The SUSE Linux Enterprise 15 SP5 kernel was updated to receive various security
and bugfixes.
The following security bugs were fixed:
* CVE-2023-39194: Fixed a flaw in the processing of state filters which could
allow a local attackers to disclose sensitive information. (bsc#1215861)
* CVE-2023-39193: Fixed a flaw in the processing of state filters which could
allow a local attackers to disclose sensitive information. (bsc#1215860)
* CVE-2023-39192: Fixed a flaw in the u32_match_it function which could allow
a local attackers to disclose sensitive information. (bsc#1215858)
* CVE-2023-42754: Fixed a null pointer dereference in ipv4_link_failure which
could lead an authenticated attacker to trigger a DoS. (bsc#1215467)
* CVE-2023-5345: fixed an use-after-free vulnerability in the fs/smb/client
component which could be exploited to achieve local privilege escalation.
(bsc#1215899)
* CVE-2023-4155: Fixed a flaw in KVM AMD Secure Encrypted Virtualization
(SEV). An attacker...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2023-4071=1 openSUSE-SLE-15.5-2023-4071=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2023-4071=1
* Basesystem Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2023-4071=1
* Development Tools Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP5-2023-4071=1
* Legacy Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Legacy-15-SP5-2023-4071=1
* SUSE Linux Enterprise Live Patching 15-SP5
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2023-4071=1
Please note that this is the initial kernel livepatch without fixes itself, this
package is later updated by separate standalone kernel livepatch updates.
* SUSE Linux Enterprise High Availability Extension 15 SP5
zypper in -t patch...
Read the Full Advisory* openSUSE Leap 15.5 (noarch nosrc)
* kernel-docs-5.14.21-150500.55.31.1
* openSUSE Leap 15.5 (noarch)
* kernel-macros-5.14.21-150500.55.31.1
* kernel-source-vanilla-5.14.21-150500.55.31.1
* kernel-source-5.14.21-150500.55.31.1
* kernel-devel-5.14.21-150500.55.31.1
* kernel-docs-html-5.14.21-150500.55.31.1
* openSUSE Leap 15.5 (nosrc ppc64le x86_64)
* kernel-debug-5.14.21-150500.55.31.1
* openSUSE Leap 15.5 (ppc64le x86_64)
* kernel-debug-debuginfo-5.14.21-150500.55.31.1
* kernel-debug-devel-debuginfo-5.14.21-150500.55.31.1
* kernel-debug-livepatch-devel-5.14.21-150500.55.31.1
* kernel-debug-devel-5.14.21-150500.55.31.1
* kernel-debug-debugsource-5.14.21-150500.55.31.1
* openSUSE Leap 15.5 (x86_64)
* kernel-default-vdso-debuginfo-5.14.21-150500.55.31.1
* kernel-kvmsmall-vdso-debuginfo-5.14.21-150500.55.31.1
* kernel-debug-vdso-5.14.21-150500.55.31.1
* kernel-default-vdso-5.14.21-150500.55.31.1
* kernel-kvmsmall-vdso-5.14.21-150500.55.31.1
* kernel-debug-vdso-debuginfo-5.14.21-150500.55.31.1
* openSUSE Leap...
Read the Full Advisory* #1152472
* #1202845
* #1206453
* #1213808
* #1214928
* #1214942
* #1214943
* #1214944
* #1214950
* #1214951
* #1214954
* #1214957
* #1214986
* #1214988
* #1214992
* #1214993
* #1215322
* #1215877
* #1215894
* #1215895
* #1215896
* #1215911
* #1215915
* #1215916
* PED-2023
* PED-2025
## References:
* https://www.suse.com/security/cve/CVE-2023-1192.html
* https://www.suse.com/security/cve/CVE-2023-1206.html
* https://www.suse.com/security/cve/CVE-2023-1859.html
* https://www.suse.com/security/cve/CVE-2023-2177.html
* https://www.suse.com/security/cve/CVE-2023-39192.html
* https://www.suse.com/security/cve/CVE-2023-39193.html
* https://www.suse.com/security/cve/CVE-2023-39194.html
* https://www.suse.com/security/cve/CVE-2023-4155.html
* https://www.suse.com/security/cve/CVE-2023-42753.html
* https://www.suse.com/security/cve/CVE-2023-42754.html
* https://www.suse.com/security/cve/CVE-2023-4389.html
* https://www.suse.com/security/cve/CVE-2023-4622.html
* https://www.suse.com/security/cve/CVE-2023-4623.html
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.