openSUSE 16: cluster-md-kmp-64kb / cluster-md-kmp-azure / cluster-md-kmp-default / etc (openSUSE-SU-2026:21388-1)

high Nessus Plugin ID 329305

Synopsis

The remote openSUSE host is missing one or more security updates.

Description

The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21388-1 advisory.

The SUSE Linux Enterprise 16.0 kernel was updated to fix various security issues

The following security issues were fixed:

- CVE-2025-10263: arm64: cputype: Add C1-Premium definitions (bsc#1266290).
- CVE-2025-39894: netfilter: br_netfilter: do not check confirmed bit in br_nf_local_in() after confirm (bsc#1262430).
- CVE-2025-40341: futex: Don't leak robust_list pointer on exec race (bsc#1255029).
- CVE-2026-23248: perf: Make perf_pmu_unregister() useable (bsc#1259800).
- CVE-2026-23394: Revert: af_unix: Remove lock dance in unix_peek_fds(). (bsc#1260565).
- CVE-2026-23451: bonding: prevent potential infinite loop in bond_header_parse() (bsc#1261604).
- CVE-2026-31414: netfilter: nf_conntrack_expect: use expect->helper (bsc#1262085).
- CVE-2026-31429: net: skb: fix cross-cache free of KFENCE-allocated skb head (bsc#1262392).
- CVE-2026-31438: netfs: Fix kernel BUG in netfs_limit_iter() for ITER_KVEC iterators (bsc#1267824).
- CVE-2026-31450: ext4: publish jinode after initialization (bsc#1262618).
- CVE-2026-31452: ext4: convert inline data to extents when truncate exceeds inline size (bsc#1262620).
- CVE-2026-31466: mm/huge_memory: fix folio isn't locked in softleaf_to_folio() (bsc#1267825).
- CVE-2026-31469: virtio_net: Fix UAF on dst_ops when IFF_XMIT_DST_RELEASE is cleared and napi_tx is false (bsc#1267816).
- CVE-2026-31479: drm/xe: always keep track of remap prev/next (bsc#1262765).
- CVE-2026-31492: RDMA/irdma: Initialize free_qp completion before using it (bsc#1262748).
- CVE-2026-31495: netfilter: ctnetlink: use netlink policy range checks (bsc#1262798).
- CVE-2026-31499: Bluetooth: L2CAP: Fix deadlock in l2cap_conn_del() (bsc#1262674).
- CVE-2026-31502: team: fix header_ops type confusion with non-Ethernet ports (bsc#1263072).
- CVE-2026-31555: futex: Clear stale exiting pointer in futex_lock_pi() retry path (bsc#1263178).
- CVE-2026-31560: spi: spi-dw-dma: fix print error log when wait finish transaction (bsc#1263057).
- CVE-2026-31596: ocfs2: handle invalid dinode in ocfs2_group_extend (bsc#1263319).
- CVE-2026-31646: net: lan966x: fix page_pool error handling in lan966x_fdma_rx_alloc_page_pool() (bsc#1263796).
- CVE-2026-31647: idpf: fix PREEMPT_RT raw/bh spinlock nesting for async VC handling (bsc#1263581).
- CVE-2026-31663: xfrm: hold device only for the asynchronous decryption (bsc#1263133).
- CVE-2026-31664: xfrm: clear trailing padding in build_polexpire() (bsc#1263578).
- CVE-2026-31665: netfilter: nft_ct: fix use-after-free in timeout object destroy (bsc#1263137).
- CVE-2026-31670: net: rfkill: prevent unlimited numbers of rfkill events from being created (bsc#1263573).
- CVE-2026-31673: af_unix: read UNIX_DIAG_VFS data under unix_state_lock (bsc#1263143).
- CVE-2026-31674: netfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check() (bsc#1263568).
- CVE-2026-31680: net: ipv6: flowlabel: defer exclusive option free until RCU teardown (bsc#1263563).
- CVE-2026-31693: cifs: some missing initializations on replay (bsc#1267744).
- CVE-2026-31743: nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy (bsc#1264067).
- CVE-2026-31752: bridge: br_nd_send: validate ND option lengths (bsc#1264045).
- CVE-2026-31771: Bluetooth: hci_event: move wake reason storage into validated event handlers (bsc#1264145).
- CVE-2026-43010: bpf: Reject sleepable kprobe_multi programs at attach time (bsc#1264015).
- CVE-2026-43014,CVE-2026-43015: net: macb: fix clk handling on PCI glue driver removal (bsc#1264010 bsc#1264012).
- CVE-2026-43016: bpf: sockmap: Fix use-after-free of sk->sk_socket in sk_psock_verdict_data_ready() (bsc#1264007).
- CVE-2026-43022: Bluetooth: hci_sync: hci_cmd_sync_queue_once() return -EEXIST if exists (bsc#1264001).
- CVE-2026-43024: netfilter: nf_tables: reject immediate NF_QUEUE verdict (bsc#1263930).
- CVE-2026-43028: netfilter: x_tables: ensure names are nul-terminated (bsc#1263934).
- CVE-2026-43034: bnxt_en: set backing store type from query type (bsc#1263998).
- CVE-2026-43035: net: sched: cls_api: fix tc_chain_fill_node to initialize tcm_info to zero to prevent an info-leak (bsc#1263996).
- CVE-2026-43036: net: use skb_header_pointer() for TCPv4 GSO frag_off check (bsc#1263993).
- CVE-2026-43053: xfs: factor out xfs_attr3_node_entry_remove (bsc#1264084).
- CVE-2026-43057: net: correctly handle tunneled traffic on IPV6_CSUM GSO fallback (bsc#1264056).
- CVE-2026-43074: eventpoll: defer struct eventpoll free to RCU grace period (bsc#1264263).
- CVE-2026-43080: l2tp: Drop large packets with UDP encap (bsc#1264236).
- CVE-2026-43081: net: ipa: fix GENERIC_CMD register field masks for IPA v5.0+ (bsc#1264241).
- CVE-2026-43083: net: ioam6: fix OOB and missing lock (bsc#1264266).
- CVE-2026-43085: netfilter: nfnetlink_log: initialize nfgenmsg in NLMSG_DONE terminator (bsc#1264230).
- CVE-2026-43086: ipvs: fix NULL deref in ip_vs_add_service error path (bsc#1264286).
- CVE-2026-43089: xfrm_user: fix info leak in build_mapping() (bsc#1264261).
- CVE-2026-43090: xfrm: fix refcount leak in xfrm_migrate_policy_find (bsc#1264250).
- CVE-2026-43092: xsk: validate MTU against usable frame size on bind (bsc#1264270).
- CVE-2026-43093: xsk: tighten UMEM headroom validation to account for tailroom and min frame (bsc#1264254).
- CVE-2026-43094: ixgbevf: add missing negotiate_features op to Hyper-V ops table (bsc#1264231).
- CVE-2026-43101: ipv6: ioam: fix potential NULL dereferences in __ioam6_fill_trace_data() (bsc#1264239).
- CVE-2026-43107: xfrm: account XFRMA_IF_ID in aevent size calculation (bsc#1264258).
- CVE-2026-43119: Bluetooth: hci_sync: annotate data-races around hdev->req_status (bsc#1264561).
- CVE-2026-43124: pstore: ram_core: fix incorrect success return when vmap() fails (bsc#1264545).
- CVE-2026-43128: RDMA/umem: Fix double dma_buf_unpin in failure path (bsc#1264612).
- CVE-2026-43130: iommu/vt-d: Flush dev-IOTLB only when PCIe device is accessible in scalable mode (bsc#1264532).
- CVE-2026-43132: dm-verity: correctly handle dm_bufio_client_create() failure (bsc#1264614).
- CVE-2026-43139: xfrm6: fix uninitialized saddr in xfrm6_get_saddr() (bsc#1264294).
- CVE-2026-43145: remoteproc: imx_rproc: Fix invalid loaded resource table detection (bsc#1265091).
- CVE-2026-43157: octeontx2-af: CGX: fix bitmap leaks (bsc#1264624).
- CVE-2026-43158: xfs: fix freemap adjustments when adding xattrs to leaf blocks (bsc#1264595).
- CVE-2026-43161: iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode (bsc#1264333).
- CVE-2026-43167: xfrm: always flush state and policy upon NETDEV_UNREGISTER event (bsc#1264580).
- CVE-2026-43171: EFI/CPER: don't dump the entire memory region (bsc#1264549).
- CVE-2026-43175: clk: rs9: Reserve 8 struct clk_hw slots for for 9FGV0841 (bsc#1264372).
- CVE-2026-43187: xfs: delete attr leaf freemap entries when empty (bsc#1264603).
- CVE-2026-43191: drm/amd/display: Adjust PHY FSM transition to TX_EN-to-PLL_ON for TMDS on DCN35 (bsc#1264548).
- CVE-2026-43194: net: consume xmit errors of GSO frames (bsc#1264304).
- CVE-2026-43198: tcp: fix potential race in tcp_v6_syn_recv_sock() (bsc#1264610).
- CVE-2026-43199: net/mlx5e: Fix scheduling while atomic in IPsec MAC address query (bsc#1264556).
- CVE-2026-43205: dpaa2-switch: validate num_ifs to prevent out-of-bounds write (bsc#1264328).
- CVE-2026-43213: wifi: rtw89: pci: validate sequence number of TX release report (bsc#1264643).
- CVE-2026-43226: net/rds: No shortcut out of RDS_CONN_ERROR (bsc#1264544).
- CVE-2026-43233: netfilter: nf_conntrack_h323: fix OOB read in decode_choice() (bsc#1264337).
- CVE-2026-43238: net/sched: act_skbedit: fix divide-by-zero in tcf_skbedit_hash() (bsc#1264320).
- CVE-2026-43240: ima: verify the previous kernel's IMA buffer lies in addressable RAM (bsc#1264386).
- CVE-2026-43248: vhost: move vdpa group bound check to vhost_vdpa (bsc#1264302).
- CVE-2026-43260: bnxt_en: Fix RSS context delete logic (bsc#1264429).
- CVE-2026-43283: net: ethernet: ec_bhf: Fix dma_free_coherent() dma handle (bsc#1264295).
- CVE-2026-43298: drm/amdgpu: Skip vcn poison irq release on VF (bsc#1264852).
- CVE-2026-43303: mm/page_alloc: clear page->private in free_pages_prepare() (bsc#1264974).
- CVE-2026-43336: lib/crypto: chacha: Zeroize permuted_state before it leaves scope (bsc#1265113).
- CVE-2026-43337: drm/amd/display: Fix NULL pointer dereference in dcn401_init_hw() (bsc#1265112).
- CVE-2026-43339: ipv6: prevent possible UaF in addrconf_permanent_addr() (bsc#1264763).
- CVE-2026-43345: net: ipa: fix event ring index not programmed for IPA v5.0+ (bsc#1265103).
- CVE-2026-43351: KVM: arm64: gic: Set vgic_model before initing private IRQs (bsc#1265082).
- CVE-2026-43373: net: ncsi: fix skb leak in error paths (bsc#1265079).
- CVE-2026-43374: net: nexthop: fix percpu use-after-free in remove_nh_grp_entry (bsc#1265084).
- CVE-2026-43383: net/tcp-md5: Fix MAC comparison to be constant-time (bsc#1264744).
- CVE-2026-43384: net/tcp-ao: Fix MAC comparison to be constant-time (bsc#1265097).
- CVE-2026-43386: staging: rtl8723bs: fix potential out-of-bounds read in rtw_restruct_wmm_ie (bsc#1264740).
- CVE-2026-43403: nsfs: tighten permission checks for ns iteration ioctls (bsc#1265129).
- CVE-2026-43405: libceph: Use u32 for non-negative values in ceph_monmap_decode() (bsc#1264741).
- CVE-2026-43406: libceph: prevent potential out-of-bounds reads in process_message_header() (bsc#1265073).
- CVE-2026-43407: libceph: Fix potential out-of-bounds access in ceph_handle_auth_reply() (bsc#1265020).
- CVE-2026-43415: scsi: ufs: core: Fix SError in ufshcd_rtc_work() during UFS suspend (bsc#1265123).
- CVE-2026-43449: nvme-pci: Fix slab-out-of-bounds in nvme_dbbuf_set (bsc#1265023).
- CVE-2026-43450: netfilter: nfnetlink_cthelper: fix OOB read in nfnl_cthelper_dump_table() (bsc#1264794).
- CVE-2026-43452: netfilter: x_tables: guard option walkers against 1-byte tail reads (bsc#1265142).
- CVE-2026-43456: bonding: fix type confusion in bond_setup_by_slave() (bsc#1264734).
- CVE-2026-43457: mctp: i2c: fix skb memory leak in receive path (bsc#1265000).
- CVE-2026-43458: serial: caif: hold tty->link reference in ldisc_open and ser_release (bsc#1265005).
- CVE-2026-43465: net/mlx5e: RX, Fix XDP multi-buf frag counting for striding RQ (bsc#1264997).
- CVE-2026-43466: net/mlx5e: Fix DMA FIFO desync on error CQE SQ recovery (bsc#1264790).
- CVE-2026-43468: net/mlx5: Fix deadlock between devlink lock and esw->wq (bsc#1264978).
- CVE-2026-43469: xprtrdma: Decrement re_receiving on the early exit paths (bsc#1265143).
- CVE-2026-43470: nfs: return EISDIR on nfs3_proc_create if d_alias is a dir (bsc#1265128).
- CVE-2026-43471: scsi: ufs: core: Fix possible NULL pointer dereference in ufshcd_add_command_trace() (bsc#1264789).
- CVE-2026-43491: net: qrtr: ns: Limit the maximum server registration per node (bsc#1265628).
- CVE-2026-43492: lib/crypto: mpi: Fix integer underflow in mpi_read_raw_from_sgl() (bsc#1265629).
- CVE-2026-43502: net/rds: handle zerocopy send cleanup before the message is queued (bsc#1266008).
- CVE-2026-45837: Require (reasonably) normal mappings for MADV_DOFORK (bsc#1266398).
- CVE-2026-45838: bpf: fix end-of-list detection in cgroup_storage_get_next_key() (bsc#1266396).
- CVE-2026-45840: openvswitch: cap upcall PID array size and pre-size vport replies (bsc#1266397).
- CVE-2026-45841: netfilter: nfnetlink_osf: fix divide-by-zero in OSF_WSS_MODULO (bsc#1266390).
- CVE-2026-45848: apparmor: fix NULL sock in aa_sock_file_perm (bsc#1266734).
- CVE-2026-45857: scsi: csiostor: Fix dereference of null pointer rn (bsc#1266458).
- CVE-2026-45858: ext4: don't zero the entire extent if EXT4_EXT_DATA_PARTIAL_VALID1 (bsc#1266773).
- CVE-2026-45861: gfs2: Fix slab-use-after-free in qd_put (bsc#1266754).
- CVE-2026-45862: iommu/vt-d: Flush cache for PASID table before using it (bsc#1266705).
- CVE-2026-45870: SUNRPC: auth_gss: fix memory leaks in XDR decoding error paths (bsc#1266704).
- CVE-2026-45884: apparmor: avoid per-cpu hold underflow in aa_get_buffer (bsc#1266718).
- CVE-2026-45888: md/raid1: fix memory leak in raid1_run() (bsc#1266761).
- CVE-2026-45891: net: hns3: fix double free issue for tx spare buffer (bsc#1266717).
- CVE-2026-45894: iommu/vt-d: Clear Present bit before tearing down PASID entry (bsc#1266895).
- CVE-2026-45899: ext4: drop extent cache when splitting extent fails (bsc#1266883).
- CVE-2026-45901: netfilter: nf_tables: revert commit_mutex usage in reset path (bsc#1266892).
- CVE-2026-45912: ext4: don't cache extent during splitting extent (bsc#1266899).
- CVE-2026-45920: ext4: fix dirtyclusters double decrement on fs shutdown (bsc#1266893).
- CVE-2026-45922: RDMA/mlx5: Fix memory leak in GET_DATA_DIRECT_SYSFS_PATH handler (bsc#1266805).
- CVE-2026-45933: bpf: Preserve id of register in sync_linked_regs() (bsc#1266693).
- CVE-2026-45940: net: stmmac: fix oops when split header is enabled (bsc#1266916).
- CVE-2026-45948: ext4: fix memory leak in ext4_ext_shift_extents() (bsc#1266929).
- CVE-2026-45961: gfs2: fix memory leaks in gfs2_fill_super error path (bsc#1266933).
- CVE-2026-45964: SUNRPC: fix gss_auth kref leak in gss_alloc_msg error path (bsc#1266698).
- CVE-2026-45965: apparmor: fix invalid deref of rawdata when export_binary is unset (bsc#1267208).
- CVE-2026-45974: btrfs: fix invalid leaf access in btrfs_quota_enable() if ref key not found (bsc#1266922).
- CVE-2026-45983: nfsd: never defer requests during idmap lookup (bsc#1266697).
- CVE-2026-45985: ext4: don't set EXT4_GET_BLOCKS_CONVERT when splitting before submitting I/O (bsc#1266700).
- CVE-2026-45997: scsi: sd: fix missing put_disk() when device_add(&disk_dev) fails (bsc#1266740).
- CVE-2026-45999: erofs: fix unsigned underflow in z_erofs_lz4_handle_overlap() (bsc#1266750).
- CVE-2026-46005: xfs: fix a resource leak in xfs_alloc_buftarg() (bsc#1267431).
- CVE-2026-46024: libceph: Prevent potential null-ptr-deref in ceph_handle_auth_reply() (bsc#1267218).
- CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267361).
- CVE-2026-46046: ext4: fix missing brelse() in ext4_xattr_inode_dec_ref_all() (bsc#1266726).
- CVE-2026-46050: md/raid10: fix deadlock with check operation and nowait requests (bsc#1266686).
- CVE-2026-46051: md/raid5: fix soft lockup in retry_aligned_read() (bsc#1267360).
- CVE-2026-46053: net: rds: fix MR cleanup on copy error (bsc#1267427).
- CVE-2026-46063: x86/shstk: Prevent deadlock during shstk sigreturn (bsc#1267228).
- CVE-2026-46065: fbdev: defio: Disconnect deferred I/O from the lifetime of struct (bsc#1267458).
- CVE-2026-46069: wifi: mwifiex: fix use-after-free in mwifiex_adapter_cleanup() (bsc#1267437).
- CVE-2026-46071: KVM: nSVM: Avoid clearing VMCB_LBR in vmcb12 (bsc#1267591).
- CVE-2026-46076: KVM: nSVM: Raise #UD if unhandled VMMCALL isn't intercepted by L1 (bsc#1267365).
- CVE-2026-46078: erofs: fix the out-of-bounds nameoff handling for trailing dirents (bsc#1267505).
- CVE-2026-46079: rbd: fix null-ptr-deref when device_add_disk() fails (bsc#1266452).
- CVE-2026-46091: media: rc: igorplugusb: heed coherency rules (bsc#1267238).
- CVE-2026-46093: mm/vmalloc: take vmap_purge_lock in shrinker (bsc#1267548).
- CVE-2026-46099: net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels (bsc#1266722).
- CVE-2026-46101: netfilter: reject zero shift in nft_bitwise (bsc#1266878).
- CVE-2026-46111: Bluetooth: hci_conn: fix potential UAF in create_big_sync (bsc#1267626).
- CVE-2026-46112: RDMA/hns: Fix unlocked call to hns_roce_qp_remove() (bsc#1267582).
- CVE-2026-46116: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (bsc#1267369).
- CVE-2026-46119: libceph: Fix slab-out-of-bounds access in auth message processing (bsc#1267628).
- CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267640).
- CVE-2026-46124: isofs: validate block number from NFS file handle in isofs_export_iget (bsc#1266847).
- CVE-2026-46150: fanotify: fix false positive on permission events (bsc#1267387).
- CVE-2026-46160: btrfs: fix missing last_unlink_trans update when removing a directory (bsc#1267624).
- CVE-2026-46161: md/raid10: fix divide-by-zero in setup_geo() with zero far_copies (bsc#1266838).
- CVE-2026-46162: ice: fix double free in ice_sf_eth_activate() error path (bsc#1266840).
- CVE-2026-46172: ipv6: xfrm6: release dst on error in xfrm6_rcv_encap() (bsc#1266903).
- CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267722).
- CVE-2026-46178: RDMA/mlx4: Fix resource leak on error in mlx4_ib_create_srq() (bsc#1267493).
- CVE-2026-46185: smb/client: fix out-of-bounds read in symlink_data() (bsc#1266830).
- CVE-2026-46214: vsock/virtio: fix accept queue count leak on transport mismatch (bsc#1267717).
- CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267697).
- CVE-2026-46242: eventpoll: Fix integer overflow in ep_loop_check_proc() (bsc#1267618).
- CVE-2026-46244: netfilter: nft_inner: Fix IPv6 inner_thoff desync (bsc#1267654).
- CVE-2026-46253: pstore/ram: fix buffer overflow in persistent_ram_save_old() (bsc#1267635).
- CVE-2026-46254: AppArmor: Allow apparmor to handle unaligned dfa tables (bsc#1267637).
- CVE-2026-46259: procfs: fix missing RCU protection when reading real_parent in do_task_stat() (bsc#1267685).
- CVE-2026-46266: inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (bsc#1267684).
- CVE-2026-46289: lib/scatterlist: fix length calculations in extract_kvec_to_sg (bsc#1267966).
- CVE-2026-46291: printk: add print_hex_dump_devel() (bsc#1267937).
- CVE-2026-46314: drm/v3d: Reject empty multisync extension to prevent infinite loop (bsc#1267992).
- CVE-2026-46319: net/sched: act_ct: Only release RCU read lock after ct_ft (bsc#1268022).
- CVE-2026-46320: tap: free page on error paths in tap_get_user_xdp() (bsc#1267993).
- CVE-2026-46322: tun: free page on build_skb failure in tun_xdp_one() (bsc#1267994).
- CVE-2026-46328: apparmor: fix rlimit for posix cpu timers (bsc#1268037).
- CVE-2026-52908: RDMA: During rereg_mr ensure that REREG_ACCESS is compatible (bsc#1268661).
- CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268660).
- CVE-2026-52919: batman-adv: fix tp_meter counter underflow during shutdown (bsc#1269031).
- CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269033).
- CVE-2026-52924: sctp: purge outqueue on stale COOKIE-ECHO handling (bsc#1269036).
- CVE-2026-52933: io_uring/poll: fix signed comparison in io_poll_get_ownership() (bsc#1268989).
- CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269022).
- CVE-2026-52954: libceph: handle rbtree insertion error in decode_choose_args() (bsc#1269137).
- CVE-2026-52955: libceph: Fix potential out-of-bounds access in crush_decode() (bsc#1269159).
- CVE-2026-52957: libceph: Fix potential null-ptr-deref in decode_choose_args() (bsc#1269103).
- CVE-2026-52962: ceph: fix a buffer leak in __ceph_setxattr() (bsc#1269135).
- CVE-2026-52975: bonding: 3ad: implement proper RCU rules for port->aggregator (bsc#1269234).
- CVE-2026-52980: sched/fair: Clear rel_deadline when initializing forked entities (bsc#1269252).
- CVE-2026-52993: tipc: fix double-free in tipc_buf_append() (bsc#1269193).
- CVE-2026-53015: erofs: unify lcn as u64 for 32-bit platforms (bsc#1269087).
- CVE-2026-53021: scsi: target: core: Fix integer overflow in UNMAP bounds check (bsc#1269151).
- CVE-2026-53036: bpf, arm64: Reject out-of-range B.cond targets (bsc#1269389).
- CVE-2026-53039: ocfs2: validate group add input before caching (bsc#1269392).
- CVE-2026-53040: ocfs2: validate bg_bits during freefrag scan (bsc#1269397).
- CVE-2026-53041: ocfs2: fix listxattr handling when the buffer is full (bsc#1269398).
- CVE-2026-53049: gfs2: add some missing log locking (bsc#1269646).
- CVE-2026-53050: quota: Fix race of dquot_scan_active() with quota deactivation (bsc#1269188).
- CVE-2026-53053: iommu/amd: Fix clone_alias() to use the original device's devid (bsc#1269310).
- CVE-2026-53060: dm cache metadata: fix memory leak on metadata abort retry (bsc#1269164).
- CVE-2026-53075: ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (bsc#1269690).
- CVE-2026-53078: bpf: Fix same-register dst/src OOB read and pointer leak in sock_ops (bsc#1269700).
- CVE-2026-53081: bpf: Enforce regsafe base id consistency for BPF_ADD_CONST scalars (bsc#1269708).
- CVE-2026-53086: net: bcmgenet: move DESC_INDEX flow to ring 0 (bsc#1269537).
- CVE-2026-53090: bpf: Fix ld_{abs,ind} failure path analysis in subprogs (bsc#1269532).
- CVE-2026-53103: wifi: mt76: mt7925: fix potential deadlock in mt7925_roc_abort_sync (bsc#1269416).
- CVE-2026-53122: btrfs: fix deadlock between reflink and transaction commit when using flushoncommit (bsc#1269418).
- CVE-2026-53133: RDMA/umem: Fix truncation for block sizes >= 4G (bsc#1269821).
- CVE-2026-53139: drm/v3d: Skip CSD when it has zeroed workgroups (bsc#1269262).
- CVE-2026-53156: nvmem: core: fix use-after-free bugs in error paths (bsc#1269288).
- CVE-2026-53167: fuse: limit FUSE_NOTIFY_RETRIEVE to uptodate folios (bsc#1269768).
- CVE-2026-53168: fuse: reject fuse_notify() pagecache ops on directories (bsc#1269645).
- CVE-2026-53176: IB/isert: Reject login PDUs shorter than ISER_HEADERS_LEN (bsc#1269710).
- CVE-2026-53178: staging: rtl8723bs: rtw_mlme: add bounds checks before ie_length subtraction (bsc#1269795).
- CVE-2026-53215: net: mvpp2: refill RX buffers before XDP or skb use (bsc#1269680).
- CVE-2026-53216: net: mvpp2: limit XDP frame size to the RX buffer (bsc#1269587).
- CVE-2026-53217: net: mvpp2: sync RX data at the hardware packet offset (bsc#1269989).
- CVE-2026-53229: net/mlx5e: xsk: Fix DMA and xdp_frame leak on XDP_TX xmit failure (bsc#1269691).
- CVE-2026-53249: ipv4: restrict IPOPT_SSRR and IPOPT_LSRR options (bsc#1269992).
- CVE-2026-53258: wifi: fix leak if split 6 GHz scanning fails (bsc#1269230).
- CVE-2026-53262: l2tp: pppol2tp: hold reference to session in pppol2tp_ioctl() (bsc#1270000).
- CVE-2026-53263: 6lowpan: fix off-by-one in multicast context address compression (bsc#1269647).
- CVE-2026-53266: netfilter: bridge: make ebt_snat ARP rewrite writable (bsc#1269136).
- CVE-2026-53272: erofs: fix use-after-free on sbi->sync_decompress (bsc#1269809).
- CVE-2026-53274: net/smc: fix sleep-inside-lock in __smc_setsockopt() causing local DoS (bsc#1269651).
- CVE-2026-53281: iommu/vt-d: Avoid NULL pointer dereference or refcount corruption (bsc#1269519).
- CVE-2026-53285: drm/amd/display: Wrap DCN32 phantom-plane allocation in DC_RUN_WITH_PREEMPTION_ENABLED (bsc#1269527).
- CVE-2026-53286: idpf: fix double free and use-after-free in aux device error paths (bsc#1269531).
- CVE-2026-53287: audit: fix incorrect inheritable capability in CAPSET records (bsc#1269506).
- CVE-2026-53306: tty: hvc_iucv: fix off-by-one in number of supported devices (bsc#1269814).

The following non security issues were fixed:

- accel/ivpu: Fix signed integer truncation in IPC receive (git-fixes).
- ACPI: CPPC: Suppress UBSAN warning caused by field misuse (git-fixes).
- ACPI: IPMI: Fix inverted interface check in ipmi_bmc_gone() (git-fixes).
- ACPI: IPMI: Fix message kref handling on dead device (git-fixes).
- ACPI: NFIT: core: Fix possible NULL pointer dereference (git-fixes).
- ACPI: resource: Amend kernel-doc style (git-fixes).
- agp/amd64: Fix broken error propagation in agp_amd64_probe() (git-fixes).
- ALSA: aloop: Drop superfluous break (git-fixes).
- ALSA: caiaq: fix out-of-bounds read in the Traktor Kontrol S4 input parser (git-fixes).
- ALSA: cmipci: check snd_ctl_new1() return value (git-fixes).
- ALSA: core: Fix unintuitive behavior of snd_power_ref_and_wait() (git-fixes).
- ALSA: es1938: check snd_ctl_new1() return value (git-fixes).
- ALSA: firewire: isight: bound the sample count to the packet payload (git-fixes).
- ALSA: gus: check snd_ctl_new1() return value (git-fixes).
- ALSA: hda/cs35l41: Fix firmware load work teardown (git-fixes).
- ALSA: ice1712: check snd_ctl_new1() return value (git-fixes).
- ALSA: scarlett2: Allow flash writes ending at segment boundary (git-fixes).
- ALSA: scarlett2: Return ENOSPC for out-of-bounds flash writes (stable-fixes).
- ALSA: seq: Clear variable event pointer on read (git-fixes).
- ALSA: seq: Fix kernel heap address leak in bounce_error_event() (git-fixes).
- ALSA: seq: Fix partial userptr event expansion (git-fixes).
- ALSA: seq: Fix uninitialised heap leak in snd_seq_event_dup() (git-fixes).
- ALSA: seq: midi: Serialize output teardown with event_input (git-fixes).
- ALSA: timer: Fix UAF at snd_timer_user_params() (stable-fixes).
- ALSA: timer: Forcibly close timer instances at closing (git-fixes).
- ALSA: usb-audio: avoid kobject path lookup in DualSense match (git-fixes).
- ALSA: usb-audio: Kill MIDI 2.0 URBs before freeing endpoints (git-fixes).
- ALSA: usb-audio: Propagate errors in scarlett_ctl_enum_put() (git-fixes).
- ALSA: usb-audio: Propagate US-16x08 write errors in route/mix EQ-switch put callbacks (git-fixes).
- ALSA: usb-audio: Roll back quirk control caches on write errors (git-fixes).
- ALSA: usb-audio: Update Babyface Pro control caches only after successful writes (git-fixes).
- ALSA: usb-audio: Update US-16x08 EQ/comp shadow state after successful writes (git-fixes).
- ALSA: virtio: Add missing 384 kHz PCM rate mapping (git-fixes).
- ALSA: virtio: Validate control metadata from the device (git-fixes).
- ALSA: ymfpci: check snd_ctl_new1() return value (git-fixes).
- arm64: scripts/sorttable: Implement sorting mcount_loc at boot for arm64 (bsc#1267600).
- ASoC: adau1372: Clear PLL_EN on failed PLL lock without reset GPIO (git-fixes).
- ASoC: amd: acp-sdw-sof: Bound DAI link iteration (git-fixes).
- ASoC: codecs: aw88261: fix incorrect masks for boost regs (git-fixes).
- ASoC: codecs: hdac_hdmi: Validate written enum value (git-fixes).
- ASoC: cs35l56: Cleanup if component_probe fails (git-fixes).
- ASoC: cs35l56: Don't leave parent IRQ disabled if system_suspend fails (git-fixes).
- ASoC: cs35l56: Fix missing calls to wm_adsp2_remove() (git-fixes).
- ASoC: cs35l56: Fix possible uninitialized value in cs35l56_spi_system_reset() (git-fixes).
- ASoC: fsl: fsl_audmix: Validate written enum values (git-fixes).
- ASoC: fsl_asrc_dma: fix eDMA maxburst misalignment with channel count (git-fixes).
- ASoC: mediatek: mt8183: Release reserved memory on cleanup (git-fixes).
- ASoC: mediatek: mt8192: Release reserved memory on cleanup (git-fixes).
- ASoC: meson: aiu: Validate written enum values (git-fixes).
- ASoC: qcom: q6apm: fix NULL pointer dereference in graph_callback (git-fixes).
- ASoC: SOF: ipc3-control: Fix heap overflow in bytes_ext put/ ...

Please note that the description has been truncated due to length. Please refer to vendor advisory for the full description.

Tenable has extracted the preceding description block directly from the SUSE security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected packages.

See Also

https://bugzilla.suse.com/1149651

https://bugzilla.suse.com/1204315

https://bugzilla.suse.com/1236743

https://bugzilla.suse.com/1255029

https://bugzilla.suse.com/1257506

https://bugzilla.suse.com/1258538

https://bugzilla.suse.com/1259800

https://bugzilla.suse.com/1260565

https://bugzilla.suse.com/1261250

https://bugzilla.suse.com/1261256

https://bugzilla.suse.com/1261562

https://bugzilla.suse.com/1261604

https://bugzilla.suse.com/1262085

https://bugzilla.suse.com/1262392

https://bugzilla.suse.com/1262430

https://bugzilla.suse.com/1262618

https://bugzilla.suse.com/1262620

https://bugzilla.suse.com/1262674

https://bugzilla.suse.com/1262748

https://bugzilla.suse.com/1262765

https://bugzilla.suse.com/1262798

https://bugzilla.suse.com/1263057

https://bugzilla.suse.com/1263072

https://bugzilla.suse.com/1263133

https://bugzilla.suse.com/1263137

https://bugzilla.suse.com/1263143

https://bugzilla.suse.com/1263169

https://bugzilla.suse.com/1263178

https://bugzilla.suse.com/1263319

https://bugzilla.suse.com/1263563

https://bugzilla.suse.com/1263568

https://bugzilla.suse.com/1263573

https://bugzilla.suse.com/1263578

https://bugzilla.suse.com/1263581

https://bugzilla.suse.com/1263796

https://bugzilla.suse.com/1263930

https://bugzilla.suse.com/1263934

https://bugzilla.suse.com/1263993

https://bugzilla.suse.com/1263996

https://bugzilla.suse.com/1263998

https://bugzilla.suse.com/1264001

https://bugzilla.suse.com/1264007

https://bugzilla.suse.com/1264010

https://bugzilla.suse.com/1264012

https://bugzilla.suse.com/1264015

https://bugzilla.suse.com/1264045

https://bugzilla.suse.com/1264056

https://bugzilla.suse.com/1264067

https://bugzilla.suse.com/1264084

https://bugzilla.suse.com/1264145

https://bugzilla.suse.com/1264230

https://bugzilla.suse.com/1264231

https://bugzilla.suse.com/1264236

https://bugzilla.suse.com/1264239

https://bugzilla.suse.com/1264241

https://bugzilla.suse.com/1264250

https://bugzilla.suse.com/1264254

https://bugzilla.suse.com/1264258

https://bugzilla.suse.com/1264261

https://bugzilla.suse.com/1264263

https://bugzilla.suse.com/1264266

https://bugzilla.suse.com/1264270

https://bugzilla.suse.com/1264286

https://bugzilla.suse.com/1264294

https://bugzilla.suse.com/1264295

https://bugzilla.suse.com/1264302

https://bugzilla.suse.com/1264304

https://bugzilla.suse.com/1264320

https://bugzilla.suse.com/1264328

https://bugzilla.suse.com/1264333

https://bugzilla.suse.com/1264337

https://bugzilla.suse.com/1264372

https://bugzilla.suse.com/1264386

https://bugzilla.suse.com/1264429

https://bugzilla.suse.com/1264449

https://bugzilla.suse.com/1264532

https://bugzilla.suse.com/1264544

https://bugzilla.suse.com/1264545

https://bugzilla.suse.com/1264548

https://bugzilla.suse.com/1264549

https://bugzilla.suse.com/1264556

https://bugzilla.suse.com/1264561

https://bugzilla.suse.com/1264580

https://bugzilla.suse.com/1264595

https://bugzilla.suse.com/1264603

https://bugzilla.suse.com/1264610

https://bugzilla.suse.com/1264612

https://bugzilla.suse.com/1264614

https://bugzilla.suse.com/1264624

https://bugzilla.suse.com/1264643

https://bugzilla.suse.com/1264734

https://bugzilla.suse.com/1264740

https://bugzilla.suse.com/1264741

https://bugzilla.suse.com/1264744

https://bugzilla.suse.com/1264763

https://bugzilla.suse.com/1264789

https://bugzilla.suse.com/1264790

https://bugzilla.suse.com/1264794

https://bugzilla.suse.com/1264852

https://bugzilla.suse.com/1264974

https://bugzilla.suse.com/1264978

https://bugzilla.suse.com/1264997

https://bugzilla.suse.com/1265000

https://bugzilla.suse.com/1265005

https://bugzilla.suse.com/1265020

https://bugzilla.suse.com/1265023

https://bugzilla.suse.com/1265073

https://bugzilla.suse.com/1265079

https://bugzilla.suse.com/1265082

https://bugzilla.suse.com/1265084

https://bugzilla.suse.com/1265091

https://bugzilla.suse.com/1265097

https://bugzilla.suse.com/1265103

https://bugzilla.suse.com/1265112

https://bugzilla.suse.com/1265113

https://bugzilla.suse.com/1265123

https://bugzilla.suse.com/1265128

https://bugzilla.suse.com/1265129

https://bugzilla.suse.com/1265142

https://bugzilla.suse.com/1265143

https://bugzilla.suse.com/1265628

https://bugzilla.suse.com/1265629

https://bugzilla.suse.com/1266008

https://bugzilla.suse.com/1266214

https://bugzilla.suse.com/1266283

https://bugzilla.suse.com/1266284

https://bugzilla.suse.com/1266290

https://bugzilla.suse.com/1266390

https://bugzilla.suse.com/1266396

https://bugzilla.suse.com/1266397

https://bugzilla.suse.com/1266398

https://bugzilla.suse.com/1266452

https://bugzilla.suse.com/1266458

https://bugzilla.suse.com/1266686

https://bugzilla.suse.com/1266693

https://bugzilla.suse.com/1266697

https://bugzilla.suse.com/1266698

https://bugzilla.suse.com/1266700

https://bugzilla.suse.com/1266704

https://bugzilla.suse.com/1266705

https://bugzilla.suse.com/1266717

https://bugzilla.suse.com/1266718

https://bugzilla.suse.com/1266722

https://bugzilla.suse.com/1266726

https://bugzilla.suse.com/1266734

https://bugzilla.suse.com/1266740

https://bugzilla.suse.com/1266750

https://bugzilla.suse.com/1266754

https://bugzilla.suse.com/1266761

https://bugzilla.suse.com/1266773

https://bugzilla.suse.com/1266805

https://bugzilla.suse.com/1266830

https://bugzilla.suse.com/1266838

https://bugzilla.suse.com/1266840

https://bugzilla.suse.com/1266847

https://bugzilla.suse.com/1266878

https://bugzilla.suse.com/1266883

https://bugzilla.suse.com/1266892

https://bugzilla.suse.com/1266893

https://bugzilla.suse.com/1266895

https://bugzilla.suse.com/1266899

https://bugzilla.suse.com/1266903

https://bugzilla.suse.com/1266916

https://bugzilla.suse.com/1266922

https://bugzilla.suse.com/1266925

https://bugzilla.suse.com/1266929

https://bugzilla.suse.com/1266933

https://bugzilla.suse.com/1267208

https://bugzilla.suse.com/1267218

https://bugzilla.suse.com/1267228

https://bugzilla.suse.com/1267238

https://bugzilla.suse.com/1267251

https://bugzilla.suse.com/1267360

https://bugzilla.suse.com/1267361

https://bugzilla.suse.com/1267365

https://bugzilla.suse.com/1267369

https://bugzilla.suse.com/1267387

https://bugzilla.suse.com/1267419

https://bugzilla.suse.com/1267427

https://bugzilla.suse.com/1267431

https://bugzilla.suse.com/1267437

https://bugzilla.suse.com/1267458

https://bugzilla.suse.com/1267493

https://bugzilla.suse.com/1267505

https://bugzilla.suse.com/1267548

https://bugzilla.suse.com/1267582

https://bugzilla.suse.com/1267591

https://bugzilla.suse.com/1267600

https://bugzilla.suse.com/1267618

https://bugzilla.suse.com/1267624

https://bugzilla.suse.com/1267626

https://bugzilla.suse.com/1267628

https://bugzilla.suse.com/1267635

https://bugzilla.suse.com/1267637

https://bugzilla.suse.com/1267640

https://bugzilla.suse.com/1267654

https://bugzilla.suse.com/1267682

https://bugzilla.suse.com/1267684

https://bugzilla.suse.com/1267685

https://bugzilla.suse.com/1267697

https://bugzilla.suse.com/1267717

https://bugzilla.suse.com/1267722

https://bugzilla.suse.com/1267732

https://bugzilla.suse.com/1267744

https://bugzilla.suse.com/1267816

https://bugzilla.suse.com/1267824

https://bugzilla.suse.com/1267825

https://bugzilla.suse.com/1267937

https://bugzilla.suse.com/1267966

https://bugzilla.suse.com/1267992

https://bugzilla.suse.com/1267993

https://bugzilla.suse.com/1267994

https://bugzilla.suse.com/1268022

https://bugzilla.suse.com/1268037

https://bugzilla.suse.com/1268237

https://bugzilla.suse.com/1268238

https://bugzilla.suse.com/1268276

https://bugzilla.suse.com/1268307

https://bugzilla.suse.com/1268335

https://bugzilla.suse.com/1268428

https://bugzilla.suse.com/1268660

https://bugzilla.suse.com/1268661

https://bugzilla.suse.com/1268989

https://bugzilla.suse.com/1269022

https://bugzilla.suse.com/1269031

https://bugzilla.suse.com/1269033

https://bugzilla.suse.com/1269036

https://bugzilla.suse.com/1269087

https://bugzilla.suse.com/1269103

https://bugzilla.suse.com/1269135

https://bugzilla.suse.com/1269136

https://bugzilla.suse.com/1269137

https://bugzilla.suse.com/1269151

https://bugzilla.suse.com/1269159

https://bugzilla.suse.com/1269164

https://bugzilla.suse.com/1269188

https://bugzilla.suse.com/1269193

https://bugzilla.suse.com/1269199

https://bugzilla.suse.com/1269230

https://bugzilla.suse.com/1269234

https://bugzilla.suse.com/1269252

https://bugzilla.suse.com/1269262

https://bugzilla.suse.com/1269288

https://bugzilla.suse.com/1269310

https://bugzilla.suse.com/1269389

https://bugzilla.suse.com/1269392

https://bugzilla.suse.com/1269397

https://bugzilla.suse.com/1269398

https://bugzilla.suse.com/1269416

https://bugzilla.suse.com/1269418

https://bugzilla.suse.com/1269493

https://bugzilla.suse.com/1269506

https://bugzilla.suse.com/1269519

https://bugzilla.suse.com/1269527

https://bugzilla.suse.com/1269531

https://bugzilla.suse.com/1269532

https://bugzilla.suse.com/1269537

https://bugzilla.suse.com/1269587

https://bugzilla.suse.com/1269617

https://bugzilla.suse.com/1269645

https://bugzilla.suse.com/1269646

https://bugzilla.suse.com/1269647

https://bugzilla.suse.com/1269651

https://bugzilla.suse.com/1269680

https://bugzilla.suse.com/1269690

https://bugzilla.suse.com/1269691

https://bugzilla.suse.com/1269700

https://bugzilla.suse.com/1269708

https://bugzilla.suse.com/1269710

https://bugzilla.suse.com/1269768

https://bugzilla.suse.com/1269795

https://bugzilla.suse.com/1269798

https://bugzilla.suse.com/1269809

https://bugzilla.suse.com/1269814

https://bugzilla.suse.com/1269821

https://bugzilla.suse.com/1269904

https://bugzilla.suse.com/1269982

https://bugzilla.suse.com/1269989

https://bugzilla.suse.com/1269992

https://bugzilla.suse.com/1270000

https://bugzilla.suse.com/1270022

https://bugzilla.suse.com/1270042

https://bugzilla.suse.com/1270059

https://bugzilla.suse.com/1270226

https://bugzilla.suse.com/1271366

https://www.suse.com/security/cve/CVE-2025-10263

https://www.suse.com/security/cve/CVE-2025-39894

https://www.suse.com/security/cve/CVE-2025-40341

https://www.suse.com/security/cve/CVE-2026-23248

https://www.suse.com/security/cve/CVE-2026-23394

https://www.suse.com/security/cve/CVE-2026-23451

https://www.suse.com/security/cve/CVE-2026-31414

https://www.suse.com/security/cve/CVE-2026-31429

https://www.suse.com/security/cve/CVE-2026-31438

https://www.suse.com/security/cve/CVE-2026-31450

https://www.suse.com/security/cve/CVE-2026-31452

https://www.suse.com/security/cve/CVE-2026-31466

https://www.suse.com/security/cve/CVE-2026-31469

https://www.suse.com/security/cve/CVE-2026-31479

https://www.suse.com/security/cve/CVE-2026-31492

https://www.suse.com/security/cve/CVE-2026-31495

https://www.suse.com/security/cve/CVE-2026-31499

https://www.suse.com/security/cve/CVE-2026-31502

https://www.suse.com/security/cve/CVE-2026-31555

https://www.suse.com/security/cve/CVE-2026-31560

https://www.suse.com/security/cve/CVE-2026-31580

https://www.suse.com/security/cve/CVE-2026-31596

https://www.suse.com/security/cve/CVE-2026-31646

https://www.suse.com/security/cve/CVE-2026-31647

https://www.suse.com/security/cve/CVE-2026-31663

https://www.suse.com/security/cve/CVE-2026-31664

https://www.suse.com/security/cve/CVE-2026-31665

https://www.suse.com/security/cve/CVE-2026-31670

https://www.suse.com/security/cve/CVE-2026-31673

https://www.suse.com/security/cve/CVE-2026-31674

https://www.suse.com/security/cve/CVE-2026-31680

https://www.suse.com/security/cve/CVE-2026-31693

https://www.suse.com/security/cve/CVE-2026-31743

https://www.suse.com/security/cve/CVE-2026-31752

https://www.suse.com/security/cve/CVE-2026-31771

https://www.suse.com/security/cve/CVE-2026-43010

https://www.suse.com/security/cve/CVE-2026-43014

https://www.suse.com/security/cve/CVE-2026-43015

https://www.suse.com/security/cve/CVE-2026-43016

https://www.suse.com/security/cve/CVE-2026-43022

https://www.suse.com/security/cve/CVE-2026-43024

https://www.suse.com/security/cve/CVE-2026-43028

https://www.suse.com/security/cve/CVE-2026-43034

https://www.suse.com/security/cve/CVE-2026-43035

https://www.suse.com/security/cve/CVE-2026-43036

https://www.suse.com/security/cve/CVE-2026-43053

https://www.suse.com/security/cve/CVE-2026-43057

https://www.suse.com/security/cve/CVE-2026-43074

https://www.suse.com/security/cve/CVE-2026-43080

https://www.suse.com/security/cve/CVE-2026-43081

https://www.suse.com/security/cve/CVE-2026-43083

https://www.suse.com/security/cve/CVE-2026-43085

https://www.suse.com/security/cve/CVE-2026-43086

https://www.suse.com/security/cve/CVE-2026-43089

https://www.suse.com/security/cve/CVE-2026-43090

https://www.suse.com/security/cve/CVE-2026-43092

https://www.suse.com/security/cve/CVE-2026-43093

https://www.suse.com/security/cve/CVE-2026-43094

https://www.suse.com/security/cve/CVE-2026-43101

https://www.suse.com/security/cve/CVE-2026-43107

https://www.suse.com/security/cve/CVE-2026-43119

https://www.suse.com/security/cve/CVE-2026-43124

https://www.suse.com/security/cve/CVE-2026-43128

https://www.suse.com/security/cve/CVE-2026-43130

https://www.suse.com/security/cve/CVE-2026-43132

https://www.suse.com/security/cve/CVE-2026-43139

https://www.suse.com/security/cve/CVE-2026-43145

https://www.suse.com/security/cve/CVE-2026-43157

https://www.suse.com/security/cve/CVE-2026-43158

https://www.suse.com/security/cve/CVE-2026-43161

https://www.suse.com/security/cve/CVE-2026-43167

https://www.suse.com/security/cve/CVE-2026-43171

https://www.suse.com/security/cve/CVE-2026-43175

https://www.suse.com/security/cve/CVE-2026-43187

https://www.suse.com/security/cve/CVE-2026-43191

https://www.suse.com/security/cve/CVE-2026-43194

https://www.suse.com/security/cve/CVE-2026-43198

https://www.suse.com/security/cve/CVE-2026-43199

https://www.suse.com/security/cve/CVE-2026-43205

https://www.suse.com/security/cve/CVE-2026-43213

https://www.suse.com/security/cve/CVE-2026-43226

https://www.suse.com/security/cve/CVE-2026-43233

https://www.suse.com/security/cve/CVE-2026-43238

https://www.suse.com/security/cve/CVE-2026-43240

https://www.suse.com/security/cve/CVE-2026-43248

https://www.suse.com/security/cve/CVE-2026-43260

https://www.suse.com/security/cve/CVE-2026-43283

https://www.suse.com/security/cve/CVE-2026-43284

https://www.suse.com/security/cve/CVE-2026-43298

https://www.suse.com/security/cve/CVE-2026-43303

https://www.suse.com/security/cve/CVE-2026-43336

https://www.suse.com/security/cve/CVE-2026-43337

https://www.suse.com/security/cve/CVE-2026-43339

https://www.suse.com/security/cve/CVE-2026-43345

https://www.suse.com/security/cve/CVE-2026-43351

https://www.suse.com/security/cve/CVE-2026-43373

https://www.suse.com/security/cve/CVE-2026-43374

https://www.suse.com/security/cve/CVE-2026-43383

https://www.suse.com/security/cve/CVE-2026-43384

https://www.suse.com/security/cve/CVE-2026-43386

https://www.suse.com/security/cve/CVE-2026-43403

https://www.suse.com/security/cve/CVE-2026-43405

https://www.suse.com/security/cve/CVE-2026-43406

https://www.suse.com/security/cve/CVE-2026-43407

https://www.suse.com/security/cve/CVE-2026-43415

https://www.suse.com/security/cve/CVE-2026-43449

https://www.suse.com/security/cve/CVE-2026-43450

https://www.suse.com/security/cve/CVE-2026-43452

https://www.suse.com/security/cve/CVE-2026-43456

https://www.suse.com/security/cve/CVE-2026-43457

https://www.suse.com/security/cve/CVE-2026-43458

https://www.suse.com/security/cve/CVE-2026-43465

https://www.suse.com/security/cve/CVE-2026-43466

https://www.suse.com/security/cve/CVE-2026-43468

https://www.suse.com/security/cve/CVE-2026-43469

https://www.suse.com/security/cve/CVE-2026-43470

https://www.suse.com/security/cve/CVE-2026-43471

https://www.suse.com/security/cve/CVE-2026-43491

https://www.suse.com/security/cve/CVE-2026-43492

https://www.suse.com/security/cve/CVE-2026-43502

https://www.suse.com/security/cve/CVE-2026-45837

https://www.suse.com/security/cve/CVE-2026-45838

https://www.suse.com/security/cve/CVE-2026-45840

https://www.suse.com/security/cve/CVE-2026-45841

https://www.suse.com/security/cve/CVE-2026-45848

https://www.suse.com/security/cve/CVE-2026-45857

https://www.suse.com/security/cve/CVE-2026-45858

https://www.suse.com/security/cve/CVE-2026-45861

https://www.suse.com/security/cve/CVE-2026-45862

https://www.suse.com/security/cve/CVE-2026-45870

https://www.suse.com/security/cve/CVE-2026-45884

https://www.suse.com/security/cve/CVE-2026-45888

https://www.suse.com/security/cve/CVE-2026-45891

https://www.suse.com/security/cve/CVE-2026-45894

https://www.suse.com/security/cve/CVE-2026-45899

https://www.suse.com/security/cve/CVE-2026-45901

https://www.suse.com/security/cve/CVE-2026-45912

https://www.suse.com/security/cve/CVE-2026-45920

https://www.suse.com/security/cve/CVE-2026-45922

https://www.suse.com/security/cve/CVE-2026-45933

https://www.suse.com/security/cve/CVE-2026-45940

https://www.suse.com/security/cve/CVE-2026-45948

https://www.suse.com/security/cve/CVE-2026-45961

https://www.suse.com/security/cve/CVE-2026-45964

https://www.suse.com/security/cve/CVE-2026-45965

https://www.suse.com/security/cve/CVE-2026-45974

https://www.suse.com/security/cve/CVE-2026-45983

https://www.suse.com/security/cve/CVE-2026-45985

https://www.suse.com/security/cve/CVE-2026-45997

https://www.suse.com/security/cve/CVE-2026-45999

https://www.suse.com/security/cve/CVE-2026-46005

https://www.suse.com/security/cve/CVE-2026-46024

https://www.suse.com/security/cve/CVE-2026-46037

https://www.suse.com/security/cve/CVE-2026-46046

https://www.suse.com/security/cve/CVE-2026-46050

https://www.suse.com/security/cve/CVE-2026-46051

https://www.suse.com/security/cve/CVE-2026-46053

https://www.suse.com/security/cve/CVE-2026-46063

https://www.suse.com/security/cve/CVE-2026-46065

https://www.suse.com/security/cve/CVE-2026-46069

https://www.suse.com/security/cve/CVE-2026-46071

https://www.suse.com/security/cve/CVE-2026-46076

https://www.suse.com/security/cve/CVE-2026-46078

https://www.suse.com/security/cve/CVE-2026-46079

https://www.suse.com/security/cve/CVE-2026-46091

https://www.suse.com/security/cve/CVE-2026-46093

https://www.suse.com/security/cve/CVE-2026-46099

https://www.suse.com/security/cve/CVE-2026-46101

https://www.suse.com/security/cve/CVE-2026-46111

https://www.suse.com/security/cve/CVE-2026-46112

https://www.suse.com/security/cve/CVE-2026-46116

https://www.suse.com/security/cve/CVE-2026-46119

https://www.suse.com/security/cve/CVE-2026-46120

https://www.suse.com/security/cve/CVE-2026-46124

https://www.suse.com/security/cve/CVE-2026-46150

https://www.suse.com/security/cve/CVE-2026-46160

https://www.suse.com/security/cve/CVE-2026-46161

https://www.suse.com/security/cve/CVE-2026-46162

https://www.suse.com/security/cve/CVE-2026-46172

https://www.suse.com/security/cve/CVE-2026-46173

https://www.suse.com/security/cve/CVE-2026-46178

https://www.suse.com/security/cve/CVE-2026-46185

https://www.suse.com/security/cve/CVE-2026-46214

https://www.suse.com/security/cve/CVE-2026-46227

https://www.suse.com/security/cve/CVE-2026-46242

https://www.suse.com/security/cve/CVE-2026-46244

https://www.suse.com/security/cve/CVE-2026-46253

https://www.suse.com/security/cve/CVE-2026-46254

https://www.suse.com/security/cve/CVE-2026-46259

https://www.suse.com/security/cve/CVE-2026-46266

https://www.suse.com/security/cve/CVE-2026-46289

https://www.suse.com/security/cve/CVE-2026-46291

https://www.suse.com/security/cve/CVE-2026-46314

https://www.suse.com/security/cve/CVE-2026-46319

https://www.suse.com/security/cve/CVE-2026-46320

https://www.suse.com/security/cve/CVE-2026-46322

https://www.suse.com/security/cve/CVE-2026-46328

https://www.suse.com/security/cve/CVE-2026-46331

https://www.suse.com/security/cve/CVE-2026-52908

https://www.suse.com/security/cve/CVE-2026-52909

https://www.suse.com/security/cve/CVE-2026-52919

https://www.suse.com/security/cve/CVE-2026-52923

https://www.suse.com/security/cve/CVE-2026-52924

https://www.suse.com/security/cve/CVE-2026-52933

https://www.suse.com/security/cve/CVE-2026-52943

https://www.suse.com/security/cve/CVE-2026-52954

https://www.suse.com/security/cve/CVE-2026-52955

https://www.suse.com/security/cve/CVE-2026-52957

https://www.suse.com/security/cve/CVE-2026-52962

https://www.suse.com/security/cve/CVE-2026-52975

https://www.suse.com/security/cve/CVE-2026-52980

https://www.suse.com/security/cve/CVE-2026-52993

https://www.suse.com/security/cve/CVE-2026-53015

https://www.suse.com/security/cve/CVE-2026-53021

https://www.suse.com/security/cve/CVE-2026-53036

https://www.suse.com/security/cve/CVE-2026-53039

https://www.suse.com/security/cve/CVE-2026-53040

https://www.suse.com/security/cve/CVE-2026-53041

https://www.suse.com/security/cve/CVE-2026-53049

https://www.suse.com/security/cve/CVE-2026-53050

https://www.suse.com/security/cve/CVE-2026-53053

https://www.suse.com/security/cve/CVE-2026-53060

https://www.suse.com/security/cve/CVE-2026-53075

https://www.suse.com/security/cve/CVE-2026-53078

https://www.suse.com/security/cve/CVE-2026-53081

https://www.suse.com/security/cve/CVE-2026-53086

https://www.suse.com/security/cve/CVE-2026-53090

https://www.suse.com/security/cve/CVE-2026-53103

https://www.suse.com/security/cve/CVE-2026-53122

https://www.suse.com/security/cve/CVE-2026-53133

https://www.suse.com/security/cve/CVE-2026-53139

https://www.suse.com/security/cve/CVE-2026-53156

https://www.suse.com/security/cve/CVE-2026-53167

https://www.suse.com/security/cve/CVE-2026-53168

https://www.suse.com/security/cve/CVE-2026-53176

https://www.suse.com/security/cve/CVE-2026-53178

https://www.suse.com/security/cve/CVE-2026-53194

https://www.suse.com/security/cve/CVE-2026-53215

https://www.suse.com/security/cve/CVE-2026-53216

https://www.suse.com/security/cve/CVE-2026-53217

https://www.suse.com/security/cve/CVE-2026-53229

https://www.suse.com/security/cve/CVE-2026-53249

https://www.suse.com/security/cve/CVE-2026-53258

https://www.suse.com/security/cve/CVE-2026-53262

https://www.suse.com/security/cve/CVE-2026-53263

https://www.suse.com/security/cve/CVE-2026-53266

https://www.suse.com/security/cve/CVE-2026-53272

https://www.suse.com/security/cve/CVE-2026-53274

https://www.suse.com/security/cve/CVE-2026-53281

https://www.suse.com/security/cve/CVE-2026-53285

https://www.suse.com/security/cve/CVE-2026-53286

https://www.suse.com/security/cve/CVE-2026-53287

https://www.suse.com/security/cve/CVE-2026-53306

https://www.suse.com/security/cve/CVE-2026-53359

https://www.suse.com/security/cve/CVE-2026-53362

Plugin Details

Severity: High

ID: 329305

File Name: openSUSE-2026-21388-1.nasl

Version: 1.1

Type: Local

Agent: unix

Published: 7/24/2026

Updated: 7/24/2026

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

Risk Information

VPR

Risk Factor: Critical

Score: 9.5

Percentile: 99.86

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5.9

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2026-53286

CVSS v3

Risk Factor: High

Base Score: 7.8

Temporal Score: 7.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:H/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:novell:opensuse:16.0, p-cpe:/a:novell:opensuse:cluster-md-kmp-64kb, p-cpe:/a:novell:opensuse:cluster-md-kmp-azure, p-cpe:/a:novell:opensuse:cluster-md-kmp-default, p-cpe:/a:novell:opensuse:cluster-md-kmp-rt, p-cpe:/a:novell:opensuse:dlm-kmp-64kb, p-cpe:/a:novell:opensuse:dlm-kmp-azure, p-cpe:/a:novell:opensuse:dlm-kmp-default, p-cpe:/a:novell:opensuse:dlm-kmp-rt, p-cpe:/a:novell:opensuse:dtb-allwinner, p-cpe:/a:novell:opensuse:dtb-altera, p-cpe:/a:novell:opensuse:dtb-amazon, p-cpe:/a:novell:opensuse:dtb-amd, p-cpe:/a:novell:opensuse:dtb-amlogic, p-cpe:/a:novell:opensuse:dtb-apm, p-cpe:/a:novell:opensuse:dtb-apple, p-cpe:/a:novell:opensuse:dtb-arm, p-cpe:/a:novell:opensuse:dtb-broadcom, p-cpe:/a:novell:opensuse:dtb-cavium, p-cpe:/a:novell:opensuse:dtb-exynos, p-cpe:/a:novell:opensuse:dtb-freescale, p-cpe:/a:novell:opensuse:dtb-hisilicon, p-cpe:/a:novell:opensuse:dtb-lg, p-cpe:/a:novell:opensuse:dtb-marvell, p-cpe:/a:novell:opensuse:dtb-mediatek, p-cpe:/a:novell:opensuse:dtb-nvidia, p-cpe:/a:novell:opensuse:dtb-qcom, p-cpe:/a:novell:opensuse:dtb-renesas, p-cpe:/a:novell:opensuse:dtb-rockchip, p-cpe:/a:novell:opensuse:dtb-socionext, p-cpe:/a:novell:opensuse:dtb-sprd, p-cpe:/a:novell:opensuse:dtb-xilinx, p-cpe:/a:novell:opensuse:gfs2-kmp-64kb, p-cpe:/a:novell:opensuse:gfs2-kmp-azure, p-cpe:/a:novell:opensuse:gfs2-kmp-default, p-cpe:/a:novell:opensuse:gfs2-kmp-rt, p-cpe:/a:novell:opensuse:kernel-64kb-extra, p-cpe:/a:novell:opensuse:kernel-64kb-optional, p-cpe:/a:novell:opensuse:kernel-64kb, p-cpe:/a:novell:opensuse:kernel-azure-extra, p-cpe:/a:novell:opensuse:kernel-azure-optional, p-cpe:/a:novell:opensuse:kernel-azure-vdso, p-cpe:/a:novell:opensuse:kernel-azure, p-cpe:/a:novell:opensuse:kernel-default-base, p-cpe:/a:novell:opensuse:kernel-default-extra, p-cpe:/a:novell:opensuse:kernel-default-optional, p-cpe:/a:novell:opensuse:kernel-default-vdso, p-cpe:/a:novell:opensuse:kernel-default, p-cpe:/a:novell:opensuse:kernel-kvmsmall-vdso, p-cpe:/a:novell:opensuse:kernel-kvmsmall, p-cpe:/a:novell:opensuse:kernel-obs-build, p-cpe:/a:novell:opensuse:kernel-obs-qa, p-cpe:/a:novell:opensuse:kernel-rt-extra, p-cpe:/a:novell:opensuse:kernel-rt-optional, p-cpe:/a:novell:opensuse:kernel-rt-vdso, p-cpe:/a:novell:opensuse:kernel-rt, p-cpe:/a:novell:opensuse:kernel-source-vanilla, p-cpe:/a:novell:opensuse:kernel-source, p-cpe:/a:novell:opensuse:kernel-zfcpdump, p-cpe:/a:novell:opensuse:kselftests-kmp-64kb, p-cpe:/a:novell:opensuse:kselftests-kmp-azure, p-cpe:/a:novell:opensuse:kselftests-kmp-default, p-cpe:/a:novell:opensuse:kselftests-kmp-rt, p-cpe:/a:novell:opensuse:ocfs2-kmp-64kb, p-cpe:/a:novell:opensuse:ocfs2-kmp-azure, p-cpe:/a:novell:opensuse:ocfs2-kmp-default, p-cpe:/a:novell:opensuse:ocfs2-kmp-rt

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 7/21/2026

Vulnerability Publication Date: 9/29/2025

Reference Information

CVE: CVE-2025-10263, CVE-2025-39894, CVE-2025-40341, CVE-2026-23248, CVE-2026-23394, CVE-2026-23451, CVE-2026-31414, CVE-2026-31429, CVE-2026-31438, CVE-2026-31450, CVE-2026-31452, CVE-2026-31466, CVE-2026-31469, CVE-2026-31479, CVE-2026-31492, CVE-2026-31495, CVE-2026-31499, CVE-2026-31502, CVE-2026-31555, CVE-2026-31560, CVE-2026-31580, CVE-2026-31596, CVE-2026-31646, CVE-2026-31647, CVE-2026-31663, CVE-2026-31664, CVE-2026-31665, CVE-2026-31670, CVE-2026-31673, CVE-2026-31674, CVE-2026-31680, CVE-2026-31693, CVE-2026-31743, CVE-2026-31752, CVE-2026-31771, CVE-2026-43010, CVE-2026-43014, CVE-2026-43015, CVE-2026-43016, CVE-2026-43022, CVE-2026-43024, CVE-2026-43028, CVE-2026-43034, CVE-2026-43035, CVE-2026-43036, CVE-2026-43053, CVE-2026-43057, CVE-2026-43074, CVE-2026-43080, CVE-2026-43081, CVE-2026-43083, CVE-2026-43085, CVE-2026-43086, CVE-2026-43089, CVE-2026-43090, CVE-2026-43092, CVE-2026-43093, CVE-2026-43094, CVE-2026-43101, CVE-2026-43107, CVE-2026-43119, CVE-2026-43124, CVE-2026-43128, CVE-2026-43130, CVE-2026-43132, CVE-2026-43139, CVE-2026-43145, CVE-2026-43157, CVE-2026-43158, CVE-2026-43161, CVE-2026-43167, CVE-2026-43171, CVE-2026-43175, CVE-2026-43187, CVE-2026-43191, CVE-2026-43194, CVE-2026-43198, CVE-2026-43199, CVE-2026-43205, CVE-2026-43213, CVE-2026-43226, CVE-2026-43233, CVE-2026-43238, CVE-2026-43240, CVE-2026-43248, CVE-2026-43260, CVE-2026-43283, CVE-2026-43284, CVE-2026-43298, CVE-2026-43303, CVE-2026-43336, CVE-2026-43337, CVE-2026-43339, CVE-2026-43345, CVE-2026-43351, CVE-2026-43373, CVE-2026-43374, CVE-2026-43383, CVE-2026-43384, CVE-2026-43386, CVE-2026-43403, CVE-2026-43405, CVE-2026-43406, CVE-2026-43407, CVE-2026-43415, CVE-2026-43449, CVE-2026-43450, CVE-2026-43452, CVE-2026-43456, CVE-2026-43457, CVE-2026-43458, CVE-2026-43465, CVE-2026-43466, CVE-2026-43468, CVE-2026-43469, CVE-2026-43470, CVE-2026-43471, CVE-2026-43491, CVE-2026-43492, CVE-2026-43502, CVE-2026-45837, CVE-2026-45838, CVE-2026-45840, CVE-2026-45841, CVE-2026-45848, CVE-2026-45857, CVE-2026-45858, CVE-2026-45861, CVE-2026-45862, CVE-2026-45870, CVE-2026-45884, CVE-2026-45888, CVE-2026-45891, CVE-2026-45894, CVE-2026-45899, CVE-2026-45901, CVE-2026-45912, CVE-2026-45920, CVE-2026-45922, CVE-2026-45933, CVE-2026-45940, CVE-2026-45948, CVE-2026-45961, CVE-2026-45964, CVE-2026-45965, CVE-2026-45974, CVE-2026-45983, CVE-2026-45985, CVE-2026-45997, CVE-2026-45999, CVE-2026-46005, CVE-2026-46024, CVE-2026-46037, CVE-2026-46046, CVE-2026-46050, CVE-2026-46051, CVE-2026-46053, CVE-2026-46063, CVE-2026-46065, CVE-2026-46069, CVE-2026-46071, CVE-2026-46076, CVE-2026-46078, CVE-2026-46079, CVE-2026-46091, CVE-2026-46093, CVE-2026-46099, CVE-2026-46101, CVE-2026-46111, CVE-2026-46112, CVE-2026-46116, CVE-2026-46119, CVE-2026-46120, CVE-2026-46124, CVE-2026-46150, CVE-2026-46160, CVE-2026-46161, CVE-2026-46162, CVE-2026-46172, CVE-2026-46173, CVE-2026-46178, CVE-2026-46185, CVE-2026-46214, CVE-2026-46227, CVE-2026-46242, CVE-2026-46244, CVE-2026-46253, CVE-2026-46254, CVE-2026-46259, CVE-2026-46266, CVE-2026-46289, CVE-2026-46291, CVE-2026-46314, CVE-2026-46319, CVE-2026-46320, CVE-2026-46322, CVE-2026-46328, CVE-2026-46331, CVE-2026-52908, CVE-2026-52909, CVE-2026-52919, CVE-2026-52923, CVE-2026-52924, CVE-2026-52933, CVE-2026-52943, CVE-2026-52954, CVE-2026-52955, CVE-2026-52957, CVE-2026-52962, CVE-2026-52975, CVE-2026-52980, CVE-2026-52993, CVE-2026-53015, CVE-2026-53021, CVE-2026-53036, CVE-2026-53039, CVE-2026-53040, CVE-2026-53041, CVE-2026-53049, CVE-2026-53050, CVE-2026-53053, CVE-2026-53060, CVE-2026-53075, CVE-2026-53078, CVE-2026-53081, CVE-2026-53086, CVE-2026-53090, CVE-2026-53103, CVE-2026-53122, CVE-2026-53133, CVE-2026-53139, CVE-2026-53156, CVE-2026-53167, CVE-2026-53168, CVE-2026-53176, CVE-2026-53178, CVE-2026-53194, CVE-2026-53215, CVE-2026-53216, CVE-2026-53217, CVE-2026-53229, CVE-2026-53249, CVE-2026-53258, CVE-2026-53262, CVE-2026-53263, CVE-2026-53266, CVE-2026-53272, CVE-2026-53274, CVE-2026-53281, CVE-2026-53285, CVE-2026-53286, CVE-2026-53287, CVE-2026-53306, CVE-2026-53359, CVE-2026-53362