Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various
security and bugfixes.
The following security bugs were fixed:
- CVE-2022-3435: Fixed an out-of-bounds read in fib_nh_match() of the file
net/ipv4/fib_semantics.c (bsc#1204171).
- CVE-2022-4662: Fixed a recursive locking violation in usb-storage that
can cause the kernel to deadlock. (bsc#1206664)
- CVE-2022-3105: Fixed a null pointer dereference caused by a missing
check of the return value of kmalloc_array. (bsc#1206398)
- CVE-2022-3108: Fixed a bug in kfd_parse_subtype_iolink in
drivers/gpu/drm/amd/amdkfd/kfd_crat.c where a lack of check of the
return value of kmemdup() could lead to a NULL pointer dereference.
(bsc#1206389)
- CVE-2022-3106: Fixed a null pointer dereference caused by a missing
check of the return value of kmalloc. (bsc#1206397)
- CVE-2022-3107: Fixed a null pointer dereference caused by a missing
check of the return value of...
Read the Full AdvisoryPatch Instructions:
To install this SUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap Micro 5.2:
zypper in -t patch openSUSE-Leap-Micro-5.2-2023-134=1
- SUSE Linux Enterprise Module for Realtime 15-SP3:
zypper in -t patch SUSE-SLE-Module-RT-15-SP3-2023-134=1
- SUSE Linux Enterprise Micro 5.2:
zypper in -t patch SUSE-SUSE-MicroOS-5.2-2023-134=1
- SUSE Linux Enterprise Micro 5.1:
zypper in -t patch SUSE-SUSE-MicroOS-5.1-2023-134=1
- openSUSE Leap Micro 5.2 (x86_64):
kernel-rt-5.3.18-150300.115.1
kernel-rt-debuginfo-5.3.18-150300.115.1
kernel-rt-debugsource-5.3.18-150300.115.1
- SUSE Linux Enterprise Module for Realtime 15-SP3 (noarch):
kernel-devel-rt-5.3.18-150300.115.1
kernel-source-rt-5.3.18-150300.115.1
- SUSE Linux Enterprise Module for Realtime 15-SP3 (x86_64):
cluster-md-kmp-rt-5.3.18-150300.115.1
cluster-md-kmp-rt-debuginfo-5.3.18-150300.115.1
dlm-kmp-rt-5.3.18-150300.115.1
dlm-kmp-rt-debuginfo-5.3.18-150300.115.1
gfs2-kmp-rt-5.3.18-150300.115.1
gfs2-kmp-rt-debuginfo-5.3.18-150300.115.1
kernel-rt-5.3.18-150300.115.1
kernel-rt-debuginfo-5.3.18-150300.115.1
kernel-rt-debugsource-5.3.18-150300.115.1
kernel-rt-devel-5.3.18-150300.115.1
kernel-rt-devel-debuginfo-5.3.18-150300.115.1
kernel-rt_debug-debuginfo-5.3.18-150300.115.1
kernel-rt_debug-debugsource-5.3.18-150300.115.1
kernel-rt_debug-devel-5.3.18-150300.115.1
kernel-rt_debug-devel-debuginfo-5.3.18-150300.115.1
kernel-syms-rt-5.3.18-150300.115.1
ocfs2-kmp-rt-5.3.18-150300.115.1...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2019-19083.html
https://www.suse.com/security/cve/CVE-2022-3105.html
https://www.suse.com/security/cve/CVE-2022-3106.html
https://www.suse.com/security/cve/CVE-2022-3107.html
https://www.suse.com/security/cve/CVE-2022-3108.html
https://www.suse.com/security/cve/CVE-2022-3111.html
https://www.suse.com/security/cve/CVE-2022-3435.html
https://www.suse.com/security/cve/CVE-2022-3643.html
https://www.suse.com/security/cve/CVE-2022-42328.html
https://www.suse.com/security/cve/CVE-2022-42329.html
https://www.suse.com/security/cve/CVE-2022-4662.html
https://bugzilla.suse.com/1151927
https://bugzilla.suse.com/1157049
https://bugzilla.suse.com/1190969
https://bugzilla.suse.com/1203183
https://bugzilla.suse.com/1204171
https://bugzilla.suse.com/1204250
https://bugzilla.suse.com/1204693
https://bugzilla.suse.com/1205256
https://bugzilla.suse.com/1206113
https://bugzilla.suse.com/1206114
https://bugzilla.suse.com/1206174
https://bugzilla.suse.com/1206175
https://bugzilla.suse.com/120...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.