Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 15 SP4 kernel was updated to receive various
security and bugfixes.
The following security bugs were fixed:
- CVE-2022-3344: Fixed a bug where nested shutdown interception could lead
to host crash (bsc#1204652)
- CVE-2022-4662: Fixed a recursive locking violation in usb-storage that
can cause the kernel to deadlock. (bsc#1206664)
- CVE-2022-3115: Fixed a null pointer dereference in malidp_crtc.c caused
by a lack of checks of the return value of kzalloc. (bsc#1206393)
- CVE-2022-47520: Fixed an out-of-bounds read when parsing a Robust
Security Network (RSN) information element from a Netlink packet.
(bsc#1206515)
- CVE-2022-3112: Fixed a null pointer dereference caused by lacks check
of the return value of kzalloc() in vdec_helpers.c:amvdec_set_canvases.
(bsc#1206399)
- CVE-2022-3564: Fixed a bug which could lead to use after free, it was
found in the function l2cap_reassemble_sdu of the...
Read the Full AdvisoryPatch Instructions:
To install this SUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap Micro 5.3:
zypper in -t patch openSUSE-Leap-Micro-5.3-2023-149=1
- openSUSE Leap 15.4:
zypper in -t patch openSUSE-SLE-15.4-2023-149=1
- SUSE Linux Enterprise Workstation Extension 15-SP4:
zypper in -t patch SUSE-SLE-Product-WE-15-SP4-2023-149=1
- SUSE Linux Enterprise Module for Live Patching 15-SP4:
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP4-2023-149=1
Please note that this is the initial kernel livepatch without fixes
itself, this livepatch package is later updated by seperate standalone
livepatch updates.
- SUSE Linux Enterprise Module for Legacy Software 15-SP4:
zypper in -t patch SUSE-SLE-Module-Legacy-15-SP4-2023-149=1
- SUSE Linux Enterprise Module for Development Tools 15-SP4:
zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP4-2023-149=1
- SUSE Linux...
Read the Full Advisory- openSUSE Leap Micro 5.3 (aarch64 x86_64):
kernel-default-5.14.21-150400.24.41.1
kernel-default-base-5.14.21-150400.24.41.1.150400.24.15.1
kernel-default-debuginfo-5.14.21-150400.24.41.1
kernel-default-debugsource-5.14.21-150400.24.41.1
- openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64):
cluster-md-kmp-default-5.14.21-150400.24.41.1
cluster-md-kmp-default-debuginfo-5.14.21-150400.24.41.1
dlm-kmp-default-5.14.21-150400.24.41.1
dlm-kmp-default-debuginfo-5.14.21-150400.24.41.1
gfs2-kmp-default-5.14.21-150400.24.41.1
gfs2-kmp-default-debuginfo-5.14.21-150400.24.41.1
kernel-default-5.14.21-150400.24.41.1
kernel-default-base-5.14.21-150400.24.41.1.150400.24.15.1
kernel-default-base-rebuild-5.14.21-150400.24.41.1.150400.24.15.1
kernel-default-debuginfo-5.14.21-150400.24.41.1
kernel-default-debugsource-5.14.21-150400.24.41.1
kernel-default-devel-5.14.21-150400.24.41.1
kernel-default-devel-debuginfo-5.14.21-150400.24.41.1
kernel-default-extra-5.14.21-150400.24.41.1
kernel-default-extra-debuginfo-5.14.21-150400.2...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2022-3104.html
https://www.suse.com/security/cve/CVE-2022-3105.html
https://www.suse.com/security/cve/CVE-2022-3106.html
https://www.suse.com/security/cve/CVE-2022-3107.html
https://www.suse.com/security/cve/CVE-2022-3108.html
https://www.suse.com/security/cve/CVE-2022-3111.html
https://www.suse.com/security/cve/CVE-2022-3112.html
https://www.suse.com/security/cve/CVE-2022-3113.html
https://www.suse.com/security/cve/CVE-2022-3114.html
https://www.suse.com/security/cve/CVE-2022-3115.html
https://www.suse.com/security/cve/CVE-2022-3344.html
https://www.suse.com/security/cve/CVE-2022-3564.html
https://www.suse.com/security/cve/CVE-2022-4379.html
https://www.suse.com/security/cve/CVE-2022-4662.html
https://www.suse.com/security/cve/CVE-2022-47520.html
https://bugzilla.suse.com/1065729
https://bugzilla.suse.com/1187428
https://bugzilla.suse.com/1188605
https://bugzilla.suse.com/1190969
https://bugzilla.suse.com/1191259
https://bugzilla.suse.com/1193629
https://bugzilla.suse...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.