Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE: 2024:2923-1 Important Kernel Security Update Overview

suse
Calendar Grey August 15, 2024
Dist Suse Esm H88
Urgent security patch for SUSE Linux Kernel tackling various vulnerabilities with significant corrections. Swift response required.
* bsc#1065729 * bsc#1179610 * bsc#1186463 * bsc#1216834 * bsc#1218820

Summary

## The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2024-39494: ima: Fix use-after-free on a dentry's dname.name (bsc#1227716). * CVE-2024-41069: ASoC: topology: Fix route memory corruption (bsc#1228644). * CVE-2024-42145: IB/core: Implement a limit on UMAD receive List (bsc#1228743). * CVE-2024-41059: hfsplus: fix uninit-value in copy_name (bsc#1228561). * CVE-2023-52885: SUNRPC: Fix UAF in svc_tcp_listen_data_ready() (bsc#1227750). * CVE-2022-48792: scsi: pm8001: Fix use-after-free for aborted SSP/STP sas_task (bsc#1228013). * CVE-2024-41090: tap: add missing verification for short frame (bsc#1228328). * CVE-2021-47291: ipv6: fix another slab-out-of-bounds in fib6_nh_flush_exceptions (bsc#1224918).

References

* bsc#1065729

* bsc#1179610

* bsc#1186463

* bsc#1216834

* bsc#1218820

* bsc#1220185

* bsc#1220186

* bsc#1220187

* bsc#1221539

* bsc#1222824

* bsc#1224682

* bsc#1224918

* bsc#1225404

* bsc#1225431

* bsc#1226519

* bsc#1226550

* bsc#1226574

* bsc#1226575

* bsc#1226666

* bsc#1226758

* bsc#1226785

* bsc#1227213

* bsc#1227487

* bsc#1227716

* bsc#1227750

* bsc#1227836

* bsc#1227976

* bsc#1228013

* bsc#1228114

* bsc#1228328

* bsc#1228561

* bsc#1228644

* bsc#1228743

Cross-

* CVE-2020-26558

* CVE-2021-0129

* CVE-2021-47126

* CVE-2021-47219

* CVE-2021-47291

* CVE-2021-47506

* CVE-2021-47520

* CVE-2021-47580

* CVE-2021-47598

* CVE-2021-47600

* CVE-2022-48792

* CVE-2022-48821

* CVE-2023-52686

* CVE-2023-52885

* CVE-2024-26583

* CVE-2024-26584

* CVE-2024-26585

* CVE-2024-36974

* CVE-2024-38559

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2024:2923-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here