The SUSE Linux Enterprise 15 SP5 Azure kernel was updated to receive various
security bugfixes.
The following security bugs were fixed:
* CVE-2021-47594: mptcp: never allow the PM to close a listener subflow
(bsc#1226560).
* CVE-2022-48983: io_uring: Fix a null-ptr-deref in io_tctx_exit_cb()
(bsc#1231959).
* CVE-2024-26782: mptcp: fix double-free on socket dismantle (bsc#1222590).
* CVE-2024-26906: Fixed invalid vsyscall page read for
copy_from_kernel_nofault() (bsc#1223202).
* CVE-2024-26953: net: esp: fix bad handling of pages from page_pool
(bsc#1223656).
* CVE-2024-35888: erspan: make sure erspan_base_hdr is present in skb->head
(bsc#1224518).
* CVE-2024-35937: wifi: cfg80211: check A-MSDU format more carefully
(bsc#1224526).
* CVE-2024-36883: net: fix out-of-bounds access in ops_init (bsc#1225725).
* CVE-2024-36886: tipc: fix UAF in error path (bsc#1225730).
* CVE-2024-36905: tcp: defer shutdown(SEND_SHUTDOWN) for TCP_SYN_RECV...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2024-4376=1 openSUSE-SLE-15.5-2024-4376=1
* Public Cloud Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP5-2024-4376=1
* openSUSE Leap 15.5 (aarch64 x86_64)
* kernel-azure-extra-debuginfo-5.14.21-150500.33.75.1
* kernel-azure-debugsource-5.14.21-150500.33.75.1
* kernel-azure-optional-debuginfo-5.14.21-150500.33.75.1
* kernel-azure-devel-5.14.21-150500.33.75.1
* kernel-azure-devel-debuginfo-5.14.21-150500.33.75.1
* kselftests-kmp-azure-debuginfo-5.14.21-150500.33.75.1
* cluster-md-kmp-azure-5.14.21-150500.33.75.1
* kernel-syms-azure-5.14.21-150500.33.75.1
* ocfs2-kmp-azure-debuginfo-5.14.21-150500.33.75.1
* kernel-azure-extra-5.14.21-150500.33.75.1
* kernel-azure-debuginfo-5.14.21-150500.33.75.1
* gfs2-kmp-azure-5.14.21-150500.33.75.1
* reiserfs-kmp-azure-debuginfo-5.14.21-150500.33.75.1
* dlm-kmp-azure-debuginfo-5.14.21-150500.33.75.1
* kernel-azure-optional-5.14.21-150500.33.75.1
* kselftests-kmp-azure-5.14.21-150500.33.75.1
* reiserfs-kmp-azure-5.14.21-150500.33.75.1
* cluster-md-kmp-azure-debuginfo-5.14.21-150500.33.75.1
* dlm-kmp-azure-5.14.21-150500.33.75.1
* ocfs2-kmp-azure-5.14.21-150500.33.75.1
*...
Read the Full Advisory* bsc#1082555
* bsc#1194869
* bsc#1218644
* bsc#1220382
* bsc#1221309
* bsc#1221333
* bsc#1222364
* bsc#1222590
* bsc#1223202
* bsc#1223656
* bsc#1223848
* bsc#1223919
* bsc#1223942
* bsc#1224518
* bsc#1224526
* bsc#1224574
* bsc#1225725
* bsc#1225730
* bsc#1225742
* bsc#1225764
* bsc#1225812
* bsc#1226560
* bsc#1226592
* bsc#1226631
* bsc#1226748
* bsc#1226872
* bsc#1227853
* bsc#1228410
* bsc#1228430
* bsc#1228486
* bsc#1228650
* bsc#1228857
* bsc#1229312
* bsc#1229429
* bsc#1229585
* bsc#1229752
* bsc#1229808
* bsc#1230055
* bsc#1230220
* bsc#1230231
* bsc#1230270
* bsc#1230558
* bsc#1230827
* bsc#1230918
* bsc#1231083
* bsc#1231089
* bsc#1231098
* bsc#1231101
* bsc#1231108
* bsc#1231111
* bsc#1231132
* bsc#1231135
* bsc#1231138
* bsc#1231169
* bsc#1231178
* bsc#1231180
* bsc#1231181
* bsc#1231187
* bsc#1231202
* bsc#1231434
* bsc#1231441
* bsc#1231452
* bsc#1231465
* bsc#1231474
* bsc#1231481
* bsc#1231537
* bsc#1231541
* bsc#1231646
* bsc#1231849
* bsc#1231856
* bsc#1231858
* bsc#1231859
* bsc#1231864
* bsc#1231904
* bsc#1231916
* bsc#1231920
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.