Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE: 2022:3809-1 Important: Kernel Denial of Service Risk

suse
Calendar Grey October 31, 2022
Dist Suse Esm H88
A crucial firmware enhancement for the Windows OS tackling 28 vulnerabilities and improving platform reliability.
An update that solves 32 vulnerabilities, contains two features and has 84 fixes is now available

Summary

The SUSE Linux Enterprise 15 SP3 RT kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2016-3695: Fixed an issue inside the einj_error_inject function in drivers/acpi/apei/einj.c that allowed users to simulate hardware errors and consequently cause a denial of service (bnc#1023051). - CVE-2020-16119: Fixed a use-after-free due to reuse of a DCCP socket with an attached dccps_hc_tx_ccid object as a listener after being released (bnc#1177471). - CVE-2020-27784: Fixed a vulnerability that was found in printer_ioctl() printer_ioctl() when accessing a deallocated instance (bnc#1202895). - CVE-2021-4155: Fixed a data leak flaw that was found in the way XFS_IOC_ALLOCSP IOCTL in the XFS filesystem (bnc#1194272).

References

#1023051 #1065729 #1152489 #1156395 #1177471

#1179722 #1179723 #1181862 #1185032 #1191662

#1191667 #1191881 #1192594 #1194023 #1194272

#1194535 #1196444 #1197158 #1197659 #1197755

#1197756 #1197757 #1197760 #1197763 #1197920

#1198971 #1199291 #1200288 #1200313 #1200431

#1200622 #1200845 #1200868 #1200869 #1200870

#1200871 #1200872 #1200873 #1201019 #1201309

#1201310 #1201420 #1201489 #1201610 #1201705

#1201726 #1201865 #1201948 #1201990 #1202095

#1202096 #1202097 #1202341 #1202346 #1202347

#1202385 #1202393 #1202396 #1202447 #1202577

#1202636 #1202638 #1202672 #1202677 #1202701

#1202708 #1202709 #1202710 #1202711 #1202712

#1202713 #1202714 #1202715 #1202716 #1202717

#1202718 #120...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2022:3809-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here