The SUSE Linux Enterprise 15 SP5 Azure kernel was updated to receive various
security and bugfixes.
The following security bugs were fixed:
* CVE-2023-3812: Fixed an out-of-bounds memory access flaw in the TUN/TAP
device driver functionality that could allow a local user to crash or
potentially escalate their privileges on the system (bsc#1213543).
* CVE-2023-35001: Fixed an out-of-bounds memory access flaw in nft_byteorder
that could allow a local attacker to escalate their privilege (bsc#1213059).
* CVE-2023-31248: Fixed an use-after-free vulnerability in
nft_chain_lookup_byid that could allow a local attacker to escalate their
privilege (bsc#1213061).
* CVE-2023-3390: Fixed an use-after-free vulnerability in the netfilter
subsystem in net/netfilter/nf_tables_api.c that could allow a local attacker
with user access to cause a privilege escalation issue (bsc#1212846).
* CVE-2023-3117: Fixed an use-after-free vulnerability in the netfilter
subsystem when processing...
Read the Full Advisory## Patch Instructions:
To install this SUSE Important update use the SUSE recommended installation
methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2023-3180=1 openSUSE-SLE-15.5-2023-3180=1
* Public Cloud Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP5-2023-3180=1
* openSUSE Leap 15.5 (aarch64 x86_64)
* kernel-syms-azure-5.14.21-150500.33.11.1
* kernel-azure-debuginfo-5.14.21-150500.33.11.1
* dlm-kmp-azure-debuginfo-5.14.21-150500.33.11.1
* kselftests-kmp-azure-5.14.21-150500.33.11.1
* ocfs2-kmp-azure-5.14.21-150500.33.11.1
* kernel-azure-devel-5.14.21-150500.33.11.1
* kernel-azure-livepatch-devel-5.14.21-150500.33.11.1
* gfs2-kmp-azure-5.14.21-150500.33.11.1
* kernel-azure-debugsource-5.14.21-150500.33.11.1
* reiserfs-kmp-azure-5.14.21-150500.33.11.1
* kernel-azure-optional-5.14.21-150500.33.11.1
* dlm-kmp-azure-5.14.21-150500.33.11.1
* gfs2-kmp-azure-debuginfo-5.14.21-150500.33.11.1
* cluster-md-kmp-azure-5.14.21-150500.33.11.1
* kernel-azure-optional-debuginfo-5.14.21-150500.33.11.1
* kernel-azure-extra-5.14.21-150500.33.11.1
* kernel-azure-devel-debuginfo-5.14.21-150500.33.11.1
* cluster-md-kmp-azure-debuginfo-5.14.21-150500.33.11.1
* kernel-azure-extra-debuginfo-5.14.21-150500.33.11.1
* ocfs2-kmp-azure-debuginfo-5.14.21-150500.33.11.1
*...
Read the Full Advisory* #1150305
* #1193629
* #1194869
* #1207894
* #1208788
* #1211243
* #1211867
* #1212256
* #1212301
* #1212525
* #1212846
* #1212905
* #1213059
* #1213061
* #1213205
* #1213206
* #1213226
* #1213233
* #1213245
* #1213247
* #1213252
* #1213258
* #1213259
* #1213263
* #1213264
* #1213286
* #1213311
* #1213493
* #1213523
* #1213524
* #1213533
* #1213543
* #1213705
## References:
* https://www.suse.com/security/cve/CVE-2023-20593.html
* https://www.suse.com/security/cve/CVE-2023-2985.html
* https://www.suse.com/security/cve/CVE-2023-3117.html
* https://www.suse.com/security/cve/CVE-2023-31248.html
* https://www.suse.com/security/cve/CVE-2023-3390.html
* https://www.suse.com/security/cve/CVE-2023-35001.html
* https://www.suse.com/security/cve/CVE-2023-3812.html
* https://bugzilla.suse.com/show_bug.cgi?id=1150305
* https://bugzilla.suse.com/show_bug.cgi?id=1193629
* https://bugzilla.suse.com/show_bug.cgi?id=1194869
* https://bugzilla.suse.com/show_bug.cgi?id=1207894
* https://bugzilla.suse.com/show_bug.cgi?id=1208788
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.