SUSE update for the Linux Kernel



Risk Medium
Patch available YES
Number of vulnerabilities 346
CVE-ID CVE-2023-31248
CVE-2023-3772
CVE-2023-39197
CVE-2023-42753
CVE-2023-53147
CVE-2023-53148
CVE-2023-53150
CVE-2023-53151
CVE-2023-53152
CVE-2023-53165
CVE-2023-53167
CVE-2023-53170
CVE-2023-53174
CVE-2023-53175
CVE-2023-53177
CVE-2023-53179
CVE-2023-53180
CVE-2023-53181
CVE-2023-53183
CVE-2023-53184
CVE-2023-53185
CVE-2023-53187
CVE-2023-53189
CVE-2023-53192
CVE-2023-53195
CVE-2023-53196
CVE-2023-53201
CVE-2023-53204
CVE-2023-53205
CVE-2023-53206
CVE-2023-53207
CVE-2023-53208
CVE-2023-53209
CVE-2023-53210
CVE-2023-53215
CVE-2023-53217
CVE-2023-53220
CVE-2023-53221
CVE-2023-53222
CVE-2023-53226
CVE-2023-53230
CVE-2023-53231
CVE-2023-53235
CVE-2023-53238
CVE-2023-53243
CVE-2023-53245
CVE-2023-53247
CVE-2023-53248
CVE-2023-53249
CVE-2023-53251
CVE-2023-53252
CVE-2023-53255
CVE-2023-53257
CVE-2023-53258
CVE-2023-53260
CVE-2023-53261
CVE-2023-53263
CVE-2023-53264
CVE-2023-53272
CVE-2023-53274
CVE-2023-53275
CVE-2023-53280
CVE-2023-53286
CVE-2023-53287
CVE-2023-53288
CVE-2023-53291
CVE-2023-53292
CVE-2023-53303
CVE-2023-53304
CVE-2023-53305
CVE-2023-53309
CVE-2023-53311
CVE-2023-53312
CVE-2023-53313
CVE-2023-53314
CVE-2023-53316
CVE-2023-53319
CVE-2023-53321
CVE-2023-53322
CVE-2023-53323
CVE-2023-53324
CVE-2023-53325
CVE-2023-53328
CVE-2023-53331
CVE-2023-53333
CVE-2023-53336
CVE-2023-53338
CVE-2023-53339
CVE-2023-53342
CVE-2023-53343
CVE-2023-53350
CVE-2023-53352
CVE-2023-53354
CVE-2023-53356
CVE-2023-53357
CVE-2023-53360
CVE-2023-53362
CVE-2023-53364
CVE-2023-53365
CVE-2023-53367
CVE-2023-53368
CVE-2023-53369
CVE-2023-53370
CVE-2023-53371
CVE-2023-53374
CVE-2023-53377
CVE-2023-53379
CVE-2023-53380
CVE-2023-53384
CVE-2023-53385
CVE-2023-53386
CVE-2023-53391
CVE-2023-53394
CVE-2023-53395
CVE-2023-53397
CVE-2023-53401
CVE-2023-53420
CVE-2023-53421
CVE-2023-53424
CVE-2023-53425
CVE-2023-53426
CVE-2023-53428
CVE-2023-53429
CVE-2023-53432
CVE-2023-53436
CVE-2023-53438
CVE-2023-53441
CVE-2023-53442
CVE-2023-53444
CVE-2023-53446
CVE-2023-53447
CVE-2023-53448
CVE-2023-53451
CVE-2023-53454
CVE-2023-53456
CVE-2023-53457
CVE-2023-53461
CVE-2023-53462
CVE-2023-53463
CVE-2023-53465
CVE-2023-53472
CVE-2023-53479
CVE-2023-53480
CVE-2023-53485
CVE-2023-53487
CVE-2023-53488
CVE-2023-53490
CVE-2023-53491
CVE-2023-53492
CVE-2023-53493
CVE-2023-53495
CVE-2023-53496
CVE-2023-53500
CVE-2023-53501
CVE-2023-53504
CVE-2023-53505
CVE-2023-53507
CVE-2023-53508
CVE-2023-53510
CVE-2023-53515
CVE-2023-53516
CVE-2023-53518
CVE-2023-53519
CVE-2023-53520
CVE-2023-53523
CVE-2023-53526
CVE-2023-53527
CVE-2023-53528
CVE-2023-53530
CVE-2023-53531
CVE-2024-26584
CVE-2024-58090
CVE-2024-58240
CVE-2025-22022
CVE-2025-38119
CVE-2025-38234
CVE-2025-38255
CVE-2025-38263
CVE-2025-38351
CVE-2025-38402
CVE-2025-38408
CVE-2025-38418
CVE-2025-38419
CVE-2025-38456
CVE-2025-38465
CVE-2025-38466
CVE-2025-38488
CVE-2025-38514
CVE-2025-38526
CVE-2025-38527
CVE-2025-38533
CVE-2025-38544
CVE-2025-38556
CVE-2025-38574
CVE-2025-38584
CVE-2025-38590
CVE-2025-38593
CVE-2025-38595
CVE-2025-38597
CVE-2025-38605
CVE-2025-38614
CVE-2025-38616
CVE-2025-38622
CVE-2025-38623
CVE-2025-38639
CVE-2025-38640
CVE-2025-38643
CVE-2025-38645
CVE-2025-38659
CVE-2025-38660
CVE-2025-38664
CVE-2025-38668
CVE-2025-38676
CVE-2025-38678
CVE-2025-38679
CVE-2025-38680
CVE-2025-38681
CVE-2025-38683
CVE-2025-38684
CVE-2025-38685
CVE-2025-38687
CVE-2025-38691
CVE-2025-38692
CVE-2025-38693
CVE-2025-38694
CVE-2025-38695
CVE-2025-38697
CVE-2025-38698
CVE-2025-38701
CVE-2025-38702
CVE-2025-38705
CVE-2025-38706
CVE-2025-38709
CVE-2025-38712
CVE-2025-38713
CVE-2025-38714
CVE-2025-38715
CVE-2025-38721
CVE-2025-38722
CVE-2025-38724
CVE-2025-38725
CVE-2025-38727
CVE-2025-38729
CVE-2025-38730
CVE-2025-38732
CVE-2025-38734
CVE-2025-38735
CVE-2025-38736
CVE-2025-39675
CVE-2025-39677
CVE-2025-39678
CVE-2025-39679
CVE-2025-39681
CVE-2025-39682
CVE-2025-39684
CVE-2025-39685
CVE-2025-39686
CVE-2025-39691
CVE-2025-39693
CVE-2025-39694
CVE-2025-39701
CVE-2025-39703
CVE-2025-39705
CVE-2025-39706
CVE-2025-39709
CVE-2025-39710
CVE-2025-39713
CVE-2025-39714
CVE-2025-39718
CVE-2025-39719
CVE-2025-39721
CVE-2025-39724
CVE-2025-39726
CVE-2025-39730
CVE-2025-39732
CVE-2025-39738
CVE-2025-39739
CVE-2025-39742
CVE-2025-39743
CVE-2025-39744
CVE-2025-39746
CVE-2025-39749
CVE-2025-39750
CVE-2025-39751
CVE-2025-39754
CVE-2025-39757
CVE-2025-39758
CVE-2025-39759
CVE-2025-39760
CVE-2025-39761
CVE-2025-39763
CVE-2025-39764
CVE-2025-39766
CVE-2025-39770
CVE-2025-39772
CVE-2025-39773
CVE-2025-39782
CVE-2025-39783
CVE-2025-39787
CVE-2025-39790
CVE-2025-39797
CVE-2025-39798
CVE-2025-39800
CVE-2025-39801
CVE-2025-39806
CVE-2025-39808
CVE-2025-39810
CVE-2025-39823
CVE-2025-39824
CVE-2025-39825
CVE-2025-39826
CVE-2025-39827
CVE-2025-39832
CVE-2025-39833
CVE-2025-39835
CVE-2025-39838
CVE-2025-39839
CVE-2025-39842
CVE-2025-39844
CVE-2025-39845
CVE-2025-39846
CVE-2025-39847
CVE-2025-39848
CVE-2025-39849
CVE-2025-39850
CVE-2025-39853
CVE-2025-39854
CVE-2025-39857
CVE-2025-39860
CVE-2025-39861
CVE-2025-39863
CVE-2025-39864
CVE-2025-39865
CVE-2025-39869
CVE-2025-39870
CVE-2025-39871
CVE-2025-39873
CVE-2025-39882
CVE-2025-39885
CVE-2025-39889
CVE-2025-39891
CVE-2025-39907
CVE-2025-39920
CVE-2025-39923
CVE-2025-39925
CVE-2025-40300
CWE-ID CWE-416
CWE-476
CWE-125
CWE-787
CWE-399
CWE-401
CWE-908
CWE-404
CWE-20
CWE-191
CWE-617
CWE-119
CWE-667
CWE-190
CWE-388
CWE-200
CWE-366
CWE-665
CWE-362
CWE-682
CWE-835
CWE-369
CWE-415
Exploitation vector Network
Public exploit Public exploit code for vulnerability #213 is available.
Vulnerable software
SUSE Linux Enterprise High Availability Extension 15
Operating systems & Components / Operating system

SUSE Linux Enterprise Workstation Extension 15
Operating systems & Components / Operating system

Legacy Module
Operating systems & Components / Operating system

SUSE Linux Enterprise Live Patching
Operating systems & Components / Operating system

Development Tools Module
Operating systems & Components / Operating system

Basesystem Module
Operating systems & Components / Operating system

SUSE Linux Enterprise Real Time 15
Operating systems & Components / Operating system

openSUSE Leap
Operating systems & Components / Operating system

SUSE Linux Enterprise Server for SAP Applications 15
Operating systems & Components / Operating system

SUSE Linux Enterprise Server 15
Operating systems & Components / Operating system

SUSE Linux Enterprise Desktop 15
Operating systems & Components / Operating system

kernel-64kb
Operating systems & Components / Operating system package or component

kselftests-kmp-64kb
Operating systems & Components / Operating system package or component

kernel-64kb-extra
Operating systems & Components / Operating system package or component

dtb-marvell
Operating systems & Components / Operating system package or component

dtb-apm
Operating systems & Components / Operating system package or component

ocfs2-kmp-64kb
Operating systems & Components / Operating system package or component

dtb-exynos
Operating systems & Components / Operating system package or component

gfs2-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

dtb-broadcom
Operating systems & Components / Operating system package or component

dtb-rockchip
Operating systems & Components / Operating system package or component

dtb-qcom
Operating systems & Components / Operating system package or component

dtb-hisilicon
Operating systems & Components / Operating system package or component

dtb-amazon
Operating systems & Components / Operating system package or component

dlm-kmp-64kb
Operating systems & Components / Operating system package or component

dtb-renesas
Operating systems & Components / Operating system package or component

gfs2-kmp-64kb
Operating systems & Components / Operating system package or component

dtb-lg
Operating systems & Components / Operating system package or component

kernel-64kb-devel
Operating systems & Components / Operating system package or component

cluster-md-kmp-64kb
Operating systems & Components / Operating system package or component

dlm-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

dtb-sprd
Operating systems & Components / Operating system package or component

dtb-cavium
Operating systems & Components / Operating system package or component

dtb-xilinx
Operating systems & Components / Operating system package or component

dtb-apple
Operating systems & Components / Operating system package or component

reiserfs-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

dtb-nvidia
Operating systems & Components / Operating system package or component

kernel-64kb-optional
Operating systems & Components / Operating system package or component

dtb-altera
Operating systems & Components / Operating system package or component

dtb-amd
Operating systems & Components / Operating system package or component

reiserfs-kmp-64kb
Operating systems & Components / Operating system package or component

dtb-socionext
Operating systems & Components / Operating system package or component

ocfs2-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

dtb-allwinner
Operating systems & Components / Operating system package or component

kernel-64kb-debugsource
Operating systems & Components / Operating system package or component

cluster-md-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

dtb-mediatek
Operating systems & Components / Operating system package or component

kernel-64kb-extra-debuginfo
Operating systems & Components / Operating system package or component

dtb-freescale
Operating systems & Components / Operating system package or component

kernel-64kb-optional-debuginfo
Operating systems & Components / Operating system package or component

kernel-64kb-debuginfo
Operating systems & Components / Operating system package or component

kernel-64kb-devel-debuginfo
Operating systems & Components / Operating system package or component

dtb-arm
Operating systems & Components / Operating system package or component

kselftests-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

dtb-amlogic
Operating systems & Components / Operating system package or component

dtb-aarch64
Operating systems & Components / Operating system package or component

kernel-zfcpdump-debuginfo
Operating systems & Components / Operating system package or component

kernel-zfcpdump-debugsource
Operating systems & Components / Operating system package or component

kernel-zfcpdump
Operating systems & Components / Operating system package or component

kernel-kvmsmall
Operating systems & Components / Operating system package or component

kernel-obs-qa
Operating systems & Components / Operating system package or component

kernel-default-devel-debuginfo
Operating systems & Components / Operating system package or component

kselftests-kmp-default
Operating systems & Components / Operating system package or component

kernel-default-optional-debuginfo
Operating systems & Components / Operating system package or component

kernel-default-devel
Operating systems & Components / Operating system package or component

kselftests-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

kernel-default-optional
Operating systems & Components / Operating system package or component

kernel-kvmsmall-devel
Operating systems & Components / Operating system package or component

kernel-kvmsmall-devel-debuginfo
Operating systems & Components / Operating system package or component

kernel-kvmsmall-debugsource
Operating systems & Components / Operating system package or component

kernel-default-base
Operating systems & Components / Operating system package or component

kernel-kvmsmall-debuginfo
Operating systems & Components / Operating system package or component

kernel-default-base-rebuild
Operating systems & Components / Operating system package or component

kernel-debug-vdso-debuginfo
Operating systems & Components / Operating system package or component

kernel-default-vdso
Operating systems & Components / Operating system package or component

kernel-default-vdso-debuginfo
Operating systems & Components / Operating system package or component

kernel-kvmsmall-vdso-debuginfo
Operating systems & Components / Operating system package or component

kernel-debug-vdso
Operating systems & Components / Operating system package or component

kernel-kvmsmall-vdso
Operating systems & Components / Operating system package or component

kernel-debug-debugsource
Operating systems & Components / Operating system package or component

kernel-debug-devel-debuginfo
Operating systems & Components / Operating system package or component

kernel-debug-devel
Operating systems & Components / Operating system package or component

kernel-debug-debuginfo
Operating systems & Components / Operating system package or component

kernel-debug
Operating systems & Components / Operating system package or component

kernel-devel
Operating systems & Components / Operating system package or component

kernel-source-vanilla
Operating systems & Components / Operating system package or component

kernel-macros
Operating systems & Components / Operating system package or component

kernel-docs-html
Operating systems & Components / Operating system package or component

kernel-livepatch-6_4_0-150600_23_73-default
Operating systems & Components / Operating system package or component

kernel-default-livepatch-devel
Operating systems & Components / Operating system package or component

kernel-default-livepatch
Operating systems & Components / Operating system package or component

kernel-livepatch-SLE15-SP6_Update_16-debugsource
Operating systems & Components / Operating system package or component

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo
Operating systems & Components / Operating system package or component

kernel-default-extra
Operating systems & Components / Operating system package or component

kernel-default-extra-debuginfo
Operating systems & Components / Operating system package or component

gfs2-kmp-default
Operating systems & Components / Operating system package or component

gfs2-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

dlm-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

dlm-kmp-default
Operating systems & Components / Operating system package or component

ocfs2-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

ocfs2-kmp-default
Operating systems & Components / Operating system package or component

cluster-md-kmp-default
Operating systems & Components / Operating system package or component

cluster-md-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

reiserfs-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

reiserfs-kmp-default
Operating systems & Components / Operating system package or component

kernel-default-debugsource
Operating systems & Components / Operating system package or component

kernel-default-debuginfo
Operating systems & Components / Operating system package or component

kernel-default
Operating systems & Components / Operating system package or component

kernel-source
Operating systems & Components / Operating system package or component

kernel-obs-build
Operating systems & Components / Operating system package or component

kernel-syms
Operating systems & Components / Operating system package or component

kernel-obs-build-debugsource
Operating systems & Components / Operating system package or component

kernel-docs
Operating systems & Components / Operating system package or component

Vendor SUSE

Security Bulletin

This security bulletin contains information about 346 vulnerabilities.

1) Use-after-free

EUVDB-ID: #VU78325

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-31248

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error in nft_chain_lookup_byid() function, which failed to check whether a chain was active and CAP_NET_ADMIN is in any user or network namespace. A local user ca trigger a use-after-free error and execute arbitrary code with elevated privileges.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

2) NULL pointer dereference

EUVDB-ID: #VU80578

Risk: Low

CVSSv4.0: 4 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-3772

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to a NULL pointer dereference error within the xfrm_update_ae_params() function in the IP framework for transforming packets (XFRM subsystem). A local user with CAP_NET_ADMIN privileges can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

3) Out-of-bounds read

EUVDB-ID: #VU84353

Risk: Medium

CVSSv4.0: 2.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/U:Green]

CVE-ID: CVE-2023-39197

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a remote attacker to gain access to potentially sensitive information.

The vulnerability exists due to a boundary condition within the Netfilter Connection Tracking (conntrack) in the Linux kernel in the nf_conntrack_dccp_packet() function in net/netfilter/nf_conntrack_proto_dccp.c. A remote attacker can send specially crafted DCCP packets to the system, trigger an out-of-bounds read error and read contents of memory on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

4) Out-of-bounds write

EUVDB-ID: #VU81663

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-42753

CWE-ID: CWE-787 - Out-of-bounds write

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a boundary error in the netfilter subsystem in Linux kernel. A local user can trigger an out-of-bounds write and execute arbitrary code with elevated privileges.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

5) NULL pointer dereference

EUVDB-ID: #VU115456

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53147

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the xfrm_update_ae_params() function in net/xfrm/xfrm_user.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

6) Resource management error

EUVDB-ID: #VU115580

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53148

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to resource management error within the igb_io_error_detected() function in drivers/net/ethernet/intel/igb/igb_main.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

7) NULL pointer dereference

EUVDB-ID: #VU115455

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53150

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the qla24xx_bsg_request() function in drivers/scsi/qla2xxx/qla_bsg.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

8) Memory leak

EUVDB-ID: #VU115349

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53151

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the flush_pending_writes() and raid10_unplug() functions in drivers/md/raid10.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

9) Resource management error

EUVDB-ID: #VU115615

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53152

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to resource management error within the psp_sw_fini() and psp_hw_fini() functions in drivers/gpu/drm/amd/amdgpu/amdgpu_psp.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

10) Use of uninitialized resource

EUVDB-ID: #VU115521

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53165

CWE-ID: CWE-908 - Use of Uninitialized Resource

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to use of uninitialized resource within the udf_name_from_CS0() function in fs/udf/unicode.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

11) NULL pointer dereference

EUVDB-ID: #VU115453

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53167

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the function in kernel/trace/trace.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

12) Improper resource shutdown or release

EUVDB-ID: #VU115638

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53170

CWE-ID: CWE-404 - Improper Resource Shutdown or Release

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to failure to properly release resources within the felix_parse_ports_node() function in drivers/net/dsa/ocelot/felix.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

13) Memory leak

EUVDB-ID: #VU115347

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53174

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the raid_component_add() function in drivers/scsi/raid_class.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

14) Input validation error

EUVDB-ID: #VU115500

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53175

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the hv_pci_restore_msi_msg() function in drivers/pci/controller/pci-hyperv.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

15) Integer underflow

EUVDB-ID: #VU115527

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53177

CWE-ID: CWE-191 - Integer underflow

Exploit availability: No

Description

The vulnerability allows a local user to execute arbitrary code.

The vulnerability exists due to integer underflow within the hi846_set_ctrl() function in drivers/media/i2c/hi846.c. A local user can execute arbitrary code.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

16) Out-of-bounds read

EUVDB-ID: #VU115410

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53179

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the MODULE_ALIAS() function in net/netfilter/ipset/ip_set_hash_netportnet.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

17) NULL pointer dereference

EUVDB-ID: #VU115451

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53180

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the ath12k_mac_mgmt_tx_wmi() function in drivers/net/wireless/ath/ath12k/mac.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

18) Memory leak

EUVDB-ID: #VU115345

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53181

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the dma_resv_get_fences() function in drivers/dma-buf/dma-resv.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

19) Reachable assertion

EUVDB-ID: #VU115507

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53183

CWE-ID: CWE-617 - Reachable Assertion

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to reachable assertion within the prepare_to_merge() and merge_reloc_roots() functions in fs/btrfs/relocation.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

20) Buffer overflow

EUVDB-ID: #VU115533

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53184

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to memory corruption within the vec_set_vector_length() function in arch/arm64/kernel/fpsimd.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

21) Input validation error

EUVDB-ID: #VU115653

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53185

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the htc_process_conn_rsp() function in drivers/net/wireless/ath/ath9k/htc_hst.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

22) Use-after-free

EUVDB-ID: #VU115386

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53187

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the fs/btrfs/block-group.h. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

23) Integer underflow

EUVDB-ID: #VU115526

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53189

CWE-ID: CWE-191 - Integer underflow

Exploit availability: No

Description

The vulnerability allows a local user to execute arbitrary code.

The vulnerability exists due to integer underflow within the addrconf_del_dad_work() function in net/ipv6/addrconf.c. A local user can execute arbitrary code.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

24) Improper locking

EUVDB-ID: #VU115479

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53192

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the include/net/vxlan.h. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

25) Memory leak

EUVDB-ID: #VU115342

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53195

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the mlxsw_m_linecards_init() function in drivers/net/ethernet/mellanox/mlxsw/minimal.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

26) Memory leak

EUVDB-ID: #VU115343

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53196

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the dwc3_qcom_probe() function in drivers/usb/dwc3/dwc3-qcom.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

27) Integer overflow

EUVDB-ID: #VU115523

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53201

CWE-ID: CWE-190 - Integer overflow

Exploit availability: No

Description

The vulnerability allows a local user to execute arbitrary code.

The vulnerability exists due to integer overflow within the __send_message() and bnxt_qplib_alloc_rcfw_channel() functions in drivers/infiniband/hw/bnxt_re/qplib_rcfw.c. A local user can execute arbitrary code.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

28) Improper locking

EUVDB-ID: #VU115471

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53204

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the unix_inflight(), unix_notinflight() and too_many_unix_fds() functions in net/unix/scm.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

29) Out-of-bounds read

EUVDB-ID: #VU115404

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53205

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the diag9c_forwarding_overrun() and __diag_time_slice_end_directed() functions in arch/s390/kvm/diag.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

30) NULL pointer dereference

EUVDB-ID: #VU115434

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53206

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the _pmbus_is_enabled(), _pmbus_get_flags() and pmbus_get_flags() functions in drivers/hwmon/pmbus/pmbus_core.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

31) Improper locking

EUVDB-ID: #VU115470

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53207

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the ublk_ctrl_end_recovery() function in drivers/block/ublk_drv.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

32) Reachable assertion

EUVDB-ID: #VU115506

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53208

CWE-ID: CWE-617 - Reachable Assertion

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to reachable assertion within the nested_svm_vmexit() function in arch/x86/kvm/svm/nested.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

33) NULL pointer dereference

EUVDB-ID: #VU115433

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53209

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the mac80211_hwsim_select_tx_link() function in drivers/net/wireless/virtual/mac80211_hwsim.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

34) NULL pointer dereference

EUVDB-ID: #VU115432

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53210

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the r5l_log_flush_endio() function in drivers/md/raid5-cache.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

35) Resource management error

EUVDB-ID: #VU115576

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53215

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to resource management error within the load_balance() function in kernel/sched/fair.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

36) Improper locking

EUVDB-ID: #VU115467

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53217

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the nubus_proc_rsrc_show(), nubus_proc_add_rsrc_mem() and nubus_proc_add_rsrc() functions in drivers/nubus/proc.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

37) NULL pointer dereference

EUVDB-ID: #VU115431

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53220

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the az6007_i2c_xfer() function in drivers/media/usb/dvb-usb-v2/az6007.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

38) Memory leak

EUVDB-ID: #VU115241

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53221

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the bpf_trampoline_get_progs() and bpf_trampoline_update() functions in kernel/bpf/trampoline.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

39) Out-of-bounds read

EUVDB-ID: #VU115402

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53222

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the fs/jfs/jfs_filsys.h. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

40) Out-of-bounds read

EUVDB-ID: #VU115401

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53226

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the mwifiex_process_mgmt_packet() function in drivers/net/wireless/marvell/mwifiex/util.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

41) Memory leak

EUVDB-ID: #VU115237

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53230

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the cifs_smb3_do_mount() function in fs/smb/client/cifsfs.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

42) Improper locking

EUVDB-ID: #VU115465

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53231

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the z_erofs_decompress_kickoff() function in fs/erofs/zdata.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

43) Use-after-free

EUVDB-ID: #VU115367

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53235

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the include/drm/drm_kunit_helpers.h. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

44) Out-of-bounds read

EUVDB-ID: #VU115400

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53238

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the hisi_inno_phy_probe() function in drivers/phy/hisilicon/phy-hisi-inno-usb2.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

45) Improper error handling

EUVDB-ID: #VU115513

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53243

CWE-ID: CWE-388 - Error Handling

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper error handling within the btrfs_reduce_alloc_profile() function in fs/btrfs/block-group.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

46) NULL pointer dereference

EUVDB-ID: #VU115426

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53245

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the storvsc_host_reset_handler() function in drivers/scsi/storvsc_drv.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

47) Improper locking

EUVDB-ID: #VU115463

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53247

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the btrfs_truncate_block() function in fs/btrfs/inode.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

48) NULL pointer dereference

EUVDB-ID: #VU115422

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53248

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the amdgpu_vm_bo_add(), amdgpu_vm_init() and amdgpu_vm_make_compute() functions in drivers/gpu/drm/amd/amdgpu/amdgpu_vm.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

49) Memory leak

EUVDB-ID: #VU115234

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53249

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the imx8mn_clocks_probe() function in drivers/clk/imx/clk-imx8mn.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

50) NULL pointer dereference

EUVDB-ID: #VU115420

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53251

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the iwl_pcie_irq_rx_msix_handler() function in drivers/net/wireless/intel/iwlwifi/pcie/rx.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

51) Use-after-free

EUVDB-ID: #VU115365

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53252

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the restart_le_actions(), set_device_flags(), hci_conn_params_set() and remove_device() functions in net/bluetooth/mgmt.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

52) Memory leak

EUVDB-ID: #VU115233

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53255

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the svc_create_memory_pool() function in drivers/firmware/stratix10-svc.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

53) Input validation error

EUVDB-ID: #VU115652

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53257

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the ieee80211_rx_h_action() function in net/mac80211/rx.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

54) Integer underflow

EUVDB-ID: #VU115525

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53258

CWE-ID: CWE-191 - Integer underflow

Exploit availability: No

Description

The vulnerability allows a local user to execute arbitrary code.

The vulnerability exists due to integer underflow within the dcn314_populate_dml_pipes_from_context_fpu() function in drivers/gpu/drm/amd/display/dc/dml/dcn314/dcn314_fpu.c. A local user can execute arbitrary code.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

55) NULL pointer dereference

EUVDB-ID: #VU115419

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53260

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the ovl_permission() function in fs/overlayfs/inode.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

56) Memory leak

EUVDB-ID: #VU115232

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53261

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the acpi_validate_dsd_graph(), acpi_validate_coresight_graph() and acpi_coresight_parse_graph() functions in drivers/hwtracing/coresight/coresight-platform.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

57) Buffer overflow

EUVDB-ID: #VU115530

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53263

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to memory corruption within the nouveau_connector_create() function in drivers/gpu/drm/nouveau/nouveau_connector.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

58) Information disclosure

EUVDB-ID: #VU115544

Risk: Low

CVSSv4.0: 1.1 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53264

CWE-ID: CWE-200 - Exposure of sensitive information to an unauthorized actor

Exploit availability: No

Description

The vulnerability allows a local user to gain access to sensitive information.

The vulnerability exists due to information disclosure within the imxrt1050_clocks_probe() function in drivers/clk/imx/clk-imxrt1050.c. A local user can gain access to sensitive information.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

59) Integer overflow

EUVDB-ID: #VU115522

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53272

CWE-ID: CWE-190 - Integer overflow

Exploit availability: No

Description

The vulnerability allows a local user to execute arbitrary code.

The vulnerability exists due to integer overflow within the ena_com_comp_status_to_errno() function in drivers/net/ethernet/amazon/ena/ena_com.c. A local user can execute arbitrary code.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

60) Buffer overflow

EUVDB-ID: #VU115529

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53274

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to memory corruption within the function in drivers/clk/mediatek/clk-mt8183.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

61) Race condition within a thread

EUVDB-ID: #VU115555

Risk: Low

CVSSv4.0: 1.1 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53275

CWE-ID: CWE-366 - Race Condition within a Thread

Exploit availability: No

Description

The vulnerability allows a local user to corrupt data.

The vulnerability exists due to a data race within the EXPORT_SYMBOL_GPL() function in sound/hda/hdac_regmap.c. A local user can corrupt data.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

62) Improper Initialization

EUVDB-ID: #VU115558

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53280

CWE-ID: CWE-665 - Improper Initialization

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper initialization within the qla_nvme_ls_req() and qla_nvme_post_cmd() functions in drivers/scsi/qla2xxx/qla_nvme.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

63) Resource management error

EUVDB-ID: #VU115603

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53286

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to resource management error within the mlx5_core_destroy_qp(), mlx5_core_xrcd_dealloc() and mlx5_core_destroy_rq_tracked() functions in drivers/infiniband/hw/mlx5/qpc.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

64) Resource management error

EUVDB-ID: #VU115567

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53287

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to resource management error within the drivers/usb/cdns3/core.h. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

65) Information disclosure

EUVDB-ID: #VU115541

Risk: Low

CVSSv4.0: 1.1 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53288

CWE-ID: CWE-200 - Exposure of sensitive information to an unauthorized actor

Exploit availability: No

Description

The vulnerability allows a local user to gain access to sensitive information.

The vulnerability exists due to information disclosure within the drm_client_modeset_probe() function in drivers/gpu/drm/drm_client_modeset.c. A local user can gain access to sensitive information.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

66) Resource management error

EUVDB-ID: #VU115564

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53291

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to resource management error within the rcu_scale_cleanup() function in kernel/rcu/rcuscale.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

67) Input validation error

EUVDB-ID: #VU115649

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53292

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the blk_mq_elv_switch_none() function in block/blk-mq.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

68) Information disclosure

EUVDB-ID: #VU115539

Risk: Low

CVSSv4.0: 1.1 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53303

CWE-ID: CWE-200 - Exposure of sensitive information to an unauthorized actor

Exploit availability: No

Description

The vulnerability allows a local user to gain access to sensitive information.

The vulnerability exists due to information disclosure within the vcap_dup_rule() function in drivers/net/ethernet/microchip/vcap/vcap_api.c. A local user can gain access to sensitive information.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

69) Memory leak

EUVDB-ID: #VU115666

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53304

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the nft_rbtree_get() and __nft_rbtree_insert() functions in net/netfilter/nft_set_rbtree.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

70) Use-after-free

EUVDB-ID: #VU115679

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53305

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the l2cap_le_command_rej() function in net/bluetooth/l2cap_core.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

71) Use of uninitialized resource

EUVDB-ID: #VU115699

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53309

CWE-ID: CWE-908 - Use of Uninitialized Resource

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to use of uninitialized resource within the radeon_cs_parser_init() function in drivers/gpu/drm/radeon/radeon_cs.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

72) Use-after-free

EUVDB-ID: #VU115681

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53311

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the fs/nilfs2/the_nilfs.h. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

73) Resource management error

EUVDB-ID: #VU115707

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53312

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to resource management error within the include/trace/events/net.h. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

74) Buffer overflow

EUVDB-ID: #VU115706

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53313

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the max_corrected_read_errors_store() function in drivers/md/md.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

75) Memory leak

EUVDB-ID: #VU115662

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53314

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the ep93xxfb_probe() function in drivers/video/fbdev/ep93xx-fb.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

76) Use-after-free

EUVDB-ID: #VU115677

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53316

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the dp_display_remove() function in drivers/gpu/drm/msm/dp/dp_display.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

77) Use-after-free

EUVDB-ID: #VU115678

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53319

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the finalize_pkvm() function in arch/arm64/kvm/pkvm.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

78) Input validation error

EUVDB-ID: #VU115710

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53321

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the hwsim_cloned_frame_received_nl() function in drivers/net/wireless/mac80211_hwsim.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

79) Use-after-free

EUVDB-ID: #VU115676

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53322

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the qla2x00_terminate_rport_io() function in drivers/scsi/qla2xxx/qla_attr.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

80) Improper locking

EUVDB-ID: #VU115692

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53323

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the ext2_setsize() function in fs/ext2/inode.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

81) Memory leak

EUVDB-ID: #VU115661

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53324

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the mdp5_plane_destroy_state() function in drivers/gpu/drm/msm/disp/mdp5/mdp5_plane.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

82) NULL pointer dereference

EUVDB-ID: #VU115686

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53325

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the mtk_dp_aux_do_transfer() and mtk_dp_aux_transfer() functions in drivers/gpu/drm/mediatek/mtk_dp.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

83) NULL pointer dereference

EUVDB-ID: #VU115684

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53328

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the ni_create_attr_list() function in fs/ntfs3/frecord.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

84) Input validation error

EUVDB-ID: #VU115697

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53331

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the persistent_ram_post_init() function in fs/pstore/ram_core.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

85) Out-of-bounds read

EUVDB-ID: #VU115682

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53333

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the dccp_error() function in net/netfilter/nf_conntrack_proto_dccp.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

86) NULL pointer dereference

EUVDB-ID: #VU115795

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53336

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the ipu_bridge_connect_sensor() function in drivers/media/pci/intel/ipu-bridge.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

87) Use-after-free

EUVDB-ID: #VU115779

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53338

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the run_lwt_bpf() and bpf_lwt_xmit_reroute() functions in net/core/lwt_bpf.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

88) Improper error handling

EUVDB-ID: #VU115811

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53339

CWE-ID: CWE-388 - Error Handling

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper error handling within the btrfs_cancel_balance() function in fs/btrfs/volumes.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

89) Resource management error

EUVDB-ID: #VU115821

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53342

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to resource management error within the prestera_util_neigh2nc_key() and prestera_kern_fib_info_nhc() functions in drivers/net/ethernet/marvell/prestera/prestera_router.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

90) NULL pointer dereference

EUVDB-ID: #VU115791

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53343

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the icmp6_dev() function in net/ipv6/icmp.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

91) Memory leak

EUVDB-ID: #VU115770

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53350

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the qaic_attach_slice_bo_ioctl() function in drivers/accel/qaic/qaic_data.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

92) NULL pointer dereference

EUVDB-ID: #VU115788

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53352

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the ttm_bo_evict_swapout_allowable() function in drivers/gpu/drm/ttm/ttm_bo.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

93) NULL pointer dereference

EUVDB-ID: #VU115789

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53354

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the skb_segment() function in net/core/skbuff.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

94) NULL pointer dereference

EUVDB-ID: #VU115790

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53356

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the EXPORT_SYMBOL_GPL() function in drivers/usb/gadget/function/u_serial.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

95) Out-of-bounds read

EUVDB-ID: #VU115782

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53357

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the __acquires() function in drivers/md/md-bitmap.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

96) NULL pointer dereference

EUVDB-ID: #VU115785

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53360

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the nfs_readhdr_alloc() and nfs_pageio_reset_read_mds() functions in fs/nfs/read.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

97) Input validation error

EUVDB-ID: #VU115808

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53362

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the __fsl_mc_device_remove_if_not_in_mc() function in drivers/bus/fsl-mc/dprc-driver.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

98) NULL pointer dereference

EUVDB-ID: #VU115786

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53364

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the da9063_check_xvp_constraints() and da9063_regulator_probe() functions in drivers/regulator/da9063-regulator.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

99) Improper locking

EUVDB-ID: #VU115802

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53365

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the ip6mr_cache_report() function in net/ipv6/ip6mr.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

100) Memory leak

EUVDB-ID: #VU115764

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53367

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the hl_device_open() function in drivers/accel/habanalabs/common/habanalabs_drv.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

101) Improper error handling

EUVDB-ID: #VU115810

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53368

CWE-ID: CWE-388 - Error Handling

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper error handling within the tracing_snapshot_open() and tracing_snapshot_write() functions in kernel/trace/trace.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

102) Buffer overflow

EUVDB-ID: #VU115947

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53369

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the dcbnl_bcn_setcfg() function in net/dcb/dcbnl.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

103) Memory leak

EUVDB-ID: #VU115870

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53370

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the amdgpu_ring_fini() function in drivers/gpu/drm/amd/amdgpu/amdgpu_ring.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

104) Memory leak

EUVDB-ID: #VU115869

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53371

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the mlx5e_fs_tt_redirect_any_create() function in drivers/net/ethernet/mellanox/mlx5/core/en/fs_tt_redirect.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

105) Use-after-free

EUVDB-ID: #VU115894

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53374

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the hci_conn_add() and hci_conn_unlink() functions in net/bluetooth/hci_conn.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

106) Use-after-free

EUVDB-ID: #VU115895

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53377

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the smb2_compound_op() function in fs/smb/client/smb2inode.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

107) Memory leak

EUVDB-ID: #VU115868

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53379

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the tahvo_usb_probe() function in drivers/usb/phy/phy-tahvo.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

108) NULL pointer dereference

EUVDB-ID: #VU115927

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53380

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the raid10_sync_request() function in drivers/md/raid10.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

109) NULL pointer dereference

EUVDB-ID: #VU115925

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53384

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the mwifiex_handle_uap_rx_forward() function in drivers/net/wireless/marvell/mwifiex/uap_txrx.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

110) Memory leak

EUVDB-ID: #VU115865

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53385

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the mdp_get_subsys_id() function in drivers/media/platform/mediatek/mdp3/mtk-mdp3-comp.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

111) Use-after-free

EUVDB-ID: #VU115893

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53386

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the hci_uuids_clear() function in net/bluetooth/hci_core.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

112) Memory leak

EUVDB-ID: #VU115863

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53391

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the function in mm/shmem.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

113) Input validation error

EUVDB-ID: #VU115956

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53394

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the mlx5e_modify_rq_state() and mlx5e_rq_to_ready() functions in drivers/net/ethernet/mellanox/mlx5/core/en_main.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

114) Out-of-bounds read

EUVDB-ID: #VU115907

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53395

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the function in drivers/acpi/acpica/psopcode.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

115) Out-of-bounds read

EUVDB-ID: #VU115908

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53397

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the default_mismatch_handler() function in scripts/mod/modpost.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

116) Use-after-free

EUVDB-ID: #VU115891

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53401

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the mod_objcg_state(), consume_obj_stock(), drain_obj_stock() and refill_obj_stock() functions in mm/memcontrol.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

117) Out-of-bounds read

EUVDB-ID: #VU115905

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53420

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the ntfs_list_ea() function in fs/ntfs3/xattr.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

118) NULL pointer dereference

EUVDB-ID: #VU115916

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53421

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the blkcg_reset_stats() function in block/blk-cgroup.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

119) Memory leak

EUVDB-ID: #VU115837

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53424

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the mtk_clk_simple_probe() function in drivers/clk/mediatek/clk-mtk.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

120) NULL pointer dereference

EUVDB-ID: #VU115914

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53425

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the load_requested_vpu() function in drivers/media/platform/mtk-vpu/mtk_vpu.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

121) Use-after-free

EUVDB-ID: #VU115884

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53426

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the xsk_diag_fill() function in net/xdp/xsk_diag.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

122) Buffer overflow

EUVDB-ID: #VU115941

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53428

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to memory corruption within the scmi_powercap_unregister_all_zones(), scmi_powercap_get_parent_zone() and scmi_powercap_probe() functions in drivers/powercap/arm_scmi_powercap.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

123) Memory leak

EUVDB-ID: #VU115835

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53429

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the __extent_writepage() function in fs/btrfs/extent_io.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

124) Use-after-free

EUVDB-ID: #VU115882

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53432

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the fwnet_finish_incoming_packet() function in drivers/firewire/net.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

125) Memory leak

EUVDB-ID: #VU115832

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53436

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the snic_tgt_create() function in drivers/scsi/snic/snic_disc.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

126) Improper error handling

EUVDB-ID: #VU115938

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53438

CWE-ID: CWE-388 - Error Handling

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper error handling within the arch/x86/kernel/cpu/mce/internal.h. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

127) Memory leak

EUVDB-ID: #VU115831

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53441

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the get_cpu_map_entry() and put_cpu_map_entry() functions in kernel/bpf/cpumap.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

128) NULL pointer dereference

EUVDB-ID: #VU115913

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53442

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the ice_setup_tc() function in drivers/net/ethernet/intel/ice/ice_main.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

129) NULL pointer dereference

EUVDB-ID: #VU115912

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53444

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the ttm_lru_bulk_move_pos_tail() and ttm_lru_bulk_move_del() functions in drivers/gpu/drm/ttm/ttm_resource.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

130) Use-after-free

EUVDB-ID: #VU115879

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53446

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the pcie_aspm_exit_link_state() function in drivers/pci/pcie/aspm.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

131) NULL pointer dereference

EUVDB-ID: #VU115911

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53447

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the f2fs_show_options(), default_options(), f2fs_remount() and f2fs_fill_super() functions in fs/f2fs/super.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

132) Improper resource shutdown or release

EUVDB-ID: #VU116338

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53448

CWE-ID: CWE-404 - Improper Resource Shutdown or Release

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to failure to properly release resources within the imxfb_probe() function in drivers/video/fbdev/imxfb.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

133) Input validation error

EUVDB-ID: #VU116383

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53451

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the qla24xx_build_scsi_type_6_iocbs() function in drivers/scsi/qla2xxx/qla_iocb.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

134) Buffer overflow

EUVDB-ID: #VU116322

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53454

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the mt_post_parse() and mt_input_configured() functions in drivers/hid/hid-multitouch.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

135) Memory leak

EUVDB-ID: #VU116346

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53456

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the qla4xxx_set_chap_entry(), qla4xxx_iface_set_param() and qla4xxx_sysfs_ddb_set_param() functions in drivers/scsi/qla4xxx/ql4_os.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

136) Input validation error

EUVDB-ID: #VU116381

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53457

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the jfs_link() function in fs/jfs/namei.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

137) Input validation error

EUVDB-ID: #VU116333

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53461

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the io_ring_exit_work() function in io_uring/io_uring.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

138) Buffer overflow

EUVDB-ID: #VU116319

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53462

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the fill_frame_info() function in net/hsr/hsr_forward.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

139) Race condition

EUVDB-ID: #VU116265

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53463

CWE-ID: CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to a race condition within the __ibmvnic_open() function in drivers/net/ethernet/ibm/ibmvnic.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

140) Buffer overflow

EUVDB-ID: #VU116318

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53465

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the function in drivers/soundwire/qcom.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

141) Input validation error

EUVDB-ID: #VU116378

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53472

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the lpc32xx_pwm_config(), lpc32xx_pwm_enable(), lpc32xx_pwm_disable() and lpc32xx_pwm_probe() functions in drivers/pwm/pwm-lpc32xx.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

142) Input validation error

EUVDB-ID: #VU116375

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53479

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the cxl_parse_cfmws() function in drivers/cxl/acpi.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

143) Input validation error

EUVDB-ID: #VU116374

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53480

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the kset_register() function in lib/kobject.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

144) Buffer overflow

EUVDB-ID: #VU116311

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53485

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the dbAllocDmapLev() function in fs/jfs/jfs_dmap.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

145) Buffer overflow

EUVDB-ID: #VU116310

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53487

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the rtas_flash_init() function in arch/powerpc/kernel/rtas_flash.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

146) Incorrect calculation

EUVDB-ID: #VU116283

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53488

CWE-ID: CWE-682 - Incorrect Calculation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to incorrect calculation within the free_cntrs() function in drivers/infiniband/hw/hfi1/chip.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

147) Input validation error

EUVDB-ID: #VU116331

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53490

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the subflow_state_change() and mptcp_subflow_queue_clean() functions in net/mptcp/subflow.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

148) Input validation error

EUVDB-ID: #VU116332

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53491

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the print_unknown_bootoptions() function in init/main.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

149) Input validation error

EUVDB-ID: #VU116371

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53492

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the nf_tables_updchain(), nft_chain_lookup_byid(), nf_tables_newrule() and nft_verdict_init() functions in net/netfilter/nf_tables_api.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

150) Input validation error

EUVDB-ID: #VU116370

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53493

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the decode_message() function in drivers/accel/qaic/qaic_control.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

151) Out-of-bounds write

EUVDB-ID: #VU116269

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53495

CWE-ID: CWE-787 - Out-of-bounds write

Exploit availability: No

Description

The vulnerability allows a local user to execute arbitrary code.

The vulnerability exists due to an out-of-bounds write within the mvpp2_ethtool_get_rxnfc() function in drivers/net/ethernet/marvell/mvpp2/mvpp2_main.c. A local user can execute arbitrary code.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

152) Buffer overflow

EUVDB-ID: #VU116309

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53496

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the build_socket_tables() function in arch/x86/kernel/apic/x2apic_uv_x.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

153) Buffer overflow

EUVDB-ID: #VU116308

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53500

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the xfrmi_xmit() function in net/xfrm/xfrm_interface_core.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

154) Incorrect calculation

EUVDB-ID: #VU116281

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53501

CWE-ID: CWE-682 - Incorrect Calculation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to incorrect calculation within the put_pasid_state() function in drivers/iommu/amd/iommu_v2.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

155) Buffer overflow

EUVDB-ID: #VU116306

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53504

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the bnxt_re_remove() function in drivers/infiniband/hw/bnxt_re/main.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

156) Memory leak

EUVDB-ID: #VU116342

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53505

CWE-ID: CWE-401 - Missing release of memory after effective lifetime

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory leak within the load_timings_from_dt() and tegra_clk_register_emc() functions in drivers/clk/tegra/clk-tegra124-emc.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

157) Improper resource shutdown or release

EUVDB-ID: #VU116337

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53507

CWE-ID: CWE-404 - Improper Resource Shutdown or Release

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to failure to properly release resources within the mlx5_uninit_one() function in drivers/net/ethernet/mellanox/mlx5/core/main.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

158) Input validation error

EUVDB-ID: #VU116330

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53508

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the ublk_ctrl_start_dev() function in drivers/block/ublk_drv.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

159) Input validation error

EUVDB-ID: #VU116367

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53510

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the ufshcd_queuecommand(), ufshcd_exec_dev_cmd(), ufshcd_release_scsi_cmd(), ufshcd_issue_devman_upiu_cmd() and ufshcd_advanced_rpmb_req_handler() functions in drivers/ufs/core/ufshcd.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

160) Buffer overflow

EUVDB-ID: #VU116304

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53515

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the virtio_mmio_release_dev() and virtio_mmio_probe() functions in drivers/virtio/virtio_mmio.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

161) Input validation error

EUVDB-ID: #VU116364

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53516

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the function in drivers/net/macvlan.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

162) Buffer overflow

EUVDB-ID: #VU116303

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53518

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the devfreq_dev_release() function in drivers/devfreq/devfreq.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

163) Input validation error

EUVDB-ID: #VU116362

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53519

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the include/media/v4l2-mem2mem.h. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

164) Race condition

EUVDB-ID: #VU116262

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53520

CWE-ID: CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to a race condition within the hci_suspend_notifier() function in net/bluetooth/hci_core.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

165) Incorrect calculation

EUVDB-ID: #VU116277

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53523

CWE-ID: CWE-682 - Incorrect Calculation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to incorrect calculation within the gs_cmd_reset(), gs_usb_get_timestamp(), gs_usb_receive_bulk_callback(), gs_can_open() and gs_can_close() functions in drivers/net/can/usb/gs_usb.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

166) Buffer overflow

EUVDB-ID: #VU116300

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53526

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the jbd2_journal_try_remove_checkpoint() function in fs/jbd2/checkpoint.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

167) Buffer overflow

EUVDB-ID: #VU116301

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53527

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the tb_handle_dp_bandwidth_request() function in drivers/thunderbolt/tb.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

168) Input validation error

EUVDB-ID: #VU116361

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53528

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the flush_recv_queue() function in drivers/infiniband/sw/rxe/rxe_resp.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

169) Input validation error

EUVDB-ID: #VU116359

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53530

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the tcm_qla2xxx_free_cmd() and tcm_qla2xxx_handle_data() functions in drivers/scsi/qla2xxx/tcm_qla2xxx.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

170) Race condition

EUVDB-ID: #VU116261

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-53531

CWE-ID: CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to a race condition within the null_poll() and null_timeout_rq() functions in drivers/block/null_blk/main.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

171) Error handling

EUVDB-ID: #VU89001

Risk: Medium

CVSSv4.0: 6.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Green]

CVE-ID: CVE-2024-26584

CWE-ID: CWE-388 - Error Handling

Exploit availability: No

Description

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to an error when handling backlogging of crypto requests in net/tls/tls_sw.c. A remote attacker can send specially crafted traffic to the system and perform a denial of service attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

172) Infinite loop

EUVDB-ID: #VU106127

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-58090

CWE-ID: CWE-835 - Loop with Unreachable Exit Condition ('Infinite Loop')

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to infinite loop within the !defined() function in kernel/sched/core.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

173) Use-after-free

EUVDB-ID: #VU114555

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-58240

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the tls_do_decryption() function in net/tls/tls_sw.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

174) Improper locking

EUVDB-ID: #VU107749

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2025-22022

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the drivers/usb/host/xhci.h. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

175) Improper locking

EUVDB-ID: #VU112229

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2025-38119

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the ufshcd_err_handler() function in drivers/ufs/core/ufshcd.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

176) Improper locking

EUVDB-ID: #VU112313

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2025-38234

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the find_lowest_rq() and find_lock_lowest_rq() functions in kernel/sched/rt.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-exynos: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-broadcom: before 6.4.0-150600.23.73.1

dtb-rockchip: before 6.4.0-150600.23.73.1

dtb-qcom: before 6.4.0-150600.23.73.1

dtb-hisilicon: before 6.4.0-150600.23.73.1

dtb-amazon: before 6.4.0-150600.23.73.1

dlm-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-renesas: before 6.4.0-150600.23.73.1

gfs2-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-lg: before 6.4.0-150600.23.73.1

kernel-64kb-devel: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb: before 6.4.0-150600.23.73.1

dlm-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-sprd: before 6.4.0-150600.23.73.1

dtb-cavium: before 6.4.0-150600.23.73.1

dtb-xilinx: before 6.4.0-150600.23.73.1

dtb-apple: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-nvidia: before 6.4.0-150600.23.73.1

kernel-64kb-optional: before 6.4.0-150600.23.73.1

dtb-altera: before 6.4.0-150600.23.73.1

dtb-amd: before 6.4.0-150600.23.73.1

reiserfs-kmp-64kb: before 6.4.0-150600.23.73.1

dtb-socionext: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-allwinner: before 6.4.0-150600.23.73.1

kernel-64kb-debugsource: before 6.4.0-150600.23.73.1

cluster-md-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-mediatek: before 6.4.0-150600.23.73.1

kernel-64kb-extra-debuginfo: before 6.4.0-150600.23.73.1

dtb-freescale: before 6.4.0-150600.23.73.1

kernel-64kb-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-debuginfo: before 6.4.0-150600.23.73.1

kernel-64kb-devel-debuginfo: before 6.4.0-150600.23.73.1

dtb-arm: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb-debuginfo: before 6.4.0-150600.23.73.1

dtb-amlogic: before 6.4.0-150600.23.73.1

dtb-aarch64: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debuginfo: before 6.4.0-150600.23.73.1

kernel-zfcpdump-debugsource: before 6.4.0-150600.23.73.1

kernel-zfcpdump: before 6.4.0-150600.23.73.1

kernel-kvmsmall: before 6.4.0-150600.23.73.1

kernel-obs-qa: before 6.4.0-150600.23.73.1

kernel-default-devel-debuginfo: before 6.4.0-150600.23.73.1

kselftests-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-optional-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-devel: before 6.4.0-150600.23.73.1

kselftests-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-optional: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel: before 6.4.0-150600.23.73.1

kernel-kvmsmall-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-debugsource: before 6.4.0-150600.23.73.1

kernel-default-base: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-kvmsmall-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-base-rebuild: before 6.4.0-150600.23.73.1.150600.12.32.1

kernel-debug-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-default-vdso: before 6.4.0-150600.23.73.1

kernel-default-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-vdso: before 6.4.0-150600.23.73.1

kernel-kvmsmall-vdso: before 6.4.0-150600.23.73.1

kernel-debug-debugsource: before 6.4.0-150600.23.73.1

kernel-debug-devel-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug-devel: before 6.4.0-150600.23.73.1

kernel-debug-debuginfo: before 6.4.0-150600.23.73.1

kernel-debug: before 6.4.0-150600.23.73.1

kernel-devel: before 6.4.0-150600.23.73.1

kernel-source-vanilla: before 6.4.0-150600.23.73.1

kernel-macros: before 6.4.0-150600.23.73.1

kernel-docs-html: before 6.4.0-150600.23.73.1

kernel-livepatch-6_4_0-150600_23_73-default: before 1-150600.13.3.1

kernel-default-livepatch-devel: before 6.4.0-150600.23.73.1

kernel-default-livepatch: before 6.4.0-150600.23.73.1

kernel-livepatch-SLE15-SP6_Update_16-debugsource: before 1-150600.13.3.1

kernel-livepatch-6_4_0-150600_23_73-default-debuginfo: before 1-150600.13.3.1

kernel-default-extra: before 6.4.0-150600.23.73.1

kernel-default-extra-debuginfo: before 6.4.0-150600.23.73.1

gfs2-kmp-default: before 6.4.0-150600.23.73.1

gfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

dlm-kmp-default: before 6.4.0-150600.23.73.1

ocfs2-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

ocfs2-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default: before 6.4.0-150600.23.73.1

cluster-md-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default-debuginfo: before 6.4.0-150600.23.73.1

reiserfs-kmp-default: before 6.4.0-150600.23.73.1

kernel-default-debugsource: before 6.4.0-150600.23.73.1

kernel-default-debuginfo: before 6.4.0-150600.23.73.1

kernel-default: before 6.4.0-150600.23.73.1

kernel-source: before 6.4.0-150600.23.73.1

kernel-obs-build: before 6.4.0-150600.23.73.1

kernel-syms: before 6.4.0-150600.23.73.1

kernel-obs-build-debugsource: before 6.4.0-150600.23.73.1

kernel-docs: before 6.4.0-150600.23.73.1

CPE2.3 External links

https://www.suse.com/support/update/announcement/2025/suse-su-202503600-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

177) NULL pointer dereference

EUVDB-ID: #VU112779

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2025-38255

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the group_cpus_evenly() function in lib/group_cpus.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Linux Enterprise High Availability Extension 15: SP6

SUSE Linux Enterprise Workstation Extension 15: SP6

Legacy Module: 15-SP6

SUSE Linux Enterprise Live Patching: 15-SP6

Development Tools Module: 15-SP6

Basesystem Module: 15-SP6

SUSE Linux Enterprise Real Time 15: SP6

openSUSE Leap: 15.6

SUSE Linux Enterprise Server for SAP Applications 15: SP6

SUSE Linux Enterprise Server 15: SP6

SUSE Linux Enterprise Desktop 15: SP6

kernel-64kb: before 6.4.0-150600.23.73.1

kselftests-kmp-64kb: before 6.4.0-150600.23.73.1

kernel-64kb-extra: before 6.4.0-150600.23.73.1

dtb-marvell: before 6.4.0-150600.23.73.1

dtb-apm: before 6.4.0-150600.23.73.1

ocfs2-kmp-64kb: before 6.4.0-150600.23.73.