FlawAtlas
Search the atlas
SUSE-SU-2026:1525-1 Not scored

Security update 5.1.3 for Multi-Linux Manager Salt Bundle

This update fixes the following issues: venv-salt-minion: - Security issues fixed: * CVE-2026-31958: Security patch for Salt vendored tornado: Added limits on multipart form data parsing (bsc#1259554) - Added x86_64_v2 as a possible rpm package architecture - Make users with backslash working for salt-ssh (bsc#1254629) - Fixed ansible.playbooks extra-vars quoting (bsc#1257831) - Fixed virtualenv call in test helper to use proper python version - Fixed the issue preventing SELinux profile to be loaded on SLES 16 deployed using cloud images (bsc#1258957) - Fixed the typo causing buiding EL9 bundle without binary dependencies

Exploit probability Not scored
Published April 21, 2026
Required by Not available
Last source change April 22, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Multi Linux Manager Tools SLE-15 venv-salt-minion
SUSE:Multi Linux Manager Tools SLE-Micro-5 venv-salt-minion

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2026:1525-1

This update fixes the following issues: venv-salt-minion: - Security issues fixed: * CVE-2026-31958: Security patch for Salt vendored tornado: Added limits on multipart form data parsing (bsc#1259554) - Added x86_64_v2 as a possible rpm package architecture - Make users with backslash working for salt-ssh (bsc#1254629) - Fixed ansible.playbooks extra-vars quoting (bsc#1257831) - Fixed virtualenv call in test helper to use proper python version - Fixed the issue preventing SELinux profile to be loaded on SLES 16 deployed using cloud images (bsc#1258957) - Fixed the typo causing buiding EL9 bundle without binary dependencies

View original source

05 / REFERENCES

Further evidence