gpp_maybe
Security update for the linux kernel
SUSE-SUSE-MicroOS-5.2-2025-3613
The SUSE Linux Enterprise 15 SP3 RT kernel was updated to receive various security bugfixes. The following security bugs were fixed: - CVE-2022-49980: USB: gadget: fix use-after-free read in usb_udc_uevent() (bsc#1245110). - CVE-2022-50233: Bluetooth: eir: Fix using strlen with hdev->{dev_name,short_name} (bsc#1246968). - CVE-2022-50248: wifi: iwlwifi: mvm: fix double free on tx path (bsc#1249840). - CVE-2022-50252: igb: Do not free q_vector unless new one was allocated (bsc#1249846). - CVE-2022-50258: wifi: brcmfmac: Fix potential stack-out-of-bounds in brcmf_c_preinit_dcmds() (bsc#1249947). - CVE-2022-50381: md: fix a crash in mempool_free (bsc#1250257). - CVE-2022-50386: Bluetooth: L2CAP: Fix user-after-free (bsc#1250301). - CVE-2022-50401: nfsd: under NFSv4.1, fix double svc_xprt_put on rpc_create failure (bsc#1250140). - CVE-2022-50408: wifi: brcmfmac: fix use-after-free bug in brcmf_netdev_start_xmit() (bsc#1250391). - CVE-2022-50409: net: If sock is dead do not access sock's sk_wq in sk_stream_wait_memory (bsc#1250392). - CVE-2023-53178: mm: fix zswap writeback race condition (bsc#1249827). - CVE-2023-53321: wifi: mac80211_hwsim: drop short frames (bsc#1250313). - CVE-2023-53438: x86/MCE: Always save CS register on AMD Zen IF Poison errors (bsc#1250180). - CVE-2025-21969: kABI workaround for l2cap_conn changes (bsc#1240784). - CVE-2025-38184: tipc: fix null-ptr-deref when acquiring remote ip of ethernet bearer (bsc#1245956). - CVE-2025-38488: smb: client: fix use-after-free in crypt_message when using async crypto (bsc#1247239). - CVE-2025-38553: net/sched: Restrict conditions for adding duplicating netems to qdisc tree (bsc#1248255). - CVE-2025-38572: ipv6: reject malicious packets in ipv6_gso_segment() (bsc#1248399). - CVE-2025-38664: ice: Fix a null pointer dereference in ice_copy_and_init_pkg() (bsc#1248628). - CVE-2025-38685: fbdev: Fix vmalloc out-of-bounds write in fast_imageblit (bsc#1249220). - CVE-2025-38713: hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() (bsc#1249200). - CVE-2025-39751: ALSA: hda/ca0132: Fix buffer overflow in add_tuning_control (bsc#1249538). - CVE-2025-39823: KVM: x86: use array_index_nospec with indices that come from guest (bsc#1250002). The following non-security bugs were fixed: - Limit patch filenames to 100 characters (bsc#1249604). - Move pesign-obs-integration requirement from kernel-syms to kernel devel subpackage (bsc#1248108). - hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() (git-fixes). - kernel-binary: Another installation ordering fix (bsc#1241353). - kernel-source: Do not list mkspec and its inputs as sources (bsc#1250522). - kernel-subpackage-build: Decompress ghost file when compressed version exists (bsc#1249346) - kernel-syms.spec: Drop old rpm release number hack (bsc#1247172). - rpm/kernel-subpackage-spec: Skip brp-strip-debug to avoid file truncation (bsc#1246879) - rpm/mkspec: Fix missing kernel-syms-rt creation (bsc#1244337) - rpm: Configure KABI checkingness macro (bsc#1249186) - rpm: Drop support for kabi/arch/ignore-flavor (bsc#1249186) - rpm: Link arch-symbols script from scripts directory. - rpm: Link guards script from scripts directory. - use uniform permission checks for all mount propagation changes (git-fixes).
-
Release DateOct 16 2025
-
ReferencesBugzilla: 1250850, 1250853, 1250868, 1250890, 1250891, 1202700, 1203063, 1203332, 1204228, 1205128, 1206883, 1206884, 1209287, 1209291, 1210124, 1210584, 1213061, 1213666, 1215150, 1216976, 1220185, 1220186, 1240784, 1241353, 1243278, 1244337, 1245110, 1245956, 1246879, 1246968, 1247172, 1247239, 1248108, 1248255, 1248399, 1248628, 1248847, 1249186, 1249200, 1249220, 1249346, 1249538, 1249604, 1249664, 1249667, 1249700, 1249713, 1249716, 1249718, 1249734, 1249740, 1249743, 1249747, 1249808, 1249825, 1249827, 1249840, 1249846, 1249880, 1249885, 1249908, 1249918, 1249923, 1249930, 1249947, 1249949, 1250002, 1250009, 1250014, 1250041, 1250131, 1250132, 1250140, 1250180, 1250183, 1250187, 1250257, 1250269, 1250277, 1250301, 1250313, 1250391, 1250392, 1250394, 1250522, 1250764, 1250767, 1250774, 1250787, 1250790, 1250797, 1250799, 1250823, 1250847
CVEs: CVE-2022-50317, CVE-2022-50330, CVE-2022-50344, CVE-2021-4460, CVE-2022-2602, CVE-2022-2978, CVE-2022-36280, CVE-2022-43945, CVE-2022-49980, CVE-2022-50233, CVE-2022-50234, CVE-2022-50235, CVE-2022-50248, CVE-2022-50249, CVE-2022-50252, CVE-2022-50257, CVE-2022-50258, CVE-2022-50260, CVE-2022-50271, CVE-2022-50272, CVE-2022-50299, CVE-2022-50309, CVE-2022-50312, CVE-2022-50355, CVE-2022-50359, CVE-2022-50367, CVE-2022-50368, CVE-2022-50375, CVE-2022-50381, CVE-2022-50385, CVE-2022-50386, CVE-2022-50401, CVE-2022-50408, CVE-2022-50409, CVE-2022-50410, CVE-2022-50414, CVE-2022-50419, CVE-2022-50422, CVE-2022-50427, CVE-2022-50431, CVE-2022-50435, CVE-2022-50437, CVE-2022-50440, CVE-2022-50444, CVE-2022-50454, CVE-2022-50458, CVE-2022-50459, CVE-2022-50467, CVE-2023-1380, CVE-2023-28328, CVE-2023-31248, CVE-2023-3772, CVE-2023-39197, CVE-2023-42753, CVE-2023-53147, CVE-2023-53178, CVE-2023-53179, CVE-2023-53213, CVE-2023-53265, CVE-2023-53273, CVE-2023-53304, CVE-2023-53321, CVE-2023-53333, CVE-2023-53438, CVE-2023-53464, CVE-2023-53492, CVE-2024-26583, CVE-2024-26584, CVE-2024-58240, CVE-2025-21969, CVE-2025-38184, CVE-2025-38488, CVE-2025-38553, CVE-2025-38572, CVE-2025-38664, CVE-2025-38685, CVE-2025-38713, CVE-2025-39751, CVE-2025-39823 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Micro 5.2 x86_64
-
Packageskernel-rt
Kernel with PREEMPT_RT (realtime) supportkernel-source-rt5.3.18-150300.223.1 lock rpm lock nosrc
The Linux Kernel Sources5.3.18-150300.223.1 lock rpm lock src