gpp_maybe
Security update for the linux kernel (live patch 33 for sle 15 sp2)
SUSE-SLE-Module-Live-Patching-15-SP2-2023-3616
This update for the Linux Kernel 5.3.18-150200_24_142 fixes several issues. The following security issues were fixed: - CVE-2023-32233: Fixed a use-after-free in Netfilter nf_tables when processing batch requests (bsc#1211187). - CVE-2023-3567: Fixed a use-after-free in vcs_read in drivers/tty/vt/vc_screen.c (bsc#1213244). - CVE-2023-35001: Fixed an out-of-bounds memory access flaw in nft_byteorder that could allow a local attacker to escalate their privilege (bsc#1213063). - CVE-2023-1077: Fixed a type confusion in pick_next_rt_entity(), that could cause memory corruption (bsc#1208839). - CVE-2023-2176: Fixed an out-of-boundary read in compare_netdev_and_ip in drivers/infiniband/core/cma.c in RDMA (bsc#1210630). - CVE-2023-3090: Fixed a heap out-of-bounds write in the ipvlan network driver (bsc#1212849).
-
Release DateSep 15 2023
-
ReferencesBugzilla: 1208839, 1210630, 1211187, 1212849, 1213063, 1213244
CVEs: CVE-2023-1077, CVE-2023-2176, CVE-2023-3090, CVE-2023-32233, CVE-2023-35001, CVE-2023-3567 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.2 ppc64le
-
Packageskernel-livepatch-5_3_18-150200_24_142-default
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_337-150200.2.2 lock rpm
Kernel live patch module7-150200.2.2 lock src
SUSE Linux Enterprise Live Patching 15.2 x86_64
-
Packageskernel-livepatch-5_3_18-150200_24_142-default
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_337-150200.2.2 lock rpm
Kernel live patch module7-150200.2.2 lock src
SUSE Linux Enterprise Live Patching 15.2 s390x
-
Packageskernel-livepatch-5_3_18-150200_24_142-default
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_337-150200.2.2 lock rpm
Kernel live patch module7-150200.2.2 lock src