SUSE Linux has recently released updates for Opentofu, Kyverno, and ChromeDriver, addressing various security vulnerabilities. The updates are classified as moderate in severity and are available for openSUSE Tumbleweed.
- Announcement ID: openSUSE-SU-2025:15030-1
- Addresses three vulnerabilities:
- CVE-2024-45336 (CVSS Score: 5.9)
- CVE-2024-45341 (CVSS Score: 4.2)
- CVE-2025-22866 (CVSS Score: 5.3)
- Package includes Opentofu version 1.9.1-1.1.
2. Kyverno (version 1.14.0-1.1):
- Announcement ID: openSUSE-SU-2025:15029-1
- Addresses one critical vulnerability:
- CVE-2025-22871 (CVSS Score: 9.1)
- Package includes Kyverno and its completion packages for various shell environments.
3. ChromeDriver (version 135.0.7049.95-1.1):
- Announcement ID: openSUSE-SU-2025:15027-1
- Addresses two vulnerabilities:
- CVE-2025-3619
- CVE-2025-3620
- Package includes ChromeDriver and its corresponding Chromium version.
- Users are encouraged to install these updates to ensure their systems remain secure from the identified vulnerabilities.
- For further details, users can refer to the specific CVE references provided in the update announcements.
Summary of Updates:
1. Opentofu (version 1.9.1-1.1):- Announcement ID: openSUSE-SU-2025:15030-1
- Addresses three vulnerabilities:
- CVE-2024-45336 (CVSS Score: 5.9)
- CVE-2024-45341 (CVSS Score: 4.2)
- CVE-2025-22866 (CVSS Score: 5.3)
- Package includes Opentofu version 1.9.1-1.1.
2. Kyverno (version 1.14.0-1.1):
- Announcement ID: openSUSE-SU-2025:15029-1
- Addresses one critical vulnerability:
- CVE-2025-22871 (CVSS Score: 9.1)
- Package includes Kyverno and its completion packages for various shell environments.
3. ChromeDriver (version 135.0.7049.95-1.1):
- Announcement ID: openSUSE-SU-2025:15027-1
- Addresses two vulnerabilities:
- CVE-2025-3619
- CVE-2025-3620
- Package includes ChromeDriver and its corresponding Chromium version.
Additional Information:
- All updates are available on the General Availability (GA) media of openSUSE Tumbleweed.- Users are encouraged to install these updates to ensure their systems remain secure from the identified vulnerabilities.
- For further details, users can refer to the specific CVE references provided in the update announcements.
Conclusion:
These updates reflect SUSE's commitment to maintaining system security and addressing vulnerabilities promptly. Users should remain vigilant and keep their systems updated to mitigate potential risks associated with these issuesOpentofu, Kyverno, ChromeDriver updates for SUSE
SUSE Linux has been updated with security enhancements for Opentofu, Kyverno, and ChromeDriver:
openSUSE-SU-2025:15030-1: moderate: opentofu-1.9.1-1.1 on GA media
openSUSE-SU-2025:15029-1: moderate: kyverno-1.14.0-1.1 on GA media
openSUSE-SU-2025:15027-1: moderate: chromedriver-135.0.7049.95-1.1 on GA mediaOpentofu, Kyverno, ChromeDriver updates for SUSE @ Linux Compatible