Security update for the Linux Kernel
The SUSE Linux Enterprise 11 SP4 kernel was updated to fix various security issues The following security issues were fixed: - CVE-2022-50116: Update config files. Disable N_GSM (bsc#1244824 jsc#PED-8240). - CVE-2022-50252: igb: Do not free q_vector unless new one was allocated (bsc#1249846). - CVE-2022-50381: MD: add rdev reference for super write (bsc#1250257). - CVE-2022-50409: net: If sock is dead don't access sock's sk_wq in sk_stream_wait_memory (bsc#1250392). - CVE-2023-53282: scsi: lpfc: Fix use-after-free KFENCE violation during sysfs firmware write (bsc#1250311). - CVE-2023-53322: scsi: qla2xxx: Wait for io return on terminate rport (bsc#1250323). - CVE-2023-53365: ip6mr: Fix skb_under_panic in ip6mr_cache_report() (bsc#1249988). - CVE-2023-53395: ACPICA: Add AML_NO_OPERAND_RESOLVE flag to Timer (bsc#1250358). - CVE-2023-53705: ipv6: Fix out-of-bounds access in ipv6_find_tlv() (bsc#1252554). - CVE-2023-53722: md: raid1: fix potential OOB in raid1_remove_disk() (bsc#1252499). - CVE-2025-38352: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() (bsc#1246911). - CVE-2025-38498: do_change_type(): refuse to operate on unmounted/not ours mounts (bsc#1247374). - CVE-2025-38617: net/packet: fix a race in packet_set_ring() and packet_notifier() (bsc#1248621). - CVE-2025-38685: fbdev: Fix vmalloc out-of-bounds write in fast_imageblit (bsc#1249220). - CVE-2025-38713: hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() (bsc#1249200). - CVE-2025-39973: i40e: add validation for ring_len param (bsc#1252035).
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
The SUSE Linux Enterprise 11 SP4 kernel was updated to fix various security issues The following security issues were fixed: - CVE-2022-50116: Update config files. Disable N_GSM (bsc#1244824 jsc#PED-8240). - CVE-2022-50252: igb: Do not free q_vector unless new one was allocated (bsc#1249846). - CVE-2022-50381: MD: add rdev reference for super write (bsc#1250257). - CVE-2022-50409: net: If sock is dead don't access sock's sk_wq in sk_stream_wait_memory (bsc#1250392). - CVE-2023-53282: scsi: lpfc: Fix use-after-free KFENCE violation during sysfs firmware write (bsc#1250311). - CVE-2023-53322: scsi: qla2xxx: Wait for io return on terminate rport (bsc#1250323). - CVE-2023-53365: ip6mr: Fix skb_under_panic in ip6mr_cache_report() (bsc#1249988). - CVE-2023-53395: ACPICA: Add AML_NO_OPERAND_RESOLVE flag to Timer (bsc#1250358). - CVE-2023-53705: ipv6: Fix out-of-bounds access in ipv6_find_tlv() (bsc#1252554). - CVE-2023-53722: md: raid1: fix potential OOB in raid1_remove_disk() (bsc#1252499). - CVE-2025-38352: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() (bsc#1246911). - CVE-2025-38498: do_change_type(): refuse to operate on unmounted/not ours mounts (bsc#1247374). - CVE-2025-38617: net/packet: fix a race in packet_set_ring() and packet_notifier() (bsc#1248621). - CVE-2025-38685: fbdev: Fix vmalloc out-of-bounds write in fast_imageblit (bsc#1249220). - CVE-2025-38713: hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() (bsc#1249200). - CVE-2025-39973: i40e: add validation for ring_len param (bsc#1252035).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1078788
- https://bugzilla.suse.com/1209291
- https://bugzilla.suse.com/1213666
- https://bugzilla.suse.com/1244824
- https://bugzilla.suse.com/1246911
- https://bugzilla.suse.com/1247374
- https://bugzilla.suse.com/1248621
- https://bugzilla.suse.com/1249200
- https://bugzilla.suse.com/1249220
- https://bugzilla.suse.com/1249604
- https://bugzilla.suse.com/1249808
- https://bugzilla.suse.com/1249846
- https://bugzilla.suse.com/1249880
- https://bugzilla.suse.com/1249988
- https://bugzilla.suse.com/1250257
- https://bugzilla.suse.com/1250311
- https://bugzilla.suse.com/1250323
- https://bugzilla.suse.com/1250358
- https://bugzilla.suse.com/1250392
- https://bugzilla.suse.com/1250522
- https://bugzilla.suse.com/1250742
- https://bugzilla.suse.com/1252035
- https://bugzilla.suse.com/1252499
- https://bugzilla.suse.com/1252554
- https://bugzilla.suse.com/963449
- https://www.suse.com/security/cve/CVE-2022-50116
- https://www.suse.com/security/cve/CVE-2022-50252
- https://www.suse.com/security/cve/CVE-2022-50272
- https://www.suse.com/security/cve/CVE-2022-50381
- https://www.suse.com/security/cve/CVE-2022-50409
- https://www.suse.com/security/cve/CVE-2023-28328
- https://www.suse.com/security/cve/CVE-2023-3772
- https://www.suse.com/security/cve/CVE-2023-53147
- https://www.suse.com/security/cve/CVE-2023-53282
- https://www.suse.com/security/cve/CVE-2023-53322
- https://www.suse.com/security/cve/CVE-2023-53365
- https://www.suse.com/security/cve/CVE-2023-53395
- https://www.suse.com/security/cve/CVE-2023-53705
- https://www.suse.com/security/cve/CVE-2023-53722
- https://www.suse.com/security/cve/CVE-2025-38352
- https://www.suse.com/security/cve/CVE-2025-38498
- https://www.suse.com/security/cve/CVE-2025-38617
- https://www.suse.com/security/cve/CVE-2025-38685
- https://www.suse.com/security/cve/CVE-2025-38713
- https://www.suse.com/security/cve/CVE-2025-39973
- https://www.suse.com/support/update/announcement/2025/suse-su-20254315-1/