Security update for the Linux Kernel
| Announcement ID: | SUSE-SU-2026:3810-1 |
|---|---|
| Release Date: | 2026-08-26T10:47:01Z |
| Rating: | important |
| References: |
|
| Cross-References: |
|
| CVSS scores: |
|
| Affected Products: |
|
An update that solves 267 vulnerabilities and has 21 security fixes can now be installed.
Description:
The SUSE Linux Enterprise 15 SP7 RT kernel was updated to fix various security issues:
The following security issues were fixed:
- CVE-2025-68741: scsi: qla2xxx: Fix improper freeing of purex item (bsc#1255703).
- CVE-2025-68818: scsi: Revert "scsi: qla2xxx: Perform lockless command completion in abort path" (bsc#1256675).
- CVE-2026-23097: migrate: correct lock ordering for hugetlb file folios (bsc#1257815).
- CVE-2026-43016: bpf: sockmap: Fix use-after-free of sk->sk_socket in sk_psock_verdict_data_ready() (bsc#1264007).
- CVE-2026-43114: netfilter: nft_set_pipapo_avx2: don't return non-matching entry on expiry (bsc#1264601).
- CVE-2026-43130: iommu/vt-d: Flush dev-IOTLB only when PCIe device is accessible in scalable mode (bsc#1264532).
- CVE-2026-43161: iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode (bsc#1264333).
- CVE-2026-43168: ocfs2: fix reflink preserve cleanup issue (bsc#1264537).
- CVE-2026-43170: usb: dwc3: gadget: Move vbus draw to workqueue context (bsc#1264452).
- CVE-2026-43172: wifi: iwlwifi: fix 22000 series SMEM parsing (bsc#1264543).
- CVE-2026-43216: net: Drop the lock in skb_may_tx_timestamp() (bsc#1264319).
- CVE-2026-43230: net/rds: Clear reconnect pending bit (bsc#1264539).
- CVE-2026-43262: gfs2: fiemap page fault fix (bsc#1264422).
- CVE-2026-43266: EFI/CPER: don't go past the ARM processor CPER record buffer (bsc#1264418).
- CVE-2026-43281: mailbox: Prevent out-of-bounds access in fw_mbox_index_xlate() (bsc#1264534).
- CVE-2026-43308: btrfs: don't BUG() on unexpected delayed ref type in run_one_delayed_ref() (bsc#1264712).
- CVE-2026-43309: md raid: fix hang when stopping arrays with metadata through dm-raid (bsc#1264827).
- CVE-2026-43328: cpufreq: governor: Free dbs_data directly when gov->init() fails (bsc#1264832).
- CVE-2026-43439: cgroup: fix race between task migration and iteration (bsc#1265141).
- CVE-2026-43451: netfilter: nfnetlink_queue: fix entry leak in bridge verdict error path (bsc#1265009).
- CVE-2026-45860: netfilter: nf_conncount: increase the connection clean up limit to 64 (bsc#1266710).
- CVE-2026-45873: netfilter: nft_set_rbtree: check for partial overlaps in anonymous sets (bsc#1266715).
- CVE-2026-45905: xfrm: fix ip_rt_bug race in icmp_route_lookup reverse path (bsc#1266685).
- CVE-2026-45913: net: bridge: mcast: always update mdb_n_entries for vlan contexts (bsc#1266891).
- CVE-2026-45915: fat: avoid parent link count underflow in rmdir (bsc#1266896).
- CVE-2026-45917: ipvs: do not keep dest_dst if dev is going down (bsc#1266900).
- CVE-2026-45944: iommu/vt-d: Clear Present bit before tearing down context entry (bsc#1267203).
- CVE-2026-45973: RDMA/mlx5: Fix UMR hang in LAG error state unload (bsc#1267025).
- CVE-2026-46003: net: qrtr: ns: Limit the total number of nodes (bsc#1267210).
- CVE-2026-46015: tcp: call sk_data_ready() after listener migration (bsc#1267439).
- CVE-2026-46026: net: qrtr: ns: Limit the maximum number of lookups (bsc#1266876).
- CVE-2026-46038: net: qrtr: ns: Free the node during ctrl_cmd_bye() (bsc#1266695).
- CVE-2026-46137: mptcp: pm: ADD_ADDR rtx: fix potential data-race (bsc#1267570).
- CVE-2026-46147: KVM: arm64: Factor out pKVM hyp vcpu creation to separate function (bsc#1267689).
- CVE-2026-46158: mptcp: pm: ADD_ADDR rtx: always decrease sk refcount (bsc#1266880).
- CVE-2026-46168: mptcp: sockopt: set timestamp flags on subflow socket, not msk (bsc#1266869).
- CVE-2026-46170: mptcp: pm: reuse ID 0 after delete and re-add (bsc#1267714).
- CVE-2026-46180: wifi: brcmfmac: Fix potential use-after-free issue when stopping watchdog task (bsc#1266813).
- CVE-2026-46189: RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path (bsc#1266918).
- CVE-2026-46193: xfrm: ah: account for ESN high bits in async callbacks (bsc#1267656).
- CVE-2026-46234: vsock: fix buffer size clamping order (bsc#1266904).
- CVE-2026-46245: drm/amd/display: Fix dc_link NULL handling in HPD init (bsc#1267678).
- CVE-2026-46265: RDMA/hns: Fix WQ_MEM_RECLAIM warning (bsc#1267662).
- CVE-2026-46292: pmdomain: core: Fix detach procedure for virtual devices in genpd (bsc#1267943).
- CVE-2026-46306: flow_dissector: do not dissect PPPoE PFC frames (bsc#1267986).
- CVE-2026-46324: netfilter: nf_tables: Introduce functions freeing nft_hook objects (bsc#1267995).
- CVE-2026-52910: pf: Free reuseport cBPF prog after RCU grace period (bsc#1268659).
- CVE-2026-52921: netfilter: ipset: stop hash:* range iteration at end (bsc#1269024).
- CVE-2026-52927: netfilter: ebtables: fix OOB read in compat_mtw_from_user (bsc#1269027).
- CVE-2026-52930: ipc/shm: serialize orphan cleanup with shm_nattch updates (bsc#1269003).
- CVE-2026-52937: tap: fix stack info leak in tap_ioctl() SIOCGIFHWADDR (bsc#1268983).
- CVE-2026-52941: net/smc: avoid NULL deref of conn->lnk in smc_msg_event tracepoint (bsc#1268966).
- CVE-2026-52942: netfilter: nf_log: validate MAC header was set before dumping it (bsc#1268967).
- CVE-2026-52947: net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (bsc#1269115).
- CVE-2026-52967: smb/client: fix possible infinite loop and oob read in symlink_data() (bsc#1269181).
- CVE-2026-52970: netfilter: nft_ct: fix missing expect put in obj eval (bsc#1269229).
- CVE-2026-52974: net: tls: fix strparser anchor skb leak on offload RX setup failure (bsc#1269233).
- CVE-2026-52984: net/sched: netem: fix queue limit check to include reordered packets (bsc#1269272).
- CVE-2026-52986: netfilter: nf_conntrack_sip: don't use simple_strtoul (bsc#1269289).
- CVE-2026-52988: rculist: add list_splice_rcu() for private lists (bsc#1269362).
- CVE-2026-52991: sched/psi: fix race between file release and pressure write (bsc#1269134).
- CVE-2026-52998: netfilter: nfnetlink_osf: fix potential NULL dereference in ttl check (bsc#1269118).
- CVE-2026-52999: netfilter: nfnetlink_osf: fix out-of-bounds read on option matching (bsc#1269119).
- CVE-2026-53000: netfilter: nat: use kfree_rcu to release ops (bsc#1269117).
- CVE-2026-53002: netfilter: conntrack: remove sprintf usage (bsc#1269112).
- CVE-2026-53006: ipv6: fix possible UAF in icmpv6_rcv() (bsc#1269104).
- CVE-2026-53011: net/sched: taprio: fix use-after-free in advance_sched() on schedule switch (bsc#1269094).
- CVE-2026-53012: nexthop: fix IPv6 route referencing IPv4 nexthop (bsc#1269154).
- CVE-2026-53032: bpf: Fix NULL deref in map_kptr_match_type for scalar regs (bsc#1269138).
- CVE-2026-53062: dm cache policy smq: fix missing locks in invalidating cache blocks (bsc#1269658).
- CVE-2026-53063: dm cache: fix write hang in passthrough mode (bsc#1269659).
- CVE-2026-53064: dm cache: fix null-deref with concurrent writes in passthrough mode (bsc#1269132).
- CVE-2026-53069: net, bpf: fix null-ptr-deref in xdp_master_redirect() for down master (bsc#1269186).
- CVE-2026-53074: bpf: reject short IPv4/IPv6 inputs in bpf_prog_test_run_skb (bsc#1269688).
- CVE-2026-53083: bpf: Fix RCU stall in bpf_fd_array_map_clear() (bsc#1269964).
- CVE-2026-53088: net: bcmgenet: fix off-by-one in bcmgenet_put_txcb (bsc#1269185).
- CVE-2026-53106: bpf: Do not allow deleting local storage in NMI (bsc#1269990).
- CVE-2026-53107: wifi: libertas: use USB anchors for tracking in-flight URBs (bsc#1269991).
- CVE-2026-53123: md: wake raid456 reshape waiters before suspend (bsc#1269643).
- CVE-2026-53129: fs/mbcache: cancel shrink work before destroying the cache (bsc#1269633).
- CVE-2026-53131: netfilter: require Ethernet MAC header before using eth_hdr() (bsc#1269773).
- CVE-2026-53132: vsock/virtio: fix potential unbounded skb queue (bsc#1269290).
- CVE-2026-53134: netfilter: nft_fib: fix stale stack leak via the OIFNAME register (bsc#1269819).
- CVE-2026-53175: inet: frags: fix use-after-free caused by the fqdir_pre_exit() flush (bsc#1269714).
- CVE-2026-53183: mptcp: allow subflow rcv wnd to shrink (bsc#1269376).
- CVE-2026-53184: udp: clear skb->dev before running a sockmap verdict (bsc#1269689).
- CVE-2026-53185: zram: fix use-after-free in zram_bvec_write_partial() (bsc#1269660).
- CVE-2026-53189: mm/huge_memory: update file PMD counter before folio_put() (bsc#1269797).
- CVE-2026-53212: netfilter: nft_tunnel: fix use-after-free on object destroy (bsc#1269672).
- CVE-2026-53221: ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup() (bsc#1269318).
- CVE-2026-53230: net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list (bsc#1269270).
- CVE-2026-53236: tcp: restrict SO_ATTACH_FILTER to priv users (bsc#1269994).
- CVE-2026-53250: xsk: cache csum_start/csum_offset to fix TOCTOU in xsk_skb_metadata() (bsc#1269808).
- CVE-2026-53252: adaption to srcu change of hci_dev in hci_sysfs (bsc#1269307).
- CVE-2026-53262: l2tp: pppol2tp: hold reference to session in pppol2tp_ioctl() (bsc#1270000).
- CVE-2026-53267: netfilter: nft_ct: bail out on template ct in get eval (bsc#1269577).
- CVE-2026-53270: ipvs: clear the svc scheduler ptr early on edit (bsc#1269240).
- CVE-2026-53275: ipv6: mcast: Fix use-after-free when processing MLD queries (bsc#1269810).
- CVE-2026-53289: ice: fix NULL pointer dereference in ice_reset_all_vfs() (bsc#1269694).
- CVE-2026-53291: ALSA: hda/conexant: Fix missing error check for jack detection (bsc#1269697).
- CVE-2026-53321: io_uring/napi: cap busy_poll_to 10 msec (bsc#1269724).
- CVE-2026-53345: KVM: Don't WARN if memory is dirtied without a vCPU when the VM is dying (bsc#1270132).
- CVE-2026-53369: udf: reject descriptors with oversized CRC length (bsc#1271818).
- CVE-2026-53375: drm/amdgpu/vce: Prevent partial address patches (bsc#1271899).
- CVE-2026-53388: fuse: re-lock request before replacing page cache folio (bsc#1271825).
- CVE-2026-53391: NFSv4/pNFS: reject zero-length r_addr in nfs4_decode_mp_ds_addr (bsc#1271904).
- CVE-2026-53392: NFSv4/flexfiles: reject zero filehandle version count (bsc#1271826).
- CVE-2026-53393: nfsd: Don't reset the write verifier on a commit EAGAIN (bsc#1271858).
- CVE-2026-53397: nfsd: fix posix_acl leak on SETACL decode failure (bsc#1271869).
- CVE-2026-53398: NFSD: Fix SECINFO_NO_NAME decode error cleanup (bsc#1271870).
- CVE-2026-53399: nfsd: release layout stid on setlease failure (bsc#1271832).
- CVE-2026-53402: fbdev: fbcon: fix out-of-bounds read in err_out of (bsc#1271908).
- CVE-2026-63794: KVM: SVM: Fix page overflow in sev_dbg_crypt() for ENCRYPT path (bsc#1271964).
- CVE-2026-63795: 9p: avoid putting oldfid in p9_client_walk() error path (bsc#1271955).
- CVE-2026-63802: blk-cgroup: fix UAF in __blkcg_rstat_flush() (bsc#1272282).
- CVE-2026-63806: KVM: Replace guest-triggerable BUG_ON() in ioeventfd datamatch with get_unaligned() (bsc#1272268).
- CVE-2026-63807: KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level (bsc#1272263).
- CVE-2026-63809: bpf: NUL-terminate replaced sysctl value (bsc#1272296).
- CVE-2026-63824: KEYS: fix overflow in keyctl_pkey_params_get_2() (bsc#1272180).
- CVE-2026-63829: net: ip_gre: require CAP_NET_ADMIN in the device netns for changelink (bsc#1272176).
- CVE-2026-63901: USB: serial: digi_acceleport: fix memory corruption with small endpoints (bsc#1272501).
- CVE-2026-63912: xfrm: esp: restore combined single-frag length gate (bsc#1272836).
- CVE-2026-63917: ip6: vti: Use ip6_tnl.net in vti6_changelink() (bsc#1272904).
- CVE-2026-63919: xfrm: input: hold netns during deferred transport reinjection (bsc#1272907).
- CVE-2026-63921: ip6: vti: Use ip6_tnl.net in vti6_siocdevprivate() (bsc#1272918).
- CVE-2026-63922,CVE-2026-63924: ipv6: exthdrs: refresh nh after handling HAO option (bsc#1272855).
- CVE-2026-63938: KVM: SEV: Check PSC request indices against the actual size of the buffer (bsc#1272620).
- CVE-2026-63939: KVM: SEV: Compute the correct max length of the in-GHCB scratch area (bsc#1272691).
- CVE-2026-63952: memfd: deny writeable mappings when implying SEAL_WRITE (bsc#1272468).
- CVE-2026-63962: usb: typec: tcpm: bound altmode_desc[] per iteration in svdm_consume_modes() (bsc#1272482).
- CVE-2026-63968: ipv6: fix possible infinite loop in fib6_select_path() (bsc#1272466).
- CVE-2026-63971: sctp: fix race between sctp_wait_for_connect and peeloff (bsc#1272678).
- CVE-2026-63984: ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() (bsc#1272865).
- CVE-2026-63994: tunnels: load network headers after skb_cow() in iptunnel_pmtud_build_icmp() (bsc#1273035).
- CVE-2026-64025: bpf, skmsg: fix verdict sk_data_ready racing with ktls rx (bsc#1273117).
- CVE-2026-64106: KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits (bsc#1272242).
- CVE-2026-64187: xfs: fail recovery on a committed log item with no regions (bsc#1272204).
- CVE-2026-64189: netfilter: ipset: fix race between dump and ip_set_list resize (bsc#1272207).
- CVE-2026-64298: NFSv4: include MAY_WRITE in open permission mask for O_TRUNC (bsc#1273550).
- CVE-2026-64560: posix-cpu-timers: Prevent UAF caused by non-leader exec() race (bsc#1273004).
- CVE-2026-64561: KVM: x86: Check for invalid/obsolete root after making MMU pages available (bsc#1273231).
- CVE-2026-64564: sctp: don't free the ASCONF's own transport in DEL-IP processing (bsc#1274072).
- CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (bsc#1271526).
The following non security issues were fixed:
- accel/ivpu: Fix wrong register read in LNL failure diagnostics (git-fixes).
- accel/ivpu: Reject firmware log with size smaller than header (git-fixes).
- accel/qaic: use sizeof(*trans_hdr) for transaction length check (git-fixes).
- ALSA: hda: codecs: hdmi: disable keep-alive before audio format change (git-fixes).
- ALSA: hda: cs35l41: validate and free ACPI mute object (git-fixes).
- ALSA: lx6464es: fix period byte count for 16-bit streams (git-fixes).
- ALSA: pcm: wake linked drain waiters on unlink (git-fixes).
- ALSA: seq: close a re-opened queue timer in the destructor (git-fixes).
- ALSA: ump: fix double free of out_cvts on rawmidi error (git-fixes).
- ALSA: usb-audio: Clamp frame size in implicit-feedback mode (git-fixes).
- ALSA: usb-audio: Fix DMA buffer out-of-bounds write when fill_max is set (git-fixes).
- ALSA: usb-audio: fix OOB write in snd_usbmidi_akai_output() (git-fixes).
- ALSA: usb-audio: fix use-after-free in ump_to_endpoint() (git-fixes).
- ASoC: bt-sco: fix duplicate DAPM widget names for wideband DAI (git-fixes).
- ASoC: cs35l56: Fix potential probe() deadlock (git-fixes).
- ASoC: cs35l56: Use complete_all() to signal init_completion (git-fixes).
- ASoC: fsl_sai: Fix spurious BCLK on resume by clearing BYP (git-fixes).
- ASoC: max98090: fix missing IS_ERR() before PTR_ERR() on mclk lookup (git-fixes).
- ASoC: max98095: fix missing IS_ERR() before PTR_ERR() on mclk lookup (git-fixes).
- ASoC: mediatek: mt8192-afe-pcm: Convert to devm_pm_runtime_enable() (stable-fixes).
- ASoC: mediatek: mt8192-afe-pcm: Simplify probe() with local dev variable (stable-fixes).
- ASoC: mediatek: mt8192-afe-pcm: Simplify with dev_err_probe() (stable-fixes).
- ASoC: tas2562: fix broken entries in the volume lookup table (git-fixes).
- ASoC: tas2562: fix DVC coefficient write order (git-fixes).
- ASoC: tas2781: bound firmware description string parsing (git-fixes).
- assoc_array: trim the final shortcut word using the current chunk end (git-fixes).
- batman-adv: dat: fix tie-break for candidate selection (git-fixes).
- batman-adv: fix VLAN priority offset (git-fixes).
- batman-adv: frag: fix primary_if leak on failed linearization (git-fixes).
- batman-adv: frag: free unfragmentable packet (git-fixes).
- batman-adv: tt: avoid request storms during pending request (git-fixes).
- batman-adv: tt: prevent TVLV OOB check overflow (git-fixes).
- bitops: make BYTES_TO_BITS() treewide-available (stable-fixes).
- Bluetooth: 6lowpan: fix cyclic locking warning on netdev unregister (stable-fixes).
- Bluetooth: 6lowpan: Fix using chan->conn as indication to no remote netdev (git-fixes).
- Bluetooth: btintel: Validate length before parsing diagnostics TLV (git-fixes).
- Bluetooth: btrtl: validate firmware patch bounds (git-fixes).
- Bluetooth: btusb: Add USB ID 2c4e:0128 for Mercusys MA60XNB (stable-fixes).
- Bluetooth: btusb: mediatek: remove the unnecessary goto tag (stable-fixes).
- Bluetooth: btusb: validate Realtek vendor event length (git-fixes).
- Bluetooth: hci_qca: Clear memdump state on invalid dump size (git-fixes).
- Bluetooth: hci_sync: Fix advertising data UAFs (git-fixes).
- Bluetooth: hci_sync: hold conn in hci_connect_acl/le_sync() callbacks (git-fixes).
- Bluetooth: hci_sync: Protect UUID list traversal (git-fixes).
- Bluetooth: HIDP: reject frames without a transaction header (git-fixes).
- Bluetooth: HIDP: validate numbered report payloads (git-fixes).
- Bluetooth: ISO: clear iso_data always when detaching conn from hcon (git-fixes).
- Bluetooth: ISO: fix CONNECTED -> CLOSED transition on shutdown/release (git-fixes).
- Bluetooth: ISO: fix timeout vs sync_timeout typo in check_bcast_qos (git-fixes).
- Bluetooth: ISO: validate sockaddr_iso first in iso_sock_rebind_bis() (git-fixes).
- Bluetooth: L2CAP: fix UAF in l2cap_le_connect_rsp (git-fixes).
- Bluetooth: mgmt: fix locking in unpair_device/disconnect_sync (git-fixes).
- Bluetooth: mgmt: hold reference for hci_conn in mgmt_pending_cmds (git-fixes).
- Bluetooth: MGMT: revalidate LOAD_CONN_PARAM queued update (git-fixes).
- Bluetooth: mgmt: Translate HCI reason in Device Disconnected event (git-fixes).
- Bluetooth: qca: fix NVM tag length underflow in TLV parser (git-fixes).
- Bluetooth: RFCOMM: Fix session UAF in set_termios (git-fixes).
- bus: sunxi-rsb: Always check register address validity (git-fixes).
- can: bcm: add missing rcu list annotations and operations (git-fixes).
- can: bcm: defer rx_op deallocation to workqueue to fix thrtimer UAF (git-fixes).
- can: bcm: fix lockless bound/ifindex race and silent RX_SETUP failure (git-fixes).
- can: c_can: c_can_chip_config(): keep controller in init mode until bittiming is configured (git-fixes).
- can: ctucanfd: add missing MODULE_DEVICE_TABLE() (git-fixes).
- can: ctucanfd: handle bus error interrupts (git-fixes).
- can: ctucanfd: mark error-active controller status valid (git-fixes).
- can: ctucanfd: unmap BAR0 using base address (git-fixes).
- can: ctucanfd: use self-test mode for PRESUME_ACK (git-fixes).
- can: ems_usb: validate CPC message lengths (git-fixes).
- can: esd_usb: kill anchored URBs before freeing netdevs (git-fixes).
- can: etas_es58x: es58x_read_bulk_callback(): fix RX buffer leak on URB resubmit failure (git-fixes).
- can: isotp: check register_netdevice_notifier() error in module init (git-fixes).
- can: isotp: use unconditional synchronize_rcu() in isotp_release() (git-fixes).
- can: j1939: transport: j1939_session_fresh_new(): initialize receive buffer (git-fixes).
- can: kvaser_usb: kvaser_usb_hydra_get_busparams(): fix memory leak in kvaser_usb_hydra_get_busparams() (git-fixes).
- can: kvaser_usb_leaf: kvaser_usb_leaf_wait_cmd(): validate received command extents (git-fixes).
- can: peak_usb: add bounds check for USB channel index (git-fixes).
- can: peak_usb: peak_usb_start(): fix double free of transfer buffer on URB submit error (git-fixes).
- can: peak_usb: validate uCAN receive record lengths (git-fixes).
- can: softing: fw_parse(): validate firmware record spans (git-fixes).
- cdrom: fix stack out-of-bounds read in CDROMVOLCTRL (git-fixes).
- comedi: comedi_parport: deal with premature interrupt (git-fixes).
- dm cache policy smq: check allocation under invalidate lock (git-fixes).
- dm cache: fix missing return in invalidate_committed's error path (git-fixes).
- dmaengine: idxd: fix double free of wq, engine, and group structs (git-fixes).
- dmaengine: idxd: fix fdev setup failure cleanup in idxd_cdev_open() (git-fixes).
- dmaengine: qcom: bam_dma: Fix command element mask field for BAM v1.6.0+ (git-fixes).
- dmaengine: sun6i-dma: Fix reclaim descriptors while terminating DMA (git-fixes).
- driver core: Fix missing jiffies conversion in deferred_probe_extend_timeout() (git-fixes).
- driver core: Guard deferred probe timeout extension with delayed_work_pending() (git-fixes).
- driver core: Use mod_delayed_work to prevent lost deferred probe work (git-fixes).
- Drivers: hv: vmbus: Set DMA coherent mask for VMBus devices (git-fixes).
- drm/amd/display: dce100: skip non-DP stream encoders for DP MST (stable-fixes).
- drm/amd/display: set new_stream to NULL after release (git-fixes).
- drm/amd/display: use proper context for logging (git-fixes).
- drm/amd/pm/ci: Don't disable MCLK DPM on Bonaire 0x6658 (R7 260X) (git-fixes).
- drm/amd/pm: fix smu14 power limit range calculation (stable-fixes).
- drm/amd/pm: make pp_features read-only when scpm is enabled (stable-fixes).
- drm/amdgpu/gfx8: drop unecessary BUG_ON() (stable-fixes).
- drm/amdgpu/gfx9.4.3: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/gfx9: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/gfx10: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/gfx11: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/gfx12: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/sdma4.4.2: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/sdma5.0: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/sdma5.2: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/sdma6.0: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/sdma7.0: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/uvd: Fix forcing MSG, FB BOs into VCPU segment when it isn't at 0 (v2) (stable-fixes).
- drm/amdgpu/uvd: Place VCPU BO only in VRAM for UVD 4.x and older (stable-fixes).
- drm/amdgpu/vce: fix integer overflow in image size (stable-fixes).
- drm/amdgpu/vcn4: avoid rereading IB param length (stable-fixes).
- drm/amdgpu: Disable PCIe dynamic speed switching on Ryzen Pinnacle Ridge (git-fixes).
- drm/amdgpu: fix bo->pin leaking in amdgpu_bo_create_reserved (stable-fixes).
- drm/amdgpu: fix division by zero with invalid uvd dimensions (stable-fixes).
- drm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid() (stable-fixes).
- drm/amdgpu: Fix VFCT bus number matching with soft filter (stable-fixes).
- drm/amdgpu: invoke pm_genpd_remove() before freeing genpd (stable-fixes).
- drm/amdkfd: Check bounds in allocate_event_notification_slot (stable-fixes).
- drm/amdkfd: fix 32-bit overflow in CWSR total size calculation (stable-fixes).
- drm/amdkfd: fix uint32_t overflow in EOP ring buffer size alignment (git-fixes).
- drm/amdkfd: free MQD managers on DQM init failures (git-fixes).
- drm/amdkfd: hold event_mutex while checkpointing CRIU events (git-fixes).
- drm/amdkfd: Use kvcalloc to allocate arrays (stable-fixes).
- drm/dp: Read the PCON max FRL bandwidth only for HDMI DFPs (git-fixes).
- drm/i915/gt: use correct selftest config symbol (git-fixes).
- drm/i915/selftests: Fix GT PM sort comparators (git-fixes).
- drm/i915: ensure segment offset never exceeds allowed max (stable-fixes).
- drm/imagination: acquire vm_ctx->lock before mapping memory to GPU VM (git-fixes).
- drm/mediatek: Check CRTC state before freeing (git-fixes).
- drm/mediatek: ovl_adaptor: balance component registrations (git-fixes).
- drm/panthor: reject firmware sections with oversized data (git-fixes).
- drm/panthor: return error on truncated firmware (git-fixes).
- drm/panthor: validate firmware interface structure sizes (git-fixes).
- drm/radeon: fix r100_copy_blit for large BOs (stable-fixes).
- drm/tegra: gr2d/gr3d: Contain PM in the grd_probe/grd_remove (git-fixes).
- drm/tegra: gr2d/gr3d: Initialize address register map before HOST1X client is registered (stable-fixes).
- drm/tests: shmem: Set DMA mask to 64-bit in drm_gem_shmem (git-fixes).
- drm/vc4: hvs/v3d: Fix null dereference in unbind (git-fixes).
- drm/vc4: Prevent shader BO mappings from becoming writable (git-fixes).
- drm/vc4: Supply the overflow slot size in BPOS, not the whole bin BO size (git-fixes).
- drm/vc4: Zero the tile state data array before each BIN job (git-fixes).
- drm/virtio: fix deadlock in display_info_cb by removing hotplug from dequeue worker (git-fixes).
- drm/vmwgfx: avoid destroy_workqueue(NULL) on vkms init failure (git-fixes).
- drm/vmwgfx: bound DMA command body size against suffix pointer (git-fixes).
- drm/vmwgfx: drop dma_buf reference on foreign-fd prime import (git-fixes).
- drm/vmwgfx: fix guest_memory_dirty bitfield clobbered as size (git-fixes).
- drm/vmwgfx: reject DX_BIND_QUERY without a DX context (git-fixes).
- drm/vmwgfx: use check_add_overflow for shader size+offset bound (git-fixes).
- drm/vmwgfx: validate DRAW_PRIMITIVES header size before division (git-fixes).
- drm/vmwgfx: validate external BO copy bounds for both stride paths (git-fixes).
- drm/vmwgfx: Validate vmw_surface_metadata::array_size (git-fixes).
- drm/xe/wopcm: fix WOPCM size for LNL+ (git-fixes).
- fbcon: fix NULL pointer dereference for a console without vc_data (stable-fixes).
- fbdev/efifb: Replace references to global screen_info by local pointer (stable-fixes).
- fbdev: carminefb: fix potential memory leak in alloc_carmine_fb() (git-fixes).
- fbdev: efifb: fix memory leak in efifb_probe() (git-fixes).
- firewire: net: Fix fragmented datagram reassembly (git-fixes).
- firmware: arm_ffa: Fix NULL dereference in ffa_partition_info_get() (git-fixes).
- firmware: arm_scmi: Rate-limit queue-full warnings in IRQ context (git-fixes).
- firmware_loader: introduce __free() cleanup hanler (stable-fixes).
- gpio: eic-sprd: use raw_spinlock_t in the irq startup path (git-fixes).
- gpio: mlxbf3: fail probe if gpiochip registration fails (git-fixes).
- gpio: pca953x: fix cache_only and IRQ state on restore_context() failure (git-fixes).
- gpu: host1x: Fix device reference leak in host1x_device_parse_dt() error path (git-fixes).
- gpu: host1x: Fix use-after-free in host1x_bo_clear_cached_mappings (stable-fixes).
- HID: add haptics page defines (stable-fixes).
- HID: playstation: validate num_touch_reports in DualShock 4 reports (stable-fixes).
- hrtimers: Introduce hrtimer_setup() to replace hrtimer_init() (bsc#1271912).
- hwmon: (adt7470) Fix busy-loop and I2C flooding in update thread (git-fixes).
- hwmon: (adt7470) Fix cache updated before hardware write on I2C error (git-fixes).
- hwmon: (adt7470) Fix divide-by-zero TOCTOU crash in fan speed read (git-fixes).
- hwmon: (adt7470) Fix fans stuck in manual mode on I2C errors (git-fixes).
- hwmon: (adt7470) Fix PWM auto temp state array and bounds check (git-fixes).
- hwmon: (adt7470) Fix swapped PWM3 and PWM4 auto mode masks (git-fixes).
- hwmon: (adt7470) Fix temperature alarm logic in hwmon_temp_read() (git-fixes).
- hwmon: (adt7470) Use cached PWM frequency value (git-fixes).
- hwmon: (asus-ec-sensors) add missed handle for ENOMEM (git-fixes).
- hwmon: (asus-ec-sensors) fix EC read intervals (git-fixes).
- hwmon: (asus-ec-sensors) fix looping over banks while reading from EC (git-fixes).
- hwmon: (corsair-cpro) Stop device IO before calling hid_hw_stop (git-fixes).
- hwmon: (corsair-psu) Stop device IO before calling hid_hw_stop (git-fixes).
- hwmon: (lm90) Only report alarms if driver is ready (git-fixes).
- hwmon: (nct6775-core) Prevent access to unsupported weight registers (git-fixes).
- hwmon: (npcm750-pwm-fan): stop fan timer on device detach (git-fixes).
- hwmon: (nzxt-smart2) Stop device IO before calling hid_hw_stop (git-fixes).
- hwmon: (pmbus) Fix return value from pmbus_update_byte_data() (git-fixes).
- hwmon: (pmbus/core) notify on the hwmon device, not the i2c client (git-fixes).
- hwmon: (w83627hf) remove VID sysfs files on error and remove (stable-fixes).
- hwmon: (w83793) remove vrm sysfs file on probe failure (stable-fixes).
- hwmon: occ: validate poll response sensor blocks (git-fixes).
- i2c: amd-mp2: Unregister callback on adapter add failure (git-fixes).
- i2c: imx: Cancel hrtimer before clearing slave pointer (git-fixes).
- i2c: imx: fix locked bus on SMBus block-read of 0 (atomic) (git-fixes).
- i2c: imx: Fix slave registration race and error handling (git-fixes).
- i2c: imx: separate atomic, dma and non-dma use case (stable-fixes).
- i2c: jz4780: Cache host clock rate at probe to prevent CCF prepare_lock deadlock (git-fixes).
- i2c: mediatek: fix WRRD for SoCs without auto_restart option (git-fixes).
- i2c: mlxbf: Fix use-after-free in mlxbf_i2c_init_resource() (git-fixes).
- ice: don't check has_ready_bitmap in E810 functions (bsc#1269981).
- ice: factor out ice_ptp_rebuild_owner() (bsc#1269981).
- ice: fix PTP Call Trace during PTP release (bsc#1269981).
- ice: Fix PTP NULL pointer dereference during VSI rebuild (bsc#1269981).
- ice: introduce PTP state machine (bsc#1269981).
- ice: pass reset type to PTP reset functions (bsc#1269981).
- ice: rename ice_ptp_tx_cfg_intr (bsc#1269981).
- ice: rename verify_cached to has_ready_bitmap (bsc#1269981).
- ice: stop destroying and reinitalizing Tx tracker during reset (bsc#1269981).
- ieee802154: admin-gate legacy LLSEC dump operations (git-fixes).
- ieee802154: allow legacy LLSEC ADD/DEL ops to pass strict validation (git-fixes).
- ieee802154: ca8210: fix cas_ctl leak on spi_async failure (git-fixes).
- ieee802154: ca8210: fix pointer truncation in kfifo on 64-bit (git-fixes).
- ieee802154: fix kernel-infoleak in dgram_recvmsg() (git-fixes).
- ieee802154: Remove WARN_ON() in cfg802154_pernet_exit() (git-fixes).
- iio: common: st_sensors: honour channel endianness in read_axis_data (git-fixes).
- Input: atkbd - validate scancode in firmware keymap entries (git-fixes).
- Input: elan_i2c - prevent division by zero and arithmetic underflow (git-fixes).
- Input: goodix - clamp the device-reported contact count (git-fixes).
- Input: iforce - bound the device-reported force-feedback effect index (git-fixes).
- Input: ims-pcu - add response length checks (git-fixes).
- Input: ims-pcu - fix DMA mapping violation in line setup (git-fixes).
- Input: ims-pcu - fix firmware leak in async update (git-fixes).
- Input: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data() (git-fixes).
- Input: ims-pcu - fix logic error in packet reset (git-fixes).
- Input: ims-pcu - fix out-of-bounds read in ims_pcu_irq() debug logging (git-fixes).
- Input: ims-pcu - fix potential infinite loop in CDC union descriptor parsing (git-fixes).
- Input: ims-pcu - fix race condition in reset_device sysfs callback (git-fixes).
- Input: ims-pcu - fix type confusion in CDC union descriptor parsing (git-fixes).
- Input: ims-pcu - fix use-after-free and double-free in disconnect (git-fixes).
- Input: ims-pcu - release data interface on disconnect (git-fixes).
- Input: ims-pcu - validate control endpoint type (git-fixes).
- Input: maple_keyb - set driver data before registering input device (stable-fixes).
- Input: maplecontrol - set driver data before registering input device (stable-fixes).
- Input: maplemouse - set driver data before registering input device (stable-fixes).
- Input: rmi4 - fix bit count in bitmap_copy() (git-fixes).
- Input: rmi4 - fix limit in rmi_register_desc_has_subpacket() (git-fixes).
- Input: rmi4 - fix memory leak in rmi_set_attn_data() (git-fixes).
- Input: rmi4 - fix num_subpackets overflow in register descriptor (git-fixes).
- Input: rmi4 - fix register descriptor address calculation (git-fixes).
- Input: rmi4 - fix type overflow in register counts (git-fixes).
- Input: rmi4 - initialize attn_fifo properly (stable-fixes).
- Input: rmi4 - iterative IRQ handler (git-fixes).
- Input: rmi4 - refactor F12 probe function (stable-fixes).
- Input: rmi4 - refactor register descriptor parsing (git-fixes).
- Input: rmi4 - tolerate short register descriptor structure (git-fixes).
- Input: rmi4 - use local presence map in rmi_read_register_desc() (stable-fixes).
- Input: serio - define serio_pause_rx guard to pause and resume serio ports (stable-fixes).
- Input: synaptics-rmi4 - add support for querying DPM value (F12) (stable-fixes).
- Input: synaptics-rmi4 - fix crash when DPM query is not supported (git-fixes).
- Input: synaptics-rmi4 - unregister function handlers on physical driver registration failure (git-fixes).
- Input: touchwin - reset the packet index on every complete packet (git-fixes).
- intel_th: fix MSC output device reference leak (git-fixes).
- io_uring/cancel: de-unionize file and user_data in struct io_cancel_data (bsc#1271283).
- io_uring/filetable: clamp alloc_hint to the configured alloc range (bsc#1271285).
- io_uring/timeout: add helper for parsing user time (bsc#1271291).
- io_uring/timeout: honour caller's time namespace for IORING_TIMEOUT_ABS (bsc#1271291).
- io_uring/timeout: migrate reqs from ts64 to ktime (bsc#1271291).
- io_uring/wait: honour caller's time namespace for IORING_ENTER_ABS_TIMER (bsc#1271291).
- KVM: nVMX: Hide shadow VMCS right after VMCLEAR (git-fixes).
- KVM: SEV: Do not allow intra-host migration/mirroring of SNP VMs (git-fixes).
- KVM: SEV: Use READ_ONCE() when reading entries/indices from PSC buffer (git-fixes).
- KVM: SEV: Use the size of the PSC header as the minimum size for PSC requests (git-fixes).
- KVM: SVM: Bump asid_generation on CPU online to avoid ASID collision after hotplug (git-fixes).
- KVM: SVM: Mark VMCB_NPT as dirty on nested VMRUN (git-fixes).
- KVM: SVM: Mark VMCB_PERM_MAP as dirty on nested VMRUN (git-fixes).
- KVM: x86/mmu: Fix use-after-free on vendor module reload (git-fixes).
- KVM: x86/mmu: Preserve nested TDP shadow page tables if they are used as roots (git-fixes).
- KVM: x86/xen: Fix cleanup logic in emulation of Xen schedop poll hypercalls (git-fixes).
- KVM: x86: Fix SRCU list traversal in kvm_fire_mask_notifiers() (git-fixes).
- KVM: x86: Fix VM hard lockup after prolonged inactivity with periodic HV timer (git-fixes).
- KVM: x86: hyper-v: Bound the bank index when querying sparse banks (git-fixes).
- KVM: x86: hyper-v: Validate all GVAs during PV TLB flush (git-fixes).
- KVM: x86: Ignore pending PV EOI if the vCPU has since disabled PV EOIs (git-fixes).
- libbpf: Search /lib64 and /lib in resolve_full_path() (bsc#1271250).
- mac802154: hold an interface reference across the scan worker (git-fixes).
- mac802154: llsec: reject frames shorter than the authentication tag (git-fixes).
- media: airspy: Return queued buffers on start_streaming() failure (git-fixes).
- media: atomisp: Fix memory leak in atomisp_fixed_pattern_table() (git-fixes).
- media: cedrus: clean up media device on probe failure (git-fixes).
- media: cx231xx: fix devres lifetime (git-fixes).
- media: cx23885: add ioremap return check and cleanup (git-fixes).
- media: intel/ipu6: Improve DWC PHY HSFREQRANGE band selection for overlapping ranges (git-fixes).
- media: meson: vdec: Fix memory leak in error path of vdec_open (git-fixes).
- media: msi2500: Return queued buffers on start_streaming() failure (git-fixes).
- media: nxp: imx8-isi: Add missing v4l2_subdev_cleanup() in crossbar and pipe (git-fixes).
- media: nxp: imx8-isi: Clean up already-initialized pipes on probe failure (git-fixes).
- media: nxp: imx8-isi: Convert to platform remove callback returning void (stable-fixes).
- media: nxp: imx8-isi: Fix missing v4l2_subdev_cleanup() in pipe init error path (git-fixes).
- media: nxp: imx8-isi: Fix potential out-of-bounds issues (git-fixes).
- media: nxp: imx8-isi: Fix scale factor calculation for hardware rounding (git-fixes).
- media: nxp: imx8-isi: Fix use-after-free on remove (git-fixes).
- media: nxp: imx8-isi: use devm_pm_runtime_enable() to simplify code (stable-fixes).
- media: pwc: Drain fill_buf on start_streaming() failure (git-fixes).
- media: pwc: Return queued buffers on start_streaming() failure (git-fixes).
- media: qcom: venus: drop extra padding in NV12 raw size calculation (git-fixes).
- media: qcom: venus: relax encoder frame/blur dimension steps on v4 (git-fixes).
- media: qcom: venus: relax encoder frame/blur step size on v6 (git-fixes).
- media: radio-si476x: Unregister v4l2_device on probe failure (git-fixes).
- media: rockchip: rga: fix too small buffer size (git-fixes).
- media: rtl2832: fix use-after-free in rtl2832_remove() (git-fixes).
- media: rtl2832_sdr: Return queued buffers on start_streaming() failure (git-fixes).
- media: saa7134: Fix a possible memory leak in saa7134_video_init1 (git-fixes).
- media: staging: ipu3-imgu: Add range check for imgu_css_cfg_acc_stripe (git-fixes).
- media: stm32: dcmi: unregister notifier on probe failure (git-fixes).
- media: sun4i-csi: Return queued buffers on start_streaming() failure (git-fixes).
- media: tegra-video: vi: fix invalid u32 return value in format lookup (git-fixes).
- media: uvcvideo: Avoid partial metadata buffers (git-fixes).
- media: uvcvideo: Fix buffer sequence in frame gaps (git-fixes).
- media: uvcvideo: Fix sequence number when no EOF (git-fixes).
- media: v4l2-common: Add YUV24 format info (git-fixes).
- media: v4l2-ctrls-request: add NULL check in v4l2_ctrl_request_complete() (git-fixes).
- media: vivid: add vivid_update_reduced_fps() (git-fixes).
- media: vivid: check for vb2_is_busy() when toggling caps (git-fixes).
- mei: bus: access mei_device under device_lock on cleanup (git-fixes).
- memstick: ms_block: reject a card that reports too many blocks (git-fixes).
- mfd: cros_ec: Delay dev_set_drvdata() until probe success (git-fixes).
- mfd: sm501: Fix reference leak on failed device registration (git-fixes).
- mfd: tps6586x: Fix OF node refcount (git-fixes).
- mkspec-dtb: Skip missing DTBs.
- mm: convert pagecache_isize_extended to use a folio (bsc#1272920).
- mm: fix the inaccurate memory statistics issue for users (bsc#1268648).
- mm: list_lru: disable memcg_aware when cgroup.memory is set to "nokmem" (bsc#1271402).
- mm: zero range of eof folio exposed by inode size extension (bsc#1272920).
- mmc: vub300: defer reset until cmd_mutex is unlocked (git-fixes).
- mtd: mchp23k256: use SPI match data for chip caps (git-fixes).
- mtd: mtdswap: remove debugfs stats file on teardown (git-fixes).
- mtd: nand: mtk-ecc: stop on ECC idle timeouts (git-fixes).
- mtd: onenand: samsung: report DMA completion timeouts (git-fixes).
- mtd: rawnand: Add a helper for calculating a page index (stable-fixes).
- mtd: rawnand: Ensure all continuous terms are always in sync (git-fixes).
- mtd: rawnand: fsl_ifc: return errors for failed page reads (git-fixes).
- mtd: rawnand: lpc32xx_mlc: fail DMA transfers on timeout (git-fixes).
- mtd: rawnand: lpc32xx_slc: fail DMA transfer on completion timeout (git-fixes).
- mtd: rawnand: Pause continuous reads at block boundaries (git-fixes).
- net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_handle (bsc#1271866).
- net/x25: fix use-after-free in x25_kill_by_neigh() (git-fixes).
- net: mana: Add Interrupt Moderation support (bsc#1271368).
- net: mana: Return error code from mana_create_rxq() (git-fixes).
- net: thunderbolt: Fix frags overflow by bounding frame_count (git-fixes).
- net: usb: kalmia: bound RX frame length in kalmia_rx_fixup() (git-fixes).
- net: usb: lan78xx: move functions to avoid forward definitions (stable-fixes).
- net: wwan: t7xx: check skb_clone in control TX (git-fixes).
- net: wwan: t7xx: destroy DMA pool on CLDMA late init failure (git-fixes).
- phy: zynqmp: fix L0_TM_DISABLE_SCRAMBLE_ENCODER mask (git-fixes).
- phy: zynqmp: keep SERDES scrambler and 8b/10b enabled for USB (git-fixes).
- phy: zynqmp: use read-modify-write for SERDES scrambler bypass (git-fixes).
- pinctrl-amd: Don't clear S4 wake bits at probe (git-fixes).
- pinctrl: bm1880: add missing select GENERIC_PINCONF (git-fixes).
- pinctrl: devicetree: don't free uninitialized dev_name on error path (git-fixes).
- pinctrl: qcom: sc8280xp: Add missing wakeup entries for GPIO143/151 (git-fixes).
- pkspec-dtb: Fix dtb-al rename.
- platform/x86/amd/pmc: Add delay_suspend module parameter (stable-fixes).
- platform/x86/amd/pmc: Avoid logging "(null)" for DMI values (git-fixes).
- platform/x86/amd/pmc: Check for intermediate wakeup in function (stable-fixes).
- platform/x86/amd/pmc: Delay suspend for some Lenovo Laptops (stable-fixes).
- platform/x86/amd/pmc: Don't log during intermediate wakeups (stable-fixes).
- platform/x86: dell-smbios: Move request functions for reuse (stable-fixes).
- posix-cpu-timers: Cleanup the firing logic (bsc#1271912).
- posix-cpu-timers: Correctly update timer status in posix_cpu_timer_del() (bsc#1271912).
- posix-cpu-timers: Do not arm SIGEV_NONE timers (bsc#1271912).
- posix-cpu-timers: Handle interval timers correctly in timer_get() (bsc#1271912).
- posix-cpu-timers: Handle SIGEV_NONE timers correctly in timer_get() (bsc#1271912).
- posix-cpu-timers: Handle SIGEV_NONE timers correctly in timer_set() (bsc#1271912).
- posix-cpu-timers: Make k_itimer::it_active consistent (bsc#1271912).
- posix-cpu-timers: Prevent UAF caused by non-leader exec() race (bsc#1271912).
- posix-cpu-timers: Remove incorrect comment in posix_cpu_timer_set() (bsc#1271912).
- posix-cpu-timers: Replace old expiry retrieval in posix_cpu_timer_set() (bsc#1271912).
- posix-cpu-timers: Simplify posix_cpu_timer_set() (bsc#1271912).
- posix-cpu-timers: Split up posix_cpu_timer_get() (bsc#1271912).
- posix-cpu-timers: Use @now instead of @val for clarity (bsc#1271912).
- posix-timers: Add proper state tracking (bsc#1271912).
- posix-timers: Avoid direct access to hrtimer clockbase (bsc#1271912).
- posix-timers: Clarify posix_timer_fn() comments (bsc#1271912).
- posix-timers: Clear overrun in common_timer_set() (bsc#1271912).
- posix-timers: Consolidate signal queueing (bsc#1271912).
- posix-timers: Consolidate timer setup (bsc#1271912).
- posix-timers: Cure si_sys_private race (bsc#1271912).
- posix-timers: Document common_clock_get() correctly (bsc#1271912).
- posix-timers: Expand timer_arm() callbacks with a boolean return value (bsc#1271912).
- posix-timers: Polish coding style in a few places (bsc#1271912).
- posix-timers: Retrieve interval in common timer_settime() code (bsc#1271912).
- power: supply: bq25890: fix the -10 C NTC lookup entry (git-fixes).
- RDMA/mana_ib: initialize err for empty send WR lists (git-fixes).
- regulator: ltc3676: Fix incorrect IRQSTAT bit offsets (git-fixes).
- remoteproc: qcom: Fix leak when custom dump_segments addition fails (git-fixes).
- reset: sunxi: fix memory region leak on ioremap failure (git-fixes).
- Revert "Input: rmi4 - fix register descriptor address calculation" (stable-fixes).
- sched/psi: Create the psimon kthread outside of cgroup_mutex (bsc#1269134).
- sctp: validate embedded address parameter length (git-fixes).
- selftests: Disable dad for ipv6 in fcnal-test.sh (bsc#1272871).
- selftests: Replace sleep with slowwait (bsc#1272871).
- serial: 8250_mid: Disable DMA for selected platforms (git-fixes).
- serial: 8250_mid: Fix NULL function pointer dereference on DNV/ICX-D/SNR platforms (git-fixes).
- serial: 8250_mid: Remove 8250_pci usage (stable-fixes).
- serial: sc16is7xx: implement gpio get_direction() callback (git-fixes).
- series.conf: disable failing patch.
- slimbus: Convert to platform remove callback returning void (stable-fixes).
- slimbus: qcom-ngd-ctrl: Avoid ABBA on tx_lock/ctrl->lock (git-fixes).
- slimbus: qcom-ngd-ctrl: Balance pm_runtime enablement for NGD (git-fixes).
- slimbus: qcom-ngd-ctrl: Correct PDR and SSR cleanup ownership (git-fixes).
- slimbus: qcom-ngd-ctrl: Fix probe error path ordering (git-fixes).
- slimbus: qcom-ngd-ctrl: Fix up platform_driver registration (git-fixes).
- slimbus: qcom-ngd-ctrl: Initialize controller resources in controller (git-fixes).
- slimbus: qcom-ngd-ctrl: Register callbacks after creating the ngd (git-fixes).
- staging: media: atomisp: reduce load_primary_binaries() stack usage (git-fixes).
- staging: rtl8723bs: core: move constants to right side in comparison (stable-fixes).
- staging: rtl8723bs: fix inverted HT40 secondary channel offset (git-fixes).
- task_work: Fix NMI race condition (git-fixes).
- time: Switch to hrtimer_setup() (bsc#1271912).
- uio_hv_generic: Bind to FCopy device by default (git-fixes).
- usb: cdc_acm: Add quirk for Uniden BC125AT scanner (stable-fixes).
- usb: chipidea: fix usage_count leak when autosuspend_delay is negative (git-fixes).
- USB: core: add USB_QUIRK_NO_LPM for VIA Labs USB 2.0 hub (stable-fixes).
- usb: core: port: Deattach Type-C connector on component unbind (git-fixes).
- usb: gadget: dummy_hcd: prevent fifo_req reuse during giveback (git-fixes).
- usb: gadget: f_midi: cancel pending IN work before freeing the midi object (git-fixes).
- usb: gadget: f_ncm: validate datagram bounds in ncm_unwrap_ntb() (git-fixes).
- USB: gadget: fsl-udc: fix dev_printk() device (git-fixes).
- USB: gadget: fsl-udc: fix device name leak on probe failure (git-fixes).
- usb: gadget: function: rndis: add length check for header (stable-fixes).
- usb: gadget: function: rndis: add length check to response query (stable-fixes).
- usb: gadget: printer: fix infinite loop in printer_read() (git-fixes).
- USB: gadget: snps-udc: fix device name leak on probe failure (git-fixes).
- usb: gadget: udc: bdc: free IRQ and drain func_wake_notify before teardown (git-fixes).
- usb: gadget: udc: Fix use-after-free in gadget_match_driver (stable-fixes).
- usb: gadget: uvc: clamp SEND_RESPONSE length to the response buffer (git-fixes).
- USB: iowarrior: fix use-after-free on disconnect race (git-fixes).
- usb: iowarrior: remove inherent race with minor number (stable-fixes).
- USB: quirks: add NO_LPM for the Samsung T5 EVO Portable SSD (stable-fixes).
- USB: serial: io_edgeport: cap received transmit credits (git-fixes).
- USB: serial: io_ti: reject oversized boot-mode firmware (git-fixes).
- USB: serial: keyspan_pda: fix data loss on receive throttling (git-fixes).
- USB: serial: mxuport: validate firmware header size (git-fixes).
- USB: serial: option: add Telit Cinterion FE990D50 compositions (stable-fixes).
- wan: wanxl: Only reset hardware after BAR mapping (git-fixes).
- watchdog: pretimeout: Fix UAF in watchdog_unregister_governor() (git-fixes).
- wifi: at76c50x-usb: avoid length underflow in at76_guess_freq() (git-fixes).
- wifi: ath6kl: fix OOB access from firmware ADDBA window size (git-fixes).
- wifi: ath6kl: fix OOB read from firmware IE lengths in connect event (git-fixes).
- wifi: ath6kl: fix OOB read from firmware num_msg in TX complete handler (git-fixes).
- wifi: ath9k: hif_usb: don't dereference hif_dev after re-arming firmware request (git-fixes).
- wifi: ath10k: fix skb leak on incomplete msdu during rx pop (git-fixes).
- wifi: ath11k: fix NULL pointer dereference in ath11k_hal_srng_access_begin (git-fixes).
- wifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get() (git-fixes).
- wifi: ath11k: Flush the posted write after writing to PCIE_SOC_GLOBAL_RESET (git-fixes).
- wifi: ath12k: Flush the posted write after writing to PCIE_SOC_GLOBAL_RESET (git-fixes).
- wifi: brcmfmac: fix 802.1X-SHA256 call trace warning (git-fixes).
- wifi: brcmfmac: initialize SDIO data work before cleanup (git-fixes).
- wifi: brcmfmac: make release_scratchbuffers idempotent (git-fixes).
- wifi: carl9170: bound memcpy length in cmd callback to prevent OOB read (git-fixes).
- wifi: carl9170: fix buffer overflow in rx_stream failover path (git-fixes).
- wifi: carl9170: fix OOB read from off-by-two in TX status handler (git-fixes).
- wifi: cfg80211: bound element ID read when checking non-inheritance (git-fixes).
- wifi: cfg80211: cancel sched scan results work on unregister (git-fixes).
- wifi: cfg80211: derive S1G beacon TSF from S1G fields (git-fixes).
- wifi: cfg80211: reject unsupported PMSR FTM location requests (git-fixes).
- wifi: cfg80211: validate PMSR FTM preamble range (git-fixes).
- wifi: cfg80211: validate PMSR measurement type data (git-fixes).
- wifi: ipw2100: fix potential memory leak in ipw2100_pci_init_one() (git-fixes).
- wifi: iwlwifi: mvm: fix flushing during quiet CSA (bsc#1272600).
- wifi: iwlwifi: mvm: fix read in wake packet notification handler (git-fixes).
- wifi: iwlwifi: mvm: validate SAR GEO response payload size (git-fixes).
- wifi: libertas: fix memory leak in helper_firmware_cb() (git-fixes).
- wifi: mac80211: fix fils_discovery double free on alloc failure (git-fixes).
- wifi: mac80211: fix memory leak in ieee80211_register_hw() (git-fixes).
- wifi: mac80211: fix unsol_bcast_probe_resp double free on alloc failure (git-fixes).
- wifi: mac80211: free ack status frame on TX header build failure (git-fixes).
- wifi: mac80211: free AP_VLAN bc_buf SKBs outside IRQ lock (git-fixes).
- wifi: mac80211: recalculate TIM when a station enters power save (git-fixes).
- wifi: mac80211: tear down new links on vif update error path (git-fixes).
- wifi: mac80211: validate individual TWT params before driver setup (git-fixes).
- wifi: mt76: connac: fix possible NULL-pointer deref in mt76_connac_mcu_uni_bss_he_tlv() (git-fixes).
- wifi: mt76: mt7615: drop TXRX_NOTIFY on non-mmio buses (git-fixes).
- wifi: mt76: mt7915: guard HE capability lookups (git-fixes).
- wifi: mt76: mt7921: drop TXRX_NOTIFY on non-mmio buses (git-fixes).
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (git-fixes).
- wifi: mt76: mt7996: check pointer returned by mt76_connac_get_he_phy_cap() (git-fixes).
- wifi: mt76: mt7996: fix possible NULL-pointer deref in mt7996_mcu_sta_bfer_eht() (git-fixes).
- wifi: mwifiex: bound uAP association event IEs to the event buffer (git-fixes).
- wifi: mwifiex: fix NULL dereference when the AP has HT-cap but no HT-oper (git-fixes).
- wifi: mwifiex: fix permanently busy scans after multiple roam iterations (git-fixes).
- wifi: mwifiex: use the subframe length when parsing A-MSDU TDLS frames (git-fixes).
- wifi: nl80211: free RNR data on MBSSID mismatch (git-fixes).
- wifi: nl80211: validate nested MBSSID IE blobs (git-fixes).
- wifi: p54: validate RX frame length in p54_rx_eeprom_readback() (git-fixes).
- wifi: rt2x00: avoid full teardown before work setup in probe (git-fixes).
- wifi: wilc1000: validate assoc response length before subtracting header (git-fixes).
Special Instructions and Notes:
- Please reboot the system after installing this update.
Patch Instructions:
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
-
SUSE Real Time Module 15-SP7
zypper in -t patch SUSE-SLE-Module-RT-15-SP7-2026-3810=1 -
SUSE Linux Enterprise Live Patching 15-SP7
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP7-2026-3810=1
Package List:
-
SUSE Real Time Module 15-SP7 (nosrc x86_64)
- kernel-rt-6.4.0-150700.7.72.1
-
SUSE Real Time Module 15-SP7 (x86_64)
- dlm-kmp-rt-6.4.0-150700.7.72.1
- kernel-rt-debugsource-6.4.0-150700.7.72.1
- gfs2-kmp-rt-debuginfo-6.4.0-150700.7.72.1
- cluster-md-kmp-rt-debuginfo-6.4.0-150700.7.72.1
- ocfs2-kmp-rt-6.4.0-150700.7.72.1
- cluster-md-kmp-rt-6.4.0-150700.7.72.1
- kernel-syms-rt-6.4.0-150700.7.72.1
- kernel-rt-debuginfo-6.4.0-150700.7.72.1
- kernel-rt-devel-6.4.0-150700.7.72.1
- kernel-rt-devel-debuginfo-6.4.0-150700.7.72.1
- gfs2-kmp-rt-6.4.0-150700.7.72.1
- dlm-kmp-rt-debuginfo-6.4.0-150700.7.72.1
- ocfs2-kmp-rt-debuginfo-6.4.0-150700.7.72.1
-
SUSE Real Time Module 15-SP7 (noarch)
- kernel-source-rt-6.4.0-150700.7.72.1
- kernel-devel-rt-6.4.0-150700.7.72.1
-
SUSE Linux Enterprise Live Patching 15-SP7 (x86_64)
- kernel-livepatch-6_4_0-150700_7_72-rt-debuginfo-1-150700.1.5.1
- kernel-livepatch-6_4_0-150700_7_72-rt-1-150700.1.5.1
- kernel-livepatch-SLE15-SP7-RT_Update_19-debugsource-1-150700.1.5.1
References:
- https://www.suse.com/security/cve/CVE-2023-2058.html
- https://www.suse.com/security/cve/CVE-2025-21845.html
- https://www.suse.com/security/cve/CVE-2025-38250.html
- https://www.suse.com/security/cve/CVE-2025-38469.html
- https://www.suse.com/security/cve/CVE-2025-40213.html
- https://www.suse.com/security/cve/CVE-2025-54518.html
- https://www.suse.com/security/cve/CVE-2025-68223.html
- https://www.suse.com/security/cve/CVE-2025-68741.html
- https://www.suse.com/security/cve/CVE-2025-68818.html
- https://www.suse.com/security/cve/CVE-2026-23097.html
- https://www.suse.com/security/cve/CVE-2026-31431.html
- https://www.suse.com/security/cve/CVE-2026-31482.html
- https://www.suse.com/security/cve/CVE-2026-31483.html
- https://www.suse.com/security/cve/CVE-2026-31542.html
- https://www.suse.com/security/cve/CVE-2026-31598.html
- https://www.suse.com/security/cve/CVE-2026-31628.html
- https://www.suse.com/security/cve/CVE-2026-31759.html
- https://www.suse.com/security/cve/CVE-2026-43016.html
- https://www.suse.com/security/cve/CVE-2026-43033.html
- https://www.suse.com/security/cve/CVE-2026-43046.html
- https://www.suse.com/security/cve/CVE-2026-43056.html
- https://www.suse.com/security/cve/CVE-2026-43059.html
- https://www.suse.com/security/cve/CVE-2026-43114.html
- https://www.suse.com/security/cve/CVE-2026-43130.html
- https://www.suse.com/security/cve/CVE-2026-43161.html
- https://www.suse.com/security/cve/CVE-2026-43168.html
- https://www.suse.com/security/cve/CVE-2026-43170.html
- https://www.suse.com/security/cve/CVE-2026-43172.html
- https://www.suse.com/security/cve/CVE-2026-43216.html
- https://www.suse.com/security/cve/CVE-2026-43230.html
- https://www.suse.com/security/cve/CVE-2026-43262.html
- https://www.suse.com/security/cve/CVE-2026-43266.html
- https://www.suse.com/security/cve/CVE-2026-43276.html
- https://www.suse.com/security/cve/CVE-2026-43281.html
- https://www.suse.com/security/cve/CVE-2026-43308.html
- https://www.suse.com/security/cve/CVE-2026-43309.html
- https://www.suse.com/security/cve/CVE-2026-43328.html
- https://www.suse.com/security/cve/CVE-2026-43352.html
- https://www.suse.com/security/cve/CVE-2026-43439.html
- https://www.suse.com/security/cve/CVE-2026-43440.html
- https://www.suse.com/security/cve/CVE-2026-43451.html
- https://www.suse.com/security/cve/CVE-2026-43475.html
- https://www.suse.com/security/cve/CVE-2026-45860.html
- https://www.suse.com/security/cve/CVE-2026-45873.html
- https://www.suse.com/security/cve/CVE-2026-45904.html
- https://www.suse.com/security/cve/CVE-2026-45905.html
- https://www.suse.com/security/cve/CVE-2026-45913.html
- https://www.suse.com/security/cve/CVE-2026-45915.html
- https://www.suse.com/security/cve/CVE-2026-45917.html
- https://www.suse.com/security/cve/CVE-2026-45944.html
- https://www.suse.com/security/cve/CVE-2026-45973.html
- https://www.suse.com/security/cve/CVE-2026-46003.html
- https://www.suse.com/security/cve/CVE-2026-46015.html
- https://www.suse.com/security/cve/CVE-2026-46026.html
- https://www.suse.com/security/cve/CVE-2026-46038.html
- https://www.suse.com/security/cve/CVE-2026-46080.html
- https://www.suse.com/security/cve/CVE-2026-46084.html
- https://www.suse.com/security/cve/CVE-2026-46109.html
- https://www.suse.com/security/cve/CVE-2026-46117.html
- https://www.suse.com/security/cve/CVE-2026-46126.html
- https://www.suse.com/security/cve/CVE-2026-46137.html
- https://www.suse.com/security/cve/CVE-2026-46144.html
- https://www.suse.com/security/cve/CVE-2026-46145.html
- https://www.suse.com/security/cve/CVE-2026-46147.html
- https://www.suse.com/security/cve/CVE-2026-46158.html
- https://www.suse.com/security/cve/CVE-2026-46168.html
- https://www.suse.com/security/cve/CVE-2026-46170.html
- https://www.suse.com/security/cve/CVE-2026-46174.html
- https://www.suse.com/security/cve/CVE-2026-46180.html
- https://www.suse.com/security/cve/CVE-2026-46189.html
- https://www.suse.com/security/cve/CVE-2026-46193.html
- https://www.suse.com/security/cve/CVE-2026-46234.html
- https://www.suse.com/security/cve/CVE-2026-46243.html
- https://www.suse.com/security/cve/CVE-2026-46245.html
- https://www.suse.com/security/cve/CVE-2026-46265.html
- https://www.suse.com/security/cve/CVE-2026-46292.html
- https://www.suse.com/security/cve/CVE-2026-46306.html
- https://www.suse.com/security/cve/CVE-2026-46323.html
- https://www.suse.com/security/cve/CVE-2026-46324.html
- https://www.suse.com/security/cve/CVE-2026-46333.html
- https://www.suse.com/security/cve/CVE-2026-52910.html
- https://www.suse.com/security/cve/CVE-2026-52921.html
- https://www.suse.com/security/cve/CVE-2026-52927.html
- https://www.suse.com/security/cve/CVE-2026-52930.html
- https://www.suse.com/security/cve/CVE-2026-52937.html
- https://www.suse.com/security/cve/CVE-2026-52941.html
- https://www.suse.com/security/cve/CVE-2026-52942.html
- https://www.suse.com/security/cve/CVE-2026-52947.html
- https://www.suse.com/security/cve/CVE-2026-52967.html
- https://www.suse.com/security/cve/CVE-2026-52970.html
- https://www.suse.com/security/cve/CVE-2026-52974.html
- https://www.suse.com/security/cve/CVE-2026-52984.html
- https://www.suse.com/security/cve/CVE-2026-52986.html
- https://www.suse.com/security/cve/CVE-2026-52988.html
- https://www.suse.com/security/cve/CVE-2026-52991.html
- https://www.suse.com/security/cve/CVE-2026-52998.html
- https://www.suse.com/security/cve/CVE-2026-52999.html
- https://www.suse.com/security/cve/CVE-2026-53000.html
- https://www.suse.com/security/cve/CVE-2026-53002.html
- https://www.suse.com/security/cve/CVE-2026-53006.html
- https://www.suse.com/security/cve/CVE-2026-53011.html
- https://www.suse.com/security/cve/CVE-2026-53012.html
- https://www.suse.com/security/cve/CVE-2026-53032.html
- https://www.suse.com/security/cve/CVE-2026-53062.html
- https://www.suse.com/security/cve/CVE-2026-53063.html
- https://www.suse.com/security/cve/CVE-2026-53064.html
- https://www.suse.com/security/cve/CVE-2026-53069.html
- https://www.suse.com/security/cve/CVE-2026-53074.html
- https://www.suse.com/security/cve/CVE-2026-53083.html
- https://www.suse.com/security/cve/CVE-2026-53088.html
- https://www.suse.com/security/cve/CVE-2026-53106.html
- https://www.suse.com/security/cve/CVE-2026-53107.html
- https://www.suse.com/security/cve/CVE-2026-53123.html
- https://www.suse.com/security/cve/CVE-2026-53129.html
- https://www.suse.com/security/cve/CVE-2026-53131.html
- https://www.suse.com/security/cve/CVE-2026-53132.html
- https://www.suse.com/security/cve/CVE-2026-53134.html
- https://www.suse.com/security/cve/CVE-2026-53175.html
- https://www.suse.com/security/cve/CVE-2026-53177.html
- https://www.suse.com/security/cve/CVE-2026-53183.html
- https://www.suse.com/security/cve/CVE-2026-53184.html
- https://www.suse.com/security/cve/CVE-2026-53185.html
- https://www.suse.com/security/cve/CVE-2026-53189.html
- https://www.suse.com/security/cve/CVE-2026-53212.html
- https://www.suse.com/security/cve/CVE-2026-53221.html
- https://www.suse.com/security/cve/CVE-2026-53230.html
- https://www.suse.com/security/cve/CVE-2026-53236.html
- https://www.suse.com/security/cve/CVE-2026-53250.html
- https://www.suse.com/security/cve/CVE-2026-53252.html
- https://www.suse.com/security/cve/CVE-2026-53262.html
- https://www.suse.com/security/cve/CVE-2026-53265.html
- https://www.suse.com/security/cve/CVE-2026-53267.html
- https://www.suse.com/security/cve/CVE-2026-53270.html
- https://www.suse.com/security/cve/CVE-2026-53275.html
- https://www.suse.com/security/cve/CVE-2026-53289.html
- https://www.suse.com/security/cve/CVE-2026-53291.html
- https://www.suse.com/security/cve/CVE-2026-53297.html
- https://www.suse.com/security/cve/CVE-2026-53321.html
- https://www.suse.com/security/cve/CVE-2026-53324.html
- https://www.suse.com/security/cve/CVE-2026-53331.html
- https://www.suse.com/security/cve/CVE-2026-53332.html
- https://www.suse.com/security/cve/CVE-2026-53345.html
- https://www.suse.com/security/cve/CVE-2026-53369.html
- https://www.suse.com/security/cve/CVE-2026-53374.html
- https://www.suse.com/security/cve/CVE-2026-53375.html
- https://www.suse.com/security/cve/CVE-2026-53376.html
- https://www.suse.com/security/cve/CVE-2026-53379.html
- https://www.suse.com/security/cve/CVE-2026-53382.html
- https://www.suse.com/security/cve/CVE-2026-53385.html
- https://www.suse.com/security/cve/CVE-2026-53388.html
- https://www.suse.com/security/cve/CVE-2026-53391.html
- https://www.suse.com/security/cve/CVE-2026-53392.html
- https://www.suse.com/security/cve/CVE-2026-53393.html
- https://www.suse.com/security/cve/CVE-2026-53397.html
- https://www.suse.com/security/cve/CVE-2026-53398.html
- https://www.suse.com/security/cve/CVE-2026-53399.html
- https://www.suse.com/security/cve/CVE-2026-53402.html
- https://www.suse.com/security/cve/CVE-2026-53403.html
- https://www.suse.com/security/cve/CVE-2026-63794.html
- https://www.suse.com/security/cve/CVE-2026-63795.html
- https://www.suse.com/security/cve/CVE-2026-63802.html
- https://www.suse.com/security/cve/CVE-2026-63806.html
- https://www.suse.com/security/cve/CVE-2026-63807.html
- https://www.suse.com/security/cve/CVE-2026-63809.html
- https://www.suse.com/security/cve/CVE-2026-63821.html
- https://www.suse.com/security/cve/CVE-2026-63822.html
- https://www.suse.com/security/cve/CVE-2026-63824.html
- https://www.suse.com/security/cve/CVE-2026-63826.html
- https://www.suse.com/security/cve/CVE-2026-63829.html
- https://www.suse.com/security/cve/CVE-2026-63836.html
- https://www.suse.com/security/cve/CVE-2026-63843.html
- https://www.suse.com/security/cve/CVE-2026-63844.html
- https://www.suse.com/security/cve/CVE-2026-63845.html
- https://www.suse.com/security/cve/CVE-2026-63846.html
- https://www.suse.com/security/cve/CVE-2026-63847.html
- https://www.suse.com/security/cve/CVE-2026-63848.html
- https://www.suse.com/security/cve/CVE-2026-63851.html
- https://www.suse.com/security/cve/CVE-2026-63852.html
- https://www.suse.com/security/cve/CVE-2026-63853.html
- https://www.suse.com/security/cve/CVE-2026-63854.html
- https://www.suse.com/security/cve/CVE-2026-63855.html
- https://www.suse.com/security/cve/CVE-2026-63856.html
- https://www.suse.com/security/cve/CVE-2026-63861.html
- https://www.suse.com/security/cve/CVE-2026-63862.html
- https://www.suse.com/security/cve/CVE-2026-63869.html
- https://www.suse.com/security/cve/CVE-2026-63882.html
- https://www.suse.com/security/cve/CVE-2026-63884.html
- https://www.suse.com/security/cve/CVE-2026-63892.html
- https://www.suse.com/security/cve/CVE-2026-63893.html
- https://www.suse.com/security/cve/CVE-2026-63895.html
- https://www.suse.com/security/cve/CVE-2026-63896.html
- https://www.suse.com/security/cve/CVE-2026-63897.html
- https://www.suse.com/security/cve/CVE-2026-63899.html
- https://www.suse.com/security/cve/CVE-2026-63900.html
- https://www.suse.com/security/cve/CVE-2026-63901.html
- https://www.suse.com/security/cve/CVE-2026-63902.html
- https://www.suse.com/security/cve/CVE-2026-63903.html
- https://www.suse.com/security/cve/CVE-2026-63904.html
- https://www.suse.com/security/cve/CVE-2026-63905.html
- https://www.suse.com/security/cve/CVE-2026-63908.html
- https://www.suse.com/security/cve/CVE-2026-63912.html
- https://www.suse.com/security/cve/CVE-2026-63915.html
- https://www.suse.com/security/cve/CVE-2026-63916.html
- https://www.suse.com/security/cve/CVE-2026-63917.html
- https://www.suse.com/security/cve/CVE-2026-63919.html
- https://www.suse.com/security/cve/CVE-2026-63921.html
- https://www.suse.com/security/cve/CVE-2026-63922.html
- https://www.suse.com/security/cve/CVE-2026-63924.html
- https://www.suse.com/security/cve/CVE-2026-63927.html
- https://www.suse.com/security/cve/CVE-2026-63928.html
- https://www.suse.com/security/cve/CVE-2026-63930.html
- https://www.suse.com/security/cve/CVE-2026-63931.html
- https://www.suse.com/security/cve/CVE-2026-63934.html
- https://www.suse.com/security/cve/CVE-2026-63938.html
- https://www.suse.com/security/cve/CVE-2026-63939.html
- https://www.suse.com/security/cve/CVE-2026-63940.html
- https://www.suse.com/security/cve/CVE-2026-63942.html
- https://www.suse.com/security/cve/CVE-2026-63943.html
- https://www.suse.com/security/cve/CVE-2026-63945.html
- https://www.suse.com/security/cve/CVE-2026-63946.html
- https://www.suse.com/security/cve/CVE-2026-63947.html
- https://www.suse.com/security/cve/CVE-2026-63948.html
- https://www.suse.com/security/cve/CVE-2026-63949.html
- https://www.suse.com/security/cve/CVE-2026-63952.html
- https://www.suse.com/security/cve/CVE-2026-63957.html
- https://www.suse.com/security/cve/CVE-2026-63958.html
- https://www.suse.com/security/cve/CVE-2026-63959.html
- https://www.suse.com/security/cve/CVE-2026-63960.html
- https://www.suse.com/security/cve/CVE-2026-63961.html
- https://www.suse.com/security/cve/CVE-2026-63962.html
- https://www.suse.com/security/cve/CVE-2026-63964.html
- https://www.suse.com/security/cve/CVE-2026-63967.html
- https://www.suse.com/security/cve/CVE-2026-63968.html
- https://www.suse.com/security/cve/CVE-2026-63971.html
- https://www.suse.com/security/cve/CVE-2026-63974.html
- https://www.suse.com/security/cve/CVE-2026-63975.html
- https://www.suse.com/security/cve/CVE-2026-63976.html
- https://www.suse.com/security/cve/CVE-2026-63984.html
- https://www.suse.com/security/cve/CVE-2026-63991.html
- https://www.suse.com/security/cve/CVE-2026-63994.html
- https://www.suse.com/security/cve/CVE-2026-64025.html
- https://www.suse.com/security/cve/CVE-2026-64089.html
- https://www.suse.com/security/cve/CVE-2026-64106.html
- https://www.suse.com/security/cve/CVE-2026-64174.html
- https://www.suse.com/security/cve/CVE-2026-64179.html
- https://www.suse.com/security/cve/CVE-2026-64182.html
- https://www.suse.com/security/cve/CVE-2026-64183.html
- https://www.suse.com/security/cve/CVE-2026-64187.html
- https://www.suse.com/security/cve/CVE-2026-64189.html
- https://www.suse.com/security/cve/CVE-2026-64191.html
- https://www.suse.com/security/cve/CVE-2026-64220.html
- https://www.suse.com/security/cve/CVE-2026-64221.html
- https://www.suse.com/security/cve/CVE-2026-64223.html
- https://www.suse.com/security/cve/CVE-2026-64231.html
- https://www.suse.com/security/cve/CVE-2026-64234.html
- https://www.suse.com/security/cve/CVE-2026-64242.html
- https://www.suse.com/security/cve/CVE-2026-64298.html
- https://www.suse.com/security/cve/CVE-2026-64330.html
- https://www.suse.com/security/cve/CVE-2026-64336.html
- https://www.suse.com/security/cve/CVE-2026-64345.html
- https://www.suse.com/security/cve/CVE-2026-64347.html
- https://www.suse.com/security/cve/CVE-2026-64465.html
- https://www.suse.com/security/cve/CVE-2026-64530.html
- https://www.suse.com/security/cve/CVE-2026-64560.html
- https://www.suse.com/security/cve/CVE-2026-64561.html
- https://www.suse.com/security/cve/CVE-2026-64564.html
- https://www.suse.com/security/cve/CVE-2026-64600.html
- https://bugzilla.suse.com/show_bug.cgi?id=1185845
- https://bugzilla.suse.com/show_bug.cgi?id=1239511
- https://bugzilla.suse.com/show_bug.cgi?id=1243603
- https://bugzilla.suse.com/show_bug.cgi?id=1246182
- https://bugzilla.suse.com/show_bug.cgi?id=1247455
- https://bugzilla.suse.com/show_bug.cgi?id=1253262
- https://bugzilla.suse.com/show_bug.cgi?id=1253674
- https://bugzilla.suse.com/show_bug.cgi?id=1255357
- https://bugzilla.suse.com/show_bug.cgi?id=1255703
- https://bugzilla.suse.com/show_bug.cgi?id=1256675
- https://bugzilla.suse.com/show_bug.cgi?id=1257815
- https://bugzilla.suse.com/show_bug.cgi?id=1258718
- https://bugzilla.suse.com/show_bug.cgi?id=1260347
- https://bugzilla.suse.com/show_bug.cgi?id=1262573
- https://bugzilla.suse.com/show_bug.cgi?id=1262745
- https://bugzilla.suse.com/show_bug.cgi?id=1262771
- https://bugzilla.suse.com/show_bug.cgi?id=1263010
- https://bugzilla.suse.com/show_bug.cgi?id=1263068
- https://bugzilla.suse.com/show_bug.cgi?id=1263718
- https://bugzilla.suse.com/show_bug.cgi?id=1263788
- https://bugzilla.suse.com/show_bug.cgi?id=1264007
- https://bugzilla.suse.com/show_bug.cgi?id=1264013
- https://bugzilla.suse.com/show_bug.cgi?id=1264053
- https://bugzilla.suse.com/show_bug.cgi?id=1264076
- https://bugzilla.suse.com/show_bug.cgi?id=1264089
- https://bugzilla.suse.com/show_bug.cgi?id=1264090
- https://bugzilla.suse.com/show_bug.cgi?id=1264184
- https://bugzilla.suse.com/show_bug.cgi?id=1264319
- https://bugzilla.suse.com/show_bug.cgi?id=1264333
- https://bugzilla.suse.com/show_bug.cgi?id=1264418
- https://bugzilla.suse.com/show_bug.cgi?id=1264422
- https://bugzilla.suse.com/show_bug.cgi?id=1264452
- https://bugzilla.suse.com/show_bug.cgi?id=1264532
- https://bugzilla.suse.com/show_bug.cgi?id=1264534
- https://bugzilla.suse.com/show_bug.cgi?id=1264537
- https://bugzilla.suse.com/show_bug.cgi?id=1264539
- https://bugzilla.suse.com/show_bug.cgi?id=1264543
- https://bugzilla.suse.com/show_bug.cgi?id=1264558
- https://bugzilla.suse.com/show_bug.cgi?id=1264601
- https://bugzilla.suse.com/show_bug.cgi?id=1264712
- https://bugzilla.suse.com/show_bug.cgi?id=1264779
- https://bugzilla.suse.com/show_bug.cgi?id=1264793
- https://bugzilla.suse.com/show_bug.cgi?id=1264795
- https://bugzilla.suse.com/show_bug.cgi?id=1264827
- https://bugzilla.suse.com/show_bug.cgi?id=1264832
- https://bugzilla.suse.com/show_bug.cgi?id=1265009
- https://bugzilla.suse.com/show_bug.cgi?id=1265141
- https://bugzilla.suse.com/show_bug.cgi?id=1265308
- https://bugzilla.suse.com/show_bug.cgi?id=1266238
- https://bugzilla.suse.com/show_bug.cgi?id=1266685
- https://bugzilla.suse.com/show_bug.cgi?id=1266695
- https://bugzilla.suse.com/show_bug.cgi?id=1266710
- https://bugzilla.suse.com/show_bug.cgi?id=1266715
- https://bugzilla.suse.com/show_bug.cgi?id=1266758
- https://bugzilla.suse.com/show_bug.cgi?id=1266813
- https://bugzilla.suse.com/show_bug.cgi?id=1266850
- https://bugzilla.suse.com/show_bug.cgi?id=1266869
- https://bugzilla.suse.com/show_bug.cgi?id=1266876
- https://bugzilla.suse.com/show_bug.cgi?id=1266880
- https://bugzilla.suse.com/show_bug.cgi?id=1266890
- https://bugzilla.suse.com/show_bug.cgi?id=1266891
- https://bugzilla.suse.com/show_bug.cgi?id=1266896
- https://bugzilla.suse.com/show_bug.cgi?id=1266900
- https://bugzilla.suse.com/show_bug.cgi?id=1266904
- https://bugzilla.suse.com/show_bug.cgi?id=1266913
- https://bugzilla.suse.com/show_bug.cgi?id=1266918
- https://bugzilla.suse.com/show_bug.cgi?id=1267025
- https://bugzilla.suse.com/show_bug.cgi?id=1267203
- https://bugzilla.suse.com/show_bug.cgi?id=1267210
- https://bugzilla.suse.com/show_bug.cgi?id=1267375
- https://bugzilla.suse.com/show_bug.cgi?id=1267384
- https://bugzilla.suse.com/show_bug.cgi?id=1267439
- https://bugzilla.suse.com/show_bug.cgi?id=1267570
- https://bugzilla.suse.com/show_bug.cgi?id=1267584
- https://bugzilla.suse.com/show_bug.cgi?id=1267596
- https://bugzilla.suse.com/show_bug.cgi?id=1267656
- https://bugzilla.suse.com/show_bug.cgi?id=1267662
- https://bugzilla.suse.com/show_bug.cgi?id=1267678
- https://bugzilla.suse.com/show_bug.cgi?id=1267682
- https://bugzilla.suse.com/show_bug.cgi?id=1267689
- https://bugzilla.suse.com/show_bug.cgi?id=1267714
- https://bugzilla.suse.com/show_bug.cgi?id=1267715
- https://bugzilla.suse.com/show_bug.cgi?id=1267943
- https://bugzilla.suse.com/show_bug.cgi?id=1267986
- https://bugzilla.suse.com/show_bug.cgi?id=1267995
- https://bugzilla.suse.com/show_bug.cgi?id=1268029
- https://bugzilla.suse.com/show_bug.cgi?id=1268307
- https://bugzilla.suse.com/show_bug.cgi?id=1268648
- https://bugzilla.suse.com/show_bug.cgi?id=1268659
- https://bugzilla.suse.com/show_bug.cgi?id=1268966
- https://bugzilla.suse.com/show_bug.cgi?id=1268967
- https://bugzilla.suse.com/show_bug.cgi?id=1268983
- https://bugzilla.suse.com/show_bug.cgi?id=1269003
- https://bugzilla.suse.com/show_bug.cgi?id=1269024
- https://bugzilla.suse.com/show_bug.cgi?id=1269027
- https://bugzilla.suse.com/show_bug.cgi?id=1269094
- https://bugzilla.suse.com/show_bug.cgi?id=1269104
- https://bugzilla.suse.com/show_bug.cgi?id=1269112
- https://bugzilla.suse.com/show_bug.cgi?id=1269115
- https://bugzilla.suse.com/show_bug.cgi?id=1269117
- https://bugzilla.suse.com/show_bug.cgi?id=1269118
- https://bugzilla.suse.com/show_bug.cgi?id=1269119
- https://bugzilla.suse.com/show_bug.cgi?id=1269132
- https://bugzilla.suse.com/show_bug.cgi?id=1269134
- https://bugzilla.suse.com/show_bug.cgi?id=1269138
- https://bugzilla.suse.com/show_bug.cgi?id=1269154
- https://bugzilla.suse.com/show_bug.cgi?id=1269181
- https://bugzilla.suse.com/show_bug.cgi?id=1269185
- https://bugzilla.suse.com/show_bug.cgi?id=1269186
- https://bugzilla.suse.com/show_bug.cgi?id=1269229
- https://bugzilla.suse.com/show_bug.cgi?id=1269233
- https://bugzilla.suse.com/show_bug.cgi?id=1269240
- https://bugzilla.suse.com/show_bug.cgi?id=1269270
- https://bugzilla.suse.com/show_bug.cgi?id=1269272
- https://bugzilla.suse.com/show_bug.cgi?id=1269289
- https://bugzilla.suse.com/show_bug.cgi?id=1269290
- https://bugzilla.suse.com/show_bug.cgi?id=1269307
- https://bugzilla.suse.com/show_bug.cgi?id=1269318
- https://bugzilla.suse.com/show_bug.cgi?id=1269362
- https://bugzilla.suse.com/show_bug.cgi?id=1269376
- https://bugzilla.suse.com/show_bug.cgi?id=1269383
- https://bugzilla.suse.com/show_bug.cgi?id=1269512
- https://bugzilla.suse.com/show_bug.cgi?id=1269513
- https://bugzilla.suse.com/show_bug.cgi?id=1269577
- https://bugzilla.suse.com/show_bug.cgi?id=1269633
- https://bugzilla.suse.com/show_bug.cgi?id=1269643
- https://bugzilla.suse.com/show_bug.cgi?id=1269658
- https://bugzilla.suse.com/show_bug.cgi?id=1269659
- https://bugzilla.suse.com/show_bug.cgi?id=1269660
- https://bugzilla.suse.com/show_bug.cgi?id=1269672
- https://bugzilla.suse.com/show_bug.cgi?id=1269688
- https://bugzilla.suse.com/show_bug.cgi?id=1269689
- https://bugzilla.suse.com/show_bug.cgi?id=1269694
- https://bugzilla.suse.com/show_bug.cgi?id=1269697
- https://bugzilla.suse.com/show_bug.cgi?id=1269714
- https://bugzilla.suse.com/show_bug.cgi?id=1269724
- https://bugzilla.suse.com/show_bug.cgi?id=1269734
- https://bugzilla.suse.com/show_bug.cgi?id=1269773
- https://bugzilla.suse.com/show_bug.cgi?id=1269797
- https://bugzilla.suse.com/show_bug.cgi?id=1269808
- https://bugzilla.suse.com/show_bug.cgi?id=1269810
- https://bugzilla.suse.com/show_bug.cgi?id=1269819
- https://bugzilla.suse.com/show_bug.cgi?id=1269964
- https://bugzilla.suse.com/show_bug.cgi?id=1269981
- https://bugzilla.suse.com/show_bug.cgi?id=1269990
- https://bugzilla.suse.com/show_bug.cgi?id=1269991
- https://bugzilla.suse.com/show_bug.cgi?id=1269994
- https://bugzilla.suse.com/show_bug.cgi?id=1270000
- https://bugzilla.suse.com/show_bug.cgi?id=1270102
- https://bugzilla.suse.com/show_bug.cgi?id=1270113
- https://bugzilla.suse.com/show_bug.cgi?id=1270132
- https://bugzilla.suse.com/show_bug.cgi?id=1271250
- https://bugzilla.suse.com/show_bug.cgi?id=1271283
- https://bugzilla.suse.com/show_bug.cgi?id=1271285
- https://bugzilla.suse.com/show_bug.cgi?id=1271291
- https://bugzilla.suse.com/show_bug.cgi?id=1271349
- https://bugzilla.suse.com/show_bug.cgi?id=1271368
- https://bugzilla.suse.com/show_bug.cgi?id=1271402
- https://bugzilla.suse.com/show_bug.cgi?id=1271526
- https://bugzilla.suse.com/show_bug.cgi?id=1271717
- https://bugzilla.suse.com/show_bug.cgi?id=1271731
- https://bugzilla.suse.com/show_bug.cgi?id=1271813
- https://bugzilla.suse.com/show_bug.cgi?id=1271818
- https://bugzilla.suse.com/show_bug.cgi?id=1271825
- https://bugzilla.suse.com/show_bug.cgi?id=1271826
- https://bugzilla.suse.com/show_bug.cgi?id=1271827
- https://bugzilla.suse.com/show_bug.cgi?id=1271831
- https://bugzilla.suse.com/show_bug.cgi?id=1271832
- https://bugzilla.suse.com/show_bug.cgi?id=1271833
- https://bugzilla.suse.com/show_bug.cgi?id=1271834
- https://bugzilla.suse.com/show_bug.cgi?id=1271858
- https://bugzilla.suse.com/show_bug.cgi?id=1271866
- https://bugzilla.suse.com/show_bug.cgi?id=1271869
- https://bugzilla.suse.com/show_bug.cgi?id=1271870
- https://bugzilla.suse.com/show_bug.cgi?id=1271899
- https://bugzilla.suse.com/show_bug.cgi?id=1271904
- https://bugzilla.suse.com/show_bug.cgi?id=1271908
- https://bugzilla.suse.com/show_bug.cgi?id=1271912
- https://bugzilla.suse.com/show_bug.cgi?id=1271937
- https://bugzilla.suse.com/show_bug.cgi?id=1271955
- https://bugzilla.suse.com/show_bug.cgi?id=1271964
- https://bugzilla.suse.com/show_bug.cgi?id=1271967
- https://bugzilla.suse.com/show_bug.cgi?id=1272146
- https://bugzilla.suse.com/show_bug.cgi?id=1272149
- https://bugzilla.suse.com/show_bug.cgi?id=1272176
- https://bugzilla.suse.com/show_bug.cgi?id=1272180
- https://bugzilla.suse.com/show_bug.cgi?id=1272183
- https://bugzilla.suse.com/show_bug.cgi?id=1272187
- https://bugzilla.suse.com/show_bug.cgi?id=1272194
- https://bugzilla.suse.com/show_bug.cgi?id=1272197
- https://bugzilla.suse.com/show_bug.cgi?id=1272204
- https://bugzilla.suse.com/show_bug.cgi?id=1272207
- https://bugzilla.suse.com/show_bug.cgi?id=1272211
- https://bugzilla.suse.com/show_bug.cgi?id=1272242
- https://bugzilla.suse.com/show_bug.cgi?id=1272246
- https://bugzilla.suse.com/show_bug.cgi?id=1272263
- https://bugzilla.suse.com/show_bug.cgi?id=1272268
- https://bugzilla.suse.com/show_bug.cgi?id=1272282
- https://bugzilla.suse.com/show_bug.cgi?id=1272296
- https://bugzilla.suse.com/show_bug.cgi?id=1272325
- https://bugzilla.suse.com/show_bug.cgi?id=1272360
- https://bugzilla.suse.com/show_bug.cgi?id=1272361
- https://bugzilla.suse.com/show_bug.cgi?id=1272362
- https://bugzilla.suse.com/show_bug.cgi?id=1272373
- https://bugzilla.suse.com/show_bug.cgi?id=1272374
- https://bugzilla.suse.com/show_bug.cgi?id=1272380
- https://bugzilla.suse.com/show_bug.cgi?id=1272384
- https://bugzilla.suse.com/show_bug.cgi?id=1272387
- https://bugzilla.suse.com/show_bug.cgi?id=1272389
- https://bugzilla.suse.com/show_bug.cgi?id=1272406
- https://bugzilla.suse.com/show_bug.cgi?id=1272434
- https://bugzilla.suse.com/show_bug.cgi?id=1272466
- https://bugzilla.suse.com/show_bug.cgi?id=1272467
- https://bugzilla.suse.com/show_bug.cgi?id=1272468
- https://bugzilla.suse.com/show_bug.cgi?id=1272470
- https://bugzilla.suse.com/show_bug.cgi?id=1272472
- https://bugzilla.suse.com/show_bug.cgi?id=1272474
- https://bugzilla.suse.com/show_bug.cgi?id=1272478
- https://bugzilla.suse.com/show_bug.cgi?id=1272480
- https://bugzilla.suse.com/show_bug.cgi?id=1272482
- https://bugzilla.suse.com/show_bug.cgi?id=1272483
- https://bugzilla.suse.com/show_bug.cgi?id=1272489
- https://bugzilla.suse.com/show_bug.cgi?id=1272492
- https://bugzilla.suse.com/show_bug.cgi?id=1272494
- https://bugzilla.suse.com/show_bug.cgi?id=1272499
- https://bugzilla.suse.com/show_bug.cgi?id=1272500
- https://bugzilla.suse.com/show_bug.cgi?id=1272501
- https://bugzilla.suse.com/show_bug.cgi?id=1272513
- https://bugzilla.suse.com/show_bug.cgi?id=1272517
- https://bugzilla.suse.com/show_bug.cgi?id=1272522
- https://bugzilla.suse.com/show_bug.cgi?id=1272523
- https://bugzilla.suse.com/show_bug.cgi?id=1272573
- https://bugzilla.suse.com/show_bug.cgi?id=1272578
- https://bugzilla.suse.com/show_bug.cgi?id=1272591
- https://bugzilla.suse.com/show_bug.cgi?id=1272600
- https://bugzilla.suse.com/show_bug.cgi?id=1272607
- https://bugzilla.suse.com/show_bug.cgi?id=1272614
- https://bugzilla.suse.com/show_bug.cgi?id=1272617
- https://bugzilla.suse.com/show_bug.cgi?id=1272620
- https://bugzilla.suse.com/show_bug.cgi?id=1272642
- https://bugzilla.suse.com/show_bug.cgi?id=1272646
- https://bugzilla.suse.com/show_bug.cgi?id=1272659
- https://bugzilla.suse.com/show_bug.cgi?id=1272664
- https://bugzilla.suse.com/show_bug.cgi?id=1272665
- https://bugzilla.suse.com/show_bug.cgi?id=1272668
- https://bugzilla.suse.com/show_bug.cgi?id=1272670
- https://bugzilla.suse.com/show_bug.cgi?id=1272671
- https://bugzilla.suse.com/show_bug.cgi?id=1272678
- https://bugzilla.suse.com/show_bug.cgi?id=1272681
- https://bugzilla.suse.com/show_bug.cgi?id=1272685
- https://bugzilla.suse.com/show_bug.cgi?id=1272686
- https://bugzilla.suse.com/show_bug.cgi?id=1272689
- https://bugzilla.suse.com/show_bug.cgi?id=1272690
- https://bugzilla.suse.com/show_bug.cgi?id=1272691
- https://bugzilla.suse.com/show_bug.cgi?id=1272693
- https://bugzilla.suse.com/show_bug.cgi?id=1272694
- https://bugzilla.suse.com/show_bug.cgi?id=1272706
- https://bugzilla.suse.com/show_bug.cgi?id=1272781
- https://bugzilla.suse.com/show_bug.cgi?id=1272785
- https://bugzilla.suse.com/show_bug.cgi?id=1272787
- https://bugzilla.suse.com/show_bug.cgi?id=1272797
- https://bugzilla.suse.com/show_bug.cgi?id=1272800
- https://bugzilla.suse.com/show_bug.cgi?id=1272807
- https://bugzilla.suse.com/show_bug.cgi?id=1272836
- https://bugzilla.suse.com/show_bug.cgi?id=1272843
- https://bugzilla.suse.com/show_bug.cgi?id=1272850
- https://bugzilla.suse.com/show_bug.cgi?id=1272853
- https://bugzilla.suse.com/show_bug.cgi?id=1272855
- https://bugzilla.suse.com/show_bug.cgi?id=1272863
- https://bugzilla.suse.com/show_bug.cgi?id=1272865
- https://bugzilla.suse.com/show_bug.cgi?id=1272871
- https://bugzilla.suse.com/show_bug.cgi?id=1272891
- https://bugzilla.suse.com/show_bug.cgi?id=1272892
- https://bugzilla.suse.com/show_bug.cgi?id=1272897
- https://bugzilla.suse.com/show_bug.cgi?id=1272903
- https://bugzilla.suse.com/show_bug.cgi?id=1272904
- https://bugzilla.suse.com/show_bug.cgi?id=1272907
- https://bugzilla.suse.com/show_bug.cgi?id=1272918
- https://bugzilla.suse.com/show_bug.cgi?id=1272920
- https://bugzilla.suse.com/show_bug.cgi?id=1272973
- https://bugzilla.suse.com/show_bug.cgi?id=1273004
- https://bugzilla.suse.com/show_bug.cgi?id=1273023
- https://bugzilla.suse.com/show_bug.cgi?id=1273035
- https://bugzilla.suse.com/show_bug.cgi?id=1273044
- https://bugzilla.suse.com/show_bug.cgi?id=1273117
- https://bugzilla.suse.com/show_bug.cgi?id=1273231
- https://bugzilla.suse.com/show_bug.cgi?id=1273550
- https://bugzilla.suse.com/show_bug.cgi?id=1274072