{"id":"SUSE-SU-2026:23686-1","summary":"Security update for the Linux Kernel RT (Live Patch 11 for SUSE Linux Enterprise 16)","details":"\nThis update for the SUSE Linux Enterprise Kernel 6.12.0-160000.32.1 fixes various security issues:\n\nThe following security issues were fixed:\n\n- CVE-2026-46150: fanotify: fix false positive on permission events (bsc#1267388).\n- CVE-2026-53360: KVM: SEV: Require in-GHCB scratch area if GHCB v2+ is in use (bsc#1270303).\n- CVE-2026-64423: ipv4: igmp: remove multicast group from hash table on device destruction (bsc#1275458).\n- CVE-2026-64561: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available (Zapscape) (bsc#1273232).\n- CVE-2026-64564: sctp: don't free the ASCONF's own transport in DEL-IP processing (SCTPhantom) (bsc#1274074).\n- CVE-2026-68138: net/sched: serialize qdisc_rtab_list against concurrent get/put (bsc#1274942).\n","modified":"2026-09-29T18:23:24.022085546Z","published":"2026-09-12T11:19:11Z","related":["CVE-2026-46150","CVE-2026-53360","CVE-2026-64423","CVE-2026-64561","CVE-2026-64564","CVE-2026-68138"],"upstream":["CVE-2026-46150","CVE-2026-53360","CVE-2026-64423","CVE-2026-64561","CVE-2026-64564","CVE-2026-68138"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2026/suse-su-202623686-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1267388"},{"type":"REPORT","url":"https://bugzilla.suse.com/1270303"},{"type":"REPORT","url":"https://bugzilla.suse.com/1273232"},{"type":"REPORT","url":"https://bugzilla.suse.com/1274074"},{"type":"REPORT","url":"https://bugzilla.suse.com/1274942"},{"type":"REPORT","url":"https://bugzilla.suse.com/1275458"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-46150"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-53360"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-64423"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-64561"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-64564"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-68138"}],"affected":[{"package":{"name":"kernel-livepatch-SLE16-RT_Update_11","ecosystem":"SUSE:Linux Micro 6.2","purl":"pkg:rpm/suse/kernel-livepatch-SLE16-RT_Update_11&distro=SUSE%20Linux%20Micro%206.2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7-160000.1.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-livepatch-6_12_0-160000_32-rt":"7-160000.1.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:23686-1.json"}}],"schema_version":"1.9.0"}