gpp_maybe
Security update for the linux kernel
SUSE-SLE-Module-Live-Patching-15-SP2-2024-3499
The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security bugfixes. The following security bugs were fixed: - CVE-2022-48791: Fix use-after-free for aborted TMF sas_task (bsc#1228002) - CVE-2024-44947: Initialize beyond-EOF page contents before setting uptodate (bsc#1229454). - CVE-2022-48919: Fix double free race when mount fails in cifs_get_root() (bsc#1229657). - CVE-2023-52854: Fix refcnt handling in padata_free_shell() (bsc#1225584). - CVE-2024-43883: Do not drop references before new references are gained (bsc#1229707). - CVE-2024-41062: Sync sock recv cb and release (bsc#1228576). - CVE-2024-43861: Fix memory leak for not ip packets (bsc#1229500). - CVE-2024-43882: Fixed ToCToU between perm check and set-uid/gid usage. (bsc#1229503) - CVE-2022-48912: Fix use-after-free in __nf_register_net_hook() (bsc#1229641) - CVE-2022-48872: Fix use-after-free race condition for maps (bsc#1229510). - CVE-2022-48873: Do not remove map on creater_process and device_release (bsc#1229512). - CVE-2024-42271: Fixed a use after free in iucv_sock_close(). (bsc#1229400) - CVE-2024-42232: Fixed a race between delayed_work() and ceph_monc_stop(). (bsc#1228959) - CVE-2022-48686: Fixed UAF when detecting digest errors (bsc#1223948). The following non-security bugs were fixed: - Bluetooth: L2CAP: Fix deadlock (git-fixes). - powerpc: Remove support for PowerPC 601 (Remove unused and malformed assembly causing build error). - sched/psi: use kernfs polling functions for PSI trigger polling (bsc#1209799 bsc#1225109). - scsi: pm80xx: Fix TMF task completion race condition (bsc#1228002)
-
Release DateSep 30 2024
-
ReferencesBugzilla: 1196018, 1196823, 1202346, 1209636, 1209799, 1210629, 1216834, 1220185, 1220186, 1222251, 1222728, 1223948, 1225109, 1225584, 1227942, 1227969, 1227985, 1228002, 1228015, 1228114, 1228516, 1228576, 1228959, 1229400, 1229454, 1229500, 1229503, 1229510, 1229512, 1229607, 1229630, 1229641, 1229657, 1229707
CVEs: CVE-2023-2176, CVE-2022-48925, CVE-2022-48901, CVE-2024-41011, CVE-2024-42077, CVE-2023-1582, CVE-2022-48802, CVE-2022-20368, CVE-2022-48839, CVE-2022-28748, CVE-2022-2964, CVE-2022-48805, CVE-2022-0854, CVE-2022-48853, CVE-2024-26583, CVE-2024-26584, CVE-2024-26800, CVE-2022-48791, CVE-2024-44947, CVE-2022-48919, CVE-2023-52854, CVE-2024-43883, CVE-2024-41062, CVE-2024-43861, CVE-2024-43882, CVE-2022-48912, CVE-2022-48872, CVE-2022-48873, CVE-2024-42271, CVE-2024-42232, CVE-2022-48686 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.2 ppc64le
-
Packageskernel-default
The Standard Kernelkernel-default-livepatch5.3.18-150200.24.203.1 lock nosrc
Metapackage to pull in matching kernel-livepatch packagekernel-default-livepatch-devel5.3.18-150200.24.203.1 lock rpm
Kernel symbols file used during kGraft patch developmentkernel-livepatch-5_3_18-150200_24_203-default5.3.18-150200.24.203.1 lock rpm
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_521-150200.5.3.1 lock rpm
Kernel live patch module1-150200.5.3.1 lock src
SUSE Linux Enterprise Live Patching 15.2 s390x
-
Packageskernel-default
The Standard Kernelkernel-default-livepatch5.3.18-150200.24.203.1 lock nosrc
Metapackage to pull in matching kernel-livepatch packagekernel-default-livepatch-devel5.3.18-150200.24.203.1 lock rpm
Kernel symbols file used during kGraft patch developmentkernel-livepatch-5_3_18-150200_24_203-default5.3.18-150200.24.203.1 lock rpm
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_521-150200.5.3.1 lock rpm
Kernel live patch module1-150200.5.3.1 lock src
SUSE Linux Enterprise Live Patching 15.2 x86_64
-
Packageskernel-default
The Standard Kernelkernel-default-livepatch5.3.18-150200.24.203.1 lock nosrc
Metapackage to pull in matching kernel-livepatch packagekernel-default-livepatch-devel5.3.18-150200.24.203.1 lock rpm
Kernel symbols file used during kGraft patch developmentkernel-livepatch-5_3_18-150200_24_203-default5.3.18-150200.24.203.1 lock rpm
Kernel live patch modulekernel-livepatch-SLE15-SP2_Update_521-150200.5.3.1 lock rpm
Kernel live patch module1-150200.5.3.1 lock src