Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 542
Alerts This Week
Warning Icon 1 542

SUSE: 2025:0236-1 important: Multiple Linux Kernel Fixes

suse
Calendar Grey January 24, 2025
Scroller Suse
Critical patch for SUSE Linux Kernel released, resolving various vulnerabilities. Implement immediately to enhance system security and reliability.
* bsc#1117016 * bsc#1168202 * bsc#1188924 * bsc#1215304 * bsc#1220148

Summary

## The SUSE Linux Enterprise 12 SP5 kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2022-48742: rtnetlink: make sure to refresh master_dev/m_ops in __rtnl_newlink() (bsc#1226694). * CVE-2022-49033: btrfs: qgroup: fix sleep from invalid context bug in btrfs_qgroup_inherit() (bsc#1232045). * CVE-2022-49035: media: s5p_cec: limit msg.len to CEC_MAX_MSG_SIZE (bsc#1215304). * CVE-2023-52434: Fixed potential OOBs in smb2_parse_contexts() (bsc#1220148). * CVE-2023-52922: can: bcm: Fix UAF in bcm_proc_show() (bsc#1233977). * CVE-2024-26976: KVM: Always flush async #PF workqueue when vCPU is being destroyed (bsc#1223635). * CVE-2024-35847: irqchip/gic-v3-its: Prevent double free on error (bsc#1224697).

References

* bsc#1117016

* bsc#1168202

* bsc#1188924

* bsc#1215304

* bsc#1220148

* bsc#1223635

* bsc#1224697

* bsc#1225725

* bsc#1225730

* bsc#1226694

* bsc#1226748

* bsc#1226872

* bsc#1228405

* bsc#1230697

* bsc#1230766

* bsc#1231453

* bsc#1231854

* bsc#1231877

* bsc#1231909

* bsc#1232045

* bsc#1232048

* bsc#1232166

* bsc#1232224

* bsc#1233038

* bsc#1233050

* bsc#1233055

* bsc#1233096

* bsc#1233112

* bsc#1233200

* bsc#1233204

* bsc#1233239

* bsc#1233467

* bsc#1233469

* bsc#1233476

* bsc#1233488

* bsc#1233551

* bsc#1233769

* bsc#1233977

* bsc#1234087

* bsc#1234161

* bsc#1234240

* bsc#1234241

* bsc#1234242

* bsc#1234243

* bsc#1234281

* bsc#1234381

* bsc#1234437

* bsc#1234690

* bsc#1234827

* bsc#1234834

* bsc#1234846

* bsc#1234853

* bsc#1234891

* bsc#1234898

* bsc#1234921

* bsc#1234922

* bsc#1234923

* bsc#1234971

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:0236-1
Release Date: 2025-01-24T17:02:47Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.