SUSE SLES15: cluster-md-kmp-default / dlm-kmp-default / gfs2-kmp-default / etc (SUSE-SU-2026:3602-1)

high Nessus Plugin ID 335327

Language:

Synopsis

The remote SUSE host is missing one or more security updates.

Description

The remote SUSE Linux SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:3602-1 advisory.

The SUSE Linux Enterprise 15 SP6 kernel was updated to fix various security issues:

The following security issues were fixed:

- CVE-2026-46056: Bluetooth: hci_event: fix potential UAF in SSP passkey handlers (bsc#1267435).
- CVE-2026-46193: xfrm: ah: account for ESN high bits in async callbacks (bsc#1267656).
- CVE-2026-46324: netfilter: nf_tables: Introduce functions freeing nft_hook objects (bsc#1267995).
- CVE-2026-52967: smb/client: fix possible infinite loop and oob read in symlink_data() (bsc#1269181).
- CVE-2026-52986: netfilter: nf_conntrack_sip: don't use simple_strtoul (bsc#1269289).
- CVE-2026-53050: quota: Fix race of dquot_scan_active() with quota deactivation (bsc#1269188).
- CVE-2026-53129: fs/mbcache: cancel shrink work before destroying the cache (bsc#1269633).
- CVE-2026-53131: netfilter: require Ethernet MAC header before using eth_hdr() (bsc#1269773).
- CVE-2026-53224: sctp: validate embedded INIT chunk and address list lengths in cookie (bsc#1269997).
- CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1269988).
- CVE-2026-53250: xsk: cache csum_start/csum_offset to fix TOCTOU in xsk_skb_metadata() (bsc#1269808).
- CVE-2026-53262: l2tp: pppol2tp: hold reference to session in pppol2tp_ioctl() (bsc#1270000).
- CVE-2026-53267: netfilter: nft_ct: bail out on template ct in get eval (bsc#1269577).
- CVE-2026-53354: arm64: errata: Mitigate TLBI errata on various Arm CPUs (bsc#1270230).
- CVE-2026-53375: drm/amdgpu/vce: Prevent partial address patches (bsc#1271899).
- CVE-2026-53388: fuse: re-lock request before replacing page cache folio (bsc#1271825).
- CVE-2026-53391: NFSv4/pNFS: reject zero-length r_addr in nfs4_decode_mp_ds_addr (bsc#1271904).
- CVE-2026-53402: fbdev: fbcon: fix out-of-bounds read in err_out of (bsc#1271908).
- CVE-2026-63794: KVM: SVM: Fix page overflow in sev_dbg_crypt() for ENCRYPT path (bsc#1271964).
- CVE-2026-63802: blk-cgroup: fix UAF in __blkcg_rstat_flush() (bsc#1272282).
- CVE-2026-63806: KVM: Replace guest-triggerable BUG_ON() in ioeventfd datamatch with get_unaligned() (bsc#1272268).
- CVE-2026-63807: KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level (bsc#1272263).
- CVE-2026-63824: KEYS: fix overflow in keyctl_pkey_params_get_2() (bsc#1272180).
- CVE-2026-63826: fbdev: fix use-after-free in store_modes() (bsc#1272183).
- CVE-2026-63829: net: ip_gre: require CAP_NET_ADMIN in the device netns for changelink (bsc#1272176).
- CVE-2026-63884: drm/i915: Fix potential UAF in TTM object purge (bsc#1272573).
- CVE-2026-63893: thunderbolt: property: Reject u32 wrap in tb_property_entry_valid() (bsc#1272607).
- CVE-2026-63912: xfrm: esp: restore combined single-frag length gate (bsc#1272836).
- CVE-2026-63917: ip6: vti: Use ip6_tnl.net in vti6_changelink() (bsc#1272904).
- CVE-2026-63919: xfrm: input: hold netns during deferred transport reinjection (bsc#1272907).
- CVE-2026-63921: ip6: vti: Use ip6_tnl.net in vti6_siocdevprivate() (bsc#1272918).
- CVE-2026-63922,CVE-2026-63924: ipv6: exthdrs: refresh nh after handling HAO option (bsc#1272855).
- CVE-2026-63946: Bluetooth: ISO: fix UAF in iso_recv_frame (bsc#1272665).
- CVE-2026-63952: memfd: deny writeable mappings when implying SEAL_WRITE (bsc#1272468).
- CVE-2026-63968: ipv6: fix possible infinite loop in fib6_select_path() (bsc#1272466).
- CVE-2026-63971: sctp: fix race between sctp_wait_for_connect and peeloff (bsc#1272678).
- CVE-2026-63975: Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (bsc#1272694).
- CVE-2026-63984: ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() (bsc#1272865).
- CVE-2026-63994: tunnels: load network headers after skb_cow() in iptunnel_pmtud_build_icmp() (bsc#1273035).
- CVE-2026-64106: KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits (bsc#1272242).
- CVE-2026-64189: netfilter: ipset: fix race between dump and ip_set_list resize (bsc#1272207).
- CVE-2026-64560: posix-cpu-timers: Prevent UAF caused by non-leader exec() race (bsc#1273004).
- CVE-2026-64561: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available (bsc#1273231).
- CVE-2026-64564: sctp: don't free the ASCONF's own transport in DEL-IP processing (bsc#1274072).
- CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (bsc#1271526).

The following non security issues were fixed:

- Drivers: hv: vmbus: Set DMA coherent mask for VMBus devices (git-fixes).
- hrtimers: Introduce hrtimer_setup() to replace hrtimer_init() (bsc#1271912).
- ice: don't check has_ready_bitmap in E810 functions (bsc#1269981).
- ice: factor out ice_ptp_rebuild_owner() (bsc#1269981).
- ice: fix PTP Call Trace during PTP release (bsc#1269981).
- ice: Fix PTP NULL pointer dereference during VSI rebuild (bsc#1269981).
- ice: introduce PTP state machine (bsc#1269981).
- ice: pass reset type to PTP reset functions (bsc#1269981).
- ice: rename ice_ptp_tx_cfg_intr (bsc#1269981).
- ice: rename verify_cached to has_ready_bitmap (bsc#1269981).
- ice: stop destroying and reinitalizing Tx tracker during reset (bsc#1269981).
- KVM: SVM: Mark VMCB_NPT as dirty on nested VMRUN (git-fixes).
- KVM: SVM: Mark VMCB_PERM_MAP as dirty on nested VMRUN (git-fixes).
- KVM: x86/mmu: Fix use-after-free on vendor module reload (git-fixes).
- KVM: x86/mmu: Preserve nested TDP shadow page tables if they are used as roots (git-fixes).
- KVM: x86/xen: Fix cleanup logic in emulation of Xen schedop poll hypercalls (git-fixes).
- KVM: x86: Fix SRCU list traversal in kvm_fire_mask_notifiers() (git-fixes).
- KVM: x86: Fix VM hard lockup after prolonged inactivity with periodic HV timer (git-fixes).
- KVM: x86: hyper-v: Bound the bank index when querying sparse banks (git-fixes).
- KVM: x86: hyper-v: Validate all GVAs during PV TLB flush (git-fixes).
- mkspec-dtb: Skip missing DTBs.
- net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_handle (bsc#1271866).
- net: mana: Add Interrupt Moderation support (bsc#1271368).
- net: mana: Return error code from mana_create_rxq() (git-fixes).
- net: mana: Validate the packet length reported by the NIC (git-fixes).
- pkspec-dtb: Fix dtb-al rename.
- posix-cpu-timers: Cleanup the firing logic (bsc#1271912).
- posix-cpu-timers: Correctly update timer status in posix_cpu_timer_del() (bsc#1271912).
- posix-cpu-timers: Do not arm SIGEV_NONE timers (bsc#1271912).
- posix-cpu-timers: Handle interval timers correctly in timer_get() (bsc#1271912).
- posix-cpu-timers: Handle SIGEV_NONE timers correctly in timer_get() (bsc#1271912).
- posix-cpu-timers: Handle SIGEV_NONE timers correctly in timer_set() (bsc#1271912).
- posix-cpu-timers: Make k_itimer::it_active consistent (bsc#1271912).
- posix-cpu-timers: Remove incorrect comment in posix_cpu_timer_set() (bsc#1271912).
- posix-cpu-timers: Replace old expiry retrieval in posix_cpu_timer_set() (bsc#1271912).
- posix-cpu-timers: Simplify posix_cpu_timer_set() (bsc#1271912).
- posix-cpu-timers: Split up posix_cpu_timer_get() (bsc#1271912).
- posix-cpu-timers: Use @now instead of @val for clarity (bsc#1271912).
- posix-timers: Add proper state tracking (bsc#1271912).
- posix-timers: Avoid direct access to hrtimer clockbase (bsc#1271912).
- posix-timers: Clarify posix_timer_fn() comments (bsc#1271912).
- posix-timers: Clear overrun in common_timer_set() (bsc#1271912).
- posix-timers: Consolidate signal queueing (bsc#1271912).
- posix-timers: Consolidate timer setup (bsc#1271912).
- posix-timers: Cure si_sys_private race (bsc#1271912).
- posix-timers: Document common_clock_get() correctly (bsc#1271912).
- posix-timers: Expand timer_arm() callbacks with a boolean return value (bsc#1271912).
- posix-timers: Polish coding style in a few places (bsc#1271912).
- posix-timers: Retrieve interval in common timer_settime() code (bsc#1271912).
- RDMA/mana_ib: initialize err for empty send WR lists (git-fixes).
- sctp: validate embedded address parameter length (git-fixes).
- time: Switch to hrtimer_setup() (bsc#1271912).

Tenable has extracted the preceding description block directly from the SUSE security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected packages.

See Also

https://bugzilla.suse.com/1185845

https://bugzilla.suse.com/1243603

https://bugzilla.suse.com/1253262

https://bugzilla.suse.com/1258718

https://bugzilla.suse.com/1260347

https://bugzilla.suse.com/1262573

https://bugzilla.suse.com/1262745

https://bugzilla.suse.com/1262771

https://bugzilla.suse.com/1263010

https://bugzilla.suse.com/1263068

https://bugzilla.suse.com/1263718

https://bugzilla.suse.com/1263788

https://bugzilla.suse.com/1264013

https://bugzilla.suse.com/1264053

https://bugzilla.suse.com/1264076

https://bugzilla.suse.com/1264089

https://bugzilla.suse.com/1264090

https://bugzilla.suse.com/1264558

https://bugzilla.suse.com/1264779

https://bugzilla.suse.com/1264795

https://bugzilla.suse.com/1265308

https://bugzilla.suse.com/1266238

https://bugzilla.suse.com/1266758

https://bugzilla.suse.com/1266850

https://bugzilla.suse.com/1266890

https://bugzilla.suse.com/1266913

https://bugzilla.suse.com/1267375

https://bugzilla.suse.com/1267384

https://bugzilla.suse.com/1267435

https://bugzilla.suse.com/1267584

https://bugzilla.suse.com/1267596

https://bugzilla.suse.com/1267656

https://bugzilla.suse.com/1267682

https://bugzilla.suse.com/1267715

https://bugzilla.suse.com/1267995

https://bugzilla.suse.com/1268029

https://bugzilla.suse.com/1268307

https://bugzilla.suse.com/1269181

https://bugzilla.suse.com/1269188

https://bugzilla.suse.com/1269289

https://bugzilla.suse.com/1269383

https://bugzilla.suse.com/1269512

https://bugzilla.suse.com/1269513

https://bugzilla.suse.com/1269577

https://bugzilla.suse.com/1269633

https://bugzilla.suse.com/1269773

https://bugzilla.suse.com/1269808

https://bugzilla.suse.com/1269981

https://bugzilla.suse.com/1269988

https://bugzilla.suse.com/1269997

https://bugzilla.suse.com/1270000

https://bugzilla.suse.com/1270230

https://bugzilla.suse.com/1271349

https://bugzilla.suse.com/1271368

https://bugzilla.suse.com/1271526

https://bugzilla.suse.com/1271825

https://bugzilla.suse.com/1271866

https://bugzilla.suse.com/1271899

https://bugzilla.suse.com/1271904

https://bugzilla.suse.com/1271908

https://bugzilla.suse.com/1271912

https://bugzilla.suse.com/1271964

https://bugzilla.suse.com/1272176

https://bugzilla.suse.com/1272180

https://bugzilla.suse.com/1272183

https://bugzilla.suse.com/1272207

https://bugzilla.suse.com/1272242

https://bugzilla.suse.com/1272263

https://bugzilla.suse.com/1272268

https://bugzilla.suse.com/1272282

https://bugzilla.suse.com/1272466

https://bugzilla.suse.com/1272468

https://bugzilla.suse.com/1272573

https://bugzilla.suse.com/1272607

https://bugzilla.suse.com/1272665

https://bugzilla.suse.com/1272678

https://bugzilla.suse.com/1272693

https://bugzilla.suse.com/1272694

https://bugzilla.suse.com/1272836

https://bugzilla.suse.com/1272855

https://bugzilla.suse.com/1272865

https://bugzilla.suse.com/1272904

https://bugzilla.suse.com/1272907

https://bugzilla.suse.com/1272918

https://bugzilla.suse.com/1273004

https://bugzilla.suse.com/1273035

https://bugzilla.suse.com/1273231

https://bugzilla.suse.com/1274072

https://www.suse.com/security/cve/CVE-2023-2058

https://www.suse.com/security/cve/CVE-2025-54518

https://www.suse.com/security/cve/CVE-2026-31431

https://www.suse.com/security/cve/CVE-2026-31482

https://www.suse.com/security/cve/CVE-2026-31483

https://www.suse.com/security/cve/CVE-2026-31542

https://www.suse.com/security/cve/CVE-2026-31598

https://www.suse.com/security/cve/CVE-2026-31628

https://www.suse.com/security/cve/CVE-2026-31759

https://www.suse.com/security/cve/CVE-2026-43033

https://www.suse.com/security/cve/CVE-2026-43046

https://www.suse.com/security/cve/CVE-2026-43056

https://www.suse.com/security/cve/CVE-2026-43276

https://www.suse.com/security/cve/CVE-2026-43440

https://www.suse.com/security/cve/CVE-2026-43475

https://www.suse.com/security/cve/CVE-2026-45904

https://www.suse.com/security/cve/CVE-2026-46056

https://www.suse.com/security/cve/CVE-2026-46080

https://www.suse.com/security/cve/CVE-2026-46084

https://www.suse.com/security/cve/CVE-2026-46109

https://www.suse.com/security/cve/CVE-2026-46117

https://www.suse.com/security/cve/CVE-2026-46126

https://www.suse.com/security/cve/CVE-2026-46144

https://www.suse.com/security/cve/CVE-2026-46145

https://www.suse.com/security/cve/CVE-2026-46174

https://www.suse.com/security/cve/CVE-2026-46193

https://www.suse.com/security/cve/CVE-2026-46243

https://www.suse.com/security/cve/CVE-2026-46323

https://www.suse.com/security/cve/CVE-2026-46324

https://www.suse.com/security/cve/CVE-2026-46333

https://www.suse.com/security/cve/CVE-2026-52967

https://www.suse.com/security/cve/CVE-2026-52986

https://www.suse.com/security/cve/CVE-2026-53050

https://www.suse.com/security/cve/CVE-2026-53129

https://www.suse.com/security/cve/CVE-2026-53131

https://www.suse.com/security/cve/CVE-2026-53177

https://www.suse.com/security/cve/CVE-2026-53224

https://www.suse.com/security/cve/CVE-2026-53246

https://www.suse.com/security/cve/CVE-2026-53250

https://www.suse.com/security/cve/CVE-2026-53262

https://www.suse.com/security/cve/CVE-2026-53267

https://www.suse.com/security/cve/CVE-2026-53297

https://www.suse.com/security/cve/CVE-2026-53324

https://www.suse.com/security/cve/CVE-2026-53354

https://www.suse.com/security/cve/CVE-2026-53375

https://www.suse.com/security/cve/CVE-2026-53388

https://www.suse.com/security/cve/CVE-2026-53391

https://www.suse.com/security/cve/CVE-2026-53402

https://www.suse.com/security/cve/CVE-2026-63794

https://www.suse.com/security/cve/CVE-2026-63802

https://www.suse.com/security/cve/CVE-2026-63806

https://www.suse.com/security/cve/CVE-2026-63807

https://www.suse.com/security/cve/CVE-2026-63824

https://www.suse.com/security/cve/CVE-2026-63826

https://www.suse.com/security/cve/CVE-2026-63829

https://www.suse.com/security/cve/CVE-2026-63884

https://www.suse.com/security/cve/CVE-2026-63893

https://www.suse.com/security/cve/CVE-2026-63912

https://www.suse.com/security/cve/CVE-2026-63917

https://www.suse.com/security/cve/CVE-2026-63919

https://www.suse.com/security/cve/CVE-2026-63921

https://www.suse.com/security/cve/CVE-2026-63922

https://www.suse.com/security/cve/CVE-2026-63924

https://www.suse.com/security/cve/CVE-2026-63946

https://www.suse.com/security/cve/CVE-2026-63952

https://www.suse.com/security/cve/CVE-2026-63968

https://www.suse.com/security/cve/CVE-2026-63971

https://www.suse.com/security/cve/CVE-2026-63975

https://www.suse.com/security/cve/CVE-2026-63984

https://www.suse.com/security/cve/CVE-2026-63994

https://www.suse.com/security/cve/CVE-2026-64106

https://www.suse.com/security/cve/CVE-2026-64189

https://www.suse.com/security/cve/CVE-2026-64530

https://www.suse.com/security/cve/CVE-2026-64560

https://www.suse.com/security/cve/CVE-2026-64561

https://www.suse.com/security/cve/CVE-2026-64564

https://www.suse.com/security/cve/CVE-2026-64600

http://www.nessus.org/u?131f5bfd

Plugin Details

Severity: High

ID: 335327

File Name: suse_SU-2026-3602-1.nasl

Version: 1.1

Type: Local

Agent: unix

Published: 8/14/2026

Updated: 8/14/2026

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

Risk Information

VPR

Risk Factor: Critical

Score: 9.5

Percentile: 99.86

CVSS v2

Risk Factor: Low

Base Score: 3.3

Temporal Score: 2.9

Vector: CVSS2#AV:N/AC:L/Au:M/C:N/I:P/A:N

CVSS Score Source: CVE-2023-2058

CVSS v3

Risk Factor: High

Base Score: 7.8

Temporal Score: 7.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:H/RL:O/RC:C

CVSS Score Source: CVE-2026-63794

CVSS v4

Risk Factor: High

Base Score: 7.3

Threat Score: 7.3

Threat Vector: CVSS:4.0/E:A

Vector: CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

CVSS Score Source: CVE-2025-54518

Vulnerability Information

CPE: cpe:/o:novell:suse_linux:15, p-cpe:/a:novell:suse_linux:cluster-md-kmp-default, p-cpe:/a:novell:suse_linux:dlm-kmp-default, p-cpe:/a:novell:suse_linux:gfs2-kmp-default, p-cpe:/a:novell:suse_linux:kernel-64kb, p-cpe:/a:novell:suse_linux:kernel-default-base, p-cpe:/a:novell:suse_linux:kernel-default-livepatch, p-cpe:/a:novell:suse_linux:kernel-default, p-cpe:/a:novell:suse_linux:kernel-livepatch-6_4_0-150600_23_130-default, p-cpe:/a:novell:suse_linux:kernel-obs-build, p-cpe:/a:novell:suse_linux:kernel-source, p-cpe:/a:novell:suse_linux:kernel-zfcpdump, p-cpe:/a:novell:suse_linux:ocfs2-kmp-default, p-cpe:/a:novell:suse_linux:reiserfs-kmp-default

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 8/12/2026

Vulnerability Publication Date: 4/14/2023

CISA Known Exploited Vulnerability Due Dates: 5/15/2026

Reference Information

CVE: CVE-2023-2058, CVE-2025-54518, CVE-2026-31431, CVE-2026-31482, CVE-2026-31483, CVE-2026-31542, CVE-2026-31598, CVE-2026-31628, CVE-2026-31759, CVE-2026-43033, CVE-2026-43046, CVE-2026-43056, CVE-2026-43276, CVE-2026-43440, CVE-2026-43475, CVE-2026-45904, CVE-2026-46056, CVE-2026-46080, CVE-2026-46084, CVE-2026-46109, CVE-2026-46117, CVE-2026-46126, CVE-2026-46144, CVE-2026-46145, CVE-2026-46174, CVE-2026-46193, CVE-2026-46243, CVE-2026-46323, CVE-2026-46324, CVE-2026-46333, CVE-2026-52967, CVE-2026-52986, CVE-2026-53050, CVE-2026-53129, CVE-2026-53131, CVE-2026-53177, CVE-2026-53224, CVE-2026-53246, CVE-2026-53250, CVE-2026-53262, CVE-2026-53267, CVE-2026-53297, CVE-2026-53324, CVE-2026-53354, CVE-2026-53375, CVE-2026-53388, CVE-2026-53391, CVE-2026-53402, CVE-2026-63794, CVE-2026-63802, CVE-2026-63806, CVE-2026-63807, CVE-2026-63824, CVE-2026-63826, CVE-2026-63829, CVE-2026-63884, CVE-2026-63893, CVE-2026-63912, CVE-2026-63917, CVE-2026-63919, CVE-2026-63921, CVE-2026-63922, CVE-2026-63924, CVE-2026-63946, CVE-2026-63952, CVE-2026-63968, CVE-2026-63971, CVE-2026-63975, CVE-2026-63984, CVE-2026-63994, CVE-2026-64106, CVE-2026-64189, CVE-2026-64530, CVE-2026-64560, CVE-2026-64561, CVE-2026-64564, CVE-2026-64600

SuSE: SUSE-SU-2026:3602-1