Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 15 SP4 kernel was updated to receive various
security and bugfixes.
The following security bugs were fixed:
- CVE-2022-3344: Fixed a flaw found in the KVM's AMD nested virtualization
(SVM). A malicious L1 guest could purposely fail to intercept the
shutdown of a cooperative nested guest (L2), possibly leading to a page
fault and kernel panic in the host (L0). (bsc#1204652)
- CVE-2022-4662: Fixed a recursive locking violation in usb-storage that
can cause the kernel to deadlock. (bsc#1206664)
- CVE-2022-3115: Fixed a null pointer dereference in malidp_crtc.c caused
by a lack of checks of the return value of kzalloc. (bsc#1206393)
- CVE-2022-47520: Fixed an out-of-bounds read when parsing a Robust
Security Network (RSN) information element from a Netlink packet.
(bsc#1206515)
- CVE-2022-3112: Fixed a null pointer dereference caused by a missing
check of the return value of kzalloc() in
...
Read the Full AdvisoryPatch Instructions:
To install this SUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap Micro 5.3:
zypper in -t patch openSUSE-Leap-Micro-5.3-2023-147=1
- openSUSE Leap 15.4:
zypper in -t patch openSUSE-SLE-15.4-2023-147=1
- SUSE Linux Enterprise Module for Realtime 15-SP4:
zypper in -t patch SUSE-SLE-Module-RT-15-SP4-2023-147=1
- SUSE Linux Enterprise Module for Live Patching 15-SP4:
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP4-2023-147=1
- SUSE Linux Enterprise Micro 5.3:
zypper in -t patch SUSE-SLE-Micro-5.3-2023-147=1
- openSUSE Leap Micro 5.3 (x86_64):
kernel-rt-5.14.21-150400.15.8.1
kernel-rt-debuginfo-5.14.21-150400.15.8.1
kernel-rt-debugsource-5.14.21-150400.15.8.1
- openSUSE Leap 15.4 (x86_64):
cluster-md-kmp-rt-5.14.21-150400.15.8.1
cluster-md-kmp-rt-debuginfo-5.14.21-150400.15.8.1
dlm-kmp-rt-5.14.21-150400.15.8.1
dlm-kmp-rt-debuginfo-5.14.21-150400.15.8.1
gfs2-kmp-rt-5.14.21-150400.15.8.1
gfs2-kmp-rt-debuginfo-5.14.21-150400.15.8.1
kernel-rt-5.14.21-150400.15.8.1
kernel-rt-debuginfo-5.14.21-150400.15.8.1
kernel-rt-debugsource-5.14.21-150400.15.8.1
kernel-rt-devel-5.14.21-150400.15.8.1
kernel-rt-devel-debuginfo-5.14.21-150400.15.8.1
kernel-rt_debug-5.14.21-150400.15.8.1
kernel-rt_debug-debuginfo-5.14.21-150400.15.8.1
kernel-rt_debug-debugsource-5.14.21-150400.15.8.1
kernel-rt_debug-devel-5.14.21-150400.15.8.1
kernel-rt_debug-devel-debuginfo-5.14.21-150400.15.8.1
kernel-syms-rt-5.14.21-150400.15.8.1
ocfs2-kmp-rt-5.14.21-150400.15.8.1
ocfs2-kmp-rt-debuginfo-5.14.21-150400.15.8.1
- openSUSE Leap 15.4 (noarch):
kernel-dev...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2022-3104.html
https://www.suse.com/security/cve/CVE-2022-3105.html
https://www.suse.com/security/cve/CVE-2022-3106.html
https://www.suse.com/security/cve/CVE-2022-3107.html
https://www.suse.com/security/cve/CVE-2022-3108.html
https://www.suse.com/security/cve/CVE-2022-3111.html
https://www.suse.com/security/cve/CVE-2022-3112.html
https://www.suse.com/security/cve/CVE-2022-3113.html
https://www.suse.com/security/cve/CVE-2022-3115.html
https://www.suse.com/security/cve/CVE-2022-3344.html
https://www.suse.com/security/cve/CVE-2022-3564.html
https://www.suse.com/security/cve/CVE-2022-4379.html
https://www.suse.com/security/cve/CVE-2022-4662.html
https://www.suse.com/security/cve/CVE-2022-47520.html
https://bugzilla.suse.com/1065729
https://bugzilla.suse.com/1187428
https://bugzilla.suse.com/1188605
https://bugzilla.suse.com/1191259
https://bugzilla.suse.com/1193629
https://bugzilla.suse.com/1199294
https://bugzilla.suse.com/1201068
https://bugzilla.suse.com/1203219
https:/...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.