SUSE Security Advisories · November 2008 — SUSE Security Advisories
19 advisories 19 CVEs 6 EXPLOITED

SUSE-SU-* / openSUSE-SU-* / Rancher errata for 2008-11. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 6 are already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

OPENSUSE-SU-2024:10601-1

openSUSEExploitedCISA KEV listedCRITICAL2008-11-13

MozillaThunderbird-91.1.1-1.1 on GA media

CVEs:CVE-2008-5021

Affected products

ProductStatusVendorPackageEcosystem
MozillaThunderbird-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10601-1

openSUSEExploitedCISA KEV listedCRITICAL2008-11-13

MozillaThunderbird-91.1.1-1.1 on GA media

CVEs:CVE-2008-5012

Affected products

ProductStatusVendorPackageEcosystem
MozillaThunderbird-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10601-1

openSUSEExploitedCISA KEV listedCRITICAL2008-11-13

MozillaThunderbird-91.1.1-1.1 on GA media

CVEs:CVE-2008-5014

Affected products

ProductStatusVendorPackageEcosystem
MozillaThunderbird-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10601-1

openSUSEExploitedCISA KEV listedHIGH2008-11-13

MozillaThunderbird-91.1.1-1.1 on GA media

CVEs:CVE-2008-5016

Affected products

ProductStatusVendorPackageEcosystem
MozillaThunderbird-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10601-1

openSUSEExploitedCISA KEV listedCRITICAL2008-11-13

MozillaThunderbird-91.1.1-1.1 on GA media

CVEs:CVE-2008-5022

Affected products

ProductStatusVendorPackageEcosystem
MozillaThunderbird-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10601-1

openSUSEExploitedCISA KEV listedCRITICAL2008-11-13

MozillaThunderbird-91.1.1-1.1 on GA media

CVEs:CVE-2008-5024

Affected products

ProductStatusVendorPackageEcosystem
MozillaThunderbird-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-common-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
MozillaThunderbird-translations-other-91.1.1-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:11461-1

openSUSEWeaponized exploitHIGH2008-11-25

libtiff-devel-32bit-4.3.0-1.3 on GA media

CVEs:CVE-2008-1586

Affected products

ProductStatusVendorPackageEcosystem
libtiff5-32bit-4.3.0-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libtiff5-32bit-4.3.0-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libtiff5-32bit-4.3.0-1.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
libtiff5-32bit-4.3.0-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libtiff5-4.3.0-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libtiff5-4.3.0-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libtiff5-4.3.0-1.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
libtiff5-4.3.0-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libtiff-devel-32bit-4.3.0-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libtiff-devel-32bit-4.3.0-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libtiff-devel-32bit-4.3.0-1.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
libtiff-devel-32bit-4.3.0-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libtiff-devel-4.3.0-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libtiff-devel-4.3.0-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libtiff-devel-4.3.0-1.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
libtiff-devel-4.3.0-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
tiff-4.3.0-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
tiff-4.3.0-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
tiff-4.3.0-1.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
tiff-4.3.0-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:11047-1

openSUSEWeaponized exploitMEDIUM2008-11-05

g3utils-1.2.1-6.2 on GA media

CVEs:CVE-2008-4936

Affected products

ProductStatusVendorPackageEcosystem
g3utils-1.2.1-6.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
g3utils-1.2.1-6.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
g3utils-1.2.1-6.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
g3utils-1.2.1-6.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
mgetty-1.2.1-6.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
mgetty-1.2.1-6.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
mgetty-1.2.1-6.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
mgetty-1.2.1-6.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
sendfax-1.2.1-6.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
sendfax-1.2.1-6.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
sendfax-1.2.1-6.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
sendfax-1.2.1-6.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10105-1

openSUSEActive exploitation (sightings)MEDIUM2008-11-13

gnutls-3.4.15-1.1 on GA media

CVEs:CVE-2008-4989

Affected products

ProductStatusVendorPackageEcosystem
gnutls-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
gnutls-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
gnutls-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
gnutls-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
gnutls-guile-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
gnutls-guile-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
gnutls-guile-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
gnutls-guile-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls30-32bit-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls30-32bit-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libgnutls30-32bit-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
libgnutls30-32bit-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls30-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls30-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libgnutls30-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
libgnutls30-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-dane0-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-dane0-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-dane0-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-dane0-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-dane-devel-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-dane-devel-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-dane-devel-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-dane-devel-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-devel-32bit-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-devel-32bit-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-devel-32bit-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-devel-32bit-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-devel-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-devel-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-devel-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-devel-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-openssl27-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-openssl27-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-openssl27-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-openssl27-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-openssl-devel-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-openssl-devel-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-openssl-devel-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
libgnutls-openssl-devel-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutlsxx28-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutlsxx28-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libgnutlsxx28-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
libgnutlsxx28-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutlsxx-devel-3.4.15-1.1.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libgnutlsxx-devel-3.4.15-1.1.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libgnutlsxx-devel-3.4.15-1.1.s390x as component of openSUSE Tumbleweed affected SUSE — —
libgnutlsxx-devel-3.4.15-1.1.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10228-1

openSUSEPoC exploitCRITICAL2008-11-20

python-libxml2-2.9.4-1.4 on GA media

CVEs:CVE-2008-4225

Affected products

ProductStatusVendorPackageEcosystem
libxml2-2-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-32bit-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-32bit-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-32bit-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-32bit-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-32bit-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-32bit-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-32bit-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-32bit-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-doc-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-doc-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-doc-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-doc-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-tools-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-tools-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-tools-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-tools-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
python-libxml2-2.9.4-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
python-libxml2-2.9.4-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
python-libxml2-2.9.4-1.4.s390x as component of openSUSE Tumbleweed affected SUSE — —
python-libxml2-2.9.4-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10228-1

openSUSEPoC exploitCRITICAL2008-11-20

python-libxml2-2.9.4-1.4 on GA media

CVEs:CVE-2008-4226

Affected products

ProductStatusVendorPackageEcosystem
libxml2-2-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-32bit-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-32bit-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-32bit-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-2-32bit-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-32bit-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-32bit-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-32bit-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-devel-32bit-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-doc-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-doc-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-doc-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-doc-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-tools-2.9.4-1.22.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libxml2-tools-2.9.4-1.22.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libxml2-tools-2.9.4-1.22.s390x as component of openSUSE Tumbleweed affected SUSE — —
libxml2-tools-2.9.4-1.22.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
python-libxml2-2.9.4-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
python-libxml2-2.9.4-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
python-libxml2-2.9.4-1.4.s390x as component of openSUSE Tumbleweed affected SUSE — —
python-libxml2-2.9.4-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10861-1

openSUSEEPSS <= 49%CRITICAL2008-11-21

imlib2-1.7.1-1.6 on GA media

CVEs:CVE-2008-5187

Affected products

ProductStatusVendorPackageEcosystem
imlib2-1.7.1-1.6.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
imlib2-1.7.1-1.6.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
imlib2-1.7.1-1.6.s390x as component of openSUSE Tumbleweed affected SUSE — —
imlib2-1.7.1-1.6.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
imlib2-devel-1.7.1-1.6.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
imlib2-devel-1.7.1-1.6.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
imlib2-devel-1.7.1-1.6.s390x as component of openSUSE Tumbleweed affected SUSE — —
imlib2-devel-1.7.1-1.6.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
imlib2-filters-1.7.1-1.6.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
imlib2-filters-1.7.1-1.6.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
imlib2-filters-1.7.1-1.6.s390x as component of openSUSE Tumbleweed affected SUSE — —
imlib2-filters-1.7.1-1.6.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
imlib2-loaders-1.7.1-1.6.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
imlib2-loaders-1.7.1-1.6.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
imlib2-loaders-1.7.1-1.6.s390x as component of openSUSE Tumbleweed affected SUSE — —
imlib2-loaders-1.7.1-1.6.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libImlib2-1-1.7.1-1.6.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libImlib2-1-1.7.1-1.6.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libImlib2-1-1.7.1-1.6.s390x as component of openSUSE Tumbleweed affected SUSE — —
libImlib2-1-1.7.1-1.6.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:11131-1

openSUSEEPSS <= 49%CRITICAL2008-11-17

optipng-0.7.7-2.3 on GA media

CVEs:CVE-2008-5101

Affected products

ProductStatusVendorPackageEcosystem
optipng-0.7.7-2.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
optipng-0.7.7-2.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
optipng-0.7.7-2.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
optipng-0.7.7-2.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:11418-1

openSUSEEPSS <= 49%2008-11-17

libevtlog-3_33-0-3.33.2-1.2 on GA media

CVEs:CVE-2008-5110

Affected products

ProductStatusVendorPackageEcosystem
libevtlog-3_33-0-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libevtlog-3_33-0-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libevtlog-3_33-0-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
libevtlog-3_33-0-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-curl-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-curl-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-curl-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-curl-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-devel-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-devel-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-devel-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-devel-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-geoip-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-geoip-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-geoip-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-geoip-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-java-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-java-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-java-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-java-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-mqtt-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-mqtt-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-mqtt-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-mqtt-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-python-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-python-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-python-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-python-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-redis-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-redis-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-redis-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-redis-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-smtp-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-smtp-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-smtp-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-smtp-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-snmp-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-snmp-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-snmp-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-snmp-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-sql-3.33.2-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-sql-3.33.2-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-sql-3.33.2-1.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
syslog-ng-sql-3.33.2-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10987-1

openSUSEEPSS <= 49%CRITICAL2008-11-10

libsamplerate-devel-0.2.1-1.3 on GA media

CVEs:CVE-2008-5008

Affected products

ProductStatusVendorPackageEcosystem
libsamplerate0-0.2.1-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate0-0.2.1-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate0-0.2.1-1.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate0-0.2.1-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate0-32bit-0.2.1-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate0-32bit-0.2.1-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate0-32bit-0.2.1-1.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate0-32bit-0.2.1-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate-devel-0.2.1-1.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate-devel-0.2.1-1.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate-devel-0.2.1-1.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
libsamplerate-devel-0.2.1-1.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:11492-1

openSUSEEPSS <= 49%HIGH2008-11-01

valgrind-3.17.0-2.3 on GA media

CVEs:CVE-2008-4865

Affected products

ProductStatusVendorPackageEcosystem
valgrind-3.17.0-2.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
valgrind-3.17.0-2.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
valgrind-3.17.0-2.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
valgrind-3.17.0-2.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
valgrind-32bit-3.17.0-2.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
valgrind-32bit-3.17.0-2.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
valgrind-32bit-3.17.0-2.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
valgrind-32bit-3.17.0-2.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
valgrind-devel-3.17.0-2.3.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
valgrind-devel-3.17.0-2.3.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
valgrind-devel-3.17.0-2.3.s390x as component of openSUSE Tumbleweed affected SUSE — —
valgrind-devel-3.17.0-2.3.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:11301-1

openSUSEEPSS <= 49%MEDIUM2008-11-06

rkhunter-1.4.6-5.6 on GA media

CVEs:CVE-2008-4982

Affected products

ProductStatusVendorPackageEcosystem
rkhunter-1.4.6-5.6.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
rkhunter-1.4.6-5.6.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
rkhunter-1.4.6-5.6.s390x as component of openSUSE Tumbleweed affected SUSE — —
rkhunter-1.4.6-5.6.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:10018-1

openSUSEEPSS <= 49%MEDIUM2008-11-18

tkman-2.2-157.2 on GA media

CVEs:CVE-2008-5137

Affected products

ProductStatusVendorPackageEcosystem
tkman-0:2.2-157.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
tkman-0:2.2-157.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
tkman-0:2.2-157.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
tkman-0:2.2-157.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
tkman-2.2-157.2.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
tkman-2.2-157.2.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
tkman-2.2-157.2.s390x as component of openSUSE Tumbleweed affected SUSE — —
tkman-2.2-157.2.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

OPENSUSE-SU-2024:11142-1

openSUSEEPSS <= 49%MEDIUM2008-11-18

libcryptmount-devel-2.18-1.7 on GA media

CVEs:CVE-2008-5138

Affected products

ProductStatusVendorPackageEcosystem
libcryptmount0-2.18-1.7.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount0-2.18-1.7.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount0-2.18-1.7.s390x as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount0-2.18-1.7.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount0-32bit-2.18-1.7.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount0-32bit-2.18-1.7.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount0-32bit-2.18-1.7.s390x as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount0-32bit-2.18-1.7.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount-devel-2.18-1.7.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount-devel-2.18-1.7.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount-devel-2.18-1.7.s390x as component of openSUSE Tumbleweed affected SUSE — —
libcryptmount-devel-2.18-1.7.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
pam_mount-2.18-1.7.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
pam_mount-2.18-1.7.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
pam_mount-2.18-1.7.s390x as component of openSUSE Tumbleweed affected SUSE — —
pam_mount-2.18-1.7.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
pam_mount-32bit-2.18-1.7.aarch64 as component of openSUSE Tumbleweed affected SUSE — —
pam_mount-32bit-2.18-1.7.ppc64le as component of openSUSE Tumbleweed affected SUSE — —
pam_mount-32bit-2.18-1.7.s390x as component of openSUSE Tumbleweed affected SUSE — —
pam_mount-32bit-2.18-1.7.x86_64 as component of openSUSE Tumbleweed affected SUSE — —
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.