The openSUSE Leap 15.2 kernel was updated to receive various security and
bugfixes.
The following security bugs were fixed:
- CVE-2021-22555: A heap out-of-bounds write affecting Linux was
discovered in net/netfilter/x_tables.c (bnc#1188116).
- CVE-2021-33909: fs/seq_file.c did not properly restrict seq buffer
allocations, leading to an integer overflow, an Out-of-bounds Write, and
escalation to root by an unprivileged user, aka CID-8cae8cd89f05
(bnc#1188062).
- CVE-2021-3609: A use-after-free in can/bcm could have led to privilege
escalation (bsc#1187215).
- CVE-2021-3612: An out-of-bounds memory write flaw was found in the
joystick devices subsystem in versions before 5.9-rc1, in the way the
user calls ioctl JSIOCSBTNMAP. This flaw allowed a local user to crash
the system or possibly escalate their privileges on the system. The
highest threat from this vulnerability is to confidentiality, integrity,
as well...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.2:
zypper in -t patch openSUSE-2021-1076=1
- openSUSE Leap 15.2 (noarch):
kernel-devel-5.3.18-lp152.84.1
kernel-docs-5.3.18-lp152.84.1
kernel-docs-html-5.3.18-lp152.84.1
kernel-macros-5.3.18-lp152.84.1
kernel-source-5.3.18-lp152.84.1
kernel-source-vanilla-5.3.18-lp152.84.1
- openSUSE Leap 15.2 (x86_64):
kernel-debug-5.3.18-lp152.84.1
kernel-debug-debuginfo-5.3.18-lp152.84.1
kernel-debug-debugsource-5.3.18-lp152.84.1
kernel-debug-devel-5.3.18-lp152.84.1
kernel-debug-devel-debuginfo-5.3.18-lp152.84.1
kernel-default-5.3.18-lp152.84.1
kernel-default-base-5.3.18-lp152.84.1.lp152.8.38.1
kernel-default-base-rebuild-5.3.18-lp152.84.1.lp152.8.38.1
kernel-default-debuginfo-5.3.18-lp152.84.1
kernel-default-debugsource-5.3.18-lp152.84.1
kernel-default-devel-5.3.18-lp152.84.1
kernel-default-devel-debuginfo-5.3.18-lp152.84.1
kernel-kvmsmall-5.3.18-lp152.84.1
kernel-kvmsmall-debuginfo-5.3.18-lp152.84.1
kernel-kvmsmall-debugsource-5.3.18-lp152.84.1
kernel-kvmsmall-devel-5.3.18-lp152.84.1
kernel-kvmsmall-devel-debuginfo-5.3.18-lp152.84.1
kernel-obs-build-5.3.18-lp152.8...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2021-22555.html
https://www.suse.com/security/cve/CVE-2021-33909.html
https://www.suse.com/security/cve/CVE-2021-35039.html
https://www.suse.com/security/cve/CVE-2021-3609.html
https://www.suse.com/security/cve/CVE-2021-3612.html
https://bugzilla.suse.com/1065729
https://bugzilla.suse.com/1085224
https://bugzilla.suse.com/1094840
https://bugzilla.suse.com/1152472
https://bugzilla.suse.com/1152489
https://bugzilla.suse.com/1155518
https://bugzilla.suse.com/1170511
https://bugzilla.suse.com/1176940
https://bugzilla.suse.com/1179243
https://bugzilla.suse.com/1180092
https://bugzilla.suse.com/1183871
https://bugzilla.suse.com/1184114
https://bugzilla.suse.com/1184804
https://bugzilla.suse.com/1185308
https://bugzilla.suse.com/1185791
https://bugzilla.suse.com/1186206
https://bugzilla.suse.com/1187215
https://bugzilla.suse.com/1187585
https://bugzilla.suse.com/1188036
https://bugzilla.suse.com/1188062
https://bugzilla.suse.com/1188080
https://bugzilla.suse.com/1188116
https://bug...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.