The SUSE Linux Enterprise 15 SP5 kernel was updated to receive various security
bugfixes.
The following security bugs were fixed:
* CVE-2022-50280: pnode: terminate at peers of source (bsc#1249806).
* CVE-2023-53676: scsi: target: iscsi: Fix buffer overflow in
lio_target_nacl_info_show() (bsc#1251786).
* CVE-2024-53093: nvme-multipath: defer partition scanning (bsc#1233640).
* CVE-2025-40040: mm/ksm: fix flag-dropping behavior in ksm_madvise
(bsc#1252780).
* CVE-2025-40048: uio_hv_generic: Let userspace take care of interrupt mask
(bsc#1252862).
* CVE-2025-40121: ASoC: Intel: bytcr_rt5651: Fix invalid quirk input mapping
(bsc#1253367).
* CVE-2025-40154: ASoC: Intel: bytcr_rt5640: Fix invalid quirk input mapping
(bsc#1253431).
* CVE-2025-40204: sctp: Fix MAC comparison to be constant-time (bsc#1253436).
The following non-security bugs were fixed:
* Fix type signess in fbcon_set_font() (bsc#1252033).
* scsi: storvsc: Prefer returning channel...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2025-4506=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2025-4506=1
* SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5
zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2025-4506=1
* SUSE Linux Enterprise High Performance Computing LTSS 15 SP5
zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2025-4506=1
* SUSE Linux Enterprise Server 15 SP5 LTSS
zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2025-4506=1
* SUSE Linux Enterprise Server for SAP Applications 15 SP5
zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2025-4506=1
* SUSE Linux Enterprise Live Patching 15-SP5
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2025-4506=1
* openSUSE Leap 15.5 (noarch nosrc)
* kernel-docs-5.14.21-150500.55.130.1
* openSUSE Leap 15.5 (noarch)
* kernel-devel-5.14.21-150500.55.130.3
* kernel-source-vanilla-5.14.21-150500.55.130.3
* kernel-macros-5.14.21-150500.55.130.3
* kernel-source-5.14.21-150500.55.130.3
* kernel-docs-html-5.14.21-150500.55.130.1
* openSUSE Leap 15.5 (aarch64 ppc64le x86_64)
* kernel-kvmsmall-devel-debuginfo-5.14.21-150500.55.130.3
* kernel-kvmsmall-debugsource-5.14.21-150500.55.130.3
* kernel-kvmsmall-debuginfo-5.14.21-150500.55.130.3
* kernel-default-base-rebuild-5.14.21-150500.55.130.3.150500.6.63.3
* kernel-default-base-5.14.21-150500.55.130.3.150500.6.63.3
* kernel-kvmsmall-devel-5.14.21-150500.55.130.3
* openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64)
* kselftests-kmp-default-5.14.21-150500.55.130.3
* ocfs2-kmp-default-5.14.21-150500.55.130.3
* reiserfs-kmp-default-debuginfo-5.14.21-150500.55.130.3
* cluster-md-kmp-default-5.14.21-150500.55.130.3
* kernel-default-optional-debuginfo-5.14.21-150500.55.130.3
*...
Read the Full Advisory* bsc#1233640
* bsc#1249806
* bsc#1251786
* bsc#1252033
* bsc#1252267
* bsc#1252780
* bsc#1252862
* bsc#1253367
* bsc#1253431
* bsc#1253436
## References:
* https://www.suse.com/security/cve/CVE-2022-50280.html
* https://www.suse.com/security/cve/CVE-2023-53676.html
* https://www.suse.com/security/cve/CVE-2024-53093.html
* https://www.suse.com/security/cve/CVE-2025-40040.html
* https://www.suse.com/security/cve/CVE-2025-40048.html
* https://www.suse.com/security/cve/CVE-2025-40121.html
* https://www.suse.com/security/cve/CVE-2025-40154.html
* https://www.suse.com/security/cve/CVE-2025-40204.html
* https://bugzilla.suse.com/show_bug.cgi?id=1233640
* https://bugzilla.suse.com/show_bug.cgi?id=1249806
* https://bugzilla.suse.com/show_bug.cgi?id=1251786
* https://bugzilla.suse.com/show_bug.cgi?id=1252033
* https://bugzilla.suse.com/show_bug.cgi?id=1252267
* https://bugzilla.suse.com/show_bug.cgi?id=1252780
* https://bugzilla.suse.com/show_bug.cgi?id=1252862
* https://bugzilla.suse.com/show_bug.cgi?id=1253367
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.