Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

openSUSE: 2025:0853-1 important: Kernel Security Update details

opensuse
Calendar Grey March 13, 2025
Dist Opensuse Esm H88
Important Fedora security patch released to address kernel weaknesses and enhance overall performance. Restart required after installation.
An update that solves 16 vulnerabilities and has 17 security fixes can now be installed.

Description

The SUSE Linux Enterprise 15 SP5 RT kernel was updated to receive various

security bugfixes.

The following security bugs were fixed:

* CVE-2022-49080: mm/mempolicy: fix mpol_new leak in shared_policy_replace

(bsc#1238033).

* CVE-2024-53135: KVM: VMX: Bury Intel PT virtualization (guest/host mode)

behind CONFIG_BROKEN (bsc#1234154).

* CVE-2024-53226: RDMA/hns: Fix NULL pointer derefernce in

hns_roce_map_mr_sg() (bsc#1236576)

* CVE-2024-57948: mac802154: check local interfaces before deleting sdata list

(bsc#1236677).

* CVE-2025-21647: sched: sch_cake: add bounds checks to host bulk flow

fairness counts (bsc#1236133).

* CVE-2025-21690: scsi: storvsc: Ratelimit warning logs to prevent VM denial

of service (bsc#1237025).

* CVE-2025-21692: net: sched: fix ets qdisc OOB Indexing (bsc#1237028).

* CVE-2025-21699: gfs2: Truncate address space when flipping GFS2_DIF_JDATA

flag (bsc#1237139).

The following non-security bugs were fixed:

* NFSD:...

Read the Full Advisory

Patch

## Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like

YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

* openSUSE Leap 15.5

zypper in -t patch SUSE-2025-853=1

* SUSE Linux Enterprise Micro 5.5

zypper in -t patch SUSE-SLE-Micro-5.5-2025-853=1

Package List

* openSUSE Leap 15.5 (noarch)

* kernel-devel-rt-5.14.21-150500.13.88.1

* kernel-source-rt-5.14.21-150500.13.88.1

* openSUSE Leap 15.5 (x86_64)

* kernel-rt-optional-5.14.21-150500.13.88.1

* gfs2-kmp-rt-5.14.21-150500.13.88.1

* kernel-rt-extra-debuginfo-5.14.21-150500.13.88.1

* gfs2-kmp-rt-debuginfo-5.14.21-150500.13.88.1

* kernel-rt_debug-vdso-debuginfo-5.14.21-150500.13.88.1

* kernel-rt_debug-vdso-5.14.21-150500.13.88.1

* kernel-rt_debug-debuginfo-5.14.21-150500.13.88.1

* reiserfs-kmp-rt-5.14.21-150500.13.88.1

* ocfs2-kmp-rt-debuginfo-5.14.21-150500.13.88.1

* kernel-rt-optional-debuginfo-5.14.21-150500.13.88.1

* kernel-rt-livepatch-devel-5.14.21-150500.13.88.1

* kernel-rt_debug-devel-debuginfo-5.14.21-150500.13.88.1

* ocfs2-kmp-rt-5.14.21-150500.13.88.1

* kernel-rt_debug-devel-5.14.21-150500.13.88.1

* dlm-kmp-rt-debuginfo-5.14.21-150500.13.88.1

* kselftests-kmp-rt-debuginfo-5.14.21-150500.13.88.1

* kernel-rt-devel-debuginfo-5.14.21-150500.13.88.1

* kernel-rt-vdso-debuginfo-5.14.21-150500.13.88.1

*...

Read the Full Advisory

References

* bsc#1208995

* bsc#1220946

* bsc#1225742

* bsc#1232472

* bsc#1232919

* bsc#1233701

* bsc#1233749

* bsc#1234154

* bsc#1234650

* bsc#1234853

* bsc#1234891

* bsc#1234963

* bsc#1235054

* bsc#1235061

* bsc#1235073

* bsc#1235111

* bsc#1236133

* bsc#1236289

* bsc#1236576

* bsc#1236661

* bsc#1236677

* bsc#1236757

* bsc#1236758

* bsc#1236760

* bsc#1236761

* bsc#1236777

* bsc#1236951

* bsc#1237025

* bsc#1237028

* bsc#1237139

* bsc#1237316

* bsc#1237693

* bsc#1238033

## References:

* https://www.suse.com/security/cve/CVE-2022-49080.html

* https://www.suse.com/security/cve/CVE-2023-1192.html

* https://www.suse.com/security/cve/CVE-2023-52572.html

* https://www.suse.com/security/cve/CVE-2024-50115.html

* https://www.suse.com/security/cve/CVE-2024-53135.html

* https://www.suse.com/security/cve/CVE-2024-53173.html

* https://www.suse.com/security/cve/CVE-2024-53226.html

* https://www.suse.com/security/cve/CVE-2024-53239.html

* https://www.suse.com/security/cve/CVE-2024-56539.html

* https://www.suse.com/security/cve/CVE-2024-56548.html

*...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:0853-1
Release Date: 2025-03-13T10:40:03Z
Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise Micro 5.5

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here