gpp_maybe
Security update for the linux kernel (live patch 33 for sle 15 sp1)
SUSE-SLE-Module-Live-Patching-15-SP1-2023-3602
This update for the Linux Kernel 4.12.14-150100_197_120 fixes several issues. The following security issues were fixed: - CVE-2023-3567: Fixed a use-after-free in vcs_read in drivers/tty/vt/vc_screen.c (bsc#1213244). - CVE-2023-35001: Fixed an out-of-bounds memory access flaw in nft_byteorder that could allow a local attacker to escalate their privilege (bsc#1213063). - CVE-2023-1077: Fixed a type confusion in pick_next_rt_entity(), that could cause memory corruption (bsc#1208839). - CVE-2023-2176: Fixed an out-of-boundary read in compare_netdev_and_ip in drivers/infiniband/core/cma.c in RDMA (bsc#1210630). - CVE-2023-3090: Fixed a heap out-of-bounds write in the ipvlan network driver (bsc#1212849).
-
Release DateSep 14 2023
-
ReferencesBugzilla: 1208839, 1210630, 1212849, 1213063, 1213244
CVEs: CVE-2023-1077, CVE-2023-2176, CVE-2023-3090, CVE-2023-35001, CVE-2023-3567 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.1 ppc64le
-
Packageskernel-livepatch-4_12_14-150100_197_120-default
Kernel live patch modulekernel-livepatch-SLE15-SP1_Update_3313-150100.2.2 lock rpm
Kernel live patch module13-150100.2.2 lock src
SUSE Linux Enterprise Live Patching 15.1 x86_64
-
Packageskernel-livepatch-4_12_14-150100_197_120-default
Kernel live patch modulekernel-livepatch-SLE15-SP1_Update_3313-150100.2.2 lock rpm
Kernel live patch module13-150100.2.2 lock src