## The SUSE Linux Enterprise 15 SP7 RT kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2024-28956: x86/ibt: Keep IBT disabled during alternative patching (bsc#1242006). * CVE-2024-35840: mptcp: use OPTION_MPTCP_MPJ_SYNACK in subflow_finish_connect() (bsc#1224597). * CVE-2024-46713: kabi fix for perf/aux: Fix AUX buffer serialization (bsc#1230581). * CVE-2024-50223: sched/numa: Fix the potential null pointer dereference in (bsc#1233192). * CVE-2024-54458: scsi: ufs: bsg: Set bsg_queue to NULL after removal (bsc#1238992). * CVE-2024-58070: bpf: bpf_local_storage: Always use bpf_mem_alloc in PREEMPT_RT (bsc#1238983). * CVE-2025-21648: netfilter: conntrack: clamp maximum hashtable size to INT_MAX (bsc#1236142).
* bsc#1223096
* bsc#1223809
* bsc#1224013
* bsc#1224597
* bsc#1224757
* bsc#1230581
* bsc#1230764
* bsc#1231016
* bsc#1231103
* bsc#1232493
* bsc#1232649
* bsc#1232882
* bsc#1233192
* bsc#1235149
* bsc#1235501
* bsc#1235526
* bsc#1236142
* bsc#1236208
* bsc#1236704
* bsc#1237312
* bsc#1238473
* bsc#1238527
* bsc#1238585
* bsc#1238714
* bsc#1238737
* bsc#1238745
* bsc#1238774
* bsc#1238862
* bsc#1238961
* bsc#1238983
* bsc#1238992
* bsc#1239079
* bsc#1239476
* bsc#1239487
* bsc#1239691
* bsc#1240557
* bsc#1240593
* bsc#1240655
* bsc#1240711
* bsc#1240717
* bsc#1240740
* bsc#1240966
* bsc#1241148
* bsc#1241266
* bsc#1241282
* bsc#1241305
* bsc#1241319
* bsc#1241332
* bsc#1241333
* bsc#1241341
* bsc#1241343
* bsc#1241344
* bsc#1241347
* bsc#1241351
* bsc#1241357
* bsc#1241361
* bsc#1241369
* bsc#1241376
Get the latest Linux and open source security news straight to your inbox.