Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

SUSE: 2024:3408-1 important: Linux Kernel security updates and fixes

suse
Calendar Grey September 24, 2024
Scroller Suse
Red Hat releases a significant system update addressing several vulnerabilities and performance hiccups. Crucial for maintaining security and system integrity.
* bsc#1193629 * bsc#1194111 * bsc#1194765 * bsc#1194869 * bsc#1196261

Summary

## The SUSE Linux Enterprise 15 SP4 kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2024-41062: Sync sock recv cb and release (bsc#1228576). * CVE-2024-44947: Initialize beyond-EOF page contents before setting uptodate (bsc#1229454). * CVE-2024-43883: Do not drop references before new references are gained (bsc#1229707). * CVE-2024-43861: Fix memory leak for not ip packets (bsc#1229500). * CVE-2023-52489: Fix race in accessing memory_section->usage (bsc#1221326). * CVE-2024-44938: Fix shift-out-of-bounds in dbDiscardAG (bsc#1229792). * CVE-2024-41087: Fix double free on error (CVE-2024-41087,bsc#1228466). * CVE-2024-43882: Fixed ToCToU between perm check and set-uid/gid usage. (bsc#1229503)

References

* bsc#1193629

* bsc#1194111

* bsc#1194765

* bsc#1194869

* bsc#1196261

* bsc#1196516

* bsc#1196894

* bsc#1198017

* bsc#1203360

* bsc#1206006

* bsc#1206258

* bsc#1207158

* bsc#1216834

* bsc#1221326

* bsc#1221645

* bsc#1223191

* bsc#1224105

* bsc#1227832

* bsc#1228020

* bsc#1228114

* bsc#1228466

* bsc#1228489

* bsc#1228516

* bsc#1228576

* bsc#1228718

* bsc#1228801

* bsc#1228959

* bsc#1229042

* bsc#1229292

* bsc#1229400

* bsc#1229454

* bsc#1229500

* bsc#1229503

* bsc#1229506

* bsc#1229507

* bsc#1229508

* bsc#1229509

* bsc#1229510

* bsc#1229512

* bsc#1229516

* bsc#1229522

* bsc#1229526

* bsc#1229528

* bsc#1229531

* bsc#1229533

* bsc#1229535

* bsc#1229536

* bsc#1229537

* bsc#1229540

* bsc#1229544

* bsc#1229554

* bsc#1229557

* bsc#1229565

* bsc#1229566

* bsc#1229568

* bsc#1229581

* bsc#1229598

* bsc#1229603

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2024:3408-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.