Security update for the Linux Kernel (Live Patch 1 for SUSE Linux Enterprise 16)
This update for the SUSE Linux Enterprise Kernel 6.12.0-160000.6.1 fixes various security issues: The following security issues were fixed: - CVE-2026-23240: tls: Fix race condition in tls_sw_cancel_work_tx() (bsc#1262404). - CVE-2026-31738: vxlan: validate ND option lengths in vxlan_na_create (bsc#1264060). - CVE-2026-43038: ipv6: icmp: clear skb2->cb[] in ip6_err_gen_icmpv6_unreach() (bsc#1271648). - CVE-2026-46113: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN (bsc#1266970). - CVE-2026-53359: KVM: x86: Fix shadow paging use-after-free due to unexpected role (bsc#1270060). - CVE-2026-53366: ipv4: account for fraggap on the paged allocation path (bsc#1271370).
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for the SUSE Linux Enterprise Kernel 6.12.0-160000.6.1 fixes various security issues: The following security issues were fixed: - CVE-2026-23240: tls: Fix race condition in tls_sw_cancel_work_tx() (bsc#1262404). - CVE-2026-31738: vxlan: validate ND option lengths in vxlan_na_create (bsc#1264060). - CVE-2026-43038: ipv6: icmp: clear skb2->cb[] in ip6_err_gen_icmpv6_unreach() (bsc#1271648). - CVE-2026-46113: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN (bsc#1266970). - CVE-2026-53359: KVM: x86: Fix shadow paging use-after-free due to unexpected role (bsc#1270060). - CVE-2026-53366: ipv4: account for fraggap on the paged allocation path (bsc#1271370).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1262404
- https://bugzilla.suse.com/1264060
- https://bugzilla.suse.com/1266970
- https://bugzilla.suse.com/1270060
- https://bugzilla.suse.com/1271370
- https://bugzilla.suse.com/1271648
- https://www.suse.com/security/cve/CVE-2026-23240
- https://www.suse.com/security/cve/CVE-2026-31738
- https://www.suse.com/security/cve/CVE-2026-43038
- https://www.suse.com/security/cve/CVE-2026-46113
- https://www.suse.com/security/cve/CVE-2026-53359
- https://www.suse.com/security/cve/CVE-2026-53366
- https://www.suse.com/support/update/announcement/2026/suse-su-202622993-1/