Skip to main content

Boteraser | Website and Server Security Solutions

🛡️ SUSE-SU-2025:20498-1 — kernel-rt (CVE-2024-57982 +69 more)

⚪ Unknown ✅ No Known Exploit OSV
N/A
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

Security update for the Linux Kernel

The SUSE Linux Enterprise Micro 6.0 and 6.1 RT kernel was updated to receive various security bugfixes.

The following security bugs were fixed:

  • CVE-2024-57982: xfrm: state: fix out-of-bounds read during lookup (bsc#1237913).
  • CVE-2024-58053: rxrpc: Fix handling of received connection abort (bsc#1238982).
  • CVE-2025-21720: xfrm: delete intermediate secpath entry in packet offload mode (bsc#1238859).
  • CVE-2025-21898: ftrace: Avoid potential division by zero in function_stat_show() (bsc#1240610).
  • CVE-2025-21899: tracing: Fix bad hist from corrupting named_triggers list (bsc#1240577).
  • CVE-2025-21920: vlan: enforce underlying device type (bsc#1240686).
  • CVE-2025-21959: netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() (bsc#1240814).
  • CVE-2025-22035: tracing: Fix use-after-free in print_graph_function_flags during tracer switching (bsc#1241544).
  • CVE-2025-22111: kABI fix for net: Remove RTNL dance for SIOCBRADDIF and SIOCBRDELIF (bsc#1241572).
  • CVE-2025-37756: net: tls: explicitly disallow disconnect (bsc#1242515).
  • CVE-2025-37757: tipc: fix memory leak in tipc_link_xmit (bsc#1242521).
  • CVE-2025-37786: net: dsa: free routing table on probe failure (bsc#1242725).
  • CVE-2025-37811: usb: chipidea: ci_hdrc_imx: fix usbmisc handling (bsc#1242907).
  • CVE-2025-37859: page_pool: avoid infinite loop to schedule delayed worker (bsc#1243051).
  • CVE-2025-37884: bpf: Fix deadlock between rcu_tasks_trace and event_mutex (bsc#1243060).
  • CVE-2025-37909: net: lan743x: Fix memleak issue when GSO enabled (bsc#1243467).
  • CVE-2025-37921: vxlan: vnifilter: Fix unlocked deletion of default FDB entry (bsc#1243480).
  • CVE-2025-37923: tracing: Fix oob write in trace_seq_to_buffer() (bsc#1243551).
  • CVE-2025-37927: iommu/amd: Fix potential buffer overflow in parse_ivrs_acpihid (bsc#1243620).
  • CVE-2025-37938: tracing: Verify event formats that have "%*p.." (bsc#1243544).
  • CVE-2025-37945: net: phy: allow MDIO bus PM ops to start/stop state machine for phylink-controlled PHY (bsc#1243538).
  • CVE-2025-37961: ipvs: fix uninit-value for saddr in do_output_route4 (bsc#1243523).
  • CVE-2025-37992: net_sched: Flush gso_skb list too during ->change() (bsc#1243698).
  • CVE-2025-37995: module: ensure that kobject_put() is safe for module type kobjects (bsc#1243827).
  • CVE-2025-37997: netfilter: ipset: fix region locking in hash types (bsc#1243832).
  • CVE-2025-38000: sch_hfsc: Fix qlen accounting bug when using peek in hfsc_enqueue() (bsc#1244277).
  • CVE-2025-38001: net_sched: hfsc: Address reentrant enqueue adding class to eltree twice (bsc#1244234).
  • CVE-2025-38011: drm/amdgpu: csa unmap use uninterruptible lock (bsc#1244729).
  • CVE-2025-38018: net/tls: fix kernel panic when alloc_page failed (bsc#1244999).
  • CVE-2025-38053: idpf: fix null-ptr-deref in idpf_features_check (bsc#1244746).
  • CVE-2025-38057: espintcp: fix skb leaks (bsc#1244862).
  • CVE-2025-38060: bpf: abort verification if env->cur_state->loop_entry != NULL (bsc#1245155).
  • CVE-2025-38072: libnvdimm/labels: Fix divide error in nd_label_data_init() (bsc#1244743).

The following non-security bugs were fixed:

  • ACPI: CPPC: Fix NULL pointer dereference when nosmp is used (git-fixes).
  • ACPI: battery: negate current when discharging (stable-fixes).
  • ACPI: bus: Bail out if acpi_kobj registration fails (stable-fixes).
  • ACPICA: Avoid sequence overread in call to strncmp() (stable-fixes).
  • ACPICA: fix acpi operand cache leak in dswstate.c (stable-fixes).
  • ACPICA: fix acpi parse and parseext cache leaks (stable-fixes).
  • ACPICA: utilities: Fix overflow check in vsnprintf() (stable-fixes).
  • ALSA: hda/intel: Add Thinkpad E15 to PM deny list (stable-fixes).
  • ALSA: hda/realtek: Fix built-in mic on ASUS VivoBook X507UAR (git-fixes).
  • ALSA: hda/realtek: Fix built-in mic on ASUS VivoBook X513EA (git-fixes).
  • ALSA: hda/realtek: enable headset mic on Latitude 5420 Rugged (stable-fixes).
  • ALSA: usb-audio: Accept multiple protocols in GTBs (stable-fixes).
  • ALSA: usb-audio: Add Pioneer DJ DJM-V10 support (stable-fixes).
  • ALSA: usb-audio: Add a quirk for Lenovo Thinkpad Thunderbolt 3 dock (stable-fixes).
  • ALSA: usb-audio: Add implicit feedback quirk for RODE AI-1 (stable-fixes).
  • ALSA: usb-audio: Add name for HP Engage Go dock (stable-fixes).
  • ALSA: usb-audio: Check shutdown at endpoint_set_interface() (stable-fixes).
  • ALSA: usb-audio: Fix NULL pointer deref in snd_usb_power_domain_set() (git-fixes).
  • ALSA: usb-audio: Fix duplicated name in MIDI substream names (stable-fixes).
  • ALSA: usb-audio: Fix out-of-bounds read in snd_usb_get_audioformat_uac3() (git-fixes).
  • ALSA: usb-audio: Rename ALSA kcontrol PCM and PCM1 for the KTMicro sound card (stable-fixes).
  • ALSA: usb-audio: Rename Pioneer mixer channel controls (git-fixes).
  • ALSA: usb-audio: Set MIDI1 flag appropriately for GTB MIDI 1.0 entry (stable-fixes).
  • ALSA: usb-audio: Skip setting clock selector for single connections (stable-fixes).
  • ALS

Affected software

SUSE-SU-2025:20498-1 is recorded against 2 packages.

  • kernel-rt (fixed in 6.4.0-34.1)
  • kernel-source-rt (fixed in 6.4.0-34.1)

Timeline and source

Published on 18 July 2025 and last revised on 23 March 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.

References

www.suse.com (Advisory)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)

Details

Severity Unknown
CVSS Score N/A
CVSS Vector N/A
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2025-07-18
Updated 2026-08-20
Modified 2026-03-23
Fix URL N/A

Affected Packages

Software From version Fixed in
kernel-rt 6.4.0-34.1
kernel-source-rt 6.4.0-34.1

References

Similar Threats

Free Vulnerability Check

Is your site affected by SUSE-SU-2025:20498-1?

BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against SUSE-SU-2025:20498-1 and other known CVE records.

Scan My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.