openSUSE-SU-2026:20888-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:20888-1.json
JSON Data
https://api.osv.dev/v1/vulns/openSUSE-SU-2026:20888-1
Upstream
Related
Published
2026-06-02T11:18:33Z
Modified
2026-06-04T09:00:09Z
Summary
Security update for apptainer
Details

This update for apptainer fixes the following issues:

Changes in apptainer:

  • CVE-2026-39821: Update golang.org/x/net to 0.55.0. (bsc#1266656)

  • Add improved handling of suid-starter:

    • Add system group apptainer
    • Make sure, only users belonging to this group are able to run the application.
    • Document this in a README and point user to it if execution fails. Building of the 'suid-root' starter is still optional.
References

Affected packages