Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE: 2025:03283-1 Kernel Important Security Issues and Fixes

suse
Calendar Grey September 19, 2025
Dist Suse Esm H88
Debian issued a security patch resolving several issues within the kernel, critical for maintaining system integrity. A system restart is necessary following the update.
* bsc#1229334 * bsc#1233640 * bsc#1234896 * bsc#1240375 * bsc#1242780

Summary

## The SUSE Linux Enterprise 15 SP5 RT kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2022-49980: USB: gadget: fix use-after-free read in usb_udc_uevent() (bsc#1245110). * CVE-2022-50116: tty: n_gsm: fix deadlock and link starvation in outgoing data path (bsc#1244824). * CVE-2023-53117: fs: prevent out-of-bounds array speculation when closing a file descriptor (bsc#1242780). * CVE-2024-42265: protect the fetch of ->fd[fd] in do_dup2() from mispredictions (bsc#1229334). * CVE-2024-53093: nvme-multipath: defer partition scanning (bsc#1233640). * CVE-2024-53177: smb: prevent use-after-free due to open_cached_dir error paths (bsc#1234896). * CVE-2024-58239: tls: stop recv() if initial process_rx_list gave us non-DATA (bsc#1248614).

References

* bsc#1229334

* bsc#1233640

* bsc#1234896

* bsc#1240375

* bsc#1242780

* bsc#1244824

* bsc#1245110

* bsc#1245956

* bsc#1245970

* bsc#1246211

* bsc#1246473

* bsc#1246911

* bsc#1247143

* bsc#1247374

* bsc#1247518

* bsc#1247976

* bsc#1248223

* bsc#1248297

* bsc#1248306

* bsc#1248312

* bsc#1248338

* bsc#1248511

* bsc#1248614

* bsc#1248621

* bsc#1248748

* jsc#PED-8240

Cross-

* CVE-2022-49980

* CVE-2022-50116

* CVE-2023-53117

* CVE-2024-42265

* CVE-2024-53093

* CVE-2024-53177

* CVE-2024-58239

* CVE-2025-38180

* CVE-2025-38184

* CVE-2025-38323

* CVE-2025-38352

* CVE-2025-38460

* CVE-2025-38498

* CVE-2025-38499

* CVE-2025-38546

* CVE-2025-38555

* CVE-2025-38560

* CVE-2025-38563

* CVE-2025-38608

* CVE-2025-38617

* CVE-2025-38618

* CVE-2025-38644

CVSS scores:

* CVE-2022-49980 ( SUSE ): 7.3

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:03283-1
Release Date: 2025-09-19T17:49:43Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here