[SUSE-SU-2023:0768-1] Security update for the Linux Kernel

Severity Important
Affected Packages 50
CVEs 11

Security update for the Linux Kernel

The SUSE Linux Enterprise 15 SP1 kernel was updated to receive various security and bugfixes.

  • CVE-2021-4203: Fixed use-after-free read flaw that was found in sock_getsockopt() in net/core/sock.c due to SO_PEERCRED and SO_PEERGROUPS race with listen() (bsc#1194535).
  • CVE-2022-2991: Fixed an heap-based overflow in the lightnvm implemenation (bsc#1201420).
  • CVE-2022-36280: Fixed out-of-bounds memory access vulnerability found in vmwgfx driver (bsc#1203332).
  • CVE-2022-38096: Fixed NULL-ptr deref in vmw_cmd_dx_define_query() (bsc#1203331).
  • CVE-2022-4129: Fixed a denial of service with the Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. (bsc#1205711)
  • CVE-2023-0045: Fixed missing Flush IBP in ib_prctl_set (bsc#1207773).
  • CVE-2023-0590: Fixed race condition in qdisc_graft() (bsc#1207795).
  • CVE-2023-0597: Fixed a lack of randomization of per-cpu entry area in x86/mm (bsc#1207845).
  • CVE-2023-1118: Fixed a use-after-free bugs caused by ene_tx_irqsim() in media/rc (bsc#1208837).
  • CVE-2023-23559: Fixed integer overflow in rndis_wlan that leads to a buffer overflow (bsc#1207051).
  • CVE-2023-26545: Fixed double free in net/mpls/af_mpls.c upon an allocation failure (bsc#1208700).

The following non-security bugs were fixed:

  • kabi/severities: add l2tp local symbols
  • module: Do not wait for GOING modules (bsc#1196058, bsc#1186449, bsc#1204356, bsc#1204662).
  • net: mana: Fix IRQ name - add PCI and queue number (bsc#1207875).
Package Affected Version
pkg:rpm/suse/reiserfs-kmp-default?arch=x86_64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/reiserfs-kmp-default?arch=s390x&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/reiserfs-kmp-default?arch=ppc64le&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/reiserfs-kmp-default?arch=aarch64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-zfcpdump-man?arch=s390x&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla?arch=x86_64&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla?arch=s390x&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla?arch=ppc64le&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla?arch=aarch64&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-livepatch-devel?arch=x86_64&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-livepatch-devel?arch=s390x&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-livepatch-devel?arch=ppc64le&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-livepatch-devel?arch=aarch64&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-devel?arch=x86_64&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-devel?arch=s390x&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-devel?arch=ppc64le&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-devel?arch=aarch64&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-base?arch=x86_64&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-base?arch=s390x&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-base?arch=ppc64le&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-vanilla-base?arch=aarch64&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-syms?arch=x86_64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-syms?arch=s390x&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-syms?arch=ppc64le&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-syms?arch=aarch64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-source?arch=noarch&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-obs-build?arch=x86_64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-obs-build?arch=s390x&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-obs-build?arch=ppc64le&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-obs-build?arch=aarch64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-macros?arch=noarch&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-kvmsmall-base?arch=x86_64&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-docs?arch=noarch&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-devel?arch=noarch&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default?arch=x86_64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default?arch=s390x&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default?arch=ppc64le&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default?arch=aarch64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default-man?arch=s390x&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default-man?arch=s390x&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default-devel?arch=x86_64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default-devel?arch=s390x&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default-devel?arch=ppc64le&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default-devel?arch=aarch64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default-base?arch=x86_64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default-base?arch=s390x&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default-base?arch=ppc64le&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-default-base?arch=aarch64&distro=sles-15&sp=1 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-debug-base?arch=x86_64&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
pkg:rpm/suse/kernel-debug-base?arch=ppc64le&distro=opensuse-leap-15.4 < 4.12.14-150100.197.137.2
ID
SUSE-SU-2023:0768-1
Severity
important
URL
https://www.suse.com/support/update/announcement/2023/suse-su-20230768-1/
Published
2023-03-16T12:26:30
(18 months ago)
Modified
2023-03-16T12:26:30
(18 months ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Source # ID Name URL
Suse SUSE ratings https://www.suse.com/support/security/rating/
Suse URL of this CSAF notice https://ftp.suse.com/pub/projects/security/csaf/suse-su-2023_0768-1.json
Suse URL for SUSE-SU-2023:0768-1 https://www.suse.com/support/update/announcement/2023/suse-su-20230768-1/
Suse E-Mail link for SUSE-SU-2023:0768-1 https://lists.suse.com/pipermail/sle-security-updates/2023-March/014072.html
Bugzilla SUSE Bug 1186449 https://bugzilla.suse.com/1186449
Bugzilla SUSE Bug 1194535 https://bugzilla.suse.com/1194535
Bugzilla SUSE Bug 1201420 https://bugzilla.suse.com/1201420
Bugzilla SUSE Bug 1203331 https://bugzilla.suse.com/1203331
Bugzilla SUSE Bug 1203332 https://bugzilla.suse.com/1203332
Bugzilla SUSE Bug 1204356 https://bugzilla.suse.com/1204356
Bugzilla SUSE Bug 1204662 https://bugzilla.suse.com/1204662
Bugzilla SUSE Bug 1205711 https://bugzilla.suse.com/1205711
Bugzilla SUSE Bug 1207051 https://bugzilla.suse.com/1207051
Bugzilla SUSE Bug 1207773 https://bugzilla.suse.com/1207773
Bugzilla SUSE Bug 1207795 https://bugzilla.suse.com/1207795
Bugzilla SUSE Bug 1207845 https://bugzilla.suse.com/1207845
Bugzilla SUSE Bug 1207875 https://bugzilla.suse.com/1207875
Bugzilla SUSE Bug 1208700 https://bugzilla.suse.com/1208700
Bugzilla SUSE Bug 1208837 https://bugzilla.suse.com/1208837
Bugzilla SUSE Bug 1209188 https://bugzilla.suse.com/1209188
CVE SUSE CVE CVE-2021-4203 page https://www.suse.com/security/cve/CVE-2021-4203/
CVE SUSE CVE CVE-2022-2991 page https://www.suse.com/security/cve/CVE-2022-2991/
CVE SUSE CVE CVE-2022-36280 page https://www.suse.com/security/cve/CVE-2022-36280/
CVE SUSE CVE CVE-2022-38096 page https://www.suse.com/security/cve/CVE-2022-38096/
CVE SUSE CVE CVE-2022-4129 page https://www.suse.com/security/cve/CVE-2022-4129/
CVE SUSE CVE CVE-2023-0045 page https://www.suse.com/security/cve/CVE-2023-0045/
CVE SUSE CVE CVE-2023-0590 page https://www.suse.com/security/cve/CVE-2023-0590/
CVE SUSE CVE CVE-2023-0597 page https://www.suse.com/security/cve/CVE-2023-0597/
CVE SUSE CVE CVE-2023-1118 page https://www.suse.com/security/cve/CVE-2023-1118/
CVE SUSE CVE CVE-2023-23559 page https://www.suse.com/security/cve/CVE-2023-23559/
CVE SUSE CVE CVE-2023-26545 page https://www.suse.com/security/cve/CVE-2023-26545/
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/reiserfs-kmp-default?arch=x86_64&distro=sles-15&sp=1 suse reiserfs-kmp-default < 4.12.14-150100.197.137.2 sles-15 x86_64
Affected pkg:rpm/suse/reiserfs-kmp-default?arch=s390x&distro=sles-15&sp=1 suse reiserfs-kmp-default < 4.12.14-150100.197.137.2 sles-15 s390x
Affected pkg:rpm/suse/reiserfs-kmp-default?arch=ppc64le&distro=sles-15&sp=1 suse reiserfs-kmp-default < 4.12.14-150100.197.137.2 sles-15 ppc64le
Affected pkg:rpm/suse/reiserfs-kmp-default?arch=aarch64&distro=sles-15&sp=1 suse reiserfs-kmp-default < 4.12.14-150100.197.137.2 sles-15 aarch64
Affected pkg:rpm/suse/kernel-zfcpdump-man?arch=s390x&distro=opensuse-leap-15.4 suse kernel-zfcpdump-man < 4.12.14-150100.197.137.2 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/kernel-vanilla?arch=x86_64&distro=opensuse-leap-15.4 suse kernel-vanilla < 4.12.14-150100.197.137.2 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/kernel-vanilla?arch=s390x&distro=opensuse-leap-15.4 suse kernel-vanilla < 4.12.14-150100.197.137.2 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/kernel-vanilla?arch=ppc64le&distro=opensuse-leap-15.4 suse kernel-vanilla < 4.12.14-150100.197.137.2 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/kernel-vanilla?arch=aarch64&distro=opensuse-leap-15.4 suse kernel-vanilla < 4.12.14-150100.197.137.2 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/kernel-vanilla-livepatch-devel?arch=x86_64&distro=opensuse-leap-15.4 suse kernel-vanilla-livepatch-devel < 4.12.14-150100.197.137.2 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/kernel-vanilla-livepatch-devel?arch=s390x&distro=opensuse-leap-15.4 suse kernel-vanilla-livepatch-devel < 4.12.14-150100.197.137.2 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/kernel-vanilla-livepatch-devel?arch=ppc64le&distro=opensuse-leap-15.4 suse kernel-vanilla-livepatch-devel < 4.12.14-150100.197.137.2 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/kernel-vanilla-livepatch-devel?arch=aarch64&distro=opensuse-leap-15.4 suse kernel-vanilla-livepatch-devel < 4.12.14-150100.197.137.2 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/kernel-vanilla-devel?arch=x86_64&distro=opensuse-leap-15.4 suse kernel-vanilla-devel < 4.12.14-150100.197.137.2 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/kernel-vanilla-devel?arch=s390x&distro=opensuse-leap-15.4 suse kernel-vanilla-devel < 4.12.14-150100.197.137.2 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/kernel-vanilla-devel?arch=ppc64le&distro=opensuse-leap-15.4 suse kernel-vanilla-devel < 4.12.14-150100.197.137.2 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/kernel-vanilla-devel?arch=aarch64&distro=opensuse-leap-15.4 suse kernel-vanilla-devel < 4.12.14-150100.197.137.2 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/kernel-vanilla-base?arch=x86_64&distro=opensuse-leap-15.4 suse kernel-vanilla-base < 4.12.14-150100.197.137.2 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/kernel-vanilla-base?arch=s390x&distro=opensuse-leap-15.4 suse kernel-vanilla-base < 4.12.14-150100.197.137.2 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/kernel-vanilla-base?arch=ppc64le&distro=opensuse-leap-15.4 suse kernel-vanilla-base < 4.12.14-150100.197.137.2 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/kernel-vanilla-base?arch=aarch64&distro=opensuse-leap-15.4 suse kernel-vanilla-base < 4.12.14-150100.197.137.2 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/kernel-syms?arch=x86_64&distro=sles-15&sp=1 suse kernel-syms < 4.12.14-150100.197.137.2 sles-15 x86_64
Affected pkg:rpm/suse/kernel-syms?arch=s390x&distro=sles-15&sp=1 suse kernel-syms < 4.12.14-150100.197.137.2 sles-15 s390x
Affected pkg:rpm/suse/kernel-syms?arch=ppc64le&distro=sles-15&sp=1 suse kernel-syms < 4.12.14-150100.197.137.2 sles-15 ppc64le
Affected pkg:rpm/suse/kernel-syms?arch=aarch64&distro=sles-15&sp=1 suse kernel-syms < 4.12.14-150100.197.137.2 sles-15 aarch64
Affected pkg:rpm/suse/kernel-source?arch=noarch&distro=sles-15&sp=1 suse kernel-source < 4.12.14-150100.197.137.2 sles-15 noarch
Affected pkg:rpm/suse/kernel-obs-build?arch=x86_64&distro=sles-15&sp=1 suse kernel-obs-build < 4.12.14-150100.197.137.2 sles-15 x86_64
Affected pkg:rpm/suse/kernel-obs-build?arch=s390x&distro=sles-15&sp=1 suse kernel-obs-build < 4.12.14-150100.197.137.2 sles-15 s390x
Affected pkg:rpm/suse/kernel-obs-build?arch=ppc64le&distro=sles-15&sp=1 suse kernel-obs-build < 4.12.14-150100.197.137.2 sles-15 ppc64le
Affected pkg:rpm/suse/kernel-obs-build?arch=aarch64&distro=sles-15&sp=1 suse kernel-obs-build < 4.12.14-150100.197.137.2 sles-15 aarch64
Affected pkg:rpm/suse/kernel-macros?arch=noarch&distro=sles-15&sp=1 suse kernel-macros < 4.12.14-150100.197.137.2 sles-15 noarch
Affected pkg:rpm/suse/kernel-kvmsmall-base?arch=x86_64&distro=opensuse-leap-15.4 suse kernel-kvmsmall-base < 4.12.14-150100.197.137.2 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/kernel-docs?arch=noarch&distro=sles-15&sp=1 suse kernel-docs < 4.12.14-150100.197.137.2 sles-15 noarch
Affected pkg:rpm/suse/kernel-devel?arch=noarch&distro=sles-15&sp=1 suse kernel-devel < 4.12.14-150100.197.137.2 sles-15 noarch
Affected pkg:rpm/suse/kernel-default?arch=x86_64&distro=sles-15&sp=1 suse kernel-default < 4.12.14-150100.197.137.2 sles-15 x86_64
Affected pkg:rpm/suse/kernel-default?arch=s390x&distro=sles-15&sp=1 suse kernel-default < 4.12.14-150100.197.137.2 sles-15 s390x
Affected pkg:rpm/suse/kernel-default?arch=ppc64le&distro=sles-15&sp=1 suse kernel-default < 4.12.14-150100.197.137.2 sles-15 ppc64le
Affected pkg:rpm/suse/kernel-default?arch=aarch64&distro=sles-15&sp=1 suse kernel-default < 4.12.14-150100.197.137.2 sles-15 aarch64
Affected pkg:rpm/suse/kernel-default-man?arch=s390x&distro=sles-15&sp=1 suse kernel-default-man < 4.12.14-150100.197.137.2 sles-15 s390x
Affected pkg:rpm/suse/kernel-default-man?arch=s390x&distro=opensuse-leap-15.4 suse kernel-default-man < 4.12.14-150100.197.137.2 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/kernel-default-devel?arch=x86_64&distro=sles-15&sp=1 suse kernel-default-devel < 4.12.14-150100.197.137.2 sles-15 x86_64
Affected pkg:rpm/suse/kernel-default-devel?arch=s390x&distro=sles-15&sp=1 suse kernel-default-devel < 4.12.14-150100.197.137.2 sles-15 s390x
Affected pkg:rpm/suse/kernel-default-devel?arch=ppc64le&distro=sles-15&sp=1 suse kernel-default-devel < 4.12.14-150100.197.137.2 sles-15 ppc64le
Affected pkg:rpm/suse/kernel-default-devel?arch=aarch64&distro=sles-15&sp=1 suse kernel-default-devel < 4.12.14-150100.197.137.2 sles-15 aarch64
Affected pkg:rpm/suse/kernel-default-base?arch=x86_64&distro=sles-15&sp=1 suse kernel-default-base < 4.12.14-150100.197.137.2 sles-15 x86_64
Affected pkg:rpm/suse/kernel-default-base?arch=s390x&distro=sles-15&sp=1 suse kernel-default-base < 4.12.14-150100.197.137.2 sles-15 s390x
Affected pkg:rpm/suse/kernel-default-base?arch=ppc64le&distro=sles-15&sp=1 suse kernel-default-base < 4.12.14-150100.197.137.2 sles-15 ppc64le
Affected pkg:rpm/suse/kernel-default-base?arch=aarch64&distro=sles-15&sp=1 suse kernel-default-base < 4.12.14-150100.197.137.2 sles-15 aarch64
Affected pkg:rpm/suse/kernel-debug-base?arch=x86_64&distro=opensuse-leap-15.4 suse kernel-debug-base < 4.12.14-150100.197.137.2 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/kernel-debug-base?arch=ppc64le&distro=opensuse-leap-15.4 suse kernel-debug-base < 4.12.14-150100.197.137.2 opensuse-leap-15.4 ppc64le
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...