## The SUSE Linux Enterprise 15 SP7 Azure kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2023-52888: media: mediatek: vcodec: Only free buffer VA that is not NULL (bsc#1228557). * CVE-2024-49568: net/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt when receiving proposal msg (bsc#1235728). * CVE-2024-57982: xfrm: state: fix out-of-bounds read during lookup (bsc#1237913). * CVE-2024-57995: wifi: ath12k: fix read pointer after free in ath12k_mac_assign_vif_to_vdev() (bsc#1237895). * CVE-2024-58053: rxrpc: Fix handling of received connection abort (bsc#1238982). * CVE-2025-21720: xfrm: delete intermediate secpath entry in packet offload mode (bsc#1238859). * CVE-2025-21868: kABI workaround for adding an header (bsc#1240180).
* bsc#1151679
* bsc#1151680
* bsc#1151794
* bsc#1151927
* bsc#1210025
* bsc#1211226
* bsc#1215199
* bsc#1218184
* bsc#1220112
* bsc#1223008
* bsc#1226498
* bsc#1228478
* bsc#1228557
* bsc#1228854
* bsc#1229491
* bsc#1230337
* bsc#1231913
* bsc#1232504
* bsc#1232882
* bsc#1233482
* bsc#1235064
* bsc#1235490
* bsc#1235728
* bsc#1235968
* bsc#1236208
* bsc#1237200
* bsc#1237312
* bsc#1237887
* bsc#1237895
* bsc#1237905
* bsc#1237910
* bsc#1237913
* bsc#1238212
* bsc#1238478
* bsc#1238495
* bsc#1238508
* bsc#1238741
* bsc#1238859
* bsc#1238965
* bsc#1238982
* bsc#1238995
* bsc#1239063
* bsc#1239090
* bsc#1239485
* bsc#1239925
* bsc#1240170
* bsc#1240180
* bsc#1240577
* bsc#1240579
* bsc#1240589
* bsc#1240610
* bsc#1240650
* bsc#1240686
* bsc#1240696
* bsc#1240702
* bsc#1240710
* bsc#1240723
* bsc#1240798
Get the latest Linux and open source security news straight to your inbox.