The SUSE Linux Enterprise 15 SP5 kernel was updated to receive various security
bugfixes.
The following security bugs were fixed:
* CVE-2022-49053: scsi: target: tcmu: Fix possible page UAF (bsc#1237918).
* CVE-2022-49465: blk-throttle: Set BIO_THROTTLED when bio has been throttled
(bsc#1238919).
* CVE-2022-49739: gfs2: Always check inode size of inline inodes
(bsc#1240207).
* CVE-2023-52935: mm/khugepaged: fix ->anon_vma race (bsc#1240276).
* CVE-2024-53124: net: fix data-races around sk->sk_forward_alloc
(bsc#1234074).
* CVE-2024-53176: smb: During unmount, ensure all cached dir instances drop
their dentry (bsc#1234894).
* CVE-2024-53178: smb: Do not leak cfid when reconnect races with
open_cached_dir (bsc#1234895).
* CVE-2024-56651: can: hi311x: hi3110_can_ist(): fix potential use-after-free
(bsc#1235528).
* CVE-2024-57996: net_sched: sch_sfq: do not allow 1 packet limit
(bsc#1239076).
* CVE-2024-58013: Bluetooth: MGMT: Fix...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2025-1241=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2025-1241=1
* SUSE Linux Enterprise Live Patching 15-SP5
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2025-1241=1
* SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5
zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2025-1241=1
* SUSE Linux Enterprise High Performance Computing LTSS 15 SP5
zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2025-1241=1
* SUSE Linux Enterprise Server 15 SP5 LTSS
zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2025-1241=1
* SUSE Linux Enterprise Server for SAP Applications 15 SP5
zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2025-1241=1
* openSUSE Leap 15.5 (noarch nosrc)
* kernel-docs-5.14.21-150500.55.100.1
* openSUSE Leap 15.5 (noarch)
* kernel-macros-5.14.21-150500.55.100.1
* kernel-source-5.14.21-150500.55.100.1
* kernel-devel-5.14.21-150500.55.100.1
* kernel-docs-html-5.14.21-150500.55.100.1
* kernel-source-vanilla-5.14.21-150500.55.100.1
* openSUSE Leap 15.5 (nosrc ppc64le x86_64)
* kernel-debug-5.14.21-150500.55.100.1
* openSUSE Leap 15.5 (ppc64le x86_64)
* kernel-debug-debugsource-5.14.21-150500.55.100.1
* kernel-debug-devel-debuginfo-5.14.21-150500.55.100.1
* kernel-debug-devel-5.14.21-150500.55.100.1
* kernel-debug-debuginfo-5.14.21-150500.55.100.1
* openSUSE Leap 15.5 (x86_64)
* kernel-debug-vdso-5.14.21-150500.55.100.1
* kernel-debug-vdso-debuginfo-5.14.21-150500.55.100.1
* kernel-default-vdso-debuginfo-5.14.21-150500.55.100.1
* kernel-kvmsmall-vdso-5.14.21-150500.55.100.1
* kernel-kvmsmall-vdso-debuginfo-5.14.21-150500.55.100.1
* kernel-default-vdso-5.14.21-150500.55.100.1
* openSUSE Leap 15.5 (aarch64 ppc64le x86_64)
*...
Read the Full Advisory* bsc#1065729
* bsc#1180814
* bsc#1183682
* bsc#1190336
* bsc#1190768
* bsc#1190786
* bsc#1193629
* bsc#1194869
* bsc#1194904
* bsc#1195823
* bsc#1196444
* bsc#1197158
* bsc#1197174
* bsc#1197227
* bsc#1197246
* bsc#1197302
* bsc#1197331
* bsc#1197472
* bsc#1197661
* bsc#1197926
* bsc#1198019
* bsc#1198021
* bsc#1198240
* bsc#1198577
* bsc#1198660
* bsc#1199657
* bsc#1200045
* bsc#1200571
* bsc#1200807
* bsc#1200809
* bsc#1200810
* bsc#1200824
* bsc#1200825
* bsc#1200871
* bsc#1200872
* bsc#1201193
* bsc#1201218
* bsc#1201323
* bsc#1201381
* bsc#1201610
* bsc#1202672
* bsc#1202711
* bsc#1202712
* bsc#1202771
* bsc#1202774
* bsc#1202778
* bsc#1202781
* bsc#1203699
* bsc#1203769
* bsc#1204171
* bsc#1205205
* bsc#1205701
* bsc#1206048
* bsc#1206049
* bsc#1206451
* bsc#1207034
* bsc#1207186
* bsc#1207361
* bsc#1207593
* bsc#1207640
* bsc#1207878
* bsc#1209262
* bsc#1209547
* bsc#1209788
* bsc#1209980
* bsc#1210050
* bsc#1210647
* bsc#1211263
* bsc#1213167
* bsc#1218450
* bsc#1221651
* bsc#1225428
* bsc#1225742
* bsc#1229312
* bsc#1231375
* bsc#1231432
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.