## The SUSE Linux Enterprise 15 SP6 Azure kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2023-52888: media: mediatek: vcodec: Only free buffer VA that is not NULL (bsc#1228557). * CVE-2024-49568: net/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt when receiving proposal msg (bsc#1235728). * CVE-2024-57982: xfrm: state: fix out-of-bounds read during lookup (bsc#1237913). * CVE-2024-58053: rxrpc: Fix handling of received connection abort (bsc#1238982). * CVE-2025-21720: xfrm: delete intermediate secpath entry in packet offload mode (bsc#1238859). * CVE-2025-21868: kABI workaround for adding an header (bsc#1240180). * CVE-2025-21898: ftrace: Avoid potential division by zero in function_stat_show() (bsc#1240610).
* bsc#1151679
* bsc#1151680
* bsc#1151794
* bsc#1151927
* bsc#1210025
* bsc#1211226
* bsc#1215199
* bsc#1218184
* bsc#1223008
* bsc#1228557
* bsc#1228854
* bsc#1232504
* bsc#1232882
* bsc#1235490
* bsc#1235728
* bsc#1236208
* bsc#1237312
* bsc#1237913
* bsc#1238859
* bsc#1238982
* bsc#1240180
* bsc#1240577
* bsc#1240610
* bsc#1240686
* bsc#1240723
* bsc#1240814
* bsc#1240823
* bsc#1241166
* bsc#1241278
* bsc#1241414
* bsc#1241544
* bsc#1241572
* bsc#1241592
* bsc#1241617
* bsc#1242086
* bsc#1242163
* bsc#1242504
* bsc#1242515
* bsc#1242521
* bsc#1242556
* bsc#1242573
* bsc#1242725
* bsc#1242846
* bsc#1242849
* bsc#1242850
* bsc#1242907
* bsc#1242940
* bsc#1242946
* bsc#1242954
* bsc#1242982
* bsc#1243051
* bsc#1243060
* bsc#1243342
* bsc#1243467
* bsc#1243475
* bsc#1243480
* bsc#1243506
* bsc#1243523
Get the latest Linux and open source security news straight to your inbox.