Skip to content
important patch for multiple issues in openSUSE Leap 15.3 kernel update

important patch for multiple issues in openSUSE Leap 15.3 kernel update

Linuxsecurity LinuxSecurity Advisories March 18, 2026

The SUSE Linux Enterprise 15 SP3 kernel was updated to fix various security issues The following security issues were fixed: * CVE-2023-53794: cifs: fix session state check in reconnect to avoid use- after-free issue (bsc#1255163). * CVE-2023-53827: Bluetooth: L2CAP: Fix use-after-free in l2cap_disconnect_{req,rsp} (bsc#1255049). * CVE-2025-21738: ata: libata-sff: Ensure that we cannot write outside the allocated buffer (bsc#1238917). * CVE-2025-38375: virtio-net: ensure the received length does not exceed allocated size (bsc#1247177). * CVE-2025-68285: libceph: fix potential use-after-free in have_mon_and_osd_map() (bsc#1255401). * CVE-2025-71066: net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change (bsc#1256645). * CVE-2026-23004: dst: fix races in rt6_uncached_list_del() and rt_del_uncached_list() (bsc#1257231). * CVE-2026-23060: crypto: authencesn - reject too-short AAD (assoclen<8) to match ESP/ESN spec

## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2026-928=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-928=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-928=1

## Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like

YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

zypper in -t patch SUSE-2026-928=1

* SUSE Linux Enterprise Micro 5.2

zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-928=1

* SUSE Linux Enterprise Micro for Rancher 5.2

zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-928=1

* openSUSE Leap 15.3 (noarch nosrc) * kernel-docs-5.3.18-150300.59.238.1 * openSUSE Leap 15.3 (noarch) * kernel-source-5.3.18-150300.59.238.1 * kernel-source-vanilla-5.3.18-150300.59.238.1 * kernel-macros-5.3.18-150300.59.238.1 * kernel-devel-5.3.18-150300.59.238.1 * kernel-docs-html-5.3.18-150300.59.238.1 * openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64) * ocfs2-kmp-default-5.3.18-150300.59.238.1 * dlm-kmp-default-5.3.18-150300.59.238.1 * kernel-obs-build-5.3.18-150300.59.238.1 * kernel-obs-build-debugsource-5.3.18-150300.59.238.1 * kernel-default-optional-debuginfo-5.3.18-150300.59.238.1 * kernel-obs-qa-5.3.18-150300.59.238.1 * gfs2-kmp-default-5.3.18-150300.59.238.1 * reiserfs-kmp-default-debuginfo-5.3.18-150300.59.238.1 * reiserfs-kmp-default-5.3.18-150300.59.238.1 * kernel-default-devel-debuginfo-5.3.18-150300.59.238.1 * kernel-default-debuginfo-5.3.18-150300.59.238.1 * Read the Full Advisory

* openSUSE Leap 15.3 (noarch nosrc)

* kernel-docs-5.3.18-150300.59.238.1

* openSUSE Leap 15.3 (noarch)

* kernel-source-5.3.18-150300.59.238.1

* kernel-source-vanilla-5.3.18-150300.59.238.1

* kernel-macros-5.3.18-150300.59.238.1

* kernel-devel-5.3.18-150300.59.238.1

* kernel-docs-html-5.3.18-150300.59.238.1

* openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64)

* ocfs2-kmp-default-5.3.18-150300.59.238.1

* dlm-kmp-default-5.3.18-150300.59.238.1

* kernel-obs-build-5.3.18-150300.59.238.1

* kernel-obs-build-debugsource-5.3.18-150300.59.238.1

* kernel-default-optional-debuginfo-5.3.18-150300.59.238.1

* kernel-obs-qa-5.3.18-150300.59.238.1

* gfs2-kmp-default-5.3.18-150300.59.238.1

* reiserfs-kmp-default-debuginfo-5.3.18-150300.59.238.1

* reiserfs-kmp-default-5.3.18-150300.59.238.1

* kernel-default-devel-debuginfo-5.3.18-150300.59.238.1

* kernel-default-debuginfo-5.3.18-150300.59.238.1

* bsc#1238917 * bsc#1246166 * bsc#1247177 * bsc#1255049 * bsc#1255163 * bsc#1255401 * bsc#1256645 * bsc#1257231 * bsc#1257735 * bsc#1257749 * bsc#1257790 * bsc#1258340 * bsc#1258395 * bsc#1258849 * jsc#PED-12836 ## References: * * * * * * * * * * * * * * Read the Full Advisory

*

*

*

*

*

*

*

*

*

*

*

*

*