Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

openSUSE Leap 15.5: 2023:2892-1 Important Kernel Security Advisory

opensuse
Calendar Grey July 19, 2023
Dist Opensuse Esm H88
Important security patch released for openSUSE addressing kernel weaknesses. Please update your systems for improved safety.
The SUSE Linux Enterprise 15 SP5 Azure kernel was updated to receive various security and bugfixes

Description

The SUSE Linux Enterprise 15 SP5 Azure kernel was updated to receive various

security and bugfixes.

The following security bugs were fixed:

* CVE-2023-1249: Fixed a use-after-free flaw in the core dump subsystem that

allowed a local user to crash the system (bsc#1209039).

* CVE-2023-1829: Fixed a use-after-free vulnerability in the control index

filter (tcindex) (bsc#1210335).

* CVE-2023-2430: Fixed a possible denial of service via a missing lock in the

io_uring subsystem (bsc#1211014).

* CVE-2023-28866: Fixed an out-of-bounds access in net/bluetooth/hci_sync.c

because amp_init1[] and amp_init2[] are supposed to have an intentionally

invalid element, but did not (bsc#1209780).

* CVE-2023-3090: Fixed a heap out-of-bounds write in the ipvlan network driver

(bsc#1212842).

* CVE-2023-3111: Fixed a use-after-free vulnerability in prepare_to_relocate

in fs/btrfs/relocation.c (bsc#1212051).

* CVE-2023-3212: Fixed a NULL pointer dereference flaw in...

Read the Full Advisory

Patch

## Patch Instructions:

To install this SUSE Important update use the SUSE recommended installation

methods like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

* openSUSE Leap 15.5

zypper in -t patch SUSE-2023-2892=1 openSUSE-SLE-15.5-2023-2892=1

* Public Cloud Module 15-SP5

zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP5-2023-2892=1

Package List

* openSUSE Leap 15.5 (aarch64 x86_64)

* dlm-kmp-azure-debuginfo-5.14.21-150500.33.6.1

* kernel-azure-livepatch-devel-5.14.21-150500.33.6.1

* kernel-azure-devel-5.14.21-150500.33.6.1

* kernel-azure-extra-debuginfo-5.14.21-150500.33.6.1

* kernel-syms-azure-5.14.21-150500.33.6.1

* kselftests-kmp-azure-5.14.21-150500.33.6.1

* cluster-md-kmp-azure-5.14.21-150500.33.6.1

* ocfs2-kmp-azure-5.14.21-150500.33.6.1

* kernel-azure-devel-debuginfo-5.14.21-150500.33.6.1

* cluster-md-kmp-azure-debuginfo-5.14.21-150500.33.6.1

* kselftests-kmp-azure-debuginfo-5.14.21-150500.33.6.1

* reiserfs-kmp-azure-5.14.21-150500.33.6.1

* dlm-kmp-azure-5.14.21-150500.33.6.1

* kernel-azure-debuginfo-5.14.21-150500.33.6.1

* gfs2-kmp-azure-debuginfo-5.14.21-150500.33.6.1

* gfs2-kmp-azure-5.14.21-150500.33.6.1

* ocfs2-kmp-azure-debuginfo-5.14.21-150500.33.6.1

* reiserfs-kmp-azure-debuginfo-5.14.21-150500.33.6.1

* kernel-azure-extra-5.14.21-150500.33.6.1

* kernel-azure-debugsource-5.14.21-150500.33.6.1

*...

Read the Full Advisory

References

* #1187829

* #1189998

* #1194869

* #1205758

* #1208410

* #1209039

* #1209780

* #1210335

* #1210565

* #1210584

* #1210853

* #1211014

* #1211346

* #1211400

* #1211410

* #1211794

* #1211852

* #1212051

* #1212265

* #1212350

* #1212405

* #1212445

* #1212448

* #1212456

* #1212494

* #1212495

* #1212504

* #1212513

* #1212540

* #1212556

* #1212561

* #1212563

* #1212564

* #1212584

* #1212592

* #1212603

* #1212605

* #1212606

* #1212619

* #1212685

* #1212701

* #1212741

* #1212835

* #1212838

* #1212842

* #1212848

* #1212861

* #1212869

* #1212892

* #1212961

* #1213010

* #1213011

* #1213012

* #1213013

* #1213014

* #1213015

* #1213016

* #1213017

* #1213018

* #1213019

* #1213020

* #1213021

* #1213024

* #1213025

* #1213032

* #1213034

* #1213035

* #1213036

* #1213037

* #1213038

* #1213039

* #1213040

* #1213041

* #1213087

* #1213088

* #1213089

* #1213090

* #1213092

* #1213093

* #1213094

* #1213095

* #1213096

* #1213098

* #1213099

* #1213100

* #1213102

* #1213103

* #1213104

* #1213105

* #1213106

* #1213107

* #1213108

* #1213109

* #1213110

* #1213111

* #1213112

* #1213113

* #1213114

* #1213116

*...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2023:2892-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here