gpp_maybe
Security update for the linux kernel (live patch 14 for sle 15 sp3)
SUSE-SLE-Module-Live-Patching-15-SP3-2022-2726
This update for the Linux Kernel 5.3.18-150300_59_49 fixes several issues. The following security issues were fixed: - CVE-2022-28389: Fixed a double free in drivers/net/can/usb/mcba_usb.c vulnerability in the Linux kernel. (bnc#1198033) - CVE-2022-26490: Fixed a buffer overflow in the st21nfca driver. An attacker with adjacent NFC access could crash the system or corrupt the system memory. (bsc#1196830) - CVE-2022-28390: Fixed a double free in drivers/net/can/usb/ems_usb.c vulnerability in the Linux kernel (bnc#1198031). - CVE-2022-34918: Fixed a buffer overflow with nft_set_elem_init() that could be used by a local attacker to escalate privileges (bnc#1201171). - CVE-2022-1679: Fixed a use-after-free in the Atheros wireless driver in the way a user forces the ath9k_htc_wait_for_target function to fail with some input messages (bsc#1199487). - CVE-2022-20141: Fixed a possible use after free due to improper locking in ip_check_mc_rcu() (bsc#1200604).
-
Release DateAug 9 2022
-
ReferencesBugzilla: 1200605, 1201080, 1201222, 1201517, 1201656, 1201657
CVEs: CVE-2022-1679, CVE-2022-20141, CVE-2022-26490, CVE-2022-28389, CVE-2022-28390, CVE-2022-34918 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.3 s390x
-
Packageskernel-livepatch-5_3_18-150300_59_49-default
Kernel live patch modulekernel-livepatch-SLE15-SP3_Update_1411-150300.2.2 lock rpm
Kernel live patch module11-150300.2.2 lock src
SUSE Linux Enterprise Live Patching 15.3 ppc64le
-
Packageskernel-livepatch-5_3_18-150300_59_49-default
Kernel live patch modulekernel-livepatch-SLE15-SP3_Update_1411-150300.2.2 lock rpm
Kernel live patch module11-150300.2.2 lock src
SUSE Linux Enterprise Live Patching 15.3 x86_64
-
Packageskernel-livepatch-5_3_18-150300_59_49-default
Kernel live patch modulekernel-livepatch-SLE15-SP3_Update_1411-150300.2.2 lock rpm
Kernel live patch module11-150300.2.2 lock src