The SUSE Linux Enterprise 15 SP5 RT kernel was updated to receive various
security bugfixes.
The following security bugs were fixed:
* CVE-2022-49138: Bluetooth: hci_event: Fix checking conn for
le_conn_complete_evt (bsc#1238160).
* CVE-2023-52923: netfilter: nf_tables: split async and sync catchall in two
functions (bsc#1236104).
* CVE-2023-52927: netfilter: allow exp not to be removed in
nf_ct_find_expectation (bsc#1239644).
* CVE-2024-26643: Fixed mark set as dead when unbinding anonymous set with
timeout (bsc#1221829).
* CVE-2024-53057: net/sched: stop qdisc_tree_reduce_backlog on TC_H_ROOT
(bsc#1233551).
* CVE-2024-53164: net: sched: fix ordering of qlen adjustment (bsc#1234863).
* CVE-2025-21701: net: avoid race between device unregistration and ethnl ops
(bsc#1237164).
* CVE-2025-21971: net_sched: Prevent creation of classes with TC_H_ROOT
(bsc#1240799).
* CVE-2025-37797: net_sched: hfsc: Fix a UAF vulnerability in class handling
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2025-2852=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2025-2852=1
* openSUSE Leap 15.5 (noarch)
* kernel-source-rt-5.14.21-150500.13.103.2
* kernel-devel-rt-5.14.21-150500.13.103.2
* openSUSE Leap 15.5 (x86_64)
* kernel-rt-livepatch-5.14.21-150500.13.103.2
* kselftests-kmp-rt-debuginfo-5.14.21-150500.13.103.2
* reiserfs-kmp-rt-debuginfo-5.14.21-150500.13.103.2
* kernel-rt_debug-vdso-debuginfo-5.14.21-150500.13.103.2
* ocfs2-kmp-rt-5.14.21-150500.13.103.2
* reiserfs-kmp-rt-5.14.21-150500.13.103.2
* kselftests-kmp-rt-5.14.21-150500.13.103.2
* kernel-rt-devel-5.14.21-150500.13.103.2
* kernel-rt-vdso-debuginfo-5.14.21-150500.13.103.2
* kernel-rt-optional-debuginfo-5.14.21-150500.13.103.2
* kernel-rt_debug-debugsource-5.14.21-150500.13.103.2
* gfs2-kmp-rt-debuginfo-5.14.21-150500.13.103.2
* kernel-rt-optional-5.14.21-150500.13.103.2
* ocfs2-kmp-rt-debuginfo-5.14.21-150500.13.103.2
* kernel-rt-devel-debuginfo-5.14.21-150500.13.103.2
* kernel-rt-extra-debuginfo-5.14.21-150500.13.103.2
* kernel-rt-vdso-5.14.21-150500.13.103.2
*...
Read the Full Advisory* bsc#1206051
* bsc#1221829
* bsc#1233551
* bsc#1234480
* bsc#1234863
* bsc#1236104
* bsc#1236333
* bsc#1237164
* bsc#1238160
* bsc#1239644
* bsc#1240799
* bsc#1242414
* bsc#1242417
* bsc#1244309
* bsc#1244523
* bsc#1245217
* bsc#1245431
* bsc#1245506
* bsc#1245711
* bsc#1245986
* bsc#1246000
* bsc#1246029
* bsc#1246037
* bsc#1246045
* bsc#1246073
* bsc#1246186
* bsc#1246287
* bsc#1246555
* bsc#1246781
* bsc#1247314
* bsc#1247347
* bsc#1247348
* bsc#1247349
* bsc#1247437
## References:
* https://www.suse.com/security/cve/CVE-2022-49138.html
* https://www.suse.com/security/cve/CVE-2022-49770.html
* https://www.suse.com/security/cve/CVE-2023-52923.html
* https://www.suse.com/security/cve/CVE-2023-52927.html
* https://www.suse.com/security/cve/CVE-2024-26643.html
* https://www.suse.com/security/cve/CVE-2024-53057.html
* https://www.suse.com/security/cve/CVE-2024-53164.html
* https://www.suse.com/security/cve/CVE-2024-57947.html
* https://www.suse.com/security/cve/CVE-2025-21701.html
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.