Security update for the Linux Kernel
The SUSE Linux Enterprise 15 SP5 kernel was updated to fix various security issues The following security issues were fixed: - CVE-2025-38234: sched/rt: Fix race in push_rt_task (bsc#1246057). - CVE-2026-23103: ipvlan: Make the addrs_lock be per port (bsc#1257773). - CVE-2026-23243: RDMA/umad: Reject negative data_len in ib_umad_write (bsc#1259797). - CVE-2026-23272: netfilter: nf_tables: unconditionally bump set-nelems before insertion (bsc#1260009). - CVE-2026-23274: netfilter: xt_IDLETIMER: reject rev0 reuse of ALARM timer labels (bsc#1260005). - CVE-2026-23317: drm/vmwgfx: Return the correct value in vmw_translate_ptr functions (bsc#1260562). The following non security issues were fixed: - nvme-fc: use ctrl state getter (git-fixes bsc#1215492). - nvme-pci: fix queue unquiesce check on slot_reset (git-fixes). - nvme-pci: skip nvme_write_sq_db on empty rqlist (git-fixes). - PCI: dwc: ep: Return -ENOMEM for allocation failures (git-fixes). - PCI: Fix lock symmetry in pci_slot_unlock() (git-fixes). - PCI: Fix pci_slot_trylock() error handling (git-fixes). - PCI: tegra194: Fix duplicate PLL disable in pex_ep_event_pex_rst_assert() (git-fixes). - PCI/ACS: Fix 'pci=config_acs=' parameter (git-fixes). - x86/platform/uv: Handle deconfigured sockets (bsc#1260347).
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
The SUSE Linux Enterprise 15 SP5 kernel was updated to fix various security issues The following security issues were fixed: - CVE-2025-38234: sched/rt: Fix race in push_rt_task (bsc#1246057). - CVE-2026-23103: ipvlan: Make the addrs_lock be per port (bsc#1257773). - CVE-2026-23243: RDMA/umad: Reject negative data_len in ib_umad_write (bsc#1259797). - CVE-2026-23272: netfilter: nf_tables: unconditionally bump set-nelems before insertion (bsc#1260009). - CVE-2026-23274: netfilter: xt_IDLETIMER: reject rev0 reuse of ALARM timer labels (bsc#1260005). - CVE-2026-23317: drm/vmwgfx: Return the correct value in vmw_translate_ptr functions (bsc#1260562). The following non security issues were fixed: - nvme-fc: use ctrl state getter (git-fixes bsc#1215492). - nvme-pci: fix queue unquiesce check on slot_reset (git-fixes). - nvme-pci: skip nvme_write_sq_db on empty rqlist (git-fixes). - PCI: dwc: ep: Return -ENOMEM for allocation failures (git-fixes). - PCI: Fix lock symmetry in pci_slot_unlock() (git-fixes). - PCI: Fix pci_slot_trylock() error handling (git-fixes). - PCI: tegra194: Fix duplicate PLL disable in pex_ep_event_pex_rst_assert() (git-fixes). - PCI/ACS: Fix 'pci=config_acs=' parameter (git-fixes). - x86/platform/uv: Handle deconfigured sockets (bsc#1260347).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1215492
- https://bugzilla.suse.com/1246057
- https://bugzilla.suse.com/1256675
- https://bugzilla.suse.com/1257773
- https://bugzilla.suse.com/1259797
- https://bugzilla.suse.com/1260005
- https://bugzilla.suse.com/1260009
- https://bugzilla.suse.com/1260347
- https://bugzilla.suse.com/1260562
- https://www.suse.com/security/cve/CVE-2025-38234
- https://www.suse.com/security/cve/CVE-2025-68818
- https://www.suse.com/security/cve/CVE-2026-23103
- https://www.suse.com/security/cve/CVE-2026-23243
- https://www.suse.com/security/cve/CVE-2026-23272
- https://www.suse.com/security/cve/CVE-2026-23274
- https://www.suse.com/security/cve/CVE-2026-23317
- https://www.suse.com/support/update/announcement/2026/suse-su-20261606-1/