Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

SUSE: 2023:4142-1 Important: Linux Kernel Security Updates

suse
Calendar Grey October 20, 2023
Dist Suse Esm H88
A crucial patch for the Linux Kernel has been released, targeting numerous vulnerabilities and issues. Below are the guidelines for installation.
* bsc#1176588 * bsc#1202845 * bsc#1207270 * bsc#1208995 * bsc#1210169

Summary

## The SUSE Linux Enterprise 15 SP3 RT kernel was updated to receive various security and bugfixes. The following security bugs were fixed: * CVE-2023-4389: Fixed a reference counting issue in the Btrfs filesystem that could be exploited in order to leak internal kernel information or crash the system (bsc#1214351). * CVE-2023-42753: Fixed an array indexing vulnerability in the netfilter subsystem. This issue may have allowed a local user to crash the system or potentially escalate their privileges (bsc#1215150). * CVE-2023-1206: Fixed a hash collision flaw in the IPv6 connection lookup table. A user located in the local network or with a high bandwidth connection can increase the CPU usage of the server that accepts IPV6 connections up to 95% (bsc#1212703).

References

* bsc#1176588

* bsc#1202845

* bsc#1207270

* bsc#1208995

* bsc#1210169

* bsc#1210643

* bsc#1210658

* bsc#1212703

* bsc#1213812

* bsc#1214233

* bsc#1214351

* bsc#1214380

* bsc#1214386

* bsc#1215115

* bsc#1215117

* bsc#1215150

* bsc#1215221

* bsc#1215275

* bsc#1215299

* bsc#1215322

* bsc#1215356

Cross-

* CVE-2020-36766

* CVE-2023-1192

* CVE-2023-1206

* CVE-2023-1859

* CVE-2023-2177

* CVE-2023-4004

* CVE-2023-40283

* CVE-2023-42753

* CVE-2023-4389

* CVE-2023-4622

* CVE-2023-4623

* CVE-2023-4881

* CVE-2023-4921

CVSS scores:

* CVE-2020-36766 ( SUSE ): 2.5 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

* CVE-2020-36766 ( NVD ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

* CVE-2023-1192 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2023:4142-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here