gpp_maybe
Security update for the linux kernel (live patch 0 for sle 15 sp7)
SUSE-SLE-Module-Live-Patching-15-SP7-2025-3215
This update for the Linux Kernel 6.4.0-150700_51 fixes several issues. The following security issues were fixed: - CVE-2025-38087: net/sched: fix use-after-free in taprio_dev_notifier (bsc#1245504). - CVE-2025-21999: proc: fix UAF in proc_get_inode() (bsc#1242579). - CVE-2025-38001: net_sched: hfsc: Address reentrant enqueue adding class to eltree twice (bsc#1244235). - CVE-2025-21659: netdev: prevent accessing NAPI instances from another namespace (bsc#1236207). - CVE-2025-38000: sch_hfsc: Fix qlen accounting bug when using peek in hfsc_enqueue() (bsc#1245775). - CVE-2025-37890: net_sched: hfsc: Fix a UAF vulnerability in class with netem as child qdisc (bsc#1245791). - CVE-2025-21701: net: avoid race between device unregistration and ethnl ops (bsc#1245805). - CVE-2025-38212: ipc: fix to protect IPCS lookups using RCU (bsc#1246030).
-
Release DateSep 14 2025
-
ReferencesBugzilla: 1236207, 1242579, 1244235, 1245505, 1245775, 1245791, 1245805, 1246030, 1248108
CVEs: CVE-2025-21659, CVE-2025-21701, CVE-2025-21999, CVE-2025-37890, CVE-2025-38000, CVE-2025-38001, CVE-2025-38087, CVE-2025-38212 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.7 s390x
-
Packageskernel-livepatch-6_4_0-150700_51-default
Kernel live patch modulekernel-livepatch-SLE15-SP7_Update_03-150700.3.6.2 lock rpm
Kernel live patch module3-150700.3.6.2 lock src
SUSE Linux Enterprise Live Patching 15.7 x86_64
-
Packageskernel-livepatch-6_4_0-150700_51-default
Kernel live patch modulekernel-livepatch-SLE15-SP7_Update_03-150700.3.6.2 lock rpm
Kernel live patch module3-150700.3.6.2 lock src
SUSE Linux Enterprise Live Patching 15.7 ppc64le
-
Packageskernel-livepatch-6_4_0-150700_51-default
Kernel live patch modulekernel-livepatch-SLE15-SP7_Update_03-150700.3.6.2 lock rpm
Kernel live patch module3-150700.3.6.2 lock src