The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2022-29900, CVE-2022-29901: Fixed the RETBLEED attack, a new Spectre like Branch Target Buffer attack, that can leak arbitrary kernel information (bsc#1199657). - CVE-2022-34918: Fixed a buffer overflow with nft_set_elem_init() that could be used by a local attacker to escalate privileges (bnc#1201171). - CVE-2021-26341: Some AMD CPUs may transiently execute beyond unconditional direct branches, which may potentially result in data leakage (bsc#1201050). - CVE-2022-1679: Fixed a use-after-free in the Atheros wireless driver in the way a user forces the ath9k_htc_wait_for_target function to fail with some input messages (bsc#1199487).
#1065729 #1179195 #1180814 #1184924 #1185762
#1192761 #1193629 #1194013 #1195504 #1195775
#1196901 #1197362 #1197754 #1198020 #1198924
#1199482 #1199487 #1199489 #1199657 #1200217
#1200263 #1200343 #1200442 #1200571 #1200599
#1200600 #1200604 #1200605 #1200608 #1200619
#1200622 #1200692 #1200806 #1200807 #1200809
#1200810 #1200813 #1200816 #1200820 #1200821
#1200822 #1200825 #1200828 #1200829 #1200925
#1201050 #1201080 #1201143 #1201147 #1201149
#1201160 #1201171 #1201177 #1201193 #1201222
#1201644 #1201664 #1201672 #1201673 #1201676
Cross- CVE-2021-26341 CVE-2021-4157 CVE-2022-1012
CVE-2022-1679 CVE-2022-20132 CVE-2022-20141
CVE-2022-20154 CVE-2022-29900 CVE-2022-29901
CVE-2022-3...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.