The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various security
bugfixes.
The following security bugs were fixed:
* CVE-2021-47589: igbvf: fix double free in `igbvf_probe` (bsc#1226557).
* CVE-2022-48956: ipv6: avoid use-after-free in ip6_fragment() (bsc#1231893).
* CVE-2022-48960: net: hisilicon: Fix potential use-after-free in hix5hd2_rx()
(bsc#1231979).
* CVE-2022-48962: net: hisilicon: Fix potential use-after-free in
hisi_femac_rx() (bsc#1232286).
* CVE-2022-48967: NFC: nci: Bounds check struct nfc_target arrays
(bsc#1232304).
* CVE-2022-48988: memcg: Fix possible use-after-free in
memcg_write_event_control() (bsc#1232069).
* CVE-2022-48991: khugepaged: retract_page_tables() remember to test exit
(bsc#1232070 prerequisity).
* CVE-2022-49003: nvme: fix SRCU protection of nvme_ns_head list
(bsc#1232136).
* CVE-2022-49014: net: tun: Fix use-after-free in tun_detach() (bsc#1231890).
* CVE-2022-49015: net: hsr: Fix...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.3
zypper in -t patch SUSE-2024-4140=1
* SUSE Linux Enterprise Live Patching 15-SP3
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP3-2024-4140=1
* SUSE Linux Enterprise High Availability Extension 15 SP3
zypper in -t patch SUSE-SLE-Product-HA-15-SP3-2024-4140=1
* SUSE Linux Enterprise High Performance Computing LTSS 15 SP3
zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2024-4140=1
* SUSE Linux Enterprise Server 15 SP3 LTSS
zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2024-4140=1
* SUSE Linux Enterprise Server for SAP Applications 15 SP3
zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2024-4140=1
* SUSE Enterprise Storage 7.1
zypper in -t patch SUSE-Storage-7.1-2024-4140=1
* SUSE Linux Enterprise Micro 5.1
zypper in -t patch SUSE-SUSE-MicroOS-5.1-2024-4140=1
* SUSE...
Read the Full Advisory* openSUSE Leap 15.3 (noarch nosrc)
* kernel-docs-5.3.18-150300.59.182.2
* openSUSE Leap 15.3 (noarch)
* kernel-docs-html-5.3.18-150300.59.182.2
* kernel-source-5.3.18-150300.59.182.1
* kernel-source-vanilla-5.3.18-150300.59.182.1
* kernel-devel-5.3.18-150300.59.182.1
* kernel-macros-5.3.18-150300.59.182.1
* openSUSE Leap 15.3 (nosrc ppc64le x86_64)
* kernel-debug-5.3.18-150300.59.182.1
* kernel-kvmsmall-5.3.18-150300.59.182.1
* openSUSE Leap 15.3 (ppc64le x86_64)
* kernel-kvmsmall-devel-debuginfo-5.3.18-150300.59.182.1
* kernel-debug-debugsource-5.3.18-150300.59.182.1
* kernel-debug-devel-debuginfo-5.3.18-150300.59.182.1
* kernel-debug-debuginfo-5.3.18-150300.59.182.1
* kernel-kvmsmall-debuginfo-5.3.18-150300.59.182.1
* kernel-kvmsmall-debugsource-5.3.18-150300.59.182.1
* kernel-kvmsmall-devel-5.3.18-150300.59.182.1
* kernel-kvmsmall-livepatch-devel-5.3.18-150300.59.182.1
* kernel-debug-livepatch-devel-5.3.18-150300.59.182.1
* kernel-debug-devel-5.3.18-150300.59.182.1
* openSUSE Leap 15.3 (aarch64 ppc64le...
Read the Full Advisory* bsc#1195775
* bsc#1204171
* bsc#1205796
* bsc#1206344
* bsc#1209290
* bsc#1216223
* bsc#1218562
* bsc#1219125
* bsc#1223384
* bsc#1223524
* bsc#1223824
* bsc#1225189
* bsc#1225336
* bsc#1225611
* bsc#1226211
* bsc#1226212
* bsc#1226557
* bsc#1228743
* bsc#1229042
* bsc#1229454
* bsc#1229456
* bsc#1230429
* bsc#1230454
* bsc#1231073
* bsc#1231191
* bsc#1231193
* bsc#1231197
* bsc#1231200
* bsc#1231203
* bsc#1231293
* bsc#1231375
* bsc#1231502
* bsc#1231673
* bsc#1231861
* bsc#1231887
* bsc#1231890
* bsc#1231893
* bsc#1231895
* bsc#1231936
* bsc#1231938
* bsc#1231942
* bsc#1231960
* bsc#1231961
* bsc#1231979
* bsc#1231987
* bsc#1231988
* bsc#1232033
* bsc#1232069
* bsc#1232070
* bsc#1232097
* bsc#1232136
* bsc#1232145
* bsc#1232262
* bsc#1232280
* bsc#1232282
* bsc#1232286
* bsc#1232304
* bsc#1232383
* bsc#1232418
* bsc#1232424
* bsc#1232432
* bsc#1232519
## References:
* https://www.suse.com/security/cve/CVE-2021-47416.html
* https://www.suse.com/security/cve/CVE-2021-47589.html
* https://www.suse.com/security/cve/CVE-2022-3435.html
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.