{"schema_version":"1.7.5","id":"SUSE-SU-2026:2631-1","published":"2026-06-25T11:55:12Z","modified":"2026-06-26T08:15:07.599366769Z","related":["CVE-2025-10263","CVE-2025-68324","CVE-2026-23392","CVE-2026-31473","CVE-2026-31500","CVE-2026-31613","CVE-2026-31697","CVE-2026-31698","CVE-2026-31699","CVE-2026-31759","CVE-2026-43077","CVE-2026-43198","CVE-2026-45984","CVE-2026-46037","CVE-2026-46116","CVE-2026-46120","CVE-2026-46123","CVE-2026-46150","CVE-2026-46159","CVE-2026-46197","CVE-2026-46227"],"upstream":["CVE-2025-10263","CVE-2025-68324","CVE-2026-23392","CVE-2026-31473","CVE-2026-31500","CVE-2026-31613","CVE-2026-31697","CVE-2026-31698","CVE-2026-31699","CVE-2026-31759","CVE-2026-43077","CVE-2026-43198","CVE-2026-45984","CVE-2026-46037","CVE-2026-46116","CVE-2026-46120","CVE-2026-46123","CVE-2026-46150","CVE-2026-46159","CVE-2026-46197","CVE-2026-46227"],"summary":"Security update for the Linux Kernel","details":"\nThe SUSE Linux Enterprise 15 SP4 RT kernel was updated to fix various security issues\n\nThe following security issues were fixed:\n\n- CVE-2025-10263: arm64: errata: Mitigate TLBI errata on various Arm CPUs (bsc#1266290).\n- CVE-2025-68324: scsi: imm: Fix use-after-free bug caused by unfinished delayed work (bsc#1255416).\n- CVE-2026-23392: netfilter: nf_tables: release flowtable after rcu grace period on error (bsc#1260531).\n- CVE-2026-31473: media: mc, v4l2: serialize REINIT and REQBUFS with req_queue_mutex (bsc#1262663).\n- CVE-2026-31500: Bluetooth: btintel: serialize btintel_hw_error() with hci_req_sync_lock (bsc#1262993).\n- CVE-2026-31613: smb: client: fix OOB reads parsing symlink error response (bsc#1263769).\n- CVE-2026-31697: crypto: ccp: Don't attempt to copy ID to userspace if PSP command failed (bsc#1264116).\n- CVE-2026-31698: crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command failed (bsc#1263880).\n- CVE-2026-31699: crypto: ccp: Don't attempt to copy CSR to userspace if PSP command failed (bsc#1263879).\n- CVE-2026-31759: usb: ulpi: fix double free in ulpi_register_interface() error path (bsc#1264076).\n- CVE-2026-43077: crypto: algif_aead - Fix minimum RX size check for decryption (bsc#1264470).\n- CVE-2026-43198: tcp: fix potential race in tcp_v6_syn_recv_sock() (bsc#1264610).\n- CVE-2026-45984: gfs2: Move the inode glock locking to gfs2_file_buffered_write (bsc#1267214).\n- CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267361).\n- CVE-2026-46116: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (bsc#1267369).\n- CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267640).\n- CVE-2026-46123: Bluetooth: virtio_bt: clamp rx length before skb_put (bsc#1267621).\n- CVE-2026-46150: fanotify: fix false positive on permission events (bsc#1267387).\n- CVE-2026-46159: btrfs: fix btrfs_ioctl_space_info() slot_count TOCTOU which can lead to info-leak (bsc#1267652).\n- CVE-2026-46197: drm/amdkfd: validate SVM ioctl nattr against buffer size (bsc#1267381).\n- CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267697).\n\nThe following non security issues were fixed:\n\n- smb: client: correctly handle ErrorContextData as a flexible array (git-fixes).\n","affected":[{"package":{"name":"kernel-rt","ecosystem":"SUSE:Linux Enterprise Micro 5.3","purl":"pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.14.21-150400.15.173.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-rt":"5.14.21-150400.15.173.1","kernel-source-rt":"5.14.21-150400.15.173.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:2631-1.json"}},{"package":{"name":"kernel-source-rt","ecosystem":"SUSE:Linux Enterprise Micro 5.3","purl":"pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.14.21-150400.15.173.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-rt":"5.14.21-150400.15.173.1","kernel-source-rt":"5.14.21-150400.15.173.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:2631-1.json"}},{"package":{"name":"kernel-rt","ecosystem":"SUSE:Linux Enterprise Micro 5.4","purl":"pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.14.21-150400.15.173.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-rt":"5.14.21-150400.15.173.1","kernel-source-rt":"5.14.21-150400.15.173.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:2631-1.json"}},{"package":{"name":"kernel-source-rt","ecosystem":"SUSE:Linux Enterprise Micro 5.4","purl":"pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.14.21-150400.15.173.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-rt":"5.14.21-150400.15.173.1","kernel-source-rt":"5.14.21-150400.15.173.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:2631-1.json"}}],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2026/suse-su-20262631-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1255416"},{"type":"REPORT","url":"https://bugzilla.suse.com/1258538"},{"type":"REPORT","url":"https://bugzilla.suse.com/1260531"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262663"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262993"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263769"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263879"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263880"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264076"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264116"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264470"},{"type":"REPORT","url":"https://bugzilla.suse.com/1264610"},{"type":"REPORT","url":"https://bugzilla.suse.com/1266214"},{"type":"REPORT","url":"https://bugzilla.suse.com/1266290"},{"type":"REPORT","url":"https://bugzilla.suse.com/1267214"},{"type":"REPORT","url":"https://bugzilla.suse.com/1267361"},{"type":"REPORT","url":"https://bugzilla.suse.com/1267369"},{"type":"REPORT","url":"https://bugzilla.suse.com/1267381"},{"type":"REPORT","url":"https://bugzilla.suse.com/1267387"},{"type":"REPORT","url":"https://bugzilla.suse.com/1267621"},{"type":"REPORT","url":"https://bugzilla.suse.com/1267640"},{"type":"REPORT","url":"https://bugzilla.suse.com/1267652"},{"type":"REPORT","url":"https://bugzilla.suse.com/1267697"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-10263"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-68324"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-23392"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-31473"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-31500"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-31613"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-31697"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-31698"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-31699"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-31759"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-43077"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-43198"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-45984"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-46037"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-46116"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-46120"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-46123"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-46150"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-46159"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-46197"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-46227"}]}