short WMT FUNC_CTRL events
(git-fixes).
- efi: Allocate runtime workqueue before ACPI init (git-fixes).
- Revert "ACPI: CPPC: Adjust debug messages in
amd_set_max_freq_ratio() to warn" (git-fixes).
- drm/amdgpu/uvd3.1: Don't validate the firmware when already
validated (git-fixes).
- drm/amdgpu/uvd4.2: Don't initialize UVD 4.2 when DPM is disabled
(git-fixes).
- ACPI: x86: cmos_rtc: Improve coordination with ACPI TAD driver
(git-fixes).
- ACPI: x86: cmos_rtc: Clean up address space handler driver
(stable-fixes).
- ALSA: hda/conexant: Renaming the codec with device ID 0x1f86
and 0x1f87 (stable-fixes).
- drm/amdgpu: update the handle ptr in dump_ip_state
(stable-fixes).
- drm/amdgpu: add amdgpu_device reference in ip block
(stable-fixes).
- ASoC: SOF: ipc3: Use standard dev_dbg API (stable-fixes).
- commit 9748735
- arm64: tlb: Flush walk cache when unsharing PMD tables (git-fixes)
- commit adbb70c
- gve: Enable reading max ring size from the device in DQO-QPL
mode (bsc#1265925).
- gve: Update QPL page registration logic (bsc#1265925).
- gve: add XDP DROP and PASS support for DQ (bsc#1265925).
- gve: update XDP allocation path support RX buffer posting
(bsc#1265925).
- gve: merge packet buffer size fields (bsc#1265925).
- gve: update GQ RX to use buf_size (bsc#1265925).
- gve: introduce config-based allocation for XDP (bsc#1265925).
- gve: remove xdp_xsk_done and xdp_xsk_wakeup statistics
(bsc#1265925).
- gve: Add RSS cache for non RSS device option scenario
(bsc#1265925).
- commit 79d4d40
- KVM: x86: Fix Xen hypercall tracepoint argument assignment
(git-fixes).
- commit 8e6e1e7
- virt: sev-guest: Explicitly leak pages in unknown state
(git-fixes).
- commit 33b865c
- firmware: arm_ffa: Align RxTx buffer size before mapping (git-fixes)
- commit 94c6e3b
- krb5
-
- Fix Fix two NegoEx parsing vulnerabilities:
* CVE-2026-40355, bsc#1263366
* CVE-2026-40356, bsc#1263367
- Add patch 0011-Fix-two-NegoEx-parsing-vulnerabilities.patch
- libXpm
-
- updated 0001-Fix-CVE-2026-4367-Out-of-bounds-read-in-xpmNextWord.patch
to the final version, which has been submitted to gitlab
(CVE-2026-4367, bsc#1260928, comment#22)
- 0001-Fix-CVE-2026-4367-Out-of-bounds-read-in-xpmNextWord.patch
* fix Out of bounds read (CVE-2026-4367, bsc#1260928)
- util-linux
-
- loopdev: Prevent unauthorized read access to symlinked filesystem
images (bsc#1261606, CVE-2026-27456,
util-linux-CVE-2026-27456.patch).
- gcc15
-
- Update to GCC 15.3 release
* remove included gcc15-bsc1257463.patch
- Update to GCC 15 branch head, 15.2.1+git11263, GCC 15.3 RC1
- Drop -fhardened from RPM_OPT_FLAGS
- Avoid conflicts between %gcc_libc_bootstrap packages of different
versions if update-alternatives are still in use (SLE 15 and older)
- Update gcc15-Wtime_t-conversion.patch to allow conversions to/from
uint32_t. Filter out -Wtime_t-conversion from flags to build
D target library files.
- libgcrypt
-
- CVE-2026-41990: libgcrypt: lack of bound check can lead to mishandling of Dilithium signing (bsc#1262693)
* Added libgcrypt-CVE-2026-41990.patch
- util-linux:systemd
-
- loopdev: Prevent unauthorized read access to symlinked filesystem
images (bsc#1261606, CVE-2026-27456,
util-linux-CVE-2026-27456.patch).
- ncurses
-
- Add patch fix-bsc1259924.patch (bsc#1259924, CVE-2025-69720)
* Backport from ncurses-6.5-20251213.patch
- nftables
-
- add 0001-src-netlink-fix-crash-when-ops-doesn-t-support-udata.patch: fix a
NULL pointer dereference crash which can occur when modification of firewall
rules happens in parallel e.g. during Docker startup (bsc#1263855).
- libnvme
-
- Update to version 1.11+27.g515cdbcb:
* fabrics: issue a warning on invalid traddr format (bsc#1248750)
* fabrics: sanitize FC traddr (bsc#1248750)
* nvme: expose tls mode in use (bsc#1259672)
* fabrics: add helper to update tls and concat (bsc#1259672)
* tree: avoid updating --tls in nvme_read_sysfs_tls() (bsc#1259672)
- Update to version 1.11+22.g31f090fe:
* fabrics: add additional debug messages for --tls and --concat
* fabrics: add error if dhchap-ctrl-secret is specified with --concat
* fabrics: add error if no dhchap-secret is specified with --concat
* fabrics: add error if --tls and --concat are invoked together
* fabrics: fix concat during nvme connect-all
- polkit
-
- avoid reading endless amounts of memory (CVE-2026-4897 bsc#1260859)
0001-CVE-2026-4897-getline-string-overflow.patch
- libselinux
-
- Backport patch for restorecon to log error on readonly fs (bsc#1232226)
- Added patch: restorecon-Only-log-error-on-readonly-fs-bsc-1232226.patch
- libsolv
-
- fix solv_chksum_free segfault when called with a NULL pointer
- bump version to 0.7.39
- made repo_add_solv more robust against corrupt files
[bsc#1265935] [CVE-2026-9149]
- fix potential buffer overflow when verifying EdDSA signatures
[bsc#1266039] [CVE-2026-48863]
- added limit checks in multiple places to catch overflows
- reduce the size of the language id cache
- fixed Debian canon selection
- fixed dbpath detection in repo_rpmdb_librpm
- reduced stack usage in repo page compression (needed for musl)
- bump version to 0.7.38
- fix parsing of sha512 checksums in debian repositories
[bsc#1265938] [CVE-2026-9150]
- improve speed of dirpool_add_dir makeing parsing of filelists.xml
twice as fast
- fix parsing of recommends in the old Mandriva synthesis format
- bump version to 0.7.37
- sqlite3
-
- Update to version 3.53.2:
* Fixes for problems in 3.53.0 reported by users.
* bsc#1268013, CVE-2026-11824: heap-based buffer overflow
vulnerability in the FTS5 full-text search extension.
* bsc#1268012, CVE-2026-11822: memory corruption vulnerabilities
in the FTS5 full-text search extension.
* See the check-in timeline for details:
https://sqlite.org/src/timeline?from=version-3.53.1&to=version-3.53.2
- Update to version 3.53.1:
* Fixes for problems in 3.53.0 reported by users.
* See the check-in timeline for details:
https://sqlite.org/src/timeline?from=version-3.53.0&to=version-3.53.1
- Update to version 3.53.0:
* https://sqlite.org/releaselog/3_53_0.html
* Add the Query Result Formatter (QRF) library for formatting the
results of SQL queries for human readability on a fixed-pitch
font screen.
* Enhance ALTER TABLE to permit adding and removing NOT NULL and
CHECK constraints.
* The REINDEX EXPRESSIONS statement rebuilds expression indexes.
* The body of TEMP triggers may now modify and/or query tables
in the main schema.
* Enhance VACUUM INTO so that if a URI filename is used as the
target and that filename has a reserve=N query parameter with
N between 0 and 255, then the reserve amount for the generated
database copy is set to N.
* New SQL functions json_array_insert() and jsonb_array_insert().
* Renovations to the CLI.
* New C-language interfaces: sqlite3_str_truncate(),
sqlite3_str_free(), sqlite3_carray_bind_v2().
* Add the SQLITE_PREPARE_FROM_DDL option to sqlite3_prepare_v3().
* Added the SQLITE_UTF8_ZT constant which can be used as the
encoding parameter to sqlite3_result_text64() or
sqlite3_bind_text64() to indicate that the value is UTF-8
encoded and zero terminated.
* The SQLITE_LIMIT_PARSER_DEPTH option is added to
sqlite3_limit().
* The SQLITE_DBCONFIG_FP_DIGITS option is added to
sqlite3_db_config().
* Query planner improvements.
* Add new interfaces to the session extension that enable an
application to add changes one at a time to the
sqlite3_changegroup object.
* Improvements to floating-point ↔ text conversions.
* Added the self-healing index feature to deal with the stale
expression index problem.
* Add the "-p|--port" option to sqlite3_rsync.
* Add the "opfs-wl" VFS, functionally identical to the "opfs" VFS
but using Web Locks for locking, which can promise fairer lock
sharing than the "opfs" bespoke protocol can. "opfs-wl"
requires Atomics.waitAsync(), so requires newer browsers than
"opfs" does.
- tiff
-
- * CVE-2026-4775: Signed integer overflow in putcontig8bitYCbCr44tile (bsc#1260411)
Add tiff-CVE-2026-4775.patch
- Enable Lerc support in openSUSE
* Used in GDAL for QGIS: boo#1257123
- libzypp
-
- A .repo files "path=" entry must not refer to a location
outside the repo (bsc#1267874, CVE-2026-44942)
A "path=" entry may solely denote a sub-directory of the baseurl
where the metadata are located. A relative path trying to access
data outside the baseurl is reported and sanitized.
- version 17.38.13 (35)
- Repo "keyhint" must denote a filename, no path (bsc#1267426,
CVE-2026-44941)
- version 17.38.12 (35)
- Fix potential crash on malformed or malicious repository
metadata (fixes #740)
- version 17.38.11 (35)
- Repo metadata: discard entries referring to a location outside
the repo (bsc#1259802, CVE-2026-25707)
Mirroring those data locally would refer to a location outside
the repo's local cache directory. Those data entries are reported
and discarded.
- zypp.conf: Allow [env] section to add environment variables.
This feature is designed to enable environment-specific settings
or debugging options over an extended period. See zypp.conf(5).
- version 17.38.10 (35)
- Prevent configured scripts from escaping the sigcheck directory
(bsc#1265223, CVE-2026-44933)
- StringV: guard hasPrefix/hasPrefixCI against reading past the
view end (fixes #735)
- version 17.38.9 (35)
- Mandatory signature verification plugin support (PED#11922)
- version 17.38.8 (35)
- Fix purge-kernel -rc kernel handling (bsc#1239718)
- Explicitly_set_pool_DISTTYPE_RPM (fixes #726)
- version 17.38.7 (35)
- Check for trusted key updates when updating the general keyring
(bsc#1259706)
- Support multiple MirroredOrigin authorities (bsc#1253193)
- Workaround doxygen bug: doxygen/doxygen#12057
- libzypp.spec: Add missing graphviz-gd BuildRequires (boo#1259842)
- version 17.38.6 (35)
- man
-
- Make choice for transfiletriggerin or filetriggerin rpm version
depend (boo#1261544)
- netcfg
-
- Clarify /etc/services removal message
- nginx
-
- Add CVE-2026-9256.patch: Fixes heap buffer overflow via overlapping
captures in ngx_http_rewrite_module that could lead to arbitrary
code execution (bsc#1266215)
- openssh
-
- Add patch rebased from upstream to add missing askpass check for
proxy-mode multiplexing sessions (CVE-2026-35388, bsc#1261441):
* openssh-cve-2026-35388-askpass-multiplexing.patch
- Update patch to fix a possible information disclosure or denial
of service due to uninitialized variables in gssapi patches
(CVE-2026-3497, bsc#1259642) :
* openssh-8.0p1-gssapi-keyex.patch
- Add patch to fix a potential issue when validating mac or ciphers
(bsc#1264568):
* fix-mac-validation-strsep-logic-bug.patch
- Improve %prep LDAP regex to preserve subdirectories (e.g., ope-
nbsd-compat/) and handle optional [ab]/ prefixes.
- pam:full
-
- pam_mkhomedir: building with vendordir option allows fetching skeleton
directory from the vendor directory when creating the user home directory.
[+ pam_mkhomedir-Use-vendordir-when-defined.patch, bsc#1245524]
- Update to 1.7.1+git (post-v1.7.1.patch)
- disable unix_chkpwd by default, only used as fallback again
- pam_modutil_get-overwrite-password-at-free.patch is included
- pam
-
- pam_mkhomedir: building with vendordir option allows fetching skeleton
directory from the vendor directory when creating the user home directory.
[+ pam_mkhomedir-Use-vendordir-when-defined.patch, bsc#1245524]
- Update to 1.7.1+git (post-v1.7.1.patch)
- disable unix_chkpwd by default, only used as fallback again
- pam_modutil_get-overwrite-password-at-free.patch is included
- policycoreutils
-
- Reintroduce sandbox package (bsc#1266226) and a couple quality of life
improvements:
add policycoreutils-sandbox-fix-cleanup.patch
add sandbox-sandbox-fix-saving-file-changes.patch
- Remove misleading comment from spec file about reuqires for
policycoreutils-devel
- Improve policycoreutils-devel package dependencies (bsc#1236193).
- Change Recommends for policycoreutils-devel to the gui package to
Requires. This causees some system bloat for people that only
want to use the config GUI, but prevents errors when building
policy packages
- Properly exclude gui.py file (bsc#1242096)
- Added Recommends for policycoreutils-devel to the gui package
- Move gui.py file to gui sub-package to prevent policycoreutil python
packages from having excessive requirements
- python-PyJWT
-
- CVE-2026-48526: JWK JSON accepted as HMAC secret (algorithm confusion)
(bsc#1266802)
- CVE-2026-48523: Algorithm allow-list bypass with PyJWK / PyJWKClient
(bsc#1266799)
- CVE-2026-48525: DoS via base64 decode of unused payload segment when b64=false
(bsc#1266801)
- CVE-2026-48522: PyJWKClient accepts non-HTTP(S) URIs (bsc#1266798)
- CVE-2026-48524: PyJWKClient cache wiped on fetch error (bsc#1266800)
- added security-fixes.patch to fix above vulnerabilities
- python-idna
-
- CVE-2026-45409: Specially crafted inputs to idna.encode() can bypass
earlier security fix(bsc#1265413)
Add patch CVE-2026-45409.patch
- python-requests
-
- CVE-2026-25645: `extract_zipped_paths()` uses predictable filenames when extracting files from zip archives and reuses target files that already exist without validation (bsc#1260589)
Add patch CVE-2026-25645.patch
- libsemanage:python-semanage
-
- Depend on libso before make pywrap is executed to avoid
race conditions (bsc#1266385)
- Add patch: 1266385-libsemanage-Require-LIBSO-before-SWIGSO-and-SWIGRUBY.patch
- Add CFLAGS to %make_install call for consistency with %make_build
- python-urllib3
-
- CVE-2026-44431: sensitive information disclosure due to sensitive
headers being forwarded across origins in proxied low-level redirects
(bsc#1265267)
Add patch CVE-2026-44431.patch
- rpcbind
-
Update to rpcbind 1.2.9 (bsc#1267212)
https://lore.kernel.org/linux-nfs/5cad3ab4-d24a-45fa-b1e9-d57b2c47a5e4@redhat.com/
rpcinfo: stack buffer overflow in rpcinfo rpcbaddrlist()
* rpcbind: Stop unauthenticated oversized allocation in PMAPPROC_CALLIT decode
* rpcbind: fix memory leak in read_warmstart()
* rpcbind: fix memory leaks in network_init()
* rpcbind: fix memory leak in init_transport()
- Update to rpcbind 1.2.8
https://lore.kernel.org/linux-nfs/b553cc5a-46eb-453b-80f0-cfe69ccb7b21@redhat.com/
* Added -v (print version and compile flags)
* rpcinfo: Removed a number of "old-style function definition" warnings
* man/rpcbind: Update list of options
* Comment out ListenStream=@/run/rpcbind.sock
* [nfs/nfs-utils/rpcbind] rpcbind: avoid dereferencing NULL from realloc()
* systemd/rpcbind.service.in: Add various hardenings options
* man/rpcbind: Add Files section to manpage
* Moved rpcbind.lock and default configs to /run instead of /var/run
- systemd: Upstream added systemd EnvironmentFile: 1) /etc/rpcbind.conf 2)
/etc/default/rpcbind 3) /etc/sysconfig/rpcbind (the only one originally used
in openSUSE patch for boo#1117217)
- systemd: Add 'systemd-tmpfiles-setup.service' into 'Wants' and 'After'
targets (originally openSUSE patch for boo#1117217 added 'After=sysinit.target')
- Removed patches (accepted upstream):
* 0001-systemd-rpcbind.service-Fix-ordering-add-etc-sysconf.patch
* 0001-systemd-rpcbind.service-Add-hardening-bsc-1181400.patch
* 0001-change-lockingdir-to-run.patch
- rsync
-
- Security update:
- CVE-2025-10158, bsc#1254441: Out of bounds array access via negative index
- CVE-2026-41035, bsc#1262223: count of entries mismatch can lead to a use-after-free
- CVE-2026-43617, bsc#1264515: Authorization Bypass via Hostname Resolution
- CVE-2026-29518, bsc#1264512: Integer Overflow Information Disclosure
- CVE-2026-43619, bsc#1264514: Symlink Race Condition via Path-Based Syscalls
- CVE-2026-43620, bsc#1264513: Out-of-Bounds Array Read via recv_files()
- CVE-2026-45232, bsc#1265296: Off-by-one stack OOB write in HTTP CONNECT proxy response parsing
- List of patches added + hardening pre-requisite patches:
- rsync-hardening-0001-bool-is-a-keyword-in-C23.patch
- rsync-hardening-0002-syscall-fix-a-Y2038-bug-by-replacing-Int32x32To64-wi.patch
- rsync-hardening-0003-options.c-Fix-segv-if-poptGetContext-returns-NULL.patch
- rsync-hardening-0004-Using-a-correct-time-in-log-file.patch
- rsync-hardening-0005-configure.ac-check-for-xattr-support-both-in-libc-an.patch
- rsync-hardening-0006-util-fixed-issue-in-clean_fname.patch
- rsync-hardening-0007-testsuite-added-clean-fname-underflow-test.patch
- rsync-hardening-0008-CVE-2025-10158-fixed-an-invalid-access-to-files-array.patch
- rsync-hardening-0009-fix-uninitialized-buf1-in-get_checksum2-MD4-path.patch
- rsync-hardening-0010-reject-negative-token-values-in-compressed-stream-re.patch
- rsync-hardening-0011-acl-fixed-ACL-ID-mapping-for-non-root.patch
- rsync-hardening-0012-fix-uninitialized-mul_one-in-AVX2-checksum-and-add-S.patch
- rsync-hardening-0013-Fix-glibc-2.43-constness-warnings.patch
- rsync-hardening-0015-fix-signed-integer-overflow-in-proxy-protocol-v2-hea.patch
- rsync-hardening-0016-zero-all-new-memory-from-allocations.patch
- rsync-hardening-0017-CVE-2026-41035-xattrs-fixed-count-in-qsort.patch
- rsync-hardening-0018-call-tzset-before-chroot-to-cache-timezone-data.patch
- rsync-hardening-0019-testsuite-xattrs-ignore-SUNWattr_-in-the-Solaris-xls.patch
- rsync-hardening-0020-syscall-use-openat2-RESOLVE_BENEATH-on-Linux-for-sec.patch
- rsync-hardening-0021-syscall-also-use-O_RESOLVE_BENEATH-on-FreeBSD-and-Ma.patch
- rsync-hardening-0022-testsuite-skip-symlink-dirlink-basis-on-platforms-wi.patch
- rsync-hardening-0023-CVE-2026-29518-syscall-clientserver-am_chrooted-and-use_secure_syml.patch
- rsync-hardening-0024-CVE-2026-29518-sender-fix-read-path-TOCTOU-by-opening-from-module-r.patch
- rsync-hardening-0025-CVE-2026-43619-syscall-receiver-secure-receiver-side-do_chmod-again.patch
- rsync-hardening-0026-CVE-2026-43619-util1-secure-change_dir-against-symlink-race-chdir-e.patch
- rsync-hardening-0027-CVE-2026-43619-syscall-add-symlink-race-safe-do_-_at-wrappers-and-h.patch
- rsync-hardening-0028-CVE-2026-43619-util1-syscall-secure-copy_file-source-dest-opens-bar.patch
- rsync-hardening-0029-CVE-2026-43619-testsuite-end-to-end-regression-test-for-chdir-symli.patch
- rsync-hardening-0030-CVE-2026-43618-token-harden-compressed-token-decoding-against-integ.patch
- rsync-hardening-0031-CVE-2026-43618-testsuite-cover-refuse-options-compress-for-the-daem.patch
- rsync-hardening-0032-CVE-2026-43620-receiver-add-parent_ndx-0-guard-mirroring-797e17f.patch
- rsync-hardening-0033-CVE-2026-43617-clientserver-fix-hostname-ACL-bypass-when-using-daem.patch
- rsync-hardening-0034-CVE-2026-43618-defence-in-depth-bound-wire-supplied-counts-and-leng.patch
- rsync-hardening-0035-CVE-2026-43618-defence-in-depth-guard-cumulative-snprintf-against-l.patch
- rsync-hardening-0036-CVE-2026-43620-defence-in-depth-receiver-block-index-bounds-read_de.patch
- rsync-hardening-0037-ci-add-Ubuntu-22.04-and-AlmaLinux-8-workflows-for-ba.patch
- rsync-hardening-0039-Fix-flaky-hardlinks-test.patch
- rsync-hardening-0040-rsync.h-lower-MAX_WIRE_DEL_STAT-to-avoid-signed-int-.patch
- rsync-hardening-0041-CVE-2026-45232-socket-reject-over-long-proxy-response-line.patch
- rsync-hardening-0042-main-reject-hyphen-prefixed-remote-shell-hostnames.patch
- rsync-hardening-0043-util1-handle-out-of-range-times-in-timestring.patch
- Replaced patches:
- rsync-no-libattr.patch
- > rsync-hardening-0005-configure.ac-check-for-xattr-support-both-in-libc-an.patch
- rsync341-gcc15-bool.patch
- > rsync-hardening-0001-bool-is-a-keyword-in-C23.patch
- rsync-CVE-2025-10158.patch
- > rsync-hardening-0008-CVE-2025-10158-fixed-an-invalid-access-to-files-array.patch
- rsync-CVE-2026-41035.patch
- > rsync-hardening-0017-CVE-2026-41035-xattrs-fixed-count-in-qsort.patch
- Patches not applied/required for openSUSE (left for reference, they are NOT missing neither
it was a mistake not to include them):
- rsync-hardening-0014-zlib-convert-K-R-function-definitions-to-ANSI-style
- rsync-hardening-0038-CI-fix-workflows-for-backport-testing
- sed
-
- Add CVE-2026-5958.patch
* Fix CVE-2026-5958 (bsc#1262144):
A TOCTOU race can allow to read attacker-controlled content and write
it to an unintended file
- selinux-policy
-
- Update to version 20250627+git385.2b2068bc0:
* Allow wireguard to setup DNS using dns_hatchet (bsc#1243148)
* Add fs_dontaudit_relabelfrom_tmpfs_files() interface
* Add sysnet_mount_file() interface
* Add sysnet_dontaudit_file_relabelto() interface
* Dontaudit tlp_t requesting dac_read_search (bsc#1265386)
- Update to version 20250627+git378.e27ad25be:
* Allow systemd-tmpfiles to adjust resource limits (bsc#1266328)
- Update to version 20250627+git376.3e51f6aea:
* Vibecode Gitlab CI smoke test for Leap 16.0+
* Add diffutils explicitly to .gitlab-ci
* Fix gitlab CI
* Allow virtqemud_t to call and transition into udev
* Dontaudit ps to read proc (bsc#1257527)
* Dontaudit ps permissions that tlp_t does not need (bsc#1257527)
* TLP uses ps aux to check for different services (bsc#1257527)
- Update to version 20250627+git368.7e5f975a1:
* Add boolean ntp_refclock_access (bsc#1262711)
* Add /var/log/ntp in ntp named filetrans interface (bsc#1262711)
* Allow cloud init to domtrans into ssh keygen (bsc#1249964)
- supportutils
-
+ Changes to version 3.2.14
- Integrates supportutils-scrub for data obfuscation, use -j (PED-7324, bsc#1259520, #302)
- santize env.txt (pr#301)
- ha.txt: Collect hacluster passwd entry (pr#299)
- Added systemd cat unit.service output (pr#294)
- Added softirqs to proc (bsc#1258069. pr#298)
- Check for /usr/lib/pam.d (pr#296)
- Ignore deprecated crash variable message (pr#297)
- Update supportconfig with note about bpftool (pr#285)
- Added /boot/grub2/grubenv (bsc#1257383, pr#292)
- Verify procps pkg (pr#293)
- scplugin.rc is restored in package 3.2.12.1 for continued compatibility.
There is no furture development for scplugin.rc. Use supportconfig.rc.
Package version 3.2.12.2 does not have scplugin.rc. Supportconfig
itself is the same for both versions. (bsc#1256709)
- suse-module-tools
-
- Update to version 16.0.65:
* Remove erofs from the list of blacklisted file systems
(jsc#PED-14573)
* weak-modules2: don't remove symlinks in the rpm --reinstall case
(bsc#1257055)
- suseconnect-ng
-
- Update version to 1.22.1:
- library: Allow clients to disable the token handling mechanism (jsc#SCC-801)
- Ensure updated system certs are included when creating HTTP client
connections (bsc#1268017, jsc#SCC-804)
- Update version to 1.22:
- InstallReleasePackage should consider zypperFilesystemRoot
(jsc#SCC-630).
- Restore exit code 71 handling when attempting keepalive and not
registered (bsc#1263772)
- Add collector support for gathering RKE2 & K3s kubernetes provider
info if enabled on a system (jsc#TEL-317)
- Add email address validation to SUSEConnect -e/--email option. (bsc#1197231)
- Add collector support for detecting if system is running pacemaker
(jsc#SCC-693)
- Avoid double slash at start of request URL path component.
(jsc#SCC-775)
- Use product identifier when finding product packages during
migrations. (jsc#SCC=758 bsc#1265410)
- Add opt in/out support for collectors (jsc#TEL-312)
- Update config parser for suseconnect to be YAML based (jsc#SCC-730)
- timezone
-
- Update to 2026b:
* British Columbia moved to permanent -07 on 2026-03-09. (bsc#1264965)
* Some more overflow bugs have been fixed in zic.
- Change SUSE-Public-Domain license to LicenseRef-SUSE-Public-Domain to
fix rpmlint errors
- Update to 2026a:
* Moldova has used EU transition times since 2022.
* The "right" TZif files are no longer installed by default.
* -DTZ_RUNTIME_LEAPS=0 disables runtime support for leap seconds.
* TZif files are no longer limited to 50 bytes of abbreviations.
* zic is no longer limited to 50 leap seconds.
* Several integer overflow bugs have been fixed.
- Changes from 2025c:
* update Baja California DST rules in 1953, 1961-1975
* An unset TZ is no longer invalid when /etc/localtime is
missing, and is abbreviated "UTC" not "-00". This reverts to
2024b behavior
* tzset etc. are now more cautious about questionable TZ settings.
* tzset etc. now treat ' ' like '_' in time zone abbreviations
* tzfree now preserves errno, consistently with POSIX.1-2024 ‘free’.
* zic has new options inspired by FreeBSD. ‘-D’ skips creation of
output ancestor directories, ‘-m MODE’ sets output files’ mode,
and ‘-u OWNER[:GROUP]’ sets output files’ owner and group.
* multiple changes visible to developers
- Use "REDO=posix_right" to keep installing "right" TZif files.
- zypper
-
n/a