{"id":"SUSE-SU-2026:1575-1","summary":"Security update for the Linux Kernel","details":"The SUSE Linux Enterprise 15 SP3 RT kernel was updated to receive various security bugfixes.\n\n\nThe following security bugs were fixed:\n\n- CVE-2025-38234: sched/rt: Fix race in push_rt_task (bsc#1246057).\n- CVE-2026-23103: ipvlan: Make the addrs_lock be per port (bsc#1257773).\n- CVE-2026-23243: RDMA/umad: Reject negative data_len in ib_umad_write (bsc#1259797).\n- CVE-2026-23272: netfilter: nf_tables: unconditionally bump set-\u003enelems before insertion (bsc#1260009).\n- CVE-2026-23274: netfilter: xt_IDLETIMER: reject rev0 reuse of ALARM timer labels (bsc#1260005).\n- CVE-2026-23293: net: vxlan: fix nd_tbl NULL dereference when IPv6 is disabled (bsc#1260486).\n- CVE-2026-23398: icmp: fix NULL pointer dereference in icmp_tag_validation() (bsc#1260730).\n","modified":"2026-04-24T08:15:48.436586Z","published":"2026-04-23T15:53:10Z","related":["CVE-2025-38234","CVE-2026-23103","CVE-2026-23243","CVE-2026-23272","CVE-2026-23274","CVE-2026-23293","CVE-2026-23398"],"upstream":["CVE-2025-38234","CVE-2026-23103","CVE-2026-23243","CVE-2026-23272","CVE-2026-23274","CVE-2026-23293","CVE-2026-23398"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2026/suse-su-20261575-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1246057"},{"type":"REPORT","url":"https://bugzilla.suse.com/1257773"},{"type":"REPORT","url":"https://bugzilla.suse.com/1259797"},{"type":"REPORT","url":"https://bugzilla.suse.com/1260005"},{"type":"REPORT","url":"https://bugzilla.suse.com/1260009"},{"type":"REPORT","url":"https://bugzilla.suse.com/1260486"},{"type":"REPORT","url":"https://bugzilla.suse.com/1260730"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38234"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-23103"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-23243"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-23272"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-23274"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-23293"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-23398"}],"affected":[{"package":{"name":"kernel-rt","ecosystem":"SUSE:Linux Enterprise Micro 5.2","purl":"pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.3.18-150300.241.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-rt":"5.3.18-150300.241.1","kernel-source-rt":"5.3.18-150300.241.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:1575-1.json"}},{"package":{"name":"kernel-source-rt","ecosystem":"SUSE:Linux Enterprise Micro 5.2","purl":"pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.3.18-150300.241.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-rt":"5.3.18-150300.241.1","kernel-source-rt":"5.3.18-150300.241.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:1575-1.json"}}],"schema_version":"1.7.5"}