Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 15 SP5 kernel was updated to receive various security
and bugfixes.
The following security bugs were fixed:
* CVE-2022-36280: Fixed out-of-bounds memory access vulnerability found in
vmwgfx driver (bsc#1203332).
* CVE-2022-38096: Fixed NULL-ptr deref in vmw_cmd_dx_define_query()
(bsc#1203331).
* CVE-2022-4269: Fixed a flaw was found inside the Traffic Control (TC)
subsystem (bsc#1206024).
* CVE-2022-45884: Fixed a use-after-free in dvbdev.c, related to
dvb_register_device dynamically allocating fops (bsc#1205756).
* CVE-2022-45885: Fixed a race condition in dvb_frontend.c that could cause a
use-after-free when a device is disconnected (bsc#1205758).
* CVE-2022-45886: Fixed a .disconnect versus dvb_device_open race condition in
dvb_net.c that lead to a use-after-free (bsc#1205760).
* CVE-2022-45887: Fixed a memory leak in ttusb_dec.c caused by the lack of a
dvb_frontend_detach call (bsc#1205762).
* CVE-2022-45919:...
Read the Full Advisory## Patch Instructions:
To install this SUSE Important update use the SUSE recommended installation
methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* SUSE Linux Enterprise High Availability Extension 15 SP5
zypper in -t patch SUSE-SLE-Product-HA-15-SP5-2023-2871=1
* SUSE Linux Enterprise Workstation Extension 15 SP5
zypper in -t patch SUSE-SLE-Product-WE-15-SP5-2023-2871=1
* openSUSE Leap 15.5
zypper in -t patch SUSE-2023-2871=1 openSUSE-SLE-15.5-2023-2871=1
* Basesystem Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2023-2871=1
* Development Tools Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP5-2023-2871=1
* Legacy Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Legacy-15-SP5-2023-2871=1
* SUSE Linux Enterprise Live Patching 15-SP5
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2023-2871=1
Please note that this is the initial kernel livepatch without fixes itself, this
package is...
Read the Full Advisory* SUSE Linux Enterprise High Availability Extension 15 SP5 (aarch64 ppc64le
s390x x86_64)
* ocfs2-kmp-default-debuginfo-5.14.21-150500.55.7.1
* cluster-md-kmp-default-5.14.21-150500.55.7.1
* gfs2-kmp-default-5.14.21-150500.55.7.1
* kernel-default-debuginfo-5.14.21-150500.55.7.1
* kernel-default-debugsource-5.14.21-150500.55.7.1
* dlm-kmp-default-5.14.21-150500.55.7.1
* cluster-md-kmp-default-debuginfo-5.14.21-150500.55.7.1
* dlm-kmp-default-debuginfo-5.14.21-150500.55.7.1
* gfs2-kmp-default-debuginfo-5.14.21-150500.55.7.1
* ocfs2-kmp-default-5.14.21-150500.55.7.1
* SUSE Linux Enterprise High Availability Extension 15 SP5 (nosrc)
* kernel-default-5.14.21-150500.55.7.1
* SUSE Linux Enterprise Workstation Extension 15 SP5 (nosrc)
* kernel-default-5.14.21-150500.55.7.1
* SUSE Linux Enterprise Workstation Extension 15 SP5 (x86_64)
* kernel-default-extra-5.14.21-150500.55.7.1
* kernel-default-debuginfo-5.14.21-150500.55.7.1
* kernel-default-debugsource-5.14.21-150500.55.7.1
*...
Read the Full Advisory* #1065729
* #1109158
* #1142685
* #1152472
* #1152489
* #1155798
* #1160435
* #1166486
* #1172073
* #1174777
* #1177529
* #1186449
* #1187829
* #1189998
* #1189999
* #1191731
* #1193629
* #1194869
* #1195175
* #1195655
* #1195921
* #1196058
* #1197534
* #1197617
* #1198101
* #1198400
* #1198438
* #1198835
* #1199304
* #1199701
* #1200054
* #1202353
* #1202633
* #1203039
* #1203200
* #1203325
* #1203331
* #1203332
* #1203693
* #1203906
* #1204356
* #1204363
* #1204662
* #1204993
* #1205153
* #1205191
* #1205205
* #1205544
* #1205650
* #1205756
* #1205758
* #1205760
* #1205762
* #1205803
* #1205846
* #1206024
* #1206036
* #1206056
* #1206057
* #1206103
* #1206224
* #1206232
* #1206340
* #1206459
* #1206492
* #1206493
* #1206552
* #1206578
* #1206640
* #1206649
* #1206677
* #1206824
* #1206843
* #1206876
* #1206877
* #1206878
* #1206880
* #1206881
* #1206882
* #1206883
* #1206884
* #1206885
* #1206886
* #1206887
* #1206888
* #1206889
* #1206890
* #1206891
* #1206893
* #1206894
* #1206935
* #1206992
* #1207034
* #1207036
* #1207050
* #1207051
* #1207088
* #1207125
* #1207149
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.