SUSE alert openSUSE-SU-2026:21222-1 (systemd)
| From: | null@suse.de | |
| To: | security-announce@lists.opensuse.org | |
| Subject: | openSUSE-SU-2026:21222-1: important: Security update for systemd | |
| Date: | Sat, 04 Jul 2026 17:51:02 +0200 | |
| Message-ID: | <20260704155102.AEF2DFCC9@maintenance.suse.de> | |
| Archive-link: | Article |
openSUSE security update: security update for systemd ------------------------------------------------------------- Announcement ID: openSUSE-SU-2026:21222-1 Rating: important References: * bsc#1245551 * bsc#1248261 * bsc#1251948 * bsc#1254924 * bsc#1259071 * bsc#1260357 * bsc#1261982 * bsc#1261983 * bsc#1262305 * bsc#1263117 * bsc#1267644 * bsc#1267647 Affected Products: openSUSE Leap 16.0 ------------------------------------------------------------- An update that has 12 bug fixes can now be installed. Description: This update for systemd fixes the following issues: Changes in systemd: - Better handle TLS allocation failure (bsc#1254924). - Disable mounting `debugfs` by default (jsc#PED-8812). - Import commit 9e8b5afe0fb2061f4a17a3022469dd62f2683960 (bsc#1267647 bsc#1267644 bsc#1262305 bsc#1263117). - Move `systemd-pcrlock` out from the experimental sub-package to `udev` (bsc#1248261 jsc#PED-15946). - Add a weak runtime dependency on `libtss2-tcti-device0` (bsc#1260357). - Import commit 59336000ef7850eba0963c6a690ff3371c425929 (bsc#1261982 bsc#1261983). - Add a weak runtime dependency on `polkit` (bsc#1259071). - systemd-update-helper: fix the clean-state command only removing `$STATE_DIR/system` instead of `$STATE_DIR/`. - systemd-update-helper: add `--root` option for testing convenience. - systemd-update-helper: fix incorrect skipping of `systemctl disable` during package removal (bsc#1245551). - systemd-update-helper: fix `do_install_units()` incorrectly returning 1 when no units need preset. - systemd.spec: introduce `%bcond_without` docs to allow skipping man pages and `devel-doc`. - systemd.spec: drop the `%{release}` number from the SBAT version (bsc#1251948). Patch instructions: To install this openSUSE security update use the suse recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 16.0 zypper in -t patch openSUSE-Leap-16.0-1151=1 Package List: - openSUSE Leap 16.0: libsystemd0-257.13-160000.2.1 libudev1-257.13-160000.2.1 systemd-257.13-160000.2.1 systemd-boot-257.13-160000.2.1 systemd-container-257.13-160000.2.1 systemd-devel-257.13-160000.2.1 systemd-doc-257.13-160000.2.1 systemd-experimental-257.13-160000.2.1 systemd-homed-257.13-160000.2.1 systemd-journal-remote-257.13-160000.2.1 systemd-lang-257.13-160000.2.1 systemd-mini-experimental-257.13-160000.2.1 systemd-networkd-257.13-160000.2.1 systemd-portable-257.13-160000.2.1 systemd-resolved-257.13-160000.2.1 systemd-testsuite-257.13-160000.2.1 udev-257.13-160000.2.1
