Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 428
Alerts This Week
Warning Icon 1 428

openSUSE Kernel Important Update High Risk Issue Resolution 2026-1059-1

opensuse
Calendar Grey March 26, 2026
Scroller Opensuse
SUSE Linux Kernel security update addresses multiple high-risk issues with various fixes available now.
An update that solves seven vulnerabilities can now be installed.

Description

This update for the SUSE Linux Enterprise Kernel 5.14.21-150500.55.133 fixes

various security issues

The following security issues were fixed:

* CVE-2022-50697: mrp: introduce active flags to prevent UAF when applicant

uninit (bsc#1255595).

* CVE-2025-21738: ata: libata-sff: ensure that we cannot write outside the

allocated buffer (bsc#1257118).

* CVE-2025-38159: wifi: rtw88: fix the 'para' buffer size to avoid reading out

of bounds (bsc#1257629).

* CVE-2025-68284: libceph: prevent potential out-of-bounds writes in

handle_auth_session_key() (bsc#1255378).

* CVE-2025-68285: libceph: fix potential use-after-free in

have_mon_and_osd_map() (bsc#1255402).

* CVE-2025-68813: ipvs: fix ipv4 null-ptr-deref in route error path

(bsc#1256644).

* CVE-2025-71085: ipv6: BUG() in pskb_expand_head() as part of

calipso_skbuff_setattr() (bsc#1256624).

Patch

## Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like

YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

* openSUSE Leap 15.5

zypper in -t patch SUSE-2026-1059=1

* SUSE Linux Enterprise Live Patching 15-SP5

zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2026-1059=1

Package List

* openSUSE Leap 15.5 (ppc64le s390x x86_64)

* kernel-livepatch-5_14_21-150500_55_133-default-debuginfo-3-150500.2.1

* kernel-livepatch-5_14_21-150500_55_133-default-3-150500.2.1

* kernel-livepatch-SLE15-SP5_Update_34-debugsource-3-150500.2.1

* SUSE Linux Enterprise Live Patching 15-SP5 (ppc64le s390x x86_64)

* kernel-livepatch-5_14_21-150500_55_133-default-debuginfo-3-150500.2.1

* kernel-livepatch-5_14_21-150500_55_133-default-3-150500.2.1

* kernel-livepatch-SLE15-SP5_Update_34-debugsource-3-150500.2.1

References

* bsc#1255378

* bsc#1255402

* bsc#1255595

* bsc#1256624

* bsc#1256644

* bsc#1257118

* bsc#1257629

## References:

* https://www.suse.com/security/cve/CVE-2022-50697.html

* https://www.suse.com/security/cve/CVE-2025-21738.html

* https://www.suse.com/security/cve/CVE-2025-38159.html

* https://www.suse.com/security/cve/CVE-2025-68284.html

* https://www.suse.com/security/cve/CVE-2025-68285.html

* https://www.suse.com/security/cve/CVE-2025-68813.html

* https://www.suse.com/security/cve/CVE-2025-71085.html

* https://bugzilla.suse.com/show_bug.cgi?id=1255378

* https://bugzilla.suse.com/show_bug.cgi?id=1255402

* https://bugzilla.suse.com/show_bug.cgi?id=1255595

* https://bugzilla.suse.com/show_bug.cgi?id=1256624

* https://bugzilla.suse.com/show_bug.cgi?id=1256644

* https://bugzilla.suse.com/show_bug.cgi?id=1257118

* https://bugzilla.suse.com/show_bug.cgi?id=1257629

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:1059-1
Release Date: 2026-03-26T10:04:28Z
Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Live Patching 15-SP5 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.