The SUSE Linux Enterprise 16.0 kernel was updated to fix various security issues
The following security issues were fixed:
- CVE-2026-23254: net: gro: fix outer network offset (bsc#1259884).
- CVE-2026-23303: smb: client: Don't log plaintext credentials in cifs_set_cifscreds (bsc#1260502).
- CVE-2026-23327: cxl/mbox: validate payload size before accessing
contents in cxl_payload_from_user_allowed() (bsc#1260548).
- CVE-2026-23438: net: mvpp2: guard flow control update with global_tx_fc in buffer switching (bsc#1261619).
- CVE-2026-31396: net: macb: fix use-after-free access to PTP clock (bsc#1261791).
- CVE-2026-31401: HID: bpf: prevent buffer overflow in hid_hw_request (bsc#1261603).
- CVE-2026-31446: ext4: fix use-after-free in update_super_work when racing with umount (bsc#1262619).
- CVE-2026-31448: ext4: avoid infinite loops caused by residual data (bsc#1262622).
- CVE-2026-31454: xfs: save ailp before dropping the AIL lock in push callbacks (bsc#1262624).
- CVE-2026-31455:...
Read the Full Advisory- openSUSE Leap 16.0:
cluster-md-kmp-64kb-6.12.0-160000.35.1
cluster-md-kmp-azure-6.12.0-160000.35.1
cluster-md-kmp-default-6.12.0-160000.35.1
cluster-md-kmp-rt-6.12.0-160000.35.1
dlm-kmp-64kb-6.12.0-160000.35.1
dlm-kmp-azure-6.12.0-160000.35.1
dlm-kmp-default-6.12.0-160000.35.1
dlm-kmp-rt-6.12.0-160000.35.1
dtb-allwinner-6.12.0-160000.35.1
dtb-altera-6.12.0-160000.35.1
dtb-amazon-6.12.0-160000.35.1
dtb-amd-6.12.0-160000.35.1
dtb-amlogic-6.12.0-160000.35.1
dtb-apm-6.12.0-160000.35.1
dtb-apple-6.12.0-160000.35.1
dtb-arm-6.12.0-160000.35.1
dtb-broadcom-6.12.0-160000.35.1
dtb-cavium-6.12.0-160000.35.1
dtb-exynos-6.12.0-160000.35.1
dtb-freescale-6.12.0-160000.35.1
dtb-hisilicon-6.12.0-160000.35.1
dtb-lg-6.12.0-160000.35.1
dtb-marvell-6.12.0-160000.35.1
dtb-mediatek-6.12.0-160000.35.1
dtb-nvidia-6.12.0-160000.35.1
dtb-qcom-6.12.0-160000.35.1
dtb-renesas-6.12.0-160000.35.1
dtb-rockchip-6.12.0-160000.35.1
dtb-socionext-6.12.0-160000.35.1
dtb-sprd-6.12.0-160000.35.1
dtb-xilinx-6.12.0-160000.35.1
gfs2-kmp-64kb-6.12.0-160000.3...
Read the Full Advisory* bsc#1259884
* bsc#1260502
* bsc#1260548
* bsc#1261041
* bsc#1261603
* bsc#1261619
* bsc#1261791
* bsc#1262606
* bsc#1262615
* bsc#1262619
* bsc#1262622
* bsc#1262624
* bsc#1263006
* bsc#1263058
* bsc#1263062
* bsc#1263115
* bsc#1263180
* bsc#1263579
* bsc#1263594
* bsc#1263724
* bsc#1263794
* bsc#1263883
* bsc#1263932
* bsc#1264000
* bsc#1264040
* bsc#1264091
* bsc#1264196
* bsc#1264243
* bsc#1264245
* bsc#1264255
* bsc#1264415
* bsc#1264484
* bsc#1264609
* bsc#1264622
* bsc#1264672
* bsc#1264723
* bsc#1264765
* bsc#1265081
* bsc#1265114
* bsc#1265170
* bsc#1265186
* bsc#1265579
* bsc#1266394
* bsc#1266400
* bsc#1266696
* bsc#1266711
* bsc#1266720
* bsc#1266810
* bsc#1266816
* bsc#1266826
* bsc#1266827
* bsc#1266888
* bsc#1266889
* bsc#1266901
* bsc#1266914
* bsc#1266927
* bsc#1266972
* bsc#1267205
* bsc#1267214
* bsc#1267220
* bsc#1267531
* bsc#1267652
* bsc#1267875
* bsc#1268018
References:
* https://www.suse.com/security/cve/CVE-2026-23254.html
* https://www.suse.com/security/cve/CVE-2026-23303.html
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.