gpp_maybe
Security update for the linux kernel (live patch 22 for sle 15 sp2)
SUSE-SLE-Module-Live-Patching-15-SP2-2022-1228
This update for the Linux Kernel 5.3.18-24_96 fixes several issues. The following security issues were fixed: - CVE-2022-27666: Fixed a buffer overflow vulnerability in IPsec ESP transformation code. This flaw allowed a local attacker with a normal user privilege to overwrite kernel heap objects and may cause a local privilege escalation. (bnc#1197462) - CVE-2021-39698: Fixed a possible memory corruption due to a use after free in aio_poll_complete_work. This could lead to local escalation of privilege with no additional execution privileges needed. (bsc#1196956) - CVE-2022-22942: Fixed stale file descriptors on failed usercopy. (bsc#1195065)
-
Release DateApr 14 2022
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.2 ppc64le
-
Packageskernel-livepatch-5_3_18-24_96-default
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_226-150200.2.1 lock rpm
Kernel live patch module6-150200.2.1 lock src
SUSE Linux Enterprise Live Patching 15.2 x86_64
-
Packageskernel-livepatch-5_3_18-24_96-default
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_226-150200.2.1 lock rpm
Kernel live patch module6-150200.2.1 lock src
SUSE Linux Enterprise Live Patching 15.2 s390x
-
Packageskernel-livepatch-5_3_18-24_96-default
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_226-150200.2.1 lock rpm
Kernel live patch module6-150200.2.1 lock src