Skip to main content

Boteraser | Website and Server Security Solutions

🛡️ SUSE-SU-2026:22048-1 — kernel-64kb (CVE-2023-20585 +37 more)

⚪ Unknown ✅ No Known Exploit OSV
N/A
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

Security update for the Linux Kernel

The SUSE Linux Enterprise 16.0 kernel was updated to fix various security issues

The following security issues were fixed:

  • CVE-2023-20585: iommu/amd: Use maximum Event log buffer size when SNP is enabled on Family 0x19 (bsc#1243603).
  • CVE-2026-3150: bcache: fix cached_dev.sb_bio use-after-free and crash (bsc#1263169).
  • CVE-2026-23359: bpf: Fix stack-out-of-bounds write in devmap (bsc#1260584).
  • CVE-2026-23380: tracing: Fix WARN_ON in tracing_buffers_mmap_close (bsc#1260539).
  • CVE-2026-23444: wifi: mac80211: always free skb on ieee80211_tx_prepare_skb() failure (bsc#1266307).
  • CVE-2026-31464: scsi: ibmvfc: Fix OOB access in ibmvfc_discover_targets_done() (bsc#1262656).
  • CVE-2026-31480: tracing: Fix potential deadlock in cpu hotplug with osnoise (bsc#1262634).
  • CVE-2026-31483: s390/barrier: Make array_index_mask_nospec() __always_inline (bsc#1261590 bsc#1262771).
  • CVE-2026-31493: RDMA/efa: Fix use of completion ctx after free (bsc#1262668).
  • CVE-2026-31516: xfrm: prevent policy_hthresh.work from racing with netns teardown (bsc#1262755).
  • CVE-2026-31521: module: Fix kernel panic when a symbol st_shndx is out of bounds (bsc#1263102).
  • CVE-2026-31568: s390/mm: Add missing secure storage access fixups for donated memory (bsc#1263068).
  • CVE-2026-31575: mm/userfaultfd: fix hugetlb fault mutex hash calculation (bsc#1263067).
  • CVE-2026-31613: smb: client: fix OOB reads parsing symlink error response (bsc#1263769).
  • CVE-2026-31614: smb: client: fix off-by-8 bounds check in check_wsl_eas() (bsc#1263774).
  • CVE-2026-31729: usb: typec: ucsi: validate connector number in ucsi_notify_common() (bsc#1264112).
  • CVE-2026-31736: net: ethernet: mtk_ppe: avoid NULL deref when gmac0 is disabled (bsc#1263908).
  • CVE-2026-43012: net/mlx5: Fix switchdev mode rollback in case of failure (bsc#1264016).
  • CVE-2026-43013: net/mlx5: lag: Check for LAG device before creating debugfs (bsc#1264011).
  • CVE-2026-43054: scsi: target: tcm_loop: Drain commands in target_reset handler (bsc#1264063).
  • CVE-2026-43112: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (bsc#1264437).
  • CVE-2026-43234: team: avoid NETDEV_CHANGEMTU event when unregistering slave (bsc#1264409).
  • CVE-2026-43252: mptcp: pm: in-kernel: always set ID as avail when rm endp (bsc#1264300).
  • CVE-2026-43325: wifi: iwlwifi: mvm: don't send a 6E related command when not supported (bsc#1265110).
  • CVE-2026-43328: cpufreq: governor: fix double free in cpufreq_dbs_governor_init() error path (bsc#1264832).
  • CVE-2026-43333: bpf: reject direct access to nullable PTR_TO_BUF pointers (bsc#1264726).
  • CVE-2026-43338: btrfs: reserve enough transaction items for qgroup ioctls (bsc#1264716).
  • CVE-2026-43341: net/ipv6: ioam6: prevent schema length wraparound in trace fill (bsc#1265044).
  • CVE-2026-43359: btrfs: fix transaction abort on set received ioctl due to item overflow (bsc#1264719).
  • CVE-2026-43360: btrfs: fix transaction abort on file creation due to name hash collision (bsc#1264720).
  • CVE-2026-43361: btrfs: fix transaction abort when snapshotting received subvolumes (bsc#1264722).
  • CVE-2026-43362: smb: client: fix in-place encryption corruption in SMB2_write() (bsc#1264989).
  • CVE-2026-43414: scsi: qla2xxx: Completely fix fcport double free (bsc#1264669).
  • CVE-2026-43499: rtmutex: Use waiter::task instead of current in remove_waiter() (bsc#1266001).
  • CVE-2026-45843: slip: bound decode() reads against the compressed packet length (bsc#1266395).
  • CVE-2026-46110: net: stmmac: rename STMMAC_GET_ENTRY() -> STMMAC_NEXT_ENTRY() (bsc#1266759).

The following non security issues were fixed:

  • ACPI: x86: cmos_rtc: Clean up address space handler driver (stable-fixes).
  • ACPI: x86: cmos_rtc: Improve coordination with ACPI TAD driver (git-fixes).
  • ALSA: asihpi: Fix potential OOB array access at reading cache (stable-fixes).
  • ALSA: hda/conexant: Renaming the codec with device ID 0x1f86 and 0x1f87 (stable-fixes).
  • ALSA: pcm: Don't setup bogus iov_iter for silencing (git-fixes).
  • ALSA: pcm: oss: Fix setup list UAF on proc write error (git-fixes).
  • ALSA: scarlett2: Fix 2i2 Gen 4 direct monitor gain on firmware 2417 (git-fixes).
  • ALSA: seq: avoid past-the-end iterator in snd_seq_create_port() (git-fixes).
  • ALSA: seq: Serialize UMP output teardown with event_input (git-fixes).
  • ALSA: timer: avoid past-the-end iterator in snd_timer_dev_register() (git-fixes).
  • ALSA: ua101: Reject too-short USB descriptors (git-fixes).
  • arm64: tlb: Flush walk cache when unsharing PMD tables (git-fixes).
  • ASoC: codecs: simple-mux: Fix enum control bounds check (git-fixes).
  • ASoC: cs35l56: Fix flushing of IRQ work in cs35l56_sdw_remove() (git-fixes).
  • ASoC: Intel: bytcht_es8316: Fix MCLK leak on init errors (git-fixes).
  • ASoC: qcom: q6asm-dai: close stream only when running (git-fixes).
  • ASoC: qcom: q6asm-dai: do not set stream state in event and trigger callbacks (git-fixes).
  • ASoC: qcom: q6asm-dai: fix error handling in prepar

Affected software

SUSE-SU-2026:22048-1 is recorded against 5 packages.

  • kernel-64kb (fixed in 6.12.0-160000.34.1)
  • kernel-default (fixed in 6.12.0-160000.34.1)
  • kernel-default-base (fixed in 6.12.0-160000.34.1.160000.2.15)
  • kernel-rt (fixed in 6.12.0-160000.34.1)
  • kernel-source (fixed in 6.12.0-160000.34.1)

Timeline and source

Published on 5 June 2026 and last revised on 10 June 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.

References

www.suse.com (Advisory)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)

Details

Severity Unknown
CVSS Score N/A
CVSS Vector N/A
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2026-06-05
Updated 2026-08-20
Modified 2026-06-10
Fix URL N/A

Affected Packages

Software From version Fixed in
kernel-64kb 6.12.0-160000.34.1
kernel-default 6.12.0-160000.34.1
kernel-default-base 6.12.0-160000.34.1.160000.2.15
kernel-rt 6.12.0-160000.34.1
kernel-source 6.12.0-160000.34.1

References

Free Vulnerability Check

Is your site affected by SUSE-SU-2026:22048-1?

BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against SUSE-SU-2026:22048-1 and other known CVE records.

Scan My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.