## The SUSE Linux Enterprise 15 SP6 Confidential Computing kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2024-26708: mptcp: fastopen and PM-trigger subflow shutdown can race (bsc#1222672). * CVE-2024-44974: mptcp: pm: avoid possible UaF when selecting endp (bsc#1230235). * CVE-2024-45009: mptcp: pm: only decrement add_addr_accepted for MPJ req (bsc#1230438). * CVE-2024-45010: mptcp: pm: only mark 'subflow' endp as available (bsc#1230439). * CVE-2024-50085: mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow (bsc#1232508). * CVE-2024-50185: mptcp: handle consistently DSS corruption (bsc#1233109). * CVE-2024-53147: exfat: fix out-of-bounds access of directory entries (bsc#1234857).
* bsc#1012628
* bsc#1215199
* bsc#1219367
* bsc#1222672
* bsc#1222803
* bsc#1225742
* bsc#1225981
* bsc#1228521
* bsc#1230235
* bsc#1230438
* bsc#1230439
* bsc#1231920
* bsc#1232159
* bsc#1232198
* bsc#1232201
* bsc#1232508
* bsc#1232520
* bsc#1232919
* bsc#1233109
* bsc#1234853
* bsc#1234857
* bsc#1234891
* bsc#1234963
* bsc#1235032
* bsc#1235054
* bsc#1235061
* bsc#1235073
* bsc#1235435
* bsc#1235592
* bsc#1235609
* bsc#1235932
* bsc#1235933
* bsc#1236113
* bsc#1236114
* bsc#1236115
* bsc#1236122
* bsc#1236123
* bsc#1236133
* bsc#1236138
* bsc#1236199
* bsc#1236200
* bsc#1236203
* bsc#1236205
* bsc#1236573
* bsc#1236575
* bsc#1236576
* bsc#1236591
* bsc#1236661
* bsc#1236677
* bsc#1236700
* bsc#1236752
* bsc#1236821
* bsc#1236822
* bsc#1236896
* bsc#1236897
* bsc#1236952
* bsc#1236967
* bsc#1236994
Get the latest Linux and open source security news straight to your inbox.