The SUSE Linux Enterprise 15 SP5 RT kernel was updated to receive various
security bugfixes.
The following security bugs were fixed:
* CVE-2021-47557: net/sched: sch_ets: do not peek at classes beyond 'nbands'
(bsc#1207361 bsc#1225468).
* CVE-2021-47595: net/sched: sch_ets: do not remove idle classes from the
round-robin list (bsc#1207361 bsc#1226552).
* CVE-2023-52924: netfilter: nf_tables: do not skip expired elements during
walk (bsc#1236821).
* CVE-2023-52925: netfilter: nf_tables: do not fail inserts if duplicate has
expired (bsc#1236822).
* CVE-2024-26808: netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for
inet/ingress basechain (bsc#1222634).
* CVE-2024-26924: scsi: lpfc: Release hbalock before calling
lpfc_worker_wake_up() (bsc#1225820).
* CVE-2024-27397: kabi: place tstamp needed for nftables set in a hole
(bsc#1224095).
* CVE-2024-28956: x86/its: Add support for ITS-safe indirect thunk
(bsc#1242006).
*...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2025-2321=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2025-2321=1
* openSUSE Leap 15.5 (noarch)
* kernel-source-rt-5.14.21-150500.13.100.1
* kernel-devel-rt-5.14.21-150500.13.100.1
* openSUSE Leap 15.5 (x86_64)
* kernel-rt_debug-debugsource-5.14.21-150500.13.100.2
* dlm-kmp-rt-5.14.21-150500.13.100.2
* kernel-rt-devel-5.14.21-150500.13.100.2
* kernel-rt-optional-debuginfo-5.14.21-150500.13.100.2
* kernel-rt_debug-vdso-debuginfo-5.14.21-150500.13.100.2
* kernel-rt-livepatch-devel-5.14.21-150500.13.100.2
* kselftests-kmp-rt-debuginfo-5.14.21-150500.13.100.2
* kernel-rt-debuginfo-5.14.21-150500.13.100.2
* cluster-md-kmp-rt-5.14.21-150500.13.100.2
* gfs2-kmp-rt-debuginfo-5.14.21-150500.13.100.2
* kernel-rt-vdso-5.14.21-150500.13.100.2
* kernel-rt-debugsource-5.14.21-150500.13.100.2
* reiserfs-kmp-rt-5.14.21-150500.13.100.2
* reiserfs-kmp-rt-debuginfo-5.14.21-150500.13.100.2
* kernel-rt-devel-debuginfo-5.14.21-150500.13.100.2
* kselftests-kmp-rt-5.14.21-150500.13.100.2
* kernel-rt-optional-5.14.21-150500.13.100.2
* kernel-rt-extra-5.14.21-150500.13.100.2
*...
Read the Full Advisory* bsc#1065729
* bsc#1156395
* bsc#1193629
* bsc#1194869
* bsc#1198410
* bsc#1199356
* bsc#1199487
* bsc#1201160
* bsc#1201956
* bsc#1202094
* bsc#1202095
* bsc#1202564
* bsc#1202716
* bsc#1202823
* bsc#1202860
* bsc#1203197
* bsc#1203361
* bsc#1205220
* bsc#1205514
* bsc#1205701
* bsc#1206451
* bsc#1206664
* bsc#1206878
* bsc#1206880
* bsc#1207361
* bsc#1207638
* bsc#1211226
* bsc#1212051
* bsc#1213090
* bsc#1218184
* bsc#1218234
* bsc#1218470
* bsc#1222634
* bsc#1223675
* bsc#1224095
* bsc#1224597
* bsc#1225468
* bsc#1225820
* bsc#1226514
* bsc#1226552
* bsc#1228659
* bsc#1230827
* bsc#1231293
* bsc#1232504
* bsc#1234156
* bsc#1234381
* bsc#1234454
* bsc#1235464
* bsc#1235637
* bsc#1236821
* bsc#1236822
* bsc#1237159
* bsc#1237312
* bsc#1237313
* bsc#1238303
* bsc#1238526
* bsc#1238570
* bsc#1238876
* bsc#1239986
* bsc#1240785
* bsc#1241038
* bsc#1241640
* bsc#1241900
* bsc#1242006
* bsc#1242221
* bsc#1242414
* bsc#1242504
* bsc#1242596
* bsc#1242778
* bsc#1242782
* bsc#1242924
* bsc#1243330
* bsc#1243543
* bsc#1243627
* bsc#1243649
* bsc#1243660
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.