The SUSE Linux Enterprise 15 SP5 RT kernel was updated to receive various
security bugfixes.
The following security bugs were fixed:
* CVE-2021-47594: mptcp: never allow the PM to close a listener subflow
(bsc#1226560).
* CVE-2022-48983: io_uring: Fix a null-ptr-deref in io_tctx_exit_cb()
(bsc#1231959).
* CVE-2024-26782: mptcp: fix double-free on socket dismantle (bsc#1222590).
* CVE-2024-26906: Fixed invalid vsyscall page read for
copy_from_kernel_nofault() (bsc#1223202).
* CVE-2024-26953: net: esp: fix bad handling of pages from page_pool
(bsc#1223656).
* CVE-2024-35888: erspan: make sure erspan_base_hdr is present in skb->head
(bsc#1224518).
* CVE-2024-35937: wifi: cfg80211: check A-MSDU format more carefully
(bsc#1224526).
* CVE-2024-36883: net: fix out-of-bounds access in ops_init (bsc#1225725).
* CVE-2024-36886: tipc: fix UAF in error path (bsc#1225730).
* CVE-2024-36905: tcp: defer shutdown(SEND_SHUTDOWN) for TCP_SYN_RECV sockets
...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* SUSE Real Time Module 15-SP5
zypper in -t patch SUSE-SLE-Module-RT-15-SP5-2024-4315=1
* openSUSE Leap 15.5
zypper in -t patch SUSE-2024-4315=1 openSUSE-SLE-15.5-2024-4315=1
* openSUSE Leap Micro 5.5
zypper in -t patch openSUSE-Leap-Micro-5.5-2024-4315=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2024-4315=1
* SUSE Linux Enterprise Live Patching 15-SP5
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2024-4315=1
* SUSE Real Time Module 15-SP5 (x86_64)
* kernel-rt_debug-vdso-5.14.21-150500.13.79.1
* kernel-rt-devel-debuginfo-5.14.21-150500.13.79.1
* kernel-rt-debuginfo-5.14.21-150500.13.79.1
* kernel-rt-debugsource-5.14.21-150500.13.79.1
* kernel-rt_debug-debugsource-5.14.21-150500.13.79.1
* cluster-md-kmp-rt-5.14.21-150500.13.79.1
* kernel-rt_debug-devel-5.14.21-150500.13.79.1
* dlm-kmp-rt-debuginfo-5.14.21-150500.13.79.1
* gfs2-kmp-rt-debuginfo-5.14.21-150500.13.79.1
* kernel-rt_debug-debuginfo-5.14.21-150500.13.79.1
* ocfs2-kmp-rt-debuginfo-5.14.21-150500.13.79.1
* kernel-rt-vdso-5.14.21-150500.13.79.1
* cluster-md-kmp-rt-debuginfo-5.14.21-150500.13.79.1
* kernel-rt-vdso-debuginfo-5.14.21-150500.13.79.1
* kernel-syms-rt-5.14.21-150500.13.79.1
* gfs2-kmp-rt-5.14.21-150500.13.79.1
* kernel-rt-devel-5.14.21-150500.13.79.1
* dlm-kmp-rt-5.14.21-150500.13.79.1
* kernel-rt_debug-vdso-debuginfo-5.14.21-150500.13.79.1
* kernel-rt_debug-devel-debuginfo-5.14.21-150500.13.79.1
* ocfs2-kmp-rt-5.14.21-150500.13.79.1
* SUSE...
Read the Full Advisory* bsc#1082555
* bsc#1194869
* bsc#1218644
* bsc#1220382
* bsc#1221309
* bsc#1221333
* bsc#1222364
* bsc#1222590
* bsc#1223202
* bsc#1223656
* bsc#1223848
* bsc#1223919
* bsc#1223942
* bsc#1224518
* bsc#1224526
* bsc#1224574
* bsc#1225725
* bsc#1225730
* bsc#1225742
* bsc#1225764
* bsc#1225812
* bsc#1226560
* bsc#1226592
* bsc#1226631
* bsc#1226748
* bsc#1226872
* bsc#1227853
* bsc#1228410
* bsc#1228430
* bsc#1228486
* bsc#1228650
* bsc#1228857
* bsc#1229312
* bsc#1229429
* bsc#1229585
* bsc#1229752
* bsc#1229808
* bsc#1230055
* bsc#1230220
* bsc#1230231
* bsc#1230270
* bsc#1230558
* bsc#1230827
* bsc#1230918
* bsc#1231083
* bsc#1231089
* bsc#1231098
* bsc#1231101
* bsc#1231108
* bsc#1231111
* bsc#1231132
* bsc#1231135
* bsc#1231138
* bsc#1231169
* bsc#1231178
* bsc#1231180
* bsc#1231181
* bsc#1231187
* bsc#1231202
* bsc#1231434
* bsc#1231441
* bsc#1231452
* bsc#1231465
* bsc#1231474
* bsc#1231481
* bsc#1231537
* bsc#1231541
* bsc#1231646
* bsc#1231849
* bsc#1231856
* bsc#1231858
* bsc#1231859
* bsc#1231864
* bsc#1231904
* bsc#1231916
* bsc#1231920
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.