FlawAtlas
Search the atlas
SUSE-SU-2026:21496-1 Not scored

Security update for the Linux Kernel (Live Patch 8 for SUSE Linux Enterprise Micro 6.0)

This update for the SUSE Linux Enterprise Kernel 6.4.0-30.1 fixes various security issues The following security issues were fixed: - CVE-2025-38375: virtio-net: ensure the received length does not exceed allocated size (bsc#1258073). - CVE-2025-39977: futex: Prevent use-after-free during requeue-PI (bsc#1252048). - CVE-2025-71066: net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change (bsc#1258005). - CVE-2026-23004: dst: fix races in rt6_uncached_list_del() and rt_del_uncached_list() (bsc#1258655). - CVE-2026-23204: net/sched: cls_u32: use skb_header_pointer_careful() (bsc#1259126). - CVE-2026-31431: crypto: algif_aead - Revert to operating out-of-place (bsc#1263689).

Exploit probability Not scored
Published May 5, 2026
Required by Not available
Last source change May 8, 2026

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2026:21496-1

This update for the SUSE Linux Enterprise Kernel 6.4.0-30.1 fixes various security issues The following security issues were fixed: - CVE-2025-38375: virtio-net: ensure the received length does not exceed allocated size (bsc#1258073). - CVE-2025-39977: futex: Prevent use-after-free during requeue-PI (bsc#1252048). - CVE-2025-71066: net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change (bsc#1258005). - CVE-2026-23004: dst: fix races in rt6_uncached_list_del() and rt_del_uncached_list() (bsc#1258655). - CVE-2026-23204: net/sched: cls_u32: use skb_header_pointer_careful() (bsc#1259126). - CVE-2026-31431: crypto: algif_aead - Revert to operating out-of-place (bsc#1263689).

View original source

05 / REFERENCES

Further evidence