000release-packages:SLES_SAP-release
n/a
kernel-default
- fuse: fix livelock in synchronous file put from fuseblk workers (CVE-2025-40220 bsc#1254520).
- commit 9f0195c

- mm: hugetlb: fix UAF in hugetlb_handle_userfault (CVE-2022-50630
  bsc#1254785).
- commit d39687e

- Delete
  patches.suse/net-mana-Switch-to-page-pool-for-jumbo-frames.patch.
- Delete
  patches.suse/net-mana-Use-page-pool-fragments-for-RX-buffers-inst.patch.
  Drop mana page-pool patches as page-pool isn't new enough (bsc#1255107)
- commit e4c8100

- Update
  patches.suse/0001-net-nsh-Use-correct-mac_offset-to-unwind-gso-skb-in-.patch
  (CVE-2024-36933 bsc#1225832 CVE-2023-54114 bsc#1256150).
- Update
  patches.suse/0250-dm-verity-loadpin-Only-trust-verity-targets-with-enforcement.patch
  (jsc#PED-2765 CVE-2022-50621 bsc#1254786).
- Update
  patches.suse/Bluetooth-ISO-fix-iso_conn-related-locking-and-valid.patch
  (git-fixes CVE-2023-54164 bsc#1256071).
- Update
  patches.suse/Bluetooth-hci_sync-Avoid-use-after-free-in-dbg-for-h-a2bcd2b.patch
  (git-fixes CVE-2023-53828 bsc#1254623).
- Update
  patches.suse/Bluetooth-hci_sync-Avoid-use-after-free-in-dbg-for-h.patch
  (git-fixes CVE-2023-54210 bsc#1255955).
- Update
  patches.suse/Bluetooth-use-hdev-workqueue-when-queuing-hdev-cmd-n.patch
  (jsc#PED-1407 CVE-2022-50833 bsc#1256218).
- Update
  patches.suse/af_unix-Fix-data-races-around-sk-sk_shutdown.patch-e1d09c2c
  (bsc#1226846 CVE-2023-54226 bsc#1255841).
- Update patches.suse/arm64-mm-fix-VA-range-sanity-check.patch
  (git-fixes CVE-2023-53989 bsc#1256302).
- Update
  patches.suse/arm64-set-__exception_irq_entry-with-__irq_entry-as-a-default.patch
  (git-fixes CVE-2023-54322 bsc#1255763).
- Update
  patches.suse/autofs-fix-memory-leak-of-waitqueues-in-autofs_catat.patch
  (git-fixes CVE-2023-54134 bsc#1256106).
- Update
  patches.suse/bcache-fixup-btree_cache_wait-list-damage-f085.patch
  (git-fixes CVE-2023-54293 bsc#1255801).
- Update
  patches.suse/blk-cgroup-dropping-parent-refcount-after-pd_free_fn-is-done.patch
  (bsc#1224573 CVE-2023-54107 bsc#1256359).
- Update
  patches.suse/bnxt_en-fix-memory-leak-in-bnxt_nvm_test.patch
  (jsc#PED-1495 CVE-2022-50723 bsc#1255946).
- Update
  patches.suse/bpf-Prevent-decl_tag-from-being-referenced-in-func_p.patch
  (git-fixes CVE-2022-50883 bsc#1256128).
- Update
  patches.suse/bpf-prevent-decl_tag-from-being-referenced-in-func_p.patch
  (git-fixes CVE-2022-50862 bsc#1256166).
- Update
  patches.suse/devlink-hold-region-lock-when-flushing-snapshots.patch
  (git-fixes CVE-2022-50712 bsc#1255745).
- Update
  patches.suse/dm-don-t-attempt-to-queue-IO-under-RCU-protection-a9ce.patch
  (git-fixes CVE-2023-53860 bsc#1254626).
- Update
  patches.suse/dm-flakey-don-t-corrupt-the-zero-page-f507.patch
  (git-fixes CVE-2023-54317 bsc#1255771).
- Update
  patches.suse/dm-flakey-fix-a-crash-with-invalid-table-line-98db.patch
  (git-fixes CVE-2023-53786 bsc#1254916).
- Update
  patches.suse/drm-amd-display-fix-FCLK-pstate-change-underflow.patch
  (bsc#1206843 CVE-2023-53780 bsc#1254911).
- Update
  patches.suse/drm-amd-display-fix-mapping-to-non-allocated-address.patch
  (bsc#1206843 CVE-2023-53753 bsc#1254910).
- Update
  patches.suse/drm-amd-display-populate-subvp-cmd-info-only-for-the.patch
  (git-fixes CVE-2023-53806 bsc#1254979).
- Update
  patches.suse/drm-amdkfd-Fix-kernel-warning-during-topology-setup.patch
  (git-fixes CVE-2023-54144 bsc#1256088).
- Update patches.suse/drm-amdkfd-fix-potential-kgd_mem-UAFs.patch
  (git-fixes CVE-2023-53816 bsc#1254958).
- Update
  patches.suse/drm-bridge-it6505-Initialize-AUX-channel-in-it6505_i.patch
  (git-fixes CVE-2022-50847 bsc#1256198).
- Update
  patches.suse/drm-fbdev-generic-prohibit-potential-out-of-bounds-a.patch
  (git-fixes CVE-2023-54116 bsc#1256352).
- Update
  patches.suse/drm-i915-Fix-NULL-ptr-deref-by-checking-new_crtc_sta.patch
  (git-fixes CVE-2023-53833 bsc#1254681).
- Update
  patches.suse/drm-msm-a6xx-Fix-kvzalloc-vs-state_kcalloc-usage.patch
  (git-fixes CVE-2022-50867 bsc#1256164).
- Update
  patches.suse/drm-msm-fix-NULL-deref-on-irq-uninstall.patch
  (git-fixes CVE-2023-54138 bsc#1256101).
- Update
  patches.suse/drm-msm-fix-workqueue-leak-on-bind-errors.patch
  (git-fixes CVE-2023-53849 bsc#1254651).
- Update
  patches.suse/drm-mxsfb-Disable-overlay-plane-in-mxsfb_plane_overl.patch
  (git-fixes CVE-2023-53864 bsc#1254754).
- Update
  patches.suse/drm-rockchip-dw_hdmi-cleanup-drm-encoder-during-unbi.patch
  (git-fixes CVE-2023-54047 bsc#1256398).
- Update
  patches.suse/drm-ttm-Don-t-leak-a-resource-on-eviction-error.patch
  (git-fixes CVE-2023-54254 bsc#1255890).
- Update
  patches.suse/drm-vmwgfx-Fix-memory-leak-in-vmw_mksstat_add_ioctl.patch
  (git-fixes CVE-2022-50667 bsc#1254684).
- Update
  patches.suse/erofs-stop-parsing-non-compact-HEAD-index-if-clusterofs-is-invalid.patch
  (git-fixes CVE-2023-54132 bsc#1256103).
- Update
  patches.suse/exfat-use-kvmalloc_array-kvfree-instead-of-kmalloc_array-kfree.patch
  (git-fixes CVE-2023-54194 bsc#1255974).
- Update
  patches.suse/fs-drop-peer-group-ids-under-namespace-lock.patch
  (git-fixes CVE-2023-54128 bsc#1256112).
- Update
  patches.suse/i2c-xiic-xiic_xfer-Fix-runtime-PM-leak-on-error-path.patch
  (git-fixes CVE-2023-54175 bsc#1255998).
- Update
  patches.suse/ice-set-tx_tstamps-when-creating-new-Tx-rings-via-et.patch
  (jsc#PED-376 CVE-2022-50710 bsc#1255561).
- Update
  patches.suse/igb-clean-up-in-all-error-paths-when-enabling-SR-IOV.patch
  (jsc#PED-370 CVE-2023-54070 bsc#1256364).
- Update
  patches.suse/io_uring-fix-memory-leak-when-removing-provided-buff.patch
  (git-fixes CVE-2023-54041 bsc#1255532).
- Update
  patches.suse/io_uring-rw-defer-fsnotify-calls-to-task-context.patch
  (git-fixes CVE-2022-50705 bsc#1255596).
- Update
  patches.suse/iommu-amd-Add-a-length-limitation-for-the-ivrs_acpih.patch
  (git-fixes CVE-2023-54057 bsc#1256381).
- Update
  patches.suse/iommu-sprd-Release-dma-buffer-to-avoid-memory-leak.patch
  (git-fixes CVE-2023-53801 bsc#1254922).
- Update
  patches.suse/md-raid5-cache-fix-a-deadlock-in-r5l_exit_log-a705.patch
  (git-fixes CVE-2023-53848 bsc#1254753).
- Update
  patches.suse/mlx5-fix-skb-leak-while-fifo-resync-and-push.patch
  (jsc#PED-1549 CVE-2023-54238 bsc#1255916).
- Update
  patches.suse/net-mlx5-fix-potential-memory-leak-in-mlx5e_init_rep.patch
  (git-fixes CVE-2023-54106 bsc#1256358).
- Update
  patches.suse/net-mlx5e-Don-t-clone-flow-post-action-attributes-se.patch
  (jsc#PED-1549 CVE-2023-54262 bsc#1255881).
- Update
  patches.suse/net-mlx5e-Move-representor-neigh-cleanup-to-profile-.patch
  (git-fixes CVE-2023-54148 bsc#1256084).
- Update
  patches.suse/net-mlx5e-Use-correct-encap-attribute-during-invalid.patch
  (jsc#PED-1549 CVE-2023-54074 bsc#1256363).
- Update
  patches.suse/net-mlx5e-fix-memory-leak-in-mlx5e_ptp_open.patch
  (git-fixes CVE-2023-54169 bsc#1256050).
- Update
  patches.suse/net-sched-taprio-Limit-TCA_TAPRIO_ATTR_SCHED_CYCLE_T.patch
  (bsc#1226797 CVE-2023-54251 bsc#1255888).
- Update
  patches.suse/net-stream-purge-sk_error_queue-in-sk_stream_kill_qu.patch
  (git-fixes CVE-2022-50838 bsc#1256214).
- Update
  patches.suse/nvme-multipath-fix-lockdep-WARN-due-to-partition-sca.patch
  (git-fixes bsc#1233640 CVE-2024-53093 CVE-2025-68218
  bsc#1255245).
- Update
  patches.suse/platform-x86-amd-pmc-Fix-memory-leak-in-amd_pmc_stb_.patch
  (bsc#1210644 CVE-2023-54320 bsc#1255761).
- Update
  patches.suse/powerpc-pseries-Rework-lppaca_shared_proc-to-avoid-D.patch
  (bsc#1194869 CVE-2023-54267 bsc#1255899).
- Update
  patches.suse/powerpc-pseries-fix-possible-memory-leak-in-ibmebus_.patch
  (bsc#1194869 CVE-2023-54017 bsc#1255605).
- Update
  patches.suse/scsi-mpi3mr-Fix-missing-mrioc-evtack_cmds-initialization.patch
  (git-fixes CVE-2023-54234 bsc#1255920).
- Update
  patches.suse/scsi-pm8001-Fix-running_req-for-internal-abort-commands.patch
  (jsc#PED-1559 CVE-2022-50818 bsc#1256239).
- Update
  patches.suse/scsi-smartpqi-Correct-device-removal-for-multi-actua.patch
  (bsc#1207315 CVE-2022-50768 bsc#1256309).
- Update
  patches.suse/spmi-Add-a-check-for-remove-callback-when-removing-a.patch
  (git-fixes CVE-2023-54044 bsc#1256294).
- Update
  patches.suse/vdpa-vp_vdpa-fix-kfree-a-wrong-pointer-in-vp_vdpa_re.patch
  (git-fixes CVE-2022-50873 bsc#1256144).
- Update patches.suse/vhost-vdpa-fix-an-iotlb-memory-leak.patch
  (jsc#PED-1549 CVE-2022-50738 bsc#1256111).
- Update
  patches.suse/virt-coco-sev-guest-Double-buffer-messages.patch
  (jsc#PED-7167 CVE-2023-53769 bsc#1254601).
- Update
  patches.suse/wifi-ath11k-fix-failed-to-find-the-peer-with-peer_id.patch
  (bsc#1206451 CVE-2022-50665 bsc#1254685).
- Update
  patches.suse/wifi-ath11k-fix-registration-of-6Ghz-only-phy-withou.patch
  (git-fixes CVE-2023-54229 bsc#1255924).
- Update
  patches.suse/wifi-mt76-mt7921e-fix-rmmod-crash-in-driver-reload-t.patch
  (bsc#1209980 CVE-2022-50714 bsc#1255747).
- Update
  patches.suse/wifi-mt76-mt7921s-fix-slab-out-of-bounds-access-in-s.patch
  (bsc#1209980 CVE-2022-50701 bsc#1255635).
- commit 3030cef

- Update
  patches.suse/0016-md-raid5-Remove-unnecessary-bio_put-in-raid5_read_on.patch
  (git-fixes CVE-2022-50752 bsc#1256204).
- Update patches.suse/0045-dm-clone-Fix-UAF-in-clone_dtr.patch
  (git-fixes CVE-2022-50843 bsc#1256203).
- Update
  patches.suse/0047-dm-integrity-Fix-UAF-in-dm_integrity_dtr.patch
  (git-fixes CVE-2022-50889 bsc#1256056).
- Update
  patches.suse/ACPI-EC-Fix-oops-when-removing-custom-query-handlers.patch
  (git-fixes CVE-2023-54244 bsc#1255909).
- Update
  patches.suse/ACPICA-ACPICA-check-null-return-of-ACPI_ALLOCATE_ZER.patch
  (git-fixes CVE-2023-54010 bsc#1256326).
- Update
  patches.suse/ALSA-firewire-digi00x-prevent-potential-use-after-fr.patch
  (git-fixes CVE-2023-54084 bsc#1256223).
- Update
  patches.suse/ALSA-hda-ca0132-fixup-buffer-overrun-at-tuning_ctl_s.patch
  (git-fixes CVE-2023-53788 bsc#1254917).
- Update
  patches.suse/ALSA-line6-fix-stack-overflow-in-line6_midi_transmit.patch
  (git-fixes CVE-2022-50719 bsc#1255939).
- Update
  patches.suse/ALSA-mts64-fix-possible-null-ptr-defer-in-snd_mts64_.patch
  (git-fixes CVE-2022-50773 bsc#1256245).
- Update
  patches.suse/ALSA-pcm-Fix-potential-data-race-at-PCM-memory-alloc.patch
  (git-fixes CVE-2023-54072 bsc#1256291).
- Update
  patches.suse/ARM-OMAP2-Fix-memory-leak-in-realtime_counter_init.patch
  (git-fixes CVE-2022-50872 bsc#1256157).
- Update
  patches.suse/ARM-zynq-Fix-refcount-leak-in-zynq_early_slcr_init.patch
  (git-fixes CVE-2023-53818 bsc#1254714).
- Update
  patches.suse/ASoC-codecs-tx-macro-Fix-for-KASAN-slab-out-of-bound.patch
  (git-fixes CVE-2023-54245 bsc#1255912).
- Update
  patches.suse/ASoC-codecs-wcd-mbhc-v2-fix-resource-leaks-on-compon.patch
  (git-fixes CVE-2023-53842 bsc#1254690).
- Update
  patches.suse/ASoC-da7219-Fix-an-error-handling-path-in-da7219_reg.patch
  (git-fixes CVE-2022-50698 bsc#1255608).
- Update
  patches.suse/ASoC-pxa-fix-null-pointer-dereference-in-filter.patch
  (git-fixes CVE-2022-50866 bsc#1256162).
- Update
  patches.suse/ASoC-soc-compress-Reposition-and-add-pcm_mutex.patch
  (git-fixes CVE-2023-53866 bsc#1255060).
- Update
  patches.suse/Bluetooth-Fix-race-condition-in-hidp_session_thread.patch
  (git-fixes CVE-2023-54120 bsc#1256133).
- Update
  patches.suse/Bluetooth-L2CAP-Fix-potential-user-after-free.patch
  (git-fixes CVE-2023-54214 bsc#1255954).
- Update
  patches.suse/Bluetooth-L2CAP-Fix-use-after-free-in-l2cap_disconne.patch
  (git-fixes CVE-2023-53827 bsc#1255049).
- Update
  patches.suse/FS-JFS-Check-for-read-only-mounted-filesystem-in-txBegin.patch
  (git-fixes CVE-2023-53766 bsc#1255005).
- Update
  patches.suse/HSI-omap_ssi-Fix-refcount-leak-in-ssi_probe.patch
  (git-fixes CVE-2022-50641 bsc#1254614).
- Update
  patches.suse/KVM-Destroy-target-device-if-coalesced-MMIO-unregistration-fails.patch
  (git-fixes CVE-2023-54024 bsc#1255609).
- Update
  patches.suse/KVM-s390-pv-fix-index-value-of-replaced-ASCE.patch
  (git-fixes bsc#1213867 CVE-2023-54092 bsc#1256370).
- Update
  patches.suse/NFSD-Finish-converting-the-NFSv2-GETACL-result-encod.patch
  (git-fixes CVE-2022-50861 bsc#1256177).
- Update
  patches.suse/NFSv4-Fix-a-credential-leak-in-_nfs4_discover_trunki.patch
  (git-fixes CVE-2022-50853 bsc#1256189).
- Update
  patches.suse/PCI-Fix-dropping-valid-root-bus-resources-with-.end-.patch
  (git-fixes CVE-2023-53814 bsc#1254713).
- Update
  patches.suse/PCI-Fix-pci_device_is_present-for-VFs-by-checking-PF.patch
  (git-fixes CVE-2022-50636 bsc#1254645).
- Update
  patches.suse/PCI-Free-released-resource-after-coalescing.patch
  (git-fixes CVE-2023-53743 bsc#1254782).
- Update
  patches.suse/RDMA-bnxt_re-Prevent-handling-any-completions-after-.patch
  (git-fixes CVE-2023-54048 bsc#1256395).
- Update
  patches.suse/RDMA-core-Fix-GID-entry-ref-leak-when-create_ah-fail.patch
  (git-fixes CVE-2023-54003 bsc#1255619).
- Update
  patches.suse/RDMA-efa-Fix-wrong-resources-deallocation-order.patch
  (git-fixes CVE-2023-54201 bsc#1255964).
- Update
  patches.suse/RDMA-hns-fix-memory-leak-in-hns_roce_alloc_mr.patch
  (git-fixes CVE-2022-50662 bsc#1254625).
- Update
  patches.suse/RDMA-irdma-Cap-MSIX-used-to-online-CPUs-1.patch
  (git-fixes CVE-2023-53811 bsc#1254716).
- Update
  patches.suse/RDMA-irdma-Fix-data-race-on-CQP-completion-stats.patch
  (git-fixes CVE-2023-54302 bsc#1255792).
- Update
  patches.suse/RDMA-irdma-Fix-data-race-on-CQP-request-done.patch
  (git-fixes CVE-2023-54292 bsc#1255800).
- Update
  patches.suse/RDMA-irdma-Fix-memory-leak-of-PBLE-objects.patch
  (git-fixes CVE-2023-54055 bsc#1256384).
- Update
  patches.suse/RDMA-mlx4-Prevent-shift-wrapping-in-set_user_sq_size.patch
  (jsc#SLE-19255 CVE-2023-54168 bsc#1256053).
- Update
  patches.suse/RDMA-restrack-Release-MR-restrack-when-delete.patch
  (git-fixes CVE-2022-50822 bsc#1256260).
- Update
  patches.suse/RDMA-rxe-Fix-NULL-ptr-deref-in-rxe_qp_do_cleanup-whe.patch
  (git-fixes CVE-2022-50885 bsc#1256122).
- Update
  patches.suse/RDMA-rxe-Fix-kernel-NULL-pointer-dereference-error.patch
  (git-fixes CVE-2022-50671 bsc#1254711).
- Update
  patches.suse/RDMA-rxe-Fix-the-error-trying-to-register-non-static.patch
  (git-fixes CVE-2023-54028 bsc#1255546).
- Update
  patches.suse/RDMA-siw-Fix-QP-destroy-to-wait-for-all-references-d.patch
  (git-fixes CVE-2022-50666 bsc#1254674).
- Update
  patches.suse/RDMA-siw-Fix-immediate-work-request-flush-to-complet.patch
  (git-fixes CVE-2022-50736 bsc#1256137).
- Update
  patches.suse/RDMA-srpt-Add-a-check-for-valid-mad_agent-pointer.patch
  (git-fixes CVE-2023-54274 bsc#1255905).
- Update
  patches.suse/Reinstate-some-of-swiotlb-rework-fix-info-leak-with-.patch
  (CVE-2022-0854 bsc#1196823 CVE-2022-48853 bsc#1228015).
- Update
  patches.suse/Revert-Bluetooth-btsdio-fix-use-after-free-bug-in-bt.patch
  (git-fixes CVE-2023-54197 bsc#1255969).
- Update
  patches.suse/Revert-IB-isert-Fix-incorrect-release-of-isert-conne.patch
  (git-fixes CVE-2023-54219 bsc#1256231).
- Update
  patches.suse/SMB3-Add-missing-locks-to-protect-deferred-close-file-list.patch
  (git-fixes CVE-2023-53990 bsc#1255560).
- Update
  patches.suse/SUNRPC-Don-t-leak-netobj-memory-when-gss_read_proxy_.patch
  (git-fixes CVE-2022-50821 bsc#1256242).
- Update
  patches.suse/SUNRPC-double-free-xprt_ctxt-while-still-in-use.patch
  (git-fixes CVE-2023-54269 bsc#1255876).
- Update
  patches.suse/USB-gadget-Fix-use-after-free-during-usb-config-swit.patch
  (git-fixes CVE-2022-50704 bsc#1255623).
- Update patches.suse/USB-sisusbvga-Add-endpoint-checks.patch
  (git-fixes CVE-2023-54213 bsc#1255953).
- Update
  patches.suse/USB-usbtmc-Fix-direction-for-0-length-ioctl-control-.patch
  (git-fixes CVE-2023-53761 bsc#1255002).
- Update
  patches.suse/acct-fix-potential-integer-overflow-in-encode_comp_t.patch
  (git-fixes CVE-2022-50749 bsc#1256191).
- Update patches.suse/amba-bus-fix-refcount-leak.patch (git-fixes
  CVE-2023-54230 bsc#1255925).
- Update
  patches.suse/amdgpu-pm-prevent-array-underflow-in-vega20_odn_edit.patch
  (git-fixes CVE-2022-50781 bsc#1256306).
- Update
  patches.suse/amdgpu-validate-offset_in_bo-of-drm_amdgpu_gem_va.patch
  (git-fixes CVE-2023-53819 bsc#1254712).
- Update patches.suse/apparmor-Fix-memleak-in-alloc_ns.patch
  (git-fixes CVE-2022-50860 bsc#1256174).
- Update
  patches.suse/apparmor-fix-a-memleak-in-multi_transaction_new.patch
  (git-fixes CVE-2022-50754 bsc#1256065).
- Update
  patches.suse/arm64-mte-Avoid-setting-PG_mte_tagged-if-no-tags-cle.patch
  (git-fixes CVE-2022-50675 bsc#1254664).
- Update
  patches.suse/audit-fix-possible-soft-lockup-in-__audit_inode_chil.patch
  (git-fixes CVE-2023-54045 bsc#1256285).
- Update
  patches.suse/auxdisplay-hd44780-Fix-potential-memory-leak-in-hd44.patch
  (git-fixes CVE-2022-50830 bsc#1256328).
- Update
  patches.suse/blk-cgroup-Fix-NULL-deref-caused-by-blkg_policy_data-being-installed-before-init.patch
  (bsc#1216062 CVE-2023-54271 bsc#1255902).
- Update
  patches.suse/blk-iocost-fix-divide-by-0-error-in-calc_lcoefs.patch
  (bsc#1214986 CVE-2023-53783 bsc#1254915).
- Update
  patches.suse/block-bfq-Fix-division-by-zero-error-on-zero-wsum.patch
  (bsc#1213653 CVE-2023-54242 bsc#1255919).
- Update
  patches.suse/bpf-Disable-preemption-in-bpf_event_output.patch
  (git-fixes CVE-2023-54173 bsc#1255996).
- Update
  patches.suse/can-j1939-j1939_tp_tx_dat_new-fix-out-of-bounds-memo.patch
  (git-fixes CVE-2023-54039 bsc#1255555).
- Update
  patches.suse/cifs-Fix-lost-destroy-smbd-connection-when-MR-allocate-failed.patch
  (git-fixes CVE-2023-54260 bsc#1255878).
- Update
  patches.suse/cifs-Fix-the-error-length-of-VALIDATE_NEGOTIATE_INFO-message.patch
  (bsc#1193629 CVE-2022-50859 bsc#1256172).
- Update
  patches.suse/cifs-Fix-xid-leak-in-cifs_copy_file_range-.patch
  (bsc#1193629 CVE-2022-50643 bsc#1254631).
- Update
  patches.suse/cifs-Fix-xid-leak-in-cifs_ses_add_channel-.patch
  (bsc#1193629 CVE-2022-50856 bsc#1256182).
- Update
  patches.suse/cifs-fix-potential-race-when-tree-connecting-ipc.patch
  (bsc#1208758 CVE-2023-54280 bsc#1255819).
- Update
  patches.suse/cifs-fix-potential-use-after-free-bugs-in-TCP_Server_Info-hostname.patch
  (bsc#1208758 CVE-2023-53751 bsc#1254986).
- Update
  patches.suse/cifs-fix-session-state-check-in-reconnect-to-avoid-use-after-free-i.patch
  (bsc#1193629 CVE-2023-53794 bsc#1255163).
- Update
  patches.suse/clk-st-Fix-memory-leak-in-st_of_quadfs_setup.patch
  (git-fixes CVE-2022-50776 bsc#1256254).
- Update
  patches.suse/clk-tegra-Fix-refcount-leak-in-tegra114_clock_init.patch
  (git-fixes CVE-2022-50823 bsc#1256333).
- Update
  patches.suse/clk-ti-dra7-atl-Fix-reference-leak-in-of_dra7_atl_cl.patch
  (git-fixes CVE-2022-50644 bsc#1254632).
- Update
  patches.suse/clk-zynqmp-Fix-stack-out-of-bounds-in-strncpy.patch
  (git-fixes CVE-2022-50828 bsc#1256230).
- Update
  patches.suse/configfs-fix-possible-memory-leak-in-configfs_create.patch
  (git-fixes CVE-2022-50751 bsc#1256184).
- Update
  patches.suse/cpufreq-qcom-fix-memory-leak-in-error-path.patch
  (git-fixes CVE-2022-50658 bsc#1254756).
- Update
  patches.suse/crypto-akcipher-default-implementation-for-setting-a.patch
  (git-fixes CVE-2022-50731 bsc#1256049).
- Update patches.suse/crypto-essiv-Handle-EBUSY-correctly.patch
  (git-fixes CVE-2023-54046 bsc#1256295).
- Update
  patches.suse/crypto-hisilicon-zip-fix-mismatch-in-get-set-sgl_sge.patch
  (git-fixes CVE-2022-50814 bsc#1256248).
- Update
  patches.suse/crypto-marvell-octeontx-prevent-integer-overflows.patch
  (git-fixes CVE-2022-50763 bsc#1256317).
- Update patches.suse/crypto-qat-fix-DMA-transfer-direction.patch
  (jsc#PED-1073 CVE-2022-50774 bsc#1256323).
- Update patches.suse/crypto-qat-fix-out-of-bounds-read.patch
  (git-fixes CVE-2023-54325 bsc#1255757).
- Update
  patches.suse/crypto-safexcel-Cleanup-ring-IRQ-workqueues-on-load-.patch
  (git-fixes CVE-2023-54126 bsc#1256118).
- Update
  patches.suse/dmaengine-ptdma-check-for-null-desc-before-calling-p.patch
  (git-fixes CVE-2023-53755 bsc#1254608).
- Update
  patches.suse/dmaengine-sf-pdma-pdma_desc-memory-leak-fix.patch
  (git-fixes CVE-2023-54020 bsc#1255574).
- Update
  patches.suse/driver-core-fix-potential-null-ptr-deref-in-device_a.patch
  (git-fixes CVE-2023-54321 bsc#1255762).
- Update
  patches.suse/drivers-dio-fix-possible-memory-leak-in-dio_init.patch
  (git-fixes CVE-2022-50848 bsc#1256192).
- Update
  patches.suse/drm-Prevent-drm_copy_field-to-attempt-copying-a-NULL.patch
  (git-fixes CVE-2022-50884 bsc#1256127).
- Update
  patches.suse/drm-amd-Fix-an-out-of-bounds-error-in-BIOS-parser.patch
  (git-fixes CVE-2023-54150 bsc#1256086).
- Update
  patches.suse/drm-amdgpu-Fix-PCI-device-refcount-leak-in-amdgpu_at.patch
  (git-fixes CVE-2022-50760 bsc#1255983).
- Update
  patches.suse/drm-amdgpu-Fix-type-of-second-parameter-in-odn_edit_.patch
  (git-fixes CVE-2022-50844 bsc#1256205).
- Update
  patches.suse/drm-amdgpu-fix-pci-device-refcount-leak.patch
  (git-fixes CVE-2022-50718 bsc#1255750).
- Update
  patches.suse/drm-amdgpu-powerplay-psm-Fix-memory-leak-in-power-st.patch
  (git-fixes CVE-2022-50617 bsc#1254780).
- Update
  patches.suse/drm-amdkfd-Fix-memory-leak-in-kfd_mem_dmamap_userptr.patch
  (git-fixes CVE-2022-50619 bsc#1254789).
- Update
  patches.suse/drm-client-Fix-memory-leak-in-drm_client_target_clon.patch
  (git-fixes CVE-2023-54091 bsc#1256274).
- Update
  patches.suse/drm-i915-fix-race-condition-UAF-in-i915_perf_add_con.patch
  (git-fixes CVE-2023-54202 bsc#1255880).
- Update patches.suse/drm-i915-gvt-fix-gvt-debugfs-destroy.patch
  (git-fixes CVE-2023-54098 bsc#1256185).
- Update
  patches.suse/drm-msm-adreno-Fix-null-ptr-access-in-adreno_gpu_cle.patch
  (git-fixes CVE-2023-54199 bsc#1255971).
- Update patches.suse/drm-msm-dpu-Add-check-for-cstate.patch
  (git-fixes CVE-2023-54122 bsc#1256346).
- Update
  patches.suse/drm-msm-dpu-Disallow-unallocated-resources-to-be-ret.patch
  (git-fixes CVE-2023-53991 bsc#1255627).
- Update
  patches.suse/drm-msm-fix-NULL-deref-on-snapshot-tear-down.patch
  (git-fixes CVE-2023-53837 bsc#1254694).
- Update
  patches.suse/drm-msm-hdmi-Add-missing-check-for-alloc_ordered_wor.patch
  (git-fixes CVE-2023-54018 bsc#1255690).
- Update
  patches.suse/drm-panel-panel-sitronix-st7701-Remove-panel-on-DSI-.patch
  (git-fixes CVE-2022-50750 bsc#1256188).
- Update
  patches.suse/drm-ttm-Don-t-leak-a-resource-on-swapout-move-error.patch
  (git-fixes CVE-2023-53844 bsc#1254649).
- Update
  patches.suse/drm-virtio-Check-whether-transferred-2D-BO-is-shmem.patch
  (git-fixes CVE-2022-50842 bsc#1256202).
- Update
  patches.suse/ext4-fix-bug_on-in-__es_tree_search-caused-by-bad-bo.patch
  (bsc#1207620 CVE-2022-50638 bsc#1255469).
- Update
  patches.suse/ext4-fix-bug_on-in-__es_tree_search-caused-by-bad-qu.patch
  (bsc#1213111 CVE-2022-50782 bsc#1256282).
- Update
  patches.suse/ext4-fix-deadlock-due-to-mbcache-entry-corruption.patch
  (bsc#1207653 CVE-2022-50668 bsc#1254763).
- Update
  patches.suse/ext4-fix-deadlock-when-converting-an-inline-director.patch
  (bsc#1213105 CVE-2023-54311 bsc#1255773).
- Update
  patches.suse/ext4-fix-inode-leak-in-ext4_xattr_inode_create-on-an.patch
  (bsc#1207636 CVE-2022-50845 bsc#1256196).
- Update
  patches.suse/ext4-fix-potential-memory-leak-in-ext4_fc_record_mod.patch
  (bsc#1207611 CVE-2022-50622 bsc#1255467).
- Update
  patches.suse/ext4-fix-use-after-free-in-ext4_orphan_cleanup.patch
  (bsc#1207622 CVE-2022-50673 bsc#1255521).
- Update
  patches.suse/ext4-refuse-to-create-ea-block-when-umounted.patch
  (bsc#1213093 CVE-2023-54305 bsc#1255787).
- Update
  patches.suse/ext4-set-goal-start-correctly-in-ext4_mb_normalize_r.patch
  (bsc#1214940 CVE-2023-54021 bsc#1255600).
- Update
  patches.suse/ext4-silence-the-warning-when-evicting-inode-with-di.patch
  (bsc#1206889 CVE-2022-50730 bsc#1256048).
- Update
  patches.suse/ext4-turn-quotas-off-if-mount-failed-after-enabling-.patch
  (bsc#1213110 CVE-2023-54153 bsc#1256081).
- Update
  patches.suse/fbdev-smscufx-Fix-several-use-after-free-bugs.patch
  (git-fixes CVE-2022-50767 bsc#1256426).
- Update patches.suse/fbdev-udlfb-Fix-endpoint-check.patch
  (git-fixes CVE-2023-54277 bsc#1255910).
- Update
  patches.suse/firmware-arm_ffa-Check-if-ffa_driver-remove-is-prese.patch
  (git-fixes CVE-2023-54058 bsc#1256382).
- Update
  patches.suse/firmware-meson_sm-fix-to-avoid-potential-NULL-pointe.patch
  (git-fixes CVE-2023-54304 bsc#1255786).
- Update
  patches.suse/fpga-prevent-integer-overflow-in-dfl_feature_ioctl_s.patch
  (git-fixes CVE-2022-50623 bsc#1254792).
- Update
  patches.suse/fs-jfs-prevent-double-free-in-dbUnmount-after-failed-jfs_remount.patch
  (git-fixes CVE-2023-54127 bsc#1256119).
- Update
  patches.suse/fs-sysv-Null-check-to-prevent-null-ptr-deref-bug.patch
  (git-fixes CVE-2023-54264 bsc#1255872).
- Update
  patches.suse/gpu-lontium-lt9611-Fix-NULL-pointer-dereference-in-l.patch
  (git-fixes CVE-2022-50878 bsc#1256140).
- Update patches.suse/hfs-Fix-OOB-Write-in-hfs_asc2mac.patch
  (git-fixes CVE-2022-50747 bsc#1256432).
- Update
  patches.suse/hfs-fix-missing-hfs_bnode_get-in-__hfs_bnode_create.patch
  (git-fixes CVE-2023-53862 bsc#1254994).
- Update
  patches.suse/hfs-hfsplus-avoid-WARN_ON-for-sanity-check-use-prope.patch
  (git-fixes CVE-2023-54130 bsc#1256114).
- Update patches.suse/hwrng-amd-Fix-PCI-device-refcount-leak.patch
  (git-fixes CVE-2022-50868 bsc#1256386).
- Update
  patches.suse/hwrng-virtio-Fix-race-on-data_avail-and-actual-data.patch
  (git-fixes CVE-2023-53998 bsc#1255578).
- Update
  patches.suse/i2c-cadence-cdns_i2c_master_xfer-Fix-runtime-PM-leak.patch
  (git-fixes CVE-2023-54009 bsc#1255620).
- Update patches.suse/i40e-Fix-DMA-mappings-leak.patch
  (jsc#SLE-18378 CVE-2022-50679 bsc#1254656).
- Update
  patches.suse/iavf-use-internal-state-to-free-traffic-IRQs.patch
  (git-fixes CVE-2023-53850 bsc#1254677).
- Update patches.suse/ice-fix-wrong-fallback-logic-for-FDIR.patch
  (git-fixes CVE-2023-54040 bsc#1255554).
- Update
  patches.suse/igc-Fix-Kernel-Panic-during-ndo_tx_timeout-callback.patch
  (git-fixes CVE-2023-54166 bsc#1256074).
- Update
  patches.suse/iio-adc-ina2xx-avoid-NULL-pointer-dereference-on-OF-.patch
  (git-fixes CVE-2023-53834 bsc#1254660).
- Update
  patches.suse/inotify-Avoid-reporting-event-with-invalid-wd.patch
  (bsc#1213025 CVE-2023-54119 bsc#1256349).
- Update
  patches.suse/ipmi-fix-use-after-free-in-_ipmi_destroy_user.patch
  (git-fixes CVE-2022-50677 bsc#1254692).
- Update
  patches.suse/ipmi-ssif-Fix-a-memory-leak-when-scanning-for-an-ada.patch
  (git-fixes CVE-2023-54064 bsc#1256375).
- Update
  patches.suse/ipu3-imgu-Fix-NULL-pointer-dereference-in-imgu_subde.patch
  (git-fixes CVE-2022-50826 bsc#1256265).
- Update
  patches.suse/ixgbe-Fix-panic-during-XDP_TX-with-64-CPUs.patch
  (jsc#SLE-18384 CVE-2023-54090 bsc#1256269).
- Update
  patches.suse/jbd2-add-miss-release-buffer-head-in-fc_do_one_pass.patch
  (bsc#1207646 CVE-2022-50835 bsc#1256220).
- Update
  patches.suse/jbd2-fix-potential-buffer-head-reference-count-leak.patch
  (bsc#1207644 CVE-2022-50839 bsc#1256206).
- Update
  patches.suse/keys-Fix-linking-a-duplicate-key-to-a-keyring-s-asso.patch
  (bsc#1207088 CVE-2023-54170 bsc#1256045).
- Update
  patches.suse/leds-led-core-Fix-refcount-leak-in-of_led_get.patch
  (git-fixes CVE-2023-54190 bsc#1255979).
- Update
  patches.suse/loop-loop_set_status_from_info-check-before-assignme.patch
  (bsc#1214990 CVE-2023-53820 bsc#1254706).
- Update
  patches.suse/mailbox-zynq-ipi-fix-error-handling-while-device_reg.patch
  (git-fixes CVE-2022-50672 bsc#1254696).
- Update
  patches.suse/md-raid1-stop-mdx_raid1-thread-when-raid1-array-run-failed-b611.patch
  (git-fixes CVE-2022-50715 bsc#1255749).
- Update
  patches.suse/md-raid10-fix-memleak-for-conf-bio_split-c9ac.patch
  (git-fixes CVE-2023-54123 bsc#1256142).
- Update
  patches.suse/md-raid10-fix-memleak-of-md-thread-f0dd.patch
  (git-fixes CVE-2023-54294 bsc#1255802).
- Update
  patches.suse/md-raid10-fix-null-ptr-deref-in-raid10_sync_request-a405.patch
  (git-fixes CVE-2023-53832 bsc#1254671).
- Update
  patches.suse/media-av7110-prevent-underflow-in-write_ts_to_decode.patch
  (git-fixes CVE-2023-54284 bsc#1255808).
- Update
  patches.suse/media-camss-Clean-up-received-buffers-on-failed-star.patch
  (git-fixes CVE-2022-50757 bsc#1256215).
- Update
  patches.suse/media-dvb-frontends-fix-leak-of-memory-fw.patch
  (git-fixes CVE-2022-50664 bsc#1254974).
- Update
  patches.suse/media-dvb-usb-fix-memory-leak-in-dvb_usb_adapter_ini.patch
  (git-fixes CVE-2022-50626 bsc#1254562).
- Update
  patches.suse/media-dvb-usb-m920x-Fix-a-potential-memory-leak-in-m.patch
  (git-fixes CVE-2023-54266 bsc#1255875).
- Update
  patches.suse/media-ipu3-imgu-Fix-NULL-pointer-dereference-in-acti.patch
  (git-fixes CVE-2022-50722 bsc#1255877).
- Update patches.suse/media-max9286-Free-control-handler.patch
  (git-fixes CVE-2023-54078 bsc#1256337).
- Update
  patches.suse/media-ov5675-Fix-memleak-in-ov5675_init_controls.patch
  (git-fixes CVE-2023-54208 bsc#1255962).
- Update
  patches.suse/media-usb-siano-Fix-use-after-free-bugs-caused-by-do.patch
  (git-fixes CVE-2023-54270 bsc#1255901).
- Update
  patches.suse/media-uvcvideo-Fix-memory-leak-in-uvc_gpio_parse.patch
  (git-fixes CVE-2022-50882 bsc#1256126).
- Update
  patches.suse/media-v4l2-core-Fix-a-potential-resource-leak-in-v4l.patch
  (git-fixes CVE-2023-54183 bsc#1255990).
- Update
  patches.suse/misc-ocxl-fix-possible-name-leak-in-ocxl_file_regist.patch
  (git-fixes CVE-2022-50669 bsc#1254710).
- Update
  patches.suse/misc-ocxl-fix-possible-refcount-leak-in-afu_ioctl.patch
  (git-fixes CVE-2022-50742 bsc#1256143).
- Update
  patches.suse/misc-pci_endpoint_test-Fix-pci_endpoint_test_-copy-w.patch
  (git-fixes CVE-2022-50614 bsc#1254578).
- Update
  patches.suse/misc-pci_endpoint_test-Free-IRQs-before-removing-the.patch
  (git-fixes CVE-2023-54326 bsc#1255758).
- Update
  patches.suse/mmc-alcor-fix-return-value-check-of-mmc_add_host.patch
  (git-fixes CVE-2022-50858 bsc#1256391).
- Update
  patches.suse/mmc-atmel-mci-fix-return-value-check-of-mmc_add_host.patch
  (git-fixes CVE-2022-50653 bsc#1254729).
- Update
  patches.suse/mmc-core-Fix-kernel-panic-when-remove-non-standard-S.patch
  (git-fixes CVE-2022-50640 bsc#1254686).
- Update
  patches.suse/mmc-meson-gx-fix-return-value-check-of-mmc_add_host.patch
  (git-fixes CVE-2022-50618 bsc#1254788).
- Update
  patches.suse/mmc-mxcmmc-fix-return-value-check-of-mmc_add_host.patch
  (git-fixes CVE-2022-50769 bsc#1256383).
- Update
  patches.suse/mmc-omap_hsmmc-fix-return-value-check-of-mmc_add_hos.patch
  (git-fixes CVE-2022-50670 bsc#1254699).
- Update
  patches.suse/mmc-toshsd-fix-return-value-check-of-mmc_add_host.patch
  (git-fixes CVE-2022-50886 bsc#1256124).
- Update
  patches.suse/mmc-via-sdmmc-fix-return-value-check-of-mmc_add_host.patch
  (git-fixes CVE-2022-50846 bsc#1256200).
- Update
  patches.suse/mtd-rawnand-fsl_upm-Fix-an-off-by-one-test-in-fun_ex.patch
  (git-fixes CVE-2023-54104 bsc#1256145).
- Update
  patches.suse/mtd-spi-nor-Fix-shift-out-of-bounds-in-spi_nor_set_e.patch
  (git-fixes CVE-2023-54295 bsc#1255797).
- Update
  patches.suse/net-do-not-allow-gso_size-to-be-set-to-GSO_BY_FRAGS.patch
  (git-fixes CVE-2023-54051 bsc#1256394).
- Update
  patches.suse/net-mlx5-Devcom-fix-error-flow-in-mlx5_devcom_regist.patch
  (jsc#SLE-19253 CVE-2023-54015 bsc#1255562).
- Update
  patches.suse/net-mlx5-Fix-possible-use-after-free-in-async-comman.patch
  (jsc#SLE-19253 CVE-2022-50726 bsc#1256040).
- Update
  patches.suse/net-net_failover-fix-txq-exceeding-warning.patch
  (git-fixes CVE-2023-54236 bsc#1255922).
- Update
  patches.suse/net-phy-xgmiitorgmii-Fix-refcount-leak-in-xgmiitorgm.patch
  (git-fixes CVE-2022-50777 bsc#1256320).
- Update patches.suse/nfc-Fix-potential-resource-leaks.patch
  (git-fixes CVE-2022-50834 bsc#1256219).
- Update
  patches.suse/nfc-pn533-Clear-nfc_target-before-being-used.patch
  (git-fixes CVE-2022-50656 bsc#1254745).
- Update
  patches.suse/nilfs2-fix-WARNING-in-mark_buffer_dirty-due-to-disca.patch
  (git-fixes CVE-2023-54140 bsc#1256093).
- Update
  patches.suse/nilfs2-fix-infinite-loop-in-nilfs_mdt_get_block.patch
  (git-fixes CVE-2023-53845 bsc#1255007).
- Update
  patches.suse/nilfs2-fix-shift-out-of-bounds-due-to-too-large-expo.patch
  (git-fixes CVE-2022-50864 bsc#1256167).
- Update
  patches.suse/nilfs2-fix-use-after-free-bug-of-nilfs_root-in-nilfs.patch
  (git-fixes CVE-2023-53804 bsc#1254920).
- Update
  patches.suse/nvme-core-fix-memory-leak-in-dhchap_ctrl_secret.patch
  (git-fixes CVE-2023-53792 bsc#1254743).
- Update
  patches.suse/nvme-core-fix-memory-leak-in-dhchap_secret_store.patch
  (git-fixes CVE-2023-53852 bsc#1254653).
- Update patches.suse/nvme-pci-fix-mempool-alloc-size.patch
  (git-fixes CVE-2022-50756 bsc#1256216).
- Update
  patches.suse/nvmet-tcp-add-bounds-check-on-Transfer-Tag.patch
  (git-fixes CVE-2022-50717 bsc#1255844).
- Update
  patches.suse/ocfs2-fix-memory-leak-in-ocfs2_mount_volume.patch
  (bsc#1207652 CVE-2022-50770 bsc#1256221).
- Update
  patches.suse/opp-Fix-use-after-free-in-lazy_opp_tables-after-prob.patch
  (git-fixes CVE-2023-54026 bsc#1255549).
- Update
  patches.suse/orangefs-Fix-kmemleak-in-orangefs_prepare_debugfs_help_string.patch
  (git-fixes CVE-2022-50779 bsc#1256423).
- Update
  patches.suse/pcmcia-rsrc_nonstatic-Fix-memory-leak-in-nonstatic_r.patch
  (git-fixes CVE-2023-54115 bsc#1256121).
- Update
  patches.suse/perf-x86-intel-uncore-Fix-reference-count-leak-in-snr_uncore_mmio_map.patch
  (git fixes CVE-2022-50615 bsc#1254580).
- Update
  patches.suse/phy-tegra-xusb-Clear-the-driver-reference-in-usb-phy.patch
  (git-fixes CVE-2023-54083 bsc#1256368).
- Update
  patches.suse/pinctrl-at91-pio4-check-return-value-of-devm_kasprin.patch
  (git-fixes CVE-2023-54319 bsc#1255760).
- Update
  patches.suse/pinctrl-rockchip-Fix-refcount-leak-in-rockchip_pinct.patch
  (git-fixes CVE-2023-54111 bsc#1256149).
- Update
  patches.suse/pinctrl-stm32-Fix-refcount-leak-in-stm32_pctrl_get_i.patch
  (git-fixes CVE-2023-54205 bsc#1255968).
- Update
  patches.suse/platform-x86-think-lmi-Fix-memory-leak-when-showing-.patch
  (git-fixes CVE-2023-53830 bsc#1254658).
- Update
  patches.suse/platform-x86-think-lmi-Fix-memory-leaks-when-parsing.patch
  (git-fixes CVE-2023-54252 bsc#1255889).
- Update
  patches.suse/power-supply-adp5061-fix-out-of-bounds-read-in-adp50.patch
  (git-fixes CVE-2022-50649 bsc#1254775).
- Update
  patches.suse/power-supply-bq27xxx-Fix-poll_interval-handling-and-.patch
  (git-fixes CVE-2023-54079 bsc#1256338).
- Update patches.suse/powerpc-64s-Fix-VAS-mm-use-after-free.patch
  (bsc#1194869 CVE-2023-54042 bsc#1255702).
- Update
  patches.suse/powerpc-iommu-Fix-notifiers-being-shared-by-PCI-and-.patch
  (bsc#1065729 CVE-2023-54095 bsc#1256271).
- Update
  patches.suse/powerpc-kprobes-Fix-null-pointer-reference-in-arch_p.patch
  (jsc#SLE-13847 git-fixes CVE-2022-50635 bsc#1254592).
- Update
  patches.suse/powerpc-powernv-sriov-perform-null-check-on-iov-befo.patch
  (bsc#1194869 CVE-2023-54315 bsc#1255769).
- Update
  patches.suse/powerpc-rtas-avoid-device-tree-lookups-in-rtas_os_te.patch
  (bsc#1065729 CVE-2022-50870 bsc#1256154).
- Update
  patches.suse/pstore-Avoid-kcore-oops-by-vmap-ing-with-VM_IOREMAP.patch
  (git-fixes CVE-2022-50849 bsc#1256193).
- Update patches.suse/pstore-ram-Add-check-for-kstrdup.patch
  (git-fixes CVE-2023-54189 bsc#1255978).
- Update patches.suse/quota-fix-warning-in-dqgrab.patch
  (bsc#1214962 CVE-2023-54177 bsc#1255993).
- Update
  patches.suse/regulator-core-fix-resource-leak-in-regulator_regist.patch
  (git-fixes CVE-2022-50724 bsc#1255950).
- Update
  patches.suse/regulator-core-fix-unbalanced-of-node-refcount-in-re.patch
  (git-fixes CVE-2022-50887 bsc#1256125).
- Update patches.suse/regulator-stm32-pwr-fix-of_iomap-leak.patch
  (git-fixes CVE-2023-54097 bsc#1256179).
- Update
  patches.suse/remoteproc-qcom-q6v5-Fix-potential-null-ptr-deref-in.patch
  (git-fixes CVE-2022-50888 bsc#1256057).
- Update
  patches.suse/remoteproc-sysmon-fix-memory-leak-in-qcom_add_sysmon.patch
  (git-fixes CVE-2022-50836 bsc#1256211).
- Update patches.suse/rpmsg-glink-Add-check-for-kstrdup.patch
  (git-fixes CVE-2023-54049 bsc#1256396).
- Update
  patches.suse/s390-lcs-Fix-return-type-of-lcs_start_xmit.patch
  (git-fixes bsc#1211690 CVE-2022-50728 bsc#1256046).
- Update
  patches.suse/s390-vfio-ap-fix-memory-leak-in-vfio_ap-device-drive.patch
  (git-fixes CVE-2023-53746 bsc#1254617).
- Update
  patches.suse/sched-psi-use-kernfs-polling-functions-for-PSI-trigger-polling.patch
  (bsc#1209799 CVE-2023-54019 bsc#1255636).
- Update
  patches.suse/scsi-efct-Fix-possible-memleak-in-efct_device_init.patch
  (git-fixes CVE-2022-50727 bsc#1256042).
- Update
  patches.suse/scsi-hpsa-Fix-possible-memory-leak-in-hpsa_init_one.patch
  (git-fixes CVE-2022-50646 bsc#1254634).
- Update patches.suse/scsi-ipr-Fix-WARNING-in-ipr_init.patch
  (git-fixes CVE-2022-50850 bsc#1256194).
- Update
  patches.suse/scsi-lpfc-Fix-hard-lockup-when-reading-the-rx_monito.patch
  (bsc#1204957 CVE-2022-50744 bsc#1256165).
- Update
  patches.suse/scsi-lpfc-Fix-ioremap-issues-in-lpfc_sli4_pci_mem_se.patch
  (bsc#1210943 CVE-2023-53754 bsc#1254609).
- Update
  patches.suse/scsi-lpfc-Fix-memory-leak-in-lpfc_create_port.patch
  (bsc#1204957 CVE-2022-50827 bsc#1256344).
- Update
  patches.suse/scsi-lpfc-Prevent-lpfc_debugfs_lockstat_write-buffer.patch
  (bsc#1210943 CVE-2023-54102 bsc#1256173).
- Update
  patches.suse/scsi-qedf-Fix-NULL-dereference-in-error-handling.patch
  (git-fixes CVE-2023-54289 bsc#1255806).
- Update
  patches.suse/scsi-qedi-Fix-use-after-free-bug-in-qedi_remove.patch
  (git-fixes CVE-2023-54100 bsc#1256152).
- Update
  patches.suse/scsi-qla2xxx-Array-index-may-go-out-of-bound.patch
  (bsc#1213747 CVE-2023-54179 bsc#1255994).
- Update
  patches.suse/scsi-qla2xxx-Check-valid-rport-returned-by-fc_bsg_to.patch
  (bsc#1213747 CVE-2023-54014 bsc#1256300).
- Update
  patches.suse/scsi-qla2xxx-fix-dma-api-call-trace-on-nvme-ls-requests.patch
  (bsc#1208570 CVE-2023-54108 bsc#1256355).
- Update
  patches.suse/scsi-ses-Fix-slab-out-of-bounds-in-ses_enclosure_data_process.patch
  (git-fixes CVE-2023-53803 bsc#1255165).
- Update
  patches.suse/scsi-snic-Fix-possible-UAF-in-snic_tgt_create.patch
  (git-fixes CVE-2022-50840 bsc#1256208).
- Update
  patches.suse/seccomp-Move-copy_seccomp-to-no-failure-path.patch
  (bsc#1210817 CVE-2022-50661 bsc#1254759).
- Update
  patches.suse/selinux-enable-use-of-both-GFP_KERNEL-and-GFP_ATOMIC.patch
  (git-fixes CVE-2022-50699 bsc#1255582).
- Update
  patches.suse/serial-8250_bcm7271-fix-leak-in-brcmuart_probe.patch
  (git-fixes CVE-2023-54301 bsc#1255791).
- Update
  patches.suse/serial-amba-pl011-avoid-SBSA-UART-accessing-DMACR-re.patch
  (git-fixes CVE-2022-50625 bsc#1254559).
- Update
  patches.suse/serial-sc16is7xx-setup-GPIO-controller-later-in-prob.patch
  (git-fixes CVE-2023-54118 bsc#1256131).
- Update patches.suse/serial-sprd-Fix-DMA-buffer-leak-issue.patch
  (git-fixes CVE-2023-54136 bsc#1256099).
- Update
  patches.suse/sfc-fix-crash-when-reading-stats-while-NIC-is-resett.patch
  (git-fixes CVE-2023-54156 bsc#1255704).
- Update patches.suse/smb-client-fix-missed-ses-refcounting.patch
  (git-fixes CVE-2023-54076 bsc#1256335).
- Update
  patches.suse/soc-qcom-smsm-Fix-refcount-leak-bugs-in-qcom_smsm_pr.patch
  (git-fixes CVE-2022-50703 bsc#1255607).
- Update
  patches.suse/soc-ti-pm33xx-Fix-refcount-leak-in-am33xx_pm_probe.patch
  (git-fixes CVE-2023-53744 bsc#1254781).
- Update patches.suse/soundwire-fix-enumeration-completion.patch
  (git-fixes CVE-2023-54096 bsc#1256178).
- Update
  patches.suse/staging-media-tegra-video-fix-device_node-use-after-.patch
  (git-fixes CVE-2022-50745 bsc#1256158).
- Update
  patches.suse/staging-r8712-Fix-memory-leak-in-_r8712_init_xmit_pr.patch
  (git-fixes CVE-2023-54001 bsc#1255628).
- Update
  patches.suse/staging-rtl8192u-Fix-use-after-free-in-ieee80211_rx.patch
  (git-fixes CVE-2022-50732 bsc#1256063).
- Update
  patches.suse/staging-vt6655-fix-potential-memory-leak.patch
  (git-fixes CVE-2022-50758 bsc#1256207).
- Update
  patches.suse/thermal-intel-quark_dts-fix-error-pointer-dereferenc.patch
  (git-fixes CVE-2023-54298 bsc#1255796).
- Update
  patches.suse/tpm-tpm_tis-Add-the-missed-acpi_put_table-to-fix-mem.patch
  (git-fixes CVE-2022-50824 bsc#1256334).
- Update
  patches.suse/tpm-tpm_vtpm_proxy-fix-a-race-condition-in-dev-vtpmx.patch
  (git-fixes CVE-2023-54309 bsc#1255780).
- Update
  patches.suse/tracing-Fix-memory-leak-of-iter-temp-when-reading-trace_pipe.patch
  (git-fixes CVE-2023-54171 bsc#1256034).
- Update
  patches.suse/tracing-Fix-warning-in-trace_buffered_event_disable.patch
  (git-fixes CVE-2023-54211 bsc#1255843).
- Update
  patches.suse/tty-fix-out-of-bounds-access-in-tty_driver_lookup_tt.patch
  (git-fixes CVE-2023-54198 bsc#1255970).
- Update
  patches.suse/tty-serial-imx-disable-Ageing-Timer-interrupt-reques.patch
  (git-fixes CVE-2023-54287 bsc#1255804).
- Update
  patches.suse/tty-serial-samsung_tty-Fix-a-memory-leak-in-s3c24xx_.patch
  (git-fixes CVE-2023-53858 bsc#1254704).
- Update
  patches.suse/ubifs-Fix-memleak-when-insert_old_idx-failed.patch
  (git-fixes CVE-2023-54050 bsc#1256397).
- Update patches.suse/udf-Avoid-double-brelse-in-udf_rename.patch
  (bsc#1213032 CVE-2022-50755 bsc#1256199).
- Update
  patches.suse/udmabuf-Set-ubuf-sg-NULL-if-the-creation-of-sg-table.patch
  (git-fixes CVE-2022-50819 bsc#1256241).
- Update
  patches.suse/uio-uio_dmem_genirq-Fix-missing-unlock-in-irq-config.patch
  (git-fixes CVE-2022-50652 bsc#1254728).
- Update
  patches.suse/usb-dwc3-qcom-Fix-memory-leak-in-dwc3_qcom_interconn.patch
  (git-fixes CVE-2022-50633 bsc#1254644).
- Update
  patches.suse/usb-early-xhci-dbc-Fix-a-potential-out-of-bound-memo.patch
  (git-fixes CVE-2023-53840 bsc#1254709).
- Update
  patches.suse/usb-idmouse-fix-an-uninit-value-in-idmouse_open.patch
  (git-fixes CVE-2022-50733 bsc#1256064).
- Update
  patches.suse/usb-mtu3-fix-kernel-panic-at-qmu-transfer-done-irq-h.patch
  (git-fixes CVE-2023-54159 bsc#1255697).
- Update
  patches.suse/usb-musb-Fix-musb_gadget.c-rxstate-overflow-bug.patch
  (git-fixes CVE-2022-50876 bsc#1256136).
- Update
  patches.suse/usb-rndis_host-Secure-rndis_query-check-against-int-.patch
  (CVE-2023-23559 bsc#1207051 CVE-2023-54110 bsc#1256353).
- Update
  patches.suse/usb-storage-alauda-Fix-uninit-value-in-alauda_check_.patch
  (git-fixes CVE-2023-53847 bsc#1254698).
- Update
  patches.suse/usb-typec-altmodes-displayport-fix-pin_assignment_sh.patch
  (git-fixes CVE-2023-54186 bsc#1255985).
- Update
  patches.suse/usb-typec-bus-verify-partner-exists-in-typec_altmode.patch
  (git-fixes CVE-2023-54299 bsc#1255789).
- Update
  patches.suse/vc_screen-reload-load-of-struct-vc_data-pointer-in-v.patch
  (git-fixes CVE-2023-53747 bsc#1254572).
- Update
  patches.suse/vdpa_sim-fix-possible-memory-leak-in-vdpasim_net_ini.patch
  (git-fixes CVE-2022-50702 bsc#1255624).
- Update
  patches.suse/vhost_vdpa-fix-the-crash-in-unmap-a-large-memory.patch
  (git-fixes CVE-2022-50851 bsc#1256186).
- Update
  patches.suse/vmci_host-fix-a-race-condition-in-vmci_host_poll-cau.patch
  (git-fixes CVE-2023-54007 bsc#1255626).
- Update
  patches.suse/wifi-ar5523-Fix-use-after-free-on-ar5523_cmd-timed-o.patch
  (git-fixes CVE-2022-50716 bsc#1255839).
- Update
  patches.suse/wifi-ath10k-add-peer-map-clean-up-for-peer-delete-in.patch
  (git-fixes CVE-2022-50880 bsc#1256132).
- Update
  patches.suse/wifi-ath11k-Fix-memory-leak-in-ath11k_peer_rx_frag_s.patch
  (git-fixes CVE-2023-54275 bsc#1255906).
- Update
  patches.suse/wifi-ath9k-Fix-use-after-free-in-ath9k_hif_usb_disco.patch
  (git-fixes CVE-2022-50881 bsc#1256130).
- Update
  patches.suse/wifi-ath9k-avoid-referencing-uninit-memory-in-ath9k_.patch
  (git-fixes CVE-2023-54300 bsc#1255790).
- Update
  patches.suse/wifi-ath9k-avoid-uninit-memory-read-in-ath9k_htc_rx_.patch
  (git-fixes CVE-2022-50709 bsc#1255565).
- Update
  patches.suse/wifi-ath9k-hif_usb-Fix-use-after-free-in-ath9k_hif_u.patch
  (git-fixes CVE-2022-50829 bsc#1256235).
- Update
  patches.suse/wifi-ath9k-hif_usb-fix-memory-leak-of-urbs-in-ath9k_.patch
  (git-fixes CVE-2022-50740 bsc#1256155).
- Update
  patches.suse/wifi-ath9k-htc_hst-free-skb-in-ath9k_htc_rx_msg-if-t.patch
  (git-fixes CVE-2023-53802 bsc#1254725).
- Update
  patches.suse/wifi-brcmfmac-fix-invalid-address-access-when-enabli.patch
  (git-fixes CVE-2022-50678 bsc#1254902).
- Update
  patches.suse/wifi-ipw2200-fix-memory-leak-in-ipw_wdev_init.patch
  (git-fixes CVE-2022-50660 bsc#1254676).
- Update
  patches.suse/wifi-iwlwifi-dvm-Fix-memcpy-detected-field-spanning-.patch
  (git-fixes CVE-2023-54286 bsc#1255803).
- Update
  patches.suse/wifi-iwlwifi-pcie-fix-possible-NULL-pointer-derefere.patch
  (git-fixes CVE-2023-54053 bsc#1256388).
- Update
  patches.suse/wifi-mt76-do-not-run-mt76u_status_worker-if-the-devi.patch
  (git-fixes CVE-2022-50735 bsc#1256141).
- Update
  patches.suse/wifi-mwifiex-fix-memory-leak-in-mwifiex_histogram_re.patch
  (git-fixes CVE-2023-53808 bsc#1254723).
- Update
  patches.suse/wifi-rsi-Do-not-configure-WoWlan-in-shutdown-hook-if.patch
  (git-fixes CVE-2023-54025 bsc#1255558).
- Update
  patches.suse/wifi-rsi-Fix-memory-leak-in-rsi_coex_attach.patch
  (git-fixes CVE-2022-50629 bsc#1254783).
- Update
  patches.suse/wifi-rt2x00-Fix-memory-leak-when-handling-surveys.patch
  (git-fixes CVE-2023-54131 bsc#1256115).
- Update
  patches.suse/wifi-rtl8xxxu-Fix-memory-leaks-with-RTL8723BU-RTL819.patch
  (git-fixes CVE-2023-54036 bsc#1255528).
- Update
  patches.suse/wifi-wilc1000-fix-potential-memory-leak-in-wilc_mac_.patch
  (git-fixes CVE-2022-50832 bsc#1256228).
- Update
  patches.suse/x86-kexec-Fix-double-free-of-elf-header-buffer.patch
  (bsc#1205567 CVE-2023-54146 bsc#1256091).
- Update
  patches.suse/x86-sev-Make-enc_dec_hypercall-accept-a-size-instead-of-npages
  (bsc#1214635 CVE-2023-53996 bsc#1255618).
- Update
  patches.suse/x86-xen-Fix-memory-leak-in-xen_init_lock_cpu.patch
  (git-fixes CVE-2022-50761 bsc#1256062).
- Update
  patches.suse/xfrm-also-call-xfrm_state_delete_tunnel-at-destroy-time-fo.patch
  (CVE-2025-40215 bsc#1254959 CVE-2025-40256 bsc#1254851).
- Update
  patches.suse/xhci-dbc-Fix-memory-leak-in-xhci_alloc_dbc.patch
  (git-fixes CVE-2022-50809 bsc#1256250).
- commit 642af3d

- Bluetooth: hci_core: Fix not checking skb length on
  hci_acldata_packet (bsc#1235038 CVE-2024-56590).
- commit e8f2c42

- kabi: hide dst_entry::dev_rcu (CVE-2025-40139 bsc#1253409).
- commit f2547af

- smc: Use __sk_dst_get() and dst_dev_rcu() in in
  smc_clc_prfx_set() (CVE-2025-40139 bsc#1253409).
- net: dst: introduce dst->dev_rcu (CVE-2025-40139 bsc#1253409).
- net: Add locking to protect skb->dev access in ip_output
  (CVE-2025-40139 bsc#1253409).
- ipv6: ip6_mc_input() and ip6_mr_input() cleanups (CVE-2025-40139
  bsc#1253409).
- ipv6: adopt skb_dst_dev() and skb_dst_dev_net[_rcu]() helpers
  (CVE-2025-40139 bsc#1253409).
- ipv6: adopt dst_dev() helper (CVE-2025-40139 bsc#1253409).
- ipv4: adopt dst_dev, skb_dst_dev and skb_dst_dev_net[_rcu]
  (CVE-2025-40139 bsc#1253409).
- net: dst: add four helpers to annotate data-races around
  dst->dev (CVE-2025-40139 bsc#1253409).
- net: dst: annotate data-races around dst->output (CVE-2025-40139
  bsc#1253409).
- net: dst: annotate data-races around dst->input (CVE-2025-40139
  bsc#1253409).
- net: dst: annotate data-races around dst->lastuse
  (CVE-2025-40139 bsc#1253409).
- net: dst: annotate data-races around dst->expires
  (CVE-2025-40139 bsc#1253409).
- net: dst: annotate data-races around dst->obsolete
  (CVE-2025-40139 bsc#1253409).
- net: ipv4: ipmr: ipmr_queue_xmit(): Drop local variable `dev'
  (CVE-2025-40139 bsc#1253409).
- net: gro: convert four dev_net() calls (CVE-2025-40139
  bsc#1253409).
- tcp: convert to dev_net_rcu() (CVE-2025-40139 bsc#1253409).
- ndisc: ndisc_send_redirect() cleanup (CVE-2025-40139
  bsc#1253409).
- ndisc: extend RCU protection in ndisc_send_skb() (CVE-2025-40139
  bsc#1253409).
- ndisc: use RCU protection in ndisc_alloc_skb() (CVE-2025-40139
  bsc#1253409).
- ndisc: ndisc_send_redirect() must use dev_get_by_index_rcu()
  (CVE-2025-40139 bsc#1253409).
- ipv6: Use RCU in ip6_input() (CVE-2025-40139 bsc#1253409).
- ipv6: icmp: convert to dev_net_rcu() (CVE-2025-40139
  bsc#1253409).
- ipv6: use RCU protection in ip6_default_advmss() (CVE-2025-40139
  bsc#1253409).
- flow_dissector: use RCU protection to fetch dev_net()
  (CVE-2025-40139 bsc#1253409).
- ipv4: icmp: convert to dev_net_rcu() (CVE-2025-40139
  bsc#1253409).
- ipv4: use RCU protection in __ip_rt_update_pmtu()
  (CVE-2025-40139 bsc#1253409).
- ipv4: use RCU protection in inet_select_addr() (CVE-2025-40139
  bsc#1253409).
- ipv4: use RCU protection in rt_is_expired() (CVE-2025-40139
  bsc#1253409).
- ipv4: use RCU protection in ip_dst_mtu_maybe_forward()
  (CVE-2025-40139 bsc#1253409).
- ipv4: add RCU protection to ip4_dst_hoplimit() (CVE-2025-40139
  bsc#1253409).
- net: add dev_net_rcu() helper (CVE-2025-40139 bsc#1253409).
- net: dst_cache: annotate data-races around dst_cache->reset_ts
  (CVE-2025-40139 bsc#1253409).
- kabi: hide RCU annotation of possible_net_t::net (CVE-2025-40139
  bsc#1253409).
- net: treat possible_net_t net pointer as an RCU one and add
  read_pnet_rcu() (CVE-2025-40139 bsc#1253409).
- ip: Fix data-races around sysctl_ip_fwd_use_pmtu (CVE-2025-40139
  bsc#1253409).
- ip: Fix data-races around sysctl_ip_default_ttl (CVE-2025-40139
  bsc#1253409).
- ipv6: ip6_skb_dst_mtu() cleanups (CVE-2025-40139 bsc#1253409).
- net: ipv4: Consolidate ipv4_mtu and ip_dst_mtu_maybe_forward
  (CVE-2025-40139 bsc#1253409).
- commit 367f8ae

- gpu: host1x: Fix race in syncpt alloc/free (CVE-2025-68732
  bsc#1255688).
- commit 3f5a58d

- wifi: ath10k: Delay the unmapping of the buffer (CVE-2022-50700
  bsc#1255576).
- commit 56293cd

- supported.conf: support tcp_dctcp module (jsc#PED-8111)
- commit 03d25fd

- drm/vmwgfx: Validate command header size against (bsc#1254894 CVE-2025-40277)
- commit c264bd5

- sctp: Prevent TOCTOU out-of-bounds write (CVE-2025-40331
  bsc#1254615).
- commit 37e9b8d

- ocfs2: clear extent cache after moving/defragmenting extents
  (CVE-2025-40233 bsc#1254813).
- commit d895b6c

- padata: Honor the caller's alignment in case of chunk_size 0
  (bsc#1237563).
- commit ebd18f3

- tipc: Fix use-after-free in tipc_mon_reinit_self()
  (CVE-2025-40280 bsc#1254847).
- commit a430c68

- xfrm: also call xfrm_state_delete_tunnel at destroy time for
  states that were never added (CVE-2025-40215 bsc#1254959).
- commit 0f80be9

- xfrm: delete x->tunnel as we delete x (CVE-2025-40215
  bsc#1254959).
- commit b6a5e5b

- kABI: xfrm: delete x->tunnel as we delete x (bsc#1254959
  CVE-2025-40215).
- commit 74c6bab

- supported.conf: Drop cpu5_wdt
  We no longer build this driver.
- commit 5a22004

- mptcp: fix race condition in mptcp_schedule_work()
  (CVE-2025-40258 bsc#1254843).
- commit 6856d1e

- futex: Prevent use-after-free during requeue-PI (CVE-2025-39977
  bsc#1252046).
- commit 503d82a

- x86/tdx: Emit warning if IRQs are enabled during HLT #VE handling (git-fixes).
- commit 8ddcb6e

- x86/paravirt: Move halt paravirt calls under CONFIG_PARAVIRT (git-fixes).
- commit f603a11

- smc: Fix use-after-free in tcp_write_timer_handler()
  (CVE-2023-53781 bsc#1254751).
- commit 525be06

- platform/x86/intel-uncore-freq: Fail module load when plat_info
  is NULL (git-fixes).
- commit 38f497e

- ACPI: property: Do not pass NULL handles to acpi_attach_data()
  (git-fixes).
- commit 24f9c68

- ACPI: property: Fix buffer properties extraction for subnodes
  (git-fixes).
- commit faa3e74

- ACPI/IORT: Fix memory leak in iort_rmr_alloc_sids() (git-fixes).
- commit ef79766

- ACPI: PRM: Remove unnecessary strict handler address checks
  (git-fixes).
- commit d86efc6

- drivers: base: cacheinfo: Fix shared_cpu_map changes in event
  of CPU hotplug (CVE-2023-53254 bsc#1249871).
- cacheinfo: Fix shared_cpu_map to handle shared caches at
  different levels (CVE-2023-53254 bsc#1249871).
- commit c4452ba

- dm: free table mempools if not used in __bind (git-fixes).
- commit fb9a87c

- KVM: SVM: Fix TSC_AUX virtualization setup (git-fixes).
- commit ed61cba

- crypto: essiv - Check ssize for decryption and in-place
  encryption (bsc#1252678 CVE-2025-40019).
- commit e680b45

- cpuidle: haltpoll: Do not enable interrupts when entering idle (git-fixes).
- commit ebcfbc4

- x86/tdx: Fix __noreturn build warning around __tdx_hypercall_failed() (git-fixes).
- commit cf9f67d

- x86/bugs: Use SBPB in write_ibpb() if applicable (git-fixes).
- commit c32108a

- x86/tdx: Dynamically disable SEPT violations from causing #VEs (git-fixes).
- commit bc2ccb6

- x86/tdx: Rename tdx_parse_tdinfo() to tdx_setup() (git-fixes).
- commit 29784d0

- x86/tdx: Introduce wrappers to read and write TD metadata (git-fixes).
- commit e13b5dd

- x86/virt/tdx: Make TDX_MODULE_CALL handle SEAMCALL #UD and #GP (git-fixes).
- commit 6b94935

- x86/virt/tdx: Wire up basic SEAMCALL functions (git-fixes).
- commit 59fe61c

- x86/tdx: Remove 'struct tdx_hypercall_args' (git-fixes).
- Refresh
  patches.suse/virt-tdx-guest-Add-Quote-generation-support-using-TSM_REPORTS.patch.
- Refresh
  patches.suse/x86-tdx-Fix-arch_safe_halt-execution-for-TDX-VMs.patch.
- commit dffc1e6

- x86/tdx: Reimplement __tdx_hypercall() using TDX_MODULE_CALL asm (git-fixes).
- commit 50c4a13

- x86/tdx: Make TDX_HYPERCALL asm similar to TDX_MODULE_CALL  (git-fixes).
- Refresh patches.suse/x86-tdx-Fix-data-leak-in-mmio_read.patch.
- commit 82a2e36

- x86/tdx: Retry partially-completed page conversion hypercalls (git-fixes).
- Refresh
  patches.suse/virt-tdx-guest-Add-Quote-generation-support-using-TSM_REPORTS.patch.
- commit 5ffe81f

- x86/tdx: Drop flags from __tdx_hypercall() (git-fixes).
- Refresh
  patches.suse/msft-hv-2876-x86-hyperv-Support-hypercalls-for-fully-enlightened-.patch.
- Refresh
  patches.suse/msft-hv-2882-x86-hyperv-Use-TDX-GHCI-to-access-some-MSRs-in-a-TDX.patch.
- Refresh
  patches.suse/msft-hv-2884-x86-hyperv-Move-the-code-in-ivm.c-around-to-avoid-un.patch.
- Refresh patches.suse/x86-tdx-Fix-data-leak-in-mmio_read.patch.
- Refresh
  patches.suse/x86-tdx-Make-_tdx_hypercall-and-__tdx_module_call-available-in-boot-stub.patch.
- Refresh
  patches.suse/x86-tdx-Pass-TDCALL-SEAMCALL-input-output-registers-via-a-.patch.
- Refresh
  patches.suse/x86-tdx-Rename-__tdx_module_call-to-__tdcall.patch.
- Refresh
  patches.suse/x86-tdx-Zero-out-the-missing-RSI-in-TDX_HYPERCALL-macro.patch.
- commit 5d4a797

- x86/tdx: Remove TDX_HCALL_ISSUE_STI (git-fixes).
- Refresh
  patches.suse/x86-tdx-Do-not-corrupt-frame-pointer-in-__tdx_hyperc.patch.
- Refresh
  patches.suse/x86-tdx-Fix-arch_safe_halt-execution-for-TDX-VMs.patch.
- Refresh
  patches.suse/x86-tdx-Refactor-__tdx_hypercall-to-allow-pass-down-.patch.
- commit 6c60bc2

- cpuidle: Move IRQ state validation (git-fixes).
- commit 36be557

- cpuidle/poll: Ensure IRQs stay disabled after cpuidle_state::enter()  calls (git-fixes).
- commit 778474e

- arch/idle: Change arch_cpu_idle() behavior: always exit with IRQs  disabled (git-fixes).
- Refresh
  patches.suse/x86-tdx-Fix-arch_safe_halt-execution-for-TDX-VMs.patch.
- commit e41dc4f

- x86/tdx: Extend TDX_MODULE_CALL to support more TDCALL/SEAMCALL leafs (git-fixes).
- commit c2dd199

- x86/tdx: Pass TDCALL/SEAMCALL input/output registers via a structure (git-fixes).
- commit b5416b4

- x86/tdx: Rename __tdx_module_call() to __tdcall() (git-fixes).
- commit 500bf81

- x86/tdx: Make macros of TDCALLs consistent with the spec (git-fixes).
- commit c288f03

- x86/tdx: Skip saving output regs when SEAMCALL fails with VMFailInvalid (git-fixes).
- commit ecd6cb0

- x86/tdx: Zero out the missing RSI in TDX_HYPERCALL macro (git-fixes).
- commit 9c63e88

- x86/tdx: Fix arch_safe_halt() execution for TDX VMs (git-fixes).
- commit 017ee41

- x86/bugs: Fix RSB clearing in indirect_branch_prediction_barrier() (git-fixes).
- commit 92791c8

- RDMA/uverbs: Add empty rdma_uattrs_has_raw_cap() declaration (git-fixes)
- commit 93dd7d0

- RDMA/mlx5: Fix compilation warning when USER_ACCESS isn't set (git-fixes)
- commit e994fef

- RDMA/hns: Fix the modification of max_send_sge (git-fixes)
- commit 659f7e7

- RDMA/cm: Rate limit destroy CM ID timeout error message (git-fixes)
- commit 6784a99

- xfs: fix sparse inode limits on runt AG (bsc#1254392).
- commit eddc2d0
openssl-1_1
- Security fixes:
  * Missing ASN1_TYPE validation in PKCS#12 parsing
  * ASN1_TYPE Type Confusion in the PKCS7_digest_from_attributes() function
  - openssl-CVE-2026-22795.patch [bsc#1256839, CVE-2026-22795], [bsc#1256840, CVE-2026-22796]
  * Missing ASN1_TYPE validation in TS_RESP_verify_response() function
  - openssl-CVE-2025-69420.patch [bsc#1256837, CVE-2025-69420]
  * NULL Pointer Dereference in PKCS12_item_decrypt_d2i_ex function
  - openssl-CVE-2025-69421.patch [bsc#1256838, CVE-2025-69421]
  * Heap out-of-bounds write in BIO_f_linebuffer on short writes
  - openssl-CVE-2025-68160.patch [bsc#1256834, CVE-2025-68160]
  * Unauthenticated/unencrypted trailing bytes with low-level OCB function calls
  - openssl-CVE-2025-69418.patch [bsc#1256835, CVE-2025-69418]
  * Out of bounds write in PKCS12_get_friendlyname() UTF-8 conversion
  - openssl-CVE-2025-69419.patch [bsc#1256836, CVE-2025-69419]
python311
- Add CVE-2025-13836-http-resp-cont-len.patch (bsc#1254400,
  CVE-2025-13836) to prevent reading an HTTP response from
  a server, if no read amount is specified, with using
  Content-Length per default as the length.
- Add CVE-2025-12084-minidom-quad-search.patch prevent quadratic
  behavior in node ID cache clearing (CVE-2025-12084,
  bsc#1254997).
- Add CVE-2025-13837-plistlib-mailicious-length.patch protect
  against OOM when loading malicious content (CVE-2025-13837,
  bsc#1254401).
python-certifi
- Add python36-certifi provides/obsoletes to enable SLE-12 ->
  SLE-15 migration, bsc#1233012
python-idna
- Add python36-idna provides/obsoletes to enable SLE-12 ->
  SLE-15 migration, bsc#1233012
python-packaging
- Add python36-packaging provides/obsoletes to enable SLE-12 ->
  SLE-15 migration, bsc#1233012
python-ply
- Add python36-ply provides/obsoletes to enable SLE-12 ->
  SLE-15 migration, bsc#1233012
python-pycparser
- Add python36-pycparser provides/obsoletes to enable SLE-12 ->
  SLE-15 migration, bsc#1233012
python-python-dateutil
- Add python36-python-dateutil provides/obsoletes to enable SLE-12 ->
  SLE-15 migration, bsc#1233012
python-py
- Add python36-py provides/obsoletes to enable SLE-12 ->
  SLE-15 migration, bsc#1233012
python-requests
- Add python36- provides/obsoletes to enable SLE-12 ->
  SLE-15 migration, bsc#1233012
python-six
- Add python36-six provides/obsoletes to enable SLE-12 ->
  SLE-15 migration, bsc#1233012
000release-packages:sle-ha-release
n/a
000release-packages:sle-module-basesystem-release
n/a
000release-packages:sle-module-containers-release
n/a
000release-packages:sle-module-desktop-applications-release
n/a
000release-packages:sle-module-development-tools-release
n/a
000release-packages:sle-module-public-cloud-release
n/a
000release-packages:sle-module-sap-applications-release
n/a
000release-packages:sle-module-server-applications-release
n/a
xen
- bsc#1256745 - VUL-0: CVE-2025-58150: xen: x86: buffer overrun
  with shadow paging + tracing (XSA-477)
  xsa477.patch
- bsc#1256747 - VUL-0: CVE-2026-23553: xen: x86: incomplete IBPB
  for vCPU isolation (XSA-479)
  xsa479.patch