gpp_maybe
Security update for the linux kernel (live patch 28 for sle 12 sp5)
SUSE-SLE-Live-Patching-12-SP5-2022-2745
This update for the Linux Kernel 4.12.14-122_110 fixes several issues. The following security issues were fixed: - CVE-2022-28389: Fixed a double free in drivers/net/can/usb/mcba_usb.c vulnerability in the Linux kernel. (bnc#1198033) - CVE-2022-26490: Fixed a buffer overflow in the st21nfca driver. An attacker with adjacent NFC access could crash the system or corrupt the system memory. (bsc#1196830) - CVE-2022-1419: Fixed a concurrency use-after-free in vgem_gem_dumb_create (bsc#1198742). - CVE-2022-28390: Fixed a double free in drivers/net/can/usb/ems_usb.c vulnerability in the Linux kernel (bnc#1198031). - CVE-2022-1679: Fixed a use-after-free in the Atheros wireless driver in the way a user forces the ath9k_htc_wait_for_target function to fail with some input messages (bsc#1199487). - CVE-2022-20141: Fixed a possible use after free due to improper locking in ip_check_mc_rcu() (bsc#1200604).
-
Release DateAug 10 2022
-
ReferencesBugzilla: 1200605, 1201080, 1201517, 1201655, 1201656, 1201657
CVEs: CVE-2022-1419, CVE-2022-1679, CVE-2022-20141, CVE-2022-26490, CVE-2022-28389, CVE-2022-28390 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 12.5 s390x
-
Packageskgraft-patch-4_12_14-122_110-default
Kgraft patch modulekgraft-patch-SLE12-SP5_Update_289-2.2 lock rpm
Kgraft patch module9-2.2 lock src
SUSE Linux Enterprise Live Patching 12.5 ppc64le
-
Packageskgraft-patch-4_12_14-122_110-default
Kgraft patch modulekgraft-patch-SLE12-SP5_Update_289-2.2 lock rpm
Kgraft patch module9-2.2 lock src
SUSE Linux Enterprise Live Patching 12.5 x86_64
-
Packageskgraft-patch-4_12_14-122_110-default
Kgraft patch modulekgraft-patch-SLE12-SP5_Update_289-2.2 lock rpm
Kgraft patch module9-2.2 lock src