[SUSE-SU-2023:0280-1] Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP4)
Severity
Important
CVEs
2
Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP4)
This update for the Linux Kernel 5.14.21-150400_24_33 fixes several issues.
The following security issues were fixed:
- CVE-2022-4379: A use-after-free vulnerability was found in __nfs42_ssc_open() in fs/nfs/nfs4file.c in the Linux kernel. This flaw allowed an attacker to conduct a remote denial of service attack (bsc#1206373).
- CVE-2022-2602: Fixed a local privilege escalation vulnerability involving Unix socket Garbage Collection and io_uring (bsc#1205186).
- ID
- SUSE-SU-2023:0280-1
- Severity
- important
- URL
- https://www.suse.com/support/update/announcement/2023/suse-su-20230280-1/
- Published
-
2023-02-07T07:05:29
(19 months ago) - Modified
-
2023-02-07T07:05:29
(19 months ago) - Rights
- Copyright 2024 SUSE LLC. All rights reserved.
- Other Advisories
-
- ALSA-2023:0951
- DSA-5257-1
- ELSA-2022-10079
- ELSA-2022-10081
- ELSA-2023-0951
- FEDORA-2023-3fd7349f60
- FEDORA-2023-f4f9182dc8
- MS:CVE-2022-4379
- RHSA-2023:0951
- RHSA-2023:0979
- RHSA-2023:1008
- SSA:2022-333-01
- SSA:2023-172-02
- SUSE-SU-2022:4503-1
- SUSE-SU-2022:4504-1
- SUSE-SU-2022:4585-1
- SUSE-SU-2022:4589-1
- SUSE-SU-2022:4613-1
- SUSE-SU-2022:4614-1
- SUSE-SU-2022:4616-1
- SUSE-SU-2022:4617-1
- SUSE-SU-2023:0146-1
- SUSE-SU-2023:0147-1
- SUSE-SU-2023:0149-1
- SUSE-SU-2023:0229-1
- SUSE-SU-2023:0237-1
- SUSE-SU-2023:0245-1
- SUSE-SU-2023:0262-1
- SUSE-SU-2023:0267-1
- SUSE-SU-2023:0270-1
- SUSE-SU-2023:0273-1
- SUSE-SU-2023:0277-1
- SUSE-SU-2023:0281-1
- SUSE-SU-2023:0320-1
- SUSE-SU-2023:0331-1
- SUSE-SU-2023:0339-1
- USN-5691-1
- USN-5692-1
- USN-5693-1
- USN-5700-1
- USN-5752-1
- USN-5911-1
- USN-5912-1
- USN-5913-1
- USN-5914-1
- USN-5915-1
- USN-5929-1
- USN-5935-1
- USN-5938-1
- USN-5941-1
- USN-5950-1
- USN-5962-1
Source | # ID | Name | URL |
---|---|---|---|
Suse | SUSE ratings | https://www.suse.com/support/security/rating/ | |
Suse | URL of this CSAF notice | https://ftp.suse.com/pub/projects/security/csaf/suse-su-2023_0280-1.json | |
Suse | URL for SUSE-SU-2023:0280-1 | https://www.suse.com/support/update/announcement/2023/suse-su-20230280-1/ | |
Suse | E-Mail link for SUSE-SU-2023:0280-1 | https://lists.suse.com/pipermail/sle-security-updates/2023-February/013639.html | |
Bugzilla | SUSE Bug 1205186 | https://bugzilla.suse.com/1205186 | |
Bugzilla | SUSE Bug 1206373 | https://bugzilla.suse.com/1206373 | |
CVE | SUSE CVE CVE-2022-2602 page | https://www.suse.com/security/cve/CVE-2022-2602/ | |
CVE | SUSE CVE CVE-2022-4379 page | https://www.suse.com/security/cve/CVE-2022-4379/ |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |