SUSE-SU-2025:20853-1

Source
https://www.suse.com/support/update/announcement/2025/suse-su-202520853-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:20853-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2025:20853-1
Upstream
Related
Published
2025-10-17T11:57:06Z
Modified
2026-03-23T04:51:02.721916Z
Summary
Security update for open-vm-tools
Details

This update for open-vm-tools fixes the following issues:

Update to open-vm-tools 13.0.5 based on build 24915695. (bsc#1250692):

Please refer to the Release Notes at https://github.com/vmware/open-vm-tools/blob/stable-13.0.5/ReleaseNotes.md.

The granular changes that have gone into the open-vm-tools 13.0.5 release are in the ChangeLog at

https://github.com/vmware/open-vm-tools/blob/stable-13.0.5/open-vm-tools/ChangeLog.

There are no new features in the open-vm-tools 13.0.5 release. This is primarily a maintenance release that addresses a security issue.

This release resolves and includes the patch for CVE-2025-41244. For more information on this vulnerability and its impact on Broadcom products, see VMSA-2025-0015.

A minor enhancement has been made for Guest OS Customization. The DeployPkg plugin has been updated to use "systemctl reboot", if available.

For a more complete list of issues addressed in this release, see the What's New and Resolved Issues section of the Release Notes.

References

Affected packages

SUSE:Linux Micro 6.0 / open-vm-tools

Package

Name
open-vm-tools
Purl
pkg:rpm/suse/open-vm-tools&distro=SUSE%20Linux%20Micro%206.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
13.0.5-1.1

Ecosystem specific

{
    "binaries": [
        {
            "libvmtools0": "13.0.5-1.1",
            "open-vm-tools": "13.0.5-1.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:20853-1.json"