[SUSE-SU-2024:1641-1] Security update for the Linux Kernel

Severity Important
CVEs 90

Security update for the Linux Kernel

The SUSE Linux Enterprise 15 SP4 LTSS kernel was updated to receive various security bugfixes.

The following security bugs were fixed:

  • CVE-2024-27389: Fixed pstore inode handling with d_invalidate() (bsc#1223705).
  • CVE-2024-27043: Fixed a use-after-free in edia/dvbdev in different places (bsc#1223824).
  • CVE-2024-26816: Ignore relocations in .notes section when building with CONFIG_XEN_PV=y (bsc#1222624).
  • CVE-2024-26773: Fixed ext4 block allocation from corrupted group in ext4_mb_try_best_found() (bsc#1222618).
  • CVE-2024-26766: Fixed SDMA off-by-one error in _pad_sdma_tx_descs() (bsc#1222726).
  • CVE-2024-26764: Fixed IOCB_AIO_RW check in fs/aio before the struct aio_kiocb conversion (bsc#1222721).
  • CVE-2024-26733: Fixed an overflow in arp_req_get() in arp (bsc#1222585).
  • CVE-2024-26727: Fixed assertion if a newly created btrfs subvolume already gets read (bsc#1222536).
  • CVE-2024-26704: Fixed a double-free of blocks due to wrong extents moved_len in ext4 (bsc#1222422).
  • CVE-2024-26689: Fixed a use-after-free in encode_cap_msg() (bsc#1222503).
  • CVE-2024-26687: Fixed xen/events close evtchn after mapping cleanup (bsc#1222435).
  • CVE-2024-26642: Fixed the set of anonymous timeout flag in netfilter nf_tables (bsc#1221830).
  • CVE-2024-26614: Fixed the initialization of accept_queue's spinlocks (bsc#1221293).
  • CVE-2024-26610: Fixed memory corruption in wifi/iwlwifi (bsc#1221299).
  • CVE-2024-26601: Fixed ext4 buddy bitmap corruption via fast commit replay (bsc#1220342).
  • CVE-2024-25742: Fixed insufficient validation during #VC instruction emulation in x86/sev (bsc#1221725).
  • CVE-2024-23850: Fixed double free of anonymous device after snapshot creation failure (bsc#1219126).
  • CVE-2024-23307: Fixed Integer Overflow or Wraparound vulnerability in x86 and ARM md, raid, raid5 modules (bsc#1219169).
  • CVE-2024-22099: Fixed a null-pointer-dereference in rfcomm_check_security (bsc#1219170).
  • CVE-2024-0841: Fixed a null pointer dereference in the hugetlbfs_fill_super function in hugetlbfs (HugeTLB pages) functionality (bsc#1219264).
  • CVE-2023-7192: Fixed a memory leak problem in ctnetlink_create_conntrack in net/netfilter/nf_conntrack_netlink.c (bsc#1218479).
  • CVE-2023-7042: Fixed a null-pointer-dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() (bsc#1218336).
  • CVE-2023-6270: Fixed a use-after-free issue in aoecmd_cfg_pkts (bsc#1218562).
  • CVE-2023-52628: Fixed 4-byte stack OOB write in nftables (bsc#1222117).
  • CVE-2023-52616: Fixed unexpected pointer access in crypto/lib/mpi in mpi_ec_init (bsc#1221612).
  • CVE-2023-52607: Fixed NULL pointer dereference in pgtable_cache_add kasprintf() (bsc#1221061).
  • CVE-2023-52591: Fixed a possible reiserfs filesystem corruption via directory renaming (bsc#1221044).
  • CVE-2023-52590: Fixed a possible ocfs2 filesystem corruption via directory renaming (bsc#1221088).
  • CVE-2023-52500: Fixed information leaking when processing OPC_INB_SET_CONTROLLER_CONFIG command (bsc#1220883).
  • CVE-2023-52476: Fixed possible unhandled page fault via perf sampling NMI during vsyscall (bsc#1220703).
  • CVE-2023-4881: Fixed a out-of-bounds write flaw in the netfilter subsystem that could lead to potential information disclosure or a denial of service (bsc#1215221).
  • CVE-2023-0160: Fixed deadlock flaw in BPF that could allow a local user to potentially crash the system (bsc#1209657).
  • CVE-2022-48662: Fixed a general protection fault (GPF) in i915_perf_open_ioctl (bsc#1223505).
  • CVE-2022-48651: Fixed an out-of-bound bug in ipvlan caused by unset skb->mac_header (bsc#1223513).
  • CVE-2021-47202: Fixed NULL pointer dereferences in of_thermal_ functions (bsc#1222878)
  • CVE-2021-47195: Fixed use-after-free inside SPI via add_lock mutex (bsc#1222832).
  • CVE-2021-47189: Fixed denial of service due to memory ordering issues between normal and ordered work functions in btrfs (bsc#1222706).
  • CVE-2021-47185: Fixed a softlockup issue in flush_to_ldisc in tty tty_buffer (bsc#1222669).
  • CVE-2021-47183: Fixed a null pointer dereference during link down processing in scsi lpfc (bsc#1192145, bsc#1222664).
  • CVE-2021-47182: Fixed scsi_mode_sense() buffer length handling (bsc#1222662).
  • CVE-2021-47181: Fixed a null pointer dereference caused by calling platform_get_resource() (bsc#1222660).

The following non-security bugs were fixed:

  • Call flush_delayed_fput() from nfsd main-loop (bsc#1223380).
  • ibmvfc: make 'max_sectors' a module option (bsc#1216223).
  • scsi: Update max_hw_sectors on rescan (bsc#1216223).
ID
SUSE-SU-2024:1641-1
Severity
important
URL
https://www.suse.com/support/update/announcement/2024/suse-su-20241641-1/
Published
2024-05-14T13:37:08
(4 months ago)
Modified
2024-05-14T13:37:08
(4 months ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Source # ID Name URL
Suse SUSE ratings https://www.suse.com/support/security/rating/
Suse URL of this CSAF notice https://ftp.suse.com/pub/projects/security/csaf/suse-su-2024_1641-1.json
Suse URL for SUSE-SU-2024:1641-1 https://www.suse.com/support/update/announcement/2024/suse-su-20241641-1/
Suse E-Mail link for SUSE-SU-2024:1641-1 https://lists.suse.com/pipermail/sle-updates/2024-May/035266.html
Bugzilla SUSE Bug 1192145 https://bugzilla.suse.com/1192145
Bugzilla SUSE Bug 1209657 https://bugzilla.suse.com/1209657
Bugzilla SUSE Bug 1215221 https://bugzilla.suse.com/1215221
Bugzilla SUSE Bug 1216223 https://bugzilla.suse.com/1216223
Bugzilla SUSE Bug 1218336 https://bugzilla.suse.com/1218336
Bugzilla SUSE Bug 1218479 https://bugzilla.suse.com/1218479
Bugzilla SUSE Bug 1218562 https://bugzilla.suse.com/1218562
Bugzilla SUSE Bug 1219104 https://bugzilla.suse.com/1219104
Bugzilla SUSE Bug 1219126 https://bugzilla.suse.com/1219126
Bugzilla SUSE Bug 1219169 https://bugzilla.suse.com/1219169
Bugzilla SUSE Bug 1219170 https://bugzilla.suse.com/1219170
Bugzilla SUSE Bug 1219264 https://bugzilla.suse.com/1219264
Bugzilla SUSE Bug 1220342 https://bugzilla.suse.com/1220342
Bugzilla SUSE Bug 1220703 https://bugzilla.suse.com/1220703
Bugzilla SUSE Bug 1220761 https://bugzilla.suse.com/1220761
Bugzilla SUSE Bug 1220883 https://bugzilla.suse.com/1220883
Bugzilla SUSE Bug 1221044 https://bugzilla.suse.com/1221044
Bugzilla SUSE Bug 1221061 https://bugzilla.suse.com/1221061
Bugzilla SUSE Bug 1221088 https://bugzilla.suse.com/1221088
Bugzilla SUSE Bug 1221293 https://bugzilla.suse.com/1221293
Bugzilla SUSE Bug 1221299 https://bugzilla.suse.com/1221299
Bugzilla SUSE Bug 1221612 https://bugzilla.suse.com/1221612
Bugzilla SUSE Bug 1221725 https://bugzilla.suse.com/1221725
Bugzilla SUSE Bug 1221830 https://bugzilla.suse.com/1221830
Bugzilla SUSE Bug 1222117 https://bugzilla.suse.com/1222117
Bugzilla SUSE Bug 1222422 https://bugzilla.suse.com/1222422
Bugzilla SUSE Bug 1222430 https://bugzilla.suse.com/1222430
Bugzilla SUSE Bug 1222435 https://bugzilla.suse.com/1222435
Bugzilla SUSE Bug 1222482 https://bugzilla.suse.com/1222482
Bugzilla SUSE Bug 1222503 https://bugzilla.suse.com/1222503
Bugzilla SUSE Bug 1222536 https://bugzilla.suse.com/1222536
Bugzilla SUSE Bug 1222559 https://bugzilla.suse.com/1222559
Bugzilla SUSE Bug 1222585 https://bugzilla.suse.com/1222585
Bugzilla SUSE Bug 1222618 https://bugzilla.suse.com/1222618
Bugzilla SUSE Bug 1222624 https://bugzilla.suse.com/1222624
Bugzilla SUSE Bug 1222660 https://bugzilla.suse.com/1222660
Bugzilla SUSE Bug 1222662 https://bugzilla.suse.com/1222662
Bugzilla SUSE Bug 1222664 https://bugzilla.suse.com/1222664
Bugzilla SUSE Bug 1222666 https://bugzilla.suse.com/1222666
Bugzilla SUSE Bug 1222669 https://bugzilla.suse.com/1222669
Bugzilla SUSE Bug 1222671 https://bugzilla.suse.com/1222671
Bugzilla SUSE Bug 1222703 https://bugzilla.suse.com/1222703
Bugzilla SUSE Bug 1222704 https://bugzilla.suse.com/1222704
Bugzilla SUSE Bug 1222706 https://bugzilla.suse.com/1222706
Bugzilla SUSE Bug 1222709 https://bugzilla.suse.com/1222709
Bugzilla SUSE Bug 1222721 https://bugzilla.suse.com/1222721
Bugzilla SUSE Bug 1222726 https://bugzilla.suse.com/1222726
Bugzilla SUSE Bug 1222773 https://bugzilla.suse.com/1222773
Bugzilla SUSE Bug 1222776 https://bugzilla.suse.com/1222776
Bugzilla SUSE Bug 1222785 https://bugzilla.suse.com/1222785
Bugzilla SUSE Bug 1222787 https://bugzilla.suse.com/1222787
Bugzilla SUSE Bug 1222790 https://bugzilla.suse.com/1222790
Bugzilla SUSE Bug 1222791 https://bugzilla.suse.com/1222791
Bugzilla SUSE Bug 1222792 https://bugzilla.suse.com/1222792
Bugzilla SUSE Bug 1222796 https://bugzilla.suse.com/1222796
Bugzilla SUSE Bug 1222824 https://bugzilla.suse.com/1222824
Bugzilla SUSE Bug 1222829 https://bugzilla.suse.com/1222829
Bugzilla SUSE Bug 1222832 https://bugzilla.suse.com/1222832
Bugzilla SUSE Bug 1222836 https://bugzilla.suse.com/1222836
Bugzilla SUSE Bug 1222838 https://bugzilla.suse.com/1222838
Bugzilla SUSE Bug 1222866 https://bugzilla.suse.com/1222866
Bugzilla SUSE Bug 1222867 https://bugzilla.suse.com/1222867
Bugzilla SUSE Bug 1222869 https://bugzilla.suse.com/1222869
Bugzilla SUSE Bug 1222876 https://bugzilla.suse.com/1222876
Bugzilla SUSE Bug 1222878 https://bugzilla.suse.com/1222878
Bugzilla SUSE Bug 1222879 https://bugzilla.suse.com/1222879
Bugzilla SUSE Bug 1222881 https://bugzilla.suse.com/1222881
Bugzilla SUSE Bug 1222883 https://bugzilla.suse.com/1222883
Bugzilla SUSE Bug 1222888 https://bugzilla.suse.com/1222888
Bugzilla SUSE Bug 1222894 https://bugzilla.suse.com/1222894
Bugzilla SUSE Bug 1222901 https://bugzilla.suse.com/1222901
Bugzilla SUSE Bug 1223016 https://bugzilla.suse.com/1223016
Bugzilla SUSE Bug 1223187 https://bugzilla.suse.com/1223187
Bugzilla SUSE Bug 1223380 https://bugzilla.suse.com/1223380
Bugzilla SUSE Bug 1223474 https://bugzilla.suse.com/1223474
Bugzilla SUSE Bug 1223475 https://bugzilla.suse.com/1223475
Bugzilla SUSE Bug 1223477 https://bugzilla.suse.com/1223477
Bugzilla SUSE Bug 1223479 https://bugzilla.suse.com/1223479
Bugzilla SUSE Bug 1223482 https://bugzilla.suse.com/1223482
Bugzilla SUSE Bug 1223484 https://bugzilla.suse.com/1223484
Bugzilla SUSE Bug 1223487 https://bugzilla.suse.com/1223487
Bugzilla SUSE Bug 1223503 https://bugzilla.suse.com/1223503
Bugzilla SUSE Bug 1223505 https://bugzilla.suse.com/1223505
Bugzilla SUSE Bug 1223509 https://bugzilla.suse.com/1223509
Bugzilla SUSE Bug 1223513 https://bugzilla.suse.com/1223513
Bugzilla SUSE Bug 1223516 https://bugzilla.suse.com/1223516
Bugzilla SUSE Bug 1223517 https://bugzilla.suse.com/1223517
Bugzilla SUSE Bug 1223518 https://bugzilla.suse.com/1223518
Bugzilla SUSE Bug 1223519 https://bugzilla.suse.com/1223519
Bugzilla SUSE Bug 1223522 https://bugzilla.suse.com/1223522
Bugzilla SUSE Bug 1223523 https://bugzilla.suse.com/1223523
Bugzilla SUSE Bug 1223705 https://bugzilla.suse.com/1223705
Bugzilla SUSE Bug 1223824 https://bugzilla.suse.com/1223824
CVE SUSE CVE CVE-2021-47047 page https://www.suse.com/security/cve/CVE-2021-47047/
CVE SUSE CVE CVE-2021-47181 page https://www.suse.com/security/cve/CVE-2021-47181/
CVE SUSE CVE CVE-2021-47182 page https://www.suse.com/security/cve/CVE-2021-47182/
CVE SUSE CVE CVE-2021-47183 page https://www.suse.com/security/cve/CVE-2021-47183/
CVE SUSE CVE CVE-2021-47184 page https://www.suse.com/security/cve/CVE-2021-47184/
CVE SUSE CVE CVE-2021-47185 page https://www.suse.com/security/cve/CVE-2021-47185/
CVE SUSE CVE CVE-2021-47187 page https://www.suse.com/security/cve/CVE-2021-47187/
CVE SUSE CVE CVE-2021-47188 page https://www.suse.com/security/cve/CVE-2021-47188/
CVE SUSE CVE CVE-2021-47189 page https://www.suse.com/security/cve/CVE-2021-47189/
CVE SUSE CVE CVE-2021-47191 page https://www.suse.com/security/cve/CVE-2021-47191/
CVE SUSE CVE CVE-2021-47192 page https://www.suse.com/security/cve/CVE-2021-47192/
CVE SUSE CVE CVE-2021-47193 page https://www.suse.com/security/cve/CVE-2021-47193/
CVE SUSE CVE CVE-2021-47194 page https://www.suse.com/security/cve/CVE-2021-47194/
CVE SUSE CVE CVE-2021-47195 page https://www.suse.com/security/cve/CVE-2021-47195/
CVE SUSE CVE CVE-2021-47196 page https://www.suse.com/security/cve/CVE-2021-47196/
CVE SUSE CVE CVE-2021-47197 page https://www.suse.com/security/cve/CVE-2021-47197/
CVE SUSE CVE CVE-2021-47198 page https://www.suse.com/security/cve/CVE-2021-47198/
CVE SUSE CVE CVE-2021-47199 page https://www.suse.com/security/cve/CVE-2021-47199/
CVE SUSE CVE CVE-2021-47200 page https://www.suse.com/security/cve/CVE-2021-47200/
CVE SUSE CVE CVE-2021-47201 page https://www.suse.com/security/cve/CVE-2021-47201/
CVE SUSE CVE CVE-2021-47202 page https://www.suse.com/security/cve/CVE-2021-47202/
CVE SUSE CVE CVE-2021-47203 page https://www.suse.com/security/cve/CVE-2021-47203/
CVE SUSE CVE CVE-2021-47204 page https://www.suse.com/security/cve/CVE-2021-47204/
CVE SUSE CVE CVE-2021-47205 page https://www.suse.com/security/cve/CVE-2021-47205/
CVE SUSE CVE CVE-2021-47206 page https://www.suse.com/security/cve/CVE-2021-47206/
CVE SUSE CVE CVE-2021-47207 page https://www.suse.com/security/cve/CVE-2021-47207/
CVE SUSE CVE CVE-2021-47209 page https://www.suse.com/security/cve/CVE-2021-47209/
CVE SUSE CVE CVE-2021-47210 page https://www.suse.com/security/cve/CVE-2021-47210/
CVE SUSE CVE CVE-2021-47211 page https://www.suse.com/security/cve/CVE-2021-47211/
CVE SUSE CVE CVE-2021-47212 page https://www.suse.com/security/cve/CVE-2021-47212/
CVE SUSE CVE CVE-2021-47215 page https://www.suse.com/security/cve/CVE-2021-47215/
CVE SUSE CVE CVE-2021-47216 page https://www.suse.com/security/cve/CVE-2021-47216/
CVE SUSE CVE CVE-2021-47217 page https://www.suse.com/security/cve/CVE-2021-47217/
CVE SUSE CVE CVE-2021-47218 page https://www.suse.com/security/cve/CVE-2021-47218/
CVE SUSE CVE CVE-2021-47219 page https://www.suse.com/security/cve/CVE-2021-47219/
CVE SUSE CVE CVE-2022-48631 page https://www.suse.com/security/cve/CVE-2022-48631/
CVE SUSE CVE CVE-2022-48637 page https://www.suse.com/security/cve/CVE-2022-48637/
CVE SUSE CVE CVE-2022-48638 page https://www.suse.com/security/cve/CVE-2022-48638/
CVE SUSE CVE CVE-2022-48647 page https://www.suse.com/security/cve/CVE-2022-48647/
CVE SUSE CVE CVE-2022-48648 page https://www.suse.com/security/cve/CVE-2022-48648/
CVE SUSE CVE CVE-2022-48650 page https://www.suse.com/security/cve/CVE-2022-48650/
CVE SUSE CVE CVE-2022-48651 page https://www.suse.com/security/cve/CVE-2022-48651/
CVE SUSE CVE CVE-2022-48653 page https://www.suse.com/security/cve/CVE-2022-48653/
CVE SUSE CVE CVE-2022-48654 page https://www.suse.com/security/cve/CVE-2022-48654/
CVE SUSE CVE CVE-2022-48655 page https://www.suse.com/security/cve/CVE-2022-48655/
CVE SUSE CVE CVE-2022-48656 page https://www.suse.com/security/cve/CVE-2022-48656/
CVE SUSE CVE CVE-2022-48657 page https://www.suse.com/security/cve/CVE-2022-48657/
CVE SUSE CVE CVE-2022-48660 page https://www.suse.com/security/cve/CVE-2022-48660/
CVE SUSE CVE CVE-2022-48662 page https://www.suse.com/security/cve/CVE-2022-48662/
CVE SUSE CVE CVE-2022-48663 page https://www.suse.com/security/cve/CVE-2022-48663/
CVE SUSE CVE CVE-2022-48667 page https://www.suse.com/security/cve/CVE-2022-48667/
CVE SUSE CVE CVE-2022-48668 page https://www.suse.com/security/cve/CVE-2022-48668/
CVE SUSE CVE CVE-2023-0160 page https://www.suse.com/security/cve/CVE-2023-0160/
CVE SUSE CVE CVE-2023-4881 page https://www.suse.com/security/cve/CVE-2023-4881/
CVE SUSE CVE CVE-2023-52476 page https://www.suse.com/security/cve/CVE-2023-52476/
CVE SUSE CVE CVE-2023-52500 page https://www.suse.com/security/cve/CVE-2023-52500/
CVE SUSE CVE CVE-2023-52590 page https://www.suse.com/security/cve/CVE-2023-52590/
CVE SUSE CVE CVE-2023-52591 page https://www.suse.com/security/cve/CVE-2023-52591/
CVE SUSE CVE CVE-2023-52607 page https://www.suse.com/security/cve/CVE-2023-52607/
CVE SUSE CVE CVE-2023-52616 page https://www.suse.com/security/cve/CVE-2023-52616/
CVE SUSE CVE CVE-2023-52628 page https://www.suse.com/security/cve/CVE-2023-52628/
CVE SUSE CVE CVE-2023-6270 page https://www.suse.com/security/cve/CVE-2023-6270/
CVE SUSE CVE CVE-2023-7042 page https://www.suse.com/security/cve/CVE-2023-7042/
CVE SUSE CVE CVE-2023-7192 page https://www.suse.com/security/cve/CVE-2023-7192/
CVE SUSE CVE CVE-2024-0841 page https://www.suse.com/security/cve/CVE-2024-0841/
CVE SUSE CVE CVE-2024-22099 page https://www.suse.com/security/cve/CVE-2024-22099/
CVE SUSE CVE CVE-2024-23307 page https://www.suse.com/security/cve/CVE-2024-23307/
CVE SUSE CVE CVE-2024-23848 page https://www.suse.com/security/cve/CVE-2024-23848/
CVE SUSE CVE CVE-2024-23850 page https://www.suse.com/security/cve/CVE-2024-23850/
CVE SUSE CVE CVE-2024-25742 page https://www.suse.com/security/cve/CVE-2024-25742/
CVE SUSE CVE CVE-2024-26601 page https://www.suse.com/security/cve/CVE-2024-26601/
CVE SUSE CVE CVE-2024-26610 page https://www.suse.com/security/cve/CVE-2024-26610/
CVE SUSE CVE CVE-2024-26614 page https://www.suse.com/security/cve/CVE-2024-26614/
CVE SUSE CVE CVE-2024-26642 page https://www.suse.com/security/cve/CVE-2024-26642/
CVE SUSE CVE CVE-2024-26687 page https://www.suse.com/security/cve/CVE-2024-26687/
CVE SUSE CVE CVE-2024-26688 page https://www.suse.com/security/cve/CVE-2024-26688/
CVE SUSE CVE CVE-2024-26689 page https://www.suse.com/security/cve/CVE-2024-26689/
CVE SUSE CVE CVE-2024-26704 page https://www.suse.com/security/cve/CVE-2024-26704/
CVE SUSE CVE CVE-2024-26727 page https://www.suse.com/security/cve/CVE-2024-26727/
CVE SUSE CVE CVE-2024-26733 page https://www.suse.com/security/cve/CVE-2024-26733/
CVE SUSE CVE CVE-2024-26739 page https://www.suse.com/security/cve/CVE-2024-26739/
CVE SUSE CVE CVE-2024-26764 page https://www.suse.com/security/cve/CVE-2024-26764/
CVE SUSE CVE CVE-2024-26766 page https://www.suse.com/security/cve/CVE-2024-26766/
CVE SUSE CVE CVE-2024-26773 page https://www.suse.com/security/cve/CVE-2024-26773/
CVE SUSE CVE CVE-2024-26792 page https://www.suse.com/security/cve/CVE-2024-26792/
CVE SUSE CVE CVE-2024-26816 page https://www.suse.com/security/cve/CVE-2024-26816/
CVE SUSE CVE CVE-2024-26898 page https://www.suse.com/security/cve/CVE-2024-26898/
CVE SUSE CVE CVE-2024-26903 page https://www.suse.com/security/cve/CVE-2024-26903/
CVE SUSE CVE CVE-2024-27043 page https://www.suse.com/security/cve/CVE-2024-27043/
CVE SUSE CVE CVE-2024-27389 page https://www.suse.com/security/cve/CVE-2024-27389/
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...