The SUSE Linux Enterprise 15 SP6 kernel was updated to receive various security
bugfixes.
The following security bugs were fixed:
* CVE-2024-53095: smb: client: Fix use-after-free of network namespace
(bsc#1233642).
* CVE-2023-52778: mptcp: deal with large GSO size (bsc#1224948).
* CVE-2023-52920: bpf: support non-r10 register spill/fill to/from stack in
precision tracking (bsc#1232823).
* CVE-2023-6270: aoe: fix the potential use-after-free problem in more places
(bsc#1218562).
* CVE-2024-26596: net: dsa: fix netdev_priv() dereference before check on non-
DSA netdevice events (bsc#1220355).
* CVE-2024-26741: dccp/tcp: Unhash sk from ehash for tb2 alloc failure after
check_estalblished() (bsc#1222587).
* CVE-2024-26782: mptcp: fix double-free on socket dismantle (bsc#1222590).
* CVE-2024-26953: net: esp: fix bad handling of pages from page_pool
(bsc#1223656).
* CVE-2024-27017: netfilter: nft_set_pipapo: walk over current view on netlink
...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.6
zypper in -t patch SUSE-2024-4318=1 openSUSE-SLE-15.6-2024-4318=1
* Basesystem Module 15-SP6
zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2024-4318=1
* Development Tools Module 15-SP6
zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP6-2024-4318=1
* Legacy Module 15-SP6
zypper in -t patch SUSE-SLE-Module-Legacy-15-SP6-2024-4318=1
* SUSE Linux Enterprise Live Patching 15-SP6
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP6-2024-4318=1
Please note that this is the initial kernel livepatch without fixes itself, this
package is later updated by separate standalone kernel livepatch updates.
* SUSE Linux Enterprise High Availability Extension 15 SP6
zypper in -t patch SUSE-SLE-Product-HA-15-SP6-2024-4318=1
* SUSE Linux Enterprise Workstation Extension 15 SP6
zypper...
Read the Full Advisory* openSUSE Leap 15.6 (noarch nosrc)
* kernel-docs-6.4.0-150600.23.30.1
* openSUSE Leap 15.6 (noarch)
* kernel-macros-6.4.0-150600.23.30.1
* kernel-devel-6.4.0-150600.23.30.1
* kernel-docs-html-6.4.0-150600.23.30.1
* kernel-source-vanilla-6.4.0-150600.23.30.1
* kernel-source-6.4.0-150600.23.30.1
* openSUSE Leap 15.6 (nosrc ppc64le x86_64)
* kernel-debug-6.4.0-150600.23.30.1
* openSUSE Leap 15.6 (ppc64le x86_64)
* kernel-debug-debugsource-6.4.0-150600.23.30.1
* kernel-debug-devel-debuginfo-6.4.0-150600.23.30.1
* kernel-debug-devel-6.4.0-150600.23.30.1
* kernel-debug-debuginfo-6.4.0-150600.23.30.1
* openSUSE Leap 15.6 (x86_64)
* kernel-kvmsmall-vdso-debuginfo-6.4.0-150600.23.30.1
* kernel-default-vdso-debuginfo-6.4.0-150600.23.30.1
* kernel-kvmsmall-vdso-6.4.0-150600.23.30.1
* kernel-debug-vdso-6.4.0-150600.23.30.1
* kernel-debug-vdso-debuginfo-6.4.0-150600.23.30.1
* kernel-default-vdso-6.4.0-150600.23.30.1
* openSUSE Leap 15.6 (aarch64 ppc64le x86_64)
*...
Read the Full Advisory* bsc#1012628
* bsc#1065729
* bsc#1082555
* bsc#1194869
* bsc#1215199
* bsc#1217845
* bsc#1218562
* bsc#1218644
* bsc#1219596
* bsc#1219803
* bsc#1220355
* bsc#1220382
* bsc#1221309
* bsc#1222423
* bsc#1222587
* bsc#1222590
* bsc#1223112
* bsc#1223384
* bsc#1223656
* bsc#1223700
* bsc#1223733
* bsc#1223824
* bsc#1223848
* bsc#1224088
* bsc#1224429
* bsc#1224518
* bsc#1224548
* bsc#1224574
* bsc#1224948
* bsc#1225611
* bsc#1225713
* bsc#1225725
* bsc#1225730
* bsc#1225742
* bsc#1225764
* bsc#1225768
* bsc#1225813
* bsc#1225903
* bsc#1226003
* bsc#1226130
* bsc#1226498
* bsc#1226623
* bsc#1226631
* bsc#1226748
* bsc#1226797
* bsc#1226848
* bsc#1226872
* bsc#1227726
* bsc#1227842
* bsc#1228119
* bsc#1228244
* bsc#1228269
* bsc#1228410
* bsc#1228430
* bsc#1228454
* bsc#1228537
* bsc#1228620
* bsc#1228743
* bsc#1228747
* bsc#1228850
* bsc#1228857
* bsc#1229019
* bsc#1229165
* bsc#1229429
* bsc#1229450
* bsc#1229585
* bsc#1229677
* bsc#1229769
* bsc#1229808
* bsc#1229891
* bsc#1230055
* bsc#1230132
* bsc#1230179
* bsc#1230220
* bsc#1230231
* bsc#1230289
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.