Alerts This Week
Warning Icon 1 1,229
Alerts This Week
Warning Icon 1 1,229

SUSE: 2025:02254-1 important: Linux Kernel Security Vulnerabilities

suse
Calendar Grey July 8, 2025
Dist Suse Esm H88
A patch for openSUSE addresses severe flaws in the kernel that could lead to major system disruptions. Prompt implementation is recommended.
* bsc#1151679 * bsc#1151680 * bsc#1151794 * bsc#1151927 * bsc#1210025

Summary

## The SUSE Linux Enterprise 15 SP7 Azure kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2023-52888: media: mediatek: vcodec: Only free buffer VA that is not NULL (bsc#1228557). * CVE-2024-49568: net/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt when receiving proposal msg (bsc#1235728). * CVE-2024-57982: xfrm: state: fix out-of-bounds read during lookup (bsc#1237913). * CVE-2024-57995: wifi: ath12k: fix read pointer after free in ath12k_mac_assign_vif_to_vdev() (bsc#1237895). * CVE-2024-58053: rxrpc: Fix handling of received connection abort (bsc#1238982). * CVE-2025-21720: xfrm: delete intermediate secpath entry in packet offload mode (bsc#1238859). * CVE-2025-21868: kABI workaround for adding an header (bsc#1240180).

References

* bsc#1151679

* bsc#1151680

* bsc#1151794

* bsc#1151927

* bsc#1210025

* bsc#1211226

* bsc#1215199

* bsc#1218184

* bsc#1220112

* bsc#1223008

* bsc#1226498

* bsc#1228478

* bsc#1228557

* bsc#1228854

* bsc#1229491

* bsc#1230337

* bsc#1231913

* bsc#1232504

* bsc#1232882

* bsc#1233482

* bsc#1235064

* bsc#1235490

* bsc#1235728

* bsc#1235968

* bsc#1236208

* bsc#1237200

* bsc#1237312

* bsc#1237887

* bsc#1237895

* bsc#1237905

* bsc#1237910

* bsc#1237913

* bsc#1238212

* bsc#1238478

* bsc#1238495

* bsc#1238508

* bsc#1238741

* bsc#1238859

* bsc#1238965

* bsc#1238982

* bsc#1238995

* bsc#1239063

* bsc#1239090

* bsc#1239485

* bsc#1239925

* bsc#1240170

* bsc#1240180

* bsc#1240577

* bsc#1240579

* bsc#1240589

* bsc#1240610

* bsc#1240650

* bsc#1240686

* bsc#1240696

* bsc#1240702

* bsc#1240710

* bsc#1240723

* bsc#1240798

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:02254-1
Release Date: 2025-07-08T15:57:52Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here