SUSE-SU-2025:20739-1

Source
https://www.suse.com/support/update/announcement/2025/suse-su-202520739-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:20739-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2025:20739-1
Upstream
Related
Published
2025-09-23T11:26:15Z
Modified
2026-03-23T04:49:03.268137Z
Summary
Security update for the Linux Kernel
Details

The SUSE Linux Enterprise Micro 6.0 and 6.1 RT kernel was updated to receive various security bugfixes.

The following security bugs were fixed:

  • CVE-2024-46733: btrfs: fix qgroup reserve leaks in cowfilerange (bsc#1230708).
  • CVE-2025-38006: net: mctp: Do not access ifa_index when missing (bsc#1244930).
  • CVE-2025-38075: scsi: target: iscsi: Fix timeout on deleted connection (bsc#1244734).
  • CVE-2025-38103: HID: usbhid: Eliminate recurrent out-of-bounds bug in usbhid_parse() (bsc#1245663).
  • CVE-2025-38125: net: stmmac: make sure that ptp_rate is not 0 before configuring EST (bsc#1245710).
  • CVE-2025-38146: net: openvswitch: Fix the dead loop of MPLS parse (bsc#1245767).
  • CVE-2025-38160: clk: bcm: rpi: Add NULL check in raspberrypiclkregister() (bsc#1245780).
  • CVE-2025-38184: tipc: fix null-ptr-deref when acquiring remote ip of ethernet bearer (bsc#1245956).
  • CVE-2025-38185: atm: atmtcp: Free invalid length skb in atmtcpcsend() (bsc#1246012).
  • CVE-2025-38190: atm: Revert atmaccounttx() if copyfromiter_full() fails (bsc#1245973).
  • CVE-2025-38201: netfilter: nftsetpipapo: clamp maximum map bucket size to INT_MAX (bsc#1245977).
  • CVE-2025-38205: drm/amd/display: Avoid divide by zero by initializing dummy pitch to 1 (bsc#1246005).
  • CVE-2025-38208: smb: client: add NULL check in automount_fullpath (bsc#1245815).
  • CVE-2025-38245: atm: Release atmdevmutex after removing procfs in atmdevderegister() (bsc#1246193).
  • CVE-2025-38251: atm: clip: prevent NULL deref in clip_push() (bsc#1246181).
  • CVE-2025-38360: drm/amd/display: Add more checks for DSC / HUBP ONO guarantees (bsc#1247078).
  • CVE-2025-38439: bnxten: Set DMA unmap len correctly for XDPREDIRECT (bsc#1247155).
  • CVE-2025-38441: netfilter: flowtable: account for Ethernet header in nfflowpppoe_proto() (bsc#1247167).
  • CVE-2025-38444: raid10: cleanup memleak at raid10makerequest (bsc#1247162).
  • CVE-2025-38445: md/raid1: Fix stack memory use after return in raid1_reshape (bsc#1247229).
  • CVE-2025-38458: atm: clip: Fix NULL pointer dereference in vcc_sendmsg() (bsc#1247116).
  • CVE-2025-38459: atm: clip: Fix infinite recursive call of clip_push() (bsc#1247119).
  • CVE-2025-38464: tipc: Fix use-after-free in tipcconnclose() (bsc#1247112).
  • CVE-2025-38472: netfilter: nf_conntrack: fix crash due to removal of uninitialised entry (bsc#1247313).
  • CVE-2025-38490: net: libwx: remove duplicate pagepoolputfullpage() (bsc#1247243).
  • CVE-2025-38491: mptcp: make fallback action and fallback decision atomic (bsc#1247280).
  • CVE-2025-38499: cloneprivatemnt(): make sure that caller has CAPSYSADMIN in the right userns (bsc#1247976).
  • CVE-2025-38500: xfrm: interface: fix use-after-free after changing collect_md xfrm interface (bsc#1248088).
  • CVE-2025-38506: KVM: Allow CPU to reschedule while setting per-page memory attributes (bsc#1248186).
  • CVE-2025-38520: drm/amdkfd: Do not call mmput from MMU notifier callback (bsc#1248217).
  • CVE-2025-38524: rxrpc: Fix recv-recv race of completed call (bsc#1248194).
  • CVE-2025-38528: bpf: Reject %p% format string in bprintf-like helpers (bsc#1248198).
  • CVE-2025-38531: iio: common: st_sensors: Fix use of uninitialize device structs (bsc#1248205).
  • CVE-2025-38546: atm: clip: Fix memory leak of struct clip_vcc (bsc#1248223).
  • CVE-2025-38560: x86/sev: Evict cache lines during SNP memory validation (bsc#1248312).
  • CVE-2025-38585: staging: media: atomisp: Fix stack buffer overflow in gmingetvar_int() (bsc#1248355).
  • CVE-2025-38591: bpf: Reject narrower access to pointer ctx fields (bsc#1248363).
  • CVE-2025-38608: bpf, ktls: Fix data corruption when using bpfmsgpop_data() in ktls (bsc#1248338).
  • CVE-2025-38618: vsock: Do not allow binding to VMADDRPORTANY (bsc#1248511).

The following non-security bugs were fixed:

  • ACPI: APEI: send SIGBUS to current task if synchronous memory error not recovered (stable-fixes).
  • ACPI: pfr_update: Fix the driver update version check (git-fixes).
  • ACPI: processor: fix acpi_object initialization (stable-fixes).
  • ACPI: processor: perflib: Move problematic pr->performance check (git-fixes).
  • ALSA: hda/ca0132: Fix buffer overflow in addtuningcontrol (stable-fixes).
  • ALSA: hda/realtek: Add Framework Laptop 13 (AMD Ryzen AI 300) to quirks (stable-fixes).
  • ALSA: hda/realtek: Add support for HP EliteBook x360 830 G6 and EliteBook 830 G6 (stable-fixes).
  • ALSA: hda/realtek: Audio disappears on HP 15-fc000 after warm boot again (git-fixes).
  • ALSA: hda/realtek: Fix headset mic on ASUS Zenbook 14 (git-fixes).
  • ALSA: hda/realtek: Fix headset mic on HONOR BRB-X (stable-fixes).
  • ALSA: hda: Disable jack polling at shutdown (stable-fixes).
  • ALSA: hda: Handle the jack polling always via a work (stable-fixes).
  • ALSA: intel8x0: Fix incorrect codec index usage in mixer for ICH4 (stable-fixes).
  • ALSA: pcm: Rewrite recalculate_boundary() to avoid costly loop (stable-fixes).
  • ALSA: scarlett2: Add retry on -EPROTO from scarlett2usbtx() (git-fixes).
  • ALSA: usb-audio: Avoid precedence issues in mixer_quirks macros (stable-fixes).
  • ALSA: usb-audio: Fix size validation in convertchmapv3() (git-fixes).
  • ALSA: usb-audio: Use correct sub-type for UAC3 feature unit validation (git-fixes).
  • ALSA: usb-audio: Validate UAC3 cluster segment descriptors (git-fixes).
  • ALSA: usb-audio: Validate UAC3 power domain descriptors, too (git-fixes).
  • ASoC: Intel: avs: Fix uninitialized pointer error in probe() (stable-fixes).
  • ASoC: Intel: fix SNDSOCSOF dependencies (stable-fixes).
  • ASoC: amd: yc: Add DMI entries to support HP 15-fb1xxx (stable-fixes).
  • ASoC: amd: yc: Add DMI quirk for HP Laptop 17 cp-2033dx (stable-fixes).
  • ASoC: amd: yc: add DMI quirk for ASUS M6501RM (stable-fixes).
  • ASoC: codecs: rt5640: Retry DEVICE_ID verification (stable-fixes).
  • ASoC: core: Check for rtd == NULL in sndsocremovepcmruntime() (stable-fixes).
  • ASoC: hdac_hdmi: Rate limit logging on connection and disconnection (stable-fixes).
  • ASoC: soc-dapm: set biaslevel if sndsocdapmsetbiaslevel() was successed (stable-fixes).
  • Bluetooth: btusb: Add USB ID 3625:010b for TP-LINK Archer TX10UB Nano (stable-fixes).
  • Bluetooth: hciconn: do return error from hcienhancedsetupsync() (git-fixes).
  • Bluetooth: hcievent: Detect if HCIEVNUMCOMP_PKTS is unbalanced (git-fixes).
  • Bluetooth: hci_event: Mark connection as closed during suspend disconnect (git-fixes).
  • Bluetooth: hcievent: Treat UNKNOWNCONN_ID on disconnect as success (git-fixes).
  • Bluetooth: hci_event: fix MTU for BN == 0 in CIS Established (git-fixes).
  • Bluetooth: hcisock: Reset cookie to zero in hcisockfreecookie() (stable-fixes).
  • Bluetooth: hcisync: fix setlocal_name race condition (git-fixes).
  • HID: asus: fix UAF via HIDCLAIMEDINPUT validation (git-fixes).
  • HID: multitouch: fix slab out-of-bounds access in mtreportfixup() (git-fixes).
  • Move pesign-obs-integration requirement from kernel-syms to kernel devel subpackage (bsc#1248108).
  • PCI/ACPI: Fix runtime PM ref imbalance on Hot-Plug Capable ports (git-fixes).
  • PCI/portdrv: Use ispciehp instead of ishotplug_bridge (git-fixes).
  • PCI: Add ACS quirk for Loongson PCIe (git-fixes).
  • PCI: Support Immediate Readiness on devices without PM capabilities (git-fixes).
  • PCI: apple: Fix missing OF node reference in applepciesetup_port (git-fixes).
  • PCI: imx6: Add IMX8MMEP and IMX8MPEP fixed 256-byte BAR 4 in epc_features (git-fixes).
  • PCI: imx6: Delay link start until configfs 'start' written (git-fixes).
  • PCI: imx6: Remove appsreset toggling from imxpcie_{assert/deassert}corereset (git-fixes).
  • PCI: pnv_php: Clean up allocated IRQs on unplug (bsc#1215199).
  • PCI: pnv_php: Work around switches with broken presence detection (bsc#1215199).
  • PCI: rockchip: Set Target Link Speed to 5.0 GT/s before retraining (git-fixes).
  • PCI: rockchip: Use standard PCIe definitions (git-fixes).
  • PM / devfreq: governor: Replace sscanf() with kstrtoul() in setfreqstore() (stable-fixes).
  • PM: runtime: Clear power.needsforceresume in pmruntimereinit() (stable-fixes).
  • PM: sleep: console: Fix the black screen issue (stable-fixes).
  • RAS/AMD/ATL: Include row bit in row retirement (bsc#1242034).
  • RAS/AMD/FMPM: Get masked address (bsc#1242034).
  • RAS/AMD/FMPM: Use atl internal.h for INVALID_SPA (bsc#1242034).
  • RDMA/bnxt_re: Fix a possible memory leak in the driver (git-fixes)
  • RDMA/bnxt_re: Fix to do SRQ armena by default (git-fixes)
  • RDMA/bnxt_re: Fix to initialize the PBL array (git-fixes)
  • RDMA/bnxt_re: Fix to remove workload check in SRQ limit path (git-fixes)
  • RDMA/core: reduce stack using in nldevstatget_doit() (git-fixes)
  • RDMA/erdma: Fix ignored return value of initkernelqp (git-fixes)
  • RDMA/hns: Fix dip entries leak on devices newer than hip09 (git-fixes)
  • RDMA: hfi1: fix possible divide-by-zero in findhwthread_mask() (git-fixes)
  • Revert "gpio: mlxbf3: only get IRQ for device instance 0" (git-fixes).
  • USB: serial: option: add Foxconn T99W709 (stable-fixes).
  • USB: storage: Add unusual-devs entry for Novatek NTK96550-based camera (stable-fixes).
  • USB: storage: Ignore driver CD mode for Realtek multi-mode Wi-Fi dongles (stable-fixes).
  • aoe: defer rexmit timer downdev work to workqueue (git-fixes).
  • arch/powerpc: Remove .interp section in vmlinux (bsc#1215199).
  • arm64/cpufeatures/kvm: Add ARMv8.9 FEATECBHB bits in IDAA64MMFR1 (git-fixes)
  • arm64/entry: Mask DAIF in cpuswitchto(), callonirq_stack() (git-fixes)
  • arm64/mm: Check PUDTYPETABLE in pud_bad() (git-fixes)
  • arm64: Add support for HIP09 Spectre-BHB mitigation (git-fixes)
  • arm64: Filter out SME hwcaps when FEAT_SME isn't implemented (git-fixes)
  • arm64: Restrict pagetable teardown to avoid false warning (git-fixes)
  • arm64: dts: apple: t8103: Fix PCIe BCM4377 nodename (git-fixes)
  • arm64: dts: freescale: imx8mm-verdin: Keep LDO5 always on (git-fixes)
  • arm64: dts: imx8mm-beacon: Fix HS400 USDHC clock speed (git-fixes)
  • arm64: dts: imx8mm-beacon: Fix RTC capacitive load (git-fixes)
  • arm64: dts: imx8mm-venice-gw700x: Increase HS400 USDHC clock speed (git-fixes)
  • arm64: dts: imx8mm-venice-gw7901: Increase HS400 USDHC clock speed (git-fixes)
  • arm64: dts: imx8mm-venice-gw7902: Increase HS400 USDHC clock speed (git-fixes)
  • arm64: dts: imx8mm-venice-gw7903: Increase HS400 USDHC clock speed (git-fixes)
  • arm64: dts: imx8mm-venice-gw7904: Increase HS400 USDHC clock speed (git-fixes)
  • arm64: dts: imx8mn-beacon: Fix HS400 USDHC clock speed (git-fixes)
  • arm64: dts: imx8mn-beacon: Fix RTC capacitive load (git-fixes)
  • arm64: dts: imx8mn-venice-gw7902: Increase HS400 USDHC clock speed (git-fixes)
  • arm64: dts: imx8mp-beacon: Fix RTC capacitive load (git-fixes)
  • arm64: dts: rockchip: Update eMMC for NanoPi R5 series (git-fixes)
  • arm64: dts: rockchip: fix endpoint dtc warning for PX30 ISP (git-fixes)
  • arm64: tegra: Drop remaining serial clock-names and reset-names (git-fixes)
  • arm64: tegra: p2597: Fix gpio for vdd-1v8-dis regulator (git-fixes)
  • arm64: zynqmp: add clock-output-names property in clock nodes (git-fixes)
  • ata: libata-scsi: Fix CDL control (git-fixes).
  • block: fix kobject leak in blkunregisterqueue (git-fixes).
  • block: mtip32xx: Fix usage of dmamapsg() (git-fixes).
  • bpf: fix kfunc btf caching for modules (git-fixes).
  • bpf: use kvzmalloc to allocate BPF verifier environment (git-fixes).
  • btrfs: convert BUGON in btrfsreloccowblock() to proper error handling (git-fixes).
  • btrfs: correctly escape subvol in btrfsshowoptions() (git-fixes).
  • btrfs: fix adding block group to a reclaim list and the unused list during reclaim (git-fixes).
  • btrfs: fix bitmap leak when loading free space cache on duplicate entry (git-fixes).
  • btrfs: fix data race when accessing the inode's diskisize at btrfsdropextents() (git-fixes).
  • btrfs: fix the length of reserved qgroup to free (bsc#1240708)
  • btrfs: retry block group reclaim without infinite loop (git-fixes).
  • btrfs: return accurate error code on open failure in openfsdevices() (bsc#1233120)
  • btrfs: run delayed iputs when flushing delalloc (git-fixes).
  • btrfs: update target inode's ctime on unlink (git-fixes).
  • cdx: Fix off-by-one error in cdxrpmsgprobe() (git-fixes).
  • char: misc: Fix improper and inaccurate error code returned by misc_init() (stable-fixes).
  • comedi: Fix use of uninitialized memory in doinsnioctl() and doinsnlistioctl() (git-fixes).
  • comedi: Make insnrwemulate_bits() do insn->n samples (git-fixes).
  • comedi: fix race between polling and detaching (git-fixes).
  • comedi: pcl726: Prevent invalid irq number (git-fixes).
  • crypto: hisilicon/hpre - fix dma unmap sequence (stable-fixes).
  • crypto: jitter - fix intermediary handling (stable-fixes).
  • crypto: octeontx2 - add timeout for load_fvc completion poll (stable-fixes).
  • crypto: qat - lower priority for skcipher and aead algorithms (stable-fixes).
  • drm/amd/display: Add null pointer check in modhdcphdcp1createsession() (git-fixes).
  • drm/amd/display: Add primary plane to commits for correct VRR handling (stable-fixes).
  • drm/amd/display: Adjust DCE 8-10 clock, do not overclock by 15% (git-fixes).
  • drm/amd/display: Avoid a NULL pointer dereference (stable-fixes).
  • drm/amd/display: Avoid configuring PSR granularity if PSR-SU not supported (stable-fixes).
  • drm/amd/display: Avoid trying AUX transactions on disconnected ports (stable-fixes).
  • drm/amd/display: Do not overclock DCE 6 by 15% (git-fixes).
  • drm/amd/display: Fill display clock and vblank time in dce110filldisplay_configs (stable-fixes).
  • drm/amd/display: Find first CRTC and its line time in dce110filldisplay_configs (stable-fixes).
  • drm/amd/display: Fix 'failed to blank crtc!' (stable-fixes).
  • drm/amd/display: Fix DP audio DTO1 clock source on DCE 6 (stable-fixes).
  • drm/amd/display: Fix fractional fb divider in setpixelclock_v3 (git-fixes).
  • drm/amd/display: Only finalize atomic_obj if it was initialized (stable-fixes).
  • drm/amd/display: Separate setgsl from setgslsourceselect (stable-fixes).
  • drm/amd: Allow printing VanGogh OD SCLK levels without setting dpm to manual (stable-fixes).
  • drm/amd: Restore cached power limit during resume (stable-fixes).
  • drm/amdgpu: Avoid extra evict-restore process (stable-fixes).
  • drm/amdgpu: fix incorrect vm flags to map bo (git-fixes).
  • drm/amdgpu: fix task hang from failed job submission during process kill (git-fixes).
  • drm/amdgpu: update mmhub 3.0.1 client id mappings (stable-fixes).
  • drm/amdkfd: Destroy KFD debugfs after destroy KFD wq (stable-fixes).
  • drm/dp: Change AUX DPCD probe address from DPCDREV to LANE01_STATUS (stable-fixes).
  • drm/hisilicon/hibmc: fix the hibmc loaded failed bug (git-fixes).
  • drm/mediatek: Fix device/node reference count leaks in mtkdrmgetalldrm_priv (git-fixes).
  • drm/msm/kms: move snapshot init earlier in KMS init (git-fixes).
  • drm/msm: Defer fd_install in SUBMIT ioctl (git-fixes).
  • drm/msm: use trylock for debugfs (stable-fixes).
  • drm/nouveau/disp: Always accept linear modifier (git-fixes).
  • drm/nouveau/nvif: Fix potential memory leak in nvifvmmctor() (git-fixes).
  • drm/nouveau: fix error path in nvkmgspfwsec_v2 (git-fixes).
  • drm/nouveau: fix typos in comments (git-fixes).
  • drm/nouveau: remove unused increment in gm200flcnpioimemwr (git-fixes).
  • drm/nouveau: remove unused memory target test (git-fixes).
  • drm/ttm: Respect the shrinker core free target (stable-fixes).
  • drm/ttm: Should to return the evict error (stable-fixes).
  • et131x: Add missing check after DMA map (stable-fixes).
  • exfat: add cluster chain loop check for dir (git-fixes).
  • fbdev: Fix vmalloc out-of-bounds write in fast_imageblit (stable-fixes).
  • fbdev: fix potential buffer overflow in doregisterframebuffer() (stable-fixes).
  • fs/mnt_idmapping.c: Return -EINVAL when no map is written (bsc#1233120)
  • fs/orangefs: use snprintf() instead of sprintf() (git-fixes).
  • gpio: mlxbf3: use platformgetirq_optional() (git-fixes).
  • gpio: tps65912: check the return value of regmapupdatebits() (stable-fixes).
  • gpio: wcd934x: check the return value of regmapupdatebits() (stable-fixes).
  • hfs: fix not erasing deleted b-tree node issue (git-fixes).
  • hfs: fix slab-out-of-bounds in hfsbnoderead() (git-fixes).
  • hfsplus: do not use BUGON() in hfspluscreateattributesfile() (git-fixes).
  • hfsplus: fix slab-out-of-bounds in hfsplusbnoderead() (git-fixes).
  • hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() (git-fixes).
  • hwmon: (emc2305) Set initial PWM minimum value during probe based on thermal state (stable-fixes).
  • i2c: Force DLL0945 touchpad i2c freq to 100khz (stable-fixes).
  • i3c: do not fail if GETHDRCAP is unsupported (stable-fixes).
  • i3c: master: Initialize ret in i3ci2cnotifier_call() (stable-fixes).
  • ice, irdma: fix an off by one in error handling code (bsc#1247712).
  • ice, irdma: move interrupts code to irdma (bsc#1247712).
  • ice: Fix signedness bug in iceinitinterrupt_scheme() (bsc#1247712).
  • ice: count combined queues using Rx/Tx count (bsc#1247712).
  • ice: devlink PF MSI-X max and min parameter (bsc#1247712).
  • ice: enable_rdma devlink param (bsc#1247712).
  • ice: get rid of numlanmsix field (bsc#1247712).
  • ice: init flow director before RDMA (bsc#1247712).
  • ice: remove splitting MSI-X between features (bsc#1247712).
  • ice: simplify VF MSI-X managing (bsc#1247712).
  • ice: treat dyn_allowed only as suggestion (bsc#1247712).
  • iio: adc: ad7768-1: Ensure SYNC_IN pulse minimum timing requirement (stable-fixes).
  • iio: adc: adsigmadelta: do not overallocate scan buffer (stable-fixes).
  • iio: imu: invicm42600: switch timestamp type from int64t _aligned(8) to aligneds64 (stable-fixes).
  • iio: imu: inv_icm42600: use = { } instead of memset() (stable-fixes).
  • iio: pressure: bmp280: Use ISERR() in bmp280common_probe() (git-fixes).
  • iio: proximity: isl29501: fix buffered read on big-endian systems (git-fixes).
  • integrity/platform_certs: Allow loading of keys in the static key management mode (jsc#PED-13345 jsc#PED-13343).
  • iosys-map: Fix undefined behavior in iosysmapclear() (git-fixes).
  • ipmi: Fix strcpy source and destination the same (stable-fixes).
  • ipmi: Use devwarnratelimited() for incorrect message warnings (stable-fixes).
  • irdma: free iwdev->rf after removing MSI-X (bsc#1247712).
  • jfs: Regular file corruption check (git-fixes).
  • jfs: truncate good inode pages when hard link is 0 (git-fixes).
  • jfs: upper bound check of tree index in dbAllocAG (git-fixes).
  • kABI: PCI/ACPI: Fix runtime PM ref imbalance on Hot-Plug Capable ports (git-fixes).
  • kselftest/arm64: Fix check for setting new VLs in sve-ptrace (git-fixes).
  • leds: leds-lp50xx: Handle reg to get correct multi_index (stable-fixes).
  • loop: use kiocb helpers to fix lockdep warning (git-fixes).
  • mISDN: hfcpci: Fix warning when deleting uninitialized timer (git-fixes).
  • md/md-cluster: handle REMOVE message earlier (bsc#1247057).
  • md/raid1,raid10: strip REQ_NOWAIT from member bios (git-fixes).
  • md: allow removing faulty rdev during resync (git-fixes).
  • md: make rdev_addable usable for rcu mode (git-fixes).
  • media: dvb-frontends: dib7090p: fix null-ptr-deref in dib7090prwon_apb() (stable-fixes).
  • media: dvb-frontends: w7090p: fix null-ptr-deref in w7090ptunerwriteserpar and w7090ptunerreadserpar (stable-fixes).
  • media: tc358743: Check I2C succeeded during probe (stable-fixes).
  • media: tc358743: Increase FIFO trigger level to 374 (stable-fixes).
  • media: tc358743: Return an appropriate colorspace from tc358743setfmt (stable-fixes).
  • media: usb: hdpvr: disable zero-length read messages (stable-fixes).
  • media: uvcvideo: Fix bandwidth issue for Alcor camera (stable-fixes).
  • media: v4l2-common: Reduce warnings about missing V4L2CIDLINK_FREQ control (stable-fixes).
  • mei: bus: Check for still connected devices in meiclbusdevrelease() (stable-fixes).
  • memstick: Fix deadlock by moving removing flag earlier (git-fixes).
  • mm/ptdump: take the memory hotplug lock inside ptdumpwalkpgd() (git-fixes)
  • mmc: rtsxusbsdmmc: Fix error-path in sdsetpower_mode() (stable-fixes).
  • mmc: sdhci-msm: Ensure SD card power isn't ON when card removed (stable-fixes).
  • mmc: sdhci-pci-gli: GL9763e: Rename the glisetgl9763e() for consistency (git-fixes).
  • most: core: Drop device reference after usage in get_channel() (git-fixes).
  • mptcp: fallback when MPTCP opts are dropped after 1st data (git-fixes).
  • mptcp: reset when MPTCP opts are dropped after join (git-fixes).
  • net: phy: micrel: Add ksz9131_resume() (stable-fixes).
  • net: phy: smsc: add proper reset flags for LAN8710A (stable-fixes).
  • net: thunderbolt: Enable end-to-end flow control also in transmit (stable-fixes).
  • net: thunderbolt: Fix the parameter passing of tbxdomainenablepaths()/tbxdomaindisablepaths() (stable-fixes).
  • net: usb: asix_devices: Fix PHY address mask in MDIO bus initialization (git-fixes).
  • net: usb: asixdevices: add phymask for ax88772 mdio bus (git-fixes).
  • pNFS: Fix disk addr range check in block/scsi layout (git-fixes).
  • pNFS: Fix stripe mapping in block/scsi layout (git-fixes).
  • pNFS: Fix uninited ptr deref in block/scsi layout (git-fixes).
  • pNFS: Handle RPC size limit for layoutcommits (git-fixes).
  • phy: mscc: Fix parsing of unicast frames (git-fixes).
  • phy: rockchip-pcie: Properly disable TEST_WRITE strobe signal (stable-fixes).
  • pinctrl: STMFX: add missing HAS_IOMEM dependency (git-fixes).
  • pinctrl: stm32: Manage irq affinity settings (stable-fixes).
  • platform/chrome: crosectypec: Defer probe on missing EC parent (stable-fixes).
  • platform/x86/amd: pmc: Add Lenovo Yoga 6 13ALC6 to pmc quirk list (stable-fixes).
  • pm: cpupower: Fix the snapshot-order of tsc,mperf, clock in mperf_stop() (stable-fixes).
  • power: supply: qcom_battmgr: Add lithium-polymer entry (stable-fixes).
  • powerpc/eeh: Export eehunfreezepe() (bsc#1215199).
  • powerpc/eeh: Make EEH driver device hotplug safe (bsc#1215199).
  • powerpc/eeh: Rely on dev->linkactivereporting (bsc#1215199).
  • powerpc/kernel: Fix ppcsaveregs inclusion in build (bsc#1215199).
  • powerpc/pseries: Correct secvar format representation for static key management (jsc#PED-13345 jsc#PED-13343).
  • powerpc/secvar: Expose secvars relevant to the key management mode (jsc#PED-13345 jsc#PED-13343).
  • powerpc: do not build ppcsaveregs.o always (bsc#1215199).
  • pwm: mediatek: Fix duty and period setting (git-fixes).
  • pwm: mediatek: Handle hardware enable and clock enable separately (stable-fixes).
  • reset: brcmstb: Enable reset drivers for ARCH_BCM2835 (stable-fixes).
  • rpm/config.sh: Update Leap project
  • rtc: ds1307: handle oscillator stop flag (OSF) for ds1341 (stable-fixes).
  • rtc: ds1307: remove clear of oscillator stop flag (OSF) in probe (stable-fixes).
  • samples/bpf: Fix compilation errors with cf-protection option (git-fixes).
  • scsi: Revert "scsi: iscsi: Fix HW conn removal use after free" (git-fixes).
  • scsi: core: Fix kernel doc for scsitrackqueue_full() (git-fixes).
  • scsi: elx: efct: Fix dmaunmapsg() nents value (git-fixes).
  • scsi: ibmvscsitgt: Fix dmaunmap_sg() nents value (git-fixes).
  • scsi: isci: Fix dmaunmapsg() nents value (git-fixes).
  • scsi: mpi3mr: Fix kernel-doc issues in mpi3mr_app.c (git-fixes).
  • scsi: mpi3mr: Fix race between config read submit and interrupt completion (git-fixes).
  • scsi: mpi3mr: Serialize admin queue BAR writes on 32-bit systems (git-fixes).
  • scsi: mpt3sas: Fix a fw_event memory leak (git-fixes).
  • scsi: mvsas: Fix dmaunmapsg() nents value (git-fixes).
  • scsi: sd: Make sd shutdown issue START STOP UNIT appropriately (git-fixes).
  • selftests/bpf: fexit_sleep: Fix stack allocation for arm64 (git-fixes).
  • selftests/tracing: Fix false failure of subsystem event test (git-fixes).
  • selftests: Fix errno checking in syscalluserdispatch test (git-fixes).
  • selftests: rtnetlink.sh: remove esp4_offload after test (git-fixes).
  • serial: 8250: fix panic due to PSLVERR (git-fixes).
  • slab: Decouple slabdebug and nohash_pointers (bsc#1249022).
  • smb: client: fix parsing of device numbers (git-fixes).
  • soc/tegra: pmc: Ensure power-domains are in a known state (git-fixes).
  • soundwire: amd: serialize amd manager resume sequence during pm_prepare (stable-fixes).
  • squashfs: fix memory leak in squashfsfillsuper (git-fixes).
  • sunrpc: fix handling of server side tls alerts (git-fixes).
  • sunvdc: Balance device refcount in vdcportmpgroup_check (git-fixes).
  • thermal/drivers/qcom-spmi-temp-alarm: Enable stage 2 shutdown when required (stable-fixes).
  • thermal: sysfs: Return ENODATA instead of EAGAIN for reads (stable-fixes).
  • ublk: sanity check add_dev input for underflow (git-fixes).
  • ublk: use vmalloc for ublk_device's __queues (git-fixes).
  • usb: core: config: Prevent OOB read in SS endpoint companion parsing (stable-fixes).
  • usb: core: hcd: fix accessing unmapped memory in SINGLESTEPSET_FEATURE test (git-fixes).
  • usb: core: usbsubmiturb: downgrade type check (stable-fixes).
  • usb: dwc3: Ignore late xferNotReady event to prevent halt timeout (git-fixes).
  • usb: dwc3: Remove WARN_ON for device endpoint command timeouts (stable-fixes).
  • usb: dwc3: core: Fix system suspend on TI AM62 platforms (git-fixes).
  • usb: dwc3: fix fault at system suspend if device was already runtime suspended (git-fixes).
  • usb: dwc3: pci: add support for the Intel Wildcat Lake (stable-fixes).
  • usb: quirks: Add DELAY_INIT quick for another SanDisk 3.2Gen1 Flash Drive (stable-fixes).
  • usb: renesas-xhci: Fix External ROM access timeouts (git-fixes).
  • usb: storage: realtek_cr: Use correct byte order for bcs->Residue (git-fixes).
  • usb: typec: intelpmcmux: Defer probe if SCU IPC isn't present (stable-fixes).
  • usb: typec: ucsi: psy: Set current max to 100mA for BC 1.2 and Default (stable-fixes).
  • usb: xhci: Avoid showing errors during surprise removal (stable-fixes).
  • usb: xhci: Avoid showing warnings for dying controller (stable-fixes).
  • usb: xhci: Fix slot_id resource race conflict (git-fixes).
  • usb: xhci: Set avgtrblen = 8 for EP0 during Address Device Command (stable-fixes).
  • usb: xhci: print xhci->xhcstate when queuecommand failed (stable-fixes).
  • vfs: Add a sysctl for automated deletion of dentry (bsc#1240890).
  • watchdog: dw_wdt: Fix default timeout (stable-fixes).
  • watchdog: iTCO_wdt: Report error if timeout configuration fails (stable-fixes).
  • watchdog: sbsa: Adjust keepalive timeout to avoid MediaTek WS0 race condition (stable-fixes).
  • wifi: ath12k: Add memset and update default rate value in wmi tx completion (stable-fixes).
  • wifi: ath12k: Correct tid cleanup when tid setup fails (stable-fixes).
  • wifi: ath12k: Decrement TID on RX peer frag setup error handling (stable-fixes).
  • wifi: ath12k: Enable REO queue lookup table feature on QCN9274 hw2.0 (stable-fixes).
  • wifi: cfg80211: Fix interface type validation (stable-fixes).
  • wifi: cfg80211: reject HTC bit for management frames (stable-fixes).
  • wifi: iwlegacy: Check rate_idx range after addition (stable-fixes).
  • wifi: iwlwifi: dvm: fix potential overflow in rsfilllink_cmd() (stable-fixes).
  • wifi: iwlwifi: fw: Fix possible memory leak in iwlfwdbg_collect (stable-fixes).
  • wifi: iwlwifi: mvm: fix scan request validation (stable-fixes).
  • wifi: iwlwifi: mvm: set gtk id also in older FWs (stable-fixes).
  • wifi: mac80211: do not complete management TX on SAE commit (stable-fixes).
  • wifi: mac80211: fix rx link assignment for non-MLO stations (stable-fixes).
  • wifi: mac80211: update radar_required in channel context after channel switch (stable-fixes).
  • wifi: mt76: mt7915: mcu: re-init MCU before loading FW patch (stable-fixes).
  • wifi: rtlwifi: fix possible skb memory leak in rtlpciinitone_rxdesc() (stable-fixes).
  • wifi: rtlwifi: fix possible skb memory leak in _rtl_pci_rx_interrupt() (stable-fixes).
  • wifi: rtw89: Disable deep power saving for USB/SDIO (stable-fixes).
  • wifi: rtw89: Fix rtw89macpower_switch() for USB (stable-fixes).
  • wifi: rtw89: Lower the timeout in rtw89fwreadc2hreg() for USB (stable-fixes).
References

Affected packages

SUSE:Linux Micro 6.0 / kernel-rt

Package

Name
kernel-rt
Purl
pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Micro%206.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.4.0-36.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-rt-livepatch": "6.4.0-36.1",
            "kernel-rt": "6.4.0-36.1",
            "kernel-source-rt": "6.4.0-36.1",
            "kernel-devel-rt": "6.4.0-36.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:20739-1.json"

SUSE:Linux Micro 6.0 / kernel-source-rt

Package

Name
kernel-source-rt
Purl
pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Micro%206.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.4.0-36.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-rt-livepatch": "6.4.0-36.1",
            "kernel-rt": "6.4.0-36.1",
            "kernel-source-rt": "6.4.0-36.1",
            "kernel-devel-rt": "6.4.0-36.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:20739-1.json"