Security update for elemental-toolkit, elemental-operator
This update for elemental-toolkit, elemental-operator fixes the following issues: elemental-operator: - Update to version 1.6.10: * Remove 'latest' tag as this overlaps with the latest branch * Bump github.com/rancher-sandbox/go-tpm and its dependencies This bump includes fixes to some CVEs: * bsc#1241826 (CVE-2025-22872) * bsc#1241857 (CVE-2025-22872) * bsc#1251511 (CVE-2025-47911) * bsc#1251679 (CVE-2025-58190) elemental-toolkit: - Update to version 2.1.5: * Update headers for new year 2026 * Disable selinux in installer media - Update to version 2.1.4: * Remove leftovers in installer integration test * Bump to build against go 1.24 * Bump golang.org/x/crypto library This bump includes fixes to some CVEs: * bsc#1241826 (CVE-2025-22872) * bsc#1241857 (CVE-2025-22872) * bsc#1251511 (CVE-2025-47911) * bsc#1251679 (CVE-2025-58190) * bsc#1253581 (CVE-2025-47913) * bsc#1253901 (CVE-2025-58181) * bsc#1254079 (CVE-2025-47914)
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for elemental-toolkit, elemental-operator fixes the following issues: elemental-operator: - Update to version 1.6.10: * Remove 'latest' tag as this overlaps with the latest branch * Bump github.com/rancher-sandbox/go-tpm and its dependencies This bump includes fixes to some CVEs: * bsc#1241826 (CVE-2025-22872) * bsc#1241857 (CVE-2025-22872) * bsc#1251511 (CVE-2025-47911) * bsc#1251679 (CVE-2025-58190) elemental-toolkit: - Update to version 2.1.5: * Update headers for new year 2026 * Disable selinux in installer media - Update to version 2.1.4: * Remove leftovers in installer integration test * Bump to build against go 1.24 * Bump golang.org/x/crypto library This bump includes fixes to some CVEs: * bsc#1241826 (CVE-2025-22872) * bsc#1241857 (CVE-2025-22872) * bsc#1251511 (CVE-2025-47911) * bsc#1251679 (CVE-2025-58190) * bsc#1253581 (CVE-2025-47913) * bsc#1253901 (CVE-2025-58181) * bsc#1254079 (CVE-2025-47914)
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1241826
- https://bugzilla.suse.com/1241857
- https://bugzilla.suse.com/1251511
- https://bugzilla.suse.com/1251679
- https://bugzilla.suse.com/1253581
- https://bugzilla.suse.com/1253901
- https://bugzilla.suse.com/1254079
- https://www.suse.com/security/cve/CVE-2025-22872
- https://www.suse.com/security/cve/CVE-2025-47911
- https://www.suse.com/security/cve/CVE-2025-47913
- https://www.suse.com/security/cve/CVE-2025-47914
- https://www.suse.com/security/cve/CVE-2025-58181
- https://www.suse.com/security/cve/CVE-2025-58190
- https://www.suse.com/support/update/announcement/2026/suse-su-202620244-1/