Upstream information

CVE-2026-23099 at MITRE

Description

In the Linux kernel, the following vulnerability has been resolved:

bonding: limit BOND_MODE_8023AD to Ethernet devices

BOND_MODE_8023AD makes sense for ARPHRD_ETHER only.

syzbot reported:

BUG: KASAN: global-out-of-bounds in __hw_addr_create net/core/dev_addr_lists.c:63 [inline]
BUG: KASAN: global-out-of-bounds in __hw_addr_add_ex+0x25d/0x760 net/core/dev_addr_lists.c:118
Read of size 16 at addr ffffffff8bf94040 by task syz.1.3580/19497

CPU: 1 UID: 0 PID: 19497 Comm: syz.1.3580 Tainted: G L syzkaller #0 PREEMPT(full)
Tainted: [L]=SOFTLOCKUP
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 10/25/2025
Call Trace:
<TASK>
dump_stack_lvl+0xe8/0x150 lib/dump_stack.c:120
print_address_description mm/kasan/report.c:378 [inline]
print_report+0xca/0x240 mm/kasan/report.c:482
kasan_report+0x118/0x150 mm/kasan/report.c:595
check_region_inline mm/kasan/generic.c:-1 [inline]
kasan_check_range+0x2b0/0x2c0 mm/kasan/generic.c:200
__asan_memcpy+0x29/0x70 mm/kasan/shadow.c:105
__hw_addr_create net/core/dev_addr_lists.c:63 [inline]
__hw_addr_add_ex+0x25d/0x760 net/core/dev_addr_lists.c:118
__dev_mc_add net/core/dev_addr_lists.c:868 [inline]
dev_mc_add+0xa1/0x120 net/core/dev_addr_lists.c:886
bond_enslave+0x2b8b/0x3ac0 drivers/net/bonding/bond_main.c:2180
do_set_master+0x533/0x6d0 net/core/rtnetlink.c:2963
do_setlink+0xcf0/0x41c0 net/core/rtnetlink.c:3165
rtnl_changelink net/core/rtnetlink.c:3776 [inline]
__rtnl_newlink net/core/rtnetlink.c:3935 [inline]
rtnl_newlink+0x161c/0x1c90 net/core/rtnetlink.c:4072
rtnetlink_rcv_msg+0x7cf/0xb70 net/core/rtnetlink.c:6958
netlink_rcv_skb+0x208/0x470 net/netlink/af_netlink.c:2550
netlink_unicast_kernel net/netlink/af_netlink.c:1318 [inline]
netlink_unicast+0x82f/0x9e0 net/netlink/af_netlink.c:1344
netlink_sendmsg+0x805/0xb30 net/netlink/af_netlink.c:1894
sock_sendmsg_nosec net/socket.c:727 [inline]
__sock_sendmsg+0x21c/0x270 net/socket.c:742
____sys_sendmsg+0x505/0x820 net/socket.c:2592
___sys_sendmsg+0x21f/0x2a0 net/socket.c:2646
__sys_sendmsg+0x164/0x220 net/socket.c:2678
do_syscall_32_irqs_on arch/x86/entry/syscall_32.c:83 [inline]
__do_fast_syscall_32+0x1dc/0x560 arch/x86/entry/syscall_32.c:307
do_fast_syscall_32+0x34/0x80 arch/x86/entry/syscall_32.c:332
entry_SYSENTER_compat_after_hwframe+0x84/0x8e
</TASK>

The buggy address belongs to the variable:
lacpdu_mcast_addr+0x0/0x40

SUSE information

Overall state of this security issue: Does not affect SUSE products

Note from the SUSE Security Team on the kernel-default package

SUSE will no longer fix all CVEs in the Linux Kernel anymore, but declare some bug classes as won't fix. Please refer to TID 21496 for more details.

SUSE Bugzilla entry: 1257816 [IN_PROGRESS]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
Container suse/sl-micro/6.0/base-os-container:2.1.3-7.105
Image SLE-Micro
Image SLE-Micro-Azure
Image SLE-Micro-BYOS
Image SLE-Micro-BYOS-Azure
Image SLE-Micro-BYOS-EC2
Image SLE-Micro-BYOS-GCE
Image SLE-Micro-EC2
Image SLE-Micro-GCE
  • kernel-default >= 6.4.0-40.1
Container suse/sl-micro/6.0/kvm-os-container:2.1.3-6.124
  • kernel-default-base >= 6.4.0-40.1.21.17
Container suse/sl-micro/6.0/rt-os-container:2.1.3-7.146
  • kernel-rt >= 6.4.0-40.1
Container suse/sl-micro/6.1/baremetal-os-container:2.2.1-7.67
  • libblkid1 >= 2.40.4-slfo.1.1_4.1
  • libfdisk1 >= 2.40.4-slfo.1.1_4.1
  • libmount1 >= 2.40.4-slfo.1.1_4.1
  • libsmartcols1 >= 2.40.4-slfo.1.1_4.1
  • libuuid1 >= 2.40.4-slfo.1.1_4.1
  • util-linux >= 2.40.4-slfo.1.1_4.1
  • util-linux-systemd >= 2.40.4-slfo.1.1_4.1
Container suse/sl-micro/6.1/base-os-container:2.2.1-5.90
  • kernel-default >= 6.4.0-40.1
  • libblkid1 >= 2.40.4-slfo.1.1_4.1
  • libfdisk1 >= 2.40.4-slfo.1.1_4.1
  • libmount1 >= 2.40.4-slfo.1.1_4.1
  • libsmartcols1 >= 2.40.4-slfo.1.1_4.1
  • libuuid1 >= 2.40.4-slfo.1.1_4.1
  • util-linux >= 2.40.4-slfo.1.1_4.1
  • util-linux-systemd >= 2.40.4-slfo.1.1_4.1
Container suse/sl-micro/6.1/kvm-os-container:2.2.1-5.94
  • kernel-default-base >= 6.4.0-40.1.21.17
  • libblkid1 >= 2.40.4-slfo.1.1_4.1
  • libfdisk1 >= 2.40.4-slfo.1.1_4.1
  • libmount1 >= 2.40.4-slfo.1.1_4.1
  • libsmartcols1 >= 2.40.4-slfo.1.1_4.1
  • libuuid1 >= 2.40.4-slfo.1.1_4.1
  • util-linux >= 2.40.4-slfo.1.1_4.1
  • util-linux-systemd >= 2.40.4-slfo.1.1_4.1
Container suse/sl-micro/6.1/rt-os-container:2.2.1-5.91
  • kernel-rt >= 6.4.0-40.1
  • libblkid1 >= 2.40.4-slfo.1.1_4.1
  • libfdisk1 >= 2.40.4-slfo.1.1_4.1
  • libmount1 >= 2.40.4-slfo.1.1_4.1
  • libsmartcols1 >= 2.40.4-slfo.1.1_4.1
  • libuuid1 >= 2.40.4-slfo.1.1_4.1
  • util-linux >= 2.40.4-slfo.1.1_4.1
  • util-linux-systemd >= 2.40.4-slfo.1.1_4.1
Image SL-Micro-Azure
Image SL-Micro-BYOS-Azure
Image SL-Micro-BYOS-EC2
Image SL-Micro-BYOS-GCE
Image SL-Micro-EC2
Image SUSE-Multi-Linux-Manager-Proxy-BYOS-Azure
Image SUSE-Multi-Linux-Manager-Proxy-BYOS-EC2
Image SUSE-Multi-Linux-Manager-Proxy-BYOS-GCE
Image SUSE-Multi-Linux-Manager-Server-Azure-llc
Image SUSE-Multi-Linux-Manager-Server-Azure-ltd
Image SUSE-Multi-Linux-Manager-Server-BYOS-Azure
Image SUSE-Multi-Linux-Manager-Server-BYOS-EC2
Image SUSE-Multi-Linux-Manager-Server-BYOS-GCE
Image SUSE-Multi-Linux-Manager-Server-EC2-llc
Image SUSE-Multi-Linux-Manager-Server-EC2-ltd
  • kernel-default >= 6.4.0-40.1
  • lastlog2 >= 2.40.4-slfo.1.1_4.1
  • libblkid1 >= 2.40.4-slfo.1.1_4.1
  • libfdisk1 >= 2.40.4-slfo.1.1_4.1
  • liblastlog2-2 >= 2.40.4-slfo.1.1_4.1
  • libmount1 >= 2.40.4-slfo.1.1_4.1
  • libsmartcols1 >= 2.40.4-slfo.1.1_4.1
  • libuuid1 >= 2.40.4-slfo.1.1_4.1
  • util-linux >= 2.40.4-slfo.1.1_4.1
  • util-linux-systemd >= 2.40.4-slfo.1.1_4.1
Image SLES-Azure-3P
Image SLES-Azure-Basic
Image SLES-Azure-Standard
Image SLES-BYOS-Azure
Image SLES-BYOS-EC2
Image SLES-BYOS-GCE
Image SLES-CHOST-BYOS-GDC
Image SLES-CHOST-BYOS-SAP-CCloud
Image SLES-EC2
Image SLES-GCE
Image SLES-GCE-3P
Image SLES-Hardened-BYOS-Azure
Image SLES-Hardened-BYOS-EC2
Image SLES-Hardened-BYOS-GCE
Image SLES-SAPCAL-Azure
Image SLES-SAPCAL-EC2
Image SLES-SAPCAL-GCE
  • kernel-default >= 6.12.0-160000.27.1
Image SLES-SAP-Azure
Image SLES-SAP-Azure-3P
Image SLES-SAP-BYOS-Azure
Image SLES-SAP-BYOS-EC2
Image SLES-SAP-BYOS-GCE
Image SLES-SAP-EC2
Image SLES-SAP-GCE
Image SLES-SAP-GCE-3P
  • cluster-md-kmp-default >= 6.12.0-160000.27.1
  • dlm-kmp-default >= 6.12.0-160000.27.1
  • gfs2-kmp-default >= 6.12.0-160000.27.1
  • kernel-default >= 6.12.0-160000.27.1
  • ocfs2-kmp-default >= 6.12.0-160000.27.1
Image SLES12-SP5-Azure-BYOS
Image SLES12-SP5-Azure-HPC-BYOS
Image SLES12-SP5-EC2-BYOS
Image SLES12-SP5-EC2-ECS-On-Demand
Image SLES12-SP5-EC2-On-Demand
Image SLES12-SP5-GCE-BYOS
Image SLES12-SP5-GCE-On-Demand
  • kernel-default >= 4.12.14-122.296.1
Image SLES12-SP5-Azure-SAP-BYOS
Image SLES12-SP5-Azure-SAP-On-Demand
Image SLES12-SP5-EC2-SAP-BYOS
Image SLES12-SP5-EC2-SAP-On-Demand
Image SLES12-SP5-GCE-SAP-BYOS
Image SLES12-SP5-GCE-SAP-On-Demand
  • cluster-md-kmp-default >= 4.12.14-122.296.1
  • dlm-kmp-default >= 4.12.14-122.296.1
  • gfs2-kmp-default >= 4.12.14-122.296.1
  • kernel-default >= 4.12.14-122.296.1
  • ocfs2-kmp-default >= 4.12.14-122.296.1
Image SLES15-SP7-Azure-3P
Image SLES15-SP7-Azure-Basic
Image SLES15-SP7-Azure-Standard
Image SLES15-SP7-HPC-Azure
  • kernel-azure >= 6.4.0-150700.53.34.1
Image SLES15-SP7-BYOS-Azure
Image SLES15-SP7-BYOS-EC2
Image SLES15-SP7-BYOS-GCE
Image SLES15-SP7-CHOST-BYOS-Aliyun
Image SLES15-SP7-CHOST-BYOS-Azure
Image SLES15-SP7-CHOST-BYOS-EC2
Image SLES15-SP7-CHOST-BYOS-GCE
Image SLES15-SP7-CHOST-BYOS-GDC
Image SLES15-SP7-CHOST-BYOS-SAP-CCloud
Image SLES15-SP7-EC2
Image SLES15-SP7-EC2-ECS-HVM
Image SLES15-SP7-GCE
Image SLES15-SP7-GCE-3P
Image SLES15-SP7-HPC-BYOS-Azure
Image SLES15-SP7-HPC-BYOS-EC2
Image SLES15-SP7-HPC-BYOS-GCE
Image SLES15-SP7-Hardened-BYOS-Azure
Image SLES15-SP7-Hardened-BYOS-EC2
Image SLES15-SP7-Hardened-BYOS-GCE
Image SLES15-SP7-SAPCAL-Azure
Image SLES15-SP7-SAPCAL-EC2
Image SLES15-SP7-SAPCAL-GCE
  • kernel-default >= 6.4.0-150700.53.34.1
Image SLES15-SP7-SAP-Azure
Image SLES15-SP7-SAP-Azure-3P
Image SLES15-SP7-SAP-Azure-LI-BYOS-Production
Image SLES15-SP7-SAP-Azure-VLI-BYOS-Production
Image SLES15-SP7-SAP-BYOS-Azure
Image SLES15-SP7-SAP-BYOS-EC2
Image SLES15-SP7-SAP-BYOS-GCE
Image SLES15-SP7-SAP-EC2
Image SLES15-SP7-SAP-GCE
Image SLES15-SP7-SAP-GCE-3P
Image SLES15-SP7-SAP-Hardened-Azure
Image SLES15-SP7-SAP-Hardened-BYOS-Azure
Image SLES15-SP7-SAP-Hardened-BYOS-EC2
Image SLES15-SP7-SAP-Hardened-BYOS-GCE
Image SLES15-SP7-SAP-Hardened-GCE
  • cluster-md-kmp-default >= 6.4.0-150700.53.34.1
  • dlm-kmp-default >= 6.4.0-150700.53.34.1
  • gfs2-kmp-default >= 6.4.0-150700.53.34.1
  • kernel-default >= 6.4.0-150700.53.34.1
  • ocfs2-kmp-default >= 6.4.0-150700.53.34.1
SUSE Linux Enterprise Desktop 15 SP7
  • kernel-64kb >= 6.4.0-150700.53.34.1
  • kernel-64kb-devel >= 6.4.0-150700.53.34.1
  • kernel-default >= 6.4.0-150700.53.34.1
  • kernel-default-base >= 6.4.0-150700.53.34.1.150700.17.23.1
  • kernel-default-devel >= 6.4.0-150700.53.34.1
  • kernel-default-extra >= 6.4.0-150700.53.34.1
  • kernel-devel >= 6.4.0-150700.53.34.1
  • kernel-docs >= 6.4.0-150700.53.34.1
  • kernel-macros >= 6.4.0-150700.53.34.1
  • kernel-obs-build >= 6.4.0-150700.53.34.1
  • kernel-source >= 6.4.0-150700.53.34.1
  • kernel-syms >= 6.4.0-150700.53.34.1
  • kernel-zfcpdump >= 6.4.0-150700.53.34.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP7-2026-1081
SUSE-SLE-Module-Development-Tools-15-SP7-2026-1081
SUSE-SLE-Product-WE-15-SP7-2026-1081
SUSE Linux Enterprise High Availability Extension 15 SP7
  • cluster-md-kmp-default >= 6.4.0-150700.53.34.1
  • dlm-kmp-default >= 6.4.0-150700.53.34.1
  • gfs2-kmp-default >= 6.4.0-150700.53.34.1
  • ocfs2-kmp-default >= 6.4.0-150700.53.34.1
Patchnames:
SUSE-SLE-Product-HA-15-SP7-2026-1081
SUSE Linux Enterprise High Availability Extension 16.0
  • cluster-md-kmp-default >= 6.12.0-160000.27.1
  • dlm-kmp-default >= 6.12.0-160000.27.1
  • gfs2-kmp-default >= 6.12.0-160000.27.1
Patchnames:
SUSE-SLES-HA-16.0-435
SUSE Linux Enterprise High Performance Computing 15 SP7
  • kernel-64kb >= 6.4.0-150700.53.34.1
  • kernel-64kb-devel >= 6.4.0-150700.53.34.1
  • kernel-azure >= 6.4.0-150700.53.34.1
  • kernel-azure-devel >= 6.4.0-150700.53.34.1
  • kernel-default >= 6.4.0-150700.53.34.1
  • kernel-default-base >= 6.4.0-150700.53.34.1.150700.17.23.1
  • kernel-default-devel >= 6.4.0-150700.53.34.1
  • kernel-devel >= 6.4.0-150700.53.34.1
  • kernel-docs >= 6.4.0-150700.53.34.1
  • kernel-macros >= 6.4.0-150700.53.34.1
  • kernel-obs-build >= 6.4.0-150700.53.34.1
  • kernel-source >= 6.4.0-150700.53.34.1
  • kernel-syms >= 6.4.0-150700.53.34.1
  • kernel-zfcpdump >= 6.4.0-150700.53.34.1
  • reiserfs-kmp-default >= 6.4.0-150700.53.34.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP7-2026-1081
SUSE-SLE-Module-Development-Tools-15-SP7-2026-1081
SUSE-SLE-Module-Legacy-15-SP7-2026-1081
SUSE-SLE-Module-Public-Cloud-15-SP7-2026-1081
SUSE Linux Enterprise Live Patching 15 SP7
    Patchnames:
    SUSE-SLE-Module-Live-Patching-15-SP7-2026-962
    SUSE Linux Enterprise Module for Basesystem 15 SP7
    • kernel-64kb >= 6.4.0-150700.53.34.1
    • kernel-64kb-devel >= 6.4.0-150700.53.34.1
    • kernel-default >= 6.4.0-150700.53.34.1
    • kernel-default-base >= 6.4.0-150700.53.34.1.150700.17.23.1
    • kernel-default-devel >= 6.4.0-150700.53.34.1
    • kernel-devel >= 6.4.0-150700.53.34.1
    • kernel-macros >= 6.4.0-150700.53.34.1
    • kernel-zfcpdump >= 6.4.0-150700.53.34.1
    Patchnames:
    SUSE-SLE-Module-Basesystem-15-SP7-2026-1081
    SUSE Linux Enterprise Module for Development Tools 15 SP7
    • kernel-docs >= 6.4.0-150700.53.34.1
    • kernel-obs-build >= 6.4.0-150700.53.34.1
    • kernel-source >= 6.4.0-150700.53.34.1
    • kernel-syms >= 6.4.0-150700.53.34.1
    Patchnames:
    SUSE-SLE-Module-Development-Tools-15-SP7-2026-1081
    SUSE Linux Enterprise Module for Legacy 15 SP7
    • reiserfs-kmp-default >= 6.4.0-150700.53.34.1
    Patchnames:
    SUSE-SLE-Module-Legacy-15-SP7-2026-1081
    SUSE Linux Enterprise Module for Public Cloud 15 SP7
    • kernel-azure >= 6.4.0-150700.53.34.1
    • kernel-azure-devel >= 6.4.0-150700.53.34.1
    Patchnames:
    SUSE-SLE-Module-Public-Cloud-15-SP7-2026-1081
    SUSE Linux Enterprise Real Time 15 SP7
    SUSE Real Time Module 15 SP7
    • cluster-md-kmp-rt >= 6.4.0-150700.7.34.1
    • dlm-kmp-rt >= 6.4.0-150700.7.34.1
    • gfs2-kmp-rt >= 6.4.0-150700.7.34.1
    • kernel-devel-rt >= 6.4.0-150700.7.34.1
    • kernel-rt >= 6.4.0-150700.7.34.1
    • kernel-rt-devel >= 6.4.0-150700.7.34.1
    • kernel-source-rt >= 6.4.0-150700.7.34.1
    • kernel-syms-rt >= 6.4.0-150700.7.34.1
    • ocfs2-kmp-rt >= 6.4.0-150700.7.34.1
    Patchnames:
    SUSE-SLE-Module-RT-15-SP7-2026-962
    SUSE Linux Enterprise Server 12 SP5-LTSS
    • cluster-md-kmp-default >= 4.12.14-122.296.1
    • dlm-kmp-default >= 4.12.14-122.296.1
    • gfs2-kmp-default >= 4.12.14-122.296.1
    • kernel-default >= 4.12.14-122.296.1
    • kernel-default-base >= 4.12.14-122.296.1
    • kernel-default-devel >= 4.12.14-122.296.1
    • kernel-default-man >= 4.12.14-122.296.1
    • kernel-devel >= 4.12.14-122.296.1
    • kernel-macros >= 4.12.14-122.296.1
    • kernel-source >= 4.12.14-122.296.1
    • kernel-syms >= 4.12.14-122.296.1
    • ocfs2-kmp-default >= 4.12.14-122.296.1
    Patchnames:
    SUSE-SLE-SERVER-12-SP5-LTSS-2026-1078
    SUSE Linux Enterprise Server 15 SP7
    SUSE Linux Enterprise Server for SAP Applications 15 SP7
    • kernel-64kb >= 6.4.0-150700.53.34.1
    • kernel-64kb-devel >= 6.4.0-150700.53.34.1
    • kernel-azure >= 6.4.0-150700.53.34.1
    • kernel-azure-devel >= 6.4.0-150700.53.34.1
    • kernel-default >= 6.4.0-150700.53.34.1
    • kernel-default-base >= 6.4.0-150700.53.34.1.150700.17.23.1
    • kernel-default-devel >= 6.4.0-150700.53.34.1
    • kernel-default-extra >= 6.4.0-150700.53.34.1
    • kernel-devel >= 6.4.0-150700.53.34.1
    • kernel-docs >= 6.4.0-150700.53.34.1
    • kernel-macros >= 6.4.0-150700.53.34.1
    • kernel-obs-build >= 6.4.0-150700.53.34.1
    • kernel-source >= 6.4.0-150700.53.34.1
    • kernel-syms >= 6.4.0-150700.53.34.1
    • kernel-zfcpdump >= 6.4.0-150700.53.34.1
    • reiserfs-kmp-default >= 6.4.0-150700.53.34.1
    Patchnames:
    SUSE-SLE-Module-Basesystem-15-SP7-2026-1081
    SUSE-SLE-Module-Development-Tools-15-SP7-2026-1081
    SUSE-SLE-Module-Legacy-15-SP7-2026-1081
    SUSE-SLE-Module-Public-Cloud-15-SP7-2026-1081
    SUSE-SLE-Product-WE-15-SP7-2026-1081
    SUSE Linux Enterprise Server 16.0
    • kernel-64kb >= 6.12.0-160000.27.1
    • kernel-64kb-devel >= 6.12.0-160000.27.1
    • kernel-64kb-extra >= 6.12.0-160000.27.1
    • kernel-azure >= 6.12.0-160000.27.1
    • kernel-azure-devel >= 6.12.0-160000.27.1
    • kernel-azure-extra >= 6.12.0-160000.27.1
    • kernel-azure-vdso >= 6.12.0-160000.27.1
    • kernel-default >= 6.12.0-160000.27.1
    • kernel-default-base >= 6.12.0-160000.27.1.160000.2.8
    • kernel-default-devel >= 6.12.0-160000.27.1
    • kernel-default-extra >= 6.12.0-160000.27.1
    • kernel-default-livepatch >= 6.12.0-160000.27.1
    • kernel-default-vdso >= 6.12.0-160000.27.1
    • kernel-devel >= 6.12.0-160000.27.1
    • kernel-docs >= 6.12.0-160000.27.1
    • kernel-docs-html >= 6.12.0-160000.27.1
    • kernel-kvmsmall >= 6.12.0-160000.27.1
    • kernel-kvmsmall-devel >= 6.12.0-160000.27.1
    • kernel-kvmsmall-vdso >= 6.12.0-160000.27.1
    • kernel-macros >= 6.12.0-160000.27.1
    • kernel-obs-qa >= 6.12.0-160000.27.1
    • kernel-source >= 6.12.0-160000.27.1
    • kernel-source-vanilla >= 6.12.0-160000.27.1
    • kernel-syms >= 6.12.0-160000.27.1
    • kernel-zfcpdump >= 6.12.0-160000.27.1
    Patchnames:
    SUSE-SLES-16.0-435
    SUSE Linux Enterprise Server LTSS Extended Security 12 SP5
    • cluster-md-kmp-default >= 4.12.14-122.296.1
    • dlm-kmp-default >= 4.12.14-122.296.1
    • gfs2-kmp-default >= 4.12.14-122.296.1
    • kernel-default >= 4.12.14-122.296.1
    • kernel-default-base >= 4.12.14-122.296.1
    • kernel-default-devel >= 4.12.14-122.296.1
    • kernel-devel >= 4.12.14-122.296.1
    • kernel-macros >= 4.12.14-122.296.1
    • kernel-source >= 4.12.14-122.296.1
    • kernel-syms >= 4.12.14-122.296.1
    • ocfs2-kmp-default >= 4.12.14-122.296.1
    Patchnames:
    SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2026-1078
    SUSE Linux Enterprise Server for SAP applications 16.0
    • cluster-md-kmp-default >= 6.12.0-160000.27.1
    • dlm-kmp-default >= 6.12.0-160000.27.1
    • gfs2-kmp-default >= 6.12.0-160000.27.1
    • kernel-64kb >= 6.12.0-160000.27.1
    • kernel-64kb-devel >= 6.12.0-160000.27.1
    • kernel-64kb-extra >= 6.12.0-160000.27.1
    • kernel-azure >= 6.12.0-160000.27.1
    • kernel-azure-devel >= 6.12.0-160000.27.1
    • kernel-azure-extra >= 6.12.0-160000.27.1
    • kernel-azure-vdso >= 6.12.0-160000.27.1
    • kernel-default >= 6.12.0-160000.27.1
    • kernel-default-base >= 6.12.0-160000.27.1.160000.2.8
    • kernel-default-devel >= 6.12.0-160000.27.1
    • kernel-default-extra >= 6.12.0-160000.27.1
    • kernel-default-livepatch >= 6.12.0-160000.27.1
    • kernel-default-vdso >= 6.12.0-160000.27.1
    • kernel-devel >= 6.12.0-160000.27.1
    • kernel-docs >= 6.12.0-160000.27.1
    • kernel-docs-html >= 6.12.0-160000.27.1
    • kernel-kvmsmall >= 6.12.0-160000.27.1
    • kernel-kvmsmall-devel >= 6.12.0-160000.27.1
    • kernel-kvmsmall-vdso >= 6.12.0-160000.27.1
    • kernel-macros >= 6.12.0-160000.27.1
    • kernel-obs-qa >= 6.12.0-160000.27.1
    • kernel-source >= 6.12.0-160000.27.1
    • kernel-source-vanilla >= 6.12.0-160000.27.1
    • kernel-syms >= 6.12.0-160000.27.1
    • kernel-zfcpdump >= 6.12.0-160000.27.1
    Patchnames:
    SUSE-SLES-16.0-435
    SUSE Linux Enterprise Workstation Extension 15 SP7
    • kernel-default-extra >= 6.4.0-150700.53.34.1
    Patchnames:
    SUSE-SLE-Product-WE-15-SP7-2026-1081
    SUSE Linux Micro 6.0
    • kernel-default >= 6.4.0-40.1
    • kernel-default-base >= 6.4.0-40.1.21.17
    • kernel-default-livepatch >= 6.4.0-40.1
    • kernel-devel >= 6.4.0-40.1
    • kernel-devel-rt >= 6.4.0-40.1
    • kernel-kvmsmall >= 6.4.0-40.1
    • kernel-macros >= 6.4.0-40.1
    • kernel-rt >= 6.4.0-40.1
    • kernel-rt-livepatch >= 6.4.0-40.1
    • kernel-source >= 6.4.0-40.1
    • kernel-source-rt >= 6.4.0-40.1
    Patchnames:
    SUSE-SLE-Micro-6.0-kernel-291
    SUSE-SLE-Micro-6.0-kernel-295
    SUSE Linux Micro 6.1
    • kernel-default >= 6.4.0-40.1
    • kernel-default-base >= 6.4.0-40.1.21.17
    • kernel-default-devel >= 6.4.0-40.1
    • kernel-default-livepatch >= 6.4.0-40.1
    • kernel-devel >= 6.4.0-40.1
    • kernel-devel-rt >= 6.4.0-40.1
    • kernel-kvmsmall >= 6.4.0-40.1
    • kernel-macros >= 6.4.0-40.1
    • kernel-rt >= 6.4.0-40.1
    • kernel-rt-devel >= 6.4.0-40.1
    • kernel-rt-livepatch >= 6.4.0-40.1
    • kernel-source >= 6.4.0-40.1
    • kernel-source-rt >= 6.4.0-40.1
    Patchnames:
    SUSE-SLE-Micro-6.1-kernel-291
    SUSE-SLE-Micro-6.1-kernel-295
    SUSE Linux Micro 6.2
    • kernel-64kb >= 6.12.0-160000.27.1
    • kernel-64kb-devel >= 6.12.0-160000.27.1
    • kernel-default >= 6.12.0-160000.27.1
    • kernel-default-base >= 6.12.0-160000.27.1.160000.2.8
    • kernel-default-devel >= 6.12.0-160000.27.1
    • kernel-default-extra >= 6.12.0-160000.27.1
    • kernel-default-livepatch >= 6.12.0-160000.27.1
    • kernel-devel >= 6.12.0-160000.27.1
    • kernel-macros >= 6.12.0-160000.27.1
    • kernel-rt >= 6.12.0-160000.27.1
    • kernel-rt-devel >= 6.12.0-160000.27.1
    • kernel-rt-livepatch >= 6.12.0-160000.27.1
    • kernel-source >= 6.12.0-160000.27.1
    Patchnames:
    SUSE-SL-Micro-6.2-435
    openSUSE Leap 16.0
    • cluster-md-kmp-64kb >= 6.12.0-160000.27.1
    • cluster-md-kmp-azure >= 6.12.0-160000.27.1
    • cluster-md-kmp-default >= 6.12.0-160000.27.1
    • cluster-md-kmp-rt >= 6.12.0-160000.27.1
    • dlm-kmp-64kb >= 6.12.0-160000.27.1
    • dlm-kmp-azure >= 6.12.0-160000.27.1
    • dlm-kmp-default >= 6.12.0-160000.27.1
    • dlm-kmp-rt >= 6.12.0-160000.27.1
    • dtb-allwinner >= 6.12.0-160000.27.1
    • dtb-altera >= 6.12.0-160000.27.1
    • dtb-amazon >= 6.12.0-160000.27.1
    • dtb-amd >= 6.12.0-160000.27.1
    • dtb-amlogic >= 6.12.0-160000.27.1
    • dtb-apm >= 6.12.0-160000.27.1
    • dtb-apple >= 6.12.0-160000.27.1
    • dtb-arm >= 6.12.0-160000.27.1
    • dtb-broadcom >= 6.12.0-160000.27.1
    • dtb-cavium >= 6.12.0-160000.27.1
    • dtb-exynos >= 6.12.0-160000.27.1
    • dtb-freescale >= 6.12.0-160000.27.1
    • dtb-hisilicon >= 6.12.0-160000.27.1
    • dtb-lg >= 6.12.0-160000.27.1
    • dtb-marvell >= 6.12.0-160000.27.1
    • dtb-mediatek >= 6.12.0-160000.27.1
    • dtb-nvidia >= 6.12.0-160000.27.1
    • dtb-qcom >= 6.12.0-160000.27.1
    • dtb-renesas >= 6.12.0-160000.27.1
    • dtb-rockchip >= 6.12.0-160000.27.1
    • dtb-socionext >= 6.12.0-160000.27.1
    • dtb-sprd >= 6.12.0-160000.27.1
    • dtb-xilinx >= 6.12.0-160000.27.1
    • gfs2-kmp-64kb >= 6.12.0-160000.27.1
    • gfs2-kmp-azure >= 6.12.0-160000.27.1
    • gfs2-kmp-default >= 6.12.0-160000.27.1
    • gfs2-kmp-rt >= 6.12.0-160000.27.1
    • kernel-64kb >= 6.12.0-160000.27.1
    • kernel-64kb-devel >= 6.12.0-160000.27.1
    • kernel-64kb-extra >= 6.12.0-160000.27.1
    • kernel-64kb-optional >= 6.12.0-160000.27.1
    • kernel-azure >= 6.12.0-160000.27.1
    • kernel-azure-devel >= 6.12.0-160000.27.1
    • kernel-azure-extra >= 6.12.0-160000.27.1
    • kernel-azure-optional >= 6.12.0-160000.27.1
    • kernel-azure-vdso >= 6.12.0-160000.27.1
    • kernel-default >= 6.12.0-160000.27.1
    • kernel-default-base >= 6.12.0-160000.27.1.160000.2.8
    • kernel-default-devel >= 6.12.0-160000.27.1
    • kernel-default-extra >= 6.12.0-160000.27.1
    • kernel-default-optional >= 6.12.0-160000.27.1
    • kernel-default-vdso >= 6.12.0-160000.27.1
    • kernel-devel >= 6.12.0-160000.27.1
    • kernel-docs >= 6.12.0-160000.27.1
    • kernel-docs-html >= 6.12.0-160000.27.1
    • kernel-kvmsmall >= 6.12.0-160000.27.1
    • kernel-kvmsmall-devel >= 6.12.0-160000.27.1
    • kernel-kvmsmall-vdso >= 6.12.0-160000.27.1
    • kernel-macros >= 6.12.0-160000.27.1
    • kernel-obs-build >= 6.12.0-160000.27.1
    • kernel-obs-qa >= 6.12.0-160000.27.1
    • kernel-rt >= 6.12.0-160000.27.1
    • kernel-rt-devel >= 6.12.0-160000.27.1
    • kernel-rt-extra >= 6.12.0-160000.27.1
    • kernel-rt-optional >= 6.12.0-160000.27.1
    • kernel-rt-vdso >= 6.12.0-160000.27.1
    • kernel-source >= 6.12.0-160000.27.1
    • kernel-source-vanilla >= 6.12.0-160000.27.1
    • kernel-syms >= 6.12.0-160000.27.1
    • kernel-zfcpdump >= 6.12.0-160000.27.1
    • kselftests-kmp-64kb >= 6.12.0-160000.27.1
    • kselftests-kmp-azure >= 6.12.0-160000.27.1
    • kselftests-kmp-default >= 6.12.0-160000.27.1
    • kselftests-kmp-rt >= 6.12.0-160000.27.1
    • ocfs2-kmp-64kb >= 6.12.0-160000.27.1
    • ocfs2-kmp-azure >= 6.12.0-160000.27.1
    • ocfs2-kmp-default >= 6.12.0-160000.27.1
    • ocfs2-kmp-rt >= 6.12.0-160000.27.1
    Patchnames:
    openSUSE-Leap-16.0-435

    List of packages in QA

    Product(s) Package(s)
    SUSE Linux Enterprise Server 16.0
    • kernel-64kb >= 6.12.0-160000.27.1
    • kernel-64kb-devel >= 6.12.0-160000.27.1
    • kernel-64kb-extra >= 6.12.0-160000.27.1
    • kernel-azure >= 6.12.0-160000.27.1
    • kernel-azure-devel >= 6.12.0-160000.27.1
    • kernel-azure-extra >= 6.12.0-160000.27.1
    • kernel-azure-vdso >= 6.12.0-160000.27.1
    • kernel-default >= 6.12.0-160000.27.1
    • kernel-default-base >= 6.12.0-160000.27.1.160000.2.8
    • kernel-default-devel >= 6.12.0-160000.27.1
    • kernel-default-extra >= 6.12.0-160000.27.1
    • kernel-default-livepatch >= 6.12.0-160000.27.1
    • kernel-default-vdso >= 6.12.0-160000.27.1
    • kernel-devel >= 6.12.0-160000.27.1
    • kernel-docs >= 6.12.0-160000.27.1
    • kernel-docs-html >= 6.12.0-160000.27.1
    • kernel-kvmsmall >= 6.12.0-160000.27.1
    • kernel-kvmsmall-devel >= 6.12.0-160000.27.1
    • kernel-kvmsmall-vdso >= 6.12.0-160000.27.1
    • kernel-macros >= 6.12.0-160000.27.1
    • kernel-obs-qa >= 6.12.0-160000.27.1
    • kernel-source >= 6.12.0-160000.27.1
    • kernel-source-vanilla >= 6.12.0-160000.27.1
    • kernel-syms >= 6.12.0-160000.27.1
    • kernel-zfcpdump >= 6.12.0-160000.27.1


    First public cloud image revisions this CVE is fixed in:


    Status of this issue by product and package

    Please note that this evaluation state might be work in progress, incomplete or outdated. Also information for service packs in the LTSS phase is only included for issues meeting the LTSS criteria. If in doubt, feel free to contact us for clarification. The updates are grouped by state of their lifecycle. SUSE product lifecycles are documented on the lifecycle page.

    Product(s) Source package State
    Products under general support and receiving all security fixes.
    SUSE Linux Enterprise Desktop 15 SP7 kernel-64kb Released
    SUSE Linux Enterprise Desktop 15 SP7 kernel-default Released
    SUSE Linux Enterprise Desktop 15 SP7 kernel-default-base Released
    SUSE Linux Enterprise Desktop 15 SP7 kernel-docs Released
    SUSE Linux Enterprise Desktop 15 SP7 kernel-obs-build Released
    SUSE Linux Enterprise Desktop 15 SP7 kernel-source Released
    SUSE Linux Enterprise Desktop 15 SP7 kernel-syms Released
    SUSE Linux Enterprise Desktop 15 SP7 kernel-zfcpdump Released
    SUSE Linux Enterprise High Availability Extension 15 SP7 kernel-default Released
    SUSE Linux Enterprise High Availability Extension 16.0 kernel-default Released
    SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-64kb Released
    SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-azure Released
    SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-default Released
    SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-default-base Released
    SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-docs Released
    SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-obs-build Released
    SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-source Released
    SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-syms Released
    SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-zfcpdump Released
    SUSE Linux Enterprise Live Patching 15 SP7 kernel-livepatch-SLE15-SP7-RT_Update_10 Released
    SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-64kb Released
    SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-default Released
    SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-default-base Released
    SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-source Released
    SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-zfcpdump Released
    SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-docs Released
    SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-obs-build Released
    SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-source Released
    SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-syms Released
    SUSE Linux Enterprise Module for Legacy 15 SP7 kernel-default Released
    SUSE Linux Enterprise Module for Public Cloud 15 SP7 kernel-azure Released
    SUSE Linux Enterprise Real Time 15 SP7 kernel-rt Released
    SUSE Linux Enterprise Real Time 15 SP7 kernel-source-rt Released
    SUSE Linux Enterprise Real Time 15 SP7 kernel-syms-rt Released
    SUSE Linux Enterprise Server 15 SP7 kernel-64kb Released
    SUSE Linux Enterprise Server 15 SP7 kernel-azure Released
    SUSE Linux Enterprise Server 15 SP7 kernel-default Released
    SUSE Linux Enterprise Server 15 SP7 kernel-default-base Released
    SUSE Linux Enterprise Server 15 SP7 kernel-docs Released
    SUSE Linux Enterprise Server 15 SP7 kernel-obs-build Released
    SUSE Linux Enterprise Server 15 SP7 kernel-source Released
    SUSE Linux Enterprise Server 15 SP7 kernel-syms Released
    SUSE Linux Enterprise Server 15 SP7 kernel-zfcpdump Released
    SUSE Linux Enterprise Server 16.0 kernel-64kb In progress
    SUSE Linux Enterprise Server 16.0 kernel-azure In progress
    SUSE Linux Enterprise Server 16.0 kernel-default In progress
    SUSE Linux Enterprise Server 16.0 kernel-default-base In progress
    SUSE Linux Enterprise Server 16.0 kernel-docs In progress
    SUSE Linux Enterprise Server 16.0 kernel-kvmsmall In progress
    SUSE Linux Enterprise Server 16.0 kernel-obs-qa In progress
    SUSE Linux Enterprise Server 16.0 kernel-source In progress
    SUSE Linux Enterprise Server 16.0 kernel-syms In progress
    SUSE Linux Enterprise Server 16.0 kernel-zfcpdump In progress
    SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-64kb Released
    SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-azure Released
    SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-default Released
    SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-default-base Released
    SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-docs Released
    SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-obs-build Released
    SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-source Released
    SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-syms Released
    SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-zfcpdump Released
    SUSE Linux Enterprise Server for SAP applications 16.0 kernel-azure Released
    SUSE Linux Enterprise Server for SAP applications 16.0 kernel-default Released
    SUSE Linux Enterprise Server for SAP applications 16.0 kernel-default-base Released
    SUSE Linux Enterprise Server for SAP applications 16.0 kernel-docs Released
    SUSE Linux Enterprise Server for SAP applications 16.0 kernel-kvmsmall Released
    SUSE Linux Enterprise Server for SAP applications 16.0 kernel-obs-qa Released
    SUSE Linux Enterprise Server for SAP applications 16.0 kernel-source Released
    SUSE Linux Enterprise Server for SAP applications 16.0 kernel-syms Released
    SUSE Linux Enterprise Workstation Extension 15 SP7 kernel-default Released
    SUSE Linux Micro 6.0 kernel-default Released
    SUSE Linux Micro 6.0 kernel-default-base Released
    SUSE Linux Micro 6.0 kernel-kvmsmall Released
    SUSE Linux Micro 6.0 kernel-rt Released
    SUSE Linux Micro 6.0 kernel-source Released
    SUSE Linux Micro 6.0 kernel-source-rt Released
    SUSE Linux Micro 6.1 kernel-default Released
    SUSE Linux Micro 6.1 kernel-default-base Released
    SUSE Linux Micro 6.1 kernel-kvmsmall Released
    SUSE Linux Micro 6.1 kernel-rt Released
    SUSE Linux Micro 6.1 kernel-source Released
    SUSE Linux Micro 6.1 kernel-source-rt Released
    SUSE Linux Micro 6.2 kernel-64kb Released
    SUSE Linux Micro 6.2 kernel-default Released
    SUSE Linux Micro 6.2 kernel-default-base Released
    SUSE Linux Micro 6.2 kernel-rt Released
    SUSE Linux Micro 6.2 kernel-source Released
    SUSE Real Time Module 15 SP7 kernel-rt Released
    SUSE Real Time Module 15 SP7 kernel-source-rt Released
    SUSE Real Time Module 15 SP7 kernel-syms-rt Released
    Products under Long Term Service Pack support and receiving important and critical security fixes.
    SUSE Linux Enterprise Server 12 SP5-LTSS kernel-default Released
    SUSE Linux Enterprise Server 12 SP5-LTSS kernel-source Released
    SUSE Linux Enterprise Server 12 SP5-LTSS kernel-syms Released
    SUSE Linux Enterprise Server LTSS Extended Security 12 SP5 kernel-default Released
    SUSE Linux Enterprise Server LTSS Extended Security 12 SP5 kernel-source Released
    SUSE Linux Enterprise Server LTSS Extended Security 12 SP5 kernel-syms Released


    SUSE Timeline for this CVE

    CVE page created: Wed Feb 4 20:04:49 2026
    CVE page last modified: Fri May 8 12:01:18 2026