gpp_maybe
Security update for the linux kernel (live patch 1 for suse linux enterprise 15 sp7 rt)
SUSE-SLE-Module-Live-Patching-15-SP7-2026-940
This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.7.3 fixes various security issues The following security issues were fixed: - CVE-2025-38159: wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds (bsc#1257629). - CVE-2025-38488: smb: client: fix use-after-free in crypt_message when using async crypto (bsc#1247240). - CVE-2025-40258: mptcp: fix race condition in mptcp_schedule_work() (bsc#1255053). - CVE-2025-40284: Bluetooth: MGMT: cancel mesh send timer when hdev removed (bsc#1257669). - CVE-2025-40297: net: bridge: fix use-after-free due to MST port state bypass (bsc#1255895). - CVE-2025-68284: libceph: prevent potential out-of-bounds writes in handle_auth_session_key() (bsc#1255378). - CVE-2025-68285: libceph: fix potential use-after-free in have_mon_and_osd_map() (bsc#1255402). - CVE-2025-68813: ipvs: fix ipv4 null-ptr-deref in route error path (bsc#1256644). - CVE-2025-71085: ipv6: BUG() in pskb_expand_head() as part of calipso_skbuff_setattr() (bsc#1256624).
-
Release DateMar 22 2026
-
ReferencesBugzilla: 1247240, 1255053, 1255378, 1255402, 1255895, 1256624, 1256644, 1257629, 1257669
CVEs: CVE-2025-38159, CVE-2025-38488, CVE-2025-40258, CVE-2025-40284, CVE-2025-40297, CVE-2025-68284, CVE-2025-68285, CVE-2025-68813, CVE-2025-71085 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.7 x86_64
-
Packageskernel-livepatch-6_4_0-150700_7_3-rt
Kernel live patch modulekernel-livepatch-SLE15-SP7-RT_Update_112-150700.2.1 lock rpm
Kernel live patch module12-150700.2.1 lock src