Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

SUSE: 2025:0567-2 critical: system patch notification details

suse
Calendar Grey January 24, 2025
Dist Suse Esm H88
The SUSE Linux Kernel has been updated to tackle significant security vulnerabilities, correcting 64 defects, among which are several use-after-free problems.
* bsc#1170891 * bsc#1173139 * bsc#1185010 * bsc#1189998 * bsc#1190358

Summary

## The SUSE Linux Enterprise 15 SP4 RT kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2024-53095: smb: client: Fix use-after-free of network namespace (bsc#1233642). * CVE-2024-53146: NFSD: Prevent a potential integer overflow (bsc#1234853). * CVE-2024-53156: wifi: ath9k: add range check for conn_rsp_epid in htc_connect_service() (bsc#1234846). * CVE-2024-53173: NFSv4.0: Fix a use-after-free problem in the asynchronous open() (bsc#1234891). * CVE-2024-53179: smb: client: fix use-after-free of signing key (bsc#1234921). * CVE-2024-53214: vfio/pci: Properly hide first-in-list PCIe extended capability (bsc#1235004). * CVE-2024-53239: ALSA: 6fire: Release resources at card release (bsc#1235054).

References

* bsc#1170891

* bsc#1173139

* bsc#1185010

* bsc#1189998

* bsc#1190358

* bsc#1190428

* bsc#1191949

* bsc#1193983

* bsc#1196869

* bsc#1200313

* bsc#1201308

* bsc#1201489

* bsc#1209657

* bsc#1209798

* bsc#1211592

* bsc#1215304

* bsc#1216702

* bsc#1217169

* bsc#1218447

* bsc#1221044

* bsc#1222721

* bsc#1222878

* bsc#1223481

* bsc#1223501

* bsc#1223512

* bsc#1223520

* bsc#1223894

* bsc#1223921

* bsc#1223922

* bsc#1223923

* bsc#1223924

* bsc#1223929

* bsc#1223931

* bsc#1223932

* bsc#1223934

* bsc#1223941

* bsc#1223948

* bsc#1223952

* bsc#1223953

* bsc#1223957

* bsc#1223962

* bsc#1223963

* bsc#1223964

* bsc#1223996

* bsc#1224099

* bsc#1224482

* bsc#1224511

* bsc#1224592

* bsc#1224685

* bsc#1224730

* bsc#1224816

* bsc#1224895

* bsc#1224898

* bsc#1224900

* bsc#1224901

* bsc#1230697

* bsc#1232436

* bsc#1233070

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:0231-1
Release Date: 2025-01-24T10:10:55Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here