gpp_maybe
Security update for the linux kernel (live patch 0 for sle 15 sp5)
SUSE-SLE-Module-Live-Patching-15-SP5-2023-3116
This update for the Linux Kernel 5.14.21-150500_53 fixes several issues. The following security issues were fixed: - - CVE-2023-33952: Fixed a vmwgfx Driver Double Free Local Privilege Escalation Vulnerability (bsc#1212348). - CVE-2023-35788: Fixed an out-of-bounds write in the flower classifier code via TCA_FLOWER_KEY_ENC_OPTS_GENEVE packets in fl_set_geneve_opt in net/sched/cls_flower.c (bsc#1212509). - CVE-2023-2235: Fixed an use-after-free in the Performance Events system can be exploited to achieve local privilege escalation (bsc#1210987). - CVE-2023-2002: Fixed a flaw that allowed an attacker to unauthorized execution of management commands, compromising the confidentiality, integrity, and availability of Bluetooth communication (bsc#1210566).
-
Release DateAug 1 2023
-
ReferencesBugzilla: 1210566, 1210987, 1212348, 1212509
CVEs: CVE-2023-2002, CVE-2023-2235, CVE-2023-33952, CVE-2023-35788 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.5 s390x
-
Packageskernel-livepatch-5_14_21-150500_53-default
Kernel live patch modulekernel-livepatch-SLE15-SP5_Update_02-150500.3.1 lock rpm
Kernel live patch module2-150500.3.1 lock src
SUSE Linux Enterprise Live Patching 15.5 x86_64
-
Packageskernel-livepatch-5_14_21-150500_53-default
Kernel live patch modulekernel-livepatch-SLE15-SP5_Update_02-150500.3.1 lock rpm
Kernel live patch module2-150500.3.1 lock src
SUSE Linux Enterprise Live Patching 15.5 ppc64le
-
Packageskernel-livepatch-5_14_21-150500_53-default
Kernel live patch modulekernel-livepatch-SLE15-SP5_Update_02-150500.3.1 lock rpm
Kernel live patch module2-150500.3.1 lock src