SUSE update for the Linux Kernel



Risk High
Patch available YES
Number of vulnerabilities 16
CVE-ID CVE-2023-4244
CVE-2023-52923
CVE-2024-35863
CVE-2024-50199
CVE-2024-53104
CVE-2024-56600
CVE-2024-56601
CVE-2024-56623
CVE-2024-56650
CVE-2024-56658
CVE-2024-56664
CVE-2024-56759
CVE-2024-57791
CVE-2024-57798
CVE-2024-57849
CVE-2024-57893
CWE-ID CWE-416
CWE-667
CWE-787
CWE-125
CWE-20
Exploitation vector Local network
Public exploit Vulnerability #5 is being exploited in the wild.
Vulnerable software
SUSE Enterprise Server 15 SP3 Business Critical
Operating systems & Components / Operating system

SUSE Linux Enterprise Server 15 SP3
Operating systems & Components / Operating system

SUSE Linux Enterprise Live Patching
Operating systems & Components / Operating system

SUSE Linux Enterprise Micro for Rancher
Operating systems & Components / Operating system

SUSE Linux Enterprise High Availability Extension 15
Operating systems & Components / Operating system

SUSE Linux Enterprise Server for SAP Applications 15
Operating systems & Components / Operating system

SUSE Linux Enterprise Server 15
Operating systems & Components / Operating system

SUSE Linux Enterprise High Performance Computing LTSS 15
Operating systems & Components / Operating system

SUSE Linux Enterprise High Performance Computing 15
Operating systems & Components / Operating system

SUSE Enterprise Storage
Operating systems & Components / Operating system

SUSE Manager Retail Branch Server
Operating systems & Components / Operating system

SUSE Linux Enterprise Micro
Operating systems & Components / Operating system

openSUSE Leap
Operating systems & Components / Operating system

SUSE Manager Server
Operating systems & Components / Operating system

SUSE Manager Proxy
Operating systems & Components / Operating system

kernel-64kb
Operating systems & Components / Operating system package or component

dtb-apm
Operating systems & Components / Operating system package or component

dlm-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

dtb-nvidia
Operating systems & Components / Operating system package or component

dtb-allwinner
Operating systems & Components / Operating system package or component

dtb-xilinx
Operating systems & Components / Operating system package or component

kernel-64kb-optional
Operating systems & Components / Operating system package or component

dtb-lg
Operating systems & Components / Operating system package or component

dtb-rockchip
Operating systems & Components / Operating system package or component

dtb-altera
Operating systems & Components / Operating system package or component

kernel-64kb-devel-debuginfo
Operating systems & Components / Operating system package or component

kernel-64kb-extra
Operating systems & Components / Operating system package or component

gfs2-kmp-64kb
Operating systems & Components / Operating system package or component

dtb-mediatek
Operating systems & Components / Operating system package or component

dtb-arm
Operating systems & Components / Operating system package or component

dtb-cavium
Operating systems & Components / Operating system package or component

kernel-64kb-debuginfo
Operating systems & Components / Operating system package or component

dtb-zte
Operating systems & Components / Operating system package or component

dtb-amlogic
Operating systems & Components / Operating system package or component

ocfs2-kmp-64kb
Operating systems & Components / Operating system package or component

kernel-64kb-optional-debuginfo
Operating systems & Components / Operating system package or component

dtb-qcom
Operating systems & Components / Operating system package or component

dtb-hisilicon
Operating systems & Components / Operating system package or component

cluster-md-kmp-64kb
Operating systems & Components / Operating system package or component

dtb-amd
Operating systems & Components / Operating system package or component

reiserfs-kmp-64kb
Operating systems & Components / Operating system package or component

kernel-64kb-extra-debuginfo
Operating systems & Components / Operating system package or component

dtb-exynos
Operating systems & Components / Operating system package or component

dtb-marvell
Operating systems & Components / Operating system package or component

cluster-md-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

gfs2-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

dtb-renesas
Operating systems & Components / Operating system package or component

dtb-sprd
Operating systems & Components / Operating system package or component

dtb-socionext
Operating systems & Components / Operating system package or component

kselftests-kmp-64kb
Operating systems & Components / Operating system package or component

reiserfs-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

ocfs2-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

kselftests-kmp-64kb-debuginfo
Operating systems & Components / Operating system package or component

kernel-64kb-debugsource
Operating systems & Components / Operating system package or component

dtb-al
Operating systems & Components / Operating system package or component

dtb-broadcom
Operating systems & Components / Operating system package or component

dlm-kmp-64kb
Operating systems & Components / Operating system package or component

kernel-64kb-devel
Operating systems & Components / Operating system package or component

dtb-freescale
Operating systems & Components / Operating system package or component

dtb-aarch64
Operating systems & Components / Operating system package or component

kernel-zfcpdump-debuginfo
Operating systems & Components / Operating system package or component

kernel-zfcpdump-debugsource
Operating systems & Components / Operating system package or component

kernel-zfcpdump
Operating systems & Components / Operating system package or component

kernel-preempt
Operating systems & Components / Operating system package or component

dlm-kmp-preempt-debuginfo
Operating systems & Components / Operating system package or component

ocfs2-kmp-preempt
Operating systems & Components / Operating system package or component

kernel-preempt-debuginfo
Operating systems & Components / Operating system package or component

kernel-preempt-debugsource
Operating systems & Components / Operating system package or component

kernel-preempt-optional
Operating systems & Components / Operating system package or component

kernel-preempt-devel
Operating systems & Components / Operating system package or component

kernel-preempt-extra-debuginfo
Operating systems & Components / Operating system package or component

kernel-preempt-devel-debuginfo
Operating systems & Components / Operating system package or component

kselftests-kmp-preempt-debuginfo
Operating systems & Components / Operating system package or component

ocfs2-kmp-preempt-debuginfo
Operating systems & Components / Operating system package or component

kselftests-kmp-preempt
Operating systems & Components / Operating system package or component

kernel-preempt-optional-debuginfo
Operating systems & Components / Operating system package or component

cluster-md-kmp-preempt
Operating systems & Components / Operating system package or component

gfs2-kmp-preempt-debuginfo
Operating systems & Components / Operating system package or component

reiserfs-kmp-preempt
Operating systems & Components / Operating system package or component

cluster-md-kmp-preempt-debuginfo
Operating systems & Components / Operating system package or component

reiserfs-kmp-preempt-debuginfo
Operating systems & Components / Operating system package or component

kernel-preempt-extra
Operating systems & Components / Operating system package or component

dlm-kmp-preempt
Operating systems & Components / Operating system package or component

gfs2-kmp-preempt
Operating systems & Components / Operating system package or component

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo
Operating systems & Components / Operating system package or component

kernel-livepatch-5_3_18-150300_59_195-preempt
Operating systems & Components / Operating system package or component

kernel-livepatch-SLE15-SP3_Update_54-debugsource
Operating systems & Components / Operating system package or component

kernel-livepatch-5_3_18-150300_59_195-default
Operating systems & Components / Operating system package or component

kernel-default-livepatch-devel
Operating systems & Components / Operating system package or component

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo
Operating systems & Components / Operating system package or component

kernel-default
Operating systems & Components / Operating system package or component

kernel-default-extra-debuginfo
Operating systems & Components / Operating system package or component

gfs2-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

kernel-default-optional
Operating systems & Components / Operating system package or component

kernel-obs-build-debugsource
Operating systems & Components / Operating system package or component

kselftests-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

ocfs2-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

dlm-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

kernel-default-devel
Operating systems & Components / Operating system package or component

kernel-obs-qa
Operating systems & Components / Operating system package or component

reiserfs-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

reiserfs-kmp-default
Operating systems & Components / Operating system package or component

kernel-default-debugsource
Operating systems & Components / Operating system package or component

kernel-default-devel-debuginfo
Operating systems & Components / Operating system package or component

cluster-md-kmp-default-debuginfo
Operating systems & Components / Operating system package or component

kernel-default-base
Operating systems & Components / Operating system package or component

dlm-kmp-default
Operating systems & Components / Operating system package or component

gfs2-kmp-default
Operating systems & Components / Operating system package or component

kernel-default-base-rebuild
Operating systems & Components / Operating system package or component

kernel-default-livepatch
Operating systems & Components / Operating system package or component

kernel-obs-build
Operating systems & Components / Operating system package or component

kselftests-kmp-default
Operating systems & Components / Operating system package or component

kernel-syms
Operating systems & Components / Operating system package or component

ocfs2-kmp-default
Operating systems & Components / Operating system package or component

kernel-default-extra
Operating systems & Components / Operating system package or component

cluster-md-kmp-default
Operating systems & Components / Operating system package or component

kernel-default-debuginfo
Operating systems & Components / Operating system package or component

kernel-default-optional-debuginfo
Operating systems & Components / Operating system package or component

kernel-debug-devel
Operating systems & Components / Operating system package or component

kernel-debug-devel-debuginfo
Operating systems & Components / Operating system package or component

kernel-kvmsmall-devel
Operating systems & Components / Operating system package or component

kernel-kvmsmall-debuginfo
Operating systems & Components / Operating system package or component

kernel-debug-debuginfo
Operating systems & Components / Operating system package or component

kernel-debug-debugsource
Operating systems & Components / Operating system package or component

kernel-kvmsmall-devel-debuginfo
Operating systems & Components / Operating system package or component

kernel-kvmsmall-debugsource
Operating systems & Components / Operating system package or component

kernel-debug
Operating systems & Components / Operating system package or component

kernel-kvmsmall
Operating systems & Components / Operating system package or component

kernel-docs-html
Operating systems & Components / Operating system package or component

kernel-source
Operating systems & Components / Operating system package or component

kernel-source-vanilla
Operating systems & Components / Operating system package or component

kernel-devel
Operating systems & Components / Operating system package or component

kernel-macros
Operating systems & Components / Operating system package or component

kernel-docs
Operating systems & Components / Operating system package or component

Vendor SUSE

Security Bulletin

This security bulletin contains information about 16 vulnerabilities.

1) Use-after-free

EUVDB-ID: #VU82306

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-4244

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the Linux kernel netfilter: nf_tables component. A local user can trigger a use-after-free error and execute arbitrary code with elevated privileges.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

2) Improper locking

EUVDB-ID: #VU103086

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-52923

CWE-ID: CWE-667 - Improper Locking

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper locking within the nft_rbtree_cmp(), __nft_rbtree_lookup(), nft_rbtree_get(), nft_rbtree_gc_elem(), nft_rbtree_activate(), nft_rbtree_flush() and nft_rbtree_gc() functions in net/netfilter/nft_set_rbtree.c, within the pipapo_drop(), pipapo_gc() and nft_pipapo_activate() functions in net/netfilter/nft_set_pipapo.c, within the nft_rhash_cmp(), nft_rhash_activate(), nft_rhash_flush(), nft_rhash_deactivate(), nft_rhash_gc() and nft_rhash_destroy() functions in net/netfilter/nft_set_hash.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

3) Use-after-free

EUVDB-ID: #VU90151

Risk: Medium

CVSSv4.0: 4.3 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Green]

CVE-ID: CVE-2024-35863

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to a use-after-free error within the is_valid_oplock_break() function in fs/smb/client/misc.c. A remote non-authenticated attacker can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the local network (LAN).

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

4) Use-after-free

EUVDB-ID: #VU100120

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-50199

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the unuse_mm() function in mm/swapfile.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

5) Out-of-bounds write

EUVDB-ID: #VU101102

Risk: High

CVSSv4.0: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:A/U:]

CVE-ID: CVE-2024-53104

CWE-ID: CWE-787 - Out-of-bounds write

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to an out-of-bounds read error within the uvc_parse_format() function in drivers/media/usb/uvc/uvc_driver.c. A local user can trigger an out-of-bounds write and execute arbitrary code on the system.

Note, the vulnerability is being actively exploited in the wild.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

Yes. This vulnerability is being exploited in the wild.

6) Use-after-free

EUVDB-ID: #VU102016

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-56600

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the htons() function in net/ipv6/af_inet6.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

7) Use-after-free

EUVDB-ID: #VU102015

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-56601

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the htons() function in net/ipv4/af_inet.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

8) Use-after-free

EUVDB-ID: #VU102023

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-56623

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the qla2x00_do_dpc() function in drivers/scsi/qla2xxx/qla_os.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

9) Out-of-bounds read

EUVDB-ID: #VU102078

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-56650

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the led_tg_check() function in net/netfilter/xt_LED.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

10) Use-after-free

EUVDB-ID: #VU102033

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-56658

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the LLIST_HEAD(), net_free() and cleanup_net() functions in net/core/net_namespace.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

11) Use-after-free

EUVDB-ID: #VU102034

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-56664

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the sock_map_lookup_sys() function in net/core/sock_map.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

12) Use-after-free

EUVDB-ID: #VU102393

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-56759

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the btrfs_force_cow_block() and btrfs_cow_block() functions in fs/btrfs/ctree.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

13) Input validation error

EUVDB-ID: #VU102990

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-57791

CWE-ID: CWE-20 - Improper input validation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the smc_clc_wait_msg() function in net/smc/smc_clc.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

14) Use-after-free

EUVDB-ID: #VU102915

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-57798

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the drm_dp_mst_up_req_work() and drm_dp_mst_handle_up_req() functions in drivers/gpu/drm/display/drm_dp_mst_topology.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

15) Use-after-free

EUVDB-ID: #VU102912

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-57849

CWE-ID: CWE-416 - Use After Free

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a use-after-free error within the cpumsf_pmu_stop() function in arch/s390/kernel/perf_cpum_sf.c. A local user can escalate privileges on the system.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

16) Out-of-bounds read

EUVDB-ID: #VU102918

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-57893

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the DEFINE_SPINLOCK() and snd_seq_oss_synth_sysex() functions in sound/core/seq/oss/seq_oss_synth.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Update the affected package the Linux Kernel to the latest version.

Vulnerable software versions

SUSE Enterprise Server 15 SP3 Business Critical: Linux

SUSE Linux Enterprise Server 15 SP3: LTSS

SUSE Linux Enterprise Live Patching: 15-SP3

SUSE Linux Enterprise Micro for Rancher: 5.2

SUSE Linux Enterprise High Availability Extension 15: SP3

SUSE Linux Enterprise Server for SAP Applications 15: SP3

SUSE Linux Enterprise Server 15: SP3

SUSE Linux Enterprise High Performance Computing LTSS 15: SP3

SUSE Linux Enterprise High Performance Computing 15: SP3

SUSE Enterprise Storage: 7.1

SUSE Manager Retail Branch Server: 4.2

SUSE Linux Enterprise Micro: 5.1 - 5.2

openSUSE Leap: 15.3

SUSE Manager Server: 4.2

SUSE Manager Proxy: 4.2

kernel-64kb: before 5.3.18-150300.59.195.1

dtb-apm: before 5.3.18-150300.59.195.1

dlm-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-nvidia: before 5.3.18-150300.59.195.1

dtb-allwinner: before 5.3.18-150300.59.195.1

dtb-xilinx: before 5.3.18-150300.59.195.1

kernel-64kb-optional: before 5.3.18-150300.59.195.1

dtb-lg: before 5.3.18-150300.59.195.1

dtb-rockchip: before 5.3.18-150300.59.195.1

dtb-altera: before 5.3.18-150300.59.195.1

kernel-64kb-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-extra: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-mediatek: before 5.3.18-150300.59.195.1

dtb-arm: before 5.3.18-150300.59.195.1

dtb-cavium: before 5.3.18-150300.59.195.1

kernel-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-zte: before 5.3.18-150300.59.195.1

dtb-amlogic: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-optional-debuginfo: before 5.3.18-150300.59.195.1

dtb-qcom: before 5.3.18-150300.59.195.1

dtb-hisilicon: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb: before 5.3.18-150300.59.195.1

dtb-amd: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-extra-debuginfo: before 5.3.18-150300.59.195.1

dtb-exynos: before 5.3.18-150300.59.195.1

dtb-marvell: before 5.3.18-150300.59.195.1

cluster-md-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

dtb-renesas: before 5.3.18-150300.59.195.1

dtb-sprd: before 5.3.18-150300.59.195.1

dtb-socionext: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb: before 5.3.18-150300.59.195.1

reiserfs-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-64kb-debuginfo: before 5.3.18-150300.59.195.1

kernel-64kb-debugsource: before 5.3.18-150300.59.195.1

dtb-al: before 5.3.18-150300.59.195.1

dtb-broadcom: before 5.3.18-150300.59.195.1

dlm-kmp-64kb: before 5.3.18-150300.59.195.1

kernel-64kb-devel: before 5.3.18-150300.59.195.1

dtb-freescale: before 5.3.18-150300.59.195.1

dtb-aarch64: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debuginfo: before 5.3.18-150300.59.195.1

kernel-zfcpdump-debugsource: before 5.3.18-150300.59.195.1

kernel-zfcpdump: before 5.3.18-150300.59.195.1

kernel-preempt: before 5.3.18-150300.59.195.1

dlm-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-debugsource: before 5.3.18-150300.59.195.1

kernel-preempt-optional: before 5.3.18-150300.59.195.1

kernel-preempt-devel: before 5.3.18-150300.59.195.1

kernel-preempt-extra-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-devel-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kselftests-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-preempt-optional-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt: before 5.3.18-150300.59.195.1

cluster-md-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-preempt-debuginfo: before 5.3.18-150300.59.195.1

kernel-preempt-extra: before 5.3.18-150300.59.195.1

dlm-kmp-preempt: before 5.3.18-150300.59.195.1

gfs2-kmp-preempt: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-preempt-debuginfo: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-preempt: before 1-150300.7.3.1

kernel-livepatch-SLE15-SP3_Update_54-debugsource: before 1-150300.7.3.1

kernel-livepatch-5_3_18-150300_59_195-default: before 1-150300.7.3.1

kernel-default-livepatch-devel: before 5.3.18-150300.59.195.1

kernel-livepatch-5_3_18-150300_59_195-default-debuginfo: before 1-150300.7.3.1

kernel-default: before 5.3.18-150300.59.195.1

kernel-default-extra-debuginfo: before 5.3.18-150300.59.195.1

gfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional: before 5.3.18-150300.59.195.1

kernel-obs-build-debugsource: before 5.3.18-150300.59.195.1

kselftests-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

ocfs2-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

dlm-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-devel: before 5.3.18-150300.59.195.1

kernel-obs-qa: before 5.3.18-150300.59.195.1

reiserfs-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

reiserfs-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debugsource: before 5.3.18-150300.59.195.1

kernel-default-devel-debuginfo: before 5.3.18-150300.59.195.1

cluster-md-kmp-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-base: before 5.3.18-150300.59.195.1.150300.18.116.1

dlm-kmp-default: before 5.3.18-150300.59.195.1

gfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-base-rebuild: before 5.3.18-150300.59.195.1.150300.18.116.1

kernel-default-livepatch: before 5.3.18-150300.59.195.1

kernel-obs-build: before 5.3.18-150300.59.195.1

kselftests-kmp-default: before 5.3.18-150300.59.195.1

kernel-syms: before 5.3.18-150300.59.195.1

ocfs2-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-extra: before 5.3.18-150300.59.195.1

cluster-md-kmp-default: before 5.3.18-150300.59.195.1

kernel-default-debuginfo: before 5.3.18-150300.59.195.1

kernel-default-optional-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-devel: before 5.3.18-150300.59.195.1

kernel-debug-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debuginfo: before 5.3.18-150300.59.195.1

kernel-debug-debugsource: before 5.3.18-150300.59.195.1

kernel-kvmsmall-devel-debuginfo: before 5.3.18-150300.59.195.1

kernel-kvmsmall-debugsource: before 5.3.18-150300.59.195.1

kernel-debug: before 5.3.18-150300.59.195.1

kernel-kvmsmall: before 5.3.18-150300.59.195.1

kernel-docs-html: before 5.3.18-150300.59.195.1

kernel-source: before 5.3.18-150300.59.195.1

kernel-source-vanilla: before 5.3.18-150300.59.195.1

kernel-devel: before 5.3.18-150300.59.195.1

kernel-macros: before 5.3.18-150300.59.195.1

kernel-docs: before 5.3.18-150300.59.195.1

CPE2.3 External links

http://www.suse.com/support/update/announcement/2025/suse-su-20250771-1/


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.



###SIDEBAR###