SUSE Security Advisories · December 2024 — SUSE Security Advisories
8 advisories 8 CVEs

SUSE-SU-* / openSUSE-SU-* / Rancher errata for 2024-12. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

Advisories

OPENSUSE-SU-2024:0413-1

openSUSE2024-12-21

Security update for python-python-sql

CVEs:CVE-2024-9774

Affected products

ProductStatusVendorPackageEcosystem
python311-python-sql-1.5.1-bp155.3.6.1.noarch as component of openSUSE Leap 15.5 affected SUSE
python311-python-sql-1.5.1-bp155.3.6.1.noarch as component of SUSE Package Hub 15 SP5 affected SUSE
python311-python-sql-1.5.1-bp156.2.6.1.noarch as component of openSUSE Leap 15.6 affected SUSE
python311-python-sql-1.5.1-bp156.2.6.1.noarch as component of SUSE Package Hub 15 SP6 affected SUSE
python3-python-sql-1.5.1-bp155.3.6.1.noarch as component of openSUSE Leap 15.5 affected SUSE
python3-python-sql-1.5.1-bp155.3.6.1.noarch as component of SUSE Package Hub 15 SP5 affected SUSE
Upstream advisory

OPENSUSE-SU-2024:0417-1

openSUSEHIGH2024-12-18

Security update for chromium

CVEs:CVE-2024-12693

Affected products

ProductStatusVendorPackageEcosystem
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
Upstream advisory

OPENSUSE-SU-2024:0417-1

openSUSEHIGH2024-12-18

Security update for chromium

CVEs:CVE-2024-12694

Affected products

ProductStatusVendorPackageEcosystem
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
Upstream advisory

OPENSUSE-SU-2024:0417-1

openSUSEHIGH2024-12-18

Security update for chromium

CVEs:CVE-2024-12695

Affected products

ProductStatusVendorPackageEcosystem
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
Upstream advisory

OPENSUSE-SU-2024:0417-1

openSUSEHIGH2024-12-18

Security update for chromium

CVEs:CVE-2024-12692

Affected products

ProductStatusVendorPackageEcosystem
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromedriver-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromium-131.0.6778.204-bp156.2.65.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
Upstream advisory

OPENSUSE-SU-2024:0405-1

openSUSEHIGH2024-12-03

Security update for chromium

CVEs:CVE-2024-12053

Affected products

ProductStatusVendorPackageEcosystem
chromedriver-131.0.6778.108-bp155.2.147.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
chromedriver-131.0.6778.108-bp155.2.147.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromedriver-131.0.6778.108-bp155.2.147.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
chromedriver-131.0.6778.108-bp155.2.147.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromedriver-131.0.6778.108-bp156.2.59.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
chromedriver-131.0.6778.108-bp156.2.59.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromedriver-131.0.6778.108-bp156.2.59.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
chromedriver-131.0.6778.108-bp156.2.59.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromium-131.0.6778.108-bp155.2.147.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
chromium-131.0.6778.108-bp155.2.147.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromium-131.0.6778.108-bp155.2.147.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
chromium-131.0.6778.108-bp155.2.147.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
chromium-131.0.6778.108-bp156.2.59.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
chromium-131.0.6778.108-bp156.2.59.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
chromium-131.0.6778.108-bp156.2.59.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
chromium-131.0.6778.108-bp156.2.59.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
Upstream advisory

OPENSUSE-SU-2024:0400-1

openSUSE2024-12-02

Security update for nanopb

CVEs:CVE-2024-53984

Affected products

ProductStatusVendorPackageEcosystem
libprotobuf-nanopb0-0.4.6-bp156.4.3.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
libprotobuf-nanopb0-0.4.6-bp156.4.3.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
libprotobuf-nanopb0-0.4.6-bp156.4.3.1.i586 as component of openSUSE Leap 15.6 affected SUSE
libprotobuf-nanopb0-0.4.6-bp156.4.3.1.i586 as component of SUSE Package Hub 15 SP6 affected SUSE
libprotobuf-nanopb0-0.4.6-bp156.4.3.1.ppc64le as component of openSUSE Leap 15.6 affected SUSE
libprotobuf-nanopb0-0.4.6-bp156.4.3.1.ppc64le as component of SUSE Package Hub 15 SP6 affected SUSE
libprotobuf-nanopb0-0.4.6-bp156.4.3.1.s390x as component of openSUSE Leap 15.6 affected SUSE
libprotobuf-nanopb0-0.4.6-bp156.4.3.1.s390x as component of SUSE Package Hub 15 SP6 affected SUSE
libprotobuf-nanopb0-0.4.6-bp156.4.3.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
libprotobuf-nanopb0-0.4.6-bp156.4.3.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
nanopb-devel-0.4.6-bp156.4.3.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
nanopb-devel-0.4.6-bp156.4.3.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
nanopb-devel-0.4.6-bp156.4.3.1.i586 as component of openSUSE Leap 15.6 affected SUSE
nanopb-devel-0.4.6-bp156.4.3.1.i586 as component of SUSE Package Hub 15 SP6 affected SUSE
nanopb-devel-0.4.6-bp156.4.3.1.ppc64le as component of openSUSE Leap 15.6 affected SUSE
nanopb-devel-0.4.6-bp156.4.3.1.ppc64le as component of SUSE Package Hub 15 SP6 affected SUSE
nanopb-devel-0.4.6-bp156.4.3.1.s390x as component of openSUSE Leap 15.6 affected SUSE
nanopb-devel-0.4.6-bp156.4.3.1.s390x as component of SUSE Package Hub 15 SP6 affected SUSE
nanopb-devel-0.4.6-bp156.4.3.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
nanopb-devel-0.4.6-bp156.4.3.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
nanopb-source-0.4.6-bp156.4.3.1.noarch as component of openSUSE Leap 15.6 affected SUSE
nanopb-source-0.4.6-bp156.4.3.1.noarch as component of SUSE Package Hub 15 SP6 affected SUSE
Upstream advisory

OPENSUSE-SU-2024:0396-1

openSUSECRITICAL2024-12-02

Security update for radare2

CVEs:CVE-2024-29645

Affected products

ProductStatusVendorPackageEcosystem
radare2-5.9.8-bp155.2.3.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
radare2-5.9.8-bp155.2.3.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-5.9.8-bp155.2.3.1.i586 as component of openSUSE Leap 15.5 affected SUSE
radare2-5.9.8-bp155.2.3.1.i586 as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-5.9.8-bp155.2.3.1.ppc64le as component of openSUSE Leap 15.5 affected SUSE
radare2-5.9.8-bp155.2.3.1.ppc64le as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-5.9.8-bp155.2.3.1.s390x as component of openSUSE Leap 15.5 affected SUSE
radare2-5.9.8-bp155.2.3.1.s390x as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-5.9.8-bp155.2.3.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
radare2-5.9.8-bp155.2.3.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-5.9.8-bp156.4.3.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
radare2-5.9.8-bp156.4.3.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
radare2-5.9.8-bp156.4.3.1.ppc64le as component of openSUSE Leap 15.6 affected SUSE
radare2-5.9.8-bp156.4.3.1.ppc64le as component of SUSE Package Hub 15 SP6 affected SUSE
radare2-5.9.8-bp156.4.3.1.s390x as component of openSUSE Leap 15.6 affected SUSE
radare2-5.9.8-bp156.4.3.1.s390x as component of SUSE Package Hub 15 SP6 affected SUSE
radare2-5.9.8-bp156.4.3.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
radare2-5.9.8-bp156.4.3.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
radare2-devel-5.9.8-bp155.2.3.1.aarch64 as component of openSUSE Leap 15.5 affected SUSE
radare2-devel-5.9.8-bp155.2.3.1.aarch64 as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-devel-5.9.8-bp155.2.3.1.i586 as component of openSUSE Leap 15.5 affected SUSE
radare2-devel-5.9.8-bp155.2.3.1.i586 as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-devel-5.9.8-bp155.2.3.1.ppc64le as component of openSUSE Leap 15.5 affected SUSE
radare2-devel-5.9.8-bp155.2.3.1.ppc64le as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-devel-5.9.8-bp155.2.3.1.s390x as component of openSUSE Leap 15.5 affected SUSE
radare2-devel-5.9.8-bp155.2.3.1.s390x as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-devel-5.9.8-bp155.2.3.1.x86_64 as component of openSUSE Leap 15.5 affected SUSE
radare2-devel-5.9.8-bp155.2.3.1.x86_64 as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-devel-5.9.8-bp156.4.3.1.aarch64 as component of openSUSE Leap 15.6 affected SUSE
radare2-devel-5.9.8-bp156.4.3.1.aarch64 as component of SUSE Package Hub 15 SP6 affected SUSE
radare2-devel-5.9.8-bp156.4.3.1.ppc64le as component of openSUSE Leap 15.6 affected SUSE
radare2-devel-5.9.8-bp156.4.3.1.ppc64le as component of SUSE Package Hub 15 SP6 affected SUSE
radare2-devel-5.9.8-bp156.4.3.1.s390x as component of openSUSE Leap 15.6 affected SUSE
radare2-devel-5.9.8-bp156.4.3.1.s390x as component of SUSE Package Hub 15 SP6 affected SUSE
radare2-devel-5.9.8-bp156.4.3.1.x86_64 as component of openSUSE Leap 15.6 affected SUSE
radare2-devel-5.9.8-bp156.4.3.1.x86_64 as component of SUSE Package Hub 15 SP6 affected SUSE
radare2-zsh-completion-5.9.8-bp155.2.3.1.noarch as component of openSUSE Leap 15.5 affected SUSE
radare2-zsh-completion-5.9.8-bp155.2.3.1.noarch as component of SUSE Package Hub 15 SP5 affected SUSE
radare2-zsh-completion-5.9.8-bp156.4.3.1.noarch as component of openSUSE Leap 15.6 affected SUSE
radare2-zsh-completion-5.9.8-bp156.4.3.1.noarch as component of SUSE Package Hub 15 SP6 affected SUSE
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.