Security update for Multi-Linux Manager 5.0: Server, Proxy and Retail Server
Announcement ID: | SUSE-SU-2025:02478-1 |
---|---|
Release Date: | 2025-07-23T12:39:25Z |
Rating: | critical |
References: |
|
Cross-References: | |
CVSS scores: |
|
Affected Products: |
|
An update that solves 16 vulnerabilities, contains two features and has 72 security fixes can now be installed.
Security update 5.0.5 for Multi-Linux Manager Proxy
Description:
This update fixes the following issues:
proxy-helm:
- Version 5.0.15:
- Image rebuilt to the newest version with updated dependencies
proxy-httpd-image:
- Version 5.0.13:
- Add redirect of API calls from proxy to the server (bsc#1241880)
proxy-salt-broker-image:
- Version 5.0.13:
- Image rebuilt to the newest version with updated dependencies
proxy-squid-image:
- Version 5.0.13:
- Image rebuilt to the newest version with updated dependencies
proxy-ssh-image:
- Version 5.0.13:
- Image rebuilt to the newest version with updated dependencies
proxy-tftpd-image:
- Version 5.0.13:
- Image rebuilt to the newest version with updated dependencies
Security update 5.0.5 for Multi-Linux Manager Retail Branch Server
Description:
This update fixes the following issues:
proxy-helm:
- Version 5.0.15:
- Image rebuilt to the newest version with updated dependencies
proxy-httpd-image:
- Version 5.0.13:
- Add redirect of API calls from proxy to the server (bsc#1241880)
proxy-salt-broker-image:
- Version 5.0.13:
- Image rebuilt to the newest version with updated dependencies
proxy-squid-image:
- Version 5.0.13:
- Image rebuilt to the newest version with updated dependencies
proxy-ssh-image:
- Version 5.0.13:
- Image rebuilt to the newest version with updated dependencies
proxy-tftpd-image:
- Version 5.0.13:
- Image rebuilt to the newest version with updated dependencies
Security update 5.0.5 for Multi-Linux Manager Server
Description:
This update fixes the following issues:
server-attestation-image:
- Version 5.0.11:
- Fixed the health check of the container (bsc#1240604)
server-hub-xmlrpc-api-image:
- Version 5.0.13:
- Image rebuilt to the newest version with updated dependencies
server-image:
-
Version 5.0.16:
-
Fixed /etc/rhn/krb5.conf.d/crypto-policies symlink (bsc#1237938)
- Cleaned repositories from server container image (bsc#1242916)
- Persist postfix first configuration lock file in /etc/postfix (bsc#1239744)
- Prevent sync when a user modified file was not changed between 2 image versions
- Prevent backup for files which would be replaced directly from RPM as well
- Move Prometheus PostgreSQL exporter configuration to the persisting volume /etc/sysconfig (bsc#1239903)
server-migration-14-16-image:
- Version 5.0.14:
- Image rebuilt to the newest version with updated dependencies
Patch Instructions:
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
-
SUSE Manager Proxy 5.0 Extension
zypper in -t patch SUSE-SUSE-Manager-Proxy-5.0-2025-2478=1
-
SUSE Manager Retail Branch Server 5.0 Extension
zypper in -t patch SUSE-SUSE-Manager-Retail-Branch-Server-5.0-2025-2478=1
-
SUSE Manager Server 5.0 Extension
zypper in -t patch SUSE-SUSE-Manager-Server-5.0-2025-2478=1
Package List:
-
SUSE Manager Proxy 5.0 Extension (aarch64)
- suse-manager-5.0-aarch64-proxy-ssh-image-5.0.5-7.21.8
- suse-manager-5.0-aarch64-proxy-squid-image-5.0.5-7.21.6
- suse-manager-5.0-aarch64-proxy-tftpd-image-5.0.5-7.21.6
- suse-manager-5.0-aarch64-proxy-httpd-image-5.0.5-7.21.16
- suse-manager-5.0-aarch64-proxy-salt-broker-image-5.0.5-7.23.18
-
SUSE Manager Proxy 5.0 Extension (ppc64le)
- suse-manager-5.0-ppc64le-proxy-ssh-image-5.0.5-7.21.8
- suse-manager-5.0-ppc64le-proxy-httpd-image-5.0.5-7.21.16
- suse-manager-5.0-ppc64le-proxy-tftpd-image-5.0.5-7.21.6
- suse-manager-5.0-ppc64le-proxy-squid-image-5.0.5-7.21.6
- suse-manager-5.0-ppc64le-proxy-salt-broker-image-5.0.5-7.23.18
-
SUSE Manager Proxy 5.0 Extension (s390x)
- suse-manager-5.0-s390x-proxy-salt-broker-image-5.0.5-7.23.18
- suse-manager-5.0-s390x-proxy-httpd-image-5.0.5-7.21.16
- suse-manager-5.0-s390x-proxy-tftpd-image-5.0.5-7.21.6
- suse-manager-5.0-s390x-proxy-squid-image-5.0.5-7.21.6
- suse-manager-5.0-s390x-proxy-ssh-image-5.0.5-7.21.8
-
SUSE Manager Proxy 5.0 Extension (x86_64)
- suse-manager-5.0-x86_64-proxy-httpd-image-5.0.5-7.21.16
- suse-manager-5.0-x86_64-proxy-squid-image-5.0.5-7.21.6
- suse-manager-5.0-x86_64-proxy-ssh-image-5.0.5-7.21.8
- suse-manager-5.0-x86_64-proxy-salt-broker-image-5.0.5-7.23.18
- suse-manager-5.0-x86_64-proxy-tftpd-image-5.0.5-7.21.6
-
SUSE Manager Retail Branch Server 5.0 Extension (aarch64)
- suse-manager-5.0-aarch64-proxy-ssh-image-5.0.5-7.21.8
- suse-manager-5.0-aarch64-proxy-squid-image-5.0.5-7.21.6
- suse-manager-5.0-aarch64-proxy-tftpd-image-5.0.5-7.21.6
- suse-manager-5.0-aarch64-proxy-httpd-image-5.0.5-7.21.16
- suse-manager-5.0-aarch64-proxy-salt-broker-image-5.0.5-7.23.18
-
SUSE Manager Retail Branch Server 5.0 Extension (ppc64le)
- suse-manager-5.0-ppc64le-proxy-ssh-image-5.0.5-7.21.8
- suse-manager-5.0-ppc64le-proxy-httpd-image-5.0.5-7.21.16
- suse-manager-5.0-ppc64le-proxy-tftpd-image-5.0.5-7.21.6
- suse-manager-5.0-ppc64le-proxy-squid-image-5.0.5-7.21.6
- suse-manager-5.0-ppc64le-proxy-salt-broker-image-5.0.5-7.23.18
-
SUSE Manager Retail Branch Server 5.0 Extension (s390x)
- suse-manager-5.0-s390x-proxy-salt-broker-image-5.0.5-7.23.18
- suse-manager-5.0-s390x-proxy-httpd-image-5.0.5-7.21.16
- suse-manager-5.0-s390x-proxy-tftpd-image-5.0.5-7.21.6
- suse-manager-5.0-s390x-proxy-squid-image-5.0.5-7.21.6
- suse-manager-5.0-s390x-proxy-ssh-image-5.0.5-7.21.8
-
SUSE Manager Retail Branch Server 5.0 Extension (x86_64)
- suse-manager-5.0-x86_64-proxy-httpd-image-5.0.5-7.21.16
- suse-manager-5.0-x86_64-proxy-squid-image-5.0.5-7.21.6
- suse-manager-5.0-x86_64-proxy-ssh-image-5.0.5-7.21.8
- suse-manager-5.0-x86_64-proxy-salt-broker-image-5.0.5-7.23.18
- suse-manager-5.0-x86_64-proxy-tftpd-image-5.0.5-7.21.6
-
SUSE Manager Server 5.0 Extension (aarch64)
- suse-manager-5.0-aarch64-server-hub-xmlrpc-api-image-5.0.5-6.21.8
- suse-manager-5.0-aarch64-server-attestation-image-5.0.5-6.21.8
- suse-manager-5.0-aarch64-server-migration-14-16-image-5.0.5-7.21.15
- suse-manager-5.0-aarch64-server-image-5.0.5-7.28.19
-
SUSE Manager Server 5.0 Extension (ppc64le)
- suse-manager-5.0-ppc64le-server-hub-xmlrpc-api-image-5.0.5-6.21.8
- suse-manager-5.0-ppc64le-server-image-5.0.5-7.28.19
- suse-manager-5.0-ppc64le-server-migration-14-16-image-5.0.5-7.21.15
- suse-manager-5.0-ppc64le-server-attestation-image-5.0.5-6.21.8
-
SUSE Manager Server 5.0 Extension (s390x)
- suse-manager-5.0-s390x-server-image-5.0.5-7.28.19
- suse-manager-5.0-s390x-server-hub-xmlrpc-api-image-5.0.5-6.21.8
- suse-manager-5.0-s390x-server-migration-14-16-image-5.0.5-7.21.15
- suse-manager-5.0-s390x-server-attestation-image-5.0.5-6.21.8
-
SUSE Manager Server 5.0 Extension (x86_64)
- suse-manager-5.0-x86_64-server-hub-xmlrpc-api-image-5.0.5-6.21.8
- suse-manager-5.0-x86_64-server-migration-14-16-image-5.0.5-7.21.15
- suse-manager-5.0-x86_64-server-attestation-image-5.0.5-6.21.8
- suse-manager-5.0-x86_64-server-image-5.0.5-7.28.19
References:
- https://www.suse.com/security/cve/CVE-2024-38822.html
- https://www.suse.com/security/cve/CVE-2024-38823.html
- https://www.suse.com/security/cve/CVE-2024-38824.html
- https://www.suse.com/security/cve/CVE-2024-38825.html
- https://www.suse.com/security/cve/CVE-2025-22236.html
- https://www.suse.com/security/cve/CVE-2025-22237.html
- https://www.suse.com/security/cve/CVE-2025-22238.html
- https://www.suse.com/security/cve/CVE-2025-22239.html
- https://www.suse.com/security/cve/CVE-2025-22240.html
- https://www.suse.com/security/cve/CVE-2025-22241.html
- https://www.suse.com/security/cve/CVE-2025-22242.html
- https://www.suse.com/security/cve/CVE-2025-23392.html
- https://www.suse.com/security/cve/CVE-2025-23393.html
- https://www.suse.com/security/cve/CVE-2025-46809.html
- https://www.suse.com/security/cve/CVE-2025-46811.html
- https://www.suse.com/security/cve/CVE-2025-47287.html
- https://bugzilla.suse.com/show_bug.cgi?id=1157520
- https://bugzilla.suse.com/show_bug.cgi?id=1229825
- https://bugzilla.suse.com/show_bug.cgi?id=1230282
- https://bugzilla.suse.com/show_bug.cgi?id=1230403
- https://bugzilla.suse.com/show_bug.cgi?id=1230908
- https://bugzilla.suse.com/show_bug.cgi?id=1233371
- https://bugzilla.suse.com/show_bug.cgi?id=1234608
- https://bugzilla.suse.com/show_bug.cgi?id=1235847
- https://bugzilla.suse.com/show_bug.cgi?id=1236565
- https://bugzilla.suse.com/show_bug.cgi?id=1236621
- https://bugzilla.suse.com/show_bug.cgi?id=1236779
- https://bugzilla.suse.com/show_bug.cgi?id=1236877
- https://bugzilla.suse.com/show_bug.cgi?id=1236910
- https://bugzilla.suse.com/show_bug.cgi?id=1237294
- https://bugzilla.suse.com/show_bug.cgi?id=1237710
- https://bugzilla.suse.com/show_bug.cgi?id=1237770
- https://bugzilla.suse.com/show_bug.cgi?id=1237938
- https://bugzilla.suse.com/show_bug.cgi?id=1238173
- https://bugzilla.suse.com/show_bug.cgi?id=1238320
- https://bugzilla.suse.com/show_bug.cgi?id=1238514
- https://bugzilla.suse.com/show_bug.cgi?id=1238827
- https://bugzilla.suse.com/show_bug.cgi?id=1238922
- https://bugzilla.suse.com/show_bug.cgi?id=1239154
- https://bugzilla.suse.com/show_bug.cgi?id=1239558
- https://bugzilla.suse.com/show_bug.cgi?id=1239559
- https://bugzilla.suse.com/show_bug.cgi?id=1239604
- https://bugzilla.suse.com/show_bug.cgi?id=1239621
- https://bugzilla.suse.com/show_bug.cgi?id=1239743
- https://bugzilla.suse.com/show_bug.cgi?id=1239744
- https://bugzilla.suse.com/show_bug.cgi?id=1239747
- https://bugzilla.suse.com/show_bug.cgi?id=1239801
- https://bugzilla.suse.com/show_bug.cgi?id=1239826
- https://bugzilla.suse.com/show_bug.cgi?id=1239868
- https://bugzilla.suse.com/show_bug.cgi?id=1239903
- https://bugzilla.suse.com/show_bug.cgi?id=1239907
- https://bugzilla.suse.com/show_bug.cgi?id=1240010
- https://bugzilla.suse.com/show_bug.cgi?id=1240023
- https://bugzilla.suse.com/show_bug.cgi?id=1240038
- https://bugzilla.suse.com/show_bug.cgi?id=1240050
- https://bugzilla.suse.com/show_bug.cgi?id=1240076
- https://bugzilla.suse.com/show_bug.cgi?id=1240124
- https://bugzilla.suse.com/show_bug.cgi?id=1240131
- https://bugzilla.suse.com/show_bug.cgi?id=1240160
- https://bugzilla.suse.com/show_bug.cgi?id=1240386
- https://bugzilla.suse.com/show_bug.cgi?id=1240604
- https://bugzilla.suse.com/show_bug.cgi?id=1240635
- https://bugzilla.suse.com/show_bug.cgi?id=1240666
- https://bugzilla.suse.com/show_bug.cgi?id=1240901
- https://bugzilla.suse.com/show_bug.cgi?id=1240984
- https://bugzilla.suse.com/show_bug.cgi?id=1241034
- https://bugzilla.suse.com/show_bug.cgi?id=1241094
- https://bugzilla.suse.com/show_bug.cgi?id=1241239
- https://bugzilla.suse.com/show_bug.cgi?id=1241286
- https://bugzilla.suse.com/show_bug.cgi?id=1241455
- https://bugzilla.suse.com/show_bug.cgi?id=1241490
- https://bugzilla.suse.com/show_bug.cgi?id=1241880
- https://bugzilla.suse.com/show_bug.cgi?id=1242004
- https://bugzilla.suse.com/show_bug.cgi?id=1242010
- https://bugzilla.suse.com/show_bug.cgi?id=1242030
- https://bugzilla.suse.com/show_bug.cgi?id=1242135
- https://bugzilla.suse.com/show_bug.cgi?id=1242148
- https://bugzilla.suse.com/show_bug.cgi?id=1242561
- https://bugzilla.suse.com/show_bug.cgi?id=1242916
- https://bugzilla.suse.com/show_bug.cgi?id=1243239
- https://bugzilla.suse.com/show_bug.cgi?id=1243241
- https://bugzilla.suse.com/show_bug.cgi?id=1243268
- https://bugzilla.suse.com/show_bug.cgi?id=1243292
- https://bugzilla.suse.com/show_bug.cgi?id=1243375
- https://bugzilla.suse.com/show_bug.cgi?id=1243460
- https://bugzilla.suse.com/show_bug.cgi?id=1243724
- https://bugzilla.suse.com/show_bug.cgi?id=1243765
- https://bugzilla.suse.com/show_bug.cgi?id=1243821
- https://bugzilla.suse.com/show_bug.cgi?id=1243825
- https://bugzilla.suse.com/show_bug.cgi?id=1244561
- https://bugzilla.suse.com/show_bug.cgi?id=1244564
- https://bugzilla.suse.com/show_bug.cgi?id=1244565
- https://bugzilla.suse.com/show_bug.cgi?id=1244566
- https://bugzilla.suse.com/show_bug.cgi?id=1244567
- https://bugzilla.suse.com/show_bug.cgi?id=1244568
- https://bugzilla.suse.com/show_bug.cgi?id=1244570
- https://bugzilla.suse.com/show_bug.cgi?id=1244571
- https://bugzilla.suse.com/show_bug.cgi?id=1244572
- https://bugzilla.suse.com/show_bug.cgi?id=1244574
- https://bugzilla.suse.com/show_bug.cgi?id=1244575
- https://bugzilla.suse.com/show_bug.cgi?id=1245005
- https://bugzilla.suse.com/show_bug.cgi?id=1245222
- https://bugzilla.suse.com/show_bug.cgi?id=1245368
- https://bugzilla.suse.com/show_bug.cgi?id=1246119
- https://jira.suse.com/browse/MSQA-993
- https://jira.suse.com/browse/PED-12321