Avatar photo
By: ncutler@suse.com

April 20, 2023 12:06 pm

2,645 views

A brief look at SUSE’s CVE tracking process for automotive

What is a CVE? When a security vulnerability in a given software package becomes known, a response must be mounted in order to minimize the probability of malicious actors gaining access to protected computer systems and networks. For serious vulnerabilities, the response involves a number of entities working together, motivated by the common interest of […]

Read More


Avatar photo
By: Marcus Meissner

October 15, 2020 3:16 pm

4,748 views

SUSE Releases Fixes for BleedingTooth Vulnerabilities

Yesterday evening, Google and Intel published a new set of software vulnerabilities that affect machines running Linux Kernels that use Bluetooth. The set of vulnerabilities, called BleedingTooth, impact SUSE Linux Enterprise systems with enabled Bluetooth hardware. There are 3 separate issues bundled into this set: CVE-2020-24490 (BadVibes): A heap overflow when processing extended advertising report […]

Read More


Avatar photo
By: Jason Phippen

April 24, 2019 11:00 am

5,217 views

The DevOps Edge with SUSE Manager

SUSE Manager brings the power of DevOps to your enterprise Linux environment.   DevOps is an IT management philosophy that requires speed, efficiency, and confidence. A DevOps environment is constantly evolving—containers spin up, new applications appear, tools are tested, and updates happen—all without stoppages or significant downtime. The professionals who work in […]

Read More


Avatar photo
By: Jason Phippen

January 15, 2019 6:11 pm

9,630 views

Managing compliance for Linux systems with SUSE Manager

Many industries and governments require compliance with security standards to ensure security, identity, confidentiality, and data integrity. These standards specify a minimum security level and also mandate measures such as logging and auditing to reveal any hints of unauthorized use. Some of the most widely adopted standards are: Sarbanes-Oxley (SOX)—a US standard intended to […]

Read More


Avatar photo
By: Marcus Meissner

September 5, 2017 8:33 pm

6,789 views

Our CVE Pages – self help to security issues in SUSE Linux Enterprise

SUSE CVE Pages SUSE offers various self-service options for getting information on Security Issues. One of these self-service options that are intended for human consumption are our CVE Pages. For every CVE that might be related to our products we provide a webpage with our current status. These pages cover SUSE Enterprise products, and also […]

Read More


Avatar photo
By: Colin Hamilton

March 31, 2017 10:20 am

12,310 views

Security Vulnerability Scanners on Enterprise Linux

Colin Hamilton coming at you again from the SUSE team. In this post I want to discuss security vulnerability scanners and their role in an Enterprise Linux environment like SUSE. This role is a common pitfall I've seen that lead customers to our support team. So what's the problem? Well, vulnerability scanners are kinda dumb. […]

Read More


Avatar photo
By: SUSE

January 16, 2017 9:17 am

10,484 views

SUSE will move to CVSS v3.0

One aspect of IT security is risk assessment and risk management. Newly announced or discovered vulnerabilities need to be evaluated and put into context to understand the impact they have. A widely-used framework to measure such issues is the Common Vulnerability Scoring System (CVSS). In practice currently two versions - CVSS v2 released in 2007 […]

Read More


Avatar photo
By: Rich Paredes

August 4, 2015 11:42 am

5,435 views

Stay Up On Latest Security Vulnerabilities

Staying updated on the latest security vulnerabilities can be daunting which can understandably lead you to ask whether a particular version of SLES is vulnerable. The first thing to note when you get a security notification, for example from https://cve.mitre.org, https://nvd.nist.gov, or even by word of mouth, is the CVE identifier […]

Read More