gpp_maybe Security update for the linux kernel (live patch 55 for suse linux enterprise 15 sp4)
SUSE-SLE-Module-Live-Patching-15-SP4-2026-4478


This update for the SUSE Linux Enterprise Kernel 5.14.21-150400.24.222 fixes various security issues: The following security issues were fixed: - CVE-2026-46116: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (bsc#1267370). - CVE-2026-63888: scsi: target: iscsi: Fix CRC overread and double-free in iscsit_handle_text_cmd() (bsc#1272391). - CVE-2026-63917: ip6: vti: Use ip6_tnl.net in vti6_changelink() (bsc#1273015). - CVE-2026-63920: ipv6: validate extension header length before copying to cmsg (bsc#1273012). - CVE-2026-63921: ip6: vti: Use ip6_tnl.net in vti6_siocdevprivate() (bsc#1273011). - CVE-2026-63971: sctp: fix race between sctp_wait_for_connect and peeloff (bsc#1272679). - CVE-2026-63994: tunnels: load network headers after skb_cow() in iptunnel_pmtud_build_icmp[v6]() (bsc#1273051). - CVE-2026-64011: nfc: llcp: Fix use-after-free in llcp_sock_release() (bsc#1276493). - CVE-2026-64114: ipv4: raw: reject IP_HDRINCL packets with ihl < 5 (bsc#1273833). - CVE-2026-64189: netfilter: ipset: fix race between dump and ip_set_list resize (bsc#1272208). - CVE-2026-68121: pppoe: reload header pointer after dev_hard_header() (bsc#1275228). - CVE-2026-68202: ALSA: seq: close a re-opened queue timer in the destructor (bsc#1275162). - CVE-2026-74394: RDMA/srpt: fix integer overflow in immediate data length check (bsc#1277409).


cloud_download Downloads

SUSE Linux Enterprise Live Patching 15.4 ppc64le
SUSE Linux Enterprise Live Patching 15.4 s390x
SUSE Linux Enterprise Live Patching 15.4 x86_64