Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

openSUSE Leap 15.5: Security Advisory - Kernel Bug Fixes and Improvements

suse
Calendar Grey January 18, 2024
Dist Suse Esm H88
Crucial update for the SUSE Linux kernel addresses various vulnerabilities and enhances comprehensive system security.
* bsc#1108281 * bsc#1179610 * bsc#1183045 * bsc#1211162 * bsc#1211226

Summary

## The SUSE Linux Enterprise 15 SP5 Azure kernel was updated to receive various security and bugfixes. The following security bugs were fixed: * CVE-2023-6531: Fixed a use-after-free flaw due to a race problem in the unix garbage collector's deletion of SKB races with unix_stream_read_generic()on the socket that the SKB is queued on (bsc#1218447). * CVE-2023-6610: Fixed an out of bounds read in the SMB client when printing debug information (bsc#1217946). * CVE-2023-51779: Fixed a use-after-free because of a bt_sock_ioctl race condition in bt_sock_recvmsg (bsc#1218559). * CVE-2020-26555: Fixed Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B that may permit an unauthenticated nearby device to spoof the BD_ADDR of the peer device to complete pairing without knowledge

References

* bsc#1108281

* bsc#1179610

* bsc#1183045

* bsc#1211162

* bsc#1211226

* bsc#1212139

* bsc#1212584

* bsc#1214117

* bsc#1214747

* bsc#1214823

* bsc#1215237

* bsc#1215696

* bsc#1215885

* bsc#1215952

* bsc#1216032

* bsc#1216057

* bsc#1216559

* bsc#1216776

* bsc#1217036

* bsc#1217217

* bsc#1217250

* bsc#1217602

* bsc#1217692

* bsc#1217790

* bsc#1217801

* bsc#1217822

* bsc#1217927

* bsc#1217933

* bsc#1217938

* bsc#1217946

* bsc#1217947

* bsc#1217980

* bsc#1217981

* bsc#1217982

* bsc#1218056

* bsc#1218092

* bsc#1218139

* bsc#1218184

* bsc#1218229

* bsc#1218234

* bsc#1218253

* bsc#1218258

* bsc#1218335

* bsc#1218357

* bsc#1218397

* bsc#1218447

* bsc#1218461

* bsc#1218515

* bsc#1218559

* bsc#1218569

* bsc#1218643

* jsc#PED-3459

* jsc#PED-5021

* jsc#PED-7167

Cross-

* CVE-2020-26555

* CVE-2023-51779

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2024:0141-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here