An update that solves one vulnerability and has one bug fix can now be installed.
An update that solves one vulnerability and has one bug fix can now be installed.
This update for dhcpcd fixes the following issue
Update to 10.3.2:
- CVE-2025-70102: NULL pointer dereference in `parse_option()` when processing a specially crafted configuration input
(bsc#1268761).
Changes for dhcpcd:
* options: Ensure ldop is not NULL dereferenced
* DHCP: Don't run double EXPIRE hooks on carrier loss
* DHCP: free the state when dropping on state NONE
* BSD: don't send uninitialised memory using
ps_root_indirectioctl
* Fix fallback_time option
* IPv4: Ignore DHCP state when building routes
* route: Routes may not have an interface assinged
* options: Ensure that an overly long bitflag string does not
crash
* options: Don't assume vsio options have an argument
* common: Cast via uintptr_t rather than unsigned long in UNCONST
* privsep: Ensure we recv for real after a successful recv
MSG_PEEK
* DHCP: Add parentheses to macro definitions
* ipv6nd: empty IPV6RA_EXPIRE eloop queue when dropping
* privsep: enforce message boundaries with MSG_EOR...
![]()
- openSUSE Leap 16.0:
dhcpcd-10.3.2-160000.1.1
* bsc#1268761
References:
* https://www.suse.com/security/cve/CVE-2025-70102.html
| # | Наименование новости | Тональность | Информативность | Дата публикации |
|---|---|---|---|---|
| 1 | openSUSE GraphicsMagick Moderate Heap Use-After-Free Issue 2026-21207-1 | 0 | 5 | 03-07-2026 |
| 2 | openSUSE pacemaker Important Denial Of Service CVE-2026-10649 2026-21196-1 | 0 | 5 | 03-07-2026 |
| 3 | openSUSE dnsmasq Important Heap Overflow Issues ID 2026-21192-1 | 0 | 5 | 03-07-2026 |
| 4 | openSUSE Leap 16.0 libslirp Moderate TCP Leak Vulnerability 2026-21216-1 | 0 | 5 | 03-07-2026 |
| 5 | openSUSE nilfs-utils Moderate CVE-2026-55392 Threat Fix 2026-0228-1 | 0 | 5 | 03-07-2026 |
| 6 | openSUSE google-osconfig-agent Important DoS Issues Resolved 2026-21210-1 | 0 | 5 | 03-07-2026 |
| 7 | SUSE Python-lxml Moderate Info Disclosure Update Advisory 2026-2729-1 | 0 | 5 | 03-07-2026 |
| 8 | openSUSE GStreamer-Plugins-Bad Important Out-of-Bounds DoS CVE-2026-52719 | 0 | 5 | 03-07-2026 |
| 9 | SUSE 2026-2731-1 editorconfig-core-c Moderate Stack Overflow Threat | 0 | 5 | 03-07-2026 |
| 10 | SUSE Linux Micro crun Moderate Symlink Issue Advisory 2026-22395-1 | 0 | 5 | 03-07-2026 |