Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

SUSE 2025:01640-1 critical: Linux Kernel security issues addressed

suse
Calendar Grey May 21, 2025
Dist Suse Esm H88
The newest SUSE Linux Kernel update fixes crucial vulnerabilities and essential bugs, boosting system integrity and performance for user safety and stability.
* bsc#1054914 * bsc#1206843 * bsc#1210409 * bsc#1225903 * bsc#1229361

Summary

## The SUSE Linux Enterprise 15 SP5 RT kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2022-48933: netfilter: nf_tables: fix memory leak during stateful obj update (bsc#1229621). * CVE-2022-49110: netfilter: conntrack: revisit gc autotuning (bsc#1237981). * CVE-2022-49139: Bluetooth: fix null ptr deref on hci_sync_conn_complete_evt (bsc#1238032). * CVE-2022-49767: 9p/trans_fd: always use O_NONBLOCK read/write (bsc#1242493). * CVE-2024-46763: fou: Fix null-ptr-deref in GRO (bsc#1230764). * CVE-2024-50038: netfilter: xtables: avoid NFPROTO_UNSPEC where needed (bsc#1231910). * CVE-2025-21726: padata: avoid UAF for reorder_work (bsc#1238865). * CVE-2025-21785: arm64: cacheinfo: Avoid out-of-bounds write to cacheinfo

References

* bsc#1054914

* bsc#1206843

* bsc#1210409

* bsc#1225903

* bsc#1229361

* bsc#1229621

* bsc#1230764

* bsc#1231103

* bsc#1231910

* bsc#1236777

* bsc#1237981

* bsc#1238032

* bsc#1238471

* bsc#1238512

* bsc#1238747

* bsc#1238865

* bsc#1239061

* bsc#1239684

* bsc#1239968

* bsc#1240209

* bsc#1240211

* bsc#1240214

* bsc#1240228

* bsc#1240230

* bsc#1240246

* bsc#1240248

* bsc#1240269

* bsc#1240271

* bsc#1240274

* bsc#1240285

* bsc#1240295

* bsc#1240306

* bsc#1240314

* bsc#1240315

* bsc#1240321

* bsc#1240747

* bsc#1240835

* bsc#1241280

* bsc#1241371

* bsc#1241421

* bsc#1241433

* bsc#1241541

* bsc#1241625

* bsc#1241648

* bsc#1242284

* bsc#1242493

* bsc#1242778

Cross-

* CVE-2021-47671

* CVE-2022-48933

* CVE-2022-49110

* CVE-2022-49139

* CVE-2022-49741

* CVE-2022-49745

* CVE-2022-49767

* CVE-2023-52928

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:01640-1
Release Date: 2025-05-21T11:52:09Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here