Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

SUSE 15-SP3: 2022:3897-1 Crucial Kernel Security Updates Against Threats

suse
Calendar Grey November 8, 2022
Dist Suse Esm H88
SUSE has released an urgent security update to tackle 33 vulnerabilities in the Linux Kernel, including Denial-of-Service threats and local privilege escalation issues
An update that solves 33 vulnerabilities, contains one feature and has 15 fixes is now available

Summary

The SUSE Linux Enterprise 15 SP3 Azure kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2021-4037: Fixed function logic vulnerability that allowed local users to create files for the XFS file-system with an unintended group ownership and with group execution and SGID permission bits set (bnc#1198702). - CVE-2022-2153: Fixed vulnerability in KVM that could allow an unprivileged local attacker on the host to cause DoS (bnc#1200788). - CVE-2022-2964, CVE-2022-28748: Fixed memory corruption issues in ax88179_178a devices (bnc#1202686 bsc#1196018). - CVE-2022-2978: Fixed use-after-free in the NILFS file system that could lead to local privilege escalation or DoS (bnc#1202700). - CVE-2022-3169: Fixed a denial of service flaw which occurs when

References

#1032323 #1065729 #1152489 #1196018 #1198702

#1200465 #1200788 #1201725 #1202638 #1202686

#1202700 #1203066 #1203098 #1203290 #1203387

#1203391 #1203496 #1203514 #1203770 #1203802

#1204051 #1204053 #1204059 #1204060 #1204125

#1204166 #1204168 #1204354 #1204355 #1204382

#1204402 #1204415 #1204417 #1204431 #1204439

#1204470 #1204479 #1204574 #1204575 #1204619

#1204635 #1204637 #1204646 #1204647 #1204653

#1204728 #1204753 #1204754 PED-1931

Cross- CVE-2021-4037 CVE-2022-2153 CVE-2022-28748

CVE-2022-2964 CVE-2022-2978 CVE-2022-3169

CVE-2022-3176 CVE-2022-3424 CVE-2022-3521

CVE-2022-3524 CVE-2022-3535 CVE-2022-3542

CVE-2022-3545 CVE-2022-3565 CVE-2022-3577

CVE-2022-3586 CVE-2022-3594 CVE-2022-3621

...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2022:3897-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here