Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

SUSE: 2024:2189-1 Important: Linux Kernel Security Issues Fixed

suse
Calendar Grey June 25, 2024
Dist Suse Esm H88
Critical announcement released for SUSE Linux Kernel tackling various security flaws, notably Denial of Service vulnerabilities.
* bsc#1065729 * bsc#1174585 * bsc#1190569 * bsc#1191949 * bsc#1192107

Summary

## The SUSE Linux Enterprise 15 SP4 kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2024-35905: Fixed int overflow for stack access size (bsc#1224488). * CVE-2024-26828: Fix underflow in parse_server_interfaces() (bsc#1223084). * CVE-2024-35863: Fix potential UAF in is_valid_oplock_break() (bsc#1224763). * CVE-2024-35867: Fix potential UAF in cifs_stats_proc_show() (bsc#1224664). * CVE-2024-35868: Fix potential UAF in cifs_stats_proc_write() (bsc#1224678). * CVE-2024-26928: Fix potential UAF in cifs_debug_files_proc_show() (bsc#1223532). * CVE-2024-36926: Fixed LPAR panics during boot up with a frozen PE (bsc#1222011). * CVE-2024-26925: Release mutex after nft_gc_seq_end from abort path (bsc#1223390).

References

* bsc#1065729

* bsc#1174585

* bsc#1190569

* bsc#1191949

* bsc#1192107

* bsc#1193983

* bsc#1194288

* bsc#1194869

* bsc#1196869

* bsc#1196956

* bsc#1197915

* bsc#1200313

* bsc#1201308

* bsc#1201489

* bsc#1208149

* bsc#1209657

* bsc#1209799

* bsc#1209834

* bsc#1210335

* bsc#1211592

* bsc#1213863

* bsc#1216702

* bsc#1217169

* bsc#1217515

* bsc#1218447

* bsc#1218917

* bsc#1220492

* bsc#1220783

* bsc#1221044

* bsc#1221645

* bsc#1221958

* bsc#1222011

* bsc#1222559

* bsc#1222619

* bsc#1222721

* bsc#1222976

* bsc#1223057

* bsc#1223084

* bsc#1223111

* bsc#1223138

* bsc#1223191

* bsc#1223384

* bsc#1223390

* bsc#1223481

* bsc#1223501

* bsc#1223505

* bsc#1223512

* bsc#1223520

* bsc#1223532

* bsc#1223626

* bsc#1223715

* bsc#1223894

* bsc#1223921

* bsc#1223922

* bsc#1223923

* bsc#1223924

* bsc#1223929

* bsc#1223931

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2024:2189-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here