SUSE Security Advisories · May 2006 — SUSE Security Advisories
9 advisories 9 CVEs 1 EXPLOITED

SUSE-SU-* / openSUSE-SU-* / Rancher errata for 2006-05. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

OPENSUSE-SU-2024:11461-1

openSUSEExploitedCISA KEV listedCRITICAL2006-05-30

libtiff-devel-32bit-4.3.0-1.3 on GA media

CVEs:CVE-2006-2656

Affected products

ProductStatusVendorPackageEcosystem
libtiff5-32bit-4.3.0-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libtiff5-32bit-4.3.0-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libtiff5-32bit-4.3.0-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libtiff5-32bit-4.3.0-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libtiff5-4.3.0-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libtiff5-4.3.0-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libtiff5-4.3.0-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libtiff5-4.3.0-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libtiff-devel-32bit-4.3.0-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libtiff-devel-32bit-4.3.0-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libtiff-devel-32bit-4.3.0-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libtiff-devel-32bit-4.3.0-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
libtiff-devel-4.3.0-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
libtiff-devel-4.3.0-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
libtiff-devel-4.3.0-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
libtiff-devel-4.3.0-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
tiff-4.3.0-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE
tiff-4.3.0-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE
tiff-4.3.0-1.3.s390x as component of openSUSE Tumbleweed affected SUSE
tiff-4.3.0-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:11073-1

openSUSEWeaponized exploitCRITICAL2006-05-03

nagios-4.4.6-2.5 on GA media

CVEs:CVE-2006-2162

Affected products

ProductStatusVendorPackageEcosystem
nagios-4.4.6-2.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
nagios-4.4.6-2.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
nagios-4.4.6-2.5.s390x as component of openSUSE Tumbleweed affected SUSE
nagios-4.4.6-2.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
nagios-contrib-4.4.6-2.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
nagios-contrib-4.4.6-2.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
nagios-contrib-4.4.6-2.5.s390x as component of openSUSE Tumbleweed affected SUSE
nagios-contrib-4.4.6-2.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
nagios-devel-4.4.6-2.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
nagios-devel-4.4.6-2.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
nagios-devel-4.4.6-2.5.s390x as component of openSUSE Tumbleweed affected SUSE
nagios-devel-4.4.6-2.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
nagios-theme-exfoliation-4.4.6-2.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
nagios-theme-exfoliation-4.4.6-2.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
nagios-theme-exfoliation-4.4.6-2.5.s390x as component of openSUSE Tumbleweed affected SUSE
nagios-theme-exfoliation-4.4.6-2.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
nagios-www-4.4.6-2.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
nagios-www-4.4.6-2.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
nagios-www-4.4.6-2.5.s390x as component of openSUSE Tumbleweed affected SUSE
nagios-www-4.4.6-2.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
nagios-www-dch-4.4.6-2.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
nagios-www-dch-4.4.6-2.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
nagios-www-dch-4.4.6-2.5.s390x as component of openSUSE Tumbleweed affected SUSE
nagios-www-dch-4.4.6-2.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10685-1

openSUSEWeaponized exploitCRITICAL2006-05-01

clamav-0.103.3-1.4 on GA media

CVEs:CVE-2006-1989

Affected products

ProductStatusVendorPackageEcosystem
clamav-0.103.3-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
clamav-0.103.3-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
clamav-0.103.3-1.4.s390x as component of openSUSE Tumbleweed affected SUSE
clamav-0.103.3-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
clamav-devel-0.103.3-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
clamav-devel-0.103.3-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
clamav-devel-0.103.3-1.4.s390x as component of openSUSE Tumbleweed affected SUSE
clamav-devel-0.103.3-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
clamav-milter-0.103.3-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
clamav-milter-0.103.3-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
clamav-milter-0.103.3-1.4.s390x as component of openSUSE Tumbleweed affected SUSE
clamav-milter-0.103.3-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
libclamav9-0.103.3-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
libclamav9-0.103.3-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
libclamav9-0.103.3-1.4.s390x as component of openSUSE Tumbleweed affected SUSE
libclamav9-0.103.3-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
libfreshclam2-0.103.3-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
libfreshclam2-0.103.3-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
libfreshclam2-0.103.3-1.4.s390x as component of openSUSE Tumbleweed affected SUSE
libfreshclam2-0.103.3-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:11290-1

openSUSEEPSS <= 49%HIGH2006-05-05

libfpm_pb0-1.2.4-2.14 on GA media

CVEs:CVE-2006-2223

Affected products

ProductStatusVendorPackageEcosystem
libfpm_pb0-1.2.4-2.14.aarch64 as component of openSUSE Tumbleweed affected SUSE
libfpm_pb0-1.2.4-2.14.ppc64le as component of openSUSE Tumbleweed affected SUSE
libfpm_pb0-1.2.4-2.14.s390x as component of openSUSE Tumbleweed affected SUSE
libfpm_pb0-1.2.4-2.14.x86_64 as component of openSUSE Tumbleweed affected SUSE
libospf0-1.2.4-2.14.aarch64 as component of openSUSE Tumbleweed affected SUSE
libospf0-1.2.4-2.14.ppc64le as component of openSUSE Tumbleweed affected SUSE
libospf0-1.2.4-2.14.s390x as component of openSUSE Tumbleweed affected SUSE
libospf0-1.2.4-2.14.x86_64 as component of openSUSE Tumbleweed affected SUSE
libospfapiclient0-1.2.4-2.14.aarch64 as component of openSUSE Tumbleweed affected SUSE
libospfapiclient0-1.2.4-2.14.ppc64le as component of openSUSE Tumbleweed affected SUSE
libospfapiclient0-1.2.4-2.14.s390x as component of openSUSE Tumbleweed affected SUSE
libospfapiclient0-1.2.4-2.14.x86_64 as component of openSUSE Tumbleweed affected SUSE
libquagga_pb0-1.2.4-2.14.aarch64 as component of openSUSE Tumbleweed affected SUSE
libquagga_pb0-1.2.4-2.14.ppc64le as component of openSUSE Tumbleweed affected SUSE
libquagga_pb0-1.2.4-2.14.s390x as component of openSUSE Tumbleweed affected SUSE
libquagga_pb0-1.2.4-2.14.x86_64 as component of openSUSE Tumbleweed affected SUSE
libzebra1-1.2.4-2.14.aarch64 as component of openSUSE Tumbleweed affected SUSE
libzebra1-1.2.4-2.14.ppc64le as component of openSUSE Tumbleweed affected SUSE
libzebra1-1.2.4-2.14.s390x as component of openSUSE Tumbleweed affected SUSE
libzebra1-1.2.4-2.14.x86_64 as component of openSUSE Tumbleweed affected SUSE
quagga-1.2.4-2.14.aarch64 as component of openSUSE Tumbleweed affected SUSE
quagga-1.2.4-2.14.ppc64le as component of openSUSE Tumbleweed affected SUSE
quagga-1.2.4-2.14.s390x as component of openSUSE Tumbleweed affected SUSE
quagga-1.2.4-2.14.x86_64 as component of openSUSE Tumbleweed affected SUSE
quagga-devel-1.2.4-2.14.aarch64 as component of openSUSE Tumbleweed affected SUSE
quagga-devel-1.2.4-2.14.ppc64le as component of openSUSE Tumbleweed affected SUSE
quagga-devel-1.2.4-2.14.s390x as component of openSUSE Tumbleweed affected SUSE
quagga-devel-1.2.4-2.14.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10716-1

openSUSEEPSS <= 49%2006-05-28

dia-0.97.3-11.1 on GA media

CVEs:CVE-2006-2453

Affected products

ProductStatusVendorPackageEcosystem
dia-0.97.3-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
dia-0.97.3-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
dia-0.97.3-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
dia-0.97.3-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
dia-lang-0.97.3-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
dia-lang-0.97.3-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
dia-lang-0.97.3-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
dia-lang-0.97.3-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10716-1

openSUSEEPSS <= 49%CRITICAL2006-05-19

dia-0.97.3-11.1 on GA media

CVEs:CVE-2006-2480

Affected products

ProductStatusVendorPackageEcosystem
dia-0.97.3-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
dia-0.97.3-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
dia-0.97.3-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
dia-0.97.3-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
dia-lang-0.97.3-11.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
dia-lang-0.97.3-11.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
dia-lang-0.97.3-11.1.s390x as component of openSUSE Tumbleweed affected SUSE
dia-lang-0.97.3-11.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10863-1

openSUSEEPSS <= 49%CRITICAL2006-05-10

ioquake3-1.36+git.20210720-1.2 on GA media

CVEs:CVE-2006-2082

Affected products

ProductStatusVendorPackageEcosystem
ioquake3-1.36+git.20210720-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
ioquake3-1.36+git.20210720-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
ioquake3-1.36+git.20210720-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
ioquake3-1.36+git.20210720-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
ioquake3-devel-1.36+git.20210720-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
ioquake3-devel-1.36+git.20210720-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
ioquake3-devel-1.36+git.20210720-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
ioquake3-devel-1.36+git.20210720-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10863-1

openSUSEEPSS <= 49%CRITICAL2006-05-08

ioquake3-1.36+git.20210720-1.2 on GA media

CVEs:CVE-2006-2236

Affected products

ProductStatusVendorPackageEcosystem
ioquake3-1.36+git.20210720-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
ioquake3-1.36+git.20210720-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
ioquake3-1.36+git.20210720-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
ioquake3-1.36+git.20210720-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
ioquake3-devel-1.36+git.20210720-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
ioquake3-devel-1.36+git.20210720-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
ioquake3-devel-1.36+git.20210720-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
ioquake3-devel-1.36+git.20210720-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10139-1

openSUSEEPSS <= 49%HIGH2006-05-25

cron-4.2-65.4 on GA media

CVEs:CVE-2006-2607

Affected products

ProductStatusVendorPackageEcosystem
cron-4.2-65.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
cron-4.2-65.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
cron-4.2-65.4.s390x as component of openSUSE Tumbleweed affected SUSE
cron-4.2-65.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
cronie-1.5.0-65.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
cronie-1.5.0-65.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
cronie-1.5.0-65.4.s390x as component of openSUSE Tumbleweed affected SUSE
cronie-1.5.0-65.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
cronie-anacron-1.5.0-65.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
cronie-anacron-1.5.0-65.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
cronie-anacron-1.5.0-65.4.s390x as component of openSUSE Tumbleweed affected SUSE
cronie-anacron-1.5.0-65.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.