SUSE-SU-2025:20475-1

Source
https://www.suse.com/support/update/announcement/2025/suse-su-202520475-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:20475-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/SUSE-SU-2025:20475-1
Upstream
Related
Published
2025-07-11T13:43:10Z
Modified
2026-03-11T07:29:46.496409Z
Summary
Security update for the Linux Kernel
Details

The SUSE Linux Enterprise Micro 6.0 and 6.1 kernel was updated to receive various security bugfixes.

The following security bugs were fixed:

  • CVE-2024-57982: xfrm: state: fix out-of-bounds read during lookup (bsc#1237913).
  • CVE-2024-58053: rxrpc: Fix handling of received connection abort (bsc#1238982).
  • CVE-2025-21720: xfrm: delete intermediate secpath entry in packet offload mode (bsc#1238859).
  • CVE-2025-21898: ftrace: Avoid potential division by zero in functionstatshow() (bsc#1240610).
  • CVE-2025-21899: tracing: Fix bad hist from corrupting named_triggers list (bsc#1240577).
  • CVE-2025-21920: vlan: enforce underlying device type (bsc#1240686).
  • CVE-2025-21959: netfilter: nfconncount: Fully initialize struct nfconncounttuple in inserttree() (bsc#1240814).
  • CVE-2025-22035: tracing: Fix use-after-free in printgraphfunction_flags during tracer switching (bsc#1241544).
  • CVE-2025-22111: net: Remove RTNL dance for SIOCBRADDIF and SIOCBRDELIF (bsc#1241572).
  • CVE-2025-37756: net: tls: explicitly disallow disconnect (bsc#1242515).
  • CVE-2025-37757: tipc: fix memory leak in tipclinkxmit (bsc#1242521).
  • CVE-2025-37786: net: dsa: free routing table on probe failure (bsc#1242725).
  • CVE-2025-37811: usb: chipidea: cihdrcimx: fix usbmisc handling (bsc#1242907).
  • CVE-2025-37859: page_pool: avoid infinite loop to schedule delayed worker (bsc#1243051).
  • CVE-2025-37884: bpf: Fix deadlock between rcutaskstrace and event_mutex (bsc#1243060).
  • CVE-2025-37909: net: lan743x: Fix memleak issue when GSO enabled (bsc#1243467).
  • CVE-2025-37921: vxlan: vnifilter: Fix unlocked deletion of default FDB entry (bsc#1243480).
  • CVE-2025-37923: tracing: Fix oob write in traceseqto_buffer() (bsc#1243551).
  • CVE-2025-37927: iommu/amd: Fix potential buffer overflow in parseivrsacpihid (bsc#1243620).
  • CVE-2025-37938: tracing: Verify event formats that have "%*p.." (bsc#1243544).
  • CVE-2025-37945: net: phy: allow MDIO bus PM ops to start/stop state machine for phylink-controlled PHY (bsc#1243538).
  • CVE-2025-37961: ipvs: fix uninit-value for saddr in dooutputroute4 (bsc#1243523).
  • CVE-2025-37992: netsched: Flush gsoskb list too during ->change() (bsc#1243698).
  • CVE-2025-37995: module: ensure that kobject_put() is safe for module type kobjects (bsc#1243827).
  • CVE-2025-37997: netfilter: ipset: fix region locking in hash types (bsc#1243832).
  • CVE-2025-38000: schhfsc: Fix qlen accounting bug when using peek in hfscenqueue() (bsc#1244277).
  • CVE-2025-38001: net_sched: hfsc: Address reentrant enqueue adding class to eltree twice (bsc#1244234).
  • CVE-2025-38011: drm/amdgpu: csa unmap use uninterruptible lock (bsc#1244729).
  • CVE-2025-38018: net/tls: fix kernel panic when alloc_page failed (bsc#1244999).
  • CVE-2025-38053: idpf: fix null-ptr-deref in idpffeaturescheck (bsc#1244746).
  • CVE-2025-38057: espintcp: fix skb leaks (bsc#1244862).
  • CVE-2025-38060: bpf: abort verification if env->curstate->loopentry != NULL (bsc#1245155).
  • CVE-2025-38072: libnvdimm/labels: Fix divide error in ndlabeldata_init() (bsc#1244743).

The following non-security bugs were fixed:

  • ACPI: CPPC: Fix NULL pointer dereference when nosmp is used (git-fixes).
  • ACPI: battery: negate current when discharging (stable-fixes).
  • ACPI: bus: Bail out if acpi_kobj registration fails (stable-fixes).
  • ACPICA: Avoid sequence overread in call to strncmp() (stable-fixes).
  • ACPICA: fix acpi operand cache leak in dswstate.c (stable-fixes).
  • ACPICA: fix acpi parse and parseext cache leaks (stable-fixes).
  • ACPICA: utilities: Fix overflow check in vsnprintf() (stable-fixes).
  • ALSA: hda/intel: Add Thinkpad E15 to PM deny list (stable-fixes).
  • ALSA: hda/realtek: Fix built-in mic on ASUS VivoBook X507UAR (git-fixes).
  • ALSA: hda/realtek: Fix built-in mic on ASUS VivoBook X513EA (git-fixes).
  • ALSA: hda/realtek: enable headset mic on Latitude 5420 Rugged (stable-fixes).
  • ALSA: usb-audio: Accept multiple protocols in GTBs (stable-fixes).
  • ALSA: usb-audio: Add Pioneer DJ DJM-V10 support (stable-fixes).
  • ALSA: usb-audio: Add a quirk for Lenovo Thinkpad Thunderbolt 3 dock (stable-fixes).
  • ALSA: usb-audio: Add implicit feedback quirk for RODE AI-1 (stable-fixes).
  • ALSA: usb-audio: Add name for HP Engage Go dock (stable-fixes).
  • ALSA: usb-audio: Check shutdown at endpointsetinterface() (stable-fixes).
  • ALSA: usb-audio: Fix NULL pointer deref in sndusbpowerdomainset() (git-fixes).
  • ALSA: usb-audio: Fix duplicated name in MIDI substream names (stable-fixes).
  • ALSA: usb-audio: Fix out-of-bounds read in sndusbgetaudioformatuac3() (git-fixes).
  • ALSA: usb-audio: Rename ALSA kcontrol PCM and PCM1 for the KTMicro sound card (stable-fixes).
  • ALSA: usb-audio: Rename Pioneer mixer channel controls (git-fixes).
  • ALSA: usb-audio: Set MIDI1 flag appropriately for GTB MIDI 1.0 entry (stable-fixes).
  • ALSA: usb-audio: Skip setting clock selector for single connections (stable-fixes).
  • ALSA: usb-audio: Support multiple control interfaces (stable-fixes).
  • ALSA: usb-audio: Support read-only clock selector control (stable-fixes).
  • ALSA: usb-audio: enable support for Presonus Studio 1824c within 1810c file (stable-fixes).
  • ALSA: usb-audio: mixer: Remove temporary string use in parseclocksource_unit (stable-fixes).
  • ASoC: amd: yc: Add quirk for Lenovo Yoga Pro 7 14ASP9 (stable-fixes).
  • ASoC: tas2770: Power cycle amp on ISENSE/VSENSE change (stable-fixes).
  • ASoC: tegra210ahub: Add check to ofdevicegetmatch_data() (stable-fixes).
  • Bluetooth: Fix NULL pointer deference on eirgetservice_data (git-fixes).
  • Bluetooth: MGMT: Fix UAF on mgmtremoveadvmonitorcomplete (git-fixes).
  • Bluetooth: MGMT: Fix sparse errors (git-fixes).
  • Bluetooth: MGMT: Remove unused mgmtpendingfind_data (stable-fixes).
  • Bluetooth: Remove pending ACL connection attempts (stable-fixes).
  • Bluetooth: hci_conn: Fix UAF Write in __hciaclcreateconnectionsync (git-fixes).
  • Bluetooth: hci_conn: Only do ACL connections sequentially (stable-fixes).
  • Bluetooth: hcicore: fix listforeachentry_rcu usage (git-fixes).
  • Bluetooth: hci_event: Fix not using key encryption size when its known (git-fixes).
  • Bluetooth: hcisync: Fix UAF in hciaclcreateconn_sync (git-fixes).
  • Bluetooth: hcisync: Fix UAF on hciabortconnsync (git-fixes).
  • Bluetooth: hci_sync: Fix broadcast/PA when using an existing instance (git-fixes).
  • HID: lenovo: Restrict F7/9/11 mode to compact keyboards only (git-fixes).
  • HID: wacom: fix kobject reference count leak (git-fixes).
  • HID: wacom: fix memory leak on kobject creation failure (git-fixes).
  • HID: wacom: fix memory leak on sysfs attribute creation failure (git-fixes).
  • Input: sparcspkr - avoid unannotated fall-through (stable-fixes).
  • KVM: s390: rename PROTNONE to PROTTYPE_DUMMY (git-fixes bsc#1245225).
  • NFC: nci: uart: Set tty->disc_data only in success path (git-fixes).
  • PCI/DPC: Log Error Source ID only when valid (git-fixes).
  • PCI/DPC: Use defines with DPC reason fields (git-fixes).
  • PCI/MSI: Size device MSI domain with the maximum number of vectors (git-fixes).
  • PCI/PM: Set up runtime PM even for devices without PCI PM (git-fixes).
  • PCI: apple: Set only available ports up (git-fixes).
  • PCI: dw-rockchip: Remove PCIEL0SENTRY check from rockchippcielink_up() (git-fixes).
  • PCI: dwc: ep: Correct PBA offset in .set_msix() callback (git-fixes).
  • PCI: endpoint: Retain fixed-size BAR size as well as aligned size (git-fixes).
  • PM: runtime: fix denying of auto suspend in pmsuspendtimer_fn() (stable-fixes).
  • RDMA/core: Fix best page size finding when it can cross SG entries (git-fixes)
  • RDMA/uverbs: Propagate errors from rdmalookupget_uobject() (git-fixes)
  • Revert "ALSA: usb-audio: Skip setting clock selector for single connections" (stable-fixes).
  • Revert "arm64: dts: allwinner: h6: Use RSB for AXP805 PMIC (git-fixes)
  • Revert "ipv6: save dontfrag in cork (git-fixes)."
  • Revert "kABI: ipv6: save dontfrag in cork (git-fixes)."
  • USB: serial: pl2303: add new chip PL2303GC-Q20 and PL2303GT-2AB (stable-fixes).
  • add bug reference to existing hv_storvsc change (bsc#1245455).
  • arm64: dts: marvell: uDPU: define pinctrl state for alarm LEDs (git-fixes)
  • ata: libata-eh: Do not use ATAPI DMA for a device limited to PIO mode (stable-fixes).
  • ata: pata_via: Force PIO for ATAPI devices on VT6415/VT6330 (stable-fixes).
  • ath10k: snoc: fix unbalanced IRQ enable in crash recovery (git-fixes).
  • bnxt: properly flush XDP redirect lists (git-fixes).
  • bpf: Force uprobe bpf program to always return 0 (git-fixes).
  • btrfs: fix fsync of files with no hard links not persisting deletion (git-fixes).
  • btrfs: fix invalid data space release when truncating block in NOCOW mode (git-fixes).
  • btrfs: fix qgroup reservation leak on failure to allocate ordered extent (git-fixes).
  • btrfs: fix wrong start offset for delalloc space release during mmap write (git-fixes).
  • btrfs: remove endnotrans label from btrfsloginode_parent() (git-fixes).
  • btrfs: simplify condition for logging new dentries at btrfsloginode_parent() (git-fixes).
  • bus: fsl-mc: increase MCCMDCOMPLETIONTIMEOUTMS value (stable-fixes).
  • calipso: Fix null-ptr-deref in calipsoreq{set,del}attr() (git-fixes).
  • can: tcan4x5x: fix power regulator retrieval during probe (git-fixes).
  • ceph: Fix incorrect flush end position calculation (git-fixes).
  • ceph: allocate sparse_ext map only for sparse reads (git-fixes).
  • ceph: fix memory leaks in __cephsyncread() (git-fixes).
  • cgroup/cpuset: Fix race between newly created partition and dying one (bsc#1241166).
  • clocksource: Fix brown-bag boolean thinko in (git-fixes)
  • clocksource: Make watchdog and suspend-timing multiplication (git-fixes)
  • devlink: Fix referring to hw_addr attribute during state validation (git-fixes).
  • devlink: fix port dump cmd type (git-fixes).
  • drivers/rapidio/rio_cm.c: prevent possible heap overwrite (stable-fixes).
  • drm/amdgpu: switch job hwfence to amdgpufence (git-fixes).
  • drm/etnaviv: Protect the scheduler's pending list with its lock (git-fixes).
  • drm/i915/pmu: Fix build error with GCOV and AutoFDO enabled (git-fixes).
  • drm/i915: fix build error some more (git-fixes).
  • drm/msm/disp: Correct porch timing for SDM845 (git-fixes).
  • drm/msm/dsi/dsiphy10nm: Fix missing initial VCO rate (git-fixes).
  • drm/nouveau/bl: increase buffer size to avoid truncate warning (git-fixes).
  • drm/ssd130x: fix ssd132xclearscreen() columns (git-fixes).
  • e1000e: set fixed clock frequency indication for Nahum 11 and Nahum 13 (git-fixes).
  • fbcon: Make sure modelist not set on unregistered console (stable-fixes).
  • fgraph: Still initialize idle shadow stacks when starting (git-fixes).
  • firmware: SDEI: Allow sdei initialization without ACPIAPEIGHES (git-fixes).
  • gpio: mlxbf3: only get IRQ for device instance 0 (git-fixes).
  • gve: Fix RXBUFFERSPOSTED stat to report per-queue fill_cnt (git-fixes).
  • gve: add missing NULL check for gveallocpending_packet() in TX DQO (git-fixes).
  • hwmon: (ftsteutates) Fix TOCTOU race in fts_read() (git-fixes).
  • hwmon: (nct6775): Actually make use of the HWMON_NCT6775 symbol namespace (git-fixes).
  • hwmon: (occ) Rework attribute registration for stack usage (git-fixes).
  • hwmon: (occ) fix unaligned accesses (git-fixes).
  • hwmon: (peci/dimmtemp) Do not provide fake thresholds data (git-fixes).
  • hwmon: corsair-psu: add USB id of HX1200i Series 2023 psu (git-fixes).
  • i2c: designware: Invoke runtime suspend on quick slave re-registration (stable-fixes).
  • i2c: npcm: Add clock toggle recovery (stable-fixes).
  • i2c: robotfuzz-osif: disable zero-length read messages (git-fixes).
  • i2c: tiny-usb: disable zero-length read messages (git-fixes).
  • i40e: retry VFLR handling if there is ongoing VF reset (git-fixes).
  • i40e: return false from i40eresetvf if reset is in progress (git-fixes).
  • ice: Fix LACP bonds without SRIOV environment (git-fixes).
  • ice: create new Tx scheduler nodes for new queues only (git-fixes).
  • ice: fix Tx scheduler error handling in XDP callback (git-fixes).
  • ice: fix rebuilding the Tx scheduler tree for large queue counts (git-fixes).
  • ice: fix vf->num_mac count with port representors (git-fixes).
  • ima: Suspend PCR extends and log appends when rebooting (bsc#1210025 ltc#196650).
  • iommu: Skip PASID validation for devices without PASID capability (bsc#1244100)
  • iommu: Validate the PASID in iommuattachdevice_pasid() (bsc#1244100)
  • isolcpus: fix bug in returning number of allocated cpumask (bsc#1243774).
  • kABI: PCI: endpoint: Retain fixed-size BAR size as well as aligned size (git-fixes).
  • kABI: serial: mctrlgpio: split disablems into sync and no_sync APIs (git-fixes).
  • kabi: restore layout of struct cgroup_subsys (bsc#1241166).
  • kabi: restore layout of struct mem_control (jsc#PED-12551).
  • kabi: restore layout of struct page_counter (jsc#PED-12551).
  • loop: add filestartwrite() and fileendwrite() (git-fixes).
  • md/raid1,raid10: do not handle IO error for REQRAHEAD and REQNOWAIT (git-fixes).
  • mkspec: Exclude rt flavor from kernel-syms dependencies (bsc#1244337).
  • mm, memcg: cg2 memory{.swap,}.peak write handlers (jsc#PED-12551).
  • mm/hugetlb: fix hugepmdunshare() vs GUP-fast race (bsc#1245431).
  • mm/hugetlb: unshare page tables during VMA split, not before (bsc#1245431).
  • mm/memcontrol: export memcg.swap watermark via sysfs for v2 memcg (jsc#PED-12551).
  • mmc: Add quirk to disable DDR50 tuning (stable-fixes).
  • net/mdiobus: Fix potential out-of-bounds clause 45 read/write access (git-fixes).
  • net/mdiobus: Fix potential out-of-bounds read/write access (git-fixes).
  • net/mlx4_en: Prevent potential integer overflow calculating Hz (git-fixes).
  • net/mlx5: Add error handling in mlx5querynicvportnode_guid() (git-fixes).
  • net/mlx5: Ensure fw pages are always allocated on same NUMA (git-fixes).
  • net/mlx5: Fix ECVF vports unload on shutdown flow (git-fixes).
  • net/mlx5: Fix return value when searching for existing flow group (git-fixes).
  • net/mlx5core: Add error handling inmlx5querynicvportqkeyviol_cntr() (git-fixes).
  • net/mlx5e: Fix leak of Geneve TLV option object (git-fixes).
  • net/sched: fix use-after-free in tapriodevnotifier (git-fixes).
  • net: Fix TOCTOU issue in skisreadable() (git-fixes).
  • net: ice: Perform accurate aRFS flow match (git-fixes).
  • net: mana: Add support for Multi Vports on Bare metal (bsc#1244229).
  • net: mana: Record doorbell physical address in PF mode (bsc#1244229).
  • net: phy: move phylinkchange() prior to mdiobusphymaysuspend() (bsc#1243538)
  • netsched: ets: fix a race in etsqdisc_change() (git-fixes).
  • netsched: prio: fix a race in priotune() (git-fixes).
  • net_sched: red: fix a race in _redchange() (git-fixes).
  • netsched: schfifo: implement lockless _fifodump() (bsc#1237312)
  • netsched: schsfq: reject invalid perturb period (git-fixes).
  • netsched: tbf: fix a race in tbfchange() (git-fixes).
  • netlink: fix potential sleeping issue in mqueueflushfile (git-fixes).
  • netlink: specs: dpll: replace underscores with dashes in names (git-fixes).
  • nfsd: nfsd4spomust_allow() must check this is a v4 compound request (git-fixes).
  • ntp: Clamp maxerror and esterror to operating range (git-fixes)
  • ntp: Remove invalid cast in time offset math (git-fixes)
  • ntp: Safeguard against time_constant overflow (git-fixes)
  • nvme-fc: do not reference lsrsp after failure (bsc#1245193).
  • nvme-pci: add NVMEQUIRKNODEEPESTPS quirk for SOLIDIGM P44 Pro (git-fixes).
  • nvme-pci: add quirks for WDC Blue SN550 15b7:5009 (git-fixes).
  • nvme-pci: add quirks for device 126f:1001 (git-fixes).
  • nvme: always punt polled uringcmd endio work to task_work (git-fixes).
  • nvme: fix command limits status code (git-fixes).
  • nvme: fix implicit bool to flags conversion (git-fixes).
  • nvmet-fc: free pending reqs on tgtport unregister (bsc#1245193).
  • nvmet-fc: take tgtport refs for portentry (bsc#1245193).
  • nvmet-fcloop: access fcpreq only when holding reqlock (bsc#1245193).
  • nvmet-fcloop: add missing fcloopcallbackhost_done (bsc#1245193).
  • nvmet-fcloop: allocate/free fcloop_lsreq directly (bsc#1245193).
  • nvmet-fcloop: do not wait for lport cleanup (bsc#1245193).
  • nvmet-fcloop: drop response if targetport is gone (bsc#1245193).
  • nvmet-fcloop: prevent double port deletion (bsc#1245193).
  • nvmet-fcloop: refactor fcloopdeletelocal_port (bsc#1245193).
  • nvmet-fcloop: refactor fcloopnportalloc and track lport (bsc#1245193).
  • nvmet-fcloop: remove nport from list on last user (bsc#1245193).
  • nvmet-fcloop: track ref counts for nports (bsc#1245193).
  • nvmet-fcloop: update refs on tfcp_req (bsc#1245193).
  • pinctrl: armada-37xx: propagate error from armada37xxgpio_get() (stable-fixes).
  • pinctrl: armada-37xx: propagate error from armada37xxgpiogetdirection() (stable-fixes).
  • pinctrl: armada-37xx: propagate error from armada37xxpmxgpioset_direction() (stable-fixes).
  • pinctrl: armada-37xx: propagate error from armada37xxpmxsetby_name() (stable-fixes).
  • pinctrl: mcp23s08: Reset all pins to input at probe (stable-fixes).
  • pinctrl: qcom: pinctrl-qcm2290: Add missing pins (git-fixes).
  • pinctrl: st: Drop unused stgpiobank() function (git-fixes).
  • platform/x86/amd: pmc: Clear metrics table at start of cycle (git-fixes).
  • platform/x86/intel-uncore-freq: Fail module load when plat_info is NULL (git-fixes).
  • platform/x86: dell_rbu: Fix list usage (git-fixes).
  • platform/x86: dell_rbu: Stop overwriting data buffer (git-fixes).
  • platform/x86: ideapad-laptop: use usleep_range() for EC polling (git-fixes).
  • power: supply: bq27xxx: Retrieve again when busy (stable-fixes).
  • power: supply: collie: Fix wakeup source leaks on device unbind (stable-fixes).
  • powerpc/eeh: Fix missing PE bridge reconfiguration during VFIO EEH recovery (bsc#1215199).
  • powerpc/powernv/memtrace: Fix out of bounds issue in memtrace mmap (bsc#1244309 ltc#213790).
  • powerpc/vas: Return -EINVAL if the offset is non-zero in mmap() (bsc#1244309 ltc#213790).
  • ptp: remove ptp->nvclocks check logic in ptpvclockinuse() (git-fixes).
  • r8152: add vendor/device ID pair for Dell Alienware AW1022z (git-fixes).
  • regulator: max20086: Fix refcount leak in max20086parseregulators_dt() (git-fixes).
  • rpm/kernel-source.changes.old: Drop bogus bugzilla reference (bsc#1244725)
  • rtc: Make rtctime64to_tm() support dates before 1970 (stable-fixes).
  • rtc: cmos: use spinlockirqsave in cmos_interrupt (git-fixes).
  • s390/pci: Fix __pcilgmioinuser() inline assembly (git-fixes bsc#1245226).
  • s390/tty: Fix a potential memory leak bug (git-fixes bsc#1245228).
  • scsi: dc395x: Remove DEBUG conditional compilation (git-fixes).
  • scsi: dc395x: Remove leftover if statement in reselect() (git-fixes).
  • scsi: elx: efct: Fix memory leak in efcthwparse_filter() (git-fixes).
  • scsi: hisisas: Call IT_nexus after soft reset for SATA disk (git-fixes).
  • scsi: iscsi: Fix incorrect error path labels for flashnode operations (git-fixes).
  • scsi: mpi3mr: Add level check to control event logging (git-fixes).
  • scsi: mpt3sas: Send a diag reset if target reset fails (git-fixes).
  • scsi: qedf: Use designated initializer for struct qedfcoecb_ops (git-fixes).
  • scsi: sd_zbc: block: Respect bio vector limits for REPORT ZONES buffer (git-fixes).
  • scsi: st: ERASE does not change tape location (git-fixes).
  • scsi: st: Restore some drive settings after reset (git-fixes).
  • scsi: st: Tighten the page format heuristics with MODE SELECT (git-fixes).
  • scsi: storvsc: Do not report the host packet status as the hv status (git-fixes).
  • scsi: storvsc: Increase the timeouts to storvsc_timeout (git-fixes).
  • serial: imx: Restore original RXTL for console to fix data loss (git-fixes).
  • serial: mctrlgpio: split disablems into sync and no_sync APIs (git-fixes).
  • serial: sh-sci: Move runtime PM enable to sciprobesingle() (stable-fixes).
  • software node: Correct a OOB check in softwarenodegetreferenceargs() (stable-fixes).
  • staging: rtl8723bs: Avoid memset() in aescipher() and aesdecipher() (git-fixes).
  • struct usci: hide additional member (git-fixes).
  • sunrpc: handle SVC_GARBAGE during svc auth processing as auth error (git-fixes).
  • thunderbolt: Do not double dequeue a configuration request (stable-fixes).
  • timekeeping: Fix bogus clockwasset() invocation in (git-fixes)
  • timekeeping: Fix cross-timestamp interpolation corner case (git-fixes)
  • timekeeping: Fix cross-timestamp interpolation for non-x86 (git-fixes)
  • timekeeping: Fix cross-timestamp interpolation on counter (git-fixes)
  • trace/traceeventperf: remove duplicate samples on the first tracepoint event (git-fixes).
  • tracing/eprobe: Fix to release eprobe when failed to add dyn_event (git-fixes).
  • tracing: Add __printdynamicarray() helper (bsc#1243544).
  • tracing: Add _stringlen() example (bsc#1243544).
  • tracing: Fix cmpentriesdup() to respect sort() comparison rules (git-fixes).
  • tracing: Fix compilation warning on arm32 (bsc#1243551).
  • tracing: Use atomic64increturn() in traceclockcounter() (git-fixes).
  • truct dwc3 hide new member wakeuppendingfuncs (git-fixes).
  • ucsidebugfsentry: hide signedness change (git-fixes).
  • uprobes: Use kzalloc to allocate xol area (git-fixes).
  • usb: dwc3: gadget: Make gadget_wakeup asynchronous (git-fixes).
  • usb: quirks: Add NO_LPM quirk for SanDisk Extreme 55AE (stable-fixes).
  • usb: storage: Ignore UAS driver for SanDisk 3.2 Gen2 storage device (stable-fixes).
  • usb: typec: ucsi: Only enable supported notifications (git-fixes).
  • usb: typec: ucsi: allow non-partner GET_PDOS for Qualcomm devices (git-fixes).
  • usb: typec: ucsi: fix Clang -Wsign-conversion warning (git-fixes).
  • usb: typec: ucsi: fix UCSI on buggy Qualcomm devices (git-fixes).
  • usb: typec: ucsi: limit the UCSINOPARTNER_PDOS even further (git-fixes).
  • usbnet: asix AX88772: leave the carrier control to phylink (stable-fixes).
  • vmxnet3: correctly report gso type for UDP tunnels (bsc#1244626).
  • vmxnet3: support higher link speeds from vmxnet3 v9 (bsc#1244626).
  • vmxnet3: update MTU after device quiesce (bsc#1244626).
  • watchdog: da9052_wdt: respect TWDMIN (stable-fixes).
  • watchdog: fix watchdog may detect false positive of softlockup (stable-fixes).
  • watchdog: it87_wdt: add PWRGD enable quirk for Qotom QCML04 (git-fixes).
  • watchdog: mediatek: Add support for MT6735 TOPRGU/WDT (git-fixes).
  • wifi: ath11k: Fix QMI memory reuse logic (stable-fixes).
  • wifi: ath11k: avoid burning CPU in ath11kdebugfsfwstatsrequest() (git-fixes).
  • wifi: ath11k: convert timeouts to secstojiffies() (stable-fixes).
  • wifi: ath11k: do not use static variables in ath11kdebugfsfwstatsprocess() (git-fixes).
  • wifi: ath11k: do not wait when there is no vdev started (git-fixes).
  • wifi: ath11k: fix socdpstats debugfs file permission (stable-fixes).
  • wifi: ath11k: move some firmware stats related functions outside of debugfs (git-fixes).
  • wifi: ath11k: update channel list in worker when wait flag is set (bsc#1243847).
  • wifi: ath11k: validate ath11kcryptomode on top of ath11kcoreqmifirmwareready (git-fixes).
  • wifi: ath12k: Pass correct values of center freq1 and center freq2 for 160 MHz (stable-fixes).
  • wifi: ath12k: fix a possible dead lock caused by ab->base_lock (stable-fixes).
  • wifi: ath12k: fix failed to set mhi state error during reboot with hardware grouping (stable-fixes).
  • wifi: ath12k: fix incorrect CE addresses (stable-fixes).
  • wifi: ath12k: fix link valid field initialization in the monitor Rx (stable-fixes).
  • wifi: ath12k: fix macro definition HALRXMSDUPKTLENGTH_GET (stable-fixes).
  • wifi: carl9170: do not ping device which has failed to load firmware (git-fixes).
  • wifi: iwlwifi: Add missing MODULE_FIRMWARE for Qu-c0-jf-b0 (stable-fixes).
  • wifi: iwlwifi: pcie: make sure to lock rxq->read (stable-fixes).
  • wifi: mac80211: VLAN traffic in multicast path (stable-fixes).
  • wifi: mac80211: do not offer a mesh path if forwarding is disabled (stable-fixes).
  • wifi: mac80211: fix beacon interval calculation overflow (git-fixes).
  • wifi: mac80211_hwsim: Prevent tsf from setting if beacon is disabled (stable-fixes).
  • wifi: mt76: mt76x2: Add support for LiteOn WN4516R,WN4519R (stable-fixes).
  • wifi: mt76: mt7921: add 160 MHz AP for mt7922 device (stable-fixes).
  • wifi: mt76: mt7996: drop fragments with multicast or broadcast RA (stable-fixes).
  • wifi: rtw89: leave idle mode when setting WEP encryption for AP mode (stable-fixes).
  • x86/kaslr: Reduce KASLR entropy on most x86 systems (git-fixes).
  • x86/microcode/AMD: Add getpatchlevel() (git-fixes).
  • x86/microcode/AMD: Get rid of the loadmicrocode_amd() forward declaration (git-fixes).
  • x86/microcode/AMD: Merge earlyapplymicrocode() into its single callsite (git-fixes).
  • x86/microcode/AMD: Remove ugly linebreak in __verifypatchsection() signature (git-fixes).
  • x86/microcode: Consolidate the loader enablement checking (git-fixes).
  • x86/mm/init: Handle the special case of device private pages in addpages(), to not increase maxpfn and trigger dmaaddressinglimited() bounce buffers (git-fixes).
  • x86/xen: fix balloon target initialization for PVH dom0 (git-fixes).
  • xen/arm: call uaccessttbr0enable for dm_op hypercall (git-fixes)
  • xen/x86: fix initial memory balloon target (git-fixes).
References

Affected packages

SUSE:Linux Micro 6.1 / kernel-default

Package

Name
kernel-default
Purl
pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Micro%206.1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.4.0-31.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "6.4.0-31.1",
            "kernel-source": "6.4.0-31.1",
            "kernel-default": "6.4.0-31.1",
            "kernel-kvmsmall": "6.4.0-31.1",
            "kernel-devel": "6.4.0-31.1",
            "kernel-default-devel": "6.4.0-31.1",
            "kernel-default-base": "6.4.0-31.1.21.9",
            "kernel-default-livepatch": "6.4.0-31.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:20475-1.json"

SUSE:Linux Micro 6.1 / kernel-default-base

Package

Name
kernel-default-base
Purl
pkg:rpm/suse/kernel-default-base&distro=SUSE%20Linux%20Micro%206.1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.4.0-31.1.21.9

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "6.4.0-31.1",
            "kernel-source": "6.4.0-31.1",
            "kernel-default": "6.4.0-31.1",
            "kernel-kvmsmall": "6.4.0-31.1",
            "kernel-devel": "6.4.0-31.1",
            "kernel-default-devel": "6.4.0-31.1",
            "kernel-default-base": "6.4.0-31.1.21.9",
            "kernel-default-livepatch": "6.4.0-31.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:20475-1.json"

SUSE:Linux Micro 6.1 / kernel-kvmsmall

Package

Name
kernel-kvmsmall
Purl
pkg:rpm/suse/kernel-kvmsmall&distro=SUSE%20Linux%20Micro%206.1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.4.0-31.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "6.4.0-31.1",
            "kernel-source": "6.4.0-31.1",
            "kernel-default": "6.4.0-31.1",
            "kernel-kvmsmall": "6.4.0-31.1",
            "kernel-devel": "6.4.0-31.1",
            "kernel-default-devel": "6.4.0-31.1",
            "kernel-default-base": "6.4.0-31.1.21.9",
            "kernel-default-livepatch": "6.4.0-31.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:20475-1.json"

SUSE:Linux Micro 6.1 / kernel-source

Package

Name
kernel-source
Purl
pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Micro%206.1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.4.0-31.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "6.4.0-31.1",
            "kernel-source": "6.4.0-31.1",
            "kernel-default": "6.4.0-31.1",
            "kernel-kvmsmall": "6.4.0-31.1",
            "kernel-devel": "6.4.0-31.1",
            "kernel-default-devel": "6.4.0-31.1",
            "kernel-default-base": "6.4.0-31.1.21.9",
            "kernel-default-livepatch": "6.4.0-31.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:20475-1.json"