Upstream information

CVE-2023-54281 at MITRE

Description

In the Linux kernel, the following vulnerability has been resolved:

btrfs: release path before inode lookup during the ino lookup ioctl

During the ino lookup ioctl we can end up calling btrfs_iget() to get an
inode reference while we are holding on a root's btree. If btrfs_iget()
needs to lookup the inode from the root's btree, because it's not
currently loaded in memory, then it will need to lock another or the
same path in the same root btree. This may result in a deadlock and
trigger the following lockdep splat:

WARNING: possible circular locking dependency detected
6.5.0-rc7-syzkaller-00004-gf7757129e3de #0 Not tainted
------------------------------------------------------
syz-executor277/5012 is trying to acquire lock:
ffff88802df41710 (btrfs-tree-01){++++}-{3:3}, at: __btrfs_tree_read_lock+0x2f/0x220 fs/btrfs/locking.c:136

but task is already holding lock:
ffff88802df418e8 (btrfs-tree-00){++++}-{3:3}, at: __btrfs_tree_read_lock+0x2f/0x220 fs/btrfs/locking.c:136

which lock already depends on the new lock.

the existing dependency chain (in reverse order) is:

-> #1 (btrfs-tree-00){++++}-{3:3}:
down_read_nested+0x49/0x2f0 kernel/locking/rwsem.c:1645
__btrfs_tree_read_lock+0x2f/0x220 fs/btrfs/locking.c:136
btrfs_search_slot+0x13a4/0x2f80 fs/btrfs/ctree.c:2302
btrfs_init_root_free_objectid+0x148/0x320 fs/btrfs/disk-io.c:4955
btrfs_init_fs_root fs/btrfs/disk-io.c:1128 [inline]
btrfs_get_root_ref+0x5ae/0xae0 fs/btrfs/disk-io.c:1338
btrfs_get_fs_root fs/btrfs/disk-io.c:1390 [inline]
open_ctree+0x29c8/0x3030 fs/btrfs/disk-io.c:3494
btrfs_fill_super+0x1c7/0x2f0 fs/btrfs/super.c:1154
btrfs_mount_root+0x7e0/0x910 fs/btrfs/super.c:1519
legacy_get_tree+0xef/0x190 fs/fs_context.c:611
vfs_get_tree+0x8c/0x270 fs/super.c:1519
fc_mount fs/namespace.c:1112 [inline]
vfs_kern_mount+0xbc/0x150 fs/namespace.c:1142
btrfs_mount+0x39f/0xb50 fs/btrfs/super.c:1579
legacy_get_tree+0xef/0x190 fs/fs_context.c:611
vfs_get_tree+0x8c/0x270 fs/super.c:1519
do_new_mount+0x28f/0xae0 fs/namespace.c:3335
do_mount fs/namespace.c:3675 [inline]
__do_sys_mount fs/namespace.c:3884 [inline]
__se_sys_mount+0x2d9/0x3c0 fs/namespace.c:3861
do_syscall_x64 arch/x86/entry/common.c:50 [inline]
do_syscall_64+0x41/0xc0 arch/x86/entry/common.c:80
entry_SYSCALL_64_after_hwframe+0x63/0xcd

-> #0 (btrfs-tree-01){++++}-{3:3}:
check_prev_add kernel/locking/lockdep.c:3142 [inline]
check_prevs_add kernel/locking/lockdep.c:3261 [inline]
validate_chain kernel/locking/lockdep.c:3876 [inline]
__lock_acquire+0x39ff/0x7f70 kernel/locking/lockdep.c:5144
lock_acquire+0x1e3/0x520 kernel/locking/lockdep.c:5761
down_read_nested+0x49/0x2f0 kernel/locking/rwsem.c:1645
__btrfs_tree_read_lock+0x2f/0x220 fs/btrfs/locking.c:136
btrfs_tree_read_lock fs/btrfs/locking.c:142 [inline]
btrfs_read_lock_root_node+0x292/0x3c0 fs/btrfs/locking.c:281
btrfs_search_slot_get_root fs/btrfs/ctree.c:1832 [inline]
btrfs_search_slot+0x4ff/0x2f80 fs/btrfs/ctree.c:2154
btrfs_lookup_inode+0xdc/0x480 fs/btrfs/inode-item.c:412
btrfs_read_locked_inode fs/btrfs/inode.c:3892 [inline]
btrfs_iget_path+0x2d9/0x1520 fs/btrfs/inode.c:5716
btrfs_search_path_in_tree_user fs/btrfs/ioctl.c:1961 [inline]
btrfs_ioctl_ino_lookup_user+0x77a/0xf50 fs/btrfs/ioctl.c:2105
btrfs_ioctl+0xb0b/0xd40 fs/btrfs/ioctl.c:4683
vfs_ioctl fs/ioctl.c:51 [inline]
__do_sys_ioctl fs/ioctl.c:870 [inline]
__se_sys_ioctl+0xf8/0x170 fs/ioctl.c:856
do_syscall_x64 arch/x86/entry/common.c:50 [inline]
do_syscall_64+0x41/0xc0 arch/x86/entry/common.c:80
entry_SYSCALL_64_after_hwframe+0x63/0xcd

other info
---truncated---

SUSE information

Overall state of this security issue: Resolved

This issue is currently rated as having moderate severity.

CVSS v3 Scores
CVSS detail SUSE
Base Score 5.5
Vector CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact High
CVSSv3 Version 3.1
CVSS v4 Scores
CVSS detail SUSE
Base Score 6.8
Vector CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Attack Vector Local
Attack Complexity Low
Attack Requirements None
Privileges Required Low
User Interaction None
Vulnerable System Confidentiality Impact None
Vulnerable System Integrity Impact None
Vulnerable System Availability Impact High
Subsequent System Confidentiality Impact None
Subsequent System Integrity Impact None
Subsequent System Availability Impact None
CVSSv4 Version 4.0

Note from the SUSE Security Team on the kernel-default package

SUSE will no longer fix all CVEs in the Linux Kernel anymore, but declare some bug classes as won't fix. Please refer to TID 21496 for more details.

SUSE Bugzilla entry: 1255820 [RESOLVED / FIXED]

No SUSE Security Announcements cross referenced.

List of packages in QA

Product(s) Package(s)
SUSE Linux Enterprise High Availability Extension 15 SP7
  • cluster-md-kmp-default >= 6.4.0-150700.53.28.1
  • dlm-kmp-default >= 6.4.0-150700.53.28.1
  • gfs2-kmp-default >= 6.4.0-150700.53.28.1
  • ocfs2-kmp-default >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Module for Basesystem 15 SP7
  • kernel-64kb >= 6.4.0-150700.53.28.1
  • kernel-64kb-devel >= 6.4.0-150700.53.28.1
  • kernel-default >= 6.4.0-150700.53.28.1
  • kernel-default-base >= 6.4.0-150700.53.28.1.150700.17.19.1
  • kernel-default-devel >= 6.4.0-150700.53.28.1
  • kernel-devel >= 6.4.0-150700.53.28.1
  • kernel-macros >= 6.4.0-150700.53.28.1
  • kernel-zfcpdump >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Server 15 SP7
  • kernel-64kb >= 6.4.0-150700.53.28.1
  • kernel-64kb-devel >= 6.4.0-150700.53.28.1
  • kernel-default >= 6.4.0-150700.53.28.1
  • kernel-default-base >= 6.4.0-150700.53.28.1.150700.17.19.1
  • kernel-default-devel >= 6.4.0-150700.53.28.1
  • kernel-devel >= 6.4.0-150700.53.28.1
  • kernel-macros >= 6.4.0-150700.53.28.1
  • kernel-zfcpdump >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Desktop 15 SP7
  • kernel-64kb >= 6.4.0-150700.53.28.1
  • kernel-64kb-devel >= 6.4.0-150700.53.28.1
  • kernel-default >= 6.4.0-150700.53.28.1
  • kernel-default-base >= 6.4.0-150700.53.28.1.150700.17.19.1
  • kernel-default-devel >= 6.4.0-150700.53.28.1
  • kernel-devel >= 6.4.0-150700.53.28.1
  • kernel-macros >= 6.4.0-150700.53.28.1
  • kernel-zfcpdump >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Server for SAP Applications 15 SP7
  • kernel-64kb >= 6.4.0-150700.53.28.1
  • kernel-64kb-devel >= 6.4.0-150700.53.28.1
  • kernel-default >= 6.4.0-150700.53.28.1
  • kernel-default-base >= 6.4.0-150700.53.28.1.150700.17.19.1
  • kernel-default-devel >= 6.4.0-150700.53.28.1
  • kernel-devel >= 6.4.0-150700.53.28.1
  • kernel-macros >= 6.4.0-150700.53.28.1
  • kernel-zfcpdump >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise High Performance Computing 15 SP7
  • kernel-64kb >= 6.4.0-150700.53.28.1
  • kernel-64kb-devel >= 6.4.0-150700.53.28.1
  • kernel-default >= 6.4.0-150700.53.28.1
  • kernel-default-base >= 6.4.0-150700.53.28.1.150700.17.19.1
  • kernel-default-devel >= 6.4.0-150700.53.28.1
  • kernel-devel >= 6.4.0-150700.53.28.1
  • kernel-macros >= 6.4.0-150700.53.28.1
  • kernel-zfcpdump >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Module for Development Tools 15 SP7
  • kernel-docs >= 6.4.0-150700.53.28.1
  • kernel-obs-build >= 6.4.0-150700.53.28.1
  • kernel-source >= 6.4.0-150700.53.28.1
  • kernel-syms >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Server 15 SP7
  • kernel-docs >= 6.4.0-150700.53.28.1
  • kernel-obs-build >= 6.4.0-150700.53.28.1
  • kernel-source >= 6.4.0-150700.53.28.1
  • kernel-syms >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Desktop 15 SP7
  • kernel-docs >= 6.4.0-150700.53.28.1
  • kernel-obs-build >= 6.4.0-150700.53.28.1
  • kernel-source >= 6.4.0-150700.53.28.1
  • kernel-syms >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Server for SAP Applications 15 SP7
  • kernel-docs >= 6.4.0-150700.53.28.1
  • kernel-obs-build >= 6.4.0-150700.53.28.1
  • kernel-source >= 6.4.0-150700.53.28.1
  • kernel-syms >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise High Performance Computing 15 SP7
  • kernel-docs >= 6.4.0-150700.53.28.1
  • kernel-obs-build >= 6.4.0-150700.53.28.1
  • kernel-source >= 6.4.0-150700.53.28.1
  • kernel-syms >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Module for Legacy 15 SP7
  • reiserfs-kmp-default >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Server 15 SP7
  • reiserfs-kmp-default >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Server for SAP Applications 15 SP7
  • reiserfs-kmp-default >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise High Performance Computing 15 SP7
  • reiserfs-kmp-default >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Module for Public Cloud 15 SP7
  • kernel-azure >= 6.4.0-150700.20.24.1
  • kernel-azure-devel >= 6.4.0-150700.20.24.1
  • kernel-devel-azure >= 6.4.0-150700.20.24.1
  • kernel-source-azure >= 6.4.0-150700.20.24.1
  • kernel-syms-azure >= 6.4.0-150700.20.24.1
SUSE Linux Enterprise Server 15 SP7
  • kernel-azure >= 6.4.0-150700.20.24.1
  • kernel-azure-devel >= 6.4.0-150700.20.24.1
  • kernel-devel-azure >= 6.4.0-150700.20.24.1
  • kernel-source-azure >= 6.4.0-150700.20.24.1
  • kernel-syms-azure >= 6.4.0-150700.20.24.1
SUSE Linux Enterprise Server for SAP Applications 15 SP7
  • kernel-azure >= 6.4.0-150700.20.24.1
  • kernel-azure-devel >= 6.4.0-150700.20.24.1
  • kernel-devel-azure >= 6.4.0-150700.20.24.1
  • kernel-source-azure >= 6.4.0-150700.20.24.1
  • kernel-syms-azure >= 6.4.0-150700.20.24.1
SUSE Linux Enterprise High Performance Computing 15 SP7
  • kernel-azure >= 6.4.0-150700.20.24.1
  • kernel-azure-devel >= 6.4.0-150700.20.24.1
  • kernel-devel-azure >= 6.4.0-150700.20.24.1
  • kernel-source-azure >= 6.4.0-150700.20.24.1
  • kernel-syms-azure >= 6.4.0-150700.20.24.1
SUSE Linux Enterprise Server 15 SP6-LTSS
  • cluster-md-kmp-default >= 6.4.0-150600.23.84.1
  • dlm-kmp-default >= 6.4.0-150600.23.84.1
  • gfs2-kmp-default >= 6.4.0-150600.23.84.1
  • kernel-64kb >= 6.4.0-150600.23.84.1
  • kernel-64kb-devel >= 6.4.0-150600.23.84.1
  • kernel-default >= 6.4.0-150600.23.84.1
  • kernel-default-base >= 6.4.0-150600.23.84.1.150600.12.38.1
  • kernel-default-devel >= 6.4.0-150600.23.84.1
  • kernel-devel >= 6.4.0-150600.23.84.1
  • kernel-docs >= 6.4.0-150600.23.84.1
  • kernel-macros >= 6.4.0-150600.23.84.1
  • kernel-obs-build >= 6.4.0-150600.23.84.1
  • kernel-source >= 6.4.0-150600.23.84.1
  • kernel-syms >= 6.4.0-150600.23.84.1
  • kernel-zfcpdump >= 6.4.0-150600.23.84.1
  • ocfs2-kmp-default >= 6.4.0-150600.23.84.1
  • reiserfs-kmp-default >= 6.4.0-150600.23.84.1
SUSE Linux Enterprise Server 15 SP6-LTSS
  • cluster-md-kmp-default >= 6.4.0-150600.23.84.1
  • dlm-kmp-default >= 6.4.0-150600.23.84.1
  • gfs2-kmp-default >= 6.4.0-150600.23.84.1
  • kernel-64kb >= 6.4.0-150600.23.84.1
  • kernel-64kb-devel >= 6.4.0-150600.23.84.1
  • kernel-default >= 6.4.0-150600.23.84.1
  • kernel-default-base >= 6.4.0-150600.23.84.1.150600.12.38.1
  • kernel-default-devel >= 6.4.0-150600.23.84.1
  • kernel-devel >= 6.4.0-150600.23.84.1
  • kernel-docs >= 6.4.0-150600.23.84.1
  • kernel-macros >= 6.4.0-150600.23.84.1
  • kernel-obs-build >= 6.4.0-150600.23.84.1
  • kernel-source >= 6.4.0-150600.23.84.1
  • kernel-syms >= 6.4.0-150600.23.84.1
  • kernel-zfcpdump >= 6.4.0-150600.23.84.1
  • ocfs2-kmp-default >= 6.4.0-150600.23.84.1
  • reiserfs-kmp-default >= 6.4.0-150600.23.84.1
SUSE Linux Enterprise Server for SAP Applications 15 SP6
  • cluster-md-kmp-default >= 6.4.0-150600.23.84.1
  • dlm-kmp-default >= 6.4.0-150600.23.84.1
  • gfs2-kmp-default >= 6.4.0-150600.23.84.1
  • kernel-default >= 6.4.0-150600.23.84.1
  • kernel-default-base >= 6.4.0-150600.23.84.1.150600.12.38.1
  • kernel-default-devel >= 6.4.0-150600.23.84.1
  • kernel-devel >= 6.4.0-150600.23.84.1
  • kernel-docs >= 6.4.0-150600.23.84.1
  • kernel-macros >= 6.4.0-150600.23.84.1
  • kernel-obs-build >= 6.4.0-150600.23.84.1
  • kernel-source >= 6.4.0-150600.23.84.1
  • kernel-syms >= 6.4.0-150600.23.84.1
  • ocfs2-kmp-default >= 6.4.0-150600.23.84.1
  • reiserfs-kmp-default >= 6.4.0-150600.23.84.1
SUSE Linux Enterprise Workstation Extension 15 SP7
  • kernel-default-extra >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Server 15 SP7
  • kernel-default-extra >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Server for SAP Applications 15 SP7
  • kernel-default-extra >= 6.4.0-150700.53.28.1
SUSE Linux Enterprise Desktop 15 SP7
  • kernel-default-extra >= 6.4.0-150700.53.28.1


Status of this issue by product and package

Please note that this evaluation state might be work in progress, incomplete or outdated. Also information for service packs in the LTSS phase is only included for issues meeting the LTSS criteria. If in doubt, feel free to contact us for clarification. The updates are grouped by state of their lifecycle. SUSE product lifecycles are documented on the lifecycle page.

Product(s) Source package State
Products under general support and receiving all security fixes.
SUSE Linux Enterprise Desktop 15 SP7 kernel-64kb In progress
SUSE Linux Enterprise Desktop 15 SP7 kernel-default In progress
SUSE Linux Enterprise Desktop 15 SP7 kernel-default-base In progress
SUSE Linux Enterprise Desktop 15 SP7 kernel-docs In progress
SUSE Linux Enterprise Desktop 15 SP7 kernel-obs-build In progress
SUSE Linux Enterprise Desktop 15 SP7 kernel-source In progress
SUSE Linux Enterprise Desktop 15 SP7 kernel-syms In progress
SUSE Linux Enterprise Desktop 15 SP7 kernel-zfcpdump In progress
SUSE Linux Enterprise High Availability Extension 15 SP7 kernel-default In progress
SUSE Linux Enterprise High Availability Extension 15 SP7 kernel-source Already fixed
SUSE Linux Enterprise High Availability Extension 16.0 kernel-default Not affected
SUSE Linux Enterprise High Availability Extension 16.0 kernel-source Not affected
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-64kb In progress
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-azure In progress
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-default In progress
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-default-base In progress
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-docs In progress
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-obs-build In progress
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-source In progress
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-source-azure In progress
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-syms In progress
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-syms-azure In progress
SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-zfcpdump In progress
SUSE Linux Enterprise Live Patching 15 SP7 kernel-default Already fixed
SUSE Linux Enterprise Live Patching 15 SP7 kernel-source Already fixed
SUSE Linux Enterprise Micro 5.2 kernel-default Affected
SUSE Linux Enterprise Micro 5.2 kernel-rt Affected
SUSE Linux Enterprise Micro 5.2 kernel-source Affected
SUSE Linux Enterprise Micro 5.2 kernel-source-rt Affected
SUSE Linux Enterprise Micro 5.3 kernel-default Affected
SUSE Linux Enterprise Micro 5.3 kernel-rt Affected
SUSE Linux Enterprise Micro 5.3 kernel-source Affected
SUSE Linux Enterprise Micro 5.3 kernel-source-rt Affected
SUSE Linux Enterprise Micro 5.4 kernel-default Affected
SUSE Linux Enterprise Micro 5.4 kernel-rt Affected
SUSE Linux Enterprise Micro 5.4 kernel-source Affected
SUSE Linux Enterprise Micro 5.4 kernel-source-rt Affected
SUSE Linux Enterprise Micro 5.5 kernel-default Affected
SUSE Linux Enterprise Micro 5.5 kernel-source Affected
SUSE Linux Enterprise Micro 5.5 kernel-source-rt Affected
SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-64kb In progress
SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-default In progress
SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-default-base In progress
SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-source In progress
SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-zfcpdump In progress
SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-default Already fixed
SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-docs In progress
SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-obs-build In progress
SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-source In progress
SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-syms In progress
SUSE Linux Enterprise Module for Legacy 15 SP7 kernel-default In progress
SUSE Linux Enterprise Module for Legacy 15 SP7 kernel-source Already fixed
SUSE Linux Enterprise Module for Public Cloud 15 SP7 kernel-azure In progress
SUSE Linux Enterprise Module for Public Cloud 15 SP7 kernel-source-azure In progress
SUSE Linux Enterprise Module for Public Cloud 15 SP7 kernel-syms-azure In progress
SUSE Linux Enterprise Real Time 15 SP7 kernel-source-rt Already fixed
SUSE Linux Enterprise Server 15 SP7 kernel-64kb In progress
SUSE Linux Enterprise Server 15 SP7 kernel-azure In progress
SUSE Linux Enterprise Server 15 SP7 kernel-default In progress
SUSE Linux Enterprise Server 15 SP7 kernel-default-base In progress
SUSE Linux Enterprise Server 15 SP7 kernel-docs In progress
SUSE Linux Enterprise Server 15 SP7 kernel-obs-build In progress
SUSE Linux Enterprise Server 15 SP7 kernel-source In progress
SUSE Linux Enterprise Server 15 SP7 kernel-source-azure In progress
SUSE Linux Enterprise Server 15 SP7 kernel-syms In progress
SUSE Linux Enterprise Server 15 SP7 kernel-syms-azure In progress
SUSE Linux Enterprise Server 15 SP7 kernel-zfcpdump In progress
SUSE Linux Enterprise Server 16.0 kernel-default Not affected
SUSE Linux Enterprise Server 16.0 kernel-source Not affected
SUSE Linux Enterprise Server 16.0 kernel-source-azure Not affected
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-64kb In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-azure In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-default In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-default-base In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-docs In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-obs-build In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-source In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-source-azure In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-syms In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-syms-azure In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-zfcpdump In progress
SUSE Linux Enterprise Server for SAP applications 16.0 kernel-default Not affected
SUSE Linux Enterprise Server for SAP applications 16.0 kernel-source Not affected
SUSE Linux Enterprise Server for SAP applications 16.0 kernel-source-azure Not affected
SUSE Linux Enterprise Workstation Extension 15 SP7 kernel-default In progress
SUSE Linux Enterprise Workstation Extension 15 SP7 kernel-source Already fixed
SUSE Linux Micro 6.0 kernel-default Already fixed
SUSE Linux Micro 6.0 kernel-source Already fixed
SUSE Linux Micro 6.0 kernel-source-rt Already fixed
SUSE Linux Micro 6.1 kernel-default Already fixed
SUSE Linux Micro 6.1 kernel-source Already fixed
SUSE Linux Micro 6.1 kernel-source-rt Already fixed
SUSE Linux Micro 6.2 kernel-default Not affected
SUSE Linux Micro 6.2 kernel-source Not affected
SUSE Real Time Module 15 SP7 kernel-source-rt Already fixed
Products under Long Term Service Pack support and receiving important and critical security fixes.
SUSE Linux Enterprise High Performance Computing 15 SP4 kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS kernel-default Affected
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS kernel-default Affected
SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS kernel-source Affected
SUSE Linux Enterprise Live Patching 12 SP5 kernel-default Not affected
SUSE Linux Enterprise Live Patching 12 SP5 kernel-source Not affected
SUSE Linux Enterprise Live Patching 15 SP4 kernel-default Affected
SUSE Linux Enterprise Live Patching 15 SP4 kernel-source Affected
SUSE Linux Enterprise Live Patching 15 SP5 kernel-default Affected
SUSE Linux Enterprise Live Patching 15 SP5 kernel-source Affected
SUSE Linux Enterprise Module for Basesystem 15 SP4 kernel-source Affected
SUSE Linux Enterprise Module for Basesystem 15 SP5 kernel-source Affected
SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-default Not affected
SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-source Not affected
SUSE Linux Enterprise Module for Development Tools 15 SP4 kernel-source Affected
SUSE Linux Enterprise Module for Development Tools 15 SP5 kernel-source Affected
SUSE Linux Enterprise Server 11 SP4 LTSS EXTREME CORE kernel-default Not affected
SUSE Linux Enterprise Server 11 SP4 LTSS EXTREME CORE kernel-source Not affected
SUSE Linux Enterprise Server 12 SP5 kernel-source Not affected
SUSE Linux Enterprise Server 12 SP5-LTSS kernel-default Not affected
SUSE Linux Enterprise Server 12 SP5-LTSS kernel-source Not affected
SUSE Linux Enterprise Server 12 SP5-LTSS Extended Security kernel-default Not affected
SUSE Linux Enterprise Server 12 SP5-LTSS Extended Security kernel-source Not affected
SUSE Linux Enterprise Server 15 SP4 kernel-source Affected
SUSE Linux Enterprise Server 15 SP4-LTSS kernel-default Affected
SUSE Linux Enterprise Server 15 SP4-LTSS kernel-source Affected
SUSE Linux Enterprise Server 15 SP5 kernel-source Affected
SUSE Linux Enterprise Server 15 SP5-LTSS kernel-default Affected
SUSE Linux Enterprise Server 15 SP5-LTSS kernel-source Affected
SUSE Linux Enterprise Server 15 SP6-LTSS kernel-64kb In progress
SUSE Linux Enterprise Server 15 SP6-LTSS kernel-default In progress
SUSE Linux Enterprise Server 15 SP6-LTSS kernel-default-base In progress
SUSE Linux Enterprise Server 15 SP6-LTSS kernel-docs In progress
SUSE Linux Enterprise Server 15 SP6-LTSS kernel-obs-build In progress
SUSE Linux Enterprise Server 15 SP6-LTSS kernel-source In progress
SUSE Linux Enterprise Server 15 SP6-LTSS kernel-syms In progress
SUSE Linux Enterprise Server 15 SP6-LTSS kernel-zfcpdump In progress
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5 kernel-source Not affected
SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-default In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-default-base In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-docs In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-obs-build In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-source In progress
SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-source-azure Unsupported
SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-syms In progress
SUSE Manager Proxy 4.3 kernel-source Affected
SUSE Manager Proxy LTS 4.3 kernel-default Affected
SUSE Manager Proxy LTS 4.3 kernel-source Affected
SUSE Manager Retail Branch Server 4.3 kernel-source Affected
SUSE Manager Retail Branch Server LTS 4.3 kernel-default Affected
SUSE Manager Retail Branch Server LTS 4.3 kernel-source Affected
SUSE Manager Server 4.3 kernel-source Affected
SUSE Manager Server LTS 4.3 kernel-default Affected
SUSE Manager Server LTS 4.3 kernel-source Affected
Products past their end of life and not receiving proactive updates anymore.
SUSE CaaS Platform 4.0 kernel-source Not affected
SUSE Enterprise Storage 6 kernel-source Not affected
SUSE Enterprise Storage 7 kernel-source Affected
SUSE Enterprise Storage 7.1 kernel-source Affected
SUSE Linux Enterprise Desktop 11 SP4 kernel-source Not affected
SUSE Linux Enterprise Desktop 12 SP2 kernel-source Not affected
SUSE Linux Enterprise Desktop 12 SP4 kernel-source Not affected
SUSE Linux Enterprise Desktop 15 kernel-source Unsupported
SUSE Linux Enterprise Desktop 15 SP1 kernel-source Not affected
SUSE Linux Enterprise Desktop 15 SP2 kernel-source Affected
SUSE Linux Enterprise Desktop 15 SP3 kernel-source Affected
SUSE Linux Enterprise Desktop 15 SP4 kernel-source Affected
SUSE Linux Enterprise Desktop 15 SP5 kernel-source Affected
SUSE Linux Enterprise Desktop 15 SP6 kernel-default Not affected
SUSE Linux Enterprise Desktop 15 SP6 kernel-source Not affected
SUSE Linux Enterprise High Availability Extension 15 SP3 kernel-default Affected
SUSE Linux Enterprise High Availability Extension 15 SP3 kernel-source Affected
SUSE Linux Enterprise High Availability Extension 15 SP6 kernel-default Not affected
SUSE Linux Enterprise High Availability Extension 15 SP6 kernel-source Not affected
SUSE Linux Enterprise High Performance Computing 15 kernel-source Unsupported
SUSE Linux Enterprise High Performance Computing 15 SP1 kernel-source Not affected
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS kernel-source Not affected
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS kernel-source Not affected
SUSE Linux Enterprise High Performance Computing 15 SP2 kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP3 kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS kernel-default Affected
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS kernel-default Affected
SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-default Not affected
SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-source Not affected
SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-source-azure Unsupported
SUSE Linux Enterprise High Performance Computing 15-ESPOS kernel-source Unsupported
SUSE Linux Enterprise High Performance Computing 15-LTSS kernel-source Unsupported
SUSE Linux Enterprise Live Patching 15 SP3 kernel-default Affected
SUSE Linux Enterprise Live Patching 15 SP3 kernel-source Affected
SUSE Linux Enterprise Live Patching 15 SP6 kernel-default Not affected
SUSE Linux Enterprise Live Patching 15 SP6 kernel-source Not affected
SUSE Linux Enterprise Micro 5.0 kernel-default Not affected
SUSE Linux Enterprise Micro 5.1 kernel-default Affected
SUSE Linux Enterprise Micro 5.1 kernel-rt Affected
SUSE Linux Enterprise Micro 5.1 kernel-source-rt Affected
SUSE Linux Enterprise Module for Basesystem 15 kernel-source Unsupported
SUSE Linux Enterprise Module for Basesystem 15 SP1 kernel-source Not affected
SUSE Linux Enterprise Module for Basesystem 15 SP2 kernel-source Affected
SUSE Linux Enterprise Module for Basesystem 15 SP3 kernel-source Affected
SUSE Linux Enterprise Module for Development Tools 15 kernel-source Unsupported
SUSE Linux Enterprise Module for Development Tools 15 SP1 kernel-source Not affected
SUSE Linux Enterprise Module for Development Tools 15 SP2 kernel-source Affected
SUSE Linux Enterprise Module for Development Tools 15 SP3 kernel-source Affected
SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-default Not affected
SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-source Not affected
SUSE Linux Enterprise Module for Legacy 15 SP6 kernel-default Not affected
SUSE Linux Enterprise Module for Legacy 15 SP6 kernel-source Not affected
SUSE Linux Enterprise Module for Public Cloud 15 SP6 kernel-source-azure Unsupported
SUSE Linux Enterprise Point of Sale 12 SP2-CLIENT kernel-source Not affected
SUSE Linux Enterprise Real Time 15 SP2 kernel-source Affected
SUSE Linux Enterprise Real Time 15 SP3 kernel-source Affected
SUSE Linux Enterprise Real Time 15 SP3 kernel-source-rt Affected
SUSE Linux Enterprise Real Time 15 SP4 kernel-source Affected
SUSE Linux Enterprise Real Time 15 SP4 kernel-source-rt Affected
SUSE Linux Enterprise Real Time 15 SP5 kernel-source-rt Affected
SUSE Linux Enterprise Real Time 15 SP6 kernel-source-rt Unsupported
SUSE Linux Enterprise Server 11 SP4 kernel-source Not affected
SUSE Linux Enterprise Server 11 SP4 LTSS kernel-default Not affected
SUSE Linux Enterprise Server 11 SP4 LTSS kernel-source Not affected
SUSE Linux Enterprise Server 11 SP4-LTSS kernel-source Not affected
SUSE Linux Enterprise Server 12 SP2 kernel-source Not affected
SUSE Linux Enterprise Server 12 SP2-BCL kernel-source Not affected
SUSE Linux Enterprise Server 12 SP2-ESPOS kernel-source Not affected
SUSE Linux Enterprise Server 12 SP2-LTSS kernel-default Not affected
SUSE Linux Enterprise Server 12 SP2-LTSS kernel-source Not affected
SUSE Linux Enterprise Server 12 SP4 kernel-source Not affected
SUSE Linux Enterprise Server 12 SP4-ESPOS kernel-source Not affected
SUSE Linux Enterprise Server 12 SP4-LTSS kernel-default Not affected
SUSE Linux Enterprise Server 12 SP4-LTSS kernel-source Not affected
SUSE Linux Enterprise Server 15 kernel-source Unsupported
SUSE Linux Enterprise Server 15 SP1 kernel-source Not affected
SUSE Linux Enterprise Server 15 SP1-BCL kernel-source Not affected
SUSE Linux Enterprise Server 15 SP1-LTSS kernel-default Not affected
SUSE Linux Enterprise Server 15 SP1-LTSS kernel-source Not affected
SUSE Linux Enterprise Server 15 SP2 kernel-source Affected
SUSE Linux Enterprise Server 15 SP2-BCL kernel-source Affected
SUSE Linux Enterprise Server 15 SP2-LTSS kernel-default Affected
SUSE Linux Enterprise Server 15 SP2-LTSS kernel-source Affected
SUSE Linux Enterprise Server 15 SP3 kernel-source Affected
SUSE Linux Enterprise Server 15 SP3-BCL kernel-source Affected
SUSE Linux Enterprise Server 15 SP3-LTSS kernel-default Affected
SUSE Linux Enterprise Server 15 SP3-LTSS kernel-source Affected
SUSE Linux Enterprise Server 15 SP6 kernel-default Not affected
SUSE Linux Enterprise Server 15 SP6 kernel-source Not affected
SUSE Linux Enterprise Server 15 SP6 kernel-source-azure Unsupported
SUSE Linux Enterprise Server 15-LTSS kernel-default Unsupported
SUSE Linux Enterprise Server 15-LTSS kernel-source Unsupported
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 kernel-source Not affected
SUSE Linux Enterprise Server for SAP Applications 12 SP2 kernel-source Not affected
SUSE Linux Enterprise Server for SAP Applications 12 SP4 kernel-source Not affected
SUSE Linux Enterprise Server for SAP Applications 15 kernel-source Unsupported
SUSE Linux Enterprise Server for SAP Applications 15 SP1 kernel-source Not affected
SUSE Linux Enterprise Server for SAP Applications 15 SP2 kernel-source Affected
SUSE Linux Enterprise Server for SAP Applications 15 SP3 kernel-default Affected
SUSE Linux Enterprise Server for SAP Applications 15 SP3 kernel-source Affected
SUSE Linux Enterprise Server for SAP Applications 15 SP4 kernel-default Affected
SUSE Linux Enterprise Server for SAP Applications 15 SP4 kernel-source Affected
SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-default Affected
SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-source Affected
SUSE Linux Enterprise Workstation Extension 15 SP6 kernel-default Not affected
SUSE Linux Enterprise Workstation Extension 15 SP6 kernel-source Not affected
SUSE Manager Proxy 4.0 kernel-source Not affected
SUSE Manager Proxy 4.1 kernel-source Affected
SUSE Manager Proxy 4.2 kernel-source Affected
SUSE Manager Retail Branch Server 4.0 kernel-source Not affected
SUSE Manager Retail Branch Server 4.1 kernel-source Affected
SUSE Manager Retail Branch Server 4.2 kernel-source Affected
SUSE Manager Server 4.0 kernel-source Not affected
SUSE Manager Server 4.1 kernel-source Affected
SUSE Manager Server 4.2 kernel-source Affected
SUSE OpenStack Cloud 7 kernel-source Not affected
SUSE OpenStack Cloud 9 kernel-source Not affected
SUSE OpenStack Cloud Crowbar 9 kernel-source Not affected
SUSE Real Time Module 15 SP3 kernel-source-rt Affected
SUSE Real Time Module 15 SP4 kernel-source-rt Affected
SUSE Real Time Module 15 SP5 kernel-source-rt Affected
SUSE Real Time Module 15 SP6 kernel-source-rt Unsupported
openSUSE Leap 15.3 kernel-source Affected
openSUSE Leap 15.3 kernel-source-rt Affected
openSUSE Leap 15.4 kernel-source Affected
openSUSE Leap 15.4 kernel-source-rt Affected
openSUSE Leap 15.5 kernel-source Affected
openSUSE Leap 15.5 kernel-source-rt Affected
openSUSE Leap 15.6 kernel-default Not affected
openSUSE Leap 15.6 kernel-source Not affected
openSUSE Leap 15.6 kernel-source-azure Unsupported
openSUSE Leap 15.6 kernel-source-rt Unsupported


SUSE Timeline for this CVE

CVE page created: Tue Dec 30 16:02:50 2025
CVE page last modified: Fri Jan 16 18:14:02 2026