gpp_maybe
Security update for the linux kernel
SUSE-SLE-Module-Live-Patching-15-SP4-2024-2189
The SUSE Linux Enterprise 15 SP4 kernel was updated to receive various security bugfixes. The following security bugs were fixed: - CVE-2024-35905: Fixed int overflow for stack access size (bsc#1224488). - CVE-2024-26828: Fix underflow in parse_server_interfaces() (bsc#1223084). - CVE-2024-35863: Fix potential UAF in is_valid_oplock_break() (bsc#1224763). - CVE-2024-35867: Fix potential UAF in cifs_stats_proc_show() (bsc#1224664). - CVE-2024-35868: Fix potential UAF in cifs_stats_proc_write() (bsc#1224678). - CVE-2024-26928: Fix potential UAF in cifs_debug_files_proc_show() (bsc#1223532). - CVE-2024-36926: Fixed LPAR panics during boot up with a frozen PE (bsc#1222011). - CVE-2024-26925: Release mutex after nft_gc_seq_end from abort path (bsc#1223390). - CVE-2024-27413: Fix incorrect allocation size (bsc#1224438). - CVE-2024-35817: Set gtt bound flag in amdgpu_ttm_gart_bind (bsc#1224736). - CVE-2024-35904: Avoid dereference of garbage after mount failure (bsc#1224494). - CVE-2024-26929: Fixed double free of fcport (bsc#1223715). - CVE-2024-27398: Fixed use-after-free bugs caused by sco_sock_timeout (bsc#1224174). - CVE-2024-26930: Fixed double free of the ha->vp_map pointer (bsc#1223626). - CVE-2024-26840: Fixed a memory leak in cachefiles_add_cache() (bsc#1222976). - CVE-2024-26862: Fixed packet annotate data-races around ignore_outgoing (bsc#1223111). - CVE-2024-0639: Fixed a denial-of-service vulnerability due to a deadlock found in sctp_auto_asconf_init in net/sctp/socket.c (bsc#1218917). - CVE-2024-26921: Preserve kabi for sk_buff (bsc#1223138). - CVE-2024-26852: Fixed use-after-free in ip6_route_mpath_notify() (bsc#1223057). - CVE-2023-1829: Fixed a use-after-free vulnerability in the control index filter (tcindex) (bsc#1210335). The following non-security bugs were fixed: - af_unix: Do not use atomic ops for unix_sk(sk)->inflight (bsc#1223384). - af_unix: Replace BUG_ON() with WARN_ON_ONCE() (bsc#1223384). - af_unix: annote lockless accesses to unix_tot_inflight & gc_in_progress (bsc#1223384). - filemap: remove use of wait bookmarks (bsc#1224085). - idpf: extend tx watchdog timeout (bsc#1224137). - ipvs: Fix checksumming on GSO of SCTP packets (bsc#1221958) - powerpc/kasan: Do not instrument non-maskable or raw interrupts (bsc#1223191). - powerpc/powernv: Add a null pointer check in opal_event_init() (bsc#1065729). - powerpc/powernv: Add a null pointer check to scom_debug_init_one() (bsc#1194869). - powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV (bsc#1220492 ltc#205270). - powerpc/pseries/vio: Do not return ENODEV if node or compatible missing (bsc#1220783). - powerpc: Avoid nmi_enter/nmi_exit in real mode interrupt (bsc#1221645 ltc#205739 bsc#1223191). - powerpc: Refactor verification of MSR_RI (bsc#1223191).
-
Release DateJun 25 2024
-
ReferencesBugzilla: 1190569, 1065729, 1174585, 1191949, 1192107, 1193983, 1194288, 1194869, 1196869, 1196956, 1197915, 1200313, 1201308, 1201489, 1208149, 1209657, 1209799, 1209834, 1210335, 1211592, 1213863, 1216702, 1217169, 1217515, 1218447, 1218917, 1220492, 1220783, 1221044, 1221645, 1221958, 1222011, 1222559, 1222619, 1222721, 1222976, 1223057, 1223084, 1223111, 1223138, 1223191, 1223384, 1223390, 1223481, 1223501, 1223505, 1223512, 1223520, 1223532, 1223626, 1223715, 1223894, 1223921, 1223922, 1223923, 1223924, 1223929, 1223931, 1223932, 1223934, 1223941, 1223948, 1223952, 1223953, 1223957, 1223962, 1223963, 1223964, 1223996, 1224085, 1224099, 1224137, 1224174, 1224438, 1224482, 1224488, 1224494, 1224511, 1224592, 1224611, 1224664, 1224678, 1224682, 1224685, 1224730, 1224736, 1224763, 1224816, 1224895, 1224898, 1224900, 1224901, 1224902, 1224903, 1224904, 1224905, 1224907, 1224909, 1224910, 1224911, 1224912, 1224913, 1224914, 1224915, 1224920, 1224928, 1224931, 1224932, 1224937, 1224942, 1224944, 1224945, 1224947, 1224956, 1224988, 1225000, 1225003, 1225335, 1225005, 1225009, 1225022, 1225031, 1225032, 1225036, 1225044, 1225076, 1225077, 1225082, 1225086, 1225092, 1225095, 1225096, 1225106, 1225108, 1225109, 1225118, 1225121, 1225122, 1225123, 1225125, 1225126, 1225127, 1225129, 1225131, 1225132, 1225145, 1225151, 1225153, 1225156, 1225158, 1225160, 1225161, 1225164, 1225167, 1225180, 1225183, 1225184, 1225186, 1225187, 1225189, 1225190, 1225191, 1225192, 1225193, 1225195, 1225198, 1225201, 1225203, 1225205, 1225206, 1225207, 1225208, 1225209, 1225210, 1225214, 1225223, 1225224, 1225225, 1225227, 1225228, 1225229, 1225230, 1225232, 1225233, 1225235, 1225236, 1225237, 1225238, 1225239, 1225240, 1225241, 1225242, 1225243, 1225244, 1225245, 1225246, 1225247, 1225248, 1225249, 1225250, 1225251, 1225252, 1225253, 1225254, 1225255, 1225256, 1225257, 1225258, 1225259, 1225260, 1225261, 1225262, 1225263, 1225268, 1225301, 1225303, 1225304, 1225306, 1225316, 1225318, 1225320, 1225321, 1225322, 1225323, 1225326, 1225327, 1225328, 1225329, 1225330, 1225331, 1225332, 1225333, 1225334, 1225336, 1225337, 1225338, 1225339, 1225341, 1225342, 1225344, 1225346, 1225347, 1225351, 1225353, 1225354, 1225355, 1225357, 1225358, 1225360, 1225361, 1225366, 1225367, 1225368, 1225369, 1225370, 1225372, 1225373, 1225374, 1225375, 1225376, 1225377, 1225379, 1225380, 1225383, 1225384, 1225386, 1225387, 1225388, 1225390, 1225392, 1225393, 1225396, 1225400, 1225404, 1225405, 1225409, 1225410, 1225411, 1225425, 1225427, 1225431, 1225435, 1225436, 1225437, 1225438, 1225439, 1225441, 1225445, 1225446, 1225447, 1225450, 1225453, 1225455, 1225461, 1225463, 1225464, 1225466, 1225471, 1225472, 1225478, 1225479, 1225482, 1225483, 1225486, 1225488, 1225490, 1225492, 1225495, 1225499, 1225500, 1225501, 1225508, 1225510, 1225529, 1225530, 1225532, 1225534, 1225549, 1225550, 1225553, 1225554, 1225557, 1225559, 1225560, 1225565, 1225566, 1225569, 1225570, 1225571, 1225572, 1225577, 1225583, 1225584, 1225588, 1225589, 1225590, 1225591, 1225592, 1225595, 1225599
CVEs: CVE-2023-52736, CVE-2023-52806, CVE-2023-52833, CVE-2023-52739, CVE-2023-52745, CVE-2023-52747, CVE-2023-52840, CVE-2023-52744, CVE-2023-52834, CVE-2023-52878, CVE-2023-52741, CVE-2023-52875, CVE-2023-52870, CVE-2023-52873, CVE-2023-52865, CVE-2023-52858, CVE-2023-52876, CVE-2023-52819, CVE-2023-52818, CVE-2023-52753, CVE-2023-52817, CVE-2023-52814, CVE-2023-52738, CVE-2023-52825, CVE-2023-52816, CVE-2023-52856, CVE-2023-52821, CVE-2023-52826, CVE-2023-52867, CVE-2023-52838, CVE-2023-52810, CVE-2023-52804, CVE-2023-52759, CVE-2023-52853, CVE-2023-52791, CVE-2023-52763, CVE-2023-52788, CVE-2023-52743, CVE-2023-52799, CVE-2023-52805, CVE-2023-52847, CVE-2023-52764, CVE-2023-52754, CVE-2023-52841, CVE-2023-52844, CVE-2023-52708, CVE-2023-52730, CVE-2023-52742, CVE-2023-52702, CVE-2023-52703, CVE-2023-52854, CVE-2023-52864, CVE-2023-52740, CVE-2023-52686, CVE-2023-52690, CVE-2023-52756, CVE-2023-52774, CVE-2023-52733, CVE-2023-52707, CVE-2023-52871, CVE-2023-52868, CVE-2023-52872, CVE-2023-52880, CVE-2023-52789, CVE-2023-52781, CVE-2023-52855, CVE-2023-52877, CVE-2023-52798, CVE-2023-52832, CVE-2022-48710, CVE-2022-48709, CVE-2022-48708, CVE-2021-47511, CVE-2021-47509, CVE-2021-47381, CVE-2021-47502, CVE-2021-47380, CVE-2021-47404, CVE-2021-47522, CVE-2021-47405, CVE-2021-47523, CVE-2021-47485, CVE-2021-43056, CVE-2021-47465, CVE-2021-47389, CVE-2021-47450, CVE-2021-47390, CVE-2021-47407, CVE-2021-47442, CVE-2021-47443, CVE-2021-47391, CVE-2021-47392, CVE-2021-47398, CVE-2021-47481, CVE-2021-47366, CVE-2021-39698, CVE-2021-47505, CVE-2021-47464, CVE-2021-47360, CVE-2021-47379, CVE-2021-47375, CVE-2021-47412, CVE-2021-47376, CVE-2021-47426, CVE-2021-47433, CVE-2021-47510, CVE-2021-47457, CVE-2021-47459, CVE-2021-47520, CVE-2021-47456, CVE-2021-47521, CVE-2021-47494, CVE-2021-47488, CVE-2021-47359, CVE-2021-47364, CVE-2021-47477, CVE-2021-47476, CVE-2021-47474, CVE-2021-47475, CVE-2021-47387, CVE-2021-47514, CVE-2021-47435, CVE-2021-47498, CVE-2021-47374, CVE-2021-47550, CVE-2021-47551, CVE-2021-47362, CVE-2021-47431, CVE-2021-47421, CVE-2021-47420, CVE-2021-47410, CVE-2021-47444, CVE-2021-47445, CVE-2021-47447, CVE-2021-47446, CVE-2021-47535, CVE-2021-47471, CVE-2021-47423, CVE-2021-47422, CVE-2021-47490, CVE-2021-47533, CVE-2021-47368, CVE-2021-47556, CVE-2021-47406, CVE-2021-47393, CVE-2021-47386, CVE-2021-47385, CVE-2021-47384, CVE-2021-47425, CVE-2021-47501, CVE-2021-47424, CVE-2021-47453, CVE-2021-47563, CVE-2021-47449, CVE-2021-47562, CVE-2021-47499, CVE-2021-47437, CVE-2021-47500, CVE-2021-47403, CVE-2021-47401, CVE-2021-47373, CVE-2021-47468, CVE-2021-47478, CVE-2021-47529, CVE-2021-47415, CVE-2021-47399, CVE-2021-47467, CVE-2021-47417, CVE-2021-47388, CVE-2021-47396, CVE-2021-47395, CVE-2021-47361, CVE-2021-47560, CVE-2021-47441, CVE-2021-47462, CVE-2021-47463, CVE-2021-47466, CVE-2021-47470, CVE-2021-47370, CVE-2021-47448, CVE-2021-47540, CVE-2021-47482, CVE-2021-47513, CVE-2021-47439, CVE-2021-47440, CVE-2021-47400, CVE-2021-47372, CVE-2021-47564, CVE-2021-47472, CVE-2021-47541, CVE-2021-47438, CVE-2021-47542, CVE-2021-47402, CVE-2021-47419, CVE-2021-47559, CVE-2021-47536, CVE-2021-47558, CVE-2021-47496, CVE-2021-47418, CVE-2021-47408, CVE-2021-47452, CVE-2021-47394, CVE-2021-47451, CVE-2021-47363, CVE-2021-47371, CVE-2021-47518, CVE-2021-47516, CVE-2021-47507, CVE-2021-47506, CVE-2021-47378, CVE-2021-47497, CVE-2021-47460, CVE-2021-47493, CVE-2021-47458, CVE-2021-47537, CVE-2021-47484, CVE-2021-47416, CVE-2021-47429, CVE-2021-47428, CVE-2021-47454, CVE-2021-47455, CVE-2021-47483, CVE-2021-47414, CVE-2021-47486, CVE-2021-47369, CVE-2021-47382, CVE-2021-47549, CVE-2021-47553, CVE-2021-47480, CVE-2021-47427, CVE-2021-47565, CVE-2021-47503, CVE-2021-47473, CVE-2021-47397, CVE-2021-47527, CVE-2021-47526, CVE-2021-47524, CVE-2021-47525, CVE-2021-47469, CVE-2021-47358, CVE-2021-47479, CVE-2021-47544, CVE-2021-47383, CVE-2021-47528, CVE-2021-47413, CVE-2021-47409, CVE-2021-47436, CVE-2021-47495, CVE-2021-47461, CVE-2021-47554, CVE-2021-47367, CVE-2021-47430, CVE-2021-47434, CVE-2021-47534, CVE-2023-52766, CVE-2023-52811, CVE-2023-52800, CVE-2023-0160, CVE-2024-35895, CVE-2024-26764, CVE-2024-35815, CVE-2023-52591, CVE-2024-35914, CVE-2023-47233, CVE-2024-35811, CVE-2023-52676, CVE-2021-47365, CVE-2021-47489, CVE-2021-4148, CVE-2021-47491, CVE-2021-47492, CVE-2020-36788, CVE-2023-6531, CVE-2023-52654, CVE-2023-52655, CVE-2022-48699, CVE-2024-26739, CVE-2022-48702, CVE-2022-48701, CVE-2022-48694, CVE-2022-48692, CVE-2022-48671, CVE-2022-48704, CVE-2022-48688, CVE-2023-2860, CVE-2022-48687, CVE-2022-48673, CVE-2022-48686, CVE-2022-48697, CVE-2022-48672, CVE-2022-48695, CVE-2022-48693, CVE-2022-48703, CVE-2022-48700, CVE-2022-48662, CVE-2022-48675, CVE-2022-48634, CVE-2022-48632, CVE-2022-48652, CVE-2022-48636, CVE-2024-26921, CVE-2024-35905, CVE-2024-26828, CVE-2024-35863, CVE-2024-35867, CVE-2024-35868, CVE-2024-26928, CVE-2024-36926, CVE-2024-26925, CVE-2024-27413, CVE-2024-35817, CVE-2024-35904, CVE-2024-26929, CVE-2024-27398, CVE-2024-26930, CVE-2024-26840, CVE-2024-26862, CVE-2024-0639, CVE-2024-26852, CVE-2023-1829 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.4 s390x
-
Packageskernel-default
The Standard Kernelkernel-default-livepatch5.14.21-150400.24.122.2 lock nosrc
Metapackage to pull in matching kernel-livepatch packagekernel-default-livepatch-devel5.14.21-150400.24.122.2 lock rpm
Kernel symbols file used during kGraft patch developmentkernel-livepatch-5_14_21-150400_24_122-default5.14.21-150400.24.122.2 lock rpm
Kernel live patch modulekernel-livepatch-SLE15-SP4_Update_271-150400.9.3.2 lock rpm
Kernel live patch module1-150400.9.3.2 lock src
SUSE Linux Enterprise Live Patching 15.4 x86_64
-
Packageskernel-default
The Standard Kernelkernel-default-livepatch5.14.21-150400.24.122.2 lock nosrc
Metapackage to pull in matching kernel-livepatch packagekernel-default-livepatch-devel5.14.21-150400.24.122.2 lock rpm
Kernel symbols file used during kGraft patch developmentkernel-livepatch-5_14_21-150400_24_122-default5.14.21-150400.24.122.2 lock rpm
Kernel live patch modulekernel-livepatch-SLE15-SP4_Update_271-150400.9.3.2 lock rpm
Kernel live patch module1-150400.9.3.2 lock src
SUSE Linux Enterprise Live Patching 15.4 ppc64le
-
Packageskernel-default
The Standard Kernelkernel-default-livepatch5.14.21-150400.24.122.2 lock nosrc
Metapackage to pull in matching kernel-livepatch packagekernel-default-livepatch-devel5.14.21-150400.24.122.2 lock rpm
Kernel symbols file used during kGraft patch developmentkernel-livepatch-5_14_21-150400_24_122-default5.14.21-150400.24.122.2 lock rpm
Kernel live patch modulekernel-livepatch-SLE15-SP4_Update_271-150400.9.3.2 lock rpm
Kernel live patch module1-150400.9.3.2 lock src