The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-27835: Fixed a use after free vulnerability in infiniband hfi1 driver in the way user calls Ioctl after open dev file and fork. A local user could use this flaw to crash the system (bnc#1179878). - CVE-2021-0707: Fixed a use after free vulnerability in dma_buf_release of dma-buf.c, which may lead to local escalation of privilege with no additional execution privileges needed (bnc#1198437). - CVE-2021-20292: Fixed object validation prior to performing operations on the object in nouveau_sgdma_create_ttm in Nouveau DRM subsystem (bnc#1183723). - CVE-2021-20321: Fixed a race condition accessing file object in the
#1028340 #1065729 #1071995 #1121726 #1137728
#1152489 #1177028 #1179878 #1182073 #1183723
#1187055 #1191647 #1193556 #1193842 #1195926
#1196018 #1196114 #1196367 #1196514 #1196639
#1196942 #1197157 #1197391 #1197656 #1197660
#1197914 #1197926 #1198217 #1198330 #1198400
#1198413 #1198437 #1198448 #1198484 #1198515
#1198516 #1198660 #1198742 #1198825 #1199012
#1199024 SLE-13208 SLE-13513 SLE-15172 SLE-15175
SLE-15176 SLE-8449
Cross- CVE-2020-27835 CVE-2021-0707 CVE-2021-20292
CVE-2021-20321 CVE-2021-38208 CVE-2021-4154
CVE-2022-0812 CVE-2022-1158 CVE-2022-1280
CVE-2022-1353 CVE-2022-1419 CVE-2022-1516
CVE-2022-28356 CVE-2022-28748 CVE-2022-28893
CVE-2022-29156
CVSS scores:
CVE-2020-2783...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.