Alerts This Week
Warning Icon 1 770
Alerts This Week
Warning Icon 1 770

SUSE: 2022:2083-1 Important Security Advisory For Kernel Issues

suse
Calendar Grey June 14, 2022
Dist Suse Esm H88
SUSE's recent upgrade addresses 19 bugs and introduces an essential kernel fix aimed at improving performance and safeguarding integrity.
An update that solves 19 vulnerabilities, contains one feature and has 10 fixes is now available

Summary

The SUSE Linux Enterprise 12 SP4 kernel was updated. The following security bugs were fixed: - CVE-2022-21127: Fixed a stale MMIO data transient which can be exploited to speculatively/transiently disclose information via spectre like attacks. (bsc#1199650) - CVE-2022-21123: Fixed a stale MMIO data transient which can be exploited to speculatively/transiently disclose information via spectre like attacks. (bsc#1199650) - CVE-2022-21125: Fixed a stale MMIO data transient which can be exploited to speculatively/transiently disclose information via spectre like attacks. (bsc#1199650) - CVE-2022-21180: Fixed a stale MMIO data transient which can be exploited to speculatively/transiently disclose information via spectre like attacks. (bsc#1199650)

References

#1028340 #1065729 #1071995 #1114648 #1172456

#1182171 #1183723 #1187055 #1191647 #1191958

#1195651 #1196426 #1197099 #1197219 #1197343

#1198400 #1198516 #1198660 #1198687 #1198742

#1198825 #1199012 #1199063 #1199314 #1199399

#1199426 #1199505 #1199605 #1199650 SLE-24124

Cross- CVE-2019-20811 CVE-2021-20292 CVE-2021-20321

CVE-2021-33061 CVE-2021-38208 CVE-2021-39711

CVE-2021-43389 CVE-2022-1011 CVE-2022-1353

CVE-2022-1419 CVE-2022-1516 CVE-2022-1652

CVE-2022-1734 CVE-2022-21123 CVE-2022-21125

CVE-2022-21127 CVE-2022-21166 CVE-2022-21180

CVE-2022-30594

CVSS scores:

CVE-2019-20811 (NVD) : 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

CVE-2019-20811 (SUSE): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2022:2083-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here