Skip to main content

Security update for the Linux Kernel

0
High
Published: 02/27/2026 (02/27/2026, 13:03:55 UTC)
Source: GCVE Database
Vendor/Project: SUSE Product Security Team
Product: SUSE

Description

The SUSE Linux Enterprise 16.0 and SL MIxro 6.2 kernel was updated to fix various security issues The following security issues were fixed: - CVE-2025-40147: blk-throttle: fix access race during throttle policy activation (bsc#1253344). - CVE-2025-40257: mptcp: fix a race in mptcp_pm_del_add_timer() (bsc#1254842). - CVE-2025-40259: scsi: sg: Do not sleep in atomic context (bsc#1254845). - CVE-2025-40261: nvme: nvme-fc: Ensure ->ioerr_work is cancelled in nvme_fc_delete_ctrl() (bsc#1254839). - CVE-2025-40363: net: ipv6: fix field-spanning memcpy warning in AH output (bsc#1255102). - CVE-2025-68174: amd/amdkfd: enhance kfd process check in switch partition (bsc#1255327). - CVE-2025-68178: blk-cgroup: fix possible deadlock while configuring policy (bsc#1255266). - CVE-2025-68188: tcp: use dst_dev_rcu() in tcp_fastopen_active_disable_ofo_check() (bsc#1255269). - CVE-2025-68200: bpf: Add bpf_prog_run_data_pointers() (bsc#1255241). - CVE-2025-68211: ksm: use range-walk function to jump over holes in scan_get_next_rmap_item (bsc#1255319). - CVE-2025-68218: nvme-multipath: fix lockdep WARN due to partition scan work (bsc#1255245). - CVE-2025-68227: mptcp: Fix proto fallback detection with BPF (bsc#1255216). - CVE-2025-68241: ipv4: route: Prevent rt_bind_exception() from rebinding stale fnhe (bsc#1255157). - CVE-2025-68245: net: netpoll: fix incorrect refcount handling causing incorrect cleanup (bsc#1255268). - CVE-2025-68261: ext4: add i_data_sem protection in ext4_destroy_inline_data_nolock() (bsc#1255164). - CVE-2025-68296: drm, fbcon, vga_switcheroo: Avoid race condition in fbcon setup (bsc#1255128). - CVE-2025-68297: ceph: fix crash in process_v2_sparse_read() for encrypted directories (bsc#1255403). - CVE-2025-68320: lan966x: Fix sleeping in atomic context (bsc#1255172). - CVE-2025-68325: net/sched: sch_cake: Fix incorrect qlen reduction in cake_drop (bsc#1255417). - CVE-2025-68337: jbd2: avoid bug_on in jbd2_journal_get_create_access() when file system corrupted (bsc#1255482). - CVE-2025-68341: veth: reduce XDP no_direct return section to fix race (bsc#1255506). - CVE-2025-68348: block: fix memory leak in __blkdev_issue_zero_pages (bsc#1255694). - CVE-2025-68349: NFSv4/pNFS: Clear NFS_INO_LAYOUTCOMMIT in pnfs_mark_layout_stateid_invalid (bsc#1255544). - CVE-2025-68356: gfs2: Prevent recursive memory reclaim (bsc#1255593). - CVE-2025-68359: btrfs: fix double free of qgroup record after failure to add delayed ref head (bsc#1255542). - CVE-2025-68360: wifi: mt76: wed: use proper wed reference in mt76 wed driver callabacks (bsc#1255536). - CVE-2025-68361: erofs: limit the level of fs stacking for file-backed mounts (bsc#1255526). - CVE-2025-68366: nbd: defer config unlock in nbd_genl_connect (bsc#1255622). - CVE-2025-68367: macintosh/mac_hid: fix race condition in mac_hid_toggle_emumouse (bsc#1255547). - CVE-2025-68368: md: init bioset in mddev_init (bsc#1255527). - CVE-2025-68372: nbd: defer config put in recv_work (bsc#1255537). - CVE-2025-68374: md: fix rcu protection in md_wakeup_thread (bsc#1255530). - CVE-2025-68376: coresight: ETR: Fix ETR buffer use-after-free issue (bsc#1255529). - CVE-2025-68379: RDMA/rxe: Fix null deref on srq->rq.queue after resize failure (bsc#1255695). - CVE-2025-68735: drm/panthor: Prevent potential UAF in group creation (bsc#1255811). - CVE-2025-68741: scsi: qla2xxx: Fix improper freeing of purex item (bsc#1255703). - CVE-2025-68743: mshv: Fix create memory region overlap check (bsc#1255708). - CVE-2025-68764: NFS: Automounted filesystems should inherit ro,noexec,nodev,sync flags (bsc#1255930). - CVE-2025-68768: inet: frags: add inet_frag_queue_flush() (bsc#1256579). - CVE-2025-68770: bnxt_en: Fix XDP_TX path (bsc#1256584). - CVE-2025-68771: ocfs2: fix kernel BUG in ocfs2_find_victim_chain (bsc#1256582). - CVE-2025-68775: net/handshake: duplicate handshake cancellations leak socket (bsc#1256665). - CVE-2025-68776: net/hsr: fix NULL pointer dereference in prp_get_untagged_frame() (bsc#1256659). - CVE-2025-68784: xfs: fix a UAF problem in xattr repair (bsc#1256793). - CVE-2025-68788: fsnotify: do not generate ACCESS/MODIFY events on child for special files (bsc#1256638). - CVE-2025-68792: tpm2-sessions: Fix out of range indexing in name_size (bsc#1256656). - CVE-2025-68795: ethtool: Avoid overflowing userspace buffer on stats query (bsc#1256688). - CVE-2025-68798: perf/x86/amd: Check event before enable to avoid GPF (bsc#1256689). - CVE-2025-68799: caif: fix integer underflow in cffrml_receive() (bsc#1256643). - CVE-2025-68800: mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats (bsc#1256646). - CVE-2025-68801: mlxsw: spectrum_router: Fix neighbour use-after-free (bsc#1256653). - CVE-2025-68803: NFSD: NFSv4 file creation neglects setting ACL (bsc#1256770). - CVE-2025-68811: svcrdma: use rc_pageoff for memcpy byte offset (bsc#1256677). - CVE-2025-68813: ipvs: fix ipv4 null-ptr-deref in route error path (bsc#1256641). - CVE-2025-68814: io_uring: fix filename l

Affected software

Affected versions
SUSEaarch64cluster-md-kmp-64kb-6.12.0-160000.26.1.aarch64cluster-md-kmp-azure-6.12.0-160000.26.1.aarch64cluster-md-kmp-default-6.12.0-160000.26.1.aarch64

Technical Details

Gcve Source
db.gcve.eu
Csaf Category
csaf_security_advisory
Csaf Version
2.0
Publisher
SUSE Product Security Team
Advisory Id
openSUSE-SU-2026:20287-1
Cve Count
205
Additional Cves
["CVE-2025-37744","CVE-2025-37751","CVE-2025-37841","CVE-2025-37845","CVE-2025-37904","CVE-2025-37955","CVE-2025-38243","CVE-2025-38262","CVE-2025-38297","CVE-2025-38298","CVE-2025-38379","CVE-2025-38423","CVE-2025-38505","CVE-2025-38507","CVE-2025-38510","CVE-2025-38511","CVE-2025-38512","CVE-2025-38513","CVE-2025-38515","CVE-2025-38516","CVE-2025-38520","CVE-2025-38521","CVE-2025-38529","CVE-2025-38530","CVE-2025-38535","CVE-2025-38537","CVE-2025-38538","CVE-2025-38539","CVE-2025-38540","CVE-2025-38541","CVE-2025-38543","CVE-2025-38547","CVE-2025-38548","CVE-2025-38550","CVE-2025-38551","CVE-2025-38569","CVE-2025-38589","CVE-2025-38590","CVE-2025-38645","CVE-2025-39689","CVE-2025-39795","CVE-2025-39813","CVE-2025-39814","CVE-2025-39817","CVE-2025-39829","CVE-2025-39880","CVE-2025-39913","CVE-2025-39927","CVE-2025-40030","CVE-2025-40045","CVE-2025-40097","CVE-2025-40106","CVE-2025-40147","CVE-2025-40195","CVE-2025-40257","CVE-2025-40259","CVE-2025-40261","CVE-2025-40363","CVE-2025-68174","CVE-2025-68178","CVE-2025-68188","CVE-2025-68200","CVE-2025-68211","CVE-2025-68218","CVE-2025-68227","CVE-2025-68241","CVE-2025-68245","CVE-2025-68261","CVE-2025-68296","CVE-2025-68297","CVE-2025-68320","CVE-2025-68325","CVE-2025-68337","CVE-2025-68341","CVE-2025-68348","CVE-2025-68349","CVE-2025-68356","CVE-2025-68359","CVE-2025-68360","CVE-2025-68361","CVE-2025-68366","CVE-2025-68367","CVE-2025-68368","CVE-2025-68372","CVE-2025-68374","CVE-2025-68376","CVE-2025-68379","CVE-2025-68725","CVE-2025-68735","CVE-2025-68741","CVE-2025-68743","CVE-2025-68764","CVE-2025-68768","CVE-2025-68770","CVE-2025-68771","CVE-2025-68773","CVE-2025-68775","CVE-2025-68776","CVE-2025-68777","CVE-2025-68778","CVE-2025-68783","CVE-2025-68784","CVE-2025-68788","CVE-2025-68789","CVE-2025-68792","CVE-2025-68795","CVE-2025-68797","CVE-2025-68798","CVE-2025-68799","CVE-2025-68800","CVE-2025-68801","CVE-2025-68802","CVE-2025-68803","CVE-2025-68804","CVE-2025-68808","CVE-2025-68811","CVE-2025-68813","CVE-2025-68814","CVE-2025-68815","CVE-2025-68816","CVE-2025-68819","CVE-2025-68820","CVE-2025-68821","CVE-2025-68822","CVE-2025-71064","CVE-2025-71066","CVE-2025-71073","CVE-2025-71076","CVE-2025-71077","CVE-2025-71078","CVE-2025-71079","CVE-2025-71080","CVE-2025-71081","CVE-2025-71082","CVE-2025-71083","CVE-2025-71084","CVE-2025-71085","CVE-2025-71086","CVE-2025-71087","CVE-2025-71088","CVE-2025-71089","CVE-2025-71091","CVE-2025-71093","CVE-2025-71094","CVE-2025-71095","CVE-2025-71097","CVE-2025-71098","CVE-2025-71099","CVE-2025-71100","CVE-2025-71101","CVE-2025-71108","CVE-2025-71111","CVE-2025-71112","CVE-2025-71113","CVE-2025-71114","CVE-2025-71116","CVE-2025-71118","CVE-2025-71119","CVE-2025-71120","CVE-2025-71123","CVE-2025-71126","CVE-2025-71130","CVE-2025-71131","CVE-2025-71132","CVE-2025-71133","CVE-2025-71135","CVE-2025-71136","CVE-2025-71137","CVE-2025-71138","CVE-2025-71141","CVE-2025-71142","CVE-2025-71143","CVE-2025-71145","CVE-2025-71147","CVE-2025-71148","CVE-2025-71149","CVE-2025-71154","CVE-2025-71156","CVE-2025-71157","CVE-2025-71162","CVE-2025-71163","CVE-2026-22976","CVE-2026-22977","CVE-2026-22978","CVE-2026-22981","CVE-2026-22982","CVE-2026-22984","CVE-2026-22985","CVE-2026-22986","CVE-2026-22988","CVE-2026-22989","CVE-2026-22990","CVE-2026-22991","CVE-2026-22992","CVE-2026-22993","CVE-2026-22996","CVE-2026-22997","CVE-2026-22999","CVE-2026-23000","CVE-2026-23001","CVE-2026-23002","CVE-2026-23005","CVE-2026-23006","CVE-2026-23011"]

Threat ID: 6aab499455bf5e2cf5990f59

Added to database: 09/17/2026, 01:59:48 UTC

Last updated: 09/17/2026, 02:02:26 UTC

Views: 1

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses