vulnerability

SUSE: CVE-2025-3416: SUSE Linux Security Advisory

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Apr 8, 2025
Added
May 13, 2025
Modified
Nov 4, 2025

Description

A flaw was found in OpenSSL's handling of the properties argument in certain functions. This vulnerability can allow use-after-free exploitation, which may result in undefined behavior or incorrect property parsing, leading to OpenSSL treating the input as an empty string.

Solutions

suse-upgrade-389-dssuse-upgrade-389-ds-develsuse-upgrade-389-ds-snmpsuse-upgrade-afterburnsuse-upgrade-afterburn-dracutsuse-upgrade-cargo-csuse-upgrade-flake-pilotsuse-upgrade-flake-pilot-podmansuse-upgrade-himmelblaususe-upgrade-himmelblau-sshd-configsuse-upgrade-kanidmsuse-upgrade-kanidm-clientssuse-upgrade-kanidm-docssuse-upgrade-kanidm-serversuse-upgrade-kanidm-unixd-clientssuse-upgrade-keylime-ima-policysuse-upgrade-lib389suse-upgrade-libekmfweb1suse-upgrade-libekmfweb1-develsuse-upgrade-libetebase-develsuse-upgrade-libetebase0suse-upgrade-libkmipclient1suse-upgrade-libkmipclient1-develsuse-upgrade-libnss_himmelblau2suse-upgrade-libsvrcore0suse-upgrade-osasnmpdsuse-upgrade-pam-himmelblaususe-upgrade-python311-cryptographysuse-upgrade-python311-maturinsuse-upgrade-rust-keylimesuse-upgrade-rustupsuse-upgrade-s390-toolssuse-upgrade-s390-tools-chreipl-fcp-mpathsuse-upgrade-s390-tools-genprotimg-datasuse-upgrade-s390-tools-hmcdrvfssuse-upgrade-s390-tools-zdsfssuse-upgrade-sccachesuse-upgrade-sevctlsuse-upgrade-snpguest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.