Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various
security and bugfixes.
The following security bugs were fixed:
- CVE-2023-0266: Fixed a use-after-free bug led by a missing lock in ALSA.
(bsc#1207134)
- CVE-2022-47929: Fixed a NULL pointer dereference bug in the traffic
control subsystem which allowed an unprivileged user to trigger a denial
of service via a crafted traffic control configuration. (bsc#1207237)
- CVE-2023-23454: Fixed a type-confusion in the CBQ network scheduler
(bsc#1207036)
- CVE-2023-23455: Fixed a bug that could allow attackers to cause a denial
of service because of type confusion in atm_tc_enqueue. (bsc#1207125)
- CVE-2022-3435: Fixed an out-of-bounds read in fib_nh_match() of the file
net/ipv4/fib_semantics.c (bsc#1204171).
- CVE-2022-4662: Fixed a recursive locking violation in usb-storage that
can cause the kernel to deadlock. (bsc#1206664)
- CVE-2022-3115: Fixed a null...
Read the Full AdvisoryPatch Instructions:
To install this SUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap Micro 5.2:
zypper in -t patch openSUSE-Leap-Micro-5.2-2023-152=1
- openSUSE Leap 15.4:
zypper in -t patch openSUSE-SLE-15.4-2023-152=1
- SUSE Manager Server 4.2:
zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.2-2023-152=1
- SUSE Manager Retail Branch Server 4.2:
zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch-Server-4.2-2023-152=1
- SUSE Manager Proxy 4.2:
zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.2-2023-152=1
- SUSE Linux Enterprise Server for SAP 15-SP3:
zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2023-152=1
- SUSE Linux Enterprise Server 15-SP3-LTSS:
zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2023-152=1
- SUSE Linux Enterprise Realtime Extension 15-SP3:
zypper in -t patch SUSE-SLE-Product-RT-15-SP3-2023-152=1
- SUSE Linux...
Read the Full Advisory- openSUSE Leap Micro 5.2 (aarch64 x86_64):
kernel-default-5.3.18-150300.59.109.1
kernel-default-base-5.3.18-150300.59.109.1.150300.18.62.1
kernel-default-debuginfo-5.3.18-150300.59.109.1
kernel-default-debugsource-5.3.18-150300.59.109.1
- openSUSE Leap 15.4 (aarch64):
dtb-al-5.3.18-150300.59.109.1
dtb-zte-5.3.18-150300.59.109.1
- SUSE Manager Server 4.2 (ppc64le s390x x86_64):
kernel-default-5.3.18-150300.59.109.1
kernel-default-base-5.3.18-150300.59.109.1.150300.18.62.1
kernel-default-debuginfo-5.3.18-150300.59.109.1
kernel-default-debugsource-5.3.18-150300.59.109.1
kernel-default-devel-5.3.18-150300.59.109.1
kernel-default-devel-debuginfo-5.3.18-150300.59.109.1
- SUSE Manager Server 4.2 (noarch):
kernel-devel-5.3.18-150300.59.109.1
kernel-macros-5.3.18-150300.59.109.1
- SUSE Manager Server 4.2 (x86_64):
kernel-preempt-5.3.18-150300.59.109.1
kernel-preempt-debuginfo-5.3.18-150300.59.109.1
kernel-preempt-debugsource-5.3.18-150300.59.109.1
- SUSE Manager Server 4.2 (s390x):
kernel-zfcpdump-5.3.18-150300.59.1...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2019-19083.html
https://www.suse.com/security/cve/CVE-2022-3105.html
https://www.suse.com/security/cve/CVE-2022-3106.html
https://www.suse.com/security/cve/CVE-2022-3107.html
https://www.suse.com/security/cve/CVE-2022-3108.html
https://www.suse.com/security/cve/CVE-2022-3111.html
https://www.suse.com/security/cve/CVE-2022-3112.html
https://www.suse.com/security/cve/CVE-2022-3115.html
https://www.suse.com/security/cve/CVE-2022-3435.html
https://www.suse.com/security/cve/CVE-2022-3564.html
https://www.suse.com/security/cve/CVE-2022-3643.html
https://www.suse.com/security/cve/CVE-2022-42328.html
https://www.suse.com/security/cve/CVE-2022-42329.html
https://www.suse.com/security/cve/CVE-2022-4662.html
https://www.suse.com/security/cve/CVE-2022-47520.html
https://www.suse.com/security/cve/CVE-2022-47929.html
https://www.suse.com/security/cve/CVE-2023-0266.html
https://www.suse.com/security/cve/CVE-2023-23454.html
https://www.suse.com/security/cve/CVE-2023-23455.html
https...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.