The SUSE Linux Enterprise 15 SP3 kernel was updated to fix various security
issues
The following security issues were fixed:
* CVE-2023-53794: cifs: fix session state check in reconnect to avoid use-
after-free issue (bsc#1255163).
* CVE-2023-53827: Bluetooth: L2CAP: Fix use-after-free in
l2cap_disconnect_{req,rsp} (bsc#1255049).
* CVE-2025-21738: ata: libata-sff: Ensure that we cannot write outside the
allocated buffer (bsc#1238917).
* CVE-2025-38375: virtio-net: ensure the received length does not exceed
allocated size (bsc#1247177).
* CVE-2025-68285: libceph: fix potential use-after-free in
have_mon_and_osd_map() (bsc#1255401).
* CVE-2025-71066: net/sched: ets: Always remove class from active list before
deleting in ets_qdisc_change (bsc#1256645).
* CVE-2026-23004: dst: fix races in rt6_uncached_list_del() and
rt_del_uncached_list() (bsc#1257231).
* CVE-2026-23060: crypto: authencesn - reject too-short AAD (assoclen<8) to
match ESP/ESN...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.3
zypper in -t patch SUSE-2026-928=1
* SUSE Linux Enterprise Micro 5.2
zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-928=1
* SUSE Linux Enterprise Micro for Rancher 5.2
zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-928=1
* openSUSE Leap 15.3 (noarch nosrc)
* kernel-docs-5.3.18-150300.59.238.1
* openSUSE Leap 15.3 (noarch)
* kernel-source-5.3.18-150300.59.238.1
* kernel-source-vanilla-5.3.18-150300.59.238.1
* kernel-macros-5.3.18-150300.59.238.1
* kernel-devel-5.3.18-150300.59.238.1
* kernel-docs-html-5.3.18-150300.59.238.1
* openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64)
* ocfs2-kmp-default-5.3.18-150300.59.238.1
* dlm-kmp-default-5.3.18-150300.59.238.1
* kernel-obs-build-5.3.18-150300.59.238.1
* kernel-obs-build-debugsource-5.3.18-150300.59.238.1
* kernel-default-optional-debuginfo-5.3.18-150300.59.238.1
* kernel-obs-qa-5.3.18-150300.59.238.1
* gfs2-kmp-default-5.3.18-150300.59.238.1
* reiserfs-kmp-default-debuginfo-5.3.18-150300.59.238.1
* reiserfs-kmp-default-5.3.18-150300.59.238.1
* kernel-default-devel-debuginfo-5.3.18-150300.59.238.1
* kernel-default-debuginfo-5.3.18-150300.59.238.1
* cluster-md-kmp-default-5.3.18-150300.59.238.1
* ocfs2-kmp-default-debuginfo-5.3.18-150300.59.238.1
*...
Read the Full Advisory* bsc#1238917
* bsc#1246166
* bsc#1247177
* bsc#1255049
* bsc#1255163
* bsc#1255401
* bsc#1256645
* bsc#1257231
* bsc#1257735
* bsc#1257749
* bsc#1257790
* bsc#1258340
* bsc#1258395
* bsc#1258849
* jsc#PED-12836
## References:
* https://www.suse.com/security/cve/CVE-2023-53794.html
* https://www.suse.com/security/cve/CVE-2023-53827.html
* https://www.suse.com/security/cve/CVE-2025-21738.html
* https://www.suse.com/security/cve/CVE-2025-38224.html
* https://www.suse.com/security/cve/CVE-2025-38375.html
* https://www.suse.com/security/cve/CVE-2025-68285.html
* https://www.suse.com/security/cve/CVE-2025-71066.html
* https://www.suse.com/security/cve/CVE-2026-23004.html
* https://www.suse.com/security/cve/CVE-2026-23060.html
* https://www.suse.com/security/cve/CVE-2026-23074.html
* https://www.suse.com/security/cve/CVE-2026-23089.html
* https://www.suse.com/security/cve/CVE-2026-23191.html
* https://www.suse.com/security/cve/CVE-2026-23204.html
* https://bugzilla.suse.com/show_bug.cgi?id=1238917
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.