Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE: 2025:0784-1 important: Kernel Security Advisory for SP6

suse
Calendar Grey March 5, 2025
Dist Suse Esm H88
Canonical reveals a significant Ubuntu system update addressing 37 security flaws and enhancing overall platform resilience.
* bsc#1012628 * bsc#1215199 * bsc#1219367 * bsc#1222672 * bsc#1222803

Summary

## The SUSE Linux Enterprise 15 SP6 Confidential Computing kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2024-26708: mptcp: fastopen and PM-trigger subflow shutdown can race (bsc#1222672). * CVE-2024-44974: mptcp: pm: avoid possible UaF when selecting endp (bsc#1230235). * CVE-2024-45009: mptcp: pm: only decrement add_addr_accepted for MPJ req (bsc#1230438). * CVE-2024-45010: mptcp: pm: only mark 'subflow' endp as available (bsc#1230439). * CVE-2024-50085: mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow (bsc#1232508). * CVE-2024-50185: mptcp: handle consistently DSS corruption (bsc#1233109). * CVE-2024-53147: exfat: fix out-of-bounds access of directory entries (bsc#1234857).

References

* bsc#1012628

* bsc#1215199

* bsc#1219367

* bsc#1222672

* bsc#1222803

* bsc#1225742

* bsc#1225981

* bsc#1228521

* bsc#1230235

* bsc#1230438

* bsc#1230439

* bsc#1231920

* bsc#1232159

* bsc#1232198

* bsc#1232201

* bsc#1232508

* bsc#1232520

* bsc#1232919

* bsc#1233109

* bsc#1234853

* bsc#1234857

* bsc#1234891

* bsc#1234963

* bsc#1235032

* bsc#1235054

* bsc#1235061

* bsc#1235073

* bsc#1235435

* bsc#1235592

* bsc#1235609

* bsc#1235932

* bsc#1235933

* bsc#1236113

* bsc#1236114

* bsc#1236115

* bsc#1236122

* bsc#1236123

* bsc#1236133

* bsc#1236138

* bsc#1236199

* bsc#1236200

* bsc#1236203

* bsc#1236205

* bsc#1236573

* bsc#1236575

* bsc#1236576

* bsc#1236591

* bsc#1236661

* bsc#1236677

* bsc#1236700

* bsc#1236752

* bsc#1236821

* bsc#1236822

* bsc#1236896

* bsc#1236897

* bsc#1236952

* bsc#1236967

* bsc#1236994

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:0784-1
Release Date:
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here