Back Linuxsecurity SUSE Kernel Vital Update Addressing 13 Security Vulnerabilities 2026-3826
Find practical guidance for preventing, investigating, and responding to Linux security problems. Find practical guidance for preventing, investigating, and responding to Linux security problems. _ Review Linux Privileges ×
## This update for the SUSE Linux Enterprise Kernel 4.12.14-122.307 fixes various security issues: The following security issues were fixed: * CVE-2023-53995: net: ipv4: fix one memleak in __inet_del_ifa() (bsc#1269284). * CVE-2025-40204,CVE-2026-53224,CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1253437 bsc#1270023 bsc#1270024). * CVE-2026-23449: net/sched: teql: Fix double-free in teql_master_xmit (bsc#1262213). * CVE-2026-31629: nfc: llcp: add missing return after LLCP_CLOSED checks (bsc#1263791). * CVE-2026-31759: usb: ulpi: fix double free in ulpi_register_interface() error path (bsc#1264078). * CVE-2026-43077: crypto: algif_aead - Fix minimum RX size check for decryption (bsc#1265306).
## This update for the SUSE Linux Enterprise Kernel 4.12.14-122.307 fixes various security issues: The following security issues were fixed: * CVE-2023-53995: net: ipv4: fix one memleak in __inet_del_ifa() (bsc#1269284). * CVE-2025-40204,CVE-2026-53224,CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1253437 bsc#1270023 bsc#1270024). * CVE-2026-23449: net/sched: teql: Fix double-free in teql_master_xmit (bsc#1262213). * CVE-2026-31629: nfc: llcp: add missing return after LLCP_CLOSED checks (bsc#1263791). * CVE-2026-31759: usb: ulpi: fix double free in ulpi_register_interface() error path (bsc#1264078). * CVE-2026-43077: crypto: algif_aead - Fix minimum RX size check for decryption (bsc#1265306).
* CVE-2023-53995 ( SUSE ): 7.3
CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
* CVE-2023-53995 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
* CVE-2026-23449 ( SUSE ): 7.3
CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
* CVE-2026-23449 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Announcement ID: SUSE-SU-2026:3826-1 Release Date: 2026-08-26T11:34:12Z Rating: important
Get the latest Linux and open source security news straight to your inbox.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
