The SUSE Linux Enterprise 15 SP5 kernel was updated to receive various security
and bugfixes.
The following security bugs were fixed:
* CVE-2019-25162: Fixed a potential use after free (bsc#1220409).
* CVE-2021-46923: Fixed reference leakage in fs/mount_setattr (bsc#1220457).
* CVE-2021-46924: Fixed fix memory leak in device probe and remove
(bsc#1220459)
* CVE-2021-46932: Fixed missing work initialization before device registration
(bsc#1220444)
* CVE-2023-28746: Fixed Register File Data Sampling (bsc#1213456).
* CVE-2023-5197: Fixed se-after-free due to addition and removal of rules from
chain bindings within the same transaction (bsc#1218216).
* CVE-2023-52340: Fixed ICMPv6 âPacket Too Bigâ packets force a DoS of the
Linux kernel by forcing 100% CPU (bsc#1219295).
* CVE-2023-52429: Fixed potential DoS in dm_table_create in drivers/md/dm-
table.c (bsc#1219827).
* CVE-2023-52439: Fixed use-after-free in uio_open (bsc#1220140).
*...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2024-858=1 openSUSE-SLE-15.5-2024-858=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2024-858=1
* Basesystem Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2024-858=1
* Development Tools Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP5-2024-858=1
* Legacy Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Legacy-15-SP5-2024-858=1
* SUSE Linux Enterprise Live Patching 15-SP5
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2024-858=1
Please note that this is the initial kernel livepatch without fixes itself, this
package is later updated by separate standalone kernel livepatch updates.
* SUSE Linux Enterprise High Availability Extension 15 SP5
zypper in -t patch...
Read the Full Advisory* openSUSE Leap 15.5 (noarch nosrc)
* kernel-docs-5.14.21-150500.55.52.1
* openSUSE Leap 15.5 (noarch)
* kernel-source-vanilla-5.14.21-150500.55.52.1
* kernel-docs-html-5.14.21-150500.55.52.1
* kernel-devel-5.14.21-150500.55.52.1
* kernel-macros-5.14.21-150500.55.52.1
* kernel-source-5.14.21-150500.55.52.1
* openSUSE Leap 15.5 (nosrc ppc64le x86_64)
* kernel-debug-5.14.21-150500.55.52.1
* openSUSE Leap 15.5 (ppc64le x86_64)
* kernel-debug-debugsource-5.14.21-150500.55.52.1
* kernel-debug-devel-debuginfo-5.14.21-150500.55.52.1
* kernel-debug-debuginfo-5.14.21-150500.55.52.1
* kernel-debug-livepatch-devel-5.14.21-150500.55.52.1
* kernel-debug-devel-5.14.21-150500.55.52.1
* openSUSE Leap 15.5 (x86_64)
* kernel-default-vdso-5.14.21-150500.55.52.1
* kernel-debug-vdso-debuginfo-5.14.21-150500.55.52.1
* kernel-kvmsmall-vdso-5.14.21-150500.55.52.1
* kernel-debug-vdso-5.14.21-150500.55.52.1
* kernel-default-vdso-debuginfo-5.14.21-150500.55.52.1
* kernel-kvmsmall-vdso-debuginfo-5.14.21-150500.55.52.1
* openSUSE Leap...
Read the Full Advisory* bsc#1194869
* bsc#1206453
* bsc#1209412
* bsc#1213456
* bsc#1216776
* bsc#1217927
* bsc#1218195
* bsc#1218216
* bsc#1218450
* bsc#1218527
* bsc#1218663
* bsc#1218915
* bsc#1219126
* bsc#1219127
* bsc#1219141
* bsc#1219146
* bsc#1219295
* bsc#1219443
* bsc#1219653
* bsc#1219827
* bsc#1219835
* bsc#1219839
* bsc#1219840
* bsc#1219934
* bsc#1220003
* bsc#1220009
* bsc#1220021
* bsc#1220030
* bsc#1220106
* bsc#1220140
* bsc#1220187
* bsc#1220238
* bsc#1220240
* bsc#1220241
* bsc#1220243
* bsc#1220250
* bsc#1220251
* bsc#1220253
* bsc#1220254
* bsc#1220255
* bsc#1220257
* bsc#1220267
* bsc#1220277
* bsc#1220317
* bsc#1220326
* bsc#1220328
* bsc#1220330
* bsc#1220335
* bsc#1220344
* bsc#1220348
* bsc#1220350
* bsc#1220364
* bsc#1220392
* bsc#1220393
* bsc#1220398
* bsc#1220409
* bsc#1220444
* bsc#1220457
* bsc#1220459
* bsc#1220649
* bsc#1220796
* bsc#1220825
* jsc#PED-7618
## References:
* https://www.suse.com/security/cve/CVE-2019-25162.html
* https://www.suse.com/security/cve/CVE-2021-46923.html
* https://www.suse.com/security/cve/CVE-2021-46924.html
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.