Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

openSUSE Leap 15.3: 2022:0056-1 Important: Kernel Security Updates

opensuse
Calendar Grey March 1, 2022
Dist Opensuse Esm H88
The latest Fedora release resolves 12 security issues linked to the GNOME desktop environment, necessitating a system restart after the update process.
An update that solves 17 vulnerabilities and has 62 fixes is now available

Description

The SUSE Linux Enterprise 15 SP3 kernel was updated.

The following security bugs were fixed:

- CVE-2021-45485: Fixed an information leak because of certain use of a

hash table which use IPv6 source addresses. (bsc#1194094)

- CVE-2021-45486: Fixed an information leak because the hash table is very

small in net/ipv4/route.c. (bnc#1194087).

- CVE-2021-4001: Fixed a race condition when the EBPF map is frozen.

(bsc#1192990)

- CVE-2021-28715: Fixed an issue where a guest could force Linux netback

driver to hog large amounts of kernel memory by do not queueing

unlimited number of packages. (bsc#1193442)

- CVE-2021-28714: Fixed an issue where a guest could force Linux netback

driver to hog large amounts of kernel memory by fixing rx queue stall

detection. (bsc#1193442)

- CVE-2021-28713: Fixed a rogue backends that could cause DoS of guests

via high frequency events by hardening hvc_xen against event channel

storms....

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.3:

zypper in -t patch openSUSE-SLE-15.3-2022-56=1

- openSUSE Backports SLE-15-SP3:

zypper in -t patch openSUSE-2022-56=1

Package List

- openSUSE Leap 15.3 (x86_64):

cluster-md-kmp-azure-5.3.18-38.34.1

cluster-md-kmp-azure-debuginfo-5.3.18-38.34.1

dlm-kmp-azure-5.3.18-38.34.1

dlm-kmp-azure-debuginfo-5.3.18-38.34.1

gfs2-kmp-azure-5.3.18-38.34.1

gfs2-kmp-azure-debuginfo-5.3.18-38.34.1

kernel-azure-5.3.18-38.34.1

kernel-azure-debuginfo-5.3.18-38.34.1

kernel-azure-debugsource-5.3.18-38.34.1

kernel-azure-devel-5.3.18-38.34.1

kernel-azure-devel-debuginfo-5.3.18-38.34.1

kernel-azure-extra-5.3.18-38.34.1

kernel-azure-extra-debuginfo-5.3.18-38.34.1

kernel-azure-livepatch-devel-5.3.18-38.34.1

kernel-azure-optional-5.3.18-38.34.1

kernel-azure-optional-debuginfo-5.3.18-38.34.1

kernel-syms-azure-5.3.18-38.34.1

kselftests-kmp-azure-5.3.18-38.34.1

kselftests-kmp-azure-debuginfo-5.3.18-38.34.1

ocfs2-kmp-azure-5.3.18-38.34.1

ocfs2-kmp-azure-debuginfo-5.3.18-38.34.1

reiserfs-kmp-azure-5.3.18-38.34.1

reiserfs-kmp-azure-debuginfo-5.3.18-38.34.1

- openSUSE Leap 15.3 (noarch):

kernel-devel-azure-5.3.18-38.34.1

kernel-source-azure-5.3.18-38.34.1

- openSUSE Backports...

Read the Full Advisory

References

- swiotlb-xen: avoid double free (git-fixes).

- swiotlb: Fix the type of index (git-fixes).

- TCON Reconnect during STATUS_NETWORK_NAME_DELETED (bsc#1192606).

- tlb: mmu_gather: add tlb_flush_*_range APIs

- tracing: Add length protection to histogram string copies (git-fixes).

- tracing: Change STR_VAR_MAX_LEN (git-fixes).

- tracing: Check pid filtering when creating events (git-fixes).

- tracing: Fix pid filtering when triggers are attached (git-fixes).

- tracing: use %ps format string to print symbols (git-fixes).

- tracing/histogram: Do not copy the fixed-size char array field over the

field size (git-fixes).

- tty: hvc: replace BUG_ON() with negative return value (git-fixes).

- tty: serial: msm_serial: Deactivate RX DMA for polling support

(git-fixes).

- tty: tty_buffer: Fix the softlockup issue in flush_to_ldisc (git-fixes).

- update structure definitions from updated protocol documentation

(bsc#1192606).

- usb: Add compatibility quirk flags for iODD 2531/2541 (git-fixes).

- usb: chipidea:...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2022:0056-1
Rating: important
Affected Products: openSUSE Backports SLE-15-SP3 openSUSE Leap 15.3 ble.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here