The SUSE Linux Enterprise 15 SP5 RT kernel was updated to fix various security
issues
The following security issues were fixed:
* CVE-2025-21738: ata: libata-sff: Ensure that we cannot write outside the
allocated buffer (bsc#1238917).
* CVE-2025-40242: gfs2: Fix unlikely race in gdlm_put_lock (bsc#1255075).
* CVE-2025-71066: net/sched: ets: Always remove class from active list before
deleting in ets_qdisc_change (bsc#1256645).
* CVE-2026-23004: dst: fix races in rt6_uncached_list_del() and
rt_del_uncached_list() (bsc#1257231).
* CVE-2026-23060: crypto: authencesn - reject too-short AAD (assoclen<8) to
match ESP/ESN spec (bsc#1257735).
* CVE-2026-23074: net/sched: Enforce that teql can only be used as root qdisc
(bsc#1257749).
* CVE-2026-23089: ALSA: usb-audio: Fix use-after-free in snd_usb_mixer_free()
(bsc#1257790).
* CVE-2026-23191: ALSA: aloop: Fix racy access at PCM trigger (bsc#1258395).
* CVE-2026-23204: net: add skb_header_pointer_careful()...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2026-1077=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2026-1077=1
* openSUSE Leap 15.5 (noarch)
* kernel-source-rt-5.14.21-150500.13.124.1
* kernel-devel-rt-5.14.21-150500.13.124.1
* openSUSE Leap 15.5 (x86_64)
* kernel-rt-extra-5.14.21-150500.13.124.1
* kernel-syms-rt-5.14.21-150500.13.124.1
* kernel-rt-livepatch-5.14.21-150500.13.124.1
* kernel-rt-optional-5.14.21-150500.13.124.1
* kernel-rt_debug-devel-5.14.21-150500.13.124.1
* kernel-rt-debugsource-5.14.21-150500.13.124.1
* dlm-kmp-rt-5.14.21-150500.13.124.1
* kernel-rt-debuginfo-5.14.21-150500.13.124.1
* kernel-rt-optional-debuginfo-5.14.21-150500.13.124.1
* kernel-rt_debug-devel-debuginfo-5.14.21-150500.13.124.1
* kernel-rt-livepatch-devel-5.14.21-150500.13.124.1
* kernel-rt_debug-vdso-5.14.21-150500.13.124.1
* gfs2-kmp-rt-debuginfo-5.14.21-150500.13.124.1
* kernel-rt-devel-5.14.21-150500.13.124.1
* gfs2-kmp-rt-5.14.21-150500.13.124.1
* kernel-rt_debug-debugsource-5.14.21-150500.13.124.1
* kernel-rt-vdso-debuginfo-5.14.21-150500.13.124.1
* kselftests-kmp-rt-5.14.21-150500.13.124.1
*...
Read the Full Advisory* bsc#1238917
* bsc#1255075
* bsc#1256645
* bsc#1257231
* bsc#1257473
* bsc#1257732
* bsc#1257735
* bsc#1257749
* bsc#1257790
* bsc#1258340
* bsc#1258395
* bsc#1258518
* bsc#1258849
* bsc#1258850
* bsc#1259857
* jsc#PED-12836
## References:
* https://www.suse.com/security/cve/CVE-2025-21738.html
* https://www.suse.com/security/cve/CVE-2025-40242.html
* https://www.suse.com/security/cve/CVE-2025-71066.html
* https://www.suse.com/security/cve/CVE-2026-23004.html
* https://www.suse.com/security/cve/CVE-2026-23054.html
* https://www.suse.com/security/cve/CVE-2026-23060.html
* https://www.suse.com/security/cve/CVE-2026-23074.html
* https://www.suse.com/security/cve/CVE-2026-23089.html
* https://www.suse.com/security/cve/CVE-2026-23191.html
* https://www.suse.com/security/cve/CVE-2026-23204.html
* https://www.suse.com/security/cve/CVE-2026-23209.html
* https://www.suse.com/security/cve/CVE-2026-23268.html
* https://www.suse.com/security/cve/CVE-2026-23269.html
* https://bugzilla.suse.com/show_bug.cgi?id=1238917
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.