gpp_maybe
Security update for the linux kernel (live patch 28 for sle 15)
SUSE-SLE-Module-Live-Patching-15-2022-4127
This update for the Linux Kernel 4.12.14-150_86 fixes several issues. The following security issues were fixed: - CVE-2020-36557: Fixed a race condition between the VT_DISALLOCATE ioctl and closing/opening of ttys that could have led to a use-after-free (bnc#1201429). - CVE-2020-36558: Fixed a race condition involving VT_RESIZEX which could lead to a NULL pointer dereference and general protection fault (bnc#1200910). - CVE-2021-33655: Fixed out of bounds write with ioctl FBIOPUT_VSCREENINFO (bnc#1201635). - CVE-2022-2588: Fixed use-after-free in cls_route (bsc#1202096). - CVE-2022-42703: Fixed use-after-free in mm/rmap.c related to leaf anon_vma double reuse (bnc#1204168). - Fixed incorrect handling of empty arguments array in execve() (bsc#1200571).
-
Release DateNov 18 2022
-
ReferencesBugzilla: 1201742, 1201752, 1202087, 1203613, 1204170, 1204381
CVEs: CVE-2020-36557, CVE-2020-36558, CVE-2021-33655, CVE-2022-2588, CVE-2022-42703 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15 ppc64le
-
Packageskernel-livepatch-4_12_14-150_86-default
Kernel live patch modulekernel-livepatch-SLE15_Update_2810-150000.2.2 lock rpm
Kernel live patch module10-150000.2.2 lock src
SUSE Linux Enterprise Live Patching 15 x86_64
-
Packageskernel-livepatch-4_12_14-150_86-default
Kernel live patch modulekernel-livepatch-SLE15_Update_2810-150000.2.2 lock rpm
Kernel live patch module10-150000.2.2 lock src