Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

SUSE: 2023:0774-1 Important: Linux Kernel Security Threats Resolved

suse
Calendar Grey February 27, 2024
Dist Suse Esm H88
This critical patch for the Linux kernel tackles multiple security flaws that demand prompt attention.
* bsc#1166486 * bsc#1177529 * bsc#1193629 * bsc#1197534 * bsc#1198438

Summary

## The SUSE Linux Enterprise 15 SP4 Azure kernel was updated to receive various security and bugfixes. * CVE-2022-3523: Fixed use after free related to device private page handling (bsc#1204363). * CVE-2022-36280: Fixed out-of-bounds memory access vulnerability found in vmwgfx driver (bsc#1203332). * CVE-2022-38096: Fixed NULL-ptr deref in vmw_cmd_dx_define_query() (bsc#1203331). * CVE-2023-0045: Fixed missing Flush IBP in ib_prctl_set (bsc#1207773). * CVE-2023-0122: Fixed a NULL pointer dereference vulnerability in nvmet_setup_auth(), that allowed an attacker to perform a Pre-Auth Denial of Service (DoS) attack on a remote machine (bsc#1207050). * CVE-2023-0461: Fixed use-after-free in icsk_ulp_data (bsc#1208787). * CVE-2023-0590: Fixed race condition in qdisc_graft() (bsc#1207795).

References

* bsc#1166486

* bsc#1177529

* bsc#1193629

* bsc#1197534

* bsc#1198438

* bsc#1200054

* bsc#1202633

* bsc#1203331

* bsc#1203332

* bsc#1204363

* bsc#1204993

* bsc#1205544

* bsc#1206103

* bsc#1206224

* bsc#1206232

* bsc#1206459

* bsc#1206640

* bsc#1206877

* bsc#1206878

* bsc#1206880

* bsc#1206881

* bsc#1206882

* bsc#1206883

* bsc#1206884

* bsc#1206886

* bsc#1206894

* bsc#1206935

* bsc#1207036

* bsc#1207050

* bsc#1207051

* bsc#1207125

* bsc#1207270

* bsc#1207328

* bsc#1207588

* bsc#1207590

* bsc#1207591

* bsc#1207592

* bsc#1207593

* bsc#1207594

* bsc#1207603

* bsc#1207605

* bsc#1207606

* bsc#1207608

* bsc#1207609

* bsc#1207613

* bsc#1207615

* bsc#1207617

* bsc#1207618

* bsc#1207619

* bsc#1207620

* bsc#1207621

* bsc#1207623

* bsc#1207624

* bsc#1207625

* bsc#1207626

* bsc#1207630

* bsc#1207631

* bsc#1207632

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2023:0774-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here