Security update for python-PyNaCl
| Announcement ID: | SUSE-SU-2026:21431-1 |
|---|---|
| Release Date: | 2026-04-29T14:15:43Z |
| Rating: | moderate |
| References: | |
| Cross-References: | |
| CVSS scores: |
|
| Affected Products: |
|
An update that solves one vulnerability, contains one feature and has two fixes can now be installed.
Description:
This update for python-PyNaCl fixes the following issues:
Security fixes:
- CVE-2025-69277: incorrect validation of elliptic curve points certain custom cryptography or untrusted data to crypto_core_ed25519_is_valid_point function (bsc#1255764).
Other fixes:
- update to 1.6.2 (bsc#1255764, CVE-2025-69277):
- Updated libsodium to 1.0.20-stable (2025-12-31 build)
- Update to 1.6.1
- The
MAKEenvironment variable can now be used to specify themakebinary that should be used in the build process. - update to 1.6.0:
- BACKWARDS INCOMPATIBLE: Removed support for Python 3.6 and 3.7.
- Added support for the low level AEAD AES bindings.
- Added support for crypto_core_ed25519_from_uniform.
- Update libsodium to 1.0.20-stable (2025-08-27 build).
- Added support for free-threaded Python 3.14.
- Added support for Windows on ARM wheels.
- Update in SLE-15 (bsc#1199282, jsc#PM-3243, jsc#SLE-24629)
- python-PyNaCl requires python-cffi [bsc#1161557]
Patch Instructions:
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
-
SUSE Linux Enterprise Server for SAP applications 16.0
zypper in -t patch SUSE-SLES-16.0-658=1 -
SUSE Linux Enterprise Server 16.0
zypper in -t patch SUSE-SLES-16.0-658=1
Package List:
-
SUSE Linux Enterprise Server for SAP applications 16.0 (ppc64le x86_64)
- python313-PyNaCl-debuginfo-1.6.2-160000.1.1
- python-PyNaCl-debugsource-1.6.2-160000.1.1
- python313-PyNaCl-1.6.2-160000.1.1
-
SUSE Linux Enterprise Server 16.0 (aarch64 ppc64le s390x x86_64)
- python313-PyNaCl-debuginfo-1.6.2-160000.1.1
- python-PyNaCl-debugsource-1.6.2-160000.1.1
- python313-PyNaCl-1.6.2-160000.1.1