Tomcat, Python RKE, and more updates for SUSE

Published by

SUSE Linux has rolled out a significant set of security updates affecting various software packages, including Tomcat, Python Django, RKE, and several Java versions. The updates include the following:

1. Tomcat 10: A crucial security update (SUSE-SU-2025:1537-1) addresses two vulnerabilities (CVE-2025-31650 and CVE-2025-31651) with critical CVSS scores of 8.7. This update is applicable to multiple SUSE Linux Enterprise versions, including Server, SAP Applications, and High-Performance Computing editions.

2. Python Django: The moderate update (openSUSE-SU-2025:15082-1) for Python's Django framework resolves a vulnerability (CVE-2025-32873) with a CVSS score of 5.9, impacting openSUSE Tumbleweed.

3. RKE: The RKE update (openSUSE-SU-2025:15083-1) addresses a moderate vulnerability (CVE-2025-1974) relevant for openSUSE Tumbleweed.

4. Java (Versions 11, 17, and 21): Multiple updates for Java, including moderate fixes for vulnerabilities (CVE-2025-21587 and CVE-2025-30698) across different Java versions (11, 17, and 21) have been released, with CVSS scores ranging from 5.6 up to 9.1.

5. Other Packages: Additional updates include fixes for `libxmp-devel`, `golang-github-prometheus-node_exporter`, and `dirmngr`, each addressing various vulnerabilities with moderate severity ratings.

Each of these updates is available for installation through SUSE's recommended package management tools such as YaST or zypper. Users are encouraged to apply these updates to maintain system security and integrity.

In addition to these immediate updates, SUSE may continue to enhance its security offerings and provide additional resources for users to manage vulnerabilities effectively. Regular updates not only help in patching known issues but also in fortifying systems against emerging threats, which is crucial in today's evolving cybersecurity landscape

Tomcat, Python RKE, and more updates for SUSE

SUSE Linux has implemented a series of security updates, which include tomcat10, python311-Django4-4.2.21-1.1, rke2-1.32-1.32.4+rke2r1, libxmp-devel-4.6.3-1.1, java-21-openj9-21.0.7.0-1.1, java-17-openj9-17.0.15.0-1.1, and golang-github-prometheus-node_exporter-1.9.1-3.1:

SUSE-SU-2025:1537-1: important: Security update for tomcat10
openSUSE-SU-2025:15082-1: moderate: python311-Django4-4.2.21-1.1 on GA media
openSUSE-SU-2025:15083-1: moderate: rke2-1.32-1.32.4+rke2r1-1.1 on GA media
openSUSE-SU-2025:15081-1: moderate: libxmp-devel-4.6.3-1.1 on GA media
openSUSE-SU-2025:15080-1: moderate: java-21-openj9-21.0.7.0-1.1 on GA media
openSUSE-SU-2025:15078-1: moderate: java-17-openj9-17.0.15.0-1.1 on GA media
openSUSE-SU-2025:15075-1: moderate: golang-github-prometheus-node_exporter-1.9.1-3.1 on GA media
openSUSE-SU-2025:15077-1: moderate: java-11-openj9-11.0.27.0-1.1 on GA media
openSUSE-SU-2025:15076-1: moderate: dirmngr-2.5.6-1.1 on GA media

Tomcat, Python RKE, and more updates for SUSE @ Linux Compatible