SUSE-SU-2026:2241-1

Source
https://www.suse.com/support/update/announcement/2026/suse-su-20262241-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:2241-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2026:2241-1
Upstream
Related
Published
2026-06-03T13:58:05Z
Modified
2026-06-04T09:00:07Z
Summary
Security update 5.0.8 for Multi-Linux Manager Client Tools
Details

This update fixes the following issues:

prometheus-postgres_exporter:

  • Security Fixes:

    • CVE-2022-21698: Fixed denial of service using InstrumentHandlerCounter (bsc#1248699)

golang-github-QubitProducts-exporter_exporter:

  • Security Fixes:

    • CVE-2022-21698: Fixed denial of service using InstrumentHandlerCounter (bsc#1248707)

golang-github-prometheus-node_exporter:

  • Highlights of changes and bug fixes:

    • Packaging changes:

      • Pinned golang.org/x/net to v0.37.0 for Go 1.22 compatibility
    • Version 1.10.2:

      • Fixed typo in Zswap metric name (meminfo)
    • Version 1.10.1:

      • Fixed mount points being collected multiple times (filesystem)
      • Refactored mountinfo parsing (bsc#1261810)
      • Added Zswap/Zswapped metrics (meminfo)
    • Version 1.10.0:

      • New collectors: PCIe devices, swaps
      • Added systemd virtualization metrics, AIX metrics
      • WiFi packet metrics, additional PCIe and TLB metrics
      • Changed mdadm to use sysfs, added erofs to excluded filesystems
      • Fixed bugs: cpufreq collector, ethtool metrics

spacecmd:

  • Version 5.0.16-0:

    • Update translation strings

uyuni-tools:

  • Version 0.1.39-0:

    • mgrpxy ssh tuning should happen before crypto policies (bsc#1254619)
    • Fix default value for helm registry (bsc#1258927).
    • Use static supportconfig name to avoid dynamic search (bsc#1257941)
    • Do not nest multiple tarball files and instead collect all files into one tarball (bsc#1252964)
    • Show where final tarball was generated (bsc#1259208)
References

Affected packages