FlawAtlas
Search the atlas
SUSE-SU-2026:1523-1 Not scored

Security update 5.1.3 for Multi-Linux Manager Salt Bundle

This update fixes the following issues: venv-salt-minion: - Backport security patch for Salt vendored tornado (bsc#1259554): * CVE-2026-31958: Add limits on multipart form data parsing - Add x86_64_v2 as a possible rpm package architecture - Make users with backslash working for salt-ssh (bsc#1254629) - Fix ansible.playbooks extra-vars quoting (bsc#1257831) - Fix virtualenv call in test helper to use proper python version - Fix the issue preventing SELinux profile to be loaded on SLES 16 deployed using cloud images (bsc#1258957) - Fix the typo causing buiding EL9 bundle without binary dependencies

Exploit probability Not scored
Published April 21, 2026
Required by Not available
Last source change April 22, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Multi Linux Manager Tools SLE-12 venv-salt-minion

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2026:1523-1

This update fixes the following issues: venv-salt-minion: - Backport security patch for Salt vendored tornado (bsc#1259554): * CVE-2026-31958: Add limits on multipart form data parsing - Add x86_64_v2 as a possible rpm package architecture - Make users with backslash working for salt-ssh (bsc#1254629) - Fix ansible.playbooks extra-vars quoting (bsc#1257831) - Fix virtualenv call in test helper to use proper python version - Fix the issue preventing SELinux profile to be loaded on SLES 16 deployed using cloud images (bsc#1258957) - Fix the typo causing buiding EL9 bundle without binary dependencies

View original source

05 / REFERENCES

Further evidence