SUSE-SU-2026:3843-2

Source
https://www.suse.com/support/update/announcement/2026/suse-su-20263843-2/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:3843-2.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2026:3843-2
Published
2026-09-28T07:58:40Z
Modified
2026-09-28T16:00:43Z
Summary
Security update for suseconnect-ng
Details

This update for suseconnect-ng fixes the following issue:

  • Update version to 1.23.0:

    • Use product identifier for product migrations. (bsc#1268596)
    • Switch to using go1.26-openssl as the default Go version to install to support building the package (jsc#SCC-843, bsc#1268900).
    • Fix flag parsing so that unknown flags or options are flagged as an error and the usage message is displayed. (bsc#1159776)
    • InstallReleasePackage interactive/noninteractive handling should be consistent with DistUpgrade (bsc#1267478).
    • Add new optional rpm_packages collector, disabled by default, to collect list of installed SUSE vendored RPM packages. (jsc#TEL-298)
    • Allow deregsiter when subscribed regcode has expired (bsc#1270392, jsc#865)
References

Affected packages

SUSE:Linux Enterprise High Performance Computing 15 SP4-ESPOS
suseconnect-ng

Package

Name
suseconnect-ng
Purl
pkg:rpm/suse/suseconnect-ng&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-ESPOS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
1.23.0-150400.3.55.1

Ecosystem specific

{
    "binaries":  [
        {
            "libsuseconnect":  "1.23.0-150400.3.55.1",
            "suseconnect-ng":  "1.23.0-150400.3.55.1",
            "suseconnect-ruby-bindings":  "1.23.0-150400.3.55.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:3843-2.json"
SUSE:Linux Enterprise High Performance Computing 15 SP4-LTSS
suseconnect-ng

Package

Name
suseconnect-ng
Purl
pkg:rpm/suse/suseconnect-ng&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
1.23.0-150400.3.55.1

Ecosystem specific

{
    "binaries":  [
        {
            "libsuseconnect":  "1.23.0-150400.3.55.1",
            "suseconnect-ng":  "1.23.0-150400.3.55.1",
            "suseconnect-ruby-bindings":  "1.23.0-150400.3.55.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:3843-2.json"
SUSE:Linux Enterprise Server 15 SP4-LTSS
suseconnect-ng

Package

Name
suseconnect-ng
Purl
pkg:rpm/suse/suseconnect-ng&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP4-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
1.23.0-150400.3.55.1

Ecosystem specific

{
    "binaries":  [
        {
            "libsuseconnect":  "1.23.0-150400.3.55.1",
            "suseconnect-ng":  "1.23.0-150400.3.55.1",
            "suseconnect-ruby-bindings":  "1.23.0-150400.3.55.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:3843-2.json"
SUSE:Linux Enterprise Server for SAP Applications 15 SP4
suseconnect-ng

Package

Name
suseconnect-ng
Purl
pkg:rpm/suse/suseconnect-ng&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
1.23.0-150400.3.55.1

Ecosystem specific

{
    "binaries":  [
        {
            "libsuseconnect":  "1.23.0-150400.3.55.1",
            "suseconnect-ng":  "1.23.0-150400.3.55.1",
            "suseconnect-ruby-bindings":  "1.23.0-150400.3.55.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:3843-2.json"