Security update for the Linux Kernel
| Announcement ID: | SUSE-SU-2026:0475-1 |
|---|---|
| Release Date: | 2026-02-12T11:32:57Z |
| Rating: | important |
| References: |
|
| Cross-References: |
|
| CVSS scores: |
|
| Affected Products: |
|
An update that solves 25 vulnerabilities and has one security fix can now be installed.
Description:
The SUSE Linux Enterprise 15 SP3 kernel was updated to fix various security issues
The following security issues were fixed:
- CVE-2022-50697: mrp: introduce active flags to prevent UAF when applicant uninit (bsc#1255594).
- CVE-2025-38129: page_pool: fix inconsistency for page_pool_ring_lock() (bsc#1245723).
- CVE-2025-40139: net: ipv4: Consolidate ipv4_mtu and ip_dst_mtu_maybe_forward (bsc#1253409).
- CVE-2025-68312: usbnet: Prevents free active kevent (bsc#1255171).
- CVE-2025-71085: ipv6: BUG() in pskb_expand_head() as part of calipso_skbuff_setattr() (bsc#1256623).
- CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256612).
- CVE-2025-71112: net: hns3: add VLAN id validation before using (bsc#1256726).
- CVE-2026-22999: net/sched: sch_qfq: do not free existing class in qfq_change_class() (bsc#1257236).
- CVE-2026-23001: macvlan: Use 'hash' iterators to simplify code (bsc#1257232).
Special Instructions and Notes:
- Please reboot the system after installing this update.
Patch Instructions:
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
-
openSUSE Leap 15.3
zypper in -t patch SUSE-2026-475=1 -
SUSE Linux Enterprise Micro 5.2
zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-475=1 -
SUSE Linux Enterprise Micro for Rancher 5.2
zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-475=1
Package List:
-
openSUSE Leap 15.3 (noarch nosrc)
- kernel-docs-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (noarch)
- kernel-devel-5.3.18-150300.59.235.1
- kernel-source-5.3.18-150300.59.235.1
- kernel-source-vanilla-5.3.18-150300.59.235.1
- kernel-macros-5.3.18-150300.59.235.1
- kernel-docs-html-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64)
- kselftests-kmp-default-debuginfo-5.3.18-150300.59.235.1
- ocfs2-kmp-default-debuginfo-5.3.18-150300.59.235.1
- gfs2-kmp-default-debuginfo-5.3.18-150300.59.235.1
- kernel-default-devel-debuginfo-5.3.18-150300.59.235.1
- kernel-syms-5.3.18-150300.59.235.1
- kernel-default-extra-debuginfo-5.3.18-150300.59.235.1
- ocfs2-kmp-default-5.3.18-150300.59.235.1
- kernel-obs-build-5.3.18-150300.59.235.1
- kernel-default-debuginfo-5.3.18-150300.59.235.1
- kernel-default-optional-5.3.18-150300.59.235.1
- kernel-default-livepatch-5.3.18-150300.59.235.1
- kernel-default-devel-5.3.18-150300.59.235.1
- kernel-default-optional-debuginfo-5.3.18-150300.59.235.1
- kernel-default-debugsource-5.3.18-150300.59.235.1
- kernel-default-base-rebuild-5.3.18-150300.59.235.1.150300.18.140.1
- gfs2-kmp-default-5.3.18-150300.59.235.1
- reiserfs-kmp-default-5.3.18-150300.59.235.1
- reiserfs-kmp-default-debuginfo-5.3.18-150300.59.235.1
- cluster-md-kmp-default-debuginfo-5.3.18-150300.59.235.1
- dlm-kmp-default-debuginfo-5.3.18-150300.59.235.1
- cluster-md-kmp-default-5.3.18-150300.59.235.1
- kernel-default-base-5.3.18-150300.59.235.1.150300.18.140.1
- kernel-default-extra-5.3.18-150300.59.235.1
- kernel-obs-build-debugsource-5.3.18-150300.59.235.1
- kselftests-kmp-default-5.3.18-150300.59.235.1
- kernel-obs-qa-5.3.18-150300.59.235.1
- dlm-kmp-default-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64 nosrc)
- kernel-default-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (ppc64le s390x x86_64)
- kernel-default-livepatch-devel-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (nosrc ppc64le x86_64)
- kernel-kvmsmall-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (ppc64le x86_64)
- kernel-kvmsmall-devel-debuginfo-5.3.18-150300.59.235.1
- kernel-kvmsmall-devel-5.3.18-150300.59.235.1
- kernel-kvmsmall-debuginfo-5.3.18-150300.59.235.1
- kernel-kvmsmall-debugsource-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (aarch64 x86_64)
- dlm-kmp-preempt-debuginfo-5.3.18-150300.59.235.1
- ocfs2-kmp-preempt-debuginfo-5.3.18-150300.59.235.1
- ocfs2-kmp-preempt-5.3.18-150300.59.235.1
- gfs2-kmp-preempt-5.3.18-150300.59.235.1
- kernel-preempt-debugsource-5.3.18-150300.59.235.1
- reiserfs-kmp-preempt-5.3.18-150300.59.235.1
- reiserfs-kmp-preempt-debuginfo-5.3.18-150300.59.235.1
- kernel-preempt-extra-debuginfo-5.3.18-150300.59.235.1
- kernel-preempt-devel-debuginfo-5.3.18-150300.59.235.1
- cluster-md-kmp-preempt-5.3.18-150300.59.235.1
- kernel-preempt-extra-5.3.18-150300.59.235.1
- cluster-md-kmp-preempt-debuginfo-5.3.18-150300.59.235.1
- kernel-preempt-devel-5.3.18-150300.59.235.1
- gfs2-kmp-preempt-debuginfo-5.3.18-150300.59.235.1
- kernel-preempt-optional-debuginfo-5.3.18-150300.59.235.1
- kselftests-kmp-preempt-debuginfo-5.3.18-150300.59.235.1
- dlm-kmp-preempt-5.3.18-150300.59.235.1
- kernel-preempt-debuginfo-5.3.18-150300.59.235.1
- kselftests-kmp-preempt-5.3.18-150300.59.235.1
- kernel-preempt-optional-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (aarch64 nosrc x86_64)
- kernel-preempt-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (nosrc s390x)
- kernel-zfcpdump-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (s390x)
- kernel-zfcpdump-debugsource-5.3.18-150300.59.235.1
- kernel-zfcpdump-debuginfo-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (nosrc)
- dtb-aarch64-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (aarch64)
- dtb-nvidia-5.3.18-150300.59.235.1
- dtb-amlogic-5.3.18-150300.59.235.1
- cluster-md-kmp-64kb-5.3.18-150300.59.235.1
- kernel-64kb-extra-5.3.18-150300.59.235.1
- dtb-marvell-5.3.18-150300.59.235.1
- dtb-altera-5.3.18-150300.59.235.1
- dtb-apm-5.3.18-150300.59.235.1
- reiserfs-kmp-64kb-debuginfo-5.3.18-150300.59.235.1
- dtb-rockchip-5.3.18-150300.59.235.1
- cluster-md-kmp-64kb-debuginfo-5.3.18-150300.59.235.1
- kernel-64kb-optional-debuginfo-5.3.18-150300.59.235.1
- kselftests-kmp-64kb-5.3.18-150300.59.235.1
- dtb-broadcom-5.3.18-150300.59.235.1
- kselftests-kmp-64kb-debuginfo-5.3.18-150300.59.235.1
- kernel-64kb-devel-debuginfo-5.3.18-150300.59.235.1
- dtb-lg-5.3.18-150300.59.235.1
- dtb-zte-5.3.18-150300.59.235.1
- kernel-64kb-debuginfo-5.3.18-150300.59.235.1
- dtb-al-5.3.18-150300.59.235.1
- gfs2-kmp-64kb-debuginfo-5.3.18-150300.59.235.1
- dtb-renesas-5.3.18-150300.59.235.1
- dtb-amd-5.3.18-150300.59.235.1
- ocfs2-kmp-64kb-5.3.18-150300.59.235.1
- ocfs2-kmp-64kb-debuginfo-5.3.18-150300.59.235.1
- reiserfs-kmp-64kb-5.3.18-150300.59.235.1
- dtb-exynos-5.3.18-150300.59.235.1
- dtb-cavium-5.3.18-150300.59.235.1
- dlm-kmp-64kb-debuginfo-5.3.18-150300.59.235.1
- dtb-sprd-5.3.18-150300.59.235.1
- dtb-allwinner-5.3.18-150300.59.235.1
- dtb-freescale-5.3.18-150300.59.235.1
- dtb-socionext-5.3.18-150300.59.235.1
- dlm-kmp-64kb-5.3.18-150300.59.235.1
- dtb-mediatek-5.3.18-150300.59.235.1
- kernel-64kb-devel-5.3.18-150300.59.235.1
- dtb-arm-5.3.18-150300.59.235.1
- dtb-xilinx-5.3.18-150300.59.235.1
- dtb-qcom-5.3.18-150300.59.235.1
- kernel-64kb-extra-debuginfo-5.3.18-150300.59.235.1
- gfs2-kmp-64kb-5.3.18-150300.59.235.1
- kernel-64kb-debugsource-5.3.18-150300.59.235.1
- kernel-64kb-optional-5.3.18-150300.59.235.1
- dtb-hisilicon-5.3.18-150300.59.235.1
-
openSUSE Leap 15.3 (aarch64 nosrc)
- kernel-64kb-5.3.18-150300.59.235.1
-
SUSE Linux Enterprise Micro 5.2 (aarch64 nosrc s390x x86_64)
- kernel-default-5.3.18-150300.59.235.1
-
SUSE Linux Enterprise Micro 5.2 (aarch64 x86_64)
- kernel-default-base-5.3.18-150300.59.235.1.150300.18.140.1
-
SUSE Linux Enterprise Micro 5.2 (aarch64 s390x x86_64)
- kernel-default-debugsource-5.3.18-150300.59.235.1
- kernel-default-debuginfo-5.3.18-150300.59.235.1
-
SUSE Linux Enterprise Micro for Rancher 5.2 (aarch64 nosrc s390x x86_64)
- kernel-default-5.3.18-150300.59.235.1
-
SUSE Linux Enterprise Micro for Rancher 5.2 (aarch64 x86_64)
- kernel-default-base-5.3.18-150300.59.235.1.150300.18.140.1
-
SUSE Linux Enterprise Micro for Rancher 5.2 (aarch64 s390x x86_64)
- kernel-default-debugsource-5.3.18-150300.59.235.1
- kernel-default-debuginfo-5.3.18-150300.59.235.1
References:
- https://www.suse.com/security/cve/CVE-2022-49604.html
- https://www.suse.com/security/cve/CVE-2022-49943.html
- https://www.suse.com/security/cve/CVE-2022-49980.html
- https://www.suse.com/security/cve/CVE-2022-50329.html
- https://www.suse.com/security/cve/CVE-2022-50488.html
- https://www.suse.com/security/cve/CVE-2022-50697.html
- https://www.suse.com/security/cve/CVE-2023-52923.html
- https://www.suse.com/security/cve/CVE-2023-52983.html
- https://www.suse.com/security/cve/CVE-2023-53178.html
- https://www.suse.com/security/cve/CVE-2024-26832.html
- https://www.suse.com/security/cve/CVE-2024-54031.html
- https://www.suse.com/security/cve/CVE-2025-21760.html
- https://www.suse.com/security/cve/CVE-2025-21764.html
- https://www.suse.com/security/cve/CVE-2025-21765.html
- https://www.suse.com/security/cve/CVE-2025-21766.html
- https://www.suse.com/security/cve/CVE-2025-38129.html
- https://www.suse.com/security/cve/CVE-2025-38563.html
- https://www.suse.com/security/cve/CVE-2025-38565.html
- https://www.suse.com/security/cve/CVE-2025-40139.html
- https://www.suse.com/security/cve/CVE-2025-68312.html
- https://www.suse.com/security/cve/CVE-2025-71085.html
- https://www.suse.com/security/cve/CVE-2025-71089.html
- https://www.suse.com/security/cve/CVE-2025-71112.html
- https://www.suse.com/security/cve/CVE-2026-22999.html
- https://www.suse.com/security/cve/CVE-2026-23001.html
- https://bugzilla.suse.com/show_bug.cgi?id=1223007
- https://bugzilla.suse.com/show_bug.cgi?id=1235905
- https://bugzilla.suse.com/show_bug.cgi?id=1236104
- https://bugzilla.suse.com/show_bug.cgi?id=1237885
- https://bugzilla.suse.com/show_bug.cgi?id=1237906
- https://bugzilla.suse.com/show_bug.cgi?id=1238414
- https://bugzilla.suse.com/show_bug.cgi?id=1238754
- https://bugzilla.suse.com/show_bug.cgi?id=1238763
- https://bugzilla.suse.com/show_bug.cgi?id=1240284
- https://bugzilla.suse.com/show_bug.cgi?id=1244904
- https://bugzilla.suse.com/show_bug.cgi?id=1245110
- https://bugzilla.suse.com/show_bug.cgi?id=1245723
- https://bugzilla.suse.com/show_bug.cgi?id=1248306
- https://bugzilla.suse.com/show_bug.cgi?id=1248377
- https://bugzilla.suse.com/show_bug.cgi?id=1249699
- https://bugzilla.suse.com/show_bug.cgi?id=1249827
- https://bugzilla.suse.com/show_bug.cgi?id=1251201
- https://bugzilla.suse.com/show_bug.cgi?id=1253409
- https://bugzilla.suse.com/show_bug.cgi?id=1255171
- https://bugzilla.suse.com/show_bug.cgi?id=1255594
- https://bugzilla.suse.com/show_bug.cgi?id=1256612
- https://bugzilla.suse.com/show_bug.cgi?id=1256623
- https://bugzilla.suse.com/show_bug.cgi?id=1256726
- https://bugzilla.suse.com/show_bug.cgi?id=1256792
- https://bugzilla.suse.com/show_bug.cgi?id=1257232
- https://bugzilla.suse.com/show_bug.cgi?id=1257236