Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

SUSE: 2024:129 critical: Fix for Local Privilege Escalation and Stability

suse
Calendar Grey January 16, 2024
Dist Suse Esm H88
This patch resolves various critical security flaws in the Linux kernel, boosting stability and safeguarding against risks.
* bsc#1179610 * bsc#1183045 * bsc#1193285 * bsc#1211162 * bsc#1211226

Summary

## The SUSE Linux Enterprise 15 SP4 RT kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2023-6531: Fixed a use-after-free flaw due to a race problem in the unix garbage collector's deletion of SKB races with unix_stream_read_generic() on the socket that the SKB is queued on (bsc#1218447). * CVE-2023-6610: Fixed an out of bounds read in the SMB client when printing debug information (bsc#1217946). * CVE-2023-51779: Fixed a use-after-free because of a bt_sock_ioctl race condition in bt_sock_recvmsg (bsc#1218559). * CVE-2020-26555: Fixed an issue during BR/EDR PIN code pairing in the Bluetooth subsystem that would allow replay attacks (bsc#1179610 bsc#1215237). * CVE-2023-6606: Fixed an out of bounds read in the SMB client when receiving

References

* bsc#1179610

* bsc#1183045

* bsc#1193285

* bsc#1211162

* bsc#1211226

* bsc#1212584

* bsc#1214747

* bsc#1214823

* bsc#1215237

* bsc#1215696

* bsc#1215885

* bsc#1216057

* bsc#1216559

* bsc#1216776

* bsc#1217036

* bsc#1217217

* bsc#1217250

* bsc#1217602

* bsc#1217692

* bsc#1217790

* bsc#1217801

* bsc#1217933

* bsc#1217938

* bsc#1217946

* bsc#1217947

* bsc#1217980

* bsc#1217981

* bsc#1217982

* bsc#1218056

* bsc#1218139

* bsc#1218184

* bsc#1218234

* bsc#1218253

* bsc#1218258

* bsc#1218335

* bsc#1218357

* bsc#1218447

* bsc#1218515

* bsc#1218559

* bsc#1218569

* bsc#1218659

* jsc#PED-3459

* jsc#PED-5021

* jsc#PED-7322

Cross-

* CVE-2020-26555

* CVE-2023-51779

* CVE-2023-6121

* CVE-2023-6531

* CVE-2023-6546

* CVE-2023-6606

* CVE-2023-6610

* CVE-2023-6622

* CVE-2023-6931

* CVE-2023-6932

CVSS scores:

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2024:0129-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here