Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 568
Alerts This Week
Warning Icon 1 568

SUSE Cryptsetup Moderate Keyring Issues Fix Advisory 2026-22645-1

suse
Calendar Grey July 16, 2026
Scroller Suse
SUSE announces a moderate security update for cryptsetup addressing keyring issues and usability improvements.
A security update for cryptsetup in SUSE Linux Enterprise Server 16.0 addresses key management issues and includes several improvements and regression tests, requiring installation...

Summary

## This update for cryptsetup fixes the following issues: Changes in cryptsetup: * Fix for (bsc#1270254) to avoid undesired pinning of all volume keys (via the thread keyring) through the caller's credentials when the kernel opens a file. This is due to the refactoring in kernel commit a28d893eb327 ("md: port block device access to file") that accidentally causes the caller's thread keyring to be kept alive long beyond the caller's lifetime, the kernel part is tracked in (bsc#1270252). * Add keyring key type. [b6fb6fc0] * Load volume keys in intermediary keyring linked in thread keyring. [413a3dd0] * Use unique intermediary keyring name per device. [04ef07a7] * Add regression tests. [bfcb0c38, bb5e8e9f, e6573494, aa214c09] ## Patch Instructions:

References

* bsc#1270252

* bsc#1270254

Affected Products:

* SUSE Linux Enterprise Server 16.0

* SUSE Linux Enterprise Server for SAP applications 16.0

An update that has two fixes can now be installed.

##

* https://bugzilla.suse.com/show_bug.cgi?id=1270252

* https://bugzilla.suse.com/show_bug.cgi?id=1270254

Severity
moderate
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:22645-1
Release Date: 2026-07-13T16:23:16Z
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.