Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

SUSE: 2024:2948-1 Important: Linux Kernel Security Fixes

suse
Calendar Grey August 16, 2024
Dist Suse Esm H88
Critical advisory regarding SUSE Linux Kernel to mitigate severe vulnerabilities, alongside instructions for proper installation and reboot procedures.
* bsc#1065729 * bsc#1179610 * bsc#1186463 * bsc#1216834 * bsc#1218820

Summary

## The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2020-26558: Fixed a flaw in the Bluetooth LE and BR/EDR secure pairing that could permit a nearby man-in-the-middle attacker to identify the Passkey used during pairing (bsc#1179610). * CVE-2021-0129: Improper access control in BlueZ may have allowed an authenticated user to potentially enable information disclosure via adjacent access (bsc#1186463). * CVE-2021-47126: ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptions (bsc#1221539). * CVE-2021-47219: scsi: scsi_debug: Fix out-of-bound read in resp_report_tgtpgs() (bsc#1222824). * CVE-2021-47291: ipv6: fix another slab-out-of-bounds in fib6_nh_flush_exceptions (bsc#1224918).

References

* bsc#1065729

* bsc#1179610

* bsc#1186463

* bsc#1216834

* bsc#1218820

* bsc#1220185

* bsc#1220186

* bsc#1220187

* bsc#1221539

* bsc#1222728

* bsc#1222824

* bsc#1223863

* bsc#1224918

* bsc#1225404

* bsc#1225431

* bsc#1226519

* bsc#1226550

* bsc#1226574

* bsc#1226575

* bsc#1226662

* bsc#1226666

* bsc#1226785

* bsc#1227213

* bsc#1227362

* bsc#1227487

* bsc#1227716

* bsc#1227750

* bsc#1227810

* bsc#1227836

* bsc#1227976

* bsc#1228013

* bsc#1228040

* bsc#1228114

* bsc#1228328

* bsc#1228561

* bsc#1228644

* bsc#1228743

Cross-

* CVE-2020-26558

* CVE-2021-0129

* CVE-2021-47126

* CVE-2021-47219

* CVE-2021-47291

* CVE-2021-47506

* CVE-2021-47520

* CVE-2021-47580

* CVE-2021-47598

* CVE-2021-47600

* CVE-2022-48792

* CVE-2022-48821

* CVE-2022-48822

* CVE-2023-52686

* CVE-2023-52885

* CVE-2024-26583

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2024:2948-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here