Upstream information

CVE-2025-39885 at MITRE

Description

In the Linux kernel, the following vulnerability has been resolved:

ocfs2: fix recursive semaphore deadlock in fiemap call

syzbot detected a OCFS2 hang due to a recursive semaphore on a
FS_IOC_FIEMAP of the extent list on a specially crafted mmap file.

context_switch kernel/sched/core.c:5357 [inline]
__schedule+0x1798/0x4cc0 kernel/sched/core.c:6961
__schedule_loop kernel/sched/core.c:7043 [inline]
schedule+0x165/0x360 kernel/sched/core.c:7058
schedule_preempt_disabled+0x13/0x30 kernel/sched/core.c:7115
rwsem_down_write_slowpath+0x872/0xfe0 kernel/locking/rwsem.c:1185
__down_write_common kernel/locking/rwsem.c:1317 [inline]
__down_write kernel/locking/rwsem.c:1326 [inline]
down_write+0x1ab/0x1f0 kernel/locking/rwsem.c:1591
ocfs2_page_mkwrite+0x2ff/0xc40 fs/ocfs2/mmap.c:142
do_page_mkwrite+0x14d/0x310 mm/memory.c:3361
wp_page_shared mm/memory.c:3762 [inline]
do_wp_page+0x268d/0x5800 mm/memory.c:3981
handle_pte_fault mm/memory.c:6068 [inline]
__handle_mm_fault+0x1033/0x5440 mm/memory.c:6195
handle_mm_fault+0x40a/0x8e0 mm/memory.c:6364
do_user_addr_fault+0x764/0x1390 arch/x86/mm/fault.c:1387
handle_page_fault arch/x86/mm/fault.c:1476 [inline]
exc_page_fault+0x76/0xf0 arch/x86/mm/fault.c:1532
asm_exc_page_fault+0x26/0x30 arch/x86/include/asm/idtentry.h:623
RIP: 0010:copy_user_generic arch/x86/include/asm/uaccess_64.h:126 [inline]
RIP: 0010:raw_copy_to_user arch/x86/include/asm/uaccess_64.h:147 [inline]
RIP: 0010:_inline_copy_to_user include/linux/uaccess.h:197 [inline]
RIP: 0010:_copy_to_user+0x85/0xb0 lib/usercopy.c:26
Code: e8 00 bc f7 fc 4d 39 fc 72 3d 4d 39 ec 77 38 e8 91 b9 f7 fc 4c 89
f7 89 de e8 47 25 5b fd 0f 01 cb 4c 89 ff 48 89 d9 4c 89 f6 <f3> a4 0f
1f 00 48 89 cb 0f 01 ca 48 89 d8 5b 41 5c 41 5d 41 5e 41
RSP: 0018:ffffc9000403f950 EFLAGS: 00050256
RAX: ffffffff84c7f101 RBX: 0000000000000038 RCX: 0000000000000038
RDX: 0000000000000000 RSI: ffffc9000403f9e0 RDI: 0000200000000060
RBP: ffffc9000403fa90 R08: ffffc9000403fa17 R09: 1ffff92000807f42
R10: dffffc0000000000 R11: fffff52000807f43 R12: 0000200000000098
R13: 00007ffffffff000 R14: ffffc9000403f9e0 R15: 0000200000000060
copy_to_user include/linux/uaccess.h:225 [inline]
fiemap_fill_next_extent+0x1c0/0x390 fs/ioctl.c:145
ocfs2_fiemap+0x888/0xc90 fs/ocfs2/extent_map.c:806
ioctl_fiemap fs/ioctl.c:220 [inline]
do_vfs_ioctl+0x1173/0x1430 fs/ioctl.c:532
__do_sys_ioctl fs/ioctl.c:596 [inline]
__se_sys_ioctl+0x82/0x170 fs/ioctl.c:584
do_syscall_x64 arch/x86/entry/syscall_64.c:63 [inline]
do_syscall_64+0xfa/0x3b0 arch/x86/entry/syscall_64.c:94
entry_SYSCALL_64_after_hwframe+0x77/0x7f
RIP: 0033:0x7f5f13850fd9
RSP: 002b:00007ffe3b3518b8 EFLAGS: 00000246 ORIG_RAX: 0000000000000010
RAX: ffffffffffffffda RBX: 0000200000000000 RCX: 00007f5f13850fd9
RDX: 0000200000000040 RSI: 00000000c020660b RDI: 0000000000000004
RBP: 6165627472616568 R08: 0000000000000000 R09: 0000000000000000
R10: 0000000000000000 R11: 0000000000000246 R12: 00007ffe3b3518f0
R13: 00007ffe3b351b18 R14: 431bde82d7b634db R15: 00007f5f1389a03b

ocfs2_fiemap() takes a read lock of the ip_alloc_sem semaphore (since
v2.6.22-527-g7307de80510a) and calls fiemap_fill_next_extent() to read the
extent list of this running mmap executable. The user supplied buffer to
hold the fiemap information page faults calling ocfs2_page_mkwrite() which
will take a write lock (since v2.6.27-38-g00dc417fa3e7) of the same
semaphore. This recursive semaphore will hold filesystem locks and causes
a hang of the fileystem.

The ip_alloc_sem protects the inode extent list and size. Release the
read semphore before calling fiemap_fill_next_extent() in ocfs2_fiemap()
and ocfs2_fiemap_inline(). This does an unnecessary semaphore lock/unlock
on the last extent but simplifies the error path.

SUSE information

Overall state of this security issue: Pending

This issue is currently rated as having moderate severity.

CVSS v3 Scores
CVSS detail SUSE
Base Score 5.5
Vector CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact High
CVSSv3 Version 3.1

Note from the SUSE Security Team on the kernel-default package

SUSE will no longer fix all CVEs in the Linux Kernel anymore, but declare some bug classes as won't fix. Please refer to TID 21496 for more details.

SUSE Bugzilla entry: 1250407 [NEW]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
Container bci/bci-sle15-kernel-module-devel:15.6.54.5
  • kernel-default-devel >= 6.4.0-150600.23.73.1
  • kernel-devel >= 6.4.0-150600.23.73.1
  • kernel-macros >= 6.4.0-150600.23.73.1
  • kernel-syms >= 6.4.0-150600.23.73.1
Container bci/bci-sle15-kernel-module-devel:15.7-51.3
  • kernel-default-devel >= 6.4.0-150700.53.19.1
  • kernel-devel >= 6.4.0-150700.53.19.1
  • kernel-macros >= 6.4.0-150700.53.19.1
  • kernel-syms >= 6.4.0-150700.53.19.1
Container suse/hpc/warewulf4-x86_64/sle-hpc-node:15.6.17.8.116
Image SLES15-SP6-BYOS
Image SLES15-SP6-BYOS-Azure
Image SLES15-SP6-BYOS-EC2
Image SLES15-SP6-BYOS-GCE
Image SLES15-SP6-CHOST-BYOS
Image SLES15-SP6-CHOST-BYOS-Aliyun
Image SLES15-SP6-CHOST-BYOS-Azure
Image SLES15-SP6-CHOST-BYOS-EC2
Image SLES15-SP6-CHOST-BYOS-GCE
Image SLES15-SP6-CHOST-BYOS-GDC
Image SLES15-SP6-CHOST-BYOS-SAP-CCloud
Image SLES15-SP6-EC2
Image SLES15-SP6-EC2-ECS-HVM
Image SLES15-SP6-GCE
Image SLES15-SP6-HPC-BYOS
Image SLES15-SP6-HPC-BYOS-Azure
Image SLES15-SP6-HPC-BYOS-EC2
Image SLES15-SP6-HPC-BYOS-GCE
Image SLES15-SP6-HPC-EC2
Image SLES15-SP6-HPC-GCE
Image SLES15-SP6-Hardened-BYOS
Image SLES15-SP6-Hardened-BYOS-Azure
Image SLES15-SP6-Hardened-BYOS-EC2
Image SLES15-SP6-Hardened-BYOS-GCE
Image SLES15-SP6-SAP
Image SLES15-SP6-SAP-Azure
Image SLES15-SP6-SAP-EC2
Image SLES15-SP6-SAP-GCE
Image SLES15-SP6-SAPCAL
Image SLES15-SP6-SAPCAL-Azure
Image SLES15-SP6-SAPCAL-EC2
Image SLES15-SP6-SAPCAL-GCE
  • kernel-default >= 6.4.0-150600.23.73.1
Container suse/sl-micro/6.0/base-os-container:2.1.3-7.57
Container suse/sl-micro/6.1/base-os-container:2.2.1-5.40
Image SLE-Micro
Image SLE-Micro-Azure
Image SLE-Micro-BYOS
Image SLE-Micro-BYOS-Azure
Image SLE-Micro-BYOS-EC2
Image SLE-Micro-BYOS-GCE
Image SLE-Micro-EC2
Image SLE-Micro-GCE
  • kernel-default >= 6.4.0-35.1
Container suse/sl-micro/6.0/kvm-os-container:2.1.3-6.80
Container suse/sl-micro/6.1/kvm-os-container:2.2.1-5.41
  • kernel-default-base >= 6.4.0-35.1.21.12
Container suse/sl-micro/6.0/rt-os-container:2.1.3-7.95
Container suse/sl-micro/6.1/rt-os-container:2.2.1-5.34
  • kernel-rt >= 6.4.0-37.1
Image SLES12-SP5-Azure-BYOS
Image SLES12-SP5-EC2-BYOS
Image SLES12-SP5-EC2-ECS-On-Demand
Image SLES12-SP5-EC2-On-Demand
Image SLES12-SP5-GCE-BYOS
Image SLES12-SP5-GCE-On-Demand
  • kernel-default >= 4.12.14-122.275.1
Image SLES12-SP5-EC2-SAP-On-Demand
  • cluster-md-kmp-default >= 4.12.14-122.275.1
  • dlm-kmp-default >= 4.12.14-122.275.1
  • gfs2-kmp-default >= 4.12.14-122.275.1
  • kernel-default >= 4.12.14-122.275.1
  • ocfs2-kmp-default >= 4.12.14-122.275.1
Image SLES15-SP6-SAP-Azure-3P
Image SLES15-SP6-SAP-BYOS
Image SLES15-SP6-SAP-BYOS-Azure
Image SLES15-SP6-SAP-BYOS-EC2
Image SLES15-SP6-SAP-BYOS-GCE
Image SLES15-SP6-SAP-Hardened
Image SLES15-SP6-SAP-Hardened-Azure
Image SLES15-SP6-SAP-Hardened-BYOS
Image SLES15-SP6-SAP-Hardened-BYOS-Azure
Image SLES15-SP6-SAP-Hardened-BYOS-EC2
Image SLES15-SP6-SAP-Hardened-BYOS-GCE
Image SLES15-SP6-SAP-Hardened-EC2
Image SLES15-SP6-SAP-Hardened-GCE
  • cluster-md-kmp-default >= 6.4.0-150600.23.73.1
  • dlm-kmp-default >= 6.4.0-150600.23.73.1
  • gfs2-kmp-default >= 6.4.0-150600.23.73.1
  • kernel-default >= 6.4.0-150600.23.73.1
  • ocfs2-kmp-default >= 6.4.0-150600.23.73.1
Image SLES15-SP6
Image SLES15-SP6-Azure-3P
Image SLES15-SP6-Azure-Standard
Image SLES15-SP6-HPC
Image SLES15-SP6-HPC-Azure
  • kernel-azure >= 6.4.0-150600.8.52.1
Image SLES15-SP7-Azure-3P
Image SLES15-SP7-Azure-Basic
Image SLES15-SP7-Azure-Standard
Image SLES15-SP7-HPC-Azure
  • kernel-azure >= 6.4.0-150700.20.15.2
Image SLES15-SP7-BYOS-Azure
Image SLES15-SP7-BYOS-EC2
Image SLES15-SP7-BYOS-GCE
Image SLES15-SP7-CHOST-BYOS-Aliyun
Image SLES15-SP7-CHOST-BYOS-Azure
Image SLES15-SP7-CHOST-BYOS-EC2
Image SLES15-SP7-CHOST-BYOS-GCE
Image SLES15-SP7-CHOST-BYOS-GDC
Image SLES15-SP7-CHOST-BYOS-SAP-CCloud
Image SLES15-SP7-EC2
Image SLES15-SP7-EC2-ECS-HVM
Image SLES15-SP7-GCE
Image SLES15-SP7-HPC-BYOS-Azure
Image SLES15-SP7-HPC-BYOS-EC2
Image SLES15-SP7-HPC-BYOS-GCE
Image SLES15-SP7-Hardened-BYOS-Azure
Image SLES15-SP7-Hardened-BYOS-EC2
Image SLES15-SP7-Hardened-BYOS-GCE
Image SLES15-SP7-SAPCAL-Azure
Image SLES15-SP7-SAPCAL-EC2
Image SLES15-SP7-SAPCAL-GCE
  • kernel-default >= 6.4.0-150700.53.19.1
Image SLES15-SP7-SAP-Azure
Image SLES15-SP7-SAP-Azure-3P
Image SLES15-SP7-SAP-BYOS-Azure
Image SLES15-SP7-SAP-BYOS-EC2
Image SLES15-SP7-SAP-BYOS-GCE
Image SLES15-SP7-SAP-EC2
Image SLES15-SP7-SAP-GCE
Image SLES15-SP7-SAP-Hardened-Azure
Image SLES15-SP7-SAP-Hardened-BYOS-Azure
Image SLES15-SP7-SAP-Hardened-BYOS-EC2
Image SLES15-SP7-SAP-Hardened-BYOS-GCE
Image SLES15-SP7-SAP-Hardened-GCE
  • cluster-md-kmp-default >= 6.4.0-150700.53.19.1
  • dlm-kmp-default >= 6.4.0-150700.53.19.1
  • gfs2-kmp-default >= 6.4.0-150700.53.19.1
  • kernel-default >= 6.4.0-150700.53.19.1
  • ocfs2-kmp-default >= 6.4.0-150700.53.19.1
SUSE Linux Enterprise Desktop 15 SP6
  • kernel-64kb >= 6.4.0-150600.23.73.1
  • kernel-64kb-devel >= 6.4.0-150600.23.73.1
  • kernel-default >= 6.4.0-150600.23.73.1
  • kernel-default-base >= 6.4.0-150600.23.73.1.150600.12.32.1
  • kernel-default-devel >= 6.4.0-150600.23.73.1
  • kernel-default-extra >= 6.4.0-150600.23.73.1
  • kernel-devel >= 6.4.0-150600.23.73.1
  • kernel-docs >= 6.4.0-150600.23.73.1
  • kernel-macros >= 6.4.0-150600.23.73.1
  • kernel-obs-build >= 6.4.0-150600.23.73.1
  • kernel-source >= 6.4.0-150600.23.73.1
  • kernel-syms >= 6.4.0-150600.23.73.1
  • kernel-zfcpdump >= 6.4.0-150600.23.73.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP6-2025-3600
SUSE-SLE-Module-Development-Tools-15-SP6-2025-3600
SUSE-SLE-Product-WE-15-SP6-2025-3600
SUSE Linux Enterprise Desktop 15 SP7
  • kernel-64kb >= 6.4.0-150700.53.19.1
  • kernel-64kb-devel >= 6.4.0-150700.53.19.1
  • kernel-default >= 6.4.0-150700.53.19.1
  • kernel-default-base >= 6.4.0-150700.53.19.1.150700.17.13.1
  • kernel-default-devel >= 6.4.0-150700.53.19.1
  • kernel-default-extra >= 6.4.0-150700.53.19.1
  • kernel-devel >= 6.4.0-150700.53.19.1
  • kernel-docs >= 6.4.0-150700.53.19.1
  • kernel-macros >= 6.4.0-150700.53.19.1
  • kernel-obs-build >= 6.4.0-150700.53.19.1
  • kernel-source >= 6.4.0-150700.53.19.1
  • kernel-syms >= 6.4.0-150700.53.19.1
  • kernel-zfcpdump >= 6.4.0-150700.53.19.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP7-2025-3601
SUSE-SLE-Module-Development-Tools-15-SP7-2025-3601
SUSE-SLE-Product-WE-15-SP7-2025-3601
SUSE Linux Enterprise High Availability Extension 15 SP6
  • cluster-md-kmp-default >= 6.4.0-150600.23.73.1
  • dlm-kmp-default >= 6.4.0-150600.23.73.1
  • gfs2-kmp-default >= 6.4.0-150600.23.73.1
  • ocfs2-kmp-default >= 6.4.0-150600.23.73.1
Patchnames:
SUSE-SLE-Product-HA-15-SP6-2025-3600
SUSE Linux Enterprise High Availability Extension 15 SP7
  • cluster-md-kmp-default >= 6.4.0-150700.53.19.1
  • dlm-kmp-default >= 6.4.0-150700.53.19.1
  • gfs2-kmp-default >= 6.4.0-150700.53.19.1
  • ocfs2-kmp-default >= 6.4.0-150700.53.19.1
Patchnames:
SUSE-SLE-Product-HA-15-SP7-2025-3601
SUSE Linux Enterprise High Performance Computing 15 SP6
  • kernel-64kb >= 6.4.0-150600.23.73.1
  • kernel-64kb-devel >= 6.4.0-150600.23.73.1
  • kernel-azure >= 6.4.0-150600.8.52.1
  • kernel-azure-devel >= 6.4.0-150600.8.52.1
  • kernel-default >= 6.4.0-150600.23.73.1
  • kernel-default-base >= 6.4.0-150600.23.73.1.150600.12.32.1
  • kernel-default-devel >= 6.4.0-150600.23.73.1
  • kernel-devel >= 6.4.0-150600.23.73.1
  • kernel-devel-azure >= 6.4.0-150600.8.52.1
  • kernel-docs >= 6.4.0-150600.23.73.1
  • kernel-macros >= 6.4.0-150600.23.73.1
  • kernel-obs-build >= 6.4.0-150600.23.73.1
  • kernel-source >= 6.4.0-150600.23.73.1
  • kernel-source-azure >= 6.4.0-150600.8.52.1
  • kernel-syms >= 6.4.0-150600.23.73.1
  • kernel-syms-azure >= 6.4.0-150600.8.52.1
  • kernel-zfcpdump >= 6.4.0-150600.23.73.1
  • reiserfs-kmp-default >= 6.4.0-150600.23.73.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP6-2025-3600
SUSE-SLE-Module-Development-Tools-15-SP6-2025-3600
SUSE-SLE-Module-Legacy-15-SP6-2025-3600
SUSE-SLE-Module-Public-Cloud-15-SP6-2025-3634
SUSE Linux Enterprise High Performance Computing 15 SP7
  • kernel-64kb >= 6.4.0-150700.53.19.1
  • kernel-64kb-devel >= 6.4.0-150700.53.19.1
  • kernel-azure >= 6.4.0-150700.20.15.2
  • kernel-azure-devel >= 6.4.0-150700.20.15.2
  • kernel-default >= 6.4.0-150700.53.19.1
  • kernel-default-base >= 6.4.0-150700.53.19.1.150700.17.13.1
  • kernel-default-devel >= 6.4.0-150700.53.19.1
  • kernel-devel >= 6.4.0-150700.53.19.1
  • kernel-devel-azure >= 6.4.0-150700.20.15.2
  • kernel-docs >= 6.4.0-150700.53.19.1
  • kernel-macros >= 6.4.0-150700.53.19.1
  • kernel-obs-build >= 6.4.0-150700.53.19.1
  • kernel-source >= 6.4.0-150700.53.19.1
  • kernel-source-azure >= 6.4.0-150700.20.15.2
  • kernel-syms >= 6.4.0-150700.53.19.1
  • kernel-syms-azure >= 6.4.0-150700.20.15.1
  • kernel-zfcpdump >= 6.4.0-150700.53.19.1
  • reiserfs-kmp-default >= 6.4.0-150700.53.19.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP7-2025-3601
SUSE-SLE-Module-Development-Tools-15-SP7-2025-3601
SUSE-SLE-Module-Legacy-15-SP7-2025-3601
SUSE-SLE-Module-Public-Cloud-15-SP7-2025-3633
SUSE Linux Enterprise Live Patching 15 SP6
    Patchnames:
    SUSE-SLE-Module-Live-Patching-15-SP6-2025-3751
    SUSE Linux Enterprise Live Patching 15 SP7
      Patchnames:
      SUSE-SLE-Module-Live-Patching-15-SP7-2025-3725
      SUSE Linux Enterprise Module for Basesystem 15 SP6
      • kernel-64kb >= 6.4.0-150600.23.73.1
      • kernel-64kb-devel >= 6.4.0-150600.23.73.1
      • kernel-default >= 6.4.0-150600.23.73.1
      • kernel-default-base >= 6.4.0-150600.23.73.1.150600.12.32.1
      • kernel-default-devel >= 6.4.0-150600.23.73.1
      • kernel-devel >= 6.4.0-150600.23.73.1
      • kernel-macros >= 6.4.0-150600.23.73.1
      • kernel-zfcpdump >= 6.4.0-150600.23.73.1
      Patchnames:
      SUSE-SLE-Module-Basesystem-15-SP6-2025-3600
      SUSE Linux Enterprise Module for Basesystem 15 SP7
      • kernel-64kb >= 6.4.0-150700.53.19.1
      • kernel-64kb-devel >= 6.4.0-150700.53.19.1
      • kernel-default >= 6.4.0-150700.53.19.1
      • kernel-default-base >= 6.4.0-150700.53.19.1.150700.17.13.1
      • kernel-default-devel >= 6.4.0-150700.53.19.1
      • kernel-devel >= 6.4.0-150700.53.19.1
      • kernel-macros >= 6.4.0-150700.53.19.1
      • kernel-zfcpdump >= 6.4.0-150700.53.19.1
      Patchnames:
      SUSE-SLE-Module-Basesystem-15-SP7-2025-3601
      SUSE Linux Enterprise Module for Development Tools 15 SP6
      • kernel-docs >= 6.4.0-150600.23.73.1
      • kernel-obs-build >= 6.4.0-150600.23.73.1
      • kernel-source >= 6.4.0-150600.23.73.1
      • kernel-syms >= 6.4.0-150600.23.73.1
      Patchnames:
      SUSE-SLE-Module-Development-Tools-15-SP6-2025-3600
      SUSE Linux Enterprise Module for Development Tools 15 SP7
      • kernel-docs >= 6.4.0-150700.53.19.1
      • kernel-obs-build >= 6.4.0-150700.53.19.1
      • kernel-source >= 6.4.0-150700.53.19.1
      • kernel-syms >= 6.4.0-150700.53.19.1
      Patchnames:
      SUSE-SLE-Module-Development-Tools-15-SP7-2025-3601
      SUSE Linux Enterprise Module for Legacy 15 SP6
      • reiserfs-kmp-default >= 6.4.0-150600.23.73.1
      Patchnames:
      SUSE-SLE-Module-Legacy-15-SP6-2025-3600
      SUSE Linux Enterprise Module for Legacy 15 SP7
      • reiserfs-kmp-default >= 6.4.0-150700.53.19.1
      Patchnames:
      SUSE-SLE-Module-Legacy-15-SP7-2025-3601
      SUSE Linux Enterprise Module for Public Cloud 15 SP6
      • kernel-azure >= 6.4.0-150600.8.52.1
      • kernel-azure-devel >= 6.4.0-150600.8.52.1
      • kernel-devel-azure >= 6.4.0-150600.8.52.1
      • kernel-source-azure >= 6.4.0-150600.8.52.1
      • kernel-syms-azure >= 6.4.0-150600.8.52.1
      Patchnames:
      SUSE-SLE-Module-Public-Cloud-15-SP6-2025-3634
      SUSE Linux Enterprise Module for Public Cloud 15 SP7
      • kernel-azure >= 6.4.0-150700.20.15.2
      • kernel-azure-devel >= 6.4.0-150700.20.15.2
      • kernel-devel-azure >= 6.4.0-150700.20.15.2
      • kernel-source-azure >= 6.4.0-150700.20.15.2
      • kernel-syms-azure >= 6.4.0-150700.20.15.1
      Patchnames:
      SUSE-SLE-Module-Public-Cloud-15-SP7-2025-3633
      SUSE Linux Enterprise Real Time 15 SP6
      SUSE Real Time Module 15 SP6
      • cluster-md-kmp-rt >= 6.4.0-150600.10.55.1
      • dlm-kmp-rt >= 6.4.0-150600.10.55.1
      • gfs2-kmp-rt >= 6.4.0-150600.10.55.1
      • kernel-devel-rt >= 6.4.0-150600.10.55.1
      • kernel-rt >= 6.4.0-150600.10.55.1
      • kernel-rt-devel >= 6.4.0-150600.10.55.1
      • kernel-rt_debug >= 6.4.0-150600.10.55.1
      • kernel-rt_debug-devel >= 6.4.0-150600.10.55.1
      • kernel-source-rt >= 6.4.0-150600.10.55.1
      • kernel-syms-rt >= 6.4.0-150600.10.55.1
      • ocfs2-kmp-rt >= 6.4.0-150600.10.55.1
      Patchnames:
      SUSE-SLE-Module-RT-15-SP6-2025-3751
      SUSE Linux Enterprise Real Time 15 SP7
      SUSE Real Time Module 15 SP7
      • cluster-md-kmp-rt >= 6.4.0-150700.7.19.1
      • dlm-kmp-rt >= 6.4.0-150700.7.19.1
      • gfs2-kmp-rt >= 6.4.0-150700.7.19.1
      • kernel-devel-rt >= 6.4.0-150700.7.19.1
      • kernel-rt >= 6.4.0-150700.7.19.1
      • kernel-rt-devel >= 6.4.0-150700.7.19.1
      • kernel-source-rt >= 6.4.0-150700.7.19.1
      • kernel-syms-rt >= 6.4.0-150700.7.19.1
      • ocfs2-kmp-rt >= 6.4.0-150700.7.19.1
      Patchnames:
      SUSE-SLE-Module-RT-15-SP7-2025-3725
      SUSE Linux Enterprise Server 12 SP5-LTSS
      • cluster-md-kmp-default >= 4.12.14-122.275.1
      • dlm-kmp-default >= 4.12.14-122.275.1
      • gfs2-kmp-default >= 4.12.14-122.275.1
      • kernel-default >= 4.12.14-122.275.1
      • kernel-default-base >= 4.12.14-122.275.1
      • kernel-default-devel >= 4.12.14-122.275.1
      • kernel-default-man >= 4.12.14-122.275.1
      • kernel-devel >= 4.12.14-122.275.1
      • kernel-macros >= 4.12.14-122.275.1
      • kernel-source >= 4.12.14-122.275.1
      • kernel-syms >= 4.12.14-122.275.1
      • ocfs2-kmp-default >= 4.12.14-122.275.1
      Patchnames:
      SUSE-SLE-SERVER-12-SP5-LTSS-2025-3614
      SUSE Linux Enterprise Server 15 SP6
      SUSE Linux Enterprise Server for SAP Applications 15 SP6
      • kernel-64kb >= 6.4.0-150600.23.73.1
      • kernel-64kb-devel >= 6.4.0-150600.23.73.1
      • kernel-azure >= 6.4.0-150600.8.52.1
      • kernel-azure-devel >= 6.4.0-150600.8.52.1
      • kernel-default >= 6.4.0-150600.23.73.1
      • kernel-default-base >= 6.4.0-150600.23.73.1.150600.12.32.1
      • kernel-default-devel >= 6.4.0-150600.23.73.1
      • kernel-default-extra >= 6.4.0-150600.23.73.1
      • kernel-devel >= 6.4.0-150600.23.73.1
      • kernel-devel-azure >= 6.4.0-150600.8.52.1
      • kernel-docs >= 6.4.0-150600.23.73.1
      • kernel-macros >= 6.4.0-150600.23.73.1
      • kernel-obs-build >= 6.4.0-150600.23.73.1
      • kernel-source >= 6.4.0-150600.23.73.1
      • kernel-source-azure >= 6.4.0-150600.8.52.1
      • kernel-syms >= 6.4.0-150600.23.73.1
      • kernel-syms-azure >= 6.4.0-150600.8.52.1
      • kernel-zfcpdump >= 6.4.0-150600.23.73.1
      • reiserfs-kmp-default >= 6.4.0-150600.23.73.1
      Patchnames:
      SUSE-SLE-Module-Basesystem-15-SP6-2025-3600
      SUSE-SLE-Module-Development-Tools-15-SP6-2025-3600
      SUSE-SLE-Module-Legacy-15-SP6-2025-3600
      SUSE-SLE-Module-Public-Cloud-15-SP6-2025-3634
      SUSE-SLE-Product-WE-15-SP6-2025-3600
      SUSE Linux Enterprise Server 15 SP7
      SUSE Linux Enterprise Server for SAP Applications 15 SP7
      • kernel-64kb >= 6.4.0-150700.53.19.1
      • kernel-64kb-devel >= 6.4.0-150700.53.19.1
      • kernel-azure >= 6.4.0-150700.20.15.2
      • kernel-azure-devel >= 6.4.0-150700.20.15.2
      • kernel-default >= 6.4.0-150700.53.19.1
      • kernel-default-base >= 6.4.0-150700.53.19.1.150700.17.13.1
      • kernel-default-devel >= 6.4.0-150700.53.19.1
      • kernel-default-extra >= 6.4.0-150700.53.19.1
      • kernel-devel >= 6.4.0-150700.53.19.1
      • kernel-devel-azure >= 6.4.0-150700.20.15.2
      • kernel-docs >= 6.4.0-150700.53.19.1
      • kernel-macros >= 6.4.0-150700.53.19.1
      • kernel-obs-build >= 6.4.0-150700.53.19.1
      • kernel-source >= 6.4.0-150700.53.19.1
      • kernel-source-azure >= 6.4.0-150700.20.15.2
      • kernel-syms >= 6.4.0-150700.53.19.1
      • kernel-syms-azure >= 6.4.0-150700.20.15.1
      • kernel-zfcpdump >= 6.4.0-150700.53.19.1
      • reiserfs-kmp-default >= 6.4.0-150700.53.19.1
      Patchnames:
      SUSE-SLE-Module-Basesystem-15-SP7-2025-3601
      SUSE-SLE-Module-Development-Tools-15-SP7-2025-3601
      SUSE-SLE-Module-Legacy-15-SP7-2025-3601
      SUSE-SLE-Module-Public-Cloud-15-SP7-2025-3633
      SUSE-SLE-Product-WE-15-SP7-2025-3601
      SUSE Linux Enterprise Server LTSS Extended Security 12 SP5
      • cluster-md-kmp-default >= 4.12.14-122.275.1
      • dlm-kmp-default >= 4.12.14-122.275.1
      • gfs2-kmp-default >= 4.12.14-122.275.1
      • kernel-default >= 4.12.14-122.275.1
      • kernel-default-base >= 4.12.14-122.275.1
      • kernel-default-devel >= 4.12.14-122.275.1
      • kernel-devel >= 4.12.14-122.275.1
      • kernel-macros >= 4.12.14-122.275.1
      • kernel-source >= 4.12.14-122.275.1
      • kernel-syms >= 4.12.14-122.275.1
      • ocfs2-kmp-default >= 4.12.14-122.275.1
      Patchnames:
      SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2025-3614
      SUSE Linux Enterprise Workstation Extension 15 SP6
      • kernel-default-extra >= 6.4.0-150600.23.73.1
      Patchnames:
      SUSE-SLE-Product-WE-15-SP6-2025-3600
      SUSE Linux Enterprise Workstation Extension 15 SP7
      • kernel-default-extra >= 6.4.0-150700.53.19.1
      Patchnames:
      SUSE-SLE-Product-WE-15-SP7-2025-3601
      SUSE Linux Micro 6.0
      • kernel-default >= 6.4.0-35.1
      • kernel-default-base >= 6.4.0-35.1.21.12
      • kernel-default-livepatch >= 6.4.0-35.1
      • kernel-devel >= 6.4.0-35.1
      • kernel-devel-rt >= 6.4.0-37.1
      • kernel-kvmsmall >= 6.4.0-35.1
      • kernel-macros >= 6.4.0-35.1
      • kernel-rt >= 6.4.0-37.1
      • kernel-rt-livepatch >= 6.4.0-37.1
      • kernel-source >= 6.4.0-35.1
      • kernel-source-rt >= 6.4.0-37.1
      Patchnames:
      SUSE-SLE-Micro-6.0-kernel-159
      SUSE-SLE-Micro-6.0-kernel-161
      SUSE Linux Micro 6.1
      • kernel-default >= 6.4.0-35.1
      • kernel-default-base >= 6.4.0-35.1.21.12
      • kernel-default-devel >= 6.4.0-35.1
      • kernel-default-livepatch >= 6.4.0-35.1
      • kernel-devel >= 6.4.0-35.1
      • kernel-devel-rt >= 6.4.0-37.1
      • kernel-kvmsmall >= 6.4.0-35.1
      • kernel-macros >= 6.4.0-35.1
      • kernel-rt >= 6.4.0-37.1
      • kernel-rt-devel >= 6.4.0-37.1
      • kernel-rt-livepatch >= 6.4.0-37.1
      • kernel-source >= 6.4.0-35.1
      • kernel-source-rt >= 6.4.0-37.1
      Patchnames:
      SUSE-SLE-Micro-6.1-kernel-159
      SUSE-SLE-Micro-6.1-kernel-161
      openSUSE Leap 15.6
      • cluster-md-kmp-64kb >= 6.4.0-150600.23.73.1
      • cluster-md-kmp-azure >= 6.4.0-150600.8.52.1
      • cluster-md-kmp-default >= 6.4.0-150600.23.73.1
      • cluster-md-kmp-rt >= 6.4.0-150600.10.55.1
      • dlm-kmp-64kb >= 6.4.0-150600.23.73.1
      • dlm-kmp-azure >= 6.4.0-150600.8.52.1
      • dlm-kmp-default >= 6.4.0-150600.23.73.1
      • dlm-kmp-rt >= 6.4.0-150600.10.55.1
      • dtb-allwinner >= 6.4.0-150600.23.73.1
      • dtb-altera >= 6.4.0-150600.23.73.1
      • dtb-amazon >= 6.4.0-150600.23.73.1
      • dtb-amd >= 6.4.0-150600.23.73.1
      • dtb-amlogic >= 6.4.0-150600.23.73.1
      • dtb-apm >= 6.4.0-150600.23.73.1
      • dtb-apple >= 6.4.0-150600.23.73.1
      • dtb-arm >= 6.4.0-150600.23.73.1
      • dtb-broadcom >= 6.4.0-150600.23.73.1
      • dtb-cavium >= 6.4.0-150600.23.73.1
      • dtb-exynos >= 6.4.0-150600.23.73.1
      • dtb-freescale >= 6.4.0-150600.23.73.1
      • dtb-hisilicon >= 6.4.0-150600.23.73.1
      • dtb-lg >= 6.4.0-150600.23.73.1
      • dtb-marvell >= 6.4.0-150600.23.73.1
      • dtb-mediatek >= 6.4.0-150600.23.73.1
      • dtb-nvidia >= 6.4.0-150600.23.73.1
      • dtb-qcom >= 6.4.0-150600.23.73.1
      • dtb-renesas >= 6.4.0-150600.23.73.1
      • dtb-rockchip >= 6.4.0-150600.23.73.1
      • dtb-socionext >= 6.4.0-150600.23.73.1
      • dtb-sprd >= 6.4.0-150600.23.73.1
      • dtb-xilinx >= 6.4.0-150600.23.73.1
      • gfs2-kmp-64kb >= 6.4.0-150600.23.73.1
      • gfs2-kmp-azure >= 6.4.0-150600.8.52.1
      • gfs2-kmp-default >= 6.4.0-150600.23.73.1
      • gfs2-kmp-rt >= 6.4.0-150600.10.55.1
      • kernel-64kb >= 6.4.0-150600.23.73.1
      • kernel-64kb-devel >= 6.4.0-150600.23.73.1
      • kernel-64kb-extra >= 6.4.0-150600.23.73.1
      • kernel-64kb-optional >= 6.4.0-150600.23.73.1
      • kernel-azure >= 6.4.0-150600.8.52.1
      • kernel-azure-devel >= 6.4.0-150600.8.52.1
      • kernel-azure-extra >= 6.4.0-150600.8.52.1
      • kernel-azure-optional >= 6.4.0-150600.8.52.1
      • kernel-azure-vdso >= 6.4.0-150600.8.52.1
      • kernel-debug >= 6.4.0-150600.23.73.1
      • kernel-debug-devel >= 6.4.0-150600.23.73.1
      • kernel-debug-vdso >= 6.4.0-150600.23.73.1
      • kernel-default >= 6.4.0-150600.23.73.1
      • kernel-default-base >= 6.4.0-150600.23.73.1.150600.12.32.1
      • kernel-default-base-rebuild >= 6.4.0-150600.23.73.1.150600.12.32.1
      • kernel-default-devel >= 6.4.0-150600.23.73.1
      • kernel-default-extra >= 6.4.0-150600.23.73.1
      • kernel-default-livepatch >= 6.4.0-150600.23.73.1
      • kernel-default-livepatch-devel >= 6.4.0-150600.23.73.1
      • kernel-default-optional >= 6.4.0-150600.23.73.1
      • kernel-default-vdso >= 6.4.0-150600.23.73.1
      • kernel-devel >= 6.4.0-150600.23.73.1
      • kernel-devel-azure >= 6.4.0-150600.8.52.1
      • kernel-devel-rt >= 6.4.0-150600.10.55.1
      • kernel-docs >= 6.4.0-150600.23.73.1
      • kernel-docs-html >= 6.4.0-150600.23.73.1
      • kernel-kvmsmall >= 6.4.0-150600.23.73.1
      • kernel-kvmsmall-devel >= 6.4.0-150600.23.73.1
      • kernel-kvmsmall-vdso >= 6.4.0-150600.23.73.1
      • kernel-macros >= 6.4.0-150600.23.73.1
      • kernel-obs-build >= 6.4.0-150600.23.73.1
      • kernel-obs-qa >= 6.4.0-150600.23.73.1
      • kernel-rt >= 6.4.0-150600.10.55.1
      • kernel-rt-devel >= 6.4.0-150600.10.55.1
      • kernel-rt-extra >= 6.4.0-150600.10.55.1
      • kernel-rt-livepatch-devel >= 6.4.0-150600.10.55.1
      • kernel-rt-optional >= 6.4.0-150600.10.55.1
      • kernel-rt-vdso >= 6.4.0-150600.10.55.1
      • kernel-rt_debug >= 6.4.0-150600.10.55.1
      • kernel-rt_debug-devel >= 6.4.0-150600.10.55.1
      • kernel-rt_debug-vdso >= 6.4.0-150600.10.55.1
      • kernel-source >= 6.4.0-150600.23.73.1
      • kernel-source-azure >= 6.4.0-150600.8.52.1
      • kernel-source-rt >= 6.4.0-150600.10.55.1
      • kernel-source-vanilla >= 6.4.0-150600.23.73.1
      • kernel-syms >= 6.4.0-150600.23.73.1
      • kernel-syms-azure >= 6.4.0-150600.8.52.1
      • kernel-syms-rt >= 6.4.0-150600.10.55.1
      • kernel-zfcpdump >= 6.4.0-150600.23.73.1
      • kselftests-kmp-64kb >= 6.4.0-150600.23.73.1
      • kselftests-kmp-azure >= 6.4.0-150600.8.52.1
      • kselftests-kmp-default >= 6.4.0-150600.23.73.1
      • kselftests-kmp-rt >= 6.4.0-150600.10.55.1
      • ocfs2-kmp-64kb >= 6.4.0-150600.23.73.1
      • ocfs2-kmp-azure >= 6.4.0-150600.8.52.1
      • ocfs2-kmp-default >= 6.4.0-150600.23.73.1
      • ocfs2-kmp-rt >= 6.4.0-150600.10.55.1
      • reiserfs-kmp-64kb >= 6.4.0-150600.23.73.1
      • reiserfs-kmp-azure >= 6.4.0-150600.8.52.1
      • reiserfs-kmp-default >= 6.4.0-150600.23.73.1
      • reiserfs-kmp-rt >= 6.4.0-150600.10.55.1
      Patchnames:
      openSUSE-SLE-15.6-2025-3600
      openSUSE-SLE-15.6-2025-3634
      openSUSE-SLE-15.6-2025-3751


      First public cloud image revisions this CVE is fixed in:


      Status of this issue by product and package

      Please note that this evaluation state might be work in progress, incomplete or outdated. Also information for service packs in the LTSS phase is only included for issues meeting the LTSS criteria. If in doubt, feel free to contact us for clarification. The updates are grouped by state of their lifecycle. SUSE product lifecycles are documented on the lifecycle page.

      Product(s) Source package State
      Products under general support and receiving all security fixes.
      SUSE Linux Enterprise Desktop 15 SP6 kernel-64kb Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-default Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-default-base Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-docs Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-obs-build Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-source Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-syms Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-zfcpdump Released
      SUSE Linux Enterprise Desktop 15 SP7 kernel-64kb Released
      SUSE Linux Enterprise Desktop 15 SP7 kernel-default Released
      SUSE Linux Enterprise Desktop 15 SP7 kernel-default-base Released
      SUSE Linux Enterprise Desktop 15 SP7 kernel-docs Released
      SUSE Linux Enterprise Desktop 15 SP7 kernel-obs-build Released
      SUSE Linux Enterprise Desktop 15 SP7 kernel-source Released
      SUSE Linux Enterprise Desktop 15 SP7 kernel-syms Released
      SUSE Linux Enterprise Desktop 15 SP7 kernel-zfcpdump Released
      SUSE Linux Enterprise High Availability Extension 15 SP6 kernel-default Released
      SUSE Linux Enterprise High Availability Extension 15 SP7 kernel-default Released
      SUSE Linux Enterprise High Availability Extension 15 SP7 kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-64kb Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-azure Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-default Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-default-base Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-docs Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-obs-build Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-source Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-source-azure Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-syms Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-syms-azure Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-zfcpdump Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-64kb Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-azure Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-default Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-default-base Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-docs Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-obs-build Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-source Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-source-azure Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-syms Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-syms-azure Released
      SUSE Linux Enterprise High Performance Computing 15 SP7 kernel-zfcpdump Released
      SUSE Linux Enterprise Live Patching 15 SP6 kernel-default Affected
      SUSE Linux Enterprise Live Patching 15 SP6 kernel-livepatch-SLE15-SP6-RT_Update_16 Released
      SUSE Linux Enterprise Live Patching 15 SP6 kernel-source Affected
      SUSE Linux Enterprise Live Patching 15 SP7 kernel-default Affected
      SUSE Linux Enterprise Live Patching 15 SP7 kernel-livepatch-SLE15-SP7-RT_Update_5 Released
      SUSE Linux Enterprise Live Patching 15 SP7 kernel-source Affected
      SUSE Linux Enterprise Micro 5.2 kernel-default Affected
      SUSE Linux Enterprise Micro 5.2 kernel-rt Affected
      SUSE Linux Enterprise Micro 5.2 kernel-source Affected
      SUSE Linux Enterprise Micro 5.2 kernel-source-rt Affected
      SUSE Linux Enterprise Micro 5.3 kernel-default Affected
      SUSE Linux Enterprise Micro 5.3 kernel-rt Affected
      SUSE Linux Enterprise Micro 5.3 kernel-source Affected
      SUSE Linux Enterprise Micro 5.3 kernel-source-rt Affected
      SUSE Linux Enterprise Micro 5.4 kernel-default Affected
      SUSE Linux Enterprise Micro 5.4 kernel-rt Affected
      SUSE Linux Enterprise Micro 5.4 kernel-source Affected
      SUSE Linux Enterprise Micro 5.4 kernel-source-rt Affected
      SUSE Linux Enterprise Micro 5.5 kernel-default Affected
      SUSE Linux Enterprise Micro 5.5 kernel-source Affected
      SUSE Linux Enterprise Micro 5.5 kernel-source-rt Affected
      SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-64kb Released
      SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-default Released
      SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-default-base Released
      SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-source Released
      SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-zfcpdump Released
      SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-64kb Released
      SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-default Released
      SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-default-base Released
      SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-source Released
      SUSE Linux Enterprise Module for Basesystem 15 SP7 kernel-zfcpdump Released
      SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-default Affected
      SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-docs Released
      SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-obs-build Released
      SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-source Released
      SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-syms Released
      SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-default Affected
      SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-docs Released
      SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-obs-build Released
      SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-source Released
      SUSE Linux Enterprise Module for Development Tools 15 SP7 kernel-syms Released
      SUSE Linux Enterprise Module for Legacy 15 SP6 kernel-default Released
      SUSE Linux Enterprise Module for Legacy 15 SP6 kernel-source Affected
      SUSE Linux Enterprise Module for Legacy 15 SP7 kernel-default Released
      SUSE Linux Enterprise Module for Legacy 15 SP7 kernel-source Affected
      SUSE Linux Enterprise Module for Public Cloud 15 SP6 kernel-azure Released
      SUSE Linux Enterprise Module for Public Cloud 15 SP6 kernel-source-azure Released
      SUSE Linux Enterprise Module for Public Cloud 15 SP6 kernel-syms-azure Released
      SUSE Linux Enterprise Module for Public Cloud 15 SP7 kernel-azure Released
      SUSE Linux Enterprise Module for Public Cloud 15 SP7 kernel-source-azure Released
      SUSE Linux Enterprise Module for Public Cloud 15 SP7 kernel-syms-azure Released
      SUSE Linux Enterprise Real Time 15 SP6 kernel-rt Released
      SUSE Linux Enterprise Real Time 15 SP6 kernel-rt_debug Released
      SUSE Linux Enterprise Real Time 15 SP6 kernel-source-rt Released
      SUSE Linux Enterprise Real Time 15 SP6 kernel-syms-rt Released
      SUSE Linux Enterprise Real Time 15 SP7 kernel-rt Released
      SUSE Linux Enterprise Real Time 15 SP7 kernel-source-rt Released
      SUSE Linux Enterprise Real Time 15 SP7 kernel-syms-rt Released
      SUSE Linux Enterprise Server 15 SP6 kernel-64kb Released
      SUSE Linux Enterprise Server 15 SP6 kernel-azure Released
      SUSE Linux Enterprise Server 15 SP6 kernel-default Released
      SUSE Linux Enterprise Server 15 SP6 kernel-default-base Released
      SUSE Linux Enterprise Server 15 SP6 kernel-docs Released
      SUSE Linux Enterprise Server 15 SP6 kernel-obs-build Released
      SUSE Linux Enterprise Server 15 SP6 kernel-source Released
      SUSE Linux Enterprise Server 15 SP6 kernel-source-azure Released
      SUSE Linux Enterprise Server 15 SP6 kernel-syms Released
      SUSE Linux Enterprise Server 15 SP6 kernel-syms-azure Released
      SUSE Linux Enterprise Server 15 SP6 kernel-zfcpdump Released
      SUSE Linux Enterprise Server 15 SP7 kernel-64kb Released
      SUSE Linux Enterprise Server 15 SP7 kernel-azure Released
      SUSE Linux Enterprise Server 15 SP7 kernel-default Released
      SUSE Linux Enterprise Server 15 SP7 kernel-default-base Released
      SUSE Linux Enterprise Server 15 SP7 kernel-docs Released
      SUSE Linux Enterprise Server 15 SP7 kernel-obs-build Released
      SUSE Linux Enterprise Server 15 SP7 kernel-source Released
      SUSE Linux Enterprise Server 15 SP7 kernel-source-azure Released
      SUSE Linux Enterprise Server 15 SP7 kernel-syms Released
      SUSE Linux Enterprise Server 15 SP7 kernel-syms-azure Released
      SUSE Linux Enterprise Server 15 SP7 kernel-zfcpdump Released
      SUSE Linux Enterprise Server 16.0 kernel-default Affected
      SUSE Linux Enterprise Server 16.0 kernel-source Affected
      SUSE Linux Enterprise Server 16.0 kernel-source-azure Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-64kb Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-azure Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-default Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-default-base Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-docs Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-obs-build Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-source Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-source-azure Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-syms Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-syms-azure Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-zfcpdump Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-64kb Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-azure Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-default Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-default-base Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-docs Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-obs-build Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-source Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-source-azure Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-syms Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-syms-azure Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP7 kernel-zfcpdump Released
      SUSE Linux Enterprise Server for SAP Applications 16.0 kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 16.0 kernel-source-azure Affected
      SUSE Linux Enterprise Workstation Extension 15 SP6 kernel-default Released
      SUSE Linux Enterprise Workstation Extension 15 SP6 kernel-source Affected
      SUSE Linux Enterprise Workstation Extension 15 SP7 kernel-default Released
      SUSE Linux Enterprise Workstation Extension 15 SP7 kernel-source Affected
      SUSE Linux Micro 6.0 kernel-default Released
      SUSE Linux Micro 6.0 kernel-default-base Released
      SUSE Linux Micro 6.0 kernel-kvmsmall Released
      SUSE Linux Micro 6.0 kernel-rt Released
      SUSE Linux Micro 6.0 kernel-source Released
      SUSE Linux Micro 6.0 kernel-source-rt Released
      SUSE Linux Micro 6.1 kernel-default Released
      SUSE Linux Micro 6.1 kernel-default-base Released
      SUSE Linux Micro 6.1 kernel-kvmsmall Released
      SUSE Linux Micro 6.1 kernel-rt Released
      SUSE Linux Micro 6.1 kernel-source Released
      SUSE Linux Micro 6.1 kernel-source-rt Released
      SUSE Linux Micro 6.2 kernel-source Affected
      SUSE Real Time Module 15 SP6 kernel-rt Released
      SUSE Real Time Module 15 SP6 kernel-rt_debug Released
      SUSE Real Time Module 15 SP6 kernel-source-rt Released
      SUSE Real Time Module 15 SP6 kernel-syms-rt Released
      SUSE Real Time Module 15 SP7 kernel-rt Released
      SUSE Real Time Module 15 SP7 kernel-source-rt Released
      SUSE Real Time Module 15 SP7 kernel-syms-rt Released
      openSUSE Leap 15.6 kernel-default Affected
      openSUSE Leap 15.6 kernel-source In progress
      openSUSE Leap 15.6 kernel-source-azure In progress
      openSUSE Leap 15.6 kernel-source-rt In progress
      Products under Long Term Service Pack support and receiving important and critical security fixes.
      SUSE Linux Enterprise High Performance Computing 15 SP3 kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS kernel-default Affected
      SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP4 kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS kernel-default Affected
      SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS kernel-default Affected
      SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS kernel-default Affected
      SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS kernel-source Affected
      SUSE Linux Enterprise Live Patching 12 SP5 kernel-default Affected
      SUSE Linux Enterprise Live Patching 12 SP5 kernel-source Affected
      SUSE Linux Enterprise Live Patching 15 SP3 kernel-default Affected
      SUSE Linux Enterprise Live Patching 15 SP3 kernel-source Affected
      SUSE Linux Enterprise Live Patching 15 SP4 kernel-default Affected
      SUSE Linux Enterprise Live Patching 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Live Patching 15 SP5 kernel-default Affected
      SUSE Linux Enterprise Live Patching 15 SP5 kernel-source Affected
      SUSE Linux Enterprise Module for Basesystem 15 SP3 kernel-source Affected
      SUSE Linux Enterprise Module for Basesystem 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Module for Basesystem 15 SP5 kernel-source Affected
      SUSE Linux Enterprise Module for Development Tools 15 SP3 kernel-source Affected
      SUSE Linux Enterprise Module for Development Tools 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Module for Development Tools 15 SP5 kernel-source Affected
      SUSE Linux Enterprise Server 11 SP4 LTSS EXTREME CORE kernel-default Affected
      SUSE Linux Enterprise Server 11 SP4 LTSS EXTREME CORE kernel-source Affected
      SUSE Linux Enterprise Server 12 SP5 kernel-source Affected
      SUSE Linux Enterprise Server 12 SP5-LTSS kernel-default Released
      SUSE Linux Enterprise Server 12 SP5-LTSS kernel-source Released
      SUSE Linux Enterprise Server 12 SP5-LTSS kernel-syms Released
      SUSE Linux Enterprise Server 12 SP5-LTSS Extended Security kernel-default Affected
      SUSE Linux Enterprise Server 12 SP5-LTSS Extended Security kernel-source Affected
      SUSE Linux Enterprise Server 15 SP3 kernel-source Affected
      SUSE Linux Enterprise Server 15 SP3-LTSS kernel-default Affected
      SUSE Linux Enterprise Server 15 SP3-LTSS kernel-source Affected
      SUSE Linux Enterprise Server 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Server 15 SP4-LTSS kernel-default Affected
      SUSE Linux Enterprise Server 15 SP4-LTSS kernel-source Affected
      SUSE Linux Enterprise Server 15 SP5 kernel-source Affected
      SUSE Linux Enterprise Server 15 SP5-LTSS kernel-default Affected
      SUSE Linux Enterprise Server 15 SP5-LTSS kernel-source Affected
      SUSE Linux Enterprise Server LTSS Extended Security 12 SP5 kernel-default Released
      SUSE Linux Enterprise Server LTSS Extended Security 12 SP5 kernel-source Released
      SUSE Linux Enterprise Server LTSS Extended Security 12 SP5 kernel-syms Released
      SUSE Manager Proxy 4.3 kernel-source Affected
      SUSE Manager Proxy LTS 4.3 kernel-default Affected
      SUSE Manager Proxy LTS 4.3 kernel-source Affected
      SUSE Manager Retail Branch Server 4.3 kernel-source Affected
      SUSE Manager Retail Branch Server LTS 4.3 kernel-default Affected
      SUSE Manager Retail Branch Server LTS 4.3 kernel-source Affected
      SUSE Manager Server 4.3 kernel-source Affected
      SUSE Manager Server LTS 4.3 kernel-default Affected
      SUSE Manager Server LTS 4.3 kernel-source Affected
      Products past their end of life and not receiving proactive updates anymore.
      SUSE CaaS Platform 4.0 kernel-source Affected
      SUSE Enterprise Storage 6 kernel-source Affected
      SUSE Enterprise Storage 7 kernel-source Affected
      SUSE Enterprise Storage 7.1 kernel-source Affected
      SUSE Linux Enterprise Desktop 11 SP4 kernel-source Affected
      SUSE Linux Enterprise Desktop 12 SP2 kernel-source Affected
      SUSE Linux Enterprise Desktop 12 SP4 kernel-source Affected
      SUSE Linux Enterprise Desktop 15 kernel-source Affected
      SUSE Linux Enterprise Desktop 15 SP1 kernel-source Affected
      SUSE Linux Enterprise Desktop 15 SP2 kernel-source Affected
      SUSE Linux Enterprise Desktop 15 SP3 kernel-source Affected
      SUSE Linux Enterprise Desktop 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Desktop 15 SP5 kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP1 kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP2 kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15-ESPOS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15-LTSS kernel-source Affected
      SUSE Linux Enterprise Micro 5.0 kernel-default Affected
      SUSE Linux Enterprise Micro 5.1 kernel-default Affected
      SUSE Linux Enterprise Micro 5.1 kernel-rt Affected
      SUSE Linux Enterprise Micro 5.1 kernel-source Affected
      SUSE Linux Enterprise Micro 5.1 kernel-source-rt Affected
      SUSE Linux Enterprise Module for Basesystem 15 kernel-source Affected
      SUSE Linux Enterprise Module for Basesystem 15 SP1 kernel-source Affected
      SUSE Linux Enterprise Module for Basesystem 15 SP2 kernel-source Affected
      SUSE Linux Enterprise Module for Development Tools 15 kernel-source Affected
      SUSE Linux Enterprise Module for Development Tools 15 SP1 kernel-source Affected
      SUSE Linux Enterprise Module for Development Tools 15 SP2 kernel-source Affected
      SUSE Linux Enterprise Point of Sale 12 SP2-CLIENT kernel-source Affected
      SUSE Linux Enterprise Real Time 15 SP2 kernel-source Affected
      SUSE Linux Enterprise Real Time 15 SP3 kernel-source Affected
      SUSE Linux Enterprise Real Time 15 SP3 kernel-source-rt Affected
      SUSE Linux Enterprise Real Time 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Real Time 15 SP4 kernel-source-rt Affected
      SUSE Linux Enterprise Real Time 15 SP5 kernel-source-rt Affected
      SUSE Linux Enterprise Server 11 SP4 kernel-source Affected
      SUSE Linux Enterprise Server 11 SP4 LTSS kernel-default Affected
      SUSE Linux Enterprise Server 11 SP4 LTSS kernel-source Affected
      SUSE Linux Enterprise Server 11 SP4-LTSS kernel-source Affected
      SUSE Linux Enterprise Server 12 SP2 kernel-source Affected
      SUSE Linux Enterprise Server 12 SP2-BCL kernel-source Affected
      SUSE Linux Enterprise Server 12 SP2-ESPOS kernel-source Affected
      SUSE Linux Enterprise Server 12 SP2-LTSS kernel-default Affected
      SUSE Linux Enterprise Server 12 SP2-LTSS kernel-source Affected
      SUSE Linux Enterprise Server 12 SP4 kernel-source Affected
      SUSE Linux Enterprise Server 12 SP4-ESPOS kernel-source Affected
      SUSE Linux Enterprise Server 12 SP4-LTSS kernel-default Affected
      SUSE Linux Enterprise Server 12 SP4-LTSS kernel-source Affected
      SUSE Linux Enterprise Server 15 kernel-source Affected
      SUSE Linux Enterprise Server 15 SP1 kernel-source Affected
      SUSE Linux Enterprise Server 15 SP1-BCL kernel-source Affected
      SUSE Linux Enterprise Server 15 SP1-LTSS kernel-default Affected
      SUSE Linux Enterprise Server 15 SP1-LTSS kernel-source Affected
      SUSE Linux Enterprise Server 15 SP2 kernel-source Affected
      SUSE Linux Enterprise Server 15 SP2-BCL kernel-source Affected
      SUSE Linux Enterprise Server 15 SP2-LTSS kernel-default Affected
      SUSE Linux Enterprise Server 15 SP2-LTSS kernel-source Affected
      SUSE Linux Enterprise Server 15 SP3-BCL kernel-source Affected
      SUSE Linux Enterprise Server 15-LTSS kernel-default Affected
      SUSE Linux Enterprise Server 15-LTSS kernel-source Affected
      SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 12 SP2 kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 12 SP4 kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 15 kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP1 kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP2 kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP3 kernel-default Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP3 kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP4 kernel-default Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-default Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-source Affected
      SUSE Manager Proxy 4.0 kernel-source Affected
      SUSE Manager Proxy 4.1 kernel-source Affected
      SUSE Manager Proxy 4.2 kernel-source Affected
      SUSE Manager Retail Branch Server 4.0 kernel-source Affected
      SUSE Manager Retail Branch Server 4.1 kernel-source Affected
      SUSE Manager Retail Branch Server 4.2 kernel-source Affected
      SUSE Manager Server 4.0 kernel-source Affected
      SUSE Manager Server 4.1 kernel-source Affected
      SUSE Manager Server 4.2 kernel-source Affected
      SUSE OpenStack Cloud 7 kernel-source Affected
      SUSE OpenStack Cloud 9 kernel-source Affected
      SUSE OpenStack Cloud Crowbar 9 kernel-source Affected
      SUSE Real Time Module 15 SP3 kernel-source-rt Affected
      SUSE Real Time Module 15 SP4 kernel-source-rt Affected
      SUSE Real Time Module 15 SP5 kernel-source-rt Affected
      openSUSE Leap 15.3 kernel-source Affected
      openSUSE Leap 15.3 kernel-source-rt Affected
      openSUSE Leap 15.4 kernel-source Affected
      openSUSE Leap 15.4 kernel-source-rt Affected
      openSUSE Leap 15.5 kernel-source Affected
      openSUSE Leap 15.5 kernel-source-rt Affected


      SUSE Timeline for this CVE

      CVE page created: Tue Sep 23 08:34:19 2025
      CVE page last modified: Sat Nov 1 17:09:06 2025