Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

openSUSE 5.3, 5.4 Kernel Update: Critical Issues Resolved

suse
Calendar Grey December 14, 2023
Dist Suse Esm H88
SUSE's latest kernel update fixes critical issues including denial of service and privilege escalation vulnerabilities.
* bsc#1084909 * bsc#1189998 * bsc#1210447 * bsc#1214286 * bsc#1214976

Summary

## The SUSE Linux Enterprise 15 SP4 RT kernel was updated to receive various security and bugfixes. The following security bugs were fixed: * CVE-2023-6176: Fixed a denial of service in the cryptographic algorithm scatterwalk functionality (bsc#1217332). * CVE-2023-2006: Fixed a race condition in the RxRPC network protocol (bsc#1210447). * CVE-2023-39197: Fixed a out-of-bounds read in nf_conntrack_dccp_packet() (bsc#1216976). * CVE-2023-4244: Fixed a use-after-free in the nf_tables component, which could be exploited to achieve local privilege escalation (bsc#1215420). * CVE-2023-6039: Fixed a use-after-free in lan78xx_disconnect in drivers/net/usb/lan78xx.c (bsc#1217068). * CVE-2023-45863: Fixed a out-of-bounds write in fill_kobj_path() (bsc#1216058).

References

* bsc#1084909

* bsc#1189998

* bsc#1210447

* bsc#1214286

* bsc#1214976

* bsc#1215124

* bsc#1215292

* bsc#1215420

* bsc#1215458

* bsc#1215710

* bsc#1216058

* bsc#1216105

* bsc#1216259

* bsc#1216584

* bsc#1216693

* bsc#1216759

* bsc#1216761

* bsc#1216844

* bsc#1216861

* bsc#1216909

* bsc#1216959

* bsc#1216965

* bsc#1216976

* bsc#1217036

* bsc#1217068

* bsc#1217086

* bsc#1217124

* bsc#1217140

* bsc#1217195

* bsc#1217200

* bsc#1217205

* bsc#1217332

* bsc#1217366

* bsc#1217515

* bsc#1217598

* bsc#1217599

* bsc#1217609

* bsc#1217687

* bsc#1217731

* bsc#1217780

* jsc#PED-3184

* jsc#PED-5021

* jsc#PED-7237

Cross-

* CVE-2023-2006

* CVE-2023-25775

* CVE-2023-39197

* CVE-2023-39198

* CVE-2023-4244

* CVE-2023-45863

* CVE-2023-45871

* CVE-2023-46862

* CVE-2023-5158

* CVE-2023-5717

* CVE-2023-6039

* CVE-2023-6176

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2023:4731-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here