Alerts This Week
Warning Icon 1 770
Alerts This Week
Warning Icon 1 770

SUSE: 2022:3264-1 Important Kernel Security Updates for DoS Risk

suse
Calendar Grey September 14, 2022
Dist Suse Esm H88
SUSE Security Advisory reveals critical updates for the Linux kernel addressing various vulnerabilities, including risks associated with Denial of Service (DoS).
An update that solves 15 vulnerabilities, contains one feature and has 61 fixes is now available

Summary

The SUSE Linux Enterprise 15 SP3 kernel was updated receive various security and bugfixes. The following security bugs were fixed: - CVE-2022-39190: Fixed an issue that was discovered in net/netfilter/nf_tables_api.c and could cause a denial of service upon binding to an already bound chain (bnc#1203117). - CVE-2022-39188: Fixed race condition in include/asm-generic/tlb.h where a device driver can free a page while it still has stale TLB entries (bnc#1203107). - CVE-2022-36879: Fixed an issue in xfrm_expand_policies in net/xfrm/xfrm_policy.c where a refcount could be dropped twice (bnc#1201948). - CVE-2022-3028: Fixed race condition that was found in the IP framework for transforming packets (XFRM subsystem) (bnc#1202898). - CVE-2022-2977: Fixed reference counting for struct tpm_chip (bsc#1202672).

References

#1023051 #1065729 #1156395 #1179722 #1179723

#1181862 #1191662 #1191667 #1191881 #1192594

#1192968 #1194272 #1194535 #1197158 #1197755

#1197756 #1197757 #1197760 #1197763 #1197920

#1198971 #1199291 #1200431 #1200845 #1200868

#1200869 #1200870 #1200871 #1200872 #1200873

#1201019 #1201420 #1201610 #1201705 #1201726

#1201948 #1202096 #1202097 #1202346 #1202347

#1202393 #1202396 #1202447 #1202564 #1202577

#1202636 #1202672 #1202701 #1202708 #1202709

#1202710 #1202711 #1202712 #1202713 #1202714

#1202715 #1202716 #1202717 #1202718 #1202720

#1202722 #1202745 #1202756 #1202810 #1202811

#1202860 #1202895 #1202898 #1203063 #1203098

#1203107 #1203116 #1203117 #1203135 #1203136

#1203137 SLE-...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2022:3264-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here