SUSE-SU-2025:4139-1

Source
https://www.suse.com/support/update/announcement/2025/suse-su-20254139-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:4139-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2025:4139-1
Upstream
  • CVE-2022-50487
Related
Published
2025-11-19T13:12:14Z
Modified
2026-03-23T04:51:48.313709Z
Summary
Security update for the Linux Kernel
Details

The SUSE Linux Enterprise 15 SP4 RT kernel was updated to fix various security issues

The following security issues were fixed:

  • CVE-2022-50327: ACPI: processor: idle: Check acpifetchacpi_dev() return value (bsc#1249859).
  • CVE-2022-50334: hugetlbfs: fix null-ptr-deref in hugetlbfsparseparam() (bsc#1249857).
  • CVE-2022-50490: bpf: Propagate error from htablockbucket() to userspace (bsc#1251164).
  • CVE-2022-50516: fs: dlm: fix invalid derefence of sb_lvbptr (bsc#1251741).
  • CVE-2023-53365: ip6mr: Fix skbunderpanic in ip6mrcachereport() (bsc#1249988).
  • CVE-2023-53500: xfrm: fix slab-use-after-free in decode_session6 (bsc#1250816).
  • CVE-2023-53559: ipvti: fix potential slab-use-after-free in decodesession6 (bsc#1251052).
  • CVE-2023-53574: wifi: rtw88: delete timer and free skb queue when unloading (bsc#1251222).
  • CVE-2023-53619: netfilter: conntrack: Avoid nfcthelper_hash uses after free (bsc#1251743).
  • CVE-2023-53673: Bluetooth: hci_event: call disconnect callback before deleting conn (bsc#1251763).
  • CVE-2023-53705: ipv6: Fix out-of-bounds access in ipv6findtlv() (bsc#1252554).
  • CVE-2025-39742: RDMA: hfi1: fix possible divide-by-zero in findhwthread_mask() (bsc#1249479).
  • CVE-2025-39945: cnic: Fix use-after-free bugs in cnicdeletetask (bsc#1251230).
  • CVE-2025-39967: fbcon: fix integer overflow in fbcondoset_font (bsc#1252033).
  • CVE-2025-39968: i40e: add max boundary check for VF filters (bsc#1252047).
  • CVE-2025-39973: i40e: add validation for ring_len param (bsc#1252035).
  • CVE-2025-39978: octeontx2-pf: Fix potential use after free in otx2tcadd_flow() (bsc#1252069).
  • CVE-2025-40018: ipvs: Defer ipvsftp unregister during netns cleanup (bsc#1252688).
  • CVE-2025-40044: fs: udf: fix OOB read in lengthAllocDescs handling (bsc#1252785).
  • CVE-2025-40088: hfsplus: fix slab-out-of-bounds read in hfsplus_strcasecmp() (bsc#1252904).
  • CVE-2025-40102: KVM: arm64: Prevent access to vCPU events before init (bsc#1252919).

The following non security issues were fixed:

  • fbcon: Fix OOB access in font allocation (bsc#1252033)
  • mm: avoid unnecessary page fault retires on shared memory types (bsc#1251823).
  • net: hv_netvsc: fix loss of early receive events from host during channel open (bsc#1252265).
References

Affected packages

SUSE:Linux Enterprise Micro 5.3
kernel-rt

Package

Name
kernel-rt
Purl
pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.14.21-150400.15.136.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-source-rt": "5.14.21-150400.15.136.1",
            "kernel-rt": "5.14.21-150400.15.136.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:4139-1.json"
kernel-source-rt

Package

Name
kernel-source-rt
Purl
pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.14.21-150400.15.136.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-source-rt": "5.14.21-150400.15.136.1",
            "kernel-rt": "5.14.21-150400.15.136.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:4139-1.json"
SUSE:Linux Enterprise Micro 5.4
kernel-rt

Package

Name
kernel-rt
Purl
pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.14.21-150400.15.136.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-source-rt": "5.14.21-150400.15.136.1",
            "kernel-rt": "5.14.21-150400.15.136.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:4139-1.json"
kernel-source-rt

Package

Name
kernel-source-rt
Purl
pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.14.21-150400.15.136.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-source-rt": "5.14.21-150400.15.136.1",
            "kernel-rt": "5.14.21-150400.15.136.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:4139-1.json"