Security update for the Linux Kernel
Announcement ID: | SUSE-SU-2025:03613-1 |
---|---|
Release Date: | 2025-10-16T05:47:42Z |
Rating: | important |
References: |
|
Cross-References: |
|
CVSS scores: |
|
Affected Products: |
|
An update that solves 79 vulnerabilities and has 15 security fixes can now be installed.
Description:
The SUSE Linux Enterprise 15 SP3 RT kernel was updated to receive various security bugfixes.
The following security bugs were fixed:
- CVE-2022-49980: USB: gadget: fix use-after-free read in usb_udc_uevent() (bsc#1245110).
- CVE-2022-50233: Bluetooth: eir: Fix using strlen with hdev->{dev_name,short_name} (bsc#1246968).
- CVE-2022-50248: wifi: iwlwifi: mvm: fix double free on tx path (bsc#1249840).
- CVE-2022-50252: igb: Do not free q_vector unless new one was allocated (bsc#1249846).
- CVE-2022-50258: wifi: brcmfmac: Fix potential stack-out-of-bounds in brcmf_c_preinit_dcmds() (bsc#1249947).
- CVE-2022-50381: md: fix a crash in mempool_free (bsc#1250257).
- CVE-2022-50386: Bluetooth: L2CAP: Fix user-after-free (bsc#1250301).
- CVE-2022-50401: nfsd: under NFSv4.1, fix double svc_xprt_put on rpc_create failure (bsc#1250140).
- CVE-2022-50408: wifi: brcmfmac: fix use-after-free bug in brcmf_netdev_start_xmit() (bsc#1250391).
- CVE-2022-50409: net: If sock is dead do not access sock's sk_wq in sk_stream_wait_memory (bsc#1250392).
- CVE-2023-53178: mm: fix zswap writeback race condition (bsc#1249827).
- CVE-2023-53321: wifi: mac80211_hwsim: drop short frames (bsc#1250313).
- CVE-2023-53438: x86/MCE: Always save CS register on AMD Zen IF Poison errors (bsc#1250180).
- CVE-2025-21969: kABI workaround for l2cap_conn changes (bsc#1240784).
- CVE-2025-38184: tipc: fix null-ptr-deref when acquiring remote ip of ethernet bearer (bsc#1245956).
- CVE-2025-38488: smb: client: fix use-after-free in crypt_message when using async crypto (bsc#1247239).
- CVE-2025-38553: net/sched: Restrict conditions for adding duplicating netems to qdisc tree (bsc#1248255).
- CVE-2025-38572: ipv6: reject malicious packets in ipv6_gso_segment() (bsc#1248399).
- CVE-2025-38664: ice: Fix a null pointer dereference in ice_copy_and_init_pkg() (bsc#1248628).
- CVE-2025-38685: fbdev: Fix vmalloc out-of-bounds write in fast_imageblit (bsc#1249220).
- CVE-2025-38713: hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() (bsc#1249200).
- CVE-2025-39751: ALSA: hda/ca0132: Fix buffer overflow in add_tuning_control (bsc#1249538).
- CVE-2025-39823: KVM: x86: use array_index_nospec with indices that come from guest (bsc#1250002).
The following non-security bugs were fixed:
- Limit patch filenames to 100 characters (bsc#1249604).
- Move pesign-obs-integration requirement from kernel-syms to kernel devel subpackage (bsc#1248108).
- hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() (git-fixes).
- kernel-binary: Another installation ordering fix (bsc#1241353).
- kernel-source: Do not list mkspec and its inputs as sources (bsc#1250522).
- kernel-subpackage-build: Decompress ghost file when compressed version exists (bsc#1249346)
- kernel-syms.spec: Drop old rpm release number hack (bsc#1247172).
- rpm/kernel-subpackage-spec: Skip brp-strip-debug to avoid file truncation (bsc#1246879)
- rpm/mkspec: Fix missing kernel-syms-rt creation (bsc#1244337)
- rpm: Configure KABI checkingness macro (bsc#1249186)
- rpm: Drop support for kabi/arch/ignore-flavor (bsc#1249186)
- rpm: Link arch-symbols script from scripts directory.
- rpm: Link guards script from scripts directory.
- use uniform permission checks for all mount propagation changes (git-fixes).
Special Instructions and Notes:
- Please reboot the system after installing this update.
Patch Instructions:
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
-
SUSE Linux Enterprise Micro 5.1
zypper in -t patch SUSE-SUSE-MicroOS-5.1-2025-3613=1
-
SUSE Linux Enterprise Micro 5.2
zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-3613=1
-
SUSE Linux Enterprise Micro for Rancher 5.2
zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-3613=1
Package List:
-
SUSE Linux Enterprise Micro 5.1 (nosrc x86_64)
- kernel-rt-5.3.18-150300.223.1
-
SUSE Linux Enterprise Micro 5.1 (x86_64)
- kernel-rt-debuginfo-5.3.18-150300.223.1
- kernel-rt-debugsource-5.3.18-150300.223.1
-
SUSE Linux Enterprise Micro 5.1 (noarch)
- kernel-source-rt-5.3.18-150300.223.1
-
SUSE Linux Enterprise Micro 5.2 (nosrc x86_64)
- kernel-rt-5.3.18-150300.223.1
-
SUSE Linux Enterprise Micro 5.2 (x86_64)
- kernel-rt-debuginfo-5.3.18-150300.223.1
- kernel-rt-debugsource-5.3.18-150300.223.1
-
SUSE Linux Enterprise Micro 5.2 (noarch)
- kernel-source-rt-5.3.18-150300.223.1
-
SUSE Linux Enterprise Micro for Rancher 5.2 (nosrc x86_64)
- kernel-rt-5.3.18-150300.223.1
-
SUSE Linux Enterprise Micro for Rancher 5.2 (x86_64)
- kernel-rt-debuginfo-5.3.18-150300.223.1
- kernel-rt-debugsource-5.3.18-150300.223.1
-
SUSE Linux Enterprise Micro for Rancher 5.2 (noarch)
- kernel-source-rt-5.3.18-150300.223.1
References:
- https://www.suse.com/security/cve/CVE-2021-4460.html
- https://www.suse.com/security/cve/CVE-2022-2602.html
- https://www.suse.com/security/cve/CVE-2022-2978.html
- https://www.suse.com/security/cve/CVE-2022-36280.html
- https://www.suse.com/security/cve/CVE-2022-43945.html
- https://www.suse.com/security/cve/CVE-2022-49980.html
- https://www.suse.com/security/cve/CVE-2022-50233.html
- https://www.suse.com/security/cve/CVE-2022-50234.html
- https://www.suse.com/security/cve/CVE-2022-50235.html
- https://www.suse.com/security/cve/CVE-2022-50248.html
- https://www.suse.com/security/cve/CVE-2022-50249.html
- https://www.suse.com/security/cve/CVE-2022-50252.html
- https://www.suse.com/security/cve/CVE-2022-50257.html
- https://www.suse.com/security/cve/CVE-2022-50258.html
- https://www.suse.com/security/cve/CVE-2022-50260.html
- https://www.suse.com/security/cve/CVE-2022-50271.html
- https://www.suse.com/security/cve/CVE-2022-50272.html
- https://www.suse.com/security/cve/CVE-2022-50299.html
- https://www.suse.com/security/cve/CVE-2022-50309.html
- https://www.suse.com/security/cve/CVE-2022-50312.html
- https://www.suse.com/security/cve/CVE-2022-50317.html
- https://www.suse.com/security/cve/CVE-2022-50330.html
- https://www.suse.com/security/cve/CVE-2022-50344.html
- https://www.suse.com/security/cve/CVE-2022-50355.html
- https://www.suse.com/security/cve/CVE-2022-50359.html
- https://www.suse.com/security/cve/CVE-2022-50367.html
- https://www.suse.com/security/cve/CVE-2022-50368.html
- https://www.suse.com/security/cve/CVE-2022-50375.html
- https://www.suse.com/security/cve/CVE-2022-50381.html
- https://www.suse.com/security/cve/CVE-2022-50385.html
- https://www.suse.com/security/cve/CVE-2022-50386.html
- https://www.suse.com/security/cve/CVE-2022-50401.html
- https://www.suse.com/security/cve/CVE-2022-50408.html
- https://www.suse.com/security/cve/CVE-2022-50409.html
- https://www.suse.com/security/cve/CVE-2022-50410.html
- https://www.suse.com/security/cve/CVE-2022-50414.html
- https://www.suse.com/security/cve/CVE-2022-50419.html
- https://www.suse.com/security/cve/CVE-2022-50422.html
- https://www.suse.com/security/cve/CVE-2022-50427.html
- https://www.suse.com/security/cve/CVE-2022-50431.html
- https://www.suse.com/security/cve/CVE-2022-50435.html
- https://www.suse.com/security/cve/CVE-2022-50437.html
- https://www.suse.com/security/cve/CVE-2022-50440.html
- https://www.suse.com/security/cve/CVE-2022-50444.html
- https://www.suse.com/security/cve/CVE-2022-50454.html
- https://www.suse.com/security/cve/CVE-2022-50458.html
- https://www.suse.com/security/cve/CVE-2022-50459.html
- https://www.suse.com/security/cve/CVE-2022-50467.html
- https://www.suse.com/security/cve/CVE-2023-1380.html
- https://www.suse.com/security/cve/CVE-2023-28328.html
- https://www.suse.com/security/cve/CVE-2023-31248.html
- https://www.suse.com/security/cve/CVE-2023-3772.html
- https://www.suse.com/security/cve/CVE-2023-39197.html
- https://www.suse.com/security/cve/CVE-2023-42753.html
- https://www.suse.com/security/cve/CVE-2023-53147.html
- https://www.suse.com/security/cve/CVE-2023-53178.html
- https://www.suse.com/security/cve/CVE-2023-53179.html
- https://www.suse.com/security/cve/CVE-2023-53213.html
- https://www.suse.com/security/cve/CVE-2023-53265.html
- https://www.suse.com/security/cve/CVE-2023-53273.html
- https://www.suse.com/security/cve/CVE-2023-53304.html
- https://www.suse.com/security/cve/CVE-2023-53321.html
- https://www.suse.com/security/cve/CVE-2023-53333.html
- https://www.suse.com/security/cve/CVE-2023-53438.html
- https://www.suse.com/security/cve/CVE-2023-53464.html
- https://www.suse.com/security/cve/CVE-2023-53492.html
- https://www.suse.com/security/cve/CVE-2024-26583.html
- https://www.suse.com/security/cve/CVE-2024-26584.html
- https://www.suse.com/security/cve/CVE-2024-58240.html
- https://www.suse.com/security/cve/CVE-2025-21969.html
- https://www.suse.com/security/cve/CVE-2025-38184.html
- https://www.suse.com/security/cve/CVE-2025-38488.html
- https://www.suse.com/security/cve/CVE-2025-38553.html
- https://www.suse.com/security/cve/CVE-2025-38572.html
- https://www.suse.com/security/cve/CVE-2025-38664.html
- https://www.suse.com/security/cve/CVE-2025-38685.html
- https://www.suse.com/security/cve/CVE-2025-38713.html
- https://www.suse.com/security/cve/CVE-2025-39751.html
- https://www.suse.com/security/cve/CVE-2025-39823.html
- https://bugzilla.suse.com/show_bug.cgi?id=1202700
- https://bugzilla.suse.com/show_bug.cgi?id=1203063
- https://bugzilla.suse.com/show_bug.cgi?id=1203332
- https://bugzilla.suse.com/show_bug.cgi?id=1204228
- https://bugzilla.suse.com/show_bug.cgi?id=1205128
- https://bugzilla.suse.com/show_bug.cgi?id=1206883
- https://bugzilla.suse.com/show_bug.cgi?id=1206884
- https://bugzilla.suse.com/show_bug.cgi?id=1209287
- https://bugzilla.suse.com/show_bug.cgi?id=1209291
- https://bugzilla.suse.com/show_bug.cgi?id=1210124
- https://bugzilla.suse.com/show_bug.cgi?id=1210584
- https://bugzilla.suse.com/show_bug.cgi?id=1213061
- https://bugzilla.suse.com/show_bug.cgi?id=1213666
- https://bugzilla.suse.com/show_bug.cgi?id=1215150
- https://bugzilla.suse.com/show_bug.cgi?id=1216976
- https://bugzilla.suse.com/show_bug.cgi?id=1220185
- https://bugzilla.suse.com/show_bug.cgi?id=1220186
- https://bugzilla.suse.com/show_bug.cgi?id=1240784
- https://bugzilla.suse.com/show_bug.cgi?id=1241353
- https://bugzilla.suse.com/show_bug.cgi?id=1243278
- https://bugzilla.suse.com/show_bug.cgi?id=1244337
- https://bugzilla.suse.com/show_bug.cgi?id=1245110
- https://bugzilla.suse.com/show_bug.cgi?id=1245956
- https://bugzilla.suse.com/show_bug.cgi?id=1246879
- https://bugzilla.suse.com/show_bug.cgi?id=1246968
- https://bugzilla.suse.com/show_bug.cgi?id=1247172
- https://bugzilla.suse.com/show_bug.cgi?id=1247239
- https://bugzilla.suse.com/show_bug.cgi?id=1248108
- https://bugzilla.suse.com/show_bug.cgi?id=1248255
- https://bugzilla.suse.com/show_bug.cgi?id=1248399
- https://bugzilla.suse.com/show_bug.cgi?id=1248628
- https://bugzilla.suse.com/show_bug.cgi?id=1248847
- https://bugzilla.suse.com/show_bug.cgi?id=1249186
- https://bugzilla.suse.com/show_bug.cgi?id=1249200
- https://bugzilla.suse.com/show_bug.cgi?id=1249220
- https://bugzilla.suse.com/show_bug.cgi?id=1249346
- https://bugzilla.suse.com/show_bug.cgi?id=1249538
- https://bugzilla.suse.com/show_bug.cgi?id=1249604
- https://bugzilla.suse.com/show_bug.cgi?id=1249664
- https://bugzilla.suse.com/show_bug.cgi?id=1249667
- https://bugzilla.suse.com/show_bug.cgi?id=1249700
- https://bugzilla.suse.com/show_bug.cgi?id=1249713
- https://bugzilla.suse.com/show_bug.cgi?id=1249716
- https://bugzilla.suse.com/show_bug.cgi?id=1249718
- https://bugzilla.suse.com/show_bug.cgi?id=1249734
- https://bugzilla.suse.com/show_bug.cgi?id=1249740
- https://bugzilla.suse.com/show_bug.cgi?id=1249743
- https://bugzilla.suse.com/show_bug.cgi?id=1249747
- https://bugzilla.suse.com/show_bug.cgi?id=1249808
- https://bugzilla.suse.com/show_bug.cgi?id=1249825
- https://bugzilla.suse.com/show_bug.cgi?id=1249827
- https://bugzilla.suse.com/show_bug.cgi?id=1249840
- https://bugzilla.suse.com/show_bug.cgi?id=1249846
- https://bugzilla.suse.com/show_bug.cgi?id=1249880
- https://bugzilla.suse.com/show_bug.cgi?id=1249885
- https://bugzilla.suse.com/show_bug.cgi?id=1249908
- https://bugzilla.suse.com/show_bug.cgi?id=1249918
- https://bugzilla.suse.com/show_bug.cgi?id=1249923
- https://bugzilla.suse.com/show_bug.cgi?id=1249930
- https://bugzilla.suse.com/show_bug.cgi?id=1249947
- https://bugzilla.suse.com/show_bug.cgi?id=1249949
- https://bugzilla.suse.com/show_bug.cgi?id=1250002
- https://bugzilla.suse.com/show_bug.cgi?id=1250009
- https://bugzilla.suse.com/show_bug.cgi?id=1250014
- https://bugzilla.suse.com/show_bug.cgi?id=1250041
- https://bugzilla.suse.com/show_bug.cgi?id=1250131
- https://bugzilla.suse.com/show_bug.cgi?id=1250132
- https://bugzilla.suse.com/show_bug.cgi?id=1250140
- https://bugzilla.suse.com/show_bug.cgi?id=1250180
- https://bugzilla.suse.com/show_bug.cgi?id=1250183
- https://bugzilla.suse.com/show_bug.cgi?id=1250187
- https://bugzilla.suse.com/show_bug.cgi?id=1250257
- https://bugzilla.suse.com/show_bug.cgi?id=1250269
- https://bugzilla.suse.com/show_bug.cgi?id=1250277
- https://bugzilla.suse.com/show_bug.cgi?id=1250301
- https://bugzilla.suse.com/show_bug.cgi?id=1250313
- https://bugzilla.suse.com/show_bug.cgi?id=1250391
- https://bugzilla.suse.com/show_bug.cgi?id=1250392
- https://bugzilla.suse.com/show_bug.cgi?id=1250394
- https://bugzilla.suse.com/show_bug.cgi?id=1250522
- https://bugzilla.suse.com/show_bug.cgi?id=1250764
- https://bugzilla.suse.com/show_bug.cgi?id=1250767
- https://bugzilla.suse.com/show_bug.cgi?id=1250774
- https://bugzilla.suse.com/show_bug.cgi?id=1250787
- https://bugzilla.suse.com/show_bug.cgi?id=1250790
- https://bugzilla.suse.com/show_bug.cgi?id=1250797
- https://bugzilla.suse.com/show_bug.cgi?id=1250799
- https://bugzilla.suse.com/show_bug.cgi?id=1250823
- https://bugzilla.suse.com/show_bug.cgi?id=1250847
- https://bugzilla.suse.com/show_bug.cgi?id=1250850
- https://bugzilla.suse.com/show_bug.cgi?id=1250853
- https://bugzilla.suse.com/show_bug.cgi?id=1250868
- https://bugzilla.suse.com/show_bug.cgi?id=1250890
- https://bugzilla.suse.com/show_bug.cgi?id=1250891