Suse Linux Micro
88 CVEs tracked. 1 of them are in CISA KEV.
This hub aggregates every CVE we track for Suse Linux Micro, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Suse Linux Micro CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 1 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 3 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 1 |
| 2025-05 | 0 |
| 2025-06 | 18 |
| 2025-07 | 9 |
| 2025-08 | 6 |
| 2025-09 | 2 |
| 2025-10 | 3 |
| 2025-11 | 5 |
| 2025-12 | 0 |
| 2026-01 | 7 |
| 2026-02 | 0 |
| 2026-03 | 3 |
| 2026-04 | 1 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 88 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical4
- High36
- Medium41
- Low7
Latest CVEs
The 15 most recently published vulnerabilities affecting Suse Linux Micro.
- CVE-2026-34757LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure5.1
- CVE-2026-33636LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch647.6
- CVE-2026-33416LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE`7.5
- CVE-2026-2921GStreamer RIFF Palette Integer Overflow Remote Code Execution Vulnerability7.8
- CVE-2025-9820Gnutls: stack-based buffer overflow in gnutls_pkcs11_token_init() function4.0
- CVE-2026-22990libceph: replace overzealous BUG_ON in osdmap_apply_incremental()7.5
- CVE-2026-22988arp: do not assume dev_hard_header() does not change skb->head7.8
- CVE-2026-22982net: mscc: ocelot: Fix crash when adding interface under a lag5.5
- CVE-2025-71157RDMA/core: always drop device refcount in ib_del_sub_device_and_put()7.8
- CVE-2025-71098ip6_gre: make ip6gre_header() robust5.5
- CVE-2025-71085ipv6: BUG() in pskb_expand_head() as part of calipso_skbuff_setattr()7.5
- CVE-2025-40172accel/qaic: Treat remaining == 0 as error in find_and_map_user_pages()7.8
- CVE-2025-40169bpf: Reject negative offsets for ALU ops7.8
- CVE-2025-40167ext4: detect invalid INLINE_DATA + EXTENTS flag combination7.8
- CVE-2025-40159xsk: Harden userspace-supplied xdp_desc validation7.8
Product grouping is registry-driven, with AI assist and human review. How it works