Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 501
Alerts This Week
Warning Icon 1 501

openSUSE Leap 15.3: 2021:2352-1 Important: Kernel Security Update

opensuse
Calendar Grey July 15, 2021
Scroller Opensuse
Tackling various security flaws in the Fedora Linux Kernel update to improve safety and reliability of the system.
An update that solves 5 vulnerabilities and has 38 fixes is now available

Description

The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various

security and bugfixes.

The following security bugs were fixed:

- CVE-2021-3573: Fixed an UAF vulnerability in function that can allow

attackers to corrupt kernel heaps and adopt further exploitations.

(bsc#1186666)

- CVE-2021-0605: Fixed an out-of-bounds read which could lead to local

information disclosure in the kernel with System execution privileges

needed. (bsc#1187601)

- CVE-2021-0512: Fixed a possible out-of-bounds write which could lead to

local escalation of privilege with no additional execution privileges

needed. (bsc#1187595)

- CVE-2021-33624: Fixed a bug which allows unprivileged BPF program to

leak the contents of arbitrary kernel memory (and therefore, of all

physical memory) via a side-channel. (bsc#1187554)

- CVE-2021-34693: Fixed a bug in net/can/bcm.c which could allow local

users to obtain sensitive information from kernel...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.3:

zypper in -t patch openSUSE-SLE-15.3-2021-2352=1

Package List

- openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64):

cluster-md-kmp-default-5.3.18-59.13.1

cluster-md-kmp-default-debuginfo-5.3.18-59.13.1

dlm-kmp-default-5.3.18-59.13.1

dlm-kmp-default-debuginfo-5.3.18-59.13.1

gfs2-kmp-default-5.3.18-59.13.1

gfs2-kmp-default-debuginfo-5.3.18-59.13.1

kernel-default-5.3.18-59.13.1

kernel-default-base-5.3.18-59.13.1.18.6.1

kernel-default-base-rebuild-5.3.18-59.13.1.18.6.1

kernel-default-debuginfo-5.3.18-59.13.1

kernel-default-debugsource-5.3.18-59.13.1

kernel-default-devel-5.3.18-59.13.1

kernel-default-devel-debuginfo-5.3.18-59.13.1

kernel-default-extra-5.3.18-59.13.1

kernel-default-extra-debuginfo-5.3.18-59.13.1

kernel-default-livepatch-5.3.18-59.13.1

kernel-default-livepatch-devel-5.3.18-59.13.1

kernel-default-optional-5.3.18-59.13.1

kernel-default-optional-debuginfo-5.3.18-59.13.1

kernel-obs-build-5.3.18-59.13.1

kernel-obs-build-debugsource-5.3.18-59.13.1

kernel-obs-qa-5.3.18-59.13.1

kernel-syms-5.3.18-59.13.1

kselftests-kmp-default-5.3.18-59.13.1

kselftests-kmp-default-debug...

Read the Full Advisory

References

https://www.suse.com/security/cve/CVE-2021-0512.html

https://www.suse.com/security/cve/CVE-2021-0605.html

https://https://www.suse.com/security/cve/CVE-2021-33624.html

https://www.suse.com/security/cve/CVE-2021-34693.html

https://www.suse.com/security/cve/CVE-2021-3573.html

https://bugzilla.suse.com/1152489

https://bugzilla.suse.com/1153274

https://bugzilla.suse.com/1154353

https://bugzilla.suse.com/1155518

https://bugzilla.suse.com/1164648

https://bugzilla.suse.com/1176447

https://bugzilla.suse.com/1176774

https://bugzilla.suse.com/1176919

https://bugzilla.suse.com/1177028

https://bugzilla.suse.com/1178134

https://bugzilla.suse.com/1182470

https://bugzilla.suse.com/1184212

https://bugzilla.suse.com/1184685

https://bugzilla.suse.com/1185486

https://bugzilla.suse.com/1185675

https://bugzilla.suse.com/1185677

https://bugzilla.suse.com/1186206

https://bugzilla.suse.com/1186666

https://bugzilla.suse.com/1186949

https://bugzilla.suse.com/1187171

https://bugzilla.suse.com/1187263

https://bugzilla.suse.com/1187356

http...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2021:2352-1
Rating: important
Affected Products: openSUSE Leap 15.3 ble.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.