gpp_maybe
Security update for the linux kernel (live patch 21 for sle 15 sp2)
SUSE-SLE-Module-Live-Patching-15-SP2-2022-1222
This update for the Linux Kernel 5.3.18-24_93 fixes several issues. The following security issues were fixed: - CVE-2022-27666: Fixed a buffer overflow vulnerability in IPsec ESP transformation code. This flaw allowed a local attacker with a normal user privilege to overwrite kernel heap objects and may cause a local privilege escalation. (bnc#1197462) - CVE-2021-39698: Fixed a possible memory corruption due to a use after free in aio_poll_complete_work. This could lead to local escalation of privilege with no additional execution privileges needed. (bsc#1196956) - CVE-2022-22942: Fixed stale file descriptors on failed usercopy. (bsc#1195065)
-
Release DateApr 14 2022
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.2 ppc64le
-
Packageskernel-livepatch-5_3_18-24_93-default
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_217-150200.2.1 lock rpm
Kernel live patch module7-150200.2.1 lock src
SUSE Linux Enterprise Live Patching 15.2 s390x
-
Packageskernel-livepatch-5_3_18-24_93-default
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_217-150200.2.1 lock rpm
Kernel live patch module7-150200.2.1 lock src
SUSE Linux Enterprise Live Patching 15.2 x86_64
-
Packageskernel-livepatch-5_3_18-24_93-default
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_217-150200.2.1 lock rpm
Kernel live patch module7-150200.2.1 lock src