The SUSE Linux Enterprise 15 SP4 Azure kernel was updated to receive various
security and bugfixes.
The following security bugs were fixed:
* CVE-2023-4563: Fixed an use-after-free flaw in the nftables sub-component.
This vulnerability could allow a local attacker to crash the system or lead
to a kernel information leak problem. (bsc#1214727)
* CVE-2023-39194: Fixed a flaw in the processing of state filters which could
allow a local attackers to disclose sensitive information. (bsc#1215861)
* CVE-2023-39193: Fixed a flaw in the processing of state filters which could
allow a local attackers to disclose sensitive information. (bsc#1215860)
* CVE-2023-39192: Fixed a flaw in the u32_match_it function which could allow
a local attackers to disclose sensitive information. (bsc#1215858)
* CVE-2023-42754: Fixed a null pointer dereference in ipv4_link_failure which
could lead an authenticated attacker to trigger a DoS. (bsc#1215467)
* CVE-2023-5345:...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.4
zypper in -t patch SUSE-2023-4057=1 openSUSE-SLE-15.4-2023-4057=1
* Public Cloud Module 15-SP4
zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP4-2023-4057=1
* openSUSE Leap 15.4 (aarch64 x86_64)
* kernel-azure-optional-debuginfo-5.14.21-150400.14.69.1
* kernel-syms-azure-5.14.21-150400.14.69.1
* kernel-azure-debugsource-5.14.21-150400.14.69.1
* kernel-azure-optional-5.14.21-150400.14.69.1
* ocfs2-kmp-azure-5.14.21-150400.14.69.1
* cluster-md-kmp-azure-debuginfo-5.14.21-150400.14.69.1
* ocfs2-kmp-azure-debuginfo-5.14.21-150400.14.69.1
* dlm-kmp-azure-debuginfo-5.14.21-150400.14.69.1
* kernel-azure-debuginfo-5.14.21-150400.14.69.1
* cluster-md-kmp-azure-5.14.21-150400.14.69.1
* kernel-azure-devel-debuginfo-5.14.21-150400.14.69.1
* kernel-azure-extra-debuginfo-5.14.21-150400.14.69.1
* gfs2-kmp-azure-debuginfo-5.14.21-150400.14.69.1
* kselftests-kmp-azure-5.14.21-150400.14.69.1
* reiserfs-kmp-azure-5.14.21-150400.14.69.1
* kernel-azure-livepatch-devel-5.14.21-150400.14.69.1
* kernel-azure-extra-5.14.21-150400.14.69.1
* dlm-kmp-azure-5.14.21-150400.14.69.1
* kernel-azure-devel-5.14.21-150400.14.69.1
* gfs2-kmp-azure-5.14.21-150400.14.69.1
*...
Read the Full Advisory* #1202845
* #1213772
* #1213808
* #1214928
* #1214943
* #1214944
* #1214950
* #1214951
* #1214954
* #1214957
* #1214986
* #1214988
* #1214992
* #1214993
* #1215322
* #1215523
* #1215877
* #1215894
* #1215895
* #1215896
* #1215911
* #1215915
* #1215916
## References:
* https://www.suse.com/security/cve/CVE-2023-1192.html
* https://www.suse.com/security/cve/CVE-2023-1206.html
* https://www.suse.com/security/cve/CVE-2023-1859.html
* https://www.suse.com/security/cve/CVE-2023-2177.html
* https://www.suse.com/security/cve/CVE-2023-37453.html
* https://www.suse.com/security/cve/CVE-2023-39192.html
* https://www.suse.com/security/cve/CVE-2023-39193.html
* https://www.suse.com/security/cve/CVE-2023-39194.html
* https://www.suse.com/security/cve/CVE-2023-4155.html
* https://www.suse.com/security/cve/CVE-2023-42753.html
* https://www.suse.com/security/cve/CVE-2023-42754.html
* https://www.suse.com/security/cve/CVE-2023-4389.html
* https://www.suse.com/security/cve/CVE-2023-4563.html
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.