The SUSE Linux Enterprise 15 SP5 RT kernel was updated to receive various
security bugfixes.
The following security bugs were fixed:
* CVE-2022-49080: mm/mempolicy: fix mpol_new leak in shared_policy_replace
(bsc#1238033).
* CVE-2024-53135: KVM: VMX: Bury Intel PT virtualization (guest/host mode)
behind CONFIG_BROKEN (bsc#1234154).
* CVE-2024-53226: RDMA/hns: Fix NULL pointer derefernce in
hns_roce_map_mr_sg() (bsc#1236576)
* CVE-2024-57948: mac802154: check local interfaces before deleting sdata list
(bsc#1236677).
* CVE-2025-21647: sched: sch_cake: add bounds checks to host bulk flow
fairness counts (bsc#1236133).
* CVE-2025-21690: scsi: storvsc: Ratelimit warning logs to prevent VM denial
of service (bsc#1237025).
* CVE-2025-21692: net: sched: fix ets qdisc OOB Indexing (bsc#1237028).
* CVE-2025-21699: gfs2: Truncate address space when flipping GFS2_DIF_JDATA
flag (bsc#1237139).
The following non-security bugs were fixed:
* NFSD:...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2025-853=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2025-853=1
* openSUSE Leap 15.5 (noarch)
* kernel-devel-rt-5.14.21-150500.13.88.1
* kernel-source-rt-5.14.21-150500.13.88.1
* openSUSE Leap 15.5 (x86_64)
* kernel-rt-optional-5.14.21-150500.13.88.1
* gfs2-kmp-rt-5.14.21-150500.13.88.1
* kernel-rt-extra-debuginfo-5.14.21-150500.13.88.1
* gfs2-kmp-rt-debuginfo-5.14.21-150500.13.88.1
* kernel-rt_debug-vdso-debuginfo-5.14.21-150500.13.88.1
* kernel-rt_debug-vdso-5.14.21-150500.13.88.1
* kernel-rt_debug-debuginfo-5.14.21-150500.13.88.1
* reiserfs-kmp-rt-5.14.21-150500.13.88.1
* ocfs2-kmp-rt-debuginfo-5.14.21-150500.13.88.1
* kernel-rt-optional-debuginfo-5.14.21-150500.13.88.1
* kernel-rt-livepatch-devel-5.14.21-150500.13.88.1
* kernel-rt_debug-devel-debuginfo-5.14.21-150500.13.88.1
* ocfs2-kmp-rt-5.14.21-150500.13.88.1
* kernel-rt_debug-devel-5.14.21-150500.13.88.1
* dlm-kmp-rt-debuginfo-5.14.21-150500.13.88.1
* kselftests-kmp-rt-debuginfo-5.14.21-150500.13.88.1
* kernel-rt-devel-debuginfo-5.14.21-150500.13.88.1
* kernel-rt-vdso-debuginfo-5.14.21-150500.13.88.1
*...
Read the Full Advisory* bsc#1208995
* bsc#1220946
* bsc#1225742
* bsc#1232472
* bsc#1232919
* bsc#1233701
* bsc#1233749
* bsc#1234154
* bsc#1234650
* bsc#1234853
* bsc#1234891
* bsc#1234963
* bsc#1235054
* bsc#1235061
* bsc#1235073
* bsc#1235111
* bsc#1236133
* bsc#1236289
* bsc#1236576
* bsc#1236661
* bsc#1236677
* bsc#1236757
* bsc#1236758
* bsc#1236760
* bsc#1236761
* bsc#1236777
* bsc#1236951
* bsc#1237025
* bsc#1237028
* bsc#1237139
* bsc#1237316
* bsc#1237693
* bsc#1238033
## References:
* https://www.suse.com/security/cve/CVE-2022-49080.html
* https://www.suse.com/security/cve/CVE-2023-1192.html
* https://www.suse.com/security/cve/CVE-2023-52572.html
* https://www.suse.com/security/cve/CVE-2024-50115.html
* https://www.suse.com/security/cve/CVE-2024-53135.html
* https://www.suse.com/security/cve/CVE-2024-53173.html
* https://www.suse.com/security/cve/CVE-2024-53226.html
* https://www.suse.com/security/cve/CVE-2024-53239.html
* https://www.suse.com/security/cve/CVE-2024-56539.html
* https://www.suse.com/security/cve/CVE-2024-56548.html
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.