Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 528
Alerts This Week
Warning Icon 1 528

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 40 articles for you...
89

Fedora 40: FEDORA-2025-a5edb54660 Critical: libtasn1 DoS Fix

Includes CVE fixes.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-a5edb54660 2025-02-26 01:41:52.376662+00:00 -------------------------------------------------------------------------------- Name : libtasn1 Product : Fedora 40 Version : 4.20.0 Release : 1.fc40 URL : Summary : The ASN.1 library used in GNUTLS Description : A library that provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions. -------------------------------------------------------------------------------- Update Information: Includes CVE fixes. -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 14 2025 Zoltan Fridrich - 4.20.0-1 - Update to 4.20.0 upstream release -------------------------------------------------------------------------------- References: [ 1 ] Bug #2344196 - libtasn1-4.20.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2344196 [ 2 ] Bug #2344613 - CVE-2024-12133 libtasn1: Inefficient DER Decoding in libtasn1 Leading to Potential Remote DoS [fedora-40] https://bugzilla.redhat.com/show_bug.cgi?id=2344613 [ 3 ] Bug #2344614 - CVE-2024-12133 libtasn1: Inefficient DER Decoding in libtasn1 Leading to Potential Remote DoS [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2344614 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-a5edb54660' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used bythe Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: . Debian 12 upgrades tackle local privilege escalation in systemd, strengthening overall stability.. Fedora 40 Updates, libtasn1 Security Advisories, DoS Threat Resolution. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 26, 2025 Critical Fedora
217

Oracle Linux 9: ELSA-2024-5693 Critical: Tomcat DoS Vulnerability Fix

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-5693 http://linux.oracle.com/errata/ELSA-2024-5693.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: tomcat-9.0.87-1.el9_4.2.noarch.rpm tomcat-admin-webapps-9.0.87-1.el9_4.2.noarch.rpm tomcat-docs-webapp-9.0.87-1.el9_4.2.noarch.rpm tomcat-el-3.0-api-9.0.87-1.el9_4.2.noarch.rpm tomcat-jsp-2.3-api-9.0.87-1.el9_4.2.noarch.rpm tomcat-lib-9.0.87-1.el9_4.2.noarch.rpm tomcat-servlet-4.0-api-9.0.87-1.el9_4.2.noarch.rpm tomcat-webapps-9.0.87-1.el9_4.2.noarch.rpm aarch64: tomcat-9.0.87-1.el9_4.2.noarch.rpm tomcat-admin-webapps-9.0.87-1.el9_4.2.noarch.rpm tomcat-docs-webapp-9.0.87-1.el9_4.2.noarch.rpm tomcat-el-3.0-api-9.0.87-1.el9_4.2.noarch.rpm tomcat-jsp-2.3-api-9.0.87-1.el9_4.2.noarch.rpm tomcat-lib-9.0.87-1.el9_4.2.noarch.rpm tomcat-servlet-4.0-api-9.0.87-1.el9_4.2.noarch.rpm tomcat-webapps-9.0.87-1.el9_4.2.noarch.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates//tomcat-9.0.87-1.el9_4.2.src.rpm Related CVEs: CVE-2024-34750 Description of changes: [1:9.0.87-1.el9_4.2] - Resolves: RHEL-46162 tomcat: Improper Handling of Exceptional Conditions (CVE-2024-34750) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux Security Notice ELSA-2024-5693 provides urgent tomcat patches and key security protocol information.. Oracle Linux, Tomcat Update, Important Security Advisory, Security Fixes, Unbreakable Linux Network. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Aug 22, 2024 Critical Oracle
217

Oracle Linux 8 ELSA-2024-4197 Moderate: httpd HTTP Response Splitting

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-4197 http://linux.oracle.com/errata/ELSA-2024-4197.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: httpd-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm httpd-devel-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm httpd-filesystem-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.noarch.rpm httpd-manual-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.noarch.rpm httpd-tools-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm mod_http2-1.15.7-10.module+el8.10.0+90327+96b8ea28.x86_64.rpm mod_ldap-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm mod_md-2.0.8-8.module+el8.9.0+90011+2f9c6a23.x86_64.rpm mod_proxy_html-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm mod_session-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm mod_ssl-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm aarch64: httpd-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpm httpd-devel-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpm httpd-filesystem-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.noarch.rpm httpd-manual-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.noarch.rpm httpd-tools-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpm mod_http2-1.15.7-10.module+el8.10.0+90327+96b8ea28.aarch64.rpm mod_ldap-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpm mod_md-2.0.8-8.module+el8.9.0+90011+2f9c6a23.aarch64.rpm mod_proxy_html-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpm mod_session-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpm mod_ssl-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates//httpd-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.src.rpm http://oss.oracle.com/ol8/SRPMS-updates//mod_http2-1.15.7-10.module+el8.10.0+90327+96b8ea28.src.rpm http://oss.oracle.com/ol8/SRPMS-updates//mod_md-2.0.8-8.module+el8.9.0+90011+2f9c6a23.src.rpm Related CVEs: CVE-2023-38709 Description of changes: httpd [2.4.37-65.0.1] - Replace index.html with Oracle's index page oracle_index.html [2.4.37-65] - Resolves: RHEL-31857 - httpd:2.4/httpd: HTTP response splitting(CVE-2023-38709) mod_http2 [1.15.7-10] - Resolves: RHEL-29817 - httpd:2.4/mod_http2: httpd: CONTINUATION frames DoS (CVE-2024-27316) [1.15.7-9.3] - Resolves: RHEL-13367 - httpd:2.4/mod_http2: reset requests exhaust memory (incomplete fix of CVE-2023-44487)(CVE-2023-45802) [1.15.7-8.3] - Resolves: #2177748 - CVE-2023-25690 httpd:2.4/httpd: HTTP request splitting with mod_rewrite and mod_proxy [1.15.7-7] - Resolves: #2095650 - Dependency from mod_http2 on httpd broken [1.15.7-6] - Backport SNI feature refactor - Resolves: rhbz#2137257 [1.15.7-5] - Resolves: #2035030 - CVE-2021-44224 httpd:2.4/httpd: possible NULL dereference or SSRF in forward proxy configurations [1.15.7-4] - Resolves: #1966728 - CVE-2021-33193 httpd:2.4/mod_http2: httpd: Request splitting via HTTP/2 method injection and mod_proxy [1.15.7-3] - Resolves: #1869077 - CVE-2020-11993 httpd:2.4/mod_http2: httpd: mod_http2 concurrent pool usage [1.15.7-2] - Resolves: #1869073 - CVE-2020-9490 httpd:2.4/mod_http2: httpd: Push diary crash on specifically crafted HTTP/2 header [1.15.7-1] - new version 1.15.7 - Resolves: #1814236 - RFE: mod_http2 rebase - Resolves: #1747289 - CVE-2019-10082 httpd:2.4/mod_http2: httpd: read-after-free in h2 connection shutdown - Resolves: #1696099 - CVE-2019-0197 httpd:2.4/mod_http2: httpd: mod_http2: possible crash on late upgrade - Resolves: #1696094 - CVE-2019-0196 httpd:2.4/mod_http2: httpd: mod_http2: read-after-free on a string compare - Resolves: #1677591 - CVE-2018-17189 httpd:2.4/mod_http2: httpd: mod_http2: DoS via slow, unneeded request bodies [1.11.3-3] - Resolves: #1744999 - CVE-2019-9511 httpd:2.4/mod_http2: HTTP/2: large amount of data request leads to denial of service - Resolves: #1745086 - CVE-2019-9516 httpd:2.4/mod_http2: HTTP/2: 0-length headers leads to denial of service - Resolves: #1745154 - CVE-2019-9517 httpd:2.4/mod_http2: HTTP/2: request for large response leads to denial of service [1.11.3-2] - update release (#1695587) [1.11.3-1] - new version 1.11.3 -Resolves: #1633401 - CVE-2018-11763 mod_http2: httpd: DoS for HTTP/2 connections by continuous SETTINGS [1.10.20-1] - update to 1.10.20 [1.10.18-1] - update to 1.10.18 [1.10.16-1] - update to 1.10.16 (CVE-2018-1302) [1.10.13-2] - Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild [1.10.13-1] - update to 1.10.13 [1.10.12-1] - update to 1.10.12 [1.10.10-2] - Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild [1.10.10-1] - update to 1.10.10 [1.10.7-2] - Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild [1.10.7-1] - update to 1.10.7 [1.10.6-1] - update to 1.10.6 [1.10.5-1] - update to 1.10.5 [1.10.1-1] - Initial import (#1440780). mod_md _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux Security Update ELSU-2024-8371 provides patches for nginx related to vulnerability mitigation.. Oracle Linux Updates, Httpd Security, Security Advisory, Linux Patches. . LinuxSecurity.com Team

Calendar%202 Jul 05, 2024 Oracle
100

SUSE Linux Kernel Update: 2024:0910-1 Important Security Fix

* bsc#1194869 * bsc#1206453 * bsc#1209412 * bsc#1213456 * bsc#1216776 . # Security update for the Linux Kernel Announcement ID: SUSE-SU-2024:0910-1 Rating: important References: * bsc#1194869 * bsc#1206453 * bsc#1209412 * bsc#1213456 * bsc#1216776 * bsc#1217927 * bsc#1218195 * bsc#1218216 * bsc#1218450 * bsc#1218527 * bsc#1218663 * bsc#1218915 * bsc#1219126 * bsc#1219127 * bsc#1219141 * bsc#1219146 * bsc#1219295 * bsc#1219443 * bsc#1219653 * bsc#1219827 * bsc#1219835 * bsc#1219839 * bsc#1219840 * bsc#1219934 * bsc#1220003 * bsc#1220009 * bsc#1220021 * bsc#1220030 * bsc#1220106 * bsc#1220140 * bsc#1220187 * bsc#1220238 * bsc#1220240 * bsc#1220241 * bsc#1220243 * bsc#1220250 * bsc#1220251 * bsc#1220253 * bsc#1220254 * bsc#1220255 * bsc#1220257 * bsc#1220267 * bsc#1220277 * bsc#1220317 * bsc#1220326 * bsc#1220328 * bsc#1220330 * bsc#1220335 * bsc#1220344 * bsc#1220348 * bsc#1220350 * bsc#1220364 * bsc#1220392 * bsc#1220393 * bsc#1220398 * bsc#1220409 * bsc#1220444 * bsc#1220457 * bsc#1220459 * bsc#1220649 * bsc#1220796 * bsc#1220825 * jsc#PED-7618 Cross-References: * CVE-2019-25162 * CVE-2021-46923 * CVE-2021-46924 * CVE-2021-46932 * CVE-2023-28746 * CVE-2023-5197 * CVE-2023-52340 * CVE-2023-52429 * CVE-2023-52439 * CVE-2023-52443 * CVE-2023-52445 * CVE-2023-52447 * CVE-2023-52448 * CVE-2023-52449 * CVE-2023-52451 * CVE-2023-52452 * CVE-2023-52456 * CVE-2023-52457 * CVE-2023-52463 * CVE-2023-52464 * CVE-2023-52475 * CVE-2023-52478 * CVE-2023-6817 * CVE-2024-0607 * CVE-2024-1151 * CVE-2024-23849 * CVE-2024-23850 * CVE-2024-23851 * CVE-2024-25744 * CVE-2024-26585 * CVE-2024-26586 * CVE-2024-26589 * CVE-2024-26591 * CVE-2024-26593 * CVE-2024-26595 * CVE-2024-26598 * CVE-2024-26602 *CVE-2024-26603 * CVE-2024-26622 CVSS scores: * CVE-2019-25162 ( SUSE ): 6.4 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2021-46923 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N * CVE-2021-46924 ( SUSE ): 4.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2021-46932 ( SUSE ): 2.5 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L * CVE-2023-28746 ( SUSE ): 6.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2023-5197 ( SUSE ): 6.6 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H * CVE-2023-5197 ( NVD ): 6.6 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H * CVE-2023-52340 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52429 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52429 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52439 ( SUSE ): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52439 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52443 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52443 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52445 ( SUSE ): 6.3 CVSS:3.1/AV:P/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52445 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52447 ( SUSE ): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52447 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52448 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52449 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52451 ( SUSE ): 5.1 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:H * CVE-2023-52452 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N * CVE-2023-52456 ( SUSE ): 4.0 CVSS:3.1/AV:P/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52457 ( SUSE ): 4.2 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L * CVE-2023-52463 ( SUSE ): 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-52464 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2023-52475 ( SUSE ): 6.3 CVSS:3.1/AV:P/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52478 ( SUSE ): 5.8 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H * CVE-2023-6817 ( SUSE ): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2023-6817 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-0607 ( SUSE ): 6.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L * CVE-2024-0607 ( NVD ): 6.6 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H * CVE-2024-1151 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-23849 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2024-23849 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-23850 ( SUSE ): 4.1 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H * CVE-2024-23850 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-23851 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H * CVE-2024-23851 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-25744 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-26585 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-26585 ( NVD ): 4.7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-26586 ( SUSE ): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2024-26589 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N * CVE-2024-26591 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-26593 ( SUSE ): 4.7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2024-26595 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-26598 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-26602 ( SUSE ): 4.7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2024-26603 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H *CVE-2024-26622 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Live Patching 15-SP5 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Real Time Module 15-SP5 An update that solves 39 vulnerabilities, contains one feature and has 23 security fixes can now be installed. ## Description: The SUSE Linux Enterprise 15 SP5 RT kernel was updated to receive various security and bugfixes. The following security bugs were fixed: * CVE-2019-25162: Fixed a potential use after free (bsc#1220409). * CVE-2021-46923: Fixed reference leakage in fs/mount_setattr (bsc#1220457). * CVE-2021-46924: Fixed fix memory leak in device probe and remove (bsc#1220459) * CVE-2021-46932: Fixed missing work initialization before device registration (bsc#1220444) * CVE-2023-28746: Fixed Register File Data Sampling (bsc#1213456). * CVE-2023-5197: Fixed se-after-free due to addition and removal of rules from chain bindings within the same transaction (bsc#1218216). * CVE-2023-52340: Fixed ICMPv6 “Packet Too Big” packets force a DoS of the Linux kernel by forcing 100% CPU (bsc#1219295). * CVE-2023-52429: Fixed potential DoS in dm_table_create in drivers/md/dm- table.c (bsc#1219827). * CVE-2023-52439: Fixed use-after-free in uio_open (bsc#1220140). * CVE-2023-52443: Fixed crash when parsed profile name is empty (bsc#1220240). * CVE-2023-52445: Fixed use after free on context disconnection (bsc#1220241). * CVE-2023-52447: Fixed map_fd_put_ptr() signature kABI workaround (bsc#1220251). * CVE-2023-52448: Fixed kernel NULL pointer dereference in gfs2_rgrp_dump (bsc#1220253). * CVE-2023-52449: Fixed gluebi NULL pointer dereference caused by ftl notifier (bsc#1220238). * CVE-2023-52451: Fixed access beyond end of drmem array (bsc#1220250). * CVE-2023-52452: Fixed Fix accesses to uninit stack slots (bsc#1220257). * CVE-2023-52456: Fixed tx statemachine deadlock (bsc#1220364). * CVE-2023-52457: Fixed skipped resource freeing if pm_runtime_resume_and_get() failed (bsc#1220350). * CVE-2023-52463: Fixed null pointer dereference in efivarfs (bsc#1220328). * CVE-2023-52464: Fixed possible out-of-bounds string access (bsc#1220330) * CVE-2023-52475: Fixed use-after-free in powermate_config_complete (bsc#1220649) * CVE-2023-52478: Fixed kernel crash on receiver USB disconnect (bsc#1220796) * CVE-2023-6817: Fixed use-after-free in nft_pipapo_walk (bsc#1218195). * CVE-2024-0607: Fixed 64-bit load issue in nft_byteorder_eval() (bsc#1218915). * CVE-2024-1151: Fixed unlimited number of recursions from action sets (bsc#1219835). * CVE-2024-23849: Fixed array-index-out-of-bounds in rds_cmsg_recv (bsc#1219127). * CVE-2024-23850: Fixed double free of anonymous device after snapshot creation failure (bsc#1219126). * CVE-2024-23851: Fixed crash in copy_params in drivers/md/dm-ioctl.c (bsc#1219146). * CVE-2024-25744: Fixed Security issue with int 80 interrupt vector (bsc#1217927). * CVE-2024-26585: Fixed race between tx work scheduling and socket close (bsc#1220187). * CVE-2024-26586: Fixed stack corruption (bsc#1220243). * CVE-2024-26589: Fixed out of bounds read due to variable offset alu on PTR_TO_FLOW_KEYS (bsc#1220255). * CVE-2024-26591: Fixed re-attachment branch in bpf_tracing_prog_attach (bsc#1220254). * CVE-2024-26593: Fixed block process call transactions (bsc#1220009). * CVE-2024-26595: Fixed NULL pointer dereference in error path (bsc#1220344). * CVE-2024-26598: Fixed potential UAF in LPI translation cache (bsc#1220326). * CVE-2024-26602: Fixed overall slowdowns with sys_membarrier (bsc1220398). * CVE-2024-26603: Fixed infinite loop via #PFhandling (bsc#1220335). * CVE-2024-26622: Fixed UAF write bug in tomoyo_write_control() (bsc#1220825). The following non-security bugs were fixed: * acpi: apei: set memory failure flags as mf_action_required on synchronous events (git-fixes). * acpi: button: add lid disable dmi quirk for nextbook ares 8a (git-fixes). * acpi: extlog: fix null pointer dereference check (git-fixes). * acpi: resource: add asus model s5402za to quirks (git-fixes). * acpi: resource: skip irq override on asus expertbook b1502cba (git-fixes). * acpi: resource: skip irq override on asus expertbook b2402cba (git-fixes). * acpi: video: add backlight=native dmi quirk for apple imac11,3 (git-fixes). * acpi: video: add backlight=native dmi quirk for apple imac12,1 and imac12,2 (git-fixes). * acpi: video: add backlight=native dmi quirk for lenovo thinkpad x131e (3371 amd version) (git-fixes). * acpi: video: add quirk for the colorful x15 at 23 laptop (git-fixes). * add reference to recently released cve * afs: fix the usage of read_seqbegin_or_lock() in afs_find_server*() (git- fixes). * afs: fix the usage of read_seqbegin_or_lock() in afs_lookup_volume_rcu() (git-fixes). * afs: hide silly-rename files from userspace (git-fixes). * afs: increase buffer size in afs_update_volume_status() (git-fixes). * ahci: asm1166: correct count of reported ports (git-fixes). * alsa: drop leftover snd-rtctimer stuff from makefile (git-fixes). * alsa: firewire-lib: fix to check cycle continuity (git-fixes). * alsa: hda/conexant: add quirk for sws js201d (git-fixes). * alsa: hda/realtek: apply headset jack quirk for non-bass alc287 thinkpads (git-fixes). * alsa: hda/realtek: cs35l41: fix device id / model name (git-fixes). * alsa: hda/realtek: cs35l41: fix order and duplicates in quirks table (git- fixes). * alsa: hda/realtek: enable headset mic on vaio vjfe-adl (git-fixes). * alsa: hda/realtek: enable mute led on hp laptop 14-fq0xxx (git-fixes). * alsa: hda/realtek: fix mute/micmute led for hp mt645 (git-fixes). * alsa: hda/realtek: fix mute/micmute leds for hp zbook power (git-fixes). * alsa: hda/realtek: fix the external mic not being recognised for acer swift 1 sf114-32 (git-fixes). * alsa: usb-audio: add a quirk for yamaha yit-w12tx transmitter (git-fixes). * alsa: usb-audio: add delay quirk for motu m series 2nd revision (git-fixes). * alsa: usb-audio: add quirk for rode nt-usb+ (git-fixes). * alsa: usb-audio: check presence of valid altsetting control (git-fixes). * alsa: usb-audio: ignore clock selector errors for single connection (git- fixes). * alsa: usb-audio: more relaxed check of midi jack names (git-fixes). * alsa: usb-audio: sort quirk table entries (git-fixes). * arm64: entry: fix arm64_workaround_speculative_unpriv_load (bsc#1219443) * arm64: entry: preserve/restore x29 even for compat tasks (bsc#1219443) * arm64: entry: simplify tramp_alias macro and tramp_exit routine (bsc#1219443) * arm64: errata: add cortex-a510 speculative unprivileged load (bsc#1219443) enable workaround. * arm64: errata: add cortex-a520 speculative unprivileged load (bsc#1219443) enable workaround without kabi break. * arm64: errata: mitigate ampere1 erratum ac03_cpu_38 at stage-2 (git-fixes) enable ampere_erratum_ac03_cpu_38 workaround without kabi break * arm64: irq: set the correct node for shadow call stack (git-fixes) * arm64: irq: set the correct node for vmap stack (git-fixes) * arm64: rename arm64_workaround_2966298 (bsc#1219443) * arm64: subscribe microsoft azure cobalt 100 to arm neoverse n2 errata (git- fixes) * asoc: doc: fix undefined snd_soc_dapm_nopm argument (git-fixes). * asoc: rt5645: fix deadlock in rt5645_jack_detect_work() (git-fixes). * asoc: sof: ipc3: fix message bounds on ipc ops (git-fixes). * asoc: sunxi: sun4i-spdif: add support for allwinner h616 (git-fixes). * atm: idt77252: fix a memleak in open_card_ubr0 (git-fixes). *bluetooth: avoid potential use-after-free in hci_error_reset (git-fixes). * bluetooth: enforce validation on max value of connection interval (git- fixes). * bluetooth: hci_event: fix handling of hci_ev_io_capa_request (git-fixes). * bluetooth: hci_event: fix wrongly recorded wakeup bd_addr (git-fixes). * bluetooth: hci_sync: check the correct flag before starting a scan (git- fixes). * bluetooth: hci_sync: fix accept_list when attempting to suspend (git-fixes). * bluetooth: l2cap: fix possible multiple reject send (git-fixes). * bluetooth: qca: fix wrong event type for patch config command (git-fixes). * bpf: fix verification of indirect var-off stack access (git-fixes). * bpf: guard stack limits against 32bit overflow (git-fixes). * bpf: minor logging improvement (bsc#1220257). * bus: moxtet: add spi device table (git-fixes). * cachefiles: fix memory leak in cachefiles_add_cache() (bsc#1220267). * can: j1939: fix uaf in j1939_sk_match_filter during setsockopt(so_j1939_filter) (git-fixes). * crypto: api - disallow identical driver names (git-fixes). * crypto: ccp - fix null pointer dereference in __sev_platform_shutdown_locked (git-fixes). * crypto: octeontx2 - fix cptvf driver cleanup (git-fixes). * crypto: stm32/crc32 - fix parsing list of devices (git-fixes). * dmaengine: fsl-qdma: fix a memory leak related to the queue command dma (git-fixes). * dmaengine: fsl-qdma: fix soc may hang on 16 byte unaligned read (git-fixes). * dmaengine: fsl-qdma: increase size of 'irq_name' (git-fixes). * dmaengine: fsl-qdma: init irq after reg initialization (git-fixes). * dmaengine: ptdma: use consistent dma masks (git-fixes). * dmaengine: shdma: increase size of 'dev_id' (git-fixes). * dmaengine: ti: edma: add some null pointer checks to the edma_probe (git- fixes). * driver core: fix device_link_flag_is_sync_state_only() (git-fixes). * drm/amd/display: fix memory leak in dm_sw_fini() (git-fixes). *drm/amd/display: fix possible buffer overflow in 'find_dcfclk_for_voltage()' (git-fixes). * drm/amd/display: fix possible null dereference on device remove/driver unload (git-fixes). * drm/amd/display: increase frame-larger-than for all display_mode_vba files (git-fixes). * drm/amd/display: increased min_dcfclk_mhz and min_fclk_mhz (git-fixes). * drm/amd/display: preserve original aspect ratio in create stream (git- fixes). * drm/amdgpu/display: initialize gamma correction mode variable in dcn30_get_gamcor_current() (git-fixes). * drm/amdgpu: reset gpu for s3 suspend abort case (git-fixes). * drm/amdgpu: skip to program gfxdec registers for suspend abort (git-fixes). * drm/buddy: fix range bias (git-fixes). * drm/crtc: fix uninitialized variable use even harder (git-fixes). * drm/i915/gvt: fix uninitialized variable in handle_mmio() (git-fixes). * drm/msm/dp: return correct colorimetry for dp_test_dynamic_range_cea case (git-fixes). * drm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup (git- fixes). * drm/msms/dp: fixed link clock divider bits be over written in bpc unknown case (git-fixes). * drm/prime: support page array > = 4gb (git-fixes). * drm/syncobj: call drm_syncobj_fence_add_wait when wait_available flag is set (git-fixes). * drm/ttm: fix an invalid freeing on already freed page in error path (git- fixes). * drop bcm5974 input patch causing a regression (bsc#1220030) * efi/capsule-loader: fix incorrect allocation size (git-fixes). * efi: do not add memblocks for soft-reserved memory (git-fixes). * efi: runtime: fix potential overflow of soft-reserved region size (git- fixes). * fbcon: always restore the old font data in fbcon_do_set_font() (git-fixes). * fbdev: savage: error out if pixclock equals zero (git-fixes). * fbdev: sis: error out if pixclock equals zero (git-fixes). * firewire: core: send bus reset promptly on gap count error (git-fixes). * fs:dlm: fix build with config_ipv6 disabled (git-fixes). * fs:jfs:ubsan:array-index-out-of-bounds in dbadjtree (git-fixes). * gpio: 74x164: enable output pins after registers are reset (git-fixes). * gpio: fix resource unwinding order in error path (git-fixes). * gpiolib: acpi: ignore touchpad wakeup on gpd g1619-04 (git-fixes). * gpiolib: fix the error path order in gpiochip_add_data_with_key() (git- fixes). * hid: apple: add 2021 magic keyboard fn key mapping (git-fixes). * hid: apple: add support for the 2021 magic keyboard (git-fixes). * hid: wacom: do not register input devices until after hid_hw_start (git- fixes). * hid: wacom: generic: avoid reporting a serial of '0' to userspace (git- fixes). * hwmon: (aspeed-pwm-tacho) mutex for tach reading (git-fixes). * hwmon: (coretemp) enlarge per package core count limit (git-fixes). * hwmon: (coretemp) fix bogus core_id to attr name mapping (git-fixes). * hwmon: (coretemp) fix out-of-bounds memory access (git-fixes). * i2c: i801: fix block process call transactions (git-fixes). * i2c: i801: remove i801_set_block_buffer_mode (git-fixes). * i2c: imx: add timer for handling the stop condition (git-fixes). * i2c: imx: when being a target, mark the last read as processed (git-fixes). * i3c: master: cdns: update maximum prescaler value for i2c clock (git-fixes). * ib/hfi1: fix a memleak in init_credit_return (git-fixes) * ib/hfi1: fix sdma.h tx-> num_descs off-by-one error (git-fixes) * iio: accel: bma400: fix a compilation problem (git-fixes). * iio: adc: ad7091r: set alert bit in config register (git-fixes). * iio: core: fix memleak in iio_device_register_sysfs (git-fixes). * iio: hid-sensor-als: return 0 for hid_usage_sensor_time_timestamp (git- fixes). * iio: magnetometer: rm3100: add boundary check for the value read from rm3100_reg_tmrc (git-fixes). * input: iqs269a - switch to define_simple_dev_pm_ops() and pm_sleep_ptr() (git-fixes). * input: xpad - addlenovo legion go controllers (git-fixes). * irqchip/irq-brcmstb-l2: add write memory barrier before exit (git-fixes). * jfs: fix array-index-out-of-bounds in dbadjtree (git-fixes). * jfs: fix array-index-out-of-bounds in dinewext (git-fixes). * jfs: fix slab-out-of-bounds read in dtsearch (git-fixes). * jfs: fix uaf in jfs_evict_inode (git-fixes). * kbuild: fix changing elf file type for output of gen_btf for big endian (git-fixes). * kvm: s390: fix cc for successful pqap (git-fixes bsc#1219839). * kvm: s390: fix setting of fpc register (git-fixes bsc#1220392). * kvm: s390: vsie: fix race during shadow creation (git-fixes bsc#1220393). * kvm: vmx: move verw closer to vmentry for mds mitigation (git-fixes). * kvm: vmx: use bt+jnc, i.e. eflags.cf to select vmresume vs. vmlaunch (git- fixes). * lan78xx: enable auto speed configuration for lan7850 if no eeprom is detected (git-fixes). * leds: trigger: panic: do not register panic notifier if creating the trigger failed (git-fixes). * lib/stackdepot: add depot_fetch_stack helper (jsc-ped#7423). * lib/stackdepot: add refcount for records (jsc-ped#7423). * lib/stackdepot: fix first entry having a 0-handle (jsc-ped#7423). * lib/stackdepot: move stack_record struct definition into the header (jsc- ped#7423). * libsubcmd: fix memory leak in uniq() (git-fixes). * media: ddbridge: fix an error code problem in ddb_probe (git-fixes). * media: ir_toy: fix a memleak in irtoy_tx (git-fixes). * media: rc: bpf attach/detach requires write permission (git-fixes). * media: rockchip: rga: fix swizzling for rgb formats (git-fixes). * media: stk1160: fixed high volume of stk1160_dbg messages (git-fixes). * mfd: syscon: fix null pointer dereference in of_syscon_register() (git- fixes). * mm,page_owner: display all stacks and their count (jsc-ped#7423). * mm,page_owner: filter out stacks by a threshold (jsc-ped#7423). * mm,page_owner: implement the tracking of the stacks count(jsc-ped#7423). * mm,page_owner: maintain own list of stack_records structs (jsc-ped#7423). * mm,page_owner: update documentation regarding page_owner_stacks (jsc- ped#7423). * mm/hwpoison: fix unpoison_memory() (bsc#1218663). * mm/hwpoison: mf_mutex for soft offline and unpoison (bsc#1218663). * mm/hwpoison: remove mf_msg_buddy_2nd and mf_msg_poisoned_huge (bsc#1218663). * mm: memory-failure: fix potential unexpected return value from unpoison_memory() (git-fixes). * mmc: core: fix emmc initialization with 1-bit bus connection (git-fixes). * mmc: core: use mrq.sbc in close-ended ffu (git-fixes). * mmc: mmc_spi: remove custom dma mapped buffers (git-fixes). * mmc: sdhci-xenon: add timeout for phy init complete (git-fixes). * mmc: sdhci-xenon: fix phy init clock stability (git-fixes). * mmc: slot-gpio: allow non-sleeping gpio ro (git-fixes). * modpost: trim leading spaces when processing source files list (git-fixes). * mtd: spinand: gigadevice: fix the get ecc status issue (git-fixes). * net: usb: dm9601: fix wrong return value in dm9601_mdio_read (git-fixes). * netfs, fscache: prevent oops in fscache_put_cache() (bsc#1220003). * nilfs2: fix data corruption in dsync block recovery for small block sizes (git-fixes). * nilfs2: replace warn_ons for invalid dat metadata block requests (git- fixes). * nouveau/svm: fix kvcalloc() argument order (git-fixes). * nouveau: fix function cast warnings (git-fixes). * ntfs: check overflow when iterating attr_records (git-fixes). * ntfs: fix use-after-free in ntfs_attr_find() (git-fixes). * nvme-fabrics: fix i/o connect error handling (git-fixes). * nvme-host: fix the updating of the firmware version (git-fixes). * pci/aer: decode requester id when no error info found (git-fixes). * pci: add no pm reset quirk for nvidia spectrum devices (git-fixes). * pci: add pci_header_type_mfd definition (bsc#1220021). * pci: fix 64gt/s effective data rate calculation (git-fixes). *pci: only override amd usb controller if required (git-fixes). * pci: switchtec: fix stdev_release() crash after surprise hot remove (git- fixes). * platform/x86: thinkpad_acpi: only update profile if successfully converted (git-fixes). * platform/x86: touchscreen_dmi: add info for the teclast x16 plus tablet (git-fixes). * platform/x86: touchscreen_dmi: allow partial (prefix) matches for acpi names (git-fixes). * pm: core: remove unnecessary (void *) conversions (git-fixes). * pm: runtime: have devm_pm_runtime_enable() handle pm_runtime_dont_use_autosuspend() (git-fixes). * pnp: acpi: fix fortify warning (git-fixes). * power: supply: bq27xxx-i2c: do not free non existing irq (git-fixes). * powerpc/64: set task pt_regs-> link to the lr value on scv entry (bsc#1194869). * powerpc/powernv: fix fortify source warnings in opal-prd.c (bsc#1194869). * powerpc/pseries: add a clear modifier to ibm,pa/pi-features parser (bsc#1220348). * powerpc/pseries: rework lppaca_shared_proc() to avoid debug_preempt (bsc#1194869). * powerpc/pseries: set cpu_ftr_dbell according to ibm,pi-features (bsc#1220348). * powerpc/watchpoint: disable pagefaults when getting user instruction (bsc#1194869). * powerpc/watchpoints: annotate atomic context in more places (bsc#1194869). * powerpc/watchpoints: disable preemption in thread_change_pc() (bsc#1194869). * powerpc: add crtsavres.o to always-y instead of extra-y (bsc#1194869). * powerpc: do not include lppaca.h in paca.h (bsc#1194869). * pstore/ram: fix crash when setting number of cpus to an odd number (git- fixes). * ras/amd/atl: add mi300 row retirement support (jsc#ped-7618). * ras/amd/atl: fix bit overflow in denorm_addr_df4_np2() (git-fixes). * ras: introduce a fru memory poison manager (jsc#ped-7618). * rdma/bnxt_re: add a missing check in bnxt_qplib_query_srq (git-fixes) * rdma/bnxt_re: return error for srq resize (git-fixes) * rdma/core: fix uninit-valueaccess in ib_get_eth_speed() (bsc#1219934). * rdma/core: get ib width and speed from netdev (bsc#1219934). * rdma/irdma: add ae for too many rnrs (git-fixes) * rdma/irdma: fix kasan issue with tasklet (git-fixes) * rdma/irdma: set the cq read threshold for gen 1 (git-fixes) * rdma/irdma: validate max_send_wr and max_recv_wr (git-fixes) * rdma/qedr: fix qedr_create_user_qp error flow (git-fixes) * rdma/srpt: fix function pointer cast warnings (git-fixes) * rdma/srpt: support specifying the srpt_service_guid parameter (git-fixes) * refresh patches.suse/dm_blk_ioctl-implement-path-failover-for-sg_io. (bsc#1216776, bsc#1220277) * regulator: core: only increment use_count when enable_count changes (git- fixes). * regulator: pwm-regulator: add validity checks in continuous .get_voltage (git-fixes). * revert "drm/amd/display: increased min_dcfclk_mhz and min_fclk_mhz" (git- fixes). * revert "drm/amd/pm: resolve reboot exception for si oland" (git-fixes). * revert "drm/amd: flush any delayed gfxoff on suspend entry" (git-fixes). * rpm/kernel-binary.spec.in: install scripts/gdb when enabled in config (bsc#1219653) they are put into -devel subpackage. and a proper link to /usr/share/gdb/auto-load/ is created. * s390/qeth: fix potential loss of l3-ip@ in case of network issues (git-fixes bsc#1219840). * s390: use the correct count for __iowrite64_copy() (git-fixes bsc#1220317). * sched/membarrier: reduce the ability to hammer on sys_membarrier (git- fixes). * scsi: core: move scsi_host_busy() out of host lock for waking up eh handler (git-fixes). * scsi: core: move scsi_host_busy() out of host lock if it is for per-command (git-fixes). * scsi: fnic: move fnic_fnic_flush_tx() to a work queue (git-fixes bsc#1219141). * scsi: hisi_sas: prevent parallel flr and controller reset (git-fixes). * scsi: ibmvfc: limit max hw queues by num_online_cpus() (bsc#1220106). * scsi: ibmvfc: open-code reset loop fortarget reset (bsc#1220106). * scsi: isci: fix an error code problem in isci_io_request_build() (git- fixes). * scsi: lpfc: add condition to delete ndlp object after sending bls_rjt to an abts (bsc#1220021). * scsi: lpfc: allow lpfc_plogi_confirm_nport() logic to execute for fabric nodes (bsc#1220021). * scsi: lpfc: change lpfc_vport fc_flag member into a bitmask (bsc#1220021). * scsi: lpfc: change lpfc_vport load_flag member into a bitmask (bsc#1220021). * scsi: lpfc: change nlp state statistic counters into atomic_t (bsc#1220021). * scsi: lpfc: copyright updates for 14.4.0.0 patches (bsc#1220021). * scsi: lpfc: fix failure to delete vports when discovery is in progress (bsc#1220021). * scsi: lpfc: fix possible memory leak in lpfc_rcv_padisc() (bsc#1220021). * scsi: lpfc: initialize status local variable in lpfc_sli4_repost_sgl_list() (bsc#1220021). * scsi: lpfc: move handling of reset congestion statistics events (bsc#1220021). * scsi: lpfc: protect vport fc_nodes list with an explicit spin lock (bsc#1220021). * scsi: lpfc: remove d_id swap log message from trace event logger (bsc#1220021). * scsi: lpfc: remove nlp_rcv_plogi early return during rscn processing for ndlps (bsc#1220021). * scsi: lpfc: remove shost_lock protection for fc_host_port shost apis (bsc#1220021). * scsi: lpfc: replace deprecated strncpy() with strscpy() (bsc#1220021). * scsi: lpfc: save fpin frequency statistics upon receipt of peer cgn notifications (bsc#1220021). * scsi: lpfc: update lpfc version to 14.4.0.0 (bsc#1220021). * scsi: lpfc: use pci_header_type_mfd instead of literal (bsc#1220021). * scsi: lpfc: use sg_dma_len() api to get struct scatterlist's length (bsc#1220021). * scsi: mpi3mr: refresh sdev queue depth after controller reset (git-fixes). * scsi: revert "scsi: fcoe: fix potential deadlock on &fip-> ctlr_lock" (git- fixes bsc#1219141). * serial: 8250: remove serial_rs485 sanitization fromem485 (git-fixes). * spi-mxs: fix chipselect glitch (git-fixes). * spi: hisi-sfc-v3xx: return irq_none if no interrupts were detected (git- fixes). * spi: ppc4xx: drop write-only variable (git-fixes). * spi: sh-msiof: avoid integer overflow in constants (git-fixes). * staging: iio: ad5933: fix type mismatch regression (git-fixes). * supported.conf: remove external flag from ibm supported modules. (bsc#1209412) * tcp: fix tcp_mtup_probe_success vs wrong snd_cwnd (bsc#1218450). * tomoyo: fix uaf write bug in tomoyo_write_control() (git-fixes). * topology/sysfs: add format parameter to macro defining "show" functions for proc (jsc#ped-7618). * topology/sysfs: add ppin in sysfs under cpu topology (jsc#ped-7618). * tty: allow tiocslcktrmios with cap_checkpoint_restore (git-fixes). * ubsan: array-index-out-of-bounds in dtsplitroot (git-fixes). * usb: cdns3: fix memory double free when handle zero packet (git-fixes). * usb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable() (git- fixes). * usb: cdns3: modify the return value of cdns_set_active () to void when config_pm_sleep is disabled (git-fixes). * usb: cdns3: put the cdns set active part outside the spin lock (git-fixes). * usb: cdns: readd old api (git-fixes). * usb: cdnsp: blocked some cdns3 specific code (git-fixes). * usb: cdnsp: fixed issue with incorrect detecting cdnsp family controllers (git-fixes). * usb: dwc3: gadget: do not disconnect if not started (git-fixes). * usb: dwc3: gadget: handle ep0 request dequeuing properly (git-fixes). * usb: dwc3: gadget: ignore end transfer delay on teardown (git-fixes). * usb: dwc3: gadget: queue pm runtime idle on disconnect event (git-fixes). * usb: dwc3: gadget: refactor ep0 forced stall/restart into a separate api (git-fixes). * usb: dwc3: gadget: submit endxfer command if delayed during disconnect (git- fixes). * usb: dwc3: host: set xhci_sg_trb_cache_size_quirk (git-fixes). * usb:f_mass_storage: forbid async queue when shutdown happen (git-fixes). * usb: gadget: core: add missing kerneldoc for vbus_work (git-fixes). * usb: gadget: core: adjust uevent timing on gadget unbind (git-fixes). * usb: gadget: core: help prevent panic during uvc unconfigure (git-fixes). * usb: gadget: core: remove unbalanced mutex_unlock in usb_gadget_activate (git-fixes). * usb: gadget: f_hid: fix report descriptor allocation (git-fixes). * usb: gadget: fix obscure lockdep violation for udc_mutex (git-fixes). * usb: gadget: fix use-after-free read in usb_udc_uevent() (git-fixes). * usb: gadget: fsl_qe_udc: validate endpoint index for ch9 udc (git-fixes). * usb: gadget: ncm: avoid dropping datagrams of properly parsed ntbs (git- fixes). * usb: gadget: udc: core: offload usb_udc_vbus_handler processing (git-fixes). * usb: gadget: udc: core: prevent soft_connect_store() race (git-fixes). * usb: gadget: udc: handle gadget_connect failure during bind operation (git- fixes). * usb: hub: check for alternate port before enabling a_alt_hnp_support (bsc#1218527). * usb: hub: replace hardcoded quirk value with bit() macro (git-fixes). * usb: roles: do not get/set_role() when usb_role_switch is unregistered (git- fixes). * usb: roles: fix null pointer issue when put module's reference (git-fixes). * usb: serial: cp210x: add id for imst im871a-usb (git-fixes). * usb: serial: option: add fibocom fm101-gl variant (git-fixes). * usb: serial: qcserial: add new usb-id for dell wireless dw5826e (git-fixes). * watchdog: it87_wdt: keep wdtctrl bit 3 unmodified for it8784/it8786 (git- fixes). * wifi: ath11k: fix registration of 6ghz-only phy without the full channel range (git-fixes). * wifi: ath9k: fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() (git-fixes). * wifi: cfg80211: fix missing interfaces when dumping (git-fixes). * wifi: cfg80211: fix rcu dereference in __cfg80211_bss_update (git-fixes). * wifi: cfg80211: free beacon_ies when overridden from hidden bss (git-fixes). * wifi: iwlwifi: fix some error codes (git-fixes). * wifi: iwlwifi: mvm: avoid baid size integer overflow (git-fixes). * wifi: iwlwifi: uninitialized variable in iwl_acpi_get_ppag_table() (git- fixes). * wifi: mac80211: adding missing drv_mgd_complete_tx() call (git-fixes). * wifi: mac80211: fix race condition on enabling fast-xmit (git-fixes). * wifi: nl80211: reject iftype change with mesh id change (git-fixes). * wifi: rt2x00: restart beacon queue when hardware reset (git-fixes). * wifi: rtl8xxxu: add additional usb ids for rtl8192eu devices (git-fixes). * wifi: rtlwifi: rtl8723{be,ae}: using calculate_bit_shift() (git-fixes). * wifi: wext-core: fix -wstringop-overflow warning in ioctl_standard_iw_point() (git-fixes). * x86/asm: add _asm_rip() macro for x86-64 (%rip) suffix (git-fixes). * x86/bugs: add asm helpers for executing verw (git-fixes). * x86/bugs: use alternative() instead of mds_user_clear static key (git- fixes). also add mds_user_clear to kabi severities since it's strictly mitigation related so should be low risk. * x86/cpu: x86_feature_intel_ppin finally had a cpuid bit (jsc#ped-7618). * x86/entry_32: add verw just before userspace transition (git-fixes). * x86/entry_64: add verw just before userspace transition (git-fixes). * x86/mm: fix memory encryption features advertisement (bsc#1206453). * xfs: remove unused fields from struct xbtree_ifakeroot (git-fixes). * xfs: short circuit xfs_growfs_data_private() if delta is zero (git-fixes). ## Special Instructions and Notes: * Please reboot the system after installing this update. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -t patch SUSE-2024-910=1openSUSE-SLE-15.5-2024-910=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2024-910=1 * SUSE Linux Enterprise Live Patching 15-SP5 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2024-910=1 * SUSE Real Time Module 15-SP5 zypper in -t patch SUSE-SLE-Module-RT-15-SP5-2024-910=1 ## Package List: * openSUSE Leap 15.5 (noarch) * kernel-source-rt-5.14.21-150500.13.38.1 * kernel-devel-rt-5.14.21-150500.13.38.1 * openSUSE Leap 15.5 (x86_64) * kernel-rt_debug-vdso-5.14.21-150500.13.38.1 * kernel-rt-devel-5.14.21-150500.13.38.1 * ocfs2-kmp-rt-debuginfo-5.14.21-150500.13.38.1 * cluster-md-kmp-rt-5.14.21-150500.13.38.1 * kernel-livepatch-SLE15-SP5-RT_Update_11-debugsource-1-150500.11.3.1 * kernel-rt_debug-devel-debuginfo-5.14.21-150500.13.38.1 * dlm-kmp-rt-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-livepatch-5.14.21-150500.13.38.1 * reiserfs-kmp-rt-debuginfo-5.14.21-150500.13.38.1 * kselftests-kmp-rt-debuginfo-5.14.21-150500.13.38.1 * kselftests-kmp-rt-5.14.21-150500.13.38.1 * kernel-rt-extra-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-debuginfo-5.14.21-150500.13.38.1 * kernel-livepatch-5_14_21-150500_13_38-rt-debuginfo-1-150500.11.3.1 * kernel-rt-extra-5.14.21-150500.13.38.1 * reiserfs-kmp-rt-5.14.21-150500.13.38.1 * gfs2-kmp-rt-5.14.21-150500.13.38.1 * ocfs2-kmp-rt-5.14.21-150500.13.38.1 * gfs2-kmp-rt-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-optional-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-devel-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-vdso-5.14.21-150500.13.38.1 * kernel-rt-optional-5.14.21-150500.13.38.1 * kernel-rt-vdso-debuginfo-5.14.21-150500.13.38.1 * kernel-rt_debug-vdso-debuginfo-5.14.21-150500.13.38.1 * kernel-rt_debug-devel-5.14.21-150500.13.38.1 * kernel-syms-rt-5.14.21-150500.13.38.1 * dlm-kmp-rt-5.14.21-150500.13.38.1 *kernel-rt-livepatch-devel-5.14.21-150500.13.38.1 * kernel-rt_debug-debuginfo-5.14.21-150500.13.38.1 * kernel-rt_debug-debugsource-5.14.21-150500.13.38.1 * cluster-md-kmp-rt-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-debugsource-5.14.21-150500.13.38.1 * kernel-rt_debug-livepatch-devel-5.14.21-150500.13.38.1 * kernel-livepatch-5_14_21-150500_13_38-rt-1-150500.11.3.1 * openSUSE Leap 15.5 (nosrc x86_64) * kernel-rt_debug-5.14.21-150500.13.38.1 * kernel-rt-5.14.21-150500.13.38.1 * SUSE Linux Enterprise Micro 5.5 (nosrc x86_64) * kernel-rt-5.14.21-150500.13.38.1 * SUSE Linux Enterprise Micro 5.5 (x86_64) * kernel-rt-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-debugsource-5.14.21-150500.13.38.1 * SUSE Linux Enterprise Micro 5.5 (noarch) * kernel-source-rt-5.14.21-150500.13.38.1 * SUSE Linux Enterprise Live Patching 15-SP5 (x86_64) * kernel-livepatch-SLE15-SP5-RT_Update_11-debugsource-1-150500.11.3.1 * kernel-livepatch-5_14_21-150500_13_38-rt-1-150500.11.3.1 * kernel-livepatch-5_14_21-150500_13_38-rt-debuginfo-1-150500.11.3.1 * SUSE Real Time Module 15-SP5 (x86_64) * kernel-rt_debug-vdso-5.14.21-150500.13.38.1 * kernel-rt-devel-5.14.21-150500.13.38.1 * ocfs2-kmp-rt-debuginfo-5.14.21-150500.13.38.1 * cluster-md-kmp-rt-5.14.21-150500.13.38.1 * kernel-rt_debug-devel-debuginfo-5.14.21-150500.13.38.1 * dlm-kmp-rt-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-debuginfo-5.14.21-150500.13.38.1 * gfs2-kmp-rt-5.14.21-150500.13.38.1 * ocfs2-kmp-rt-5.14.21-150500.13.38.1 * gfs2-kmp-rt-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-devel-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-vdso-5.14.21-150500.13.38.1 * kernel-rt-vdso-debuginfo-5.14.21-150500.13.38.1 * kernel-rt_debug-vdso-debuginfo-5.14.21-150500.13.38.1 * kernel-rt_debug-devel-5.14.21-150500.13.38.1 * kernel-syms-rt-5.14.21-150500.13.38.1 * dlm-kmp-rt-5.14.21-150500.13.38.1 *kernel-rt_debug-debuginfo-5.14.21-150500.13.38.1 * kernel-rt_debug-debugsource-5.14.21-150500.13.38.1 * cluster-md-kmp-rt-debuginfo-5.14.21-150500.13.38.1 * kernel-rt-debugsource-5.14.21-150500.13.38.1 * SUSE Real Time Module 15-SP5 (noarch) * kernel-source-rt-5.14.21-150500.13.38.1 * kernel-devel-rt-5.14.21-150500.13.38.1 * SUSE Real Time Module 15-SP5 (nosrc x86_64) * kernel-rt_debug-5.14.21-150500.13.38.1 * kernel-rt-5.14.21-150500.13.38.1 ## References: * https://www.suse.com/security/cve/CVE-2019-25162.html * https://www.suse.com/security/cve/CVE-2021-46923.html * https://www.suse.com/security/cve/CVE-2021-46924.html * https://www.suse.com/security/cve/CVE-2021-46932.html * https://www.suse.com/security/cve/CVE-2023-28746.html * https://www.suse.com/security/cve/CVE-2023-5197.html * https://www.suse.com/security/cve/CVE-2023-52340.html * https://www.suse.com/security/cve/CVE-2023-52429.html * https://www.suse.com/security/cve/CVE-2023-52439.html * https://www.suse.com/security/cve/CVE-2023-52443.html * https://www.suse.com/security/cve/CVE-2023-52445.html * https://www.suse.com/security/cve/CVE-2023-52447.html * https://www.suse.com/security/cve/CVE-2023-52448.html * https://www.suse.com/security/cve/CVE-2023-52449.html * https://www.suse.com/security/cve/CVE-2023-52451.html * https://www.suse.com/security/cve/CVE-2023-52452.html * https://www.suse.com/security/cve/CVE-2023-52456.html * https://www.suse.com/security/cve/CVE-2023-52457.html * https://www.suse.com/security/cve/CVE-2023-52463.html * https://www.suse.com/security/cve/CVE-2023-52464.html * https://www.suse.com/security/cve/CVE-2023-52475.html * https://www.suse.com/security/cve/CVE-2023-52478.html * https://www.suse.com/security/cve/CVE-2023-6817.html * https://www.suse.com/security/cve/CVE-2024-0607.html * https://www.suse.com/security/cve/CVE-2024-1151.html * https://www.suse.com/security/cve/CVE-2024-23849.html *https://www.suse.com/security/cve/CVE-2024-23850.html * https://www.suse.com/security/cve/CVE-2024-23851.html * https://www.suse.com/security/cve/CVE-2024-25744.html * https://www.suse.com/security/cve/CVE-2024-26585.html * https://www.suse.com/security/cve/CVE-2024-26586.html * https://www.suse.com/security/cve/CVE-2024-26589.html * https://www.suse.com/security/cve/CVE-2024-26591.html * https://www.suse.com/security/cve/CVE-2024-26593.html * https://www.suse.com/security/cve/CVE-2024-26595.html * https://www.suse.com/security/cve/CVE-2024-26598.html * https://www.suse.com/security/cve/CVE-2024-26602.html * https://www.suse.com/security/cve/CVE-2024-26603.html * https://www.suse.com/security/cve/CVE-2024-26622.html * https://bugzilla.suse.com/show_bug.cgi?id=1194869 * https://bugzilla.suse.com/show_bug.cgi?id=1206453 * https://bugzilla.suse.com/show_bug.cgi?id=1209412 * https://bugzilla.suse.com/show_bug.cgi?id=1213456 * https://bugzilla.suse.com/show_bug.cgi?id=1216776 * https://bugzilla.suse.com/show_bug.cgi?id=1217927 * https://bugzilla.suse.com/show_bug.cgi?id=1218195 * https://bugzilla.suse.com/show_bug.cgi?id=1218216 * https://bugzilla.suse.com/show_bug.cgi?id=1218450 * https://bugzilla.suse.com/show_bug.cgi?id=1218527 * https://bugzilla.suse.com/show_bug.cgi?id=1218663 * https://bugzilla.suse.com/show_bug.cgi?id=1218915 * https://bugzilla.suse.com/show_bug.cgi?id=1219126 * https://bugzilla.suse.com/show_bug.cgi?id=1219127 * https://bugzilla.suse.com/show_bug.cgi?id=1219141 * https://bugzilla.suse.com/show_bug.cgi?id=1219146 * https://bugzilla.suse.com/show_bug.cgi?id=1219295 * https://bugzilla.suse.com/show_bug.cgi?id=1219443 * https://bugzilla.suse.com/show_bug.cgi?id=1219653 * https://bugzilla.suse.com/show_bug.cgi?id=1219827 * https://bugzilla.suse.com/show_bug.cgi?id=1219835 * https://bugzilla.suse.com/show_bug.cgi?id=1219839 * https://bugzilla.suse.com/show_bug.cgi?id=1219840 *https://bugzilla.suse.com/show_bug.cgi?id=1219934 * https://bugzilla.suse.com/show_bug.cgi?id=1220003 * https://bugzilla.suse.com/show_bug.cgi?id=1220009 * https://bugzilla.suse.com/show_bug.cgi?id=1220021 * https://bugzilla.suse.com/show_bug.cgi?id=1220030 * https://bugzilla.suse.com/show_bug.cgi?id=1220106 * https://bugzilla.suse.com/show_bug.cgi?id=1220140 * https://bugzilla.suse.com/show_bug.cgi?id=1220187 * https://bugzilla.suse.com/show_bug.cgi?id=1220238 * https://bugzilla.suse.com/show_bug.cgi?id=1220240 * https://bugzilla.suse.com/show_bug.cgi?id=1220241 * https://bugzilla.suse.com/show_bug.cgi?id=1220243 * https://bugzilla.suse.com/show_bug.cgi?id=1220250 * https://bugzilla.suse.com/show_bug.cgi?id=1220251 * https://bugzilla.suse.com/show_bug.cgi?id=1220253 * https://bugzilla.suse.com/show_bug.cgi?id=1220254 * https://bugzilla.suse.com/show_bug.cgi?id=1220255 * https://bugzilla.suse.com/show_bug.cgi?id=1220257 * https://bugzilla.suse.com/show_bug.cgi?id=1220267 * https://bugzilla.suse.com/show_bug.cgi?id=1220277 * https://bugzilla.suse.com/show_bug.cgi?id=1220317 * https://bugzilla.suse.com/show_bug.cgi?id=1220326 * https://bugzilla.suse.com/show_bug.cgi?id=1220328 * https://bugzilla.suse.com/show_bug.cgi?id=1220330 * https://bugzilla.suse.com/show_bug.cgi?id=1220335 * https://bugzilla.suse.com/show_bug.cgi?id=1220344 * https://bugzilla.suse.com/show_bug.cgi?id=1220348 * https://bugzilla.suse.com/show_bug.cgi?id=1220350 * https://bugzilla.suse.com/show_bug.cgi?id=1220364 * https://bugzilla.suse.com/show_bug.cgi?id=1220392 * https://bugzilla.suse.com/show_bug.cgi?id=1220393 * https://bugzilla.suse.com/show_bug.cgi?id=1220398 * https://bugzilla.suse.com/show_bug.cgi?id=1220409 * https://bugzilla.suse.com/show_bug.cgi?id=1220444 * https://bugzilla.suse.com/show_bug.cgi?id=1220457 * https://bugzilla.suse.com/show_bug.cgi?id=1220459 * https://bugzilla.suse.com/show_bug.cgi?id=1220649 *https://bugzilla.suse.com/show_bug.cgi?id=1220796 * https://bugzilla.suse.com/show_bug.cgi?id=1220825 . This critical security notice highlights several weaknesses in the Linux kernel. Prompt action is necessary.. Linux Kernel Update, SUSE Security Advisory, Kernel Bug Fixes, SUSE Updates. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 15, 2024 Important SuSE
217

Oracle Linux 9 ELSA-2023-5080 Moderate: Keylime DoS Fix

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2023-5080 https://linux.oracle.com/errata/ELSA-2023-5080.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: keylime-6.5.2-6.el9_2.x86_64.rpm keylime-base-6.5.2-6.el9_2.x86_64.rpm keylime-registrar-6.5.2-6.el9_2.x86_64.rpm keylime-selinux-6.5.2-6.el9_2.noarch.rpm keylime-tenant-6.5.2-6.el9_2.x86_64.rpm keylime-verifier-6.5.2-6.el9_2.x86_64.rpm python3-keylime-6.5.2-6.el9_2.x86_64.rpm aarch64: keylime-6.5.2-6.el9_2.aarch64.rpm keylime-base-6.5.2-6.el9_2.aarch64.rpm keylime-registrar-6.5.2-6.el9_2.aarch64.rpm keylime-selinux-6.5.2-6.el9_2.noarch.rpm keylime-tenant-6.5.2-6.el9_2.aarch64.rpm keylime-verifier-6.5.2-6.el9_2.aarch64.rpm python3-keylime-6.5.2-6.el9_2.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol9/SRPMS-updates//keylime-6.5.2-6.el9_2.src.rpm Related CVEs: CVE-2023-38200 CVE-2023-38201 Description of changes: [6.5.2-6] - Fix registrar is subject to a DoS against SSL (CVE-2023-38200) Resolves: rhbz#2222694 - Fix challenge-protocol bypass during agent registration (CVE-2023-38201) Resolves: rhbz#2222695 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux Security Note ELSA-2023-5090 enhances keylime to address severe vulnerabilities. Discover additional details here.. Oracle Linux, Keylime Update, Security Advisory, Moderate Threat. . LinuxSecurity.com Team

Calendar%202 Sep 14, 2023 Oracle
172

Ubuntu 22.04 LTS: USN-5640-1 Critical DoS Threat in Linux Kernel

Several security issues were fixed in the Linux kernel.. =========================================================================Ubuntu Security Notice USN-5640-1 September 26, 2022 linux-oracle vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-oracle: Linux kernel for Oracle Cloud systems Details: It was discovered that the framebuffer driver on the Linux kernel did not verify size limits when changing font or screen size, leading to an out-of-bounds write. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-33655) Duoming Zhou discovered that race conditions existed in the timer handling implementation of the Linux kernel's Rose X.25 protocol layer, resulting in use-after-free vulnerabilities. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-2318) Roger Pau Monné discovered that the Xen virtual block driver in the Linux kernel did not properly initialize memory pages to be used for shared communication with the backend. A local attacker could use this to expose sensitive information (guest kernel memory). (CVE-2022-26365) Roger Pau Monné discovered that the Xen paravirtualization frontend in the Linux kernel did not properly initialize memory pages to be used for shared communication with the backend. A local attacker could use this to expose sensitive information (guest kernel memory). (CVE-2022-33740) It was discovered that the Xen paravirtualization frontend in the Linux kernel incorrectly shared unrelated data when communicating with certain backends. A local attacker could use this to cause a denial of service (guest crash) or expose sensitive information (guest kernel memory). (CVE-2022-33741, CVE-2022-33742) JanBeulich discovered that the Xen network device frontend driver in the Linux kernel incorrectly handled socket buffers (skb) references when communicating with certain backends. A local attacker could use this to cause a denial of service (guest crash). (CVE-2022-33743) Oleksandr Tyshchenko discovered that the Xen paravirtualization platform in the Linux kernel on ARM platforms contained a race condition in certain situations. An attacker in a guest VM could use this to cause a denial of service in the host OS. (CVE-2022-33744) It was discovered that the virtio RPMSG bus driver in the Linux kernel contained a double-free vulnerability in certain error conditions. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-34494, CVE-2022-34495) Domingo Dirutigliano and Nicola Guerrera discovered that the netfilter subsystem in the Linux kernel did not properly handle rules that truncated packets below the packet header size. When such rules are in place, a remote attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-36946) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: linux-image-5.15.0-1018-oracle 5.15.0-1018.23 linux-image-oracle 5.15.0.1018.16 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-5640-1 CVE-2021-33655, CVE-2022-2318, CVE-2022-26365, CVE-2022-33740, CVE-2022-33741, CVE-2022-33742, CVE-2022-33743, CVE-2022-33744, CVE-2022-34494, CVE-2022-34495, CVE-2022-36946 Package Information: https://launchpad.net/ubuntu/+source/linux-oracle/5.15.0-1018.23 . Important announcement USN-5641-2 highlights kernel vulnerabilities affecting Ubuntu systems. Upgrade recommended to mitigate risks of service disruption and resource exhaustion.. Ubuntu Kernel Security, Oracle Linux Fixes, Ubuntu System Updates. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Sep 26, 2022 Critical Ubuntu
98

Red Hat 8: RHSA-2022:6551-01 Important: Privilege Escalation & DoS Threat

An update for redhat-release-virtualization-host, redhat-virtualization-host, and redhat-virtualization-host-productimg is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: Red Hat Virtualization security update Advisory ID: RHSA-2022:6551-01 Product: Red Hat Virtualization Advisory URL: https://access.redhat.com/errata/RHSA-2022:6551 Issue date: 2022-09-19 CVE Names: CVE-2022-1012 CVE-2022-2132 CVE-2022-2526 CVE-2022-2588 CVE-2022-29154 CVE-2022-32250 ==================================================================== 1. Summary: An update for redhat-release-virtualization-host, redhat-virtualization-host, and redhat-virtualization-host-productimg is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: RHEL 8-based RHEV-H for RHEV 4 (build requirements) - noarch, x86_64 Red Hat Virtualization 4 Hypervisor for RHEL 8 - x86_64 3. Description: The redhat-virtualization-host packages provide the Red Hat Virtualization Host. These packages include redhat-release-virtualization-host, ovirt-node, and rhev-hypervisor. Red Hat Virtualization Hosts (RHVH) are installed using a special build of Red Hat Enterprise Linux with only the packages required to host virtual machines. RHVH features a Cockpit user interface for monitoring the host's resources and performing administrative tasks. The ovirt-node-ng packages provide the Red Hat VirtualizationHost. These packages include redhat-release-virtualization-host, ovirt-node, and rhev-hypervisor. Red Hat Virtualization Hosts (RHVH) are installed using a special build of Red Hat Enterprise Linux with only the packages required to host virtual machines. RHVH features a Cockpit user interface for monitoring the host's resources and performing administrative tasks. The following packages have been upgraded to a later upstream version: redhat-release-virtualization-host (4.5.2), redhat-virtualization-host (4.5.2), redhat-virtualization-host-productimg (4.5.2). (BZ#2070049, BZ#2093195) Security Fix(es): * kernel: Small table perturb size in the TCP source port generation algorithm can lead to information leak (CVE-2022-1012) * dpdk: DoS when a Vhost header crosses more than two descriptors and exhausts all mbufs (CVE-2022-2132) * systemd-resolved: use-after-free when dealing with DnsStream in resolved-dns-stream.c (CVE-2022-2526) * kernel: a use-after-free in cls_route filter implementation may lead to privilege escalation (CVE-2022-2588) * rsync: remote arbitrary files write inside the directories of connecting peers (CVE-2022-29154) * kernel: a use-after-free write in the netfilter subsystem can lead to privilege escalation to root (CVE-2022-32250) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/2974891 5. Bugs fixed (https://bugzilla.redhat.com/): 2064604 - CVE-2022-1012 kernel: Small table perturb size in the TCP source port generation algorithm can lead to information leak 2092427 - CVE-2022-32250 kernel: a use-after-free write in the netfilter subsystem can lead to privilege escalation to root 2099475 - CVE-2022-2132 dpdk: DoS when a Vhost header crosses more than two descriptors and exhausts allmbufs 2107498 - Rebase RHV-H 4.4 SP1 on RHEL 8.6.0.3 2109393 - Upgrade redhat-release-virtualization-host to 4.5.2 2109926 - CVE-2022-2526 systemd-resolved: use-after-free when dealing with DnsStream in resolved-dns-stream.c 2110928 - CVE-2022-29154 rsync: remote arbitrary files write inside the directories of connecting peers2114849 - CVE-2022-2588 kernel: a use-after-free in cls_route filter implementation may lead to privilege escalation 6. Package List: Red Hat Virtualization 4 Hypervisor for RHEL 8: Source: redhat-virtualization-host-4.5.2-202209140405_8.6.src.rpm x86_64: redhat-virtualization-host-image-update-4.5.2-202209140405_8.6.x86_64.rpm RHEL 8-based RHEV-H for RHEV 4 (build requirements): Source: redhat-release-virtualization-host-4.5.2-1.el8ev.src.rpm redhat-virtualization-host-productimg-4.5.2-1.el8.src.rpm noarch: redhat-virtualization-host-image-update-placeholder-4.5.2-1.el8ev.noarch.rpm x86_64: redhat-release-virtualization-host-4.5.2-1.el8ev.x86_64.rpm redhat-release-virtualization-host-content-4.5.2-1.el8ev.x86_64.rpm redhat-virtualization-host-productimg-4.5.2-1.el8.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2022-1012 https://access.redhat.com/security/cve/CVE-2022-2132 https://access.redhat.com/security/cve/CVE-2022-2526 https://access.redhat.com/security/cve/CVE-2022-2588 https://access.redhat.com/security/cve/CVE-2022-29154 https://access.redhat.com/security/cve/CVE-2022-32250 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBYyhq29zjgjWX9erEAQgiXA/7BAJYAIb5xPB/stn0ws3s3rs6d5fpEVzr 5jHraeX3IxGEUnno6m9mfBYfJZGWSVqsnh1/VS2mTMafC8vzrHecrTxUlgzS7dDu 3vOgyc6grNvjCZvYM1YCTxp2W6cKzCrNmJ0udfUwujpsIXBrlAyAyUDWuN8WLR1w g1EEi8qB0fb2TR5ohQGnTaU9/gXzuzdmwcXcrx5aLR5Pe7ICNjLEg5TpnbTZ392y etOxhcHtI1YjKm/yc4MlGtkf8+XHN3h9954cRGd7ptLFaU2qtR9Eezvq8oDuYSsz TByRrtRjjdxdl5uyFYkGWKen8r3ILNW1wgYCbpYOYDY19pjsjwKdqW4MNf8yg0D2 X1AM+cXMvkfPB0cIa3EquZiUftbbv2CpHhq4rmpTEx3C7sqyK2OvEjFQKwnUuYY/ aXr9/0qcTA3PLhVwNXZfe9F8615NeiShK1XMSZArtXANksPUxjPFtpwX45qDh1XJ P8g3LvyCvKto4qkpNyrU1L6eFv8+wvPILC4zjOLxiLPReNiQha1x9WrcKGKSOy3P jdmeqWsizkmvDT/Zpqfz/N6TUU5V+JqfoeiK/05OiZH1hZ27AmemxYNbPIGX6+4b JyIshCYmyd6hVUX+WZKQT/mPlxKTWUiK3a399G6F8DdFKyVh1Hf79qe1s01UwqaB M3n9P8wCe4U=LxVa -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Important patch released for Red Hat Virtualization 4 addressing multiple security vulnerabilities such as privilege escalation and denial-of-service issues.. Red Hat Advisory, Virtualization Security, Privilege Escalation Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Sep 19, 2022 Important Red Hat
100

SUSE: 2022:955-1 Important: sles-15-chost Container Security Update

The container sles-15-sp4-chost-byos-v20220718-x86-64 was updated. The following patches have been included in this update:. SUSE Image Update Advisory: sles-15-sp4-chost-byos-v20220718-x86-64 ----------------------------------------------------------------- Image Advisory ID : SUSE-IU-2022:955-1 Image Tags : sles-15-sp4-chost-byos-v20220718-x86-64:20220718 Image Release : Severity : important Type : security References : 1027519 1080338 1118508 1173429 1185637 1192051 1192449 1195896 1196025 1196026 1196168 1196169 1196171 1196224 1196308 1196784 1196788 1197216 1197443 1197718 1197995 1198255 1198457 1198511 1198939 1199140 1199166 1199232 1199232 1199247 1199264 1199362 1199460 1199565 1199652 1199965 1199966 1200088 1200145 1200278 1200334 1200550 1200734 1200735 1200736 1200737 1200802 1200855 1201099 CVE-2015-20107 CVE-2021-3670 CVE-2022-1292 CVE-2022-1348 CVE-2022-1586 CVE-2022-1586 CVE-2022-2068 CVE-2022-2097 CVE-2022-25235 CVE-2022-25236 CVE-2022-25313 CVE-2022-25314 CVE-2022-25315 CVE-2022-26362 CVE-2022-26363 CVE-2022-26364 CVE-2022-27239 CVE-2022-29162 CVE-2022-31030 CVE-2022-32205 CVE-2022-32206 CVE-2022-32207 CVE-2022-32208 ----------------------------------------------------------------- The container sles-15-sp4-chost-byos-v20220718-x86-64 was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2294-1 Released: Wed Jul 6 13:34:15 2022 Summary: Security update for expat Type: security Severity: important References: 1196025,1196026,1196168,1196169,1196171,1196784,CVE-2022-25235,CVE-2022-25236,CVE-2022-25313,CVE-2022-25314,CVE-2022-25315 This update for expat fixes the following issues: -CVE-2022-25236: Fixed possible namespace-separator characters insertion into namespace URIs (bsc#1196025). - Fixed a regression caused by the patch for CVE-2022-25236 (bsc#1196784). - CVE-2022-25235: Fixed UTF-8 character validation in a certain context (bsc#1196026). - CVE-2022-25313: Fixed stack exhaustion in build_model() via uncontrolled recursion (bsc#1196168). - CVE-2022-25314: Fixed integer overflow in copyString (bsc#1196169). - CVE-2022-25315: Fixed integer overflow in storeRawNames (bsc#1196171). ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2296-1 Released: Wed Jul 6 13:35:00 2022 Summary: Security update for xen Type: security Severity: important References: 1027519,1199965,1199966,CVE-2022-26362,CVE-2022-26363,CVE-2022-26364 This update for xen fixes the following issues: - CVE-2022-26362: Fixed race condition in typeref acquisition (bsc#1199965) - CVE-2022-26363, CVE-2022-26364: Fixed insufficient care with non-coherent mappings (bsc#1199966) ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:2300-1 Released: Wed Jul 6 13:36:19 2022 Summary: Recommended update for open-iscsi Type: recommended Severity: moderate References: 1198457,1199264 This update for open-iscsi fixes the following issues: - Set initiatorname in %post (at end of install), for cases where root is read-only at startup time (bsc#1198457) - Update to latest upstream, including: Added 'distclean' to Makefile targets. Ensure Makefile '.PHONY' targets set up correctly. Fix an iscsid logout bug generating a false error and cleanup logout error messages. Updated/fixed test script. Updated build system. Syntax error in ibft-rule-generator. (bsc#1199264) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2305-1 Released: Wed Jul 6 13:38:42 2022 Summary: Security update for curl Type: security Severity: important References: 1200734,1200735,1200736,1200737,CVE-2022-32205,CVE-2022-32206,CVE-2022-32207,CVE-2022-32208 This update for curl fixes the following issues: - CVE-2022-32205: Set-Cookie denial of service (bsc#1200734) - CVE-2022-32206: HTTP compression denial of service (bsc#1200735) - CVE-2022-32207: Unpreserved file permissions (bsc#1200736) - CVE-2022-32208: FTP-KRB bad message verification (bsc#1200737) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2307-1 Released: Wed Jul 6 14:04:19 2022 Summary: Security update for ldb, samba Type: security Severity: moderate References: 1080338,1118508,1173429,1195896,1196224,1196308,1196788,1197995,1198255,1199247,1199362,CVE-2021-3670 This update for ldb, samba fixes the following issues: ldb was updated to version 2.4.2 to fix: + Fix for CVE-2021-3670, ensure that the LDB request has not timed out during filter processing as the LDAP server MaxQueryDuration is otherwise not honoured. samba was updated to fix: - Revert NIS support removal; (bsc#1199247); - Use requires_eq macro to require the libldb2 version available at samba-dsdb-modules build time; (bsc#1199362); - Add missing samba-client requirement to samba-winbind package; (bsc#1198255); Update to 4.15.7 * Share and server swapped in smbget password prompt; (bso#14831); * Durable handles won't reconnect if the leased file is written to; (bso#15022); * rmdir silently fails if directory contains unreadable files and hide unreadable is yes; (bso#15023); * SMB2_CLOSE_FLAGS_FULL_INFORMATION fails to return information on renamed file handle; (bso#15038); * vfs_shadow_copy2 breaks 'smbd async dosmode' sync fallback; (bso#14957); * shadow_copy2 fails listing snapshotted dirs with shadow:fixinodes; (bso#15035); * PAM Kerberos authentication incorrectly fails with a clock skew error; (bso#15046); * username map - samba erroneously applies unix group memberships to user account entries; (bso#15041); * NT_STATUS_ACCESS_DENIED translates intoEPERM instead of EACCES in SMBC_server_internal; (bso#14983); * Simple bind doesn't work against an RODC (with non-preloaded users); (bso#13879); * Crash of winbind on RODC; (bso#14641); * uncached logon on RODC always fails once; (bso#14865); * KVNO off by 100000; (bso#14951); * LDAP simple binds should honour 'old password allowed period'; (bso#15001); * wbinfo -a doesn't work reliable with upn names; (bso#15003); * Simple bind doesn't work against an RODC (with non-preloaded users); (bso#13879); * Uninitialized litemask in variable in vfs_gpfs module; (bso#15027); * Regression: create krb5 conf = yes doesn't work with a single KDC; (bso#15016); - Add provides to samba-client-libs package to fix upgrades from previous versions; (bsc#1197995); - Add missing samba-libs requirement to samba-winbind package; (bsc#1198255); Update to 4.15.6 * Renaming file on DFS root fails with NT_STATUS_OBJECT_PATH_NOT_FOUND; (bso#14169); * Samba does not response STATUS_INVALID_PARAMETER when opening 2 objects with same lease key; (bso#14737); * NT error code is not set when overwriting a file during rename in libsmbclient; (bso#14938); * Fix ldap simple bind with TLS auditing; (bso#14996); * net ads info shows LDAP Server: 0.0.0.0 depending on contacted server; (bso#14674); * Problem when winbind renews Kerberos; (bso#14979); (bsc#1196224); * pam_winbind will not allow gdm login if password about to expire; (bso#8691); * virusfilter_vfs_openat: Not scanned: Directory or special file; (bso#14971); * DFS fix for AIX broken; (bso#13631); * Solaris and AIX acl modules: wrong function arguments; (bso#14974); * Function aixacl_sys_acl_get_file not declared / coredump; (bso#7239); * Regression: Samba 4.15.2 on macOS segfaults intermittently during strcpy in tdbsam_getsampwnam; (bso#14900); * Fix a use-after-free in SMB1 server; (bso#14989); * smb2_signing_decrypt_pdu() may not decrypt with gnutls_aead_cipher_decrypt() from gnutls before 3.5.2; (bso#14968); * Changing the machine passwordagainst an RODC likely destroys the domain join; (bso#14984); * authsam_make_user_info_dc() steals memory from its struct ldb_message *msg argument; (bso#14993); * Use Heimdal 8.0 (pre) rather than an earlier snapshot; (bso#14995); * Samba autorid fails to map AD users if id rangesize fits in the id range only once; (bso#14967); Other SUSE fixes: - Fix mismatched version of libldb2; (bsc#1196788). - Drop obsolete SuSEfirewall2 service files. - Drop obsolete Samba fsrvp v0-> v1 state upgrade functionality; (bsc#1080338). - Fix ntlm authentications with 'winbind use default domain = yes'; (bso#13126); (bsc#1173429); (bsc#1196308). - Fix samba-ad-dc status warning notification message by disabling systemd notifications in bgqd; (bsc#1195896); (bso#14947). - libldb version mismatch in Samba dsdb component; (bsc#1118508); ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2308-1 Released: Wed Jul 6 14:15:13 2022 Summary: Security update for openssl-1_1 Type: security Severity: important References: 1185637,1199166,1200550,1201099,CVE-2022-1292,CVE-2022-2068,CVE-2022-2097 This update for openssl-1_1 fixes the following issues: - CVE-2022-1292: Fixed command injection in c_rehash (bsc#1199166). - CVE-2022-2068: Fixed more shell code injection issues in c_rehash. (bsc#1200550) - CVE-2022-2097: Fixed partial missing encryption in AES OCB mode (bsc#1201099). ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:2323-1 Released: Thu Jul 7 12:16:58 2022 Summary: Recommended update for systemd-presets-branding-SLE Type: recommended Severity: low References: This update for systemd-presets-branding-SLE fixes the following issues: - Enable suseconnect-keepalive.timer for SUSEConnect (jsc#SLE-23312) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2341-1 Released: Fri Jul 8 16:09:12 2022 Summary: Security update for containerd, docker andrunc Type: security Severity: important References: 1192051,1199460,1199565,1200088,1200145,CVE-2022-29162,CVE-2022-31030 This update for containerd, docker and runc fixes the following issues: containerd: - CVE-2022-31030: Fixed denial of service via invocation of the ExecSync API (bsc#1200145) docker: - Update to Docker 20.10.17-ce. See upstream changelog online at https://docs.docker.com/engine/release-notes/25.0/. (bsc#1200145) runc: Update to runc v1.1.3. Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.1.3. * Our seccomp `-ENOSYS` stub now correctly handles multiplexed syscalls on s390 and s390x. This solves the issue where syscalls the host kernel did not support would return `-EPERM` despite the existence of the `-ENOSYS` stub code (this was due to how s390x does syscall multiplexing). * Retry on dbus disconnect logic in libcontainer/cgroups/systemd now works as intended; this fix does not affect runc binary itself but is important for libcontainer users such as Kubernetes. * Inability to compile with recent clang due to an issue with duplicate constants in libseccomp-golang. * When using systemd cgroup driver, skip adding device paths that don't exist, to stop systemd from emitting warnings about those paths. * Socket activation was failing when more than 3 sockets were used. * Various CI fixes. * Allow to bind mount /proc/sys/kernel/ns_last_pid to inside container. - Fixed issues with newer syscalls (namely faccessat2) on older kernels on s390(x) caused by that platform's syscall multiplexing semantics. (bsc#1192051 bsc#1199565) Update to runc v1.1.2. Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.1.2. Security issue fixed: - CVE-2022-29162: A bug was found in runc where runc exec --cap executed processes with non-empty inheritable Linux process capabilities, creating an atypical Linux environment. (bsc#1199460) - `runc spec` no longer sets any inheritable capabilitiesin the created example OCI spec (`config.json`) file. Update to runc v1.1.1. Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.1.1. * runc run/start can now run a container with read-only /dev in OCI spec, rather than error out. (#3355) * runc exec now ensures that --cgroup argument is a sub-cgroup. (#3403) libcontainer systemd v2 manager no longer errors out if one of the files listed in /sys/kernel/cgroup/delegate do not exist in container's cgroup. (#3387, #3404) * Loosen OCI spec validation to avoid bogus 'Intel RDT is not supported' error. (#3406) * libcontainer/cgroups no longer panics in cgroup v1 managers if stat of /sys/fs/cgroup/unified returns an error other than ENOENT. (#3435) Update to runc v1.1.0. Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.1.0. - libcontainer will now refuse to build without the nsenter package being correctly compiled (specifically this requires CGO to be enabled). This should avoid folks accidentally creating broken runc binaries (and incorrectly importing our internal libraries into their projects). (#3331) Update to runc v1.1.0~rc1. Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.1.0-rc.1. + Add support for RDMA cgroup added in Linux 4.11. * runc exec now produces exit code of 255 when the exec failed. This may help in distinguishing between runc exec failures (such as invalid options, non-running container or non-existent binary etc.) and failures of the command being executed. + runc run: new --keep option to skip removal exited containers artefacts. This might be useful to check the state (e.g. of cgroup controllers) after the container hasexited. + seccomp: add support for SCMP_ACT_KILL_PROCESS and SCMP_ACT_KILL_THREAD (the latter is just an alias for SCMP_ACT_KILL). + seccomp: add support for SCMP_ACT_NOTIFY (seccomp actions). This allows users to create sophisticated seccomp filters wheresyscalls can be efficiently emulated by privileged processes on the host. + checkpoint/restore: add an option (--lsm-mount-context) to set a different LSM mount context on restore. + intelrdt: support ClosID parameter. + runc exec --cgroup: an option to specify a (non-top) in-container cgroup to use for the process being executed. + cgroup v1 controllers now support hybrid hierarchy (i.e. when on a cgroup v1 machine a cgroup2 filesystem is mounted to /sys/fs/cgroup/unified, runc run/exec now adds the container to the appropriate cgroup under it). + sysctl: allow slashes in sysctl names, to better match sysctl(8)'s behaviour. + mounts: add support for bind-mounts which are inaccessible after switching the user namespace. Note that this does not permit the container any additional access to the host filesystem, it simply allows containers to have bind-mounts configured for paths the user can access but have restrictive access control settings for other users. + Add support for recursive mount attributes using mount_setattr(2). These have the same names as the proposed mount(8) options -- just prepend r to the option name (such as rro). + Add runc features subcommand to allow runc users to detect what features runc has been built with. This includes critical information such as supported mount flags, hook names, and so on. Note that the output of this command is subject to change and will not be considered stable until runc 1.2 at the earliest. The runtime-spec specification for this feature is being developed in opencontainers/runtime-spec#1130. * system: improve performance of /proc/$pid/stat parsing. * cgroup2: when /sys/fs/cgroup is configured as a read-write mount, change the ownership of certain cgroup control files (as per /sys/kernel/cgroup/delegate) to allow for proper deferral to the container process. * runc checkpoint/restore: fixed for containers with an external bind mount which destination is a symlink. * cgroup: improve openat2 handling for cgroup directoryhandle hardening. runc delete -f now succeeds (rather than timing out) on a paused container. * runc run/start/exec now refuses a frozen cgroup (paused container in case of exec). Users can disable this using --ignore-paused. - Update version data embedded in binary to correctly include the git commit of the release. ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2357-1 Released: Mon Jul 11 20:34:20 2022 Summary: Security update for python3 Type: security Severity: important References: 1198511,CVE-2015-20107 This update for python3 fixes the following issues: - CVE-2015-20107: avoid command injection in the mailcap module (bsc#1198511). ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:2358-1 Released: Tue Jul 12 04:21:59 2022 Summary: Recommended update for augeas Type: recommended Severity: moderate References: 1197443 This update for augeas fixes the following issues: - Fix handling of keywords in new sysctl.conf (bsc#1197443) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2360-1 Released: Tue Jul 12 12:01:39 2022 Summary: Security update for pcre2 Type: security Severity: important References: 1199232,CVE-2022-1586 This update for pcre2 fixes the following issues: - CVE-2022-1586: Fixed unicode property matching issue. (bsc#1199232) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2361-1 Released: Tue Jul 12 12:05:01 2022 Summary: Security update for pcre Type: security Severity: important References: 1199232,CVE-2022-1586 This update for pcre fixes the following issues: - CVE-2022-1586: Fixed unicode property matching issue. (bsc#1199232) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2378-1 Released: Wed Jul 13 10:27:03 2022 Summary: Security update for cifs-utils Type: security Severity: important References: 1197216,CVE-2022-27239 This update for cifs-utils fixes the following issues: - CVE-2022-27239: Fixed a buffer overflow in the command line ip option (bsc#1197216). ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2396-1 Released: Thu Jul 14 11:57:58 2022 Summary: Security update for logrotate Type: security Severity: important References: 1192449,1199652,1200278,1200802,CVE-2022-1348 This update for logrotate fixes the following issues: Security issues fixed: - CVE-2022-1348: Fixed insecure permissions for state file creation (bsc#1199652). - Improved coredump handing for SUID binaries (bsc#1192449). Non-security issues fixed: - Fixed 'logrotate emits unintended warning: keyword size not properly separated, found 0x3d' (bsc#1200278, bsc#1200802). ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:2406-1 Released: Fri Jul 15 11:49:01 2022 Summary: Recommended update for glibc Type: recommended Severity: moderate References: 1197718,1199140,1200334,1200855 This update for glibc fixes the following issues: - powerpc: Fix VSX register number on __strncpy_power9 (bsc#1200334) - Disable warnings due to deprecated libselinux symbols used by nss and nscd (bsc#1197718) - i386: Remove broken CAN_USE_REGISTER_ASM_EBP (bsc#1197718) - rtld: Avoid using up static TLS surplus for optimizations (bsc#1200855, BZ #25051) This readds the s390 32bit glibc and libcrypt1 libraries (glibc-32bit, glibc-locale-base-32bit, libcrypt1-32bit). ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:2426-1 Released: Mon Jul 18 09:27:51 2022 Summary: Recommended update for rsyslog Type: recommended Severity: moderate References: 1198939 This update for rsyslog fixes the following issues: - Remove inotify watch descriptor in imfile on inode change detected (bsc#1198939) The following package changes have been done: -cifs-utils-6.15-150400.3.6.1 updated - containerd-ctr-1.6.6-150000.73.2 updated - containerd-1.6.6-150000.73.2 updated - curl-7.79.1-150400.5.3.1 updated - docker-20.10.17_ce-150000.166.1 updated - glibc-locale-base-2.31-150300.31.2 updated - glibc-locale-2.31-150300.31.2 updated - glibc-2.31-150300.31.2 updated - libaugeas0-1.12.0-150400.3.3.6 updated - libcrypt1-4.4.15-150300.4.4.3 updated - libcurl4-7.79.1-150400.5.3.1 updated - libexpat1-2.4.4-150400.3.6.9 updated - libldb2-2.4.2-150400.4.3.11 updated - libopeniscsiusr0_2_0-2.1.7-150400.39.3.1 updated - libopenssl1_1-1.1.1l-150400.7.7.1 updated - libpcre1-8.45-150000.20.13.1 updated - libpcre2-8-0-10.39-150400.4.3.1 updated - libpython3_6m1_0-3.6.15-150300.10.27.1 updated - logrotate-3.18.1-150400.3.7.1 updated - open-iscsi-2.1.7-150400.39.3.1 updated - openssl-1_1-1.1.1l-150400.7.7.1 updated - python3-base-3.6.15-150300.10.27.1 updated - python3-3.6.15-150300.10.27.1 updated - rsyslog-8.2106.0-150400.5.3.1 updated - runc-1.1.3-150000.30.1 updated - samba-client-libs-4.15.7+git.376.dd43aca9ab2-150400.3.5.3 updated - systemd-presets-branding-SLE-15.1-150100.20.11.1 updated - xen-libs-4.16.1_04-150400.4.5.2 updated . SUSE has published a security advisory outlining an essential update for sles-15-sp4-chost. It includes details of fixes and challenges addressed.. SUSE, Container Security Update, Security Patch, sles-15-chost. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 22, 2022 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200