gpp_maybe
Security update for the linux kernel
SUSE-SUSE-MicroOS-5.2-2026-350
The SUSE Linux Enterprise 15 SP3 RT kernel was updated to fix various security issues The following security issues were fixed: - CVE-2022-50282: chardev: fix error handling in cdev_device_add() (bsc#1249739). - CVE-2022-50630: mm: hugetlb: fix UAF in hugetlb_handle_userfault (bsc#1254785). - CVE-2022-50700: wifi: ath10k: Delay the unmapping of the buffer (bsc#1255576). - CVE-2022-50717: nvmet-tcp: add bounds check on Transfer Tag (bsc#1255844). - CVE-2022-50726: net/mlx5: Fix possible use-after-free in async command interface (bsc#1256040). - CVE-2022-50736: RDMA/siw: Fix immediate work request flush to completion queue (bsc#1256137). - CVE-2022-50756: nvme-core: replace ctrl page size with a macro (bsc#1256216). - CVE-2023-53215: sched/fair: Don't balance task to its current running CPU (bsc#1250397). - CVE-2023-53254: cacheinfo: Fix shared_cpu_map to handle shared caches at different levels (bsc#1249871). - CVE-2023-53761: USB: usbtmc: Fix direction for 0-length ioctl control messages (bsc#1255002). - CVE-2023-53781: smc: Fix use-after-free in tcp_write_timer_handler() (bsc#1254751). - CVE-2023-54142: gtp: Fix use-after-free in __gtp_encap_destroy() (bsc#1256095). - CVE-2023-54168: RDMA/mlx4: Prevent shift wrapping in set_user_sq_size() (bsc#1256053). - CVE-2023-54243: netfilter: ebtables: fix table blob use-after-free (bsc#1255908). - CVE-2025-38068: crypto: lzo - Fix compression buffer overrun (bsc#1245210). - CVE-2025-38159: wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds (bsc#1245751). - CVE-2025-40019: crypto: essiv - Check ssize for decryption and in-place encryption (bsc#1252678). - CVE-2025-40215: kABI: xfrm: delete x->tunnel as we delete x (bsc#1254959). - CVE-2025-40220: fuse: fix livelock in synchronous file put from fuseblk workers (bsc#1254520). - CVE-2025-40233: ocfs2: clear extent cache after moving/defragmenting extents (bsc#1254813). - CVE-2025-40277: drm/vmwgfx: Validate command header size against (bsc#1254894). - CVE-2025-40280: tipc: Fix use-after-free in tipc_mon_reinit_self() (bsc#1254847). - CVE-2025-40331: sctp: Prevent TOCTOU out-of-bounds write (bsc#1254615). - CVE-2025-68813: ipvs: fix ipv4 null-ptr-deref in route error path (bsc#1256641). - CVE-2025-71120: SUNRPC: svcauth_gss: avoid NULL deref on zero length gss_token in gss_read_proxy_verf (bsc#1256779).
-
Release DateJan 30 2026
-
ReferencesBugzilla: 1065729, 1196823, 1204957, 1206889, 1207051, 1207088, 1207653, 1209799, 1213653, 1213969, 1225109, 1228015, 1245210, 1245751, 1249739, 1249871, 1250397, 1252678, 1254520, 1254592, 1254614, 1254615, 1254632, 1254634, 1254686, 1254711, 1254751, 1254763, 1254775, 1254785, 1254792, 1254813, 1254847, 1254851, 1254894, 1254902, 1254959, 1255002, 1255565, 1255576, 1255607, 1255609, 1255636, 1255844, 1255901, 1255908, 1255919, 1256040, 1256045, 1256048, 1256049, 1256053, 1256056, 1256064, 1256095, 1256127, 1256132, 1256136, 1256137, 1256143, 1256154, 1256165, 1256194, 1256203, 1256207, 1256208, 1256216, 1256230, 1256242, 1256248, 1256333, 1256344, 1256353, 1256426, 1256641, 1256779
CVEs: CVE-2022-0854, CVE-2022-48853, CVE-2022-50282, CVE-2022-50623, CVE-2022-50630, CVE-2022-50635, CVE-2022-50640, CVE-2022-50641, CVE-2022-50644, CVE-2022-50646, CVE-2022-50649, CVE-2022-50668, CVE-2022-50671, CVE-2022-50678, CVE-2022-50700, CVE-2022-50703, CVE-2022-50709, CVE-2022-50717, CVE-2022-50726, CVE-2022-50730, CVE-2022-50731, CVE-2022-50733, CVE-2022-50736, CVE-2022-50742, CVE-2022-50744, CVE-2022-50756, CVE-2022-50758, CVE-2022-50767, CVE-2022-50814, CVE-2022-50821, CVE-2022-50823, CVE-2022-50827, CVE-2022-50828, CVE-2022-50840, CVE-2022-50843, CVE-2022-50850, CVE-2022-50870, CVE-2022-50876, CVE-2022-50880, CVE-2022-50884, CVE-2022-50889, CVE-2023-23559, CVE-2023-4132, CVE-2023-53215, CVE-2023-53254, CVE-2023-53761, CVE-2023-53781, CVE-2023-54019, CVE-2023-54024, CVE-2023-54110, CVE-2023-54142, CVE-2023-54168, CVE-2023-54170, CVE-2023-54242, CVE-2023-54243, CVE-2023-54270, CVE-2025-38068, CVE-2025-38159, CVE-2025-40019, CVE-2025-40215, CVE-2025-40220, CVE-2025-40233, CVE-2025-40256, CVE-2025-40277, CVE-2025-40280, CVE-2025-40331, CVE-2025-68813, CVE-2025-71120 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Micro 5.2 x86_64
-
Packageskernel-rt
Kernel with PREEMPT_RT (realtime) supportkernel-source-rt5.3.18-150300.232.1 lock rpm lock nosrc
The Linux Kernel Sources5.3.18-150300.232.1 lock rpm lock src