Security update for the Linux Kernel (Live Patch 9 for SUSE Linux Enterprise 15 SP7)
This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.53.31 fixes various security issues The following security issues were fixed: - CVE-2026-23074: net/sched: Enforce that teql can only be used as root qdisc (bsc#1258051). - CVE-2026-23111: netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate() (bsc#1258183). - CVE-2026-23209: macvlan: fix error recovery in macvlan_common_newlink() (bsc#1258784). The following non security issue was fixed: - Fix NULL pointer dereference in smb2_query_server_interfaces Livepatch for to restore a null check of server->ops->query_server_interfaces that was dropped by mistake. (bsc#1259896 bsc#1259962).
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.53.31 fixes various security issues The following security issues were fixed: - CVE-2026-23074: net/sched: Enforce that teql can only be used as root qdisc (bsc#1258051). - CVE-2026-23111: netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate() (bsc#1258183). - CVE-2026-23209: macvlan: fix error recovery in macvlan_common_newlink() (bsc#1258784). The following non security issue was fixed: - Fix NULL pointer dereference in smb2_query_server_interfaces Livepatch for to restore a null check of server->ops->query_server_interfaces that was dropped by mistake. (bsc#1259896 bsc#1259962).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1258051
- https://bugzilla.suse.com/1258183
- https://bugzilla.suse.com/1258784
- https://bugzilla.suse.com/1259896
- https://bugzilla.suse.com/1259962
- https://www.suse.com/security/cve/CVE-2026-23074
- https://www.suse.com/security/cve/CVE-2026-23111
- https://www.suse.com/security/cve/CVE-2026-23209
- https://www.suse.com/support/update/announcement/2026/suse-su-20261262-1/