The SUSE Linux Enterprise 15 SP5 kernel was updated to receive various security
bugfixes.
The following security bugs were fixed:
* CVE-2024-36898: gpiolib: cdev: fix uninitialised kfifo (bsc#1225736).
* CVE-2024-46858: mptcp: pm: Fix uaf in __timer_delete_sync (bsc#1231088).
* CVE-2024-50142: xfrm: validate new SA's prefixlen using SA family when
sel.family is unset (bsc#1233028).
* CVE-2024-50151: smb: client: fix OOBs when building SMB2_IOCTL request
(bsc#1233055).
* CVE-2024-50199: mm/swapfile: skip HugeTLB pages for unuse_vma (bsc#1233112).
* CVE-2024-50299: sctp: properly validate chunk size in sctp_sf_ootb()
(bsc#1233488).
* CVE-2024-53104: media: uvcvideo: Skip parsing frames of type
UVC_VS_UNDEFINED in uvc_parse_format (bsc#1234025).
* CVE-2024-53141: netfilter: ipset: add missing range check in bitmap_ip_uadt
(bsc#1234381).
* CVE-2024-53166: block, bfq: fix bfqq uaf in bfq_limit_depth() (bsc#1234884).
* CVE-2024-53177: smb: prevent...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.5
zypper in -t patch SUSE-2025-577=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2025-577=1
* SUSE Linux Enterprise Live Patching 15-SP5
zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2025-577=1
* SUSE Linux Enterprise High Availability Extension 15 SP5
zypper in -t patch SUSE-SLE-Product-HA-15-SP5-2025-577=1
* SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5
zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2025-577=1
* SUSE Linux Enterprise High Performance Computing LTSS 15 SP5
zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2025-577=1
* SUSE Linux Enterprise Server 15 SP5 LTSS
zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2025-577=1
* SUSE Linux Enterprise Server for SAP Applications 15 SP5
zypper in -t patch...
Read the Full Advisory* openSUSE Leap 15.5 (noarch nosrc)
* kernel-docs-5.14.21-150500.55.94.1
* openSUSE Leap 15.5 (noarch)
* kernel-macros-5.14.21-150500.55.94.1
* kernel-source-5.14.21-150500.55.94.1
* kernel-source-vanilla-5.14.21-150500.55.94.1
* kernel-devel-5.14.21-150500.55.94.1
* kernel-docs-html-5.14.21-150500.55.94.1
* openSUSE Leap 15.5 (nosrc ppc64le x86_64)
* kernel-debug-5.14.21-150500.55.94.1
* openSUSE Leap 15.5 (ppc64le x86_64)
* kernel-debug-devel-debuginfo-5.14.21-150500.55.94.1
* kernel-debug-debugsource-5.14.21-150500.55.94.1
* kernel-debug-devel-5.14.21-150500.55.94.1
* kernel-debug-debuginfo-5.14.21-150500.55.94.1
* openSUSE Leap 15.5 (x86_64)
* kernel-default-vdso-5.14.21-150500.55.94.1
* kernel-kvmsmall-vdso-5.14.21-150500.55.94.1
* kernel-kvmsmall-vdso-debuginfo-5.14.21-150500.55.94.1
* kernel-debug-vdso-5.14.21-150500.55.94.1
* kernel-default-vdso-debuginfo-5.14.21-150500.55.94.1
* kernel-debug-vdso-debuginfo-5.14.21-150500.55.94.1
* openSUSE Leap 15.5 (aarch64 ppc64le x86_64)
*...
Read the Full Advisory* bsc#1194869
* bsc#1216813
* bsc#1223384
* bsc#1225736
* bsc#1226848
* bsc#1226980
* bsc#1228537
* bsc#1228592
* bsc#1230341
* bsc#1230432
* bsc#1230527
* bsc#1230697
* bsc#1231088
* bsc#1231847
* bsc#1232914
* bsc#1233028
* bsc#1233055
* bsc#1233097
* bsc#1233103
* bsc#1233112
* bsc#1233464
* bsc#1233488
* bsc#1233642
* bsc#1233778
* bsc#1234024
* bsc#1234025
* bsc#1234078
* bsc#1234087
* bsc#1234153
* bsc#1234155
* bsc#1234223
* bsc#1234381
* bsc#1234683
* bsc#1234690
* bsc#1234825
* bsc#1234829
* bsc#1234832
* bsc#1234884
* bsc#1234889
* bsc#1234896
* bsc#1234899
* bsc#1234900
* bsc#1234905
* bsc#1234909
* bsc#1234916
* bsc#1234918
* bsc#1234922
* bsc#1234930
* bsc#1234931
* bsc#1234934
* bsc#1234962
* bsc#1234999
* bsc#1235002
* bsc#1235009
* bsc#1235011
* bsc#1235053
* bsc#1235057
* bsc#1235059
* bsc#1235100
* bsc#1235122
* bsc#1235123
* bsc#1235133
* bsc#1235134
* bsc#1235217
* bsc#1235222
* bsc#1235230
* bsc#1235249
* bsc#1235410
* bsc#1235430
* bsc#1235433
* bsc#1235441
* bsc#1235451
* bsc#1235458
* bsc#1235466
* bsc#1235473
* bsc#1235480
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.