SUSE-SU-2025:02848-1

Advisory lineage Upstream: 20 Downstream: 0
Published: 18 Aug 2025, 15:55
Last modified:04 Feb 2026, 02:20

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

18 Aug 2025, 15:55
Published
Vulnerability first disclosed
04 Feb 2026, 02:20
Last Modified
Vulnerability information updated

Description

Security update for the Linux Kernel The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various security bugfixes. The following security bugs were fixed: - CVE-2022-50211: md-raid10: fix KASAN warning (bsc#1245140). - CVE-2023-2176: Fixed an out-of-boundary read in compare_netdev_and_ip in drivers/infiniband/core/cma.c in RDMA (bsc#1210629). - CVE-2023-52923: netfilter: nf_tables: split async and sync catchall in two functions (bsc#1236104). - CVE-2023-52927: netfilter: allow exp not to be removed in nf_ct_find_expectation (bsc#1239644). - CVE-2024-53057: net/sched: stop qdisc_tree_reduce_backlog on TC_H_ROOT (bsc#1233551). - CVE-2024-53164: net: sched: fix ordering of qlen adjustment (bsc#1234863). - CVE-2025-37797: net_sched: hfsc: Fix a UAF vulnerability in class handling (bsc#1242417). - CVE-2025-38079: crypto: algif_hash - fix double free in hash_accept (bsc#1245217). - CVE-2025-38181: calipso: Fix null-ptr-deref in calipso_req_{set,del}attr() (bsc#1246000). - CVE-2025-38200: i40e: fix MMIO write access to an invalid page in i40e_clear_hw (bsc#1246045). - CVE-2025-38212: ipc: fix to protect IPCS lookups using RCU (bsc#1246029). - CVE-2025-38213: vgacon: Add check for vc_origin address range in vgacon_scroll() (bsc#1246037). - CVE-2025-38257: s390/pkey: Prevent overflow in size calculation for memdup_user() (bsc#1246186). - CVE-2025-38494: HID: core: do not bypass hid_hw_raw_request (bsc#1247349). - CVE-2025-38495: HID: core: ensure the allocated report buffer can contain the reserved report ID (bsc#1247348). - CVE-2025-38497: usb: gadget: configfs: Fix OOB read on empty string write (bsc#1247347).

Affected Systems

  • susekernel-64kb&distro=SUSE Enterprise Storage 7.1

    < 5.3.18-150300.59.215.1

  • susekernel-64kb&distro=SUSE Linux Enterprise Server 15 SP3-LTSS

    < 5.3.18-150300.59.215.1

  • susekernel-default-base&distro=SUSE Enterprise Storage 7.1

    < 5.3.18-150300.59.215.1.150300.18.128.1

  • susekernel-default-base&distro=SUSE Linux Enterprise Micro 5.1

    < 5.3.18-150300.59.215.1.150300.18.128.1

  • susekernel-default-base&distro=SUSE Linux Enterprise Micro 5.2

    < 5.3.18-150300.59.215.1.150300.18.128.1

  • susekernel-default-base&distro=SUSE Linux Enterprise Server 15 SP3-LTSS

    < 5.3.18-150300.59.215.1.150300.18.128.1

  • susekernel-default&distro=SUSE Enterprise Storage 7.1

    < 5.3.18-150300.59.215.1

  • susekernel-default&distro=SUSE Linux Enterprise High Availability Extension 15 SP3

    < 5.3.18-150300.59.215.1

  • susekernel-default&distro=SUSE Linux Enterprise Live Patching 15 SP3

    < 5.3.18-150300.59.215.1

  • susekernel-default&distro=SUSE Linux Enterprise Micro 5.1

    < 5.3.18-150300.59.215.1

  • susekernel-default&distro=SUSE Linux Enterprise Micro 5.2

    < 5.3.18-150300.59.215.1

  • susekernel-default&distro=SUSE Linux Enterprise Server 15 SP3-LTSS

    < 5.3.18-150300.59.215.1

  • susekernel-docs&distro=SUSE Enterprise Storage 7.1

    < 5.3.18-150300.59.215.1

  • susekernel-docs&distro=SUSE Linux Enterprise Server 15 SP3-LTSS

    < 5.3.18-150300.59.215.1

  • susekernel-livepatch-SLE15-SP3_Update_60&distro=SUSE Linux Enterprise Live Patching 15 SP3

    < 1-150300.7.3.1

  • susekernel-obs-build&distro=SUSE Enterprise Storage 7.1

    < 5.3.18-150300.59.215.1

  • susekernel-obs-build&distro=SUSE Linux Enterprise Server 15 SP3-LTSS

    < 5.3.18-150300.59.215.1

  • susekernel-preempt&distro=SUSE Enterprise Storage 7.1

    < 5.3.18-150300.59.215.1

  • susekernel-preempt&distro=SUSE Linux Enterprise Server 15 SP3-LTSS

    < 5.3.18-150300.59.215.1

  • susekernel-source&distro=SUSE Enterprise Storage 7.1

    < 5.3.18-150300.59.215.1

  • susekernel-source&distro=SUSE Linux Enterprise Server 15 SP3-LTSS

    < 5.3.18-150300.59.215.1

  • susekernel-syms&distro=SUSE Enterprise Storage 7.1

    < 5.3.18-150300.59.215.1

  • susekernel-syms&distro=SUSE Linux Enterprise Server 15 SP3-LTSS

    < 5.3.18-150300.59.215.1

  • susekernel-zfcpdump&distro=SUSE Linux Enterprise Server 15 SP3-LTSS

    < 5.3.18-150300.59.215.1

References (41)