Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

SUSE: 2022:0068-1 Important: Kernel Security Update - High Severity: DoS

suse
Calendar Grey January 13, 2022
Dist Suse Esm H88
SUSE has released a Security Update for the Linux Kernel, targeting 16 vulnerabilities and incorporating 26 enhancements. This essential patch is accessible for Enterprise versions.
An update that solves 16 vulnerabilities and has 26 fixes is now available

Summary

The SUSE Linux Enterprise 12 SP5 kernel was updated. The following security bugs were fixed: - CVE-2019-15126: Fixed a vulnerability in Broadcom and Cypress Wi-Fi chips, used in RPi family of devices aka "Kr00k". (bsc#1167162) - CVE-2021-33098: Fixed a potential denial of service in Intel(R) Ethernet ixgbe driver due to improper input validation. (bsc#1192877) - CVE-2021-0935: Fixed out of bounds write due to a use after free which could lead to local escalation of privilege with System execution privileges needed in ip6_xmit. (bsc#1192032) - CVE-2018-25020: Fixed an issue in the BPF subsystem in the Linux kernel mishandled situations with a long jump over an instruction sequence where inner instructions require substantial expansions into multiple BPF instructions, leading to an overflow. (bsc#1193575)

References

#1114648 #1124431 #1167162 #1169514 #1172073

#1179599 #1183678 #1183897 #1184804 #1185727

#1185762 #1187167 #1189126 #1189158 #1189305

#1189841 #1190317 #1190358 #1190428 #1191229

#1191384 #1191731 #1191876 #1192032 #1192145

#1192267 #1192740 #1192845 #1192847 #1192866

#1192877 #1192946 #1192974 #1193231 #1193306

#1193318 #1193440 #1193442 #1193575 #1193731

#1194087 #1194094

Cross- CVE-2018-25020 CVE-2019-15126 CVE-2020-27820

CVE-2021-0920 CVE-2021-0935 CVE-2021-28711

CVE-2021-28712 CVE-2021-28713 CVE-2021-28714

CVE-2021-28715 CVE-2021-33098 CVE-2021-4002

CVE-2021-43975 CVE-2021-43976 CVE-2021-45485

CVE-2021-45486

CVSS scores:

CVE-2018-25020 (SUSE): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2022:0068-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here