SUSE SLED15: cluster-md-kmp-default / dlm-kmp-default / gfs2-kmp-default / etc (SUSE-SU-2026:3790-1)

high Nessus Plugin ID 341024

Language:

Synopsis

The remote SUSE host is missing one or more security updates.

Description

The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:3790-1 advisory.

The SUSE Linux Enterprise 15 SP7 kernel was updated to fix various security issues:

The following security issues were fixed:

- CVE-2025-68741: scsi: qla2xxx: Fix improper freeing of purex item (bsc#1255703).
- CVE-2025-68818: scsi: Revert 'scsi: qla2xxx: Perform lockless command completion in abort path' (bsc#1256675).
- CVE-2026-23097: migrate: correct lock ordering for hugetlb file folios (bsc#1257815).
- CVE-2026-43016: bpf: sockmap: Fix use-after-free of sk->sk_socket in sk_psock_verdict_data_ready() (bsc#1264007).
- CVE-2026-43114: netfilter: nft_set_pipapo_avx2: don't return non-matching entry on expiry (bsc#1264601).
- CVE-2026-43130: iommu/vt-d: Flush dev-IOTLB only when PCIe device is accessible in scalable mode (bsc#1264532).
- CVE-2026-43161: iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode (bsc#1264333).
- CVE-2026-43168: ocfs2: fix reflink preserve cleanup issue (bsc#1264537).
- CVE-2026-43170: usb: dwc3: gadget: Move vbus draw to workqueue context (bsc#1264452).
- CVE-2026-43172: wifi: iwlwifi: fix 22000 series SMEM parsing (bsc#1264543).
- CVE-2026-43216: net: Drop the lock in skb_may_tx_timestamp() (bsc#1264319).
- CVE-2026-43230: net/rds: Clear reconnect pending bit (bsc#1264539).
- CVE-2026-43262: gfs2: fiemap page fault fix (bsc#1264422).
- CVE-2026-43266: EFI/CPER: don't go past the ARM processor CPER record buffer (bsc#1264418).
- CVE-2026-43281: mailbox: Prevent out-of-bounds access in fw_mbox_index_xlate() (bsc#1264534).
- CVE-2026-43308: btrfs: don't BUG() on unexpected delayed ref type in run_one_delayed_ref() (bsc#1264712).
- CVE-2026-43309: md raid: fix hang when stopping arrays with metadata through dm-raid (bsc#1264827).
- CVE-2026-43328: cpufreq: governor: Free dbs_data directly when gov->init() fails (bsc#1264832).
- CVE-2026-43439: cgroup: fix race between task migration and iteration (bsc#1265141).
- CVE-2026-43451: netfilter: nfnetlink_queue: fix entry leak in bridge verdict error path (bsc#1265009).
- CVE-2026-45860: netfilter: nf_conncount: increase the connection clean up limit to 64 (bsc#1266710).
- CVE-2026-45873: netfilter: nft_set_rbtree: check for partial overlaps in anonymous sets (bsc#1266715).
- CVE-2026-45905: xfrm: fix ip_rt_bug race in icmp_route_lookup reverse path (bsc#1266685).
- CVE-2026-45913: net: bridge: mcast: always update mdb_n_entries for vlan contexts (bsc#1266891).
- CVE-2026-45915: fat: avoid parent link count underflow in rmdir (bsc#1266896).
- CVE-2026-45917: ipvs: do not keep dest_dst if dev is going down (bsc#1266900).
- CVE-2026-45944: iommu/vt-d: Clear Present bit before tearing down context entry (bsc#1267203).
- CVE-2026-45973: RDMA/mlx5: Fix UMR hang in LAG error state unload (bsc#1267025).
- CVE-2026-46003: net: qrtr: ns: Limit the total number of nodes (bsc#1267210).
- CVE-2026-46015: tcp: call sk_data_ready() after listener migration (bsc#1267439).
- CVE-2026-46026: net: qrtr: ns: Limit the maximum number of lookups (bsc#1266876).
- CVE-2026-46038: net: qrtr: ns: Free the node during ctrl_cmd_bye() (bsc#1266695).
- CVE-2026-46137: mptcp: pm: ADD_ADDR rtx: fix potential data-race (bsc#1267570).
- CVE-2026-46147: KVM: arm64: Factor out pKVM hyp vcpu creation to separate function (bsc#1267689).
- CVE-2026-46158: mptcp: pm: ADD_ADDR rtx: always decrease sk refcount (bsc#1266880).
- CVE-2026-46168: mptcp: sockopt: set timestamp flags on subflow socket, not msk (bsc#1266869).
- CVE-2026-46170: mptcp: pm: reuse ID 0 after delete and re-add (bsc#1267714).
- CVE-2026-46180: wifi: brcmfmac: Fix potential use-after-free issue when stopping watchdog task (bsc#1266813).
- CVE-2026-46189: RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path (bsc#1266918).
- CVE-2026-46193: xfrm: ah: account for ESN high bits in async callbacks (bsc#1267656).
- CVE-2026-46234: vsock: fix buffer size clamping order (bsc#1266904).
- CVE-2026-46245: drm/amd/display: Fix dc_link NULL handling in HPD init (bsc#1267678).
- CVE-2026-46265: RDMA/hns: Fix WQ_MEM_RECLAIM warning (bsc#1267662).
- CVE-2026-46292: pmdomain: core: Fix detach procedure for virtual devices in genpd (bsc#1267943).
- CVE-2026-46306: flow_dissector: do not dissect PPPoE PFC frames (bsc#1267986).
- CVE-2026-46324: netfilter: nf_tables: Introduce functions freeing nft_hook objects (bsc#1267995).
- CVE-2026-52910: pf: Free reuseport cBPF prog after RCU grace period (bsc#1268659).
- CVE-2026-52921: netfilter: ipset: stop hash:* range iteration at end (bsc#1269024).
- CVE-2026-52927: netfilter: ebtables: fix OOB read in compat_mtw_from_user (bsc#1269027).
- CVE-2026-52930: ipc/shm: serialize orphan cleanup with shm_nattch updates (bsc#1269003).
- CVE-2026-52937: tap: fix stack info leak in tap_ioctl() SIOCGIFHWADDR (bsc#1268983).
- CVE-2026-52941: net/smc: avoid NULL deref of conn->lnk in smc_msg_event tracepoint (bsc#1268966).
- CVE-2026-52942: netfilter: nf_log: validate MAC header was set before dumping it (bsc#1268967).
- CVE-2026-52947: net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (bsc#1269115).
- CVE-2026-52967: smb/client: fix possible infinite loop and oob read in symlink_data() (bsc#1269181).
- CVE-2026-52970: netfilter: nft_ct: fix missing expect put in obj eval (bsc#1269229).
- CVE-2026-52974: net: tls: fix strparser anchor skb leak on offload RX setup failure (bsc#1269233).
- CVE-2026-52984: net/sched: netem: fix queue limit check to include reordered packets (bsc#1269272).
- CVE-2026-52986: netfilter: nf_conntrack_sip: don't use simple_strtoul (bsc#1269289).
- CVE-2026-52988: rculist: add list_splice_rcu() for private lists (bsc#1269362).
- CVE-2026-52991: sched/psi: fix race between file release and pressure write (bsc#1269134).
- CVE-2026-52998: netfilter: nfnetlink_osf: fix potential NULL dereference in ttl check (bsc#1269118).
- CVE-2026-52999: netfilter: nfnetlink_osf: fix out-of-bounds read on option matching (bsc#1269119).
- CVE-2026-53000: netfilter: nat: use kfree_rcu to release ops (bsc#1269117).
- CVE-2026-53002: netfilter: conntrack: remove sprintf usage (bsc#1269112).
- CVE-2026-53006: ipv6: fix possible UAF in icmpv6_rcv() (bsc#1269104).
- CVE-2026-53011: net/sched: taprio: fix use-after-free in advance_sched() on schedule switch (bsc#1269094).
- CVE-2026-53012: nexthop: fix IPv6 route referencing IPv4 nexthop (bsc#1269154).
- CVE-2026-53032: bpf: Fix NULL deref in map_kptr_match_type for scalar regs (bsc#1269138).
- CVE-2026-53062: dm cache policy smq: fix missing locks in invalidating cache blocks (bsc#1269658).
- CVE-2026-53063: dm cache: fix write hang in passthrough mode (bsc#1269659).
- CVE-2026-53064: dm cache: fix null-deref with concurrent writes in passthrough mode (bsc#1269132).
- CVE-2026-53069: net, bpf: fix null-ptr-deref in xdp_master_redirect() for down master (bsc#1269186).
- CVE-2026-53074: bpf: reject short IPv4/IPv6 inputs in bpf_prog_test_run_skb (bsc#1269688).
- CVE-2026-53083: bpf: Fix RCU stall in bpf_fd_array_map_clear() (bsc#1269964).
- CVE-2026-53088: net: bcmgenet: fix off-by-one in bcmgenet_put_txcb (bsc#1269185).
- CVE-2026-53106: bpf: Do not allow deleting local storage in NMI (bsc#1269990).
- CVE-2026-53107: wifi: libertas: use USB anchors for tracking in-flight URBs (bsc#1269991).
- CVE-2026-53123: md: wake raid456 reshape waiters before suspend (bsc#1269643).
- CVE-2026-53129: fs/mbcache: cancel shrink work before destroying the cache (bsc#1269633).
- CVE-2026-53131: netfilter: require Ethernet MAC header before using eth_hdr() (bsc#1269773).
- CVE-2026-53132: vsock/virtio: fix potential unbounded skb queue (bsc#1269290).
- CVE-2026-53134: netfilter: nft_fib: fix stale stack leak via the OIFNAME register (bsc#1269819).
- CVE-2026-53175: inet: frags: fix use-after-free caused by the fqdir_pre_exit() flush (bsc#1269714).
- CVE-2026-53183: mptcp: allow subflow rcv wnd to shrink (bsc#1269376).
- CVE-2026-53184: udp: clear skb->dev before running a sockmap verdict (bsc#1269689).
- CVE-2026-53185: zram: fix use-after-free in zram_bvec_write_partial() (bsc#1269660).
- CVE-2026-53189: mm/huge_memory: update file PMD counter before folio_put() (bsc#1269797).
- CVE-2026-53212: netfilter: nft_tunnel: fix use-after-free on object destroy (bsc#1269672).
- CVE-2026-53221: ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup() (bsc#1269318).
- CVE-2026-53230: net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list (bsc#1269270).
- CVE-2026-53236: tcp: restrict SO_ATTACH_FILTER to priv users (bsc#1269994).
- CVE-2026-53250: xsk: cache csum_start/csum_offset to fix TOCTOU in xsk_skb_metadata() (bsc#1269808).
- CVE-2026-53252: adaption to srcu change of hci_dev in hci_sysfs (bsc#1269307).
- CVE-2026-53262: l2tp: pppol2tp: hold reference to session in pppol2tp_ioctl() (bsc#1270000).
- CVE-2026-53267: netfilter: nft_ct: bail out on template ct in get eval (bsc#1269577).
- CVE-2026-53270: ipvs: clear the svc scheduler ptr early on edit (bsc#1269240).
- CVE-2026-53275: ipv6: mcast: Fix use-after-free when processing MLD queries (bsc#1269810).
- CVE-2026-53289: ice: fix NULL pointer dereference in ice_reset_all_vfs() (bsc#1269694).
- CVE-2026-53291: ALSA: hda/conexant: Fix missing error check for jack detection (bsc#1269697).
- CVE-2026-53321: io_uring/napi: cap busy_poll_to 10 msec (bsc#1269724).
- CVE-2026-53345: KVM: Don't WARN if memory is dirtied without a vCPU when the VM is dying (bsc#1270132).
- CVE-2026-53354: arm64: errata: Mitigate TLBI errata on various Arm CPUs (bsc#1270230).
- CVE-2026-53369: udf: reject descriptors with oversized CRC length (bsc#1271818).
- CVE-2026-53375: drm/amdgpu/vce: Prevent partial address patches (bsc#1271899).
- CVE-2026-53388: fuse: re-lock request before replacing page cache folio (bsc#1271825).
- CVE-2026-53391: NFSv4/pNFS: reject zero-length r_addr in nfs4_decode_mp_ds_addr (bsc#1271904).
- CVE-2026-53392: NFSv4/flexfiles: reject zero filehandle version count (bsc#1271826).
- CVE-2026-53393: nfsd: Don't reset the write verifier on a commit EAGAIN (bsc#1271858).
- CVE-2026-53397: nfsd: fix posix_acl leak on SETACL decode failure (bsc#1271869).
- CVE-2026-53398: NFSD: Fix SECINFO_NO_NAME decode error cleanup (bsc#1271870).
- CVE-2026-53399: nfsd: release layout stid on setlease failure (bsc#1271832).
- CVE-2026-53402: fbdev: fbcon: fix out-of-bounds read in err_out of (bsc#1271908).
- CVE-2026-63794: KVM: SVM: Fix page overflow in sev_dbg_crypt() for ENCRYPT path (bsc#1271964).
- CVE-2026-63795: 9p: avoid putting oldfid in p9_client_walk() error path (bsc#1271955).
- CVE-2026-63802: blk-cgroup: fix UAF in __blkcg_rstat_flush() (bsc#1272282).
- CVE-2026-63806: KVM: Replace guest-triggerable BUG_ON() in ioeventfd datamatch with get_unaligned() (bsc#1272268).
- CVE-2026-63807: KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level (bsc#1272263).
- CVE-2026-63809: bpf: NUL-terminate replaced sysctl value (bsc#1272296).
- CVE-2026-63824: KEYS: fix overflow in keyctl_pkey_params_get_2() (bsc#1272180).
- CVE-2026-63829: net: ip_gre: require CAP_NET_ADMIN in the device netns for changelink (bsc#1272176).
- CVE-2026-63901: USB: serial: digi_acceleport: fix memory corruption with small endpoints (bsc#1272501).
- CVE-2026-63912: xfrm: esp: restore combined single-frag length gate (bsc#1272836).
- CVE-2026-63917: ip6: vti: Use ip6_tnl.net in vti6_changelink() (bsc#1272904).
- CVE-2026-63919: xfrm: input: hold netns during deferred transport reinjection (bsc#1272907).
- CVE-2026-63921: ip6: vti: Use ip6_tnl.net in vti6_siocdevprivate() (bsc#1272918).
- CVE-2026-63922,CVE-2026-63924: ipv6: exthdrs: refresh nh after handling HAO option (bsc#1272855).
- CVE-2026-63938: KVM: SEV: Check PSC request indices against the actual size of the buffer (bsc#1272620).
- CVE-2026-63939: KVM: SEV: Compute the correct max length of the in-GHCB scratch area (bsc#1272691).
- CVE-2026-63952: memfd: deny writeable mappings when implying SEAL_WRITE (bsc#1272468).
- CVE-2026-63962: usb: typec: tcpm: bound altmode_desc[] per iteration in svdm_consume_modes() (bsc#1272482).
- CVE-2026-63968: ipv6: fix possible infinite loop in fib6_select_path() (bsc#1272466).
- CVE-2026-63971: sctp: fix race between sctp_wait_for_connect and peeloff (bsc#1272678).
- CVE-2026-63984: ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() (bsc#1272865).
- CVE-2026-63994: tunnels: load network headers after skb_cow() in iptunnel_pmtud_build_icmp() (bsc#1273035).
- CVE-2026-64025: bpf, skmsg: fix verdict sk_data_ready racing with ktls rx (bsc#1273117).
- CVE-2026-64106: KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits (bsc#1272242).
- CVE-2026-64187: xfs: fail recovery on a committed log item with no regions (bsc#1272204).
- CVE-2026-64189: netfilter: ipset: fix race between dump and ip_set_list resize (bsc#1272207).
- CVE-2026-64298: NFSv4: include MAY_WRITE in open permission mask for O_TRUNC (bsc#1273550).
- CVE-2026-64560: posix-cpu-timers: Prevent UAF caused by non-leader exec() race (bsc#1273004).
- CVE-2026-64561: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available (bsc#1273231).
- CVE-2026-64564: sctp: don't free the ASCONF's own transport in DEL-IP processing (bsc#1274072).
- CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (bsc#1271526).

The following non security issues were fixed:

- accel/ivpu: Fix wrong register read in LNL failure diagnostics (git-fixes).
- accel/ivpu: Reject firmware log with size smaller than header (git-fixes).
- accel/qaic: use sizeof(*trans_hdr) for transaction length check (git-fixes).
- ALSA: hda: codecs: hdmi: disable keep-alive before audio format change (git-fixes).
- ALSA: hda: cs35l41: validate and free ACPI mute object (git-fixes).
- ALSA: lx6464es: fix period byte count for 16-bit streams (git-fixes).
- ALSA: pcm: wake linked drain waiters on unlink (git-fixes).
- ALSA: seq: close a re-opened queue timer in the destructor (git-fixes).
- ALSA: ump: fix double free of out_cvts on rawmidi error (git-fixes).
- ALSA: usb-audio: Clamp frame size in implicit-feedback mode (git-fixes).
- ALSA: usb-audio: Fix DMA buffer out-of-bounds write when fill_max is set (git-fixes).
- ALSA: usb-audio: fix OOB write in snd_usbmidi_akai_output() (git-fixes).
- ALSA: usb-audio: fix use-after-free in ump_to_endpoint() (git-fixes).
- ASoC: bt-sco: fix duplicate DAPM widget names for wideband DAI (git-fixes).
- ASoC: cs35l56: Fix potential probe() deadlock (git-fixes).
- ASoC: cs35l56: Use complete_all() to signal init_completion (git-fixes).
- ASoC: fsl_sai: Fix spurious BCLK on resume by clearing BYP (git-fixes).
- ASoC: max98090: fix missing IS_ERR() before PTR_ERR() on mclk lookup (git-fixes).
- ASoC: max98095: fix missing IS_ERR() before PTR_ERR() on mclk lookup (git-fixes).
- ASoC: mediatek: mt8192-afe-pcm: Convert to devm_pm_runtime_enable() (stable-fixes).
- ASoC: mediatek: mt8192-afe-pcm: Simplify probe() with local dev variable (stable-fixes).
- ASoC: mediatek: mt8192-afe-pcm: Simplify with dev_err_probe() (stable-fixes).
- ASoC: tas2562: fix broken entries in the volume lookup table (git-fixes).
- ASoC: tas2562: fix DVC coefficient write order (git-fixes).
- ASoC: tas2781: bound firmware description string parsing (git-fixes).
- assoc_array: trim the final shortcut word using the current chunk end (git-fixes).
- batman-adv: dat: fix tie-break for candidate selection (git-fixes).
- batman-adv: fix VLAN priority offset (git-fixes).
- batman-adv: frag: fix primary_if leak on failed linearization (git-fixes).
- batman-adv: frag: free unfragmentable packet (git-fixes).
- batman-adv: tt: avoid request storms during pending request (git-fixes).
- batman-adv: tt: prevent TVLV OOB check overflow (git-fixes).
- bitops: make BYTES_TO_BITS() treewide-available (stable-fixes).
- Bluetooth: 6lowpan: fix cyclic locking warning on netdev unregister (stable-fixes).
- Bluetooth: 6lowpan: Fix using chan->conn as indication to no remote netdev (git-fixes).
- Bluetooth: btintel: Validate length before parsing diagnostics TLV (git-fixes).
- Bluetooth: btrtl: validate firmware patch bounds (git-fixes).
- Bluetooth: btusb: Add USB ID 2c4e:0128 for Mercusys MA60XNB (stable-fixes).
- Bluetooth: btusb: mediatek: remove the unnecessary goto tag (stable-fixes).
- Bluetooth: btusb: validate Realtek vendor event length (git-fixes).
- Bluetooth: hci_qca: Clear memdump state on invalid dump size (git-fixes).
- Bluetooth: hci_sync: Fix advertising data UAFs (git-fixes).
- Bluetooth: hci_sync: hold conn in hci_connect_acl/le_sync() callbacks (git-fixes).
- Bluetooth: hci_sync: Protect UUID list traversal (git-fixes).
- Bluetooth: HIDP: reject frames without a transaction header (git-fixes).
- Bluetooth: HIDP: validate numbered report payloads (git-fixes).
- Bluetooth: ISO: clear iso_data always when detaching conn from hcon (git-fixes).
- Bluetooth: ISO: fix CONNECTED -> CLOSED transition on shutdown/release (git-fixes).
- Bluetooth: ISO: fix timeout vs sync_timeout typo in check_bcast_qos (git-fixes).
- Bluetooth: ISO: validate sockaddr_iso first in iso_sock_rebind_bis() (git-fixes).
- Bluetooth: L2CAP: fix UAF in l2cap_le_connect_rsp (git-fixes).
- Bluetooth: mgmt: fix locking in unpair_device/disconnect_sync (git-fixes).
- Bluetooth: mgmt: hold reference for hci_conn in mgmt_pending_cmds (git-fixes).
- Bluetooth: MGMT: revalidate LOAD_CONN_PARAM queued update (git-fixes).
- Bluetooth: mgmt: Translate HCI reason in Device Disconnected event (git-fixes).
- Bluetooth: qca: fix NVM tag length underflow in TLV parser (git-fixes).
- Bluetooth: RFCOMM: Fix session UAF in set_termios (git-fixes).
- bus: sunxi-rsb: Always check register address validity (git-fixes).
- can: bcm: add missing rcu list annotations and operations (git-fixes).
- can: bcm: defer rx_op deallocation to workqueue to fix thrtimer UAF (git-fixes).
- can: bcm: fix lockless bound/ifindex race and silent RX_SETUP failure (git-fixes).
- can: c_can: c_can_chip_config(): keep controller in init mode until bittiming is configured (git-fixes).
- can: ctucanfd: add missing MODULE_DEVICE_TABLE() (git-fixes).
- can: ctucanfd: handle bus error interrupts (git-fixes).
- can: ctucanfd: mark error-active controller status valid (git-fixes).
- can: ctucanfd: unmap BAR0 using base address (git-fixes).
- can: ctucanfd: use self-test mode for PRESUME_ACK (git-fixes).
- can: ems_usb: validate CPC message lengths (git-fixes).
- can: esd_usb: kill anchored URBs before freeing netdevs (git-fixes).
- can: etas_es58x: es58x_read_bulk_callback(): fix RX buffer leak on URB resubmit failure (git-fixes).
- can: isotp: check register_netdevice_notifier() error in module init (git-fixes).
- can: isotp: use unconditional synchronize_rcu() in isotp_release() (git-fixes).
- can: j1939: transport: j1939_session_fresh_new(): initialize receive buffer (git-fixes).
- can: kvaser_usb: kvaser_usb_hydra_get_busparams(): fix memory leak in kvaser_usb_hydra_get_busparams() (git-fixes).
- can: kvaser_usb_leaf: kvaser_usb_leaf_wait_cmd(): validate received command extents (git-fixes).
- can: peak_usb: add bounds check for USB channel index (git-fixes).
- can: peak_usb: peak_usb_start(): fix double free of transfer buffer on URB submit error (git-fixes).
- can: peak_usb: validate uCAN receive record lengths (git-fixes).
- can: softing: fw_parse(): validate firmware record spans (git-fixes).
- cdrom: fix stack out-of-bounds read in CDROMVOLCTRL (git-fixes).
- comedi: comedi_parport: deal with premature interrupt (git-fixes).
- dm cache policy smq: check allocation under invalidate lock (git-fixes).
- dm cache: fix missing return in invalidate_committed's error path (git-fixes).
- dmaengine: idxd: fix double free of wq, engine, and group structs (git-fixes).
- dmaengine: idxd: fix fdev setup failure cleanup in idxd_cdev_open() (git-fixes).
- dmaengine: qcom: bam_dma: Fix command element mask field for BAM v1.6.0+ (git-fixes).
- dmaengine: sun6i-dma: Fix reclaim descriptors while terminating DMA (git-fixes).
- driver core: Fix missing jiffies conversion in deferred_probe_extend_timeout() (git-fixes).
- driver core: Guard deferred probe timeout extension with delayed_work_pending() (git-fixes).
- driver core: Use mod_delayed_work to prevent lost deferred probe work (git-fixes).
- Drivers: hv: vmbus: Set DMA coherent mask for VMBus devices (git-fixes).
- drm/amd/display: dce100: skip non-DP stream encoders for DP MST (stable-fixes).
- drm/amd/display: set new_stream to NULL after release (git-fixes).
- drm/amd/display: use proper context for logging (git-fixes).
- drm/amd/pm/ci: Don't disable MCLK DPM on Bonaire 0x6658 (R7 260X) (git-fixes).
- drm/amd/pm: fix smu14 power limit range calculation (stable-fixes).
- drm/amd/pm: make pp_features read-only when scpm is enabled (stable-fixes).
- drm/amdgpu/gfx8: drop unecessary BUG_ON() (stable-fixes).
- drm/amdgpu/gfx9.4.3: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/gfx9: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/gfx10: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/gfx11: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/gfx12: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/sdma4.4.2: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/sdma5.0: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/sdma5.2: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/sdma6.0: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/sdma7.0: replace BUG_ON() with WARN_ON() (stable-fixes).
- drm/amdgpu/uvd: Fix forcing MSG, FB BOs into VCPU segment when it isn't at 0 (v2) (stable-fixes).
- drm/amdgpu/uvd: Place VCPU BO only in VRAM for UVD 4.x and older (stable-fixes).
- drm/amdgpu/vce: fix integer overflow in image size (stable-fixes).
- drm/amdgpu/vcn4: avoid rereading IB param length (stable-fixes).
- drm/amdgpu: Disable PCIe dynamic speed switching on Ryzen Pinnacle Ridge (git-fixes).
- drm/amdgpu: fix bo->pin leaking in amdgpu_bo_create_reserved (stable-fixes).
- drm/amdgpu: fix division by zero with invalid uvd dimensions (stable-fixes).
- drm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid() (stable-fixes).
- drm/amdgpu: Fix VFCT bus number matching with soft filter (stable-fixes).
- drm/amdgpu: invoke pm_genpd_remove() before freeing genpd (stable-fixes).
- drm/amdkfd: Check bounds in allocate_event_notification_slot (stable-fixes).
- drm/amdkfd: fix 32-bit overflow in CWSR total size calculation (stable-fixes).
- drm/amdkfd: fix uint32_t overflow in EOP ring buffer size alignment (git-fixes).
- drm/amdkfd: free MQD managers on DQM init failures (git-fixes).
- drm/amdkfd: hold event_mutex while checkpointing CRIU events (git-fixes).
- drm/amdkfd: Use kvcalloc to allocate arrays (stable-fixes).
- drm/dp: Read the PCON max FRL bandwidth only for HDMI DFPs (git-fixes).
- drm/i915/gt: use correct selftest config symbol (git-fixes).
- drm/i915/selftests: Fix GT PM sort comparators (git-fixes).
- drm/i915: ensure segment offset never exceeds allowed max (stable-fixes).
- drm/imagination: acquire vm_ctx->lock before mapping memory to GPU VM (git-fixes).
- drm/mediatek: Check CRTC state before freeing (git-fixes).
- drm/mediatek: ovl_adaptor: balance component registrations (git-fixes).
- drm/panthor: reject firmware sections with oversized data (git-fixes).
- drm/panthor: return error on truncated firmware (git-fixes).
- drm/panthor: validate firmware interface structure sizes (git-fixes).
- drm/radeon: fix r100_copy_blit for large BOs (stable-fixes).
- drm/tegra: gr2d/gr3d: Contain PM in the gr*d_probe/gr*d_remove (git-fixes).
- drm/tegra: gr2d/gr3d: Initialize address register map before HOST1X client is registered (stable-fixes).
- drm/tests: shmem: Set DMA mask to 64-bit in drm_gem_shmem (git-fixes).
- drm/vc4: hvs/v3d: Fix null dereference in unbind (git-fixes).
- drm/vc4: Prevent shader BO mappings from becoming writable (git-fixes).
- drm/vc4: Supply the overflow slot size in BPOS, not the whole bin BO size (git-fixes).
- drm/vc4: Zero the tile state data array before each BIN job (git-fixes).
- drm/virtio: fix deadlock in display_info_cb by removing hotplug from dequeue worker (git-fixes).
- drm/vmwgfx: avoid destroy_workqueue(NULL) on vkms init failure (git-fixes).
- drm/vmwgfx: bound DMA command body size against suffix pointer (git-fixes).
- drm/vmwgfx: drop dma_buf reference on foreign-fd prime import (git-fixes).
- drm/vmwgfx: fix guest_memory_dirty bitfield clobbered as size (git-fixes).
- drm/vmwgfx: reject DX_BIND_QUERY without a DX context (git-fixes).
- drm/vmwgfx: use check_add_overflow for shader size+offset bound (git-fixes).
- drm/vmwgfx: validate DRAW_PRIMITIVES header size before division (git-fixes).
- drm/vmwgfx: validate external BO copy bounds for both stride paths (git-fixes).
- drm/vmwgfx: Validate vmw_surface_metadata::array_size (git-fixes).
- drm/xe/wopcm: fix WOPCM size for LNL+ (git-fixes).
- fbcon: fix NULL pointer dereference for a console without vc_data (stable-fixes).
- fbdev/efifb: Replace references to global screen_info by local pointer (stable-fixes).
- fbdev: carminefb: fix potential memory leak in alloc_carmine_fb() (git-fixes).
- fbdev: efifb: fix memory leak in efifb_probe() (git-fixes).
- firewire: net: Fix fragmented datagram reassembly (git-fixes).
- firmware: arm_ffa: Fix NULL dereference in ffa_partition_info_get() (git-fixes).
- firmware: arm_scmi: Rate-limit queue-full warnings in IRQ context (git-fixes).
- firmware_loader: introduce __free() cleanup hanler (stable-fixes).
- gpio: eic-sprd: use raw_spinlock_t in the irq startup path (git-fixes).
- gpio: mlxbf3: fail probe if gpiochip registration fails (git-fixes).
- gpio: pca953x: fix cache_only and IRQ state on restore_context() failure (git-fixes).
- gpu: host1x: Fix device reference leak in host1x_device_parse_dt() error path (git-fixes).
- gpu: host1x: Fix use-after-free in host1x_bo_clear_cached_mappings (stable-fixes).
- HID: add haptics page defines (stable-fixes).
- HID: playstation: validate num_touch_reports in DualShock 4 reports (stable-fixes).
- hrtimers: Introduce hrtimer_setup() to replace hrtimer_init() (bsc#1271912).
- hwmon: (adt7470) Fix busy-loop and I2C flooding in update thread (git-fixes).
- hwmon: (adt7470) Fix cache updated before hardware write on I2C error (git-fixes).
- hwmon: (adt7470) Fix divide-by-zero TOCTOU crash in fan speed read (git-fixes).
- hwmon: (adt7470) Fix fans stuck in manual mode on I2C errors (git-fixes).
- hwmon: (adt7470) Fix PWM auto temp state array and bounds check (git-fixes).
- hwmon: (adt7470) Fix ...

Please note that the description has been truncated due to length. Please refer to vendor advisory for the full description.

Tenable has extracted the preceding description block directly from the SUSE security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected packages.

See Also

https://bugzilla.suse.com/1185845

https://bugzilla.suse.com/1239511

https://bugzilla.suse.com/1243603

https://bugzilla.suse.com/1246182

https://bugzilla.suse.com/1247455

https://bugzilla.suse.com/1253262

https://bugzilla.suse.com/1253674

https://bugzilla.suse.com/1255357

https://bugzilla.suse.com/1255703

https://bugzilla.suse.com/1256675

https://bugzilla.suse.com/1257815

https://bugzilla.suse.com/1258718

https://bugzilla.suse.com/1260347

https://bugzilla.suse.com/1262573

https://bugzilla.suse.com/1262745

https://bugzilla.suse.com/1262771

https://bugzilla.suse.com/1263010

https://bugzilla.suse.com/1263068

https://bugzilla.suse.com/1263718

https://bugzilla.suse.com/1263788

https://bugzilla.suse.com/1264007

https://bugzilla.suse.com/1264013

https://bugzilla.suse.com/1264053

https://bugzilla.suse.com/1264076

https://bugzilla.suse.com/1264089

https://bugzilla.suse.com/1264090

https://bugzilla.suse.com/1264184

https://bugzilla.suse.com/1264319

https://bugzilla.suse.com/1264333

https://bugzilla.suse.com/1264418

https://bugzilla.suse.com/1264422

https://bugzilla.suse.com/1264452

https://bugzilla.suse.com/1264532

https://bugzilla.suse.com/1264534

https://bugzilla.suse.com/1264537

https://bugzilla.suse.com/1264539

https://bugzilla.suse.com/1264543

https://bugzilla.suse.com/1264558

https://bugzilla.suse.com/1264601

https://bugzilla.suse.com/1264712

https://bugzilla.suse.com/1264779

https://bugzilla.suse.com/1264793

https://bugzilla.suse.com/1264795

https://bugzilla.suse.com/1264827

https://bugzilla.suse.com/1264832

https://bugzilla.suse.com/1265009

https://bugzilla.suse.com/1265141

https://bugzilla.suse.com/1265308

https://bugzilla.suse.com/1266238

https://bugzilla.suse.com/1266685

https://bugzilla.suse.com/1266695

https://bugzilla.suse.com/1266710

https://bugzilla.suse.com/1266715

https://bugzilla.suse.com/1266758

https://bugzilla.suse.com/1266813

https://bugzilla.suse.com/1266850

https://bugzilla.suse.com/1266869

https://bugzilla.suse.com/1266876

https://bugzilla.suse.com/1266880

https://bugzilla.suse.com/1266890

https://bugzilla.suse.com/1266891

https://bugzilla.suse.com/1266896

https://bugzilla.suse.com/1266900

https://bugzilla.suse.com/1266904

https://bugzilla.suse.com/1266913

https://bugzilla.suse.com/1266918

https://bugzilla.suse.com/1267025

https://bugzilla.suse.com/1267203

https://bugzilla.suse.com/1267210

https://bugzilla.suse.com/1267375

https://bugzilla.suse.com/1267384

https://bugzilla.suse.com/1267439

https://bugzilla.suse.com/1267570

https://bugzilla.suse.com/1267584

https://bugzilla.suse.com/1267596

https://bugzilla.suse.com/1267656

https://bugzilla.suse.com/1267662

https://bugzilla.suse.com/1267678

https://bugzilla.suse.com/1267682

https://bugzilla.suse.com/1267689

https://bugzilla.suse.com/1267714

https://bugzilla.suse.com/1267715

https://bugzilla.suse.com/1267943

https://bugzilla.suse.com/1267986

https://bugzilla.suse.com/1267995

https://bugzilla.suse.com/1268029

https://bugzilla.suse.com/1268307

https://bugzilla.suse.com/1268648

https://bugzilla.suse.com/1268659

https://bugzilla.suse.com/1268966

https://bugzilla.suse.com/1268967

https://bugzilla.suse.com/1268983

https://bugzilla.suse.com/1269003

https://bugzilla.suse.com/1269024

https://bugzilla.suse.com/1269027

https://bugzilla.suse.com/1269094

https://bugzilla.suse.com/1269104

https://bugzilla.suse.com/1269112

https://bugzilla.suse.com/1269115

https://bugzilla.suse.com/1269117

https://bugzilla.suse.com/1269118

https://bugzilla.suse.com/1269119

https://bugzilla.suse.com/1269132

https://bugzilla.suse.com/1269134

https://bugzilla.suse.com/1269138

https://bugzilla.suse.com/1269154

https://bugzilla.suse.com/1269181

https://bugzilla.suse.com/1269185

https://bugzilla.suse.com/1269186

https://bugzilla.suse.com/1269229

https://bugzilla.suse.com/1269233

https://bugzilla.suse.com/1269240

https://bugzilla.suse.com/1269270

https://bugzilla.suse.com/1269272

https://bugzilla.suse.com/1269289

https://bugzilla.suse.com/1269290

https://bugzilla.suse.com/1269307

https://bugzilla.suse.com/1269318

https://bugzilla.suse.com/1269362

https://bugzilla.suse.com/1269376

https://bugzilla.suse.com/1269383

https://bugzilla.suse.com/1269512

https://bugzilla.suse.com/1269513

https://bugzilla.suse.com/1269577

https://bugzilla.suse.com/1269633

https://bugzilla.suse.com/1269643

https://bugzilla.suse.com/1269658

https://bugzilla.suse.com/1269659

https://bugzilla.suse.com/1269660

https://bugzilla.suse.com/1269672

https://bugzilla.suse.com/1269688

https://bugzilla.suse.com/1269689

https://bugzilla.suse.com/1269694

https://bugzilla.suse.com/1269697

https://bugzilla.suse.com/1269714

https://bugzilla.suse.com/1269724

https://bugzilla.suse.com/1269734

https://bugzilla.suse.com/1269773

https://bugzilla.suse.com/1269797

https://bugzilla.suse.com/1269808

https://bugzilla.suse.com/1269810

https://bugzilla.suse.com/1269819

https://bugzilla.suse.com/1269964

https://bugzilla.suse.com/1269981

https://bugzilla.suse.com/1269990

https://bugzilla.suse.com/1269991

https://bugzilla.suse.com/1269994

https://bugzilla.suse.com/1270000

https://bugzilla.suse.com/1270102

https://bugzilla.suse.com/1270113

https://bugzilla.suse.com/1270132

https://bugzilla.suse.com/1270230

https://bugzilla.suse.com/1271250

https://bugzilla.suse.com/1271283

https://bugzilla.suse.com/1271285

https://bugzilla.suse.com/1271291

https://bugzilla.suse.com/1271349

https://bugzilla.suse.com/1271368

https://bugzilla.suse.com/1271402

https://bugzilla.suse.com/1271526

https://bugzilla.suse.com/1271717

https://bugzilla.suse.com/1271731

https://bugzilla.suse.com/1271813

https://bugzilla.suse.com/1271818

https://bugzilla.suse.com/1271825

https://bugzilla.suse.com/1271826

https://bugzilla.suse.com/1271827

https://bugzilla.suse.com/1271831

https://bugzilla.suse.com/1271832

https://bugzilla.suse.com/1271833

https://bugzilla.suse.com/1271834

https://bugzilla.suse.com/1271858

https://bugzilla.suse.com/1271866

https://bugzilla.suse.com/1271869

https://bugzilla.suse.com/1271870

https://bugzilla.suse.com/1271899

https://bugzilla.suse.com/1271904

https://bugzilla.suse.com/1271908

https://bugzilla.suse.com/1271912

https://bugzilla.suse.com/1271937

https://bugzilla.suse.com/1271955

https://bugzilla.suse.com/1271964

https://bugzilla.suse.com/1271967

https://bugzilla.suse.com/1272146

https://bugzilla.suse.com/1272149

https://bugzilla.suse.com/1272176

https://bugzilla.suse.com/1272180

https://bugzilla.suse.com/1272183

https://bugzilla.suse.com/1272187

https://bugzilla.suse.com/1272194

https://bugzilla.suse.com/1272197

https://bugzilla.suse.com/1272204

https://bugzilla.suse.com/1272207

https://bugzilla.suse.com/1272211

https://bugzilla.suse.com/1272242

https://bugzilla.suse.com/1272246

https://bugzilla.suse.com/1272263

https://bugzilla.suse.com/1272268

https://bugzilla.suse.com/1272282

https://bugzilla.suse.com/1272296

https://bugzilla.suse.com/1272325

https://bugzilla.suse.com/1272360

https://bugzilla.suse.com/1272361

https://bugzilla.suse.com/1272362

https://bugzilla.suse.com/1272373

https://bugzilla.suse.com/1272374

https://bugzilla.suse.com/1272380

https://bugzilla.suse.com/1272384

https://bugzilla.suse.com/1272387

https://bugzilla.suse.com/1272389

https://bugzilla.suse.com/1272406

https://bugzilla.suse.com/1272434

https://bugzilla.suse.com/1272466

https://bugzilla.suse.com/1272467

https://bugzilla.suse.com/1272468

https://bugzilla.suse.com/1272470

https://bugzilla.suse.com/1272472

https://bugzilla.suse.com/1272474

https://bugzilla.suse.com/1272478

https://bugzilla.suse.com/1272480

https://bugzilla.suse.com/1272482

https://bugzilla.suse.com/1272483

https://bugzilla.suse.com/1272489

https://bugzilla.suse.com/1272492

https://bugzilla.suse.com/1272494

https://bugzilla.suse.com/1272499

https://bugzilla.suse.com/1272500

https://bugzilla.suse.com/1272501

https://bugzilla.suse.com/1272513

https://bugzilla.suse.com/1272517

https://bugzilla.suse.com/1272522

https://bugzilla.suse.com/1272523

https://bugzilla.suse.com/1272573

https://bugzilla.suse.com/1272578

https://bugzilla.suse.com/1272591

https://bugzilla.suse.com/1272600

https://bugzilla.suse.com/1272607

https://bugzilla.suse.com/1272614

https://bugzilla.suse.com/1272617

https://bugzilla.suse.com/1272620

https://bugzilla.suse.com/1272642

https://bugzilla.suse.com/1272646

https://bugzilla.suse.com/1272659

https://bugzilla.suse.com/1272664

https://bugzilla.suse.com/1272665

https://bugzilla.suse.com/1272668

https://bugzilla.suse.com/1272670

https://bugzilla.suse.com/1272671

https://bugzilla.suse.com/1272678

https://bugzilla.suse.com/1272681

https://bugzilla.suse.com/1272685

https://bugzilla.suse.com/1272686

https://bugzilla.suse.com/1272689

https://bugzilla.suse.com/1272690

https://bugzilla.suse.com/1272691

https://bugzilla.suse.com/1272693

https://bugzilla.suse.com/1272694

https://bugzilla.suse.com/1272706

https://bugzilla.suse.com/1272781

https://bugzilla.suse.com/1272785

https://bugzilla.suse.com/1272787

https://bugzilla.suse.com/1272797

https://bugzilla.suse.com/1272800

https://bugzilla.suse.com/1272807

https://bugzilla.suse.com/1272836

https://bugzilla.suse.com/1272843

https://bugzilla.suse.com/1272850

https://bugzilla.suse.com/1272853

https://bugzilla.suse.com/1272855

https://bugzilla.suse.com/1272863

https://bugzilla.suse.com/1272865

https://bugzilla.suse.com/1272871

https://bugzilla.suse.com/1272891

https://bugzilla.suse.com/1272892

https://bugzilla.suse.com/1272897

https://bugzilla.suse.com/1272903

https://bugzilla.suse.com/1272904

https://bugzilla.suse.com/1272907

https://bugzilla.suse.com/1272918

https://bugzilla.suse.com/1272920

https://bugzilla.suse.com/1272973

https://bugzilla.suse.com/1273004

https://bugzilla.suse.com/1273023

https://bugzilla.suse.com/1273035

https://bugzilla.suse.com/1273044

https://bugzilla.suse.com/1273117

https://bugzilla.suse.com/1273231

https://bugzilla.suse.com/1273550

https://bugzilla.suse.com/1274072

https://www.suse.com/security/cve/CVE-2023-2058

https://www.suse.com/security/cve/CVE-2025-21845

https://www.suse.com/security/cve/CVE-2025-38250

https://www.suse.com/security/cve/CVE-2025-38469

https://www.suse.com/security/cve/CVE-2025-40213

https://www.suse.com/security/cve/CVE-2025-54518

https://www.suse.com/security/cve/CVE-2025-68223

https://www.suse.com/security/cve/CVE-2025-68741

https://www.suse.com/security/cve/CVE-2025-68818

https://www.suse.com/security/cve/CVE-2026-23097

https://www.suse.com/security/cve/CVE-2026-31431

https://www.suse.com/security/cve/CVE-2026-31482

https://www.suse.com/security/cve/CVE-2026-31483

https://www.suse.com/security/cve/CVE-2026-31542

https://www.suse.com/security/cve/CVE-2026-31598

https://www.suse.com/security/cve/CVE-2026-31628

https://www.suse.com/security/cve/CVE-2026-31759

https://www.suse.com/security/cve/CVE-2026-43016

https://www.suse.com/security/cve/CVE-2026-43033

https://www.suse.com/security/cve/CVE-2026-43046

https://www.suse.com/security/cve/CVE-2026-43056

https://www.suse.com/security/cve/CVE-2026-43059

https://www.suse.com/security/cve/CVE-2026-43114

https://www.suse.com/security/cve/CVE-2026-43130

https://www.suse.com/security/cve/CVE-2026-43161

https://www.suse.com/security/cve/CVE-2026-43168

https://www.suse.com/security/cve/CVE-2026-43170

https://www.suse.com/security/cve/CVE-2026-43172

https://www.suse.com/security/cve/CVE-2026-43216

https://www.suse.com/security/cve/CVE-2026-43230

https://www.suse.com/security/cve/CVE-2026-43262

https://www.suse.com/security/cve/CVE-2026-43266

https://www.suse.com/security/cve/CVE-2026-43276

https://www.suse.com/security/cve/CVE-2026-43281

https://www.suse.com/security/cve/CVE-2026-43308

https://www.suse.com/security/cve/CVE-2026-43309

https://www.suse.com/security/cve/CVE-2026-43328

https://www.suse.com/security/cve/CVE-2026-43352

https://www.suse.com/security/cve/CVE-2026-43439

https://www.suse.com/security/cve/CVE-2026-43440

https://www.suse.com/security/cve/CVE-2026-43451

https://www.suse.com/security/cve/CVE-2026-43475

https://www.suse.com/security/cve/CVE-2026-45860

https://www.suse.com/security/cve/CVE-2026-45873

https://www.suse.com/security/cve/CVE-2026-45904

https://www.suse.com/security/cve/CVE-2026-45905

https://www.suse.com/security/cve/CVE-2026-45913

https://www.suse.com/security/cve/CVE-2026-45915

https://www.suse.com/security/cve/CVE-2026-45917

https://www.suse.com/security/cve/CVE-2026-45944

https://www.suse.com/security/cve/CVE-2026-45973

https://www.suse.com/security/cve/CVE-2026-46003

https://www.suse.com/security/cve/CVE-2026-46015

https://www.suse.com/security/cve/CVE-2026-46026

https://www.suse.com/security/cve/CVE-2026-46038

https://www.suse.com/security/cve/CVE-2026-46080

https://www.suse.com/security/cve/CVE-2026-46084

https://www.suse.com/security/cve/CVE-2026-46109

https://www.suse.com/security/cve/CVE-2026-46117

https://www.suse.com/security/cve/CVE-2026-46126

https://www.suse.com/security/cve/CVE-2026-46137

https://www.suse.com/security/cve/CVE-2026-46144

https://www.suse.com/security/cve/CVE-2026-46145

https://www.suse.com/security/cve/CVE-2026-46147

https://www.suse.com/security/cve/CVE-2026-46158

https://www.suse.com/security/cve/CVE-2026-46168

https://www.suse.com/security/cve/CVE-2026-46170

https://www.suse.com/security/cve/CVE-2026-46174

https://www.suse.com/security/cve/CVE-2026-46180

https://www.suse.com/security/cve/CVE-2026-46189

https://www.suse.com/security/cve/CVE-2026-46193

https://www.suse.com/security/cve/CVE-2026-46234

https://www.suse.com/security/cve/CVE-2026-46243

https://www.suse.com/security/cve/CVE-2026-46245

https://www.suse.com/security/cve/CVE-2026-46265

https://www.suse.com/security/cve/CVE-2026-46292

https://www.suse.com/security/cve/CVE-2026-46306

https://www.suse.com/security/cve/CVE-2026-46323

https://www.suse.com/security/cve/CVE-2026-46324

https://www.suse.com/security/cve/CVE-2026-46333

https://www.suse.com/security/cve/CVE-2026-52910

https://www.suse.com/security/cve/CVE-2026-52921

https://www.suse.com/security/cve/CVE-2026-52927

https://www.suse.com/security/cve/CVE-2026-52930

https://www.suse.com/security/cve/CVE-2026-52937

https://www.suse.com/security/cve/CVE-2026-52941

https://www.suse.com/security/cve/CVE-2026-52942

https://www.suse.com/security/cve/CVE-2026-52947

https://www.suse.com/security/cve/CVE-2026-52967

https://www.suse.com/security/cve/CVE-2026-52970

https://www.suse.com/security/cve/CVE-2026-52974

https://www.suse.com/security/cve/CVE-2026-52984

https://www.suse.com/security/cve/CVE-2026-52986

https://www.suse.com/security/cve/CVE-2026-52988

https://www.suse.com/security/cve/CVE-2026-52991

https://www.suse.com/security/cve/CVE-2026-52998

https://www.suse.com/security/cve/CVE-2026-52999

https://www.suse.com/security/cve/CVE-2026-53000

https://www.suse.com/security/cve/CVE-2026-53002

https://www.suse.com/security/cve/CVE-2026-53006

https://www.suse.com/security/cve/CVE-2026-53011

https://www.suse.com/security/cve/CVE-2026-53012

https://www.suse.com/security/cve/CVE-2026-53032

https://www.suse.com/security/cve/CVE-2026-53062

https://www.suse.com/security/cve/CVE-2026-53063

https://www.suse.com/security/cve/CVE-2026-53064

https://www.suse.com/security/cve/CVE-2026-53069

https://www.suse.com/security/cve/CVE-2026-53074

https://www.suse.com/security/cve/CVE-2026-53083

https://www.suse.com/security/cve/CVE-2026-53088

https://www.suse.com/security/cve/CVE-2026-53106

https://www.suse.com/security/cve/CVE-2026-53107

https://www.suse.com/security/cve/CVE-2026-53123

https://www.suse.com/security/cve/CVE-2026-53129

https://www.suse.com/security/cve/CVE-2026-53131

https://www.suse.com/security/cve/CVE-2026-53132

https://www.suse.com/security/cve/CVE-2026-53134

https://www.suse.com/security/cve/CVE-2026-53175

https://www.suse.com/security/cve/CVE-2026-53177

https://www.suse.com/security/cve/CVE-2026-53183

https://www.suse.com/security/cve/CVE-2026-53184

https://www.suse.com/security/cve/CVE-2026-53185

https://www.suse.com/security/cve/CVE-2026-53189

https://www.suse.com/security/cve/CVE-2026-53212

https://www.suse.com/security/cve/CVE-2026-53221

https://www.suse.com/security/cve/CVE-2026-53230

https://www.suse.com/security/cve/CVE-2026-53236

https://www.suse.com/security/cve/CVE-2026-53250

https://www.suse.com/security/cve/CVE-2026-53252

https://www.suse.com/security/cve/CVE-2026-53262

https://www.suse.com/security/cve/CVE-2026-53265

https://www.suse.com/security/cve/CVE-2026-53267

https://www.suse.com/security/cve/CVE-2026-53270

https://www.suse.com/security/cve/CVE-2026-53275

https://www.suse.com/security/cve/CVE-2026-53289

https://www.suse.com/security/cve/CVE-2026-53291

https://www.suse.com/security/cve/CVE-2026-53297

https://www.suse.com/security/cve/CVE-2026-53321

https://www.suse.com/security/cve/CVE-2026-53324

https://www.suse.com/security/cve/CVE-2026-53331

https://www.suse.com/security/cve/CVE-2026-53332

https://www.suse.com/security/cve/CVE-2026-53345

https://www.suse.com/security/cve/CVE-2026-53354

https://www.suse.com/security/cve/CVE-2026-53369

https://www.suse.com/security/cve/CVE-2026-53374

https://www.suse.com/security/cve/CVE-2026-53375

https://www.suse.com/security/cve/CVE-2026-53376

https://www.suse.com/security/cve/CVE-2026-53379

https://www.suse.com/security/cve/CVE-2026-53382

https://www.suse.com/security/cve/CVE-2026-53385

https://www.suse.com/security/cve/CVE-2026-53388

https://www.suse.com/security/cve/CVE-2026-53391

https://www.suse.com/security/cve/CVE-2026-53392

https://www.suse.com/security/cve/CVE-2026-53393

https://www.suse.com/security/cve/CVE-2026-53397

https://www.suse.com/security/cve/CVE-2026-53398

https://www.suse.com/security/cve/CVE-2026-53399

https://www.suse.com/security/cve/CVE-2026-53402

https://www.suse.com/security/cve/CVE-2026-53403

https://www.suse.com/security/cve/CVE-2026-63794

https://www.suse.com/security/cve/CVE-2026-63795

https://www.suse.com/security/cve/CVE-2026-63802

https://www.suse.com/security/cve/CVE-2026-63806

https://www.suse.com/security/cve/CVE-2026-63807

https://www.suse.com/security/cve/CVE-2026-63809

https://www.suse.com/security/cve/CVE-2026-63821

https://www.suse.com/security/cve/CVE-2026-63822

https://www.suse.com/security/cve/CVE-2026-63824

https://www.suse.com/security/cve/CVE-2026-63826

https://www.suse.com/security/cve/CVE-2026-63829

https://www.suse.com/security/cve/CVE-2026-63836

https://www.suse.com/security/cve/CVE-2026-63843

https://www.suse.com/security/cve/CVE-2026-63844

https://www.suse.com/security/cve/CVE-2026-63845

https://www.suse.com/security/cve/CVE-2026-63846

https://www.suse.com/security/cve/CVE-2026-63847

https://www.suse.com/security/cve/CVE-2026-63848

https://www.suse.com/security/cve/CVE-2026-63851

https://www.suse.com/security/cve/CVE-2026-63852

https://www.suse.com/security/cve/CVE-2026-63853

https://www.suse.com/security/cve/CVE-2026-63854

https://www.suse.com/security/cve/CVE-2026-63855

https://www.suse.com/security/cve/CVE-2026-63856

https://www.suse.com/security/cve/CVE-2026-63861

https://www.suse.com/security/cve/CVE-2026-63862

https://www.suse.com/security/cve/CVE-2026-63869

https://www.suse.com/security/cve/CVE-2026-63882

https://www.suse.com/security/cve/CVE-2026-63884

https://www.suse.com/security/cve/CVE-2026-63892

https://www.suse.com/security/cve/CVE-2026-63893

https://www.suse.com/security/cve/CVE-2026-63895

https://www.suse.com/security/cve/CVE-2026-63896

https://www.suse.com/security/cve/CVE-2026-63897

https://www.suse.com/security/cve/CVE-2026-63899

https://www.suse.com/security/cve/CVE-2026-63900

https://www.suse.com/security/cve/CVE-2026-63901

https://www.suse.com/security/cve/CVE-2026-63902

https://www.suse.com/security/cve/CVE-2026-63903

https://www.suse.com/security/cve/CVE-2026-63904

https://www.suse.com/security/cve/CVE-2026-63905

https://www.suse.com/security/cve/CVE-2026-63908

https://www.suse.com/security/cve/CVE-2026-63912

https://www.suse.com/security/cve/CVE-2026-63915

https://www.suse.com/security/cve/CVE-2026-63916

https://www.suse.com/security/cve/CVE-2026-63917

https://www.suse.com/security/cve/CVE-2026-63919

https://www.suse.com/security/cve/CVE-2026-63921

https://www.suse.com/security/cve/CVE-2026-63922

https://www.suse.com/security/cve/CVE-2026-63924

https://www.suse.com/security/cve/CVE-2026-63927

https://www.suse.com/security/cve/CVE-2026-63928

https://www.suse.com/security/cve/CVE-2026-63930

https://www.suse.com/security/cve/CVE-2026-63931

https://www.suse.com/security/cve/CVE-2026-63934

https://www.suse.com/security/cve/CVE-2026-63938

https://www.suse.com/security/cve/CVE-2026-63939

https://www.suse.com/security/cve/CVE-2026-63940

https://www.suse.com/security/cve/CVE-2026-63942

https://www.suse.com/security/cve/CVE-2026-63943

https://www.suse.com/security/cve/CVE-2026-63945

https://www.suse.com/security/cve/CVE-2026-63946

https://www.suse.com/security/cve/CVE-2026-63947

https://www.suse.com/security/cve/CVE-2026-63948

https://www.suse.com/security/cve/CVE-2026-63949

https://www.suse.com/security/cve/CVE-2026-63952

https://www.suse.com/security/cve/CVE-2026-63957

https://www.suse.com/security/cve/CVE-2026-63958

https://www.suse.com/security/cve/CVE-2026-63959

https://www.suse.com/security/cve/CVE-2026-63960

https://www.suse.com/security/cve/CVE-2026-63961

https://www.suse.com/security/cve/CVE-2026-63962

https://www.suse.com/security/cve/CVE-2026-63964

https://www.suse.com/security/cve/CVE-2026-63967

https://www.suse.com/security/cve/CVE-2026-63968

https://www.suse.com/security/cve/CVE-2026-63971

https://www.suse.com/security/cve/CVE-2026-63974

https://www.suse.com/security/cve/CVE-2026-63975

https://www.suse.com/security/cve/CVE-2026-63976

https://www.suse.com/security/cve/CVE-2026-63984

https://www.suse.com/security/cve/CVE-2026-63991

https://www.suse.com/security/cve/CVE-2026-63994

https://www.suse.com/security/cve/CVE-2026-64025

https://www.suse.com/security/cve/CVE-2026-64089

https://www.suse.com/security/cve/CVE-2026-64106

https://www.suse.com/security/cve/CVE-2026-64174

https://www.suse.com/security/cve/CVE-2026-64179

https://www.suse.com/security/cve/CVE-2026-64182

https://www.suse.com/security/cve/CVE-2026-64183

https://www.suse.com/security/cve/CVE-2026-64187

https://www.suse.com/security/cve/CVE-2026-64189

https://www.suse.com/security/cve/CVE-2026-64191

https://www.suse.com/security/cve/CVE-2026-64220

https://www.suse.com/security/cve/CVE-2026-64221

https://www.suse.com/security/cve/CVE-2026-64223

https://www.suse.com/security/cve/CVE-2026-64231

https://www.suse.com/security/cve/CVE-2026-64234

https://www.suse.com/security/cve/CVE-2026-64242

https://www.suse.com/security/cve/CVE-2026-64298

https://www.suse.com/security/cve/CVE-2026-64330

https://www.suse.com/security/cve/CVE-2026-64336

https://www.suse.com/security/cve/CVE-2026-64345

https://www.suse.com/security/cve/CVE-2026-64347

https://www.suse.com/security/cve/CVE-2026-64465

https://www.suse.com/security/cve/CVE-2026-64530

https://www.suse.com/security/cve/CVE-2026-64560

https://www.suse.com/security/cve/CVE-2026-64561

https://www.suse.com/security/cve/CVE-2026-64564

https://www.suse.com/security/cve/CVE-2026-64600

http://www.nessus.org/u?10a12cd5

Plugin Details

Severity: High

ID: 341024

File Name: suse_SU-2026-3790-1.nasl

Version: 1.2

Type: Local

Agent: unix

Published: 8/27/2026

Updated: 8/28/2026

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

Risk Information

VPR

Risk Factor: Critical

Score: 9.5

Percentile: 99.87

CVSS v2

Risk Factor: Low

Base Score: 3.3

Temporal Score: 2.9

Vector: CVSS2#AV:N/AC:L/Au:M/C:N/I:P/A:N

CVSS Score Source: CVE-2023-2058

CVSS v3

Risk Factor: High

Base Score: 7.8

Temporal Score: 7.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:H/RL:O/RC:C

CVSS Score Source: CVE-2026-64242

CVSS v4

Risk Factor: High

Base Score: 7.3

Threat Score: 7.3

Threat Vector: CVSS:4.0/E:A

Vector: CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

CVSS Score Source: CVE-2025-54518

Vulnerability Information

CPE: cpe:/o:novell:suse_linux:15, p-cpe:/a:novell:suse_linux:cluster-md-kmp-default, p-cpe:/a:novell:suse_linux:dlm-kmp-default, p-cpe:/a:novell:suse_linux:gfs2-kmp-default, p-cpe:/a:novell:suse_linux:kernel-64kb, p-cpe:/a:novell:suse_linux:kernel-azure, p-cpe:/a:novell:suse_linux:kernel-default-base, p-cpe:/a:novell:suse_linux:kernel-default-extra, p-cpe:/a:novell:suse_linux:kernel-default-livepatch, p-cpe:/a:novell:suse_linux:kernel-default, p-cpe:/a:novell:suse_linux:kernel-livepatch-6_4_0-150700_53_78-default, p-cpe:/a:novell:suse_linux:kernel-obs-build, p-cpe:/a:novell:suse_linux:kernel-source, p-cpe:/a:novell:suse_linux:kernel-zfcpdump, p-cpe:/a:novell:suse_linux:ocfs2-kmp-default, p-cpe:/a:novell:suse_linux:reiserfs-kmp-default

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 8/25/2026

Vulnerability Publication Date: 4/14/2023

CISA Known Exploited Vulnerability Due Dates: 5/15/2026

Exploitable With

Core Impact

Metasploit (Copy Fail AF_ALG + authencesn Page-Cache Write)

Reference Information

CVE: CVE-2023-2058, CVE-2025-21845, CVE-2025-38250, CVE-2025-38469, CVE-2025-40213, CVE-2025-54518, CVE-2025-68223, CVE-2025-68741, CVE-2025-68818, CVE-2026-23097, CVE-2026-31431, CVE-2026-31482, CVE-2026-31483, CVE-2026-31542, CVE-2026-31598, CVE-2026-31628, CVE-2026-31759, CVE-2026-43016, CVE-2026-43033, CVE-2026-43046, CVE-2026-43056, CVE-2026-43059, CVE-2026-43114, CVE-2026-43130, CVE-2026-43161, CVE-2026-43168, CVE-2026-43170, CVE-2026-43172, CVE-2026-43216, CVE-2026-43230, CVE-2026-43262, CVE-2026-43266, CVE-2026-43276, CVE-2026-43281, CVE-2026-43308, CVE-2026-43309, CVE-2026-43328, CVE-2026-43352, CVE-2026-43439, CVE-2026-43440, CVE-2026-43451, CVE-2026-43475, CVE-2026-45860, CVE-2026-45873, CVE-2026-45904, CVE-2026-45905, CVE-2026-45913, CVE-2026-45915, CVE-2026-45917, CVE-2026-45944, CVE-2026-45973, CVE-2026-46003, CVE-2026-46015, CVE-2026-46026, CVE-2026-46038, CVE-2026-46080, CVE-2026-46084, CVE-2026-46109, CVE-2026-46117, CVE-2026-46126, CVE-2026-46137, CVE-2026-46144, CVE-2026-46145, CVE-2026-46147, CVE-2026-46158, CVE-2026-46168, CVE-2026-46170, CVE-2026-46174, CVE-2026-46180, CVE-2026-46189, CVE-2026-46193, CVE-2026-46234, CVE-2026-46243, CVE-2026-46245, CVE-2026-46265, CVE-2026-46292, CVE-2026-46306, CVE-2026-46323, CVE-2026-46324, CVE-2026-46333, CVE-2026-52910, CVE-2026-52921, CVE-2026-52927, CVE-2026-52930, CVE-2026-52937, CVE-2026-52941, CVE-2026-52942, CVE-2026-52947, CVE-2026-52967, CVE-2026-52970, CVE-2026-52974, CVE-2026-52984, CVE-2026-52986, CVE-2026-52988, CVE-2026-52991, CVE-2026-52998, CVE-2026-52999, CVE-2026-53000, CVE-2026-53002, CVE-2026-53006, CVE-2026-53011, CVE-2026-53012, CVE-2026-53032, CVE-2026-53062, CVE-2026-53063, CVE-2026-53064, CVE-2026-53069, CVE-2026-53074, CVE-2026-53083, CVE-2026-53088, CVE-2026-53106, CVE-2026-53107, CVE-2026-53123, CVE-2026-53129, CVE-2026-53131, CVE-2026-53132, CVE-2026-53134, CVE-2026-53175, CVE-2026-53177, CVE-2026-53183, CVE-2026-53184, CVE-2026-53185, CVE-2026-53189, CVE-2026-53212, CVE-2026-53221, CVE-2026-53230, CVE-2026-53236, CVE-2026-53250, CVE-2026-53252, CVE-2026-53262, CVE-2026-53265, CVE-2026-53267, CVE-2026-53270, CVE-2026-53275, CVE-2026-53289, CVE-2026-53291, CVE-2026-53297, CVE-2026-53321, CVE-2026-53324, CVE-2026-53331, CVE-2026-53332, CVE-2026-53345, CVE-2026-53354, CVE-2026-53369, CVE-2026-53374, CVE-2026-53375, CVE-2026-53376, CVE-2026-53379, CVE-2026-53382, CVE-2026-53385, CVE-2026-53388, CVE-2026-53391, CVE-2026-53392, CVE-2026-53393, CVE-2026-53397, CVE-2026-53398, CVE-2026-53399, CVE-2026-53402, CVE-2026-53403, CVE-2026-63794, CVE-2026-63795, CVE-2026-63802, CVE-2026-63806, CVE-2026-63807, CVE-2026-63809, CVE-2026-63821, CVE-2026-63822, CVE-2026-63824, CVE-2026-63826, CVE-2026-63829, CVE-2026-63836, CVE-2026-63843, CVE-2026-63844, CVE-2026-63845, CVE-2026-63846, CVE-2026-63847, CVE-2026-63848, CVE-2026-63851, CVE-2026-63852, CVE-2026-63853, CVE-2026-63854, CVE-2026-63855, CVE-2026-63856, CVE-2026-63861, CVE-2026-63862, CVE-2026-63869, CVE-2026-63882, CVE-2026-63884, CVE-2026-63892, CVE-2026-63893, CVE-2026-63895, CVE-2026-63896, CVE-2026-63897, CVE-2026-63899, CVE-2026-63900, CVE-2026-63901, CVE-2026-63902, CVE-2026-63903, CVE-2026-63904, CVE-2026-63905, CVE-2026-63908, CVE-2026-63912, CVE-2026-63915, CVE-2026-63916, CVE-2026-63917, CVE-2026-63919, CVE-2026-63921, CVE-2026-63922, CVE-2026-63924, CVE-2026-63927, CVE-2026-63928, CVE-2026-63930, CVE-2026-63931, CVE-2026-63934, CVE-2026-63938, CVE-2026-63939, CVE-2026-63940, CVE-2026-63942, CVE-2026-63943, CVE-2026-63945, CVE-2026-63946, CVE-2026-63947, CVE-2026-63948, CVE-2026-63949, CVE-2026-63952, CVE-2026-63957, CVE-2026-63958, CVE-2026-63959, CVE-2026-63960, CVE-2026-63961, CVE-2026-63962, CVE-2026-63964, CVE-2026-63967, CVE-2026-63968, CVE-2026-63971, CVE-2026-63974, CVE-2026-63975, CVE-2026-63976, CVE-2026-63984, CVE-2026-63991, CVE-2026-63994, CVE-2026-64025, CVE-2026-64089, CVE-2026-64106, CVE-2026-64174, CVE-2026-64179, CVE-2026-64182, CVE-2026-64183, CVE-2026-64187, CVE-2026-64189, CVE-2026-64191, CVE-2026-64220, CVE-2026-64221, CVE-2026-64223, CVE-2026-64231, CVE-2026-64234, CVE-2026-64242, CVE-2026-64298, CVE-2026-64330, CVE-2026-64336, CVE-2026-64345, CVE-2026-64347, CVE-2026-64465, CVE-2026-64530, CVE-2026-64560, CVE-2026-64561, CVE-2026-64564, CVE-2026-64600

SuSE: SUSE-SU-2026:3790-1