## The SUSE Linux Enterprise 16.0 kernel was updated to fix various security issues The following security issues were fixed: * CVE-2025-21816: hrtimers: Force migrate away hrtimers queued after (bsc#1238472). * CVE-2025-38653: proc: use the same treatment to check proc_lseek as ones for proc_read_iter et.al (bsc#1248630). * CVE-2025-38718: sctp: linearize cloned gso packets in sctp_rcv (bsc#1249161). * CVE-2025-39676: scsi: qla4xxx: Prevent a potential error pointer dereference (bsc#1249302). * CVE-2025-39702: ipv6: sr: Fix MAC comparison to be constant-time (bsc#1249317). * CVE-2025-39756: fs: Prevent file descriptor table allocations exceeding INT_MAX (bsc#1249512). * CVE-2025-39779: btrfs: subpage: keep TOWRITE tag until folio is cleaned (bsc#1249495).
* bsc#1218644
* bsc#1238472
* bsc#1239206
* bsc#1241166
* bsc#1241637
* bsc#1247222
* bsc#1248630
* bsc#1249161
* bsc#1249226
* bsc#1249302
* bsc#1249317
* bsc#1249397
* bsc#1249398
* bsc#1249495
* bsc#1249512
* bsc#1249608
* bsc#1249735
* bsc#1250202
* bsc#1250379
* bsc#1250400
* bsc#1250455
* bsc#1250491
* bsc#1250704
* bsc#1250721
* bsc#1250749
* bsc#1250946
* bsc#1251176
* bsc#1251177
* bsc#1251232
* bsc#1251233
* bsc#1251804
* bsc#1251809
* bsc#1251819
* bsc#1251930
* bsc#1251967
* bsc#1252033
* bsc#1252035
* bsc#1252039
* bsc#1252044
* bsc#1252047
* bsc#1252051
* bsc#1252052
* bsc#1252056
* bsc#1252060
* bsc#1252062
* bsc#1252064
* bsc#1252065
* bsc#1252067
* bsc#1252069
* bsc#1252070
* bsc#1252072
* bsc#1252074
* bsc#1252075
* bsc#1252076
* bsc#1252078
* bsc#1252079
* bsc#1252081
* bsc#1252082
Get the latest Linux and open source security news straight to your inbox.