The SUSE Linux Enterprise 15 SP3 kernel was updated.
The following security bugs were fixed:
- CVE-2021-45485: Fixed an information leak because of certain use of a
hash table which use IPv6 source addresses. (bsc#1194094)
- CVE-2021-45486: Fixed an information leak because the hash table is very
small in net/ipv4/route.c. (bnc#1194087).
- CVE-2021-4001: Fixed a race condition when the EBPF map is frozen.
(bsc#1192990)
- CVE-2021-28715: Fixed an issue where a guest could force Linux netback
driver to hog large amounts of kernel memory by do not queueing
unlimited number of packages. (bsc#1193442)
- CVE-2021-28714: Fixed an issue where a guest could force Linux netback
driver to hog large amounts of kernel memory by fixing rx queue stall
detection. (bsc#1193442)
- CVE-2021-28713: Fixed a rogue backends that could cause DoS of guests
via high frequency events by hardening hvc_xen against event channel
storms....
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.3:
zypper in -t patch openSUSE-SLE-15.3-2022-56=1
- openSUSE Backports SLE-15-SP3:
zypper in -t patch openSUSE-2022-56=1
- openSUSE Leap 15.3 (x86_64):
cluster-md-kmp-azure-5.3.18-38.34.1
cluster-md-kmp-azure-debuginfo-5.3.18-38.34.1
dlm-kmp-azure-5.3.18-38.34.1
dlm-kmp-azure-debuginfo-5.3.18-38.34.1
gfs2-kmp-azure-5.3.18-38.34.1
gfs2-kmp-azure-debuginfo-5.3.18-38.34.1
kernel-azure-5.3.18-38.34.1
kernel-azure-debuginfo-5.3.18-38.34.1
kernel-azure-debugsource-5.3.18-38.34.1
kernel-azure-devel-5.3.18-38.34.1
kernel-azure-devel-debuginfo-5.3.18-38.34.1
kernel-azure-extra-5.3.18-38.34.1
kernel-azure-extra-debuginfo-5.3.18-38.34.1
kernel-azure-livepatch-devel-5.3.18-38.34.1
kernel-azure-optional-5.3.18-38.34.1
kernel-azure-optional-debuginfo-5.3.18-38.34.1
kernel-syms-azure-5.3.18-38.34.1
kselftests-kmp-azure-5.3.18-38.34.1
kselftests-kmp-azure-debuginfo-5.3.18-38.34.1
ocfs2-kmp-azure-5.3.18-38.34.1
ocfs2-kmp-azure-debuginfo-5.3.18-38.34.1
reiserfs-kmp-azure-5.3.18-38.34.1
reiserfs-kmp-azure-debuginfo-5.3.18-38.34.1
- openSUSE Leap 15.3 (noarch):
kernel-devel-azure-5.3.18-38.34.1
kernel-source-azure-5.3.18-38.34.1
- openSUSE Backports...
Read the Full Advisory- swiotlb-xen: avoid double free (git-fixes).
- swiotlb: Fix the type of index (git-fixes).
- TCON Reconnect during STATUS_NETWORK_NAME_DELETED (bsc#1192606).
- tlb: mmu_gather: add tlb_flush_*_range APIs
- tracing: Add length protection to histogram string copies (git-fixes).
- tracing: Change STR_VAR_MAX_LEN (git-fixes).
- tracing: Check pid filtering when creating events (git-fixes).
- tracing: Fix pid filtering when triggers are attached (git-fixes).
- tracing: use %ps format string to print symbols (git-fixes).
- tracing/histogram: Do not copy the fixed-size char array field over the
field size (git-fixes).
- tty: hvc: replace BUG_ON() with negative return value (git-fixes).
- tty: serial: msm_serial: Deactivate RX DMA for polling support
(git-fixes).
- tty: tty_buffer: Fix the softlockup issue in flush_to_ldisc (git-fixes).
- update structure definitions from updated protocol documentation
(bsc#1192606).
- usb: Add compatibility quirk flags for iODD 2531/2541 (git-fixes).
- usb: chipidea:...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.