gpp_maybe
Security update for the linux kernel (live patch 15 for suse linux enterprise 15 sp7)
SUSE-SLE-Module-Live-Patching-15-SP7-2026-3779
This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.53.55 fixes various security issues: The following security issues were fixed: - CVE-2025-40204,CVE-2026-53224,CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1253437 bsc#1270023 bsc#1270024). - CVE-2026-43109: x86: shadow stacks: proper error handling for mmap lock (bsc#1269282). - CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267362). - CVE-2026-46242: eventpoll: fix ep_remove struct eventpoll / struct file UAF (bsc#1270300). - CVE-2026-46319: net/sched: act_ct: Only release RCU read lock after ct_ft (bsc#1268281). - CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269034). - CVE-2026-52956: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() (bsc#1272139). - CVE-2026-52972: crypto: af_alg - Cap AEAD AD length to 0x80000000 (bsc#1269196). - CVE-2026-53133: RDMA/umem: Fix truncation for block sizes >= 4G (bsc#1269822). - CVE-2026-53182: wifi: nl80211: reject oversized EMA RNR lists (bsc#1269885). - CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_hand (bsc#1271867). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (RefluXFS) (bsc#1271543).
-
Release DateAug 25 2026
-
ReferencesBugzilla: 1267362, 1268281, 1269034, 1269196, 1269282, 1269822, 1269885, 1270023, 1270024, 1270300, 1271543, 1271867, 1272139
CVEs: CVE-2026-43109, CVE-2026-46037, CVE-2026-46242, CVE-2026-46319, CVE-2026-52923, CVE-2026-52956, CVE-2026-52972, CVE-2026-53133, CVE-2026-53182, CVE-2026-53224, CVE-2026-53246, CVE-2026-64530, CVE-2026-64600 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.7 x86_64
-
Packageskernel-livepatch-6_4_0-150700_53_55-default
Kernel live patch modulekernel-livepatch-SLE15-SP7_Update_154-150700.2.1 lock rpm
Kernel live patch module4-150700.2.1 lock src
SUSE Linux Enterprise Live Patching 15.7 ppc64le
-
Packageskernel-livepatch-6_4_0-150700_53_55-default
Kernel live patch modulekernel-livepatch-SLE15-SP7_Update_154-150700.2.1 lock rpm
Kernel live patch module4-150700.2.1 lock src
SUSE Linux Enterprise Live Patching 15.7 s390x
-
Packageskernel-livepatch-6_4_0-150700_53_55-default
Kernel live patch modulekernel-livepatch-SLE15-SP7_Update_154-150700.2.1 lock rpm
Kernel live patch module4-150700.2.1 lock src