Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

SUSE: 2025:0955-1 important: the Linux Kernel Security Advisory Updates

suse
Calendar Grey March 19, 2025
Dist Suse Esm H88
This update addresses important security bugs in the Linux Kernel on SUSE; urgent installation recommended for users.
* bsc#1012628 * bsc#1215199 * bsc#1219367 * bsc#1222672 * bsc#1222803

Summary

## The SUSE Linux Enterprise 15 SP6 RT kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2024-26708: mptcp: fix inconsistent state on fastopen race (bsc#1222672). * CVE-2024-40980: drop_monitor: replace spin_lock by raw_spin_lock (bsc#1227937). * CVE-2024-44974: mptcp: pm: avoid possible UaF when selecting endp (bsc#1230235). * CVE-2024-45009: mptcp: pm: only decrement add_addr_accepted for MPJ req (bsc#1230438). * CVE-2024-45010: mptcp: pm: only mark 'subflow' endp as available (bsc#1230439). * CVE-2024-50029: Bluetooth: hci_conn: Fix UAF in hci_enhanced_setup_sync (bsc#1231949). * CVE-2024-50036: net: do not delay dst_entries_add() in dst_release() (bsc#1231912).

References

* bsc#1012628

* bsc#1215199

* bsc#1219367

* bsc#1222672

* bsc#1222803

* bsc#1225606

* bsc#1225742

* bsc#1225981

* bsc#1227937

* bsc#1228521

* bsc#1230235

* bsc#1230438

* bsc#1230439

* bsc#1230497

* bsc#1231432

* bsc#1231912

* bsc#1231920

* bsc#1231949

* bsc#1232159

* bsc#1232198

* bsc#1232201

* bsc#1232299

* bsc#1232508

* bsc#1232520

* bsc#1232919

* bsc#1233028

* bsc#1233109

* bsc#1233483

* bsc#1233749

* bsc#1234070

* bsc#1234853

* bsc#1234857

* bsc#1234891

* bsc#1234894

* bsc#1234895

* bsc#1234896

* bsc#1234963

* bsc#1235054

* bsc#1235061

* bsc#1235073

* bsc#1235435

* bsc#1235485

* bsc#1235592

* bsc#1235599

* bsc#1235609

* bsc#1235932

* bsc#1235933

* bsc#1236113

* bsc#1236114

* bsc#1236115

* bsc#1236122

* bsc#1236123

* bsc#1236133

* bsc#1236138

* bsc#1236199

* bsc#1236200

* bsc#1236203

* bsc#1236205

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:0955-1
Release Date: 2025-03-19T16:11:26Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here