The SUSE Linux Enterprise 15 SP3 Azure kernel was updated to receive
various security and bugfixes.
The following security bugs were fixed:
- CVE-2021-33200: Enforcing incorrect limits for pointer arithmetic
operations by the BPF verifier could be abused to perform out-of-bounds
reads and writes in kernel memory (bsc#1186484).
- CVE-2021-33034: Fixed a use-after-free when destroying an hci_chan. This
could lead to writing an arbitrary values. (bsc#1186111)
- CVE-2020-26139: Fixed a denial-of-service when an Access Point (AP)
forwards EAPOL frames to other clients even though the sender has not
yet successfully authenticated to the AP. (bnc#1186062)
- CVE-2021-23134: A Use After Free vulnerability in nfc sockets allowed
local attackers to elevate their privileges. (bnc#1186060)
- CVE-2021-3491: Fixed a potential heap overflow in mem_rw(). This
vulnerability is related to the PROVIDE_BUFFERS operation, which allowed
the...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.3:
zypper in -t patch openSUSE-SLE-15.3-2021-1975=1
- openSUSE Leap 15.3 (noarch):
kernel-devel-azure-5.3.18-38.3.1
kernel-source-azure-5.3.18-38.3.1
- openSUSE Leap 15.3 (x86_64):
cluster-md-kmp-azure-5.3.18-38.3.1
cluster-md-kmp-azure-debuginfo-5.3.18-38.3.1
dlm-kmp-azure-5.3.18-38.3.1
dlm-kmp-azure-debuginfo-5.3.18-38.3.1
gfs2-kmp-azure-5.3.18-38.3.1
gfs2-kmp-azure-debuginfo-5.3.18-38.3.1
kernel-azure-5.3.18-38.3.1
kernel-azure-debuginfo-5.3.18-38.3.1
kernel-azure-debugsource-5.3.18-38.3.1
kernel-azure-devel-5.3.18-38.3.1
kernel-azure-devel-debuginfo-5.3.18-38.3.1
kernel-azure-extra-5.3.18-38.3.1
kernel-azure-extra-debuginfo-5.3.18-38.3.1
kernel-azure-livepatch-devel-5.3.18-38.3.1
kernel-azure-optional-5.3.18-38.3.1
kernel-azure-optional-debuginfo-5.3.18-38.3.1
kernel-syms-azure-5.3.18-38.3.1
kselftests-kmp-azure-5.3.18-38.3.1
kselftests-kmp-azure-debuginfo-5.3.18-38.3.1
ocfs2-kmp-azure-5.3.18-38.3.1
ocfs2-kmp-azure-debuginfo-5.3.18-38.3.1
reiserfs-kmp-azure-5.3.18-38.3.1
reiserfs-kmp-azure-debuginfo-5.3.18-38.3.1
- spi: spi-fsl-dspi: set ColdFire to DMA mode (bsc#1167260).
- spi: spi-fsl-dspi: use XSPI mode instead of DMA for DPAA2 SoCs
(bsc#1167260).
- spi: spi-ti-qspi: Free DMA resources (git-fixes).
- spi: stm32: make spurious and overrun interrupts visible (git-fixes).
- squashfs: fix inode lookup sanity checks (bsc#1183750).
- squashfs: fix xattr id and id lookup sanity checks (bsc#1183750).
- staging: bcm2835-audio: Replace unsafe strcpy() with strscpy()
(git-fixes).
- staging: comedi: addi_apci_1032: Fix endian problem for COS sample
(git-fixes).
- staging: comedi: addi_apci_1500: Fix endian problem for command sample
(git-fixes).
- staging: comedi: adv_pci1710: Fix endian problem for AI command data
(git-fixes).
- staging: comedi: cb_pcidas64: fix request_irq() warn (git-fixes).
- staging: comedi: cb_pcidas: fix request_irq() warn (git-fixes).
- staging: comedi: das6402: Fix endian problem for AI command data
(git-fixes).
- staging: comedi: das800: Fix endian problem for AI command data
(git-fixes).
-...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.