Alerts This Week
Warning Icon 1 566
Alerts This Week
Warning Icon 1 566

SUSE Linux Kernel: Security Advisory Updates for Critical Vulnerabilities

suse
Calendar Grey March 13, 2025
Dist Suse Esm H88
Significant enhancements to the Linux kernel from SUSE target multiple vulnerabilities, implementing urgent security patches.
* bsc#1012628 * bsc#1215199 * bsc#1219367 * bsc#1222672 * bsc#1222803

Summary

## The SUSE Linux Enterprise 15 SP6 kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2024-26708: mptcp: fix inconsistent state on fastopen race (bsc#1222672). * CVE-2024-40980: drop_monitor: replace spin_lock by raw_spin_lock (bsc#1227937). * CVE-2024-44974: mptcp: pm: avoid possible UaF when selecting endp (bsc#1230235). * CVE-2024-45009: mptcp: pm: only decrement add_addr_accepted for MPJ req (bsc#1230438). * CVE-2024-45010: mptcp: pm: only mark 'subflow' endp as available (bsc#1230439). * CVE-2024-50029: Bluetooth: hci_conn: Fix UAF in hci_enhanced_setup_sync (bsc#1231949). * CVE-2024-50036: net: do not delay dst_entries_add() in dst_release() (bsc#1231912). * CVE-2024-50085: mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow

References

* bsc#1012628

* bsc#1215199

* bsc#1219367

* bsc#1222672

* bsc#1222803

* bsc#1225606

* bsc#1225742

* bsc#1225981

* bsc#1227937

* bsc#1228521

* bsc#1230235

* bsc#1230438

* bsc#1230439

* bsc#1230497

* bsc#1231432

* bsc#1231912

* bsc#1231920

* bsc#1231949

* bsc#1232159

* bsc#1232198

* bsc#1232201

* bsc#1232299

* bsc#1232508

* bsc#1232520

* bsc#1232919

* bsc#1233028

* bsc#1233109

* bsc#1233483

* bsc#1233749

* bsc#1234070

* bsc#1234853

* bsc#1234857

* bsc#1234891

* bsc#1234894

* bsc#1234895

* bsc#1234896

* bsc#1234963

* bsc#1235032

* bsc#1235054

* bsc#1235061

* bsc#1235073

* bsc#1235435

* bsc#1235485

* bsc#1235592

* bsc#1235599

* bsc#1235609

* bsc#1235932

* bsc#1235933

* bsc#1236113

* bsc#1236114

* bsc#1236115

* bsc#1236122

* bsc#1236123

* bsc#1236133

* bsc#1236138

* bsc#1236199

* bsc#1236200

* bsc#1236203

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:0856-1
Release Date: 2025-03-13T15:46:58Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here