Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 14 articles for you...
100

SUSE: 2025:0576-1 important: Kernel Security Fix for SUSE Linux

* bsc#1230697 * bsc#1231847 * bsc#1233112 * bsc#1233642 * bsc#1234025 . # Security update for the Linux Kernel Announcement ID: SUSE-SU-2025:0576-1 Release Date: 2025-02-18T12:50:33Z Rating: important References: * bsc#1230697 * bsc#1231847 * bsc#1233112 * bsc#1233642 * bsc#1234025 * bsc#1234690 * bsc#1234884 * bsc#1234896 * bsc#1234931 * bsc#1235134 * bsc#1235217 * bsc#1235230 * bsc#1235249 * bsc#1235430 * bsc#1235433 * bsc#1235441 * bsc#1235451 * bsc#1235466 * bsc#1235480 * bsc#1235521 * bsc#1235584 * bsc#1235645 * bsc#1235723 * bsc#1235759 * bsc#1235764 * bsc#1235814 * bsc#1235818 * bsc#1235920 * bsc#1235969 * bsc#1236628 Cross-References: * CVE-2024-50199 * CVE-2024-53095 * CVE-2024-53104 * CVE-2024-53144 * CVE-2024-53166 * CVE-2024-53177 * CVE-2024-54680 * CVE-2024-56600 * CVE-2024-56601 * CVE-2024-56602 * CVE-2024-56623 * CVE-2024-56631 * CVE-2024-56642 * CVE-2024-56645 * CVE-2024-56648 * CVE-2024-56650 * CVE-2024-56658 * CVE-2024-56661 * CVE-2024-56664 * CVE-2024-56704 * CVE-2024-56759 * CVE-2024-57791 * CVE-2024-57792 * CVE-2024-57798 * CVE-2024-57849 * CVE-2024-57893 * CVE-2024-57897 * CVE-2024-8805 CVSS scores: * CVE-2024-50199 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-53095 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-53095 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53104 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53104 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53104 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53144 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-53166 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-53166 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53166 ( NVD ): 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53166 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53177 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-53177 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53177 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-54680 ( SUSE ): 6.7 CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2024-54680 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H * CVE-2024-54680 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-54680 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56600 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56600 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56600 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56600 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56601 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56601 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56601 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56601 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56602 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56602 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56602 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56602 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56623 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56623 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56623 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-56631 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56631 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56631 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56631 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56642 ( SUSE ): 7.5 CVSS:4.0/AV:A/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56642 ( SUSE ): 7.1 CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56642 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56642 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56645 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56645 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56648 ( SUSE ): 8.6 CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56648 ( SUSE ): 8.0 CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56648 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-56650 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56650 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56650 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2024-56658 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56658 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56658 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56661 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2024-56661 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-56661 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-56664 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56664 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H *CVE-2024-56664 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56704 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2024-56704 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-56704 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56759 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-56759 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56759 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-56759 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-57791 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2024-57791 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-57792 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-57792 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-57798 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-57798 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-57798 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-57849 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-57849 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-57893 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-57893 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-57897 ( SUSE ): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2024-57897 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-8805 ( SUSE ): 8.8 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2024-8805 ( NVD ): 8.8 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2024-8805 ( NVD ): 8.8CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Availability Extension 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Live Patching 15-SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves 28 vulnerabilities and has two security fixes can now be installed. ## Description: The SUSE Linux Enterprise 15 SP4 kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2024-50199: mm/swapfile: skip HugeTLB pages for unuse_vma (bsc#1233112). * CVE-2024-53104: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format (bsc#1234025). * CVE-2024-53166: block, bfq: fix bfqq uaf in bfq_limit_depth() (bsc#1234884). * CVE-2024-53177: smb: prevent use-after-free due to open_cached_dir error paths (bsc#1234896). * CVE-2024-56600: net: inet6: do not leave a dangling sk pointer in inet6_create() (bsc#1235217). * CVE-2024-56601: net: inet: do not leave a dangling sk pointer in inet_create() (bsc#1235230). * CVE-2024-56602: net: ieee802154: do not leave a dangling sk pointer in ieee802154_create() (bsc#1235521). * CVE-2024-56623: scsi: qla2xxx: Fix use after free on unload (bsc#1235466). * CVE-2024-56631: scsi: sg: Fix slab-use-after-free read in sg_release() (bsc#1235480). * CVE-2024-56642: tipc: Fix use-after-free of kernel socket in cleanup_bearer() (bsc#1235433). * CVE-2024-56645: can: j1939: j1939_session_new(): fix skb reference counting (bsc#1235134). * CVE-2024-56648: net: hsr: avoid potential out-of-bound access in fill_frame_info() (bsc#1235451). * CVE-2024-56650: netfilter: x_tables: fix LED ID check in led_tg_check() (bsc#1235430). * CVE-2024-56658: net: defer final 'struct net' free in netns dismantle (bsc#1235441). * CVE-2024-56664: bpf, sockmap: Fix race between element replace and close() (bsc#1235249). * CVE-2024-56704: 9p/xen: fix release of IRQ (bsc#1235584). * CVE-2024-56759: btrfs: fix use-after-free when COWing tree bock and tracing is enabled (bsc#1235645). * CVE-2024-57791: net/smc: check return value of sock_recvmsg when draining clc data (bsc#1235759). * CVE-2024-57792: power: supply: gpio-charger: Fix set charge current limits (bsc#1235764). * CVE-2024-57798: drm/dp_mst: Ensure mst_primary pointer is valid in drm_dp_mst_handle_up_req() (bsc#1235818). * CVE-2024-57849: s390/cpum_sf: Handle CPU hotplug remove during sampling (bsc#1235814). * CVE-2024-57893: ALSA: seq: oss: Fix races at processing SysEx messages (bsc#1235920). * CVE-2024-57897: drm/amdkfd: Correct the migration DMA map direction (bsc#1235969). The following non-security bugs were fixed: * NFS: Adjust the amount of readahead performed by NFS readdir (bsc#1231847). * NFS: Do not flush the readdir cache in nfs_dentry_iput() (bsc#1231847). * NFS: Improve heuristic for readdirplus (bsc#1231847). * NFS: Trigger the "ls -l" readdir heuristic sooner (bsc#1231847). * tipc: fix NULL deref in cleanup_bearer() (bsc#1235433). * x86/static-call: Remove early_boot_irqs_disabled check to fix Xen PVH dom0 (git-fixes). ## Special Instructions and Notes: * Please reboot the system after installing this update. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can runthe command listed for your product: * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2025-576=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2025-576=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2025-576=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.3-2025-576=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch- Server-4.3-2025-576=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.3-2025-576=1 * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-576=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-576=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-576=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-576=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-576=1 * SUSE Linux Enterprise Live Patching 15-SP4 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP4-2025-576=1 Please note that this is the initial kernel livepatch without fixes itself, this package is later updated by separate standalone kernel livepatch updates. * SUSE Linux Enterprise High Availability Extension 15 SP4 zypper in -t patch SUSE-SLE-Product-HA-15-SP4-2025-576=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2025-576=1 ## Package List: * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 nosrc) * kernel-64kb-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64) * kernel-64kb-devel-5.14.21-150400.24.150.1 *kernel-64kb-debuginfo-5.14.21-150400.24.150.1 * kernel-64kb-debugsource-5.14.21-150400.24.150.1 * kernel-64kb-devel-debuginfo-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 nosrc x86_64) * kernel-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * reiserfs-kmp-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debugsource-5.14.21-150400.24.150.1 * reiserfs-kmp-default-5.14.21-150400.24.150.1 * kernel-obs-build-5.14.21-150400.24.150.1 * kernel-obs-build-debugsource-5.14.21-150400.24.150.1 * kernel-default-devel-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * kernel-default-devel-5.14.21-150400.24.150.1 * kernel-syms-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch) * kernel-source-5.14.21-150400.24.150.1 * kernel-devel-5.14.21-150400.24.150.1 * kernel-macros-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch nosrc) * kernel-docs-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 nosrc) * kernel-64kb-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64) * kernel-64kb-devel-5.14.21-150400.24.150.1 * kernel-64kb-debuginfo-5.14.21-150400.24.150.1 * kernel-64kb-debugsource-5.14.21-150400.24.150.1 * kernel-64kb-devel-debuginfo-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64 nosrc) * kernel-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le x86_64) * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * reiserfs-kmp-default-debuginfo-5.14.21-150400.24.150.1 *kernel-default-debugsource-5.14.21-150400.24.150.1 * reiserfs-kmp-default-5.14.21-150400.24.150.1 * kernel-obs-build-5.14.21-150400.24.150.1 * kernel-obs-build-debugsource-5.14.21-150400.24.150.1 * kernel-default-devel-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-devel-5.14.21-150400.24.150.1 * kernel-syms-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (noarch) * kernel-source-5.14.21-150400.24.150.1 * kernel-devel-5.14.21-150400.24.150.1 * kernel-macros-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (noarch nosrc) * kernel-docs-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (nosrc s390x) * kernel-zfcpdump-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (s390x) * kernel-zfcpdump-debugsource-5.14.21-150400.24.150.1 * kernel-zfcpdump-debuginfo-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (nosrc ppc64le x86_64) * kernel-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * reiserfs-kmp-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debugsource-5.14.21-150400.24.150.1 * reiserfs-kmp-default-5.14.21-150400.24.150.1 * kernel-obs-build-5.14.21-150400.24.150.1 * kernel-obs-build-debugsource-5.14.21-150400.24.150.1 * kernel-default-devel-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * kernel-default-devel-5.14.21-150400.24.150.1 * kernel-syms-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch) * kernel-source-5.14.21-150400.24.150.1 * kernel-devel-5.14.21-150400.24.150.1 * kernel-macros-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch nosrc) *kernel-docs-5.14.21-150400.24.150.1 * SUSE Manager Proxy 4.3 (nosrc x86_64) * kernel-default-5.14.21-150400.24.150.1 * SUSE Manager Proxy 4.3 (x86_64) * kernel-default-debugsource-5.14.21-150400.24.150.1 * kernel-default-devel-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * kernel-default-devel-5.14.21-150400.24.150.1 * kernel-syms-5.14.21-150400.24.150.1 * SUSE Manager Proxy 4.3 (noarch) * kernel-source-5.14.21-150400.24.150.1 * kernel-devel-5.14.21-150400.24.150.1 * kernel-macros-5.14.21-150400.24.150.1 * SUSE Manager Retail Branch Server 4.3 (nosrc x86_64) * kernel-default-5.14.21-150400.24.150.1 * SUSE Manager Retail Branch Server 4.3 (x86_64) * kernel-default-debugsource-5.14.21-150400.24.150.1 * kernel-default-devel-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * kernel-default-devel-5.14.21-150400.24.150.1 * SUSE Manager Retail Branch Server 4.3 (noarch) * kernel-devel-5.14.21-150400.24.150.1 * kernel-macros-5.14.21-150400.24.150.1 * SUSE Manager Server 4.3 (nosrc ppc64le s390x x86_64) * kernel-default-5.14.21-150400.24.150.1 * SUSE Manager Server 4.3 (ppc64le x86_64) * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * SUSE Manager Server 4.3 (ppc64le s390x x86_64) * kernel-default-debugsource-5.14.21-150400.24.150.1 * kernel-default-devel-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-devel-5.14.21-150400.24.150.1 * kernel-syms-5.14.21-150400.24.150.1 * SUSE Manager Server 4.3 (noarch) * kernel-source-5.14.21-150400.24.150.1 * kernel-devel-5.14.21-150400.24.150.1 * kernel-macros-5.14.21-150400.24.150.1 * SUSE Manager Server 4.3 (nosrc s390x) * kernel-zfcpdump-5.14.21-150400.24.150.1 * SUSE Manager Server4.3 (s390x) * kernel-zfcpdump-debugsource-5.14.21-150400.24.150.1 * kernel-zfcpdump-debuginfo-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (noarch nosrc) * kernel-docs-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (noarch) * kernel-source-vanilla-5.14.21-150400.24.150.1 * kernel-source-5.14.21-150400.24.150.1 * kernel-macros-5.14.21-150400.24.150.1 * kernel-devel-5.14.21-150400.24.150.1 * kernel-docs-html-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (nosrc ppc64le x86_64) * kernel-debug-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (ppc64le x86_64) * kernel-debug-debugsource-5.14.21-150400.24.150.1 * kernel-debug-devel-debuginfo-5.14.21-150400.24.150.1 * kernel-debug-debuginfo-5.14.21-150400.24.150.1 * kernel-debug-devel-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (aarch64 ppc64le x86_64) * kernel-kvmsmall-debuginfo-5.14.21-150400.24.150.1 * kernel-kvmsmall-devel-5.14.21-150400.24.150.1 * kernel-kvmsmall-devel-debuginfo-5.14.21-150400.24.150.1 * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * kernel-kvmsmall-debugsource-5.14.21-150400.24.150.1 * kernel-default-base-rebuild-5.14.21-150400.24.150.1.150400.24.74.1 * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64) * kernel-default-extra-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debugsource-5.14.21-150400.24.150.1 * reiserfs-kmp-default-5.14.21-150400.24.150.1 * kernel-default-livepatch-5.14.21-150400.24.150.1 * dlm-kmp-default-debuginfo-5.14.21-150400.24.150.1 * reiserfs-kmp-default-debuginfo-5.14.21-150400.24.150.1 * kselftests-kmp-default-debuginfo-5.14.21-150400.24.150.1 * cluster-md-kmp-default-debuginfo-5.14.21-150400.24.150.1 * kselftests-kmp-default-5.14.21-150400.24.150.1 * kernel-default-optional-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * kernel-syms-5.14.21-150400.24.150.1 * gfs2-kmp-default-5.14.21-150400.24.150.1 *ocfs2-kmp-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-devel-debuginfo-5.14.21-150400.24.150.1 * kernel-default-extra-5.14.21-150400.24.150.1 * gfs2-kmp-default-debuginfo-5.14.21-150400.24.150.1 * kernel-obs-qa-5.14.21-150400.24.150.1 * kernel-obs-build-5.14.21-150400.24.150.1 * cluster-md-kmp-default-5.14.21-150400.24.150.1 * kernel-obs-build-debugsource-5.14.21-150400.24.150.1 * dlm-kmp-default-5.14.21-150400.24.150.1 * ocfs2-kmp-default-5.14.21-150400.24.150.1 * kernel-default-devel-5.14.21-150400.24.150.1 * kernel-default-optional-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 nosrc) * kernel-default-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (ppc64le s390x x86_64) * kernel-livepatch-SLE15-SP4_Update_36-debugsource-1-150400.9.3.1 * kernel-livepatch-5_14_21-150400_24_150-default-debuginfo-1-150400.9.3.1 * kernel-default-livepatch-devel-5.14.21-150400.24.150.1 * kernel-livepatch-5_14_21-150400_24_150-default-1-150400.9.3.1 * openSUSE Leap 15.4 (aarch64 nosrc ppc64le x86_64) * kernel-kvmsmall-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (nosrc s390x) * kernel-zfcpdump-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (s390x) * kernel-zfcpdump-debugsource-5.14.21-150400.24.150.1 * kernel-zfcpdump-debuginfo-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (nosrc) * dtb-aarch64-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (aarch64) * gfs2-kmp-64kb-debuginfo-5.14.21-150400.24.150.1 * dtb-altera-5.14.21-150400.24.150.1 * dtb-nvidia-5.14.21-150400.24.150.1 * dtb-rockchip-5.14.21-150400.24.150.1 * kernel-64kb-devel-5.14.21-150400.24.150.1 * dtb-cavium-5.14.21-150400.24.150.1 * reiserfs-kmp-64kb-debuginfo-5.14.21-150400.24.150.1 * gfs2-kmp-64kb-5.14.21-150400.24.150.1 * dtb-apple-5.14.21-150400.24.150.1 * ocfs2-kmp-64kb-5.14.21-150400.24.150.1 * kselftests-kmp-64kb-5.14.21-150400.24.150.1 *kernel-64kb-devel-debuginfo-5.14.21-150400.24.150.1 * dtb-amd-5.14.21-150400.24.150.1 * dtb-apm-5.14.21-150400.24.150.1 * dtb-allwinner-5.14.21-150400.24.150.1 * dtb-amlogic-5.14.21-150400.24.150.1 * reiserfs-kmp-64kb-5.14.21-150400.24.150.1 * dtb-qcom-5.14.21-150400.24.150.1 * dtb-exynos-5.14.21-150400.24.150.1 * dtb-freescale-5.14.21-150400.24.150.1 * kernel-64kb-optional-debuginfo-5.14.21-150400.24.150.1 * dtb-socionext-5.14.21-150400.24.150.1 * dtb-marvell-5.14.21-150400.24.150.1 * dtb-xilinx-5.14.21-150400.24.150.1 * dtb-mediatek-5.14.21-150400.24.150.1 * dtb-sprd-5.14.21-150400.24.150.1 * dtb-hisilicon-5.14.21-150400.24.150.1 * kernel-64kb-debugsource-5.14.21-150400.24.150.1 * ocfs2-kmp-64kb-debuginfo-5.14.21-150400.24.150.1 * dtb-renesas-5.14.21-150400.24.150.1 * dlm-kmp-64kb-debuginfo-5.14.21-150400.24.150.1 * kselftests-kmp-64kb-debuginfo-5.14.21-150400.24.150.1 * dtb-amazon-5.14.21-150400.24.150.1 * dtb-broadcom-5.14.21-150400.24.150.1 * cluster-md-kmp-64kb-5.14.21-150400.24.150.1 * cluster-md-kmp-64kb-debuginfo-5.14.21-150400.24.150.1 * kernel-64kb-debuginfo-5.14.21-150400.24.150.1 * kernel-64kb-optional-5.14.21-150400.24.150.1 * dtb-arm-5.14.21-150400.24.150.1 * dtb-lg-5.14.21-150400.24.150.1 * kernel-64kb-extra-debuginfo-5.14.21-150400.24.150.1 * dlm-kmp-64kb-5.14.21-150400.24.150.1 * kernel-64kb-extra-5.14.21-150400.24.150.1 * openSUSE Leap 15.4 (aarch64 nosrc) * kernel-64kb-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 nosrc s390x x86_64) * kernel-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 x86_64) * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * kernel-default-debugsource-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Micro 5.3 (aarch64nosrc s390x x86_64) * kernel-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 x86_64) * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * kernel-default-debugsource-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 nosrc s390x x86_64) * kernel-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 x86_64) * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * kernel-default-debugsource-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 nosrc s390x x86_64) * kernel-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 x86_64) * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * kernel-default-debugsource-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Live Patching 15-SP4 (nosrc) * kernel-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise Live Patching 15-SP4 (ppc64le s390x x86_64) * kernel-default-debugsource-5.14.21-150400.24.150.1 * kernel-livepatch-SLE15-SP4_Update_36-debugsource-1-150400.9.3.1 * kernel-livepatch-5_14_21-150400_24_150-default-1-150400.9.3.1 * kernel-default-livepatch-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-livepatch-devel-5.14.21-150400.24.150.1 * kernel-livepatch-5_14_21-150400_24_150-default-debuginfo-1-150400.9.3.1 * SUSE Linux Enterprise High Availability Extension 15 SP4 (aarch64 ppc64le s390x x86_64) * gfs2-kmp-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debugsource-5.14.21-150400.24.150.1 *gfs2-kmp-default-5.14.21-150400.24.150.1 * cluster-md-kmp-default-5.14.21-150400.24.150.1 * ocfs2-kmp-default-debuginfo-5.14.21-150400.24.150.1 * cluster-md-kmp-default-debuginfo-5.14.21-150400.24.150.1 * dlm-kmp-default-5.14.21-150400.24.150.1 * dlm-kmp-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * ocfs2-kmp-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Availability Extension 15 SP4 (nosrc) * kernel-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 nosrc) * kernel-64kb-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64) * kernel-64kb-devel-5.14.21-150400.24.150.1 * kernel-64kb-debuginfo-5.14.21-150400.24.150.1 * kernel-64kb-debugsource-5.14.21-150400.24.150.1 * kernel-64kb-devel-debuginfo-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 nosrc x86_64) * kernel-default-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * reiserfs-kmp-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debugsource-5.14.21-150400.24.150.1 * reiserfs-kmp-default-5.14.21-150400.24.150.1 * kernel-obs-build-5.14.21-150400.24.150.1 * kernel-obs-build-debugsource-5.14.21-150400.24.150.1 * kernel-default-devel-debuginfo-5.14.21-150400.24.150.1 * kernel-default-debuginfo-5.14.21-150400.24.150.1 * kernel-default-base-5.14.21-150400.24.150.1.150400.24.74.1 * kernel-default-devel-5.14.21-150400.24.150.1 * kernel-syms-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch) * kernel-source-5.14.21-150400.24.150.1 * kernel-devel-5.14.21-150400.24.150.1 * kernel-macros-5.14.21-150400.24.150.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch nosrc) *kernel-docs-5.14.21-150400.24.150.1 ## References: * https://www.suse.com/security/cve/CVE-2024-50199.html * https://www.suse.com/security/cve/CVE-2024-53095.html * https://www.suse.com/security/cve/CVE-2024-53104.html * https://www.suse.com/security/cve/CVE-2024-53144.html * https://www.suse.com/security/cve/CVE-2024-53166.html * https://www.suse.com/security/cve/CVE-2024-53177.html * https://www.suse.com/security/cve/CVE-2024-54680.html * https://www.suse.com/security/cve/CVE-2024-56600.html * https://www.suse.com/security/cve/CVE-2024-56601.html * https://www.suse.com/security/cve/CVE-2024-56602.html * https://www.suse.com/security/cve/CVE-2024-56623.html * https://www.suse.com/security/cve/CVE-2024-56631.html * https://www.suse.com/security/cve/CVE-2024-56642.html * https://www.suse.com/security/cve/CVE-2024-56645.html * https://www.suse.com/security/cve/CVE-2024-56648.html * https://www.suse.com/security/cve/CVE-2024-56650.html * https://www.suse.com/security/cve/CVE-2024-56658.html * https://www.suse.com/security/cve/CVE-2024-56661.html * https://www.suse.com/security/cve/CVE-2024-56664.html * https://www.suse.com/security/cve/CVE-2024-56704.html * https://www.suse.com/security/cve/CVE-2024-56759.html * https://www.suse.com/security/cve/CVE-2024-57791.html * https://www.suse.com/security/cve/CVE-2024-57792.html * https://www.suse.com/security/cve/CVE-2024-57798.html * https://www.suse.com/security/cve/CVE-2024-57849.html * https://www.suse.com/security/cve/CVE-2024-57893.html * https://www.suse.com/security/cve/CVE-2024-57897.html * https://www.suse.com/security/cve/CVE-2024-8805.html * https://bugzilla.suse.com/show_bug.cgi?id=1230697 * https://bugzilla.suse.com/show_bug.cgi?id=1231847 * https://bugzilla.suse.com/show_bug.cgi?id=1233112 * https://bugzilla.suse.com/show_bug.cgi?id=1233642 * https://bugzilla.suse.com/show_bug.cgi?id=1234025 * https://bugzilla.suse.com/show_bug.cgi?id=1234690 *https://bugzilla.suse.com/show_bug.cgi?id=1234884 * https://bugzilla.suse.com/show_bug.cgi?id=1234896 * https://bugzilla.suse.com/show_bug.cgi?id=1234931 * https://bugzilla.suse.com/show_bug.cgi?id=1235134 * https://bugzilla.suse.com/show_bug.cgi?id=1235217 * https://bugzilla.suse.com/show_bug.cgi?id=1235230 * https://bugzilla.suse.com/show_bug.cgi?id=1235249 * https://bugzilla.suse.com/show_bug.cgi?id=1235430 * https://bugzilla.suse.com/show_bug.cgi?id=1235433 * https://bugzilla.suse.com/show_bug.cgi?id=1235441 * https://bugzilla.suse.com/show_bug.cgi?id=1235451 * https://bugzilla.suse.com/show_bug.cgi?id=1235466 * https://bugzilla.suse.com/show_bug.cgi?id=1235480 * https://bugzilla.suse.com/show_bug.cgi?id=1235521 * https://bugzilla.suse.com/show_bug.cgi?id=1235584 * https://bugzilla.suse.com/show_bug.cgi?id=1235645 * https://bugzilla.suse.com/show_bug.cgi?id=1235723 * https://bugzilla.suse.com/show_bug.cgi?id=1235759 * https://bugzilla.suse.com/show_bug.cgi?id=1235764 * https://bugzilla.suse.com/show_bug.cgi?id=1235814 * https://bugzilla.suse.com/show_bug.cgi?id=1235818 * https://bugzilla.suse.com/show_bug.cgi?id=1235920 * https://bugzilla.suse.com/show_bug.cgi?id=1235969 * https://bugzilla.suse.com/show_bug.cgi?id=1236628 . The recent patch addresses critical kernel vulnerabilities in SUSE Linux and openSUSE, enhancing both system reliability and safeguarding against threats.. SUSE Linux Kernel Update, Security Bug Fixes, OpenSUSE Updates. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 18, 2025 Important SuSE
100

SUSE Linux Enterprise 15 SP3: 2025:0137-1 important: kernel live patching

* bsc#1210619 * bsc#1223363 * bsc#1223683 * bsc#1225013 * bsc#1225202 . # Security update for the Linux Kernel (Live Patch 44 for SLE 15 SP3) Announcement ID: SUSE-SU-2025:0137-1 Release Date: 2025-01-16T10:35:10Z Rating: important References: * bsc#1210619 * bsc#1223363 * bsc#1223683 * bsc#1225013 * bsc#1225202 * bsc#1225211 * bsc#1225302 * bsc#1225309 * bsc#1225310 * bsc#1225311 * bsc#1225312 * bsc#1225733 * bsc#1225819 * bsc#1226325 * bsc#1227471 * bsc#1227651 * bsc#1228573 * bsc#1229553 * bsc#1232637 * bsc#1233712 Cross-References: * CVE-2021-47291 * CVE-2021-47378 * CVE-2021-47383 * CVE-2021-47402 * CVE-2021-47598 * CVE-2022-48956 * CVE-2023-1829 * CVE-2023-52752 * CVE-2024-26828 * CVE-2024-26923 * CVE-2024-27398 * CVE-2024-35861 * CVE-2024-35862 * CVE-2024-35864 * CVE-2024-35950 * CVE-2024-36904 * CVE-2024-36964 * CVE-2024-41059 * CVE-2024-43861 * CVE-2024-50264 CVSS scores: * CVE-2021-47291 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2021-47291 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2021-47378 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2021-47383 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2021-47402 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2021-47402 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2021-47598 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2021-47598 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2022-48956 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2022-48956 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-1829 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-1829 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52752 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52752 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-26828 ( SUSE ): 7.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H * CVE-2024-26828 ( NVD ): 6.7 CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H * CVE-2024-26923 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-27398 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-35861 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-35861 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-35862 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-35862 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-35864 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-35864 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-35950 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-36904 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-36964 ( SUSE ): 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2024-41059 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-41059 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-41059 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2024-43861 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-43861 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-50264 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50264 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50264 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.3 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise Live Patching 15-SP3 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15SP3 An update that solves 20 vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 5.3.18-150300_59_161 fixes several issues. The following security issues were fixed: * CVE-2024-50264: vsock/virtio: Initialization of the dangling pointer occurring in vsk-> trans (bsc#1233712). * CVE-2022-48956: ipv6: avoid use-after-free in ip6_fragment() (bsc#1232637). * CVE-2024-36904: tcp: Use refcount_inc_not_zero() in tcp_twsk_unique() (bsc#1225733). * CVE-2024-43861: Fix memory leak for not ip packets (bsc#1229553). * CVE-2021-47598: sch_cake: do not call cake_destroy() from cake_init() (bsc#1227471). * CVE-2023-52752: smb: client: fix use-after-free bug in cifs_debug_data_proc_show() (bsc#1225819). * CVE-2024-35862: Fixed potential UAF in smb2_is_network_name_deleted() (bsc#1225311). * CVE-2024-35864: Fixed potential UAF in smb2_is_valid_lease_break() (bsc#1225309). * CVE-2024-35861: Fixed potential UAF in cifs_signal_cifsd_for_reconnect() (bsc#1225312). * CVE-2021-47291: ipv6: fix another slab-out-of-bounds in fib6_nh_flush_exceptions (bsc#1227651). * CVE-2024-41059: hfsplus: fix uninit-value in copy_name (bsc#1228573). * CVE-2024-36964: fs/9p: only translate RWX permissions for plain 9P2000 (bsc#1226325). * CVE-2021-47402: Protect fl_walk() with rcu (bsc#1225301) * CVE-2021-47378: Destroy cm id before destroy qp to avoid use after free (bsc#1225202). * CVE-2024-27398: Fixed use-after-free bugs caused by sco_sock_timeout (bsc#1225013). * CVE-2024-35950: drm/client: Fully protect modes with dev-> mode_config.mutex (bsc#1225310). * CVE-2021-47383: Fixed out-of-bound vmalloc access in imageblit (bsc#1225211). * CVE-2024-26923: Fixed false-positive lockdep splat for spin_lock() in __unix_gc() (bsc#1223683). * CVE-2024-26828: Fixed underflow in parse_server_interfaces() (bsc#1223363). * CVE-2023-1829: Fixed a use-after-free vulnerability in the control index filter (tcindex)(bsc#1210619). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2025-137=1 * SUSE Linux Enterprise Live Patching 15-SP3 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP3-2025-137=1 ## Package List: * openSUSE Leap 15.3 (ppc64le s390x x86_64) * kernel-livepatch-5_3_18-150300_59_161-default-9-150300.7.6.1 * kernel-livepatch-SLE15-SP3_Update_44-debugsource-9-150300.7.6.1 * kernel-livepatch-5_3_18-150300_59_161-default-debuginfo-9-150300.7.6.1 * openSUSE Leap 15.3 (x86_64) * kernel-livepatch-5_3_18-150300_59_161-preempt-debuginfo-9-150300.7.6.1 * kernel-livepatch-5_3_18-150300_59_161-preempt-9-150300.7.6.1 * SUSE Linux Enterprise Live Patching 15-SP3 (ppc64le s390x x86_64) * kernel-livepatch-5_3_18-150300_59_161-default-9-150300.7.6.1 ## References: * https://www.suse.com/security/cve/CVE-2021-47291.html * https://www.suse.com/security/cve/CVE-2021-47378.html * https://www.suse.com/security/cve/CVE-2021-47383.html * https://www.suse.com/security/cve/CVE-2021-47402.html * https://www.suse.com/security/cve/CVE-2021-47598.html * https://www.suse.com/security/cve/CVE-2022-48956.html * https://www.suse.com/security/cve/CVE-2023-1829.html * https://www.suse.com/security/cve/CVE-2023-52752.html * https://www.suse.com/security/cve/CVE-2024-26828.html * https://www.suse.com/security/cve/CVE-2024-26923.html * https://www.suse.com/security/cve/CVE-2024-27398.html * https://www.suse.com/security/cve/CVE-2024-35861.html * https://www.suse.com/security/cve/CVE-2024-35862.html * https://www.suse.com/security/cve/CVE-2024-35864.html * https://www.suse.com/security/cve/CVE-2024-35950.html * https://www.suse.com/security/cve/CVE-2024-36904.html * https://www.suse.com/security/cve/CVE-2024-36964.html *https://www.suse.com/security/cve/CVE-2024-41059.html * https://www.suse.com/security/cve/CVE-2024-43861.html * https://www.suse.com/security/cve/CVE-2024-50264.html * https://bugzilla.suse.com/show_bug.cgi?id=1210619 * https://bugzilla.suse.com/show_bug.cgi?id=1223363 * https://bugzilla.suse.com/show_bug.cgi?id=1223683 * https://bugzilla.suse.com/show_bug.cgi?id=1225013 * https://bugzilla.suse.com/show_bug.cgi?id=1225202 * https://bugzilla.suse.com/show_bug.cgi?id=1225211 * https://bugzilla.suse.com/show_bug.cgi?id=1225302 * https://bugzilla.suse.com/show_bug.cgi?id=1225309 * https://bugzilla.suse.com/show_bug.cgi?id=1225310 * https://bugzilla.suse.com/show_bug.cgi?id=1225311 * https://bugzilla.suse.com/show_bug.cgi?id=1225312 * https://bugzilla.suse.com/show_bug.cgi?id=1225733 * https://bugzilla.suse.com/show_bug.cgi?id=1225819 * https://bugzilla.suse.com/show_bug.cgi?id=1226325 * https://bugzilla.suse.com/show_bug.cgi?id=1227471 * https://bugzilla.suse.com/show_bug.cgi?id=1227651 * https://bugzilla.suse.com/show_bug.cgi?id=1228573 * https://bugzilla.suse.com/show_bug.cgi?id=1229553 * https://bugzilla.suse.com/show_bug.cgi?id=1232637 * https://bugzilla.suse.com/show_bug.cgi?id=1233712 . Essential patches for the Linux Kernel address several vulnerabilities. Prompt measures are advised for systems at risk.. SUSE Kernel Update, Important Security Advisory, Live Patching, Memory Leak Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jan 16, 2025 Important SuSE
100

SUSE 15 SP5: 2024:3627-1 important: Kernel RT Live Patch issues

* bsc#1228349 * bsc#1228573 * bsc#1228786 Cross-References: . # Security update for the Linux Kernel RT (Live Patch 17 for SLE 15 SP5) Announcement ID: SUSE-SU-2024:3627-1 Release Date: 2024-10-15T03:33:31Z Rating: important References: * bsc#1228349 * bsc#1228573 * bsc#1228786 Cross-References: * CVE-2024-40909 * CVE-2024-40954 * CVE-2024-41059 CVSS scores: * CVE-2024-40909 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-40909 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-40954 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-40954 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-41059 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-41059 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-41059 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Live Patching 15-SP5 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves three vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 5.14.21-150500_13_61 fixes several issues. The following security issues were fixed: * CVE-2024-40954: net: do not leave a dangling sk pointer, when socket creation fails (bsc#1227808) * CVE-2024-41059: hfsplus: fix uninit-value in copy_name (bsc#1228573). * CVE-2024-40909: bpf: Fix a potential use-after-free in bpf_link_free() (bsc#1228349). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -t patchSUSE-2024-3627=1 * SUSE Linux Enterprise Live Patching 15-SP5 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2024-3627=1 ## Package List: * openSUSE Leap 15.5 (x86_64) * kernel-livepatch-SLE15-SP5-RT_Update_17-debugsource-2-150500.11.6.1 * kernel-livepatch-5_14_21-150500_13_61-rt-debuginfo-2-150500.11.6.1 * kernel-livepatch-5_14_21-150500_13_61-rt-2-150500.11.6.1 * SUSE Linux Enterprise Live Patching 15-SP5 (x86_64) * kernel-livepatch-SLE15-SP5-RT_Update_17-debugsource-2-150500.11.6.1 * kernel-livepatch-5_14_21-150500_13_61-rt-debuginfo-2-150500.11.6.1 * kernel-livepatch-5_14_21-150500_13_61-rt-2-150500.11.6.1 ## References: * https://www.suse.com/security/cve/CVE-2024-40909.html * https://www.suse.com/security/cve/CVE-2024-40954.html * https://www.suse.com/security/cve/CVE-2024-41059.html * https://bugzilla.suse.com/show_bug.cgi?id=1228349 * https://bugzilla.suse.com/show_bug.cgi?id=1228573 * https://bugzilla.suse.com/show_bug.cgi?id=1228786 . Essential security patches released for SUSE Linux Kernel RT resolving numerous vulnerabilities in Live Patch 17 for SLE 15 SP5.. SUSE Security Patch, Linux Kernel Update, Live Patching, Kernel Security Fix, System Update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Oct 15, 2024 Important SuSE
100

SUSE: 2024:3347-1 important: Kernel Live Patch 11 for SLE 15 SP5

* bsc#1220145 * bsc#1220832 * bsc#1221302 * bsc#1222685 * bsc#1223059 . # Security update for the Linux Kernel (Live Patch 11 for SLE 15 SP5) Announcement ID: SUSE-SU-2024:3347-1 Rating: important References: * bsc#1220145 * bsc#1220832 * bsc#1221302 * bsc#1222685 * bsc#1223059 * bsc#1223363 * bsc#1223514 * bsc#1223521 * bsc#1223681 * bsc#1223683 * bsc#1225013 * bsc#1225099 * bsc#1225310 * bsc#1225313 Cross-References: * CVE-2022-48651 * CVE-2022-48662 * CVE-2023-52502 * CVE-2023-52846 * CVE-2023-6546 * CVE-2024-23307 * CVE-2024-26610 * CVE-2024-26828 * CVE-2024-26852 * CVE-2024-26923 * CVE-2024-26930 * CVE-2024-27398 * CVE-2024-35817 * CVE-2024-35950 CVSS scores: * CVE-2022-48651 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2022-48662 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2022-48662 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52502 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-52846 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-6546 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-6546 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-6546 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-23307 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-23307 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-26610 ( SUSE ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H * CVE-2024-26828 ( SUSE ): 7.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H * CVE-2024-26852 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-26923 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-26930 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-26930 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-27398 ( SUSE ): 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-35817 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-35950 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Live Patching 15-SP5 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves 14 vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 5.14.21-150500_55_52 fixes several issues. The following security issues were fixed: * CVE-2023-52846: Prevent use after free in prp_create_tagged_frame() (bsc#1225099). * CVE-2022-48662: Fixed a general protection fault (GPF) in i915_perf_open_ioctl (bsc#1223521). * CVE-2022-48662: Fixed GPF in i915_perf_open_ioctl (bsc#1223521). * CVE-2024-35817: Set gtt bound flag in amdgpu_ttm_gart_bind (bsc#1225313). * CVE-2024-27398: Fixed use-after-free bugs caused by sco_sock_timeout (bsc#1225013). * CVE-2024-35950: Fully protect modes with dev-> mode_config.mutex (bsc#1225310). * CVE-2024-26923: Fixed false-positive lockdep splat for spin_lock() in __unix_gc() (bsc#1223683). * CVE-2024-26930: Fixed double free of the ha-> vp_map pointer (bsc#1223681). * CVE-2024-26828: Fixed underflow in parse_server_interfaces() (bsc#1223363). * CVE-2024-23307: Fixed Integer Overflow or Wraparound vulnerability in x86 and ARM md, raid, raid5 modules (bsc#1220145). * CVE-2024-26852: Fixed use-after-free in ip6_route_mpath_notify() (bsc#1223059). * CVE-2024-26610: Fixed memory corruption in wifi/iwlwifi (bsc#1221302). * CVE-2022-48651: Fixed an out-of-bound bug in ipvlan caused by unset skb-> mac_header (bsc#1223514). * CVE-2023-52502: Fixed a race condition in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() (bsc#1220832). *CVE-2023-6546: Fixed a race condition in the GSM 0710 tty multiplexor via the GSMIOC_SETCONF ioctl that could lead to local privilege escalation (bsc#1222685). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -t patch SUSE-2024-3347=1 * SUSE Linux Enterprise Live Patching 15-SP5 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2024-3347=1 ## Package List: * openSUSE Leap 15.5 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150500_55_52-default-debuginfo-6-150500.11.6.2 * kernel-livepatch-SLE15-SP5_Update_11-debugsource-6-150500.11.6.2 * kernel-livepatch-5_14_21-150500_55_52-default-6-150500.11.6.2 * SUSE Linux Enterprise Live Patching 15-SP5 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150500_55_52-default-debuginfo-6-150500.11.6.2 * kernel-livepatch-SLE15-SP5_Update_11-debugsource-6-150500.11.6.2 * kernel-livepatch-5_14_21-150500_55_52-default-6-150500.11.6.2 ## References: * https://www.suse.com/security/cve/CVE-2022-48651.html * https://www.suse.com/security/cve/CVE-2022-48662.html * https://www.suse.com/security/cve/CVE-2023-52502.html * https://www.suse.com/security/cve/CVE-2023-52846.html * https://www.suse.com/security/cve/CVE-2023-6546.html * https://www.suse.com/security/cve/CVE-2024-23307.html * https://www.suse.com/security/cve/CVE-2024-26610.html * https://www.suse.com/security/cve/CVE-2024-26828.html * https://www.suse.com/security/cve/CVE-2024-26852.html * https://www.suse.com/security/cve/CVE-2024-26923.html * https://www.suse.com/security/cve/CVE-2024-26930.html * https://www.suse.com/security/cve/CVE-2024-27398.html * https://www.suse.com/security/cve/CVE-2024-35817.html * https://www.suse.com/security/cve/CVE-2024-35950.html * https://bugzilla.suse.com/show_bug.cgi?id=1220145 *https://bugzilla.suse.com/show_bug.cgi?id=1220832 * https://bugzilla.suse.com/show_bug.cgi?id=1221302 * https://bugzilla.suse.com/show_bug.cgi?id=1222685 * https://bugzilla.suse.com/show_bug.cgi?id=1223059 * https://bugzilla.suse.com/show_bug.cgi?id=1223363 * https://bugzilla.suse.com/show_bug.cgi?id=1223514 * https://bugzilla.suse.com/show_bug.cgi?id=1223521 * https://bugzilla.suse.com/show_bug.cgi?id=1223681 * https://bugzilla.suse.com/show_bug.cgi?id=1223683 * https://bugzilla.suse.com/show_bug.cgi?id=1225013 * https://bugzilla.suse.com/show_bug.cgi?id=1225099 * https://bugzilla.suse.com/show_bug.cgi?id=1225310 * https://bugzilla.suse.com/show_bug.cgi?id=1225313 . A recent security enhancement for the Linux Kernel resolves 14 vulnerabilities aimed at bolstering reliability on SUSE Enterprise 15 SP5.. Linux Kernel Update, SUSE Security Patch, Kernel Vulnerability Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Sep 19, 2024 Important SuSE
100

SUSE 15 SP3: 2024:1276-1 critical: Linux Kernel Live Patch 42

* bsc#1210619 * bsc#1218487 Cross-References: * CVE-2023-1829 . # Security update for the Linux Kernel (Live Patch 42 for SLE 15 SP3) Announcement ID: SUSE-SU-2024:1276-1 Rating: important References: * bsc#1210619 * bsc#1218487 Cross-References: * CVE-2023-1829 * CVE-2023-6531 CVSS scores: * CVE-2023-1829 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-1829 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-6531 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-6531 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.3 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise Live Patching 15-SP2 * SUSE Linux Enterprise Live Patching 15-SP3 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 An update that solves two vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 5.3.18-150300_59_153 fixes several issues. The following security issues were fixed: * CVE-2023-6531: Fixed a use-after-free flaw due to a race problem in the unix garbage collector's deletion of SKB races with unix_stream_read_generic()on the socket that the SKB is queued on (bsc#1218487). * CVE-2023-1829: Fixed a use-after-free vulnerability in the control index filter (tcindex) (bsc#1210619). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Live Patching 15-SP2 zypper in -tpatch SUSE-SLE-Module-Live-Patching-15-SP2-2024-1276=1 * openSUSE Leap 15.3 zypper in -t patch SUSE-2024-1277=1 * SUSE Linux Enterprise Live Patching 15-SP3 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP3-2024-1277=1 ## Package List: * SUSE Linux Enterprise Live Patching 15-SP2 (ppc64le s390x x86_64) * kernel-livepatch-5_3_18-150200_24_183-default-debuginfo-2-150200.5.6.1 * kernel-livepatch-SLE15-SP2_Update_46-debugsource-2-150200.5.6.1 * kernel-livepatch-5_3_18-150200_24_183-default-2-150200.5.6.1 * openSUSE Leap 15.3 (ppc64le s390x x86_64) * kernel-livepatch-5_3_18-150300_59_153-default-2-150300.7.6.1 * kernel-livepatch-SLE15-SP3_Update_42-debugsource-2-150300.7.6.1 * kernel-livepatch-5_3_18-150300_59_153-default-debuginfo-2-150300.7.6.1 * openSUSE Leap 15.3 (x86_64) * kernel-livepatch-5_3_18-150300_59_153-preempt-debuginfo-2-150300.7.6.1 * kernel-livepatch-5_3_18-150300_59_153-preempt-2-150300.7.6.1 * SUSE Linux Enterprise Live Patching 15-SP3 (ppc64le s390x x86_64) * kernel-livepatch-5_3_18-150300_59_153-default-2-150300.7.6.1 ## References: * https://www.suse.com/security/cve/CVE-2023-1829.html * https://www.suse.com/security/cve/CVE-2023-6531.html * https://bugzilla.suse.com/show_bug.cgi?id=1210619 * https://bugzilla.suse.com/show_bug.cgi?id=1218487 . Urgent security patch released for Linux Kernel Live Patch 42 on SUSE Enterprise to tackle significant vulnerabilities.. Linux Kernel Update, SUSE Live Patching, Important Patches. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Apr 12, 2024 Critical SuSE
202

openSUSE: 2024:0729-1 Important: Nodejs16 Denial of Service Attack

This update for nodejs16 fixes the following issues: Security issues fixed:. # Security update for nodejs16 Announcement ID: SUSE-SU-2024:0729-1 Rating: important References: * bsc#1219993 * bsc#1219997 * bsc#1220014 * bsc#1220017 * bsc#1220053 Cross-References: * CVE-2023-46809 * CVE-2024-22019 * CVE-2024-22025 * CVE-2024-24758 * CVE-2024-24806 CVSS scores: * CVE-2023-46809 ( SUSE ): 6.8 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N * CVE-2024-22019 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-24758 ( SUSE ): 3.9 CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:L * CVE-2024-24806 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2024-24806 ( NVD ): 7.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L Affected Products: * openSUSE Leap 15.3 * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 An update that solves five vulnerabilities can now be installed. ## Description: This update for nodejs16 fixes the following issues: Security issues fixed: * CVE-2023-46809: Node.js is vulnerable to the Marvin Attack (timing variant of the Bleichenbacher attack against PKCS#1 v1.5 padding) (bsc#1219997). * CVE-2024-22019: http: Reading unprocessed HTTP request with unbounded chunk extension allows DoS attacks (bsc#1219993). * CVE-2024-22025: Denial of Service by resource exhaustion in fetch() brotli decoding (bsc#1220014). * CVE-2024-24758: ignore proxy-authorization header (bsc#1220017). * CVE-2024-24806: fix improper domain lookup that potentially leads to SSRF attacks (bsc#1219724). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively youcan run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2024-729=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2024-729=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2024-729=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2024-729=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2024-729=1 ## Package List: * openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64 i586) * corepack16-16.20.2-150300.7.33.1 * npm16-16.20.2-150300.7.33.1 * nodejs16-debugsource-16.20.2-150300.7.33.1 * nodejs16-devel-16.20.2-150300.7.33.1 * nodejs16-debuginfo-16.20.2-150300.7.33.1 * nodejs16-16.20.2-150300.7.33.1 * openSUSE Leap 15.3 (noarch) * nodejs16-docs-16.20.2-150300.7.33.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * npm16-16.20.2-150300.7.33.1 * nodejs16-debugsource-16.20.2-150300.7.33.1 * nodejs16-devel-16.20.2-150300.7.33.1 * nodejs16-debuginfo-16.20.2-150300.7.33.1 * nodejs16-16.20.2-150300.7.33.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (noarch) * nodejs16-docs-16.20.2-150300.7.33.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (aarch64 ppc64le s390x x86_64) * npm16-16.20.2-150300.7.33.1 * nodejs16-debugsource-16.20.2-150300.7.33.1 * nodejs16-devel-16.20.2-150300.7.33.1 * nodejs16-debuginfo-16.20.2-150300.7.33.1 * nodejs16-16.20.2-150300.7.33.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (noarch) * nodejs16-docs-16.20.2-150300.7.33.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * npm16-16.20.2-150300.7.33.1 * nodejs16-debugsource-16.20.2-150300.7.33.1 * nodejs16-devel-16.20.2-150300.7.33.1 *nodejs16-debuginfo-16.20.2-150300.7.33.1 * nodejs16-16.20.2-150300.7.33.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (noarch) * nodejs16-docs-16.20.2-150300.7.33.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * npm16-16.20.2-150300.7.33.1 * nodejs16-debugsource-16.20.2-150300.7.33.1 * nodejs16-devel-16.20.2-150300.7.33.1 * nodejs16-debuginfo-16.20.2-150300.7.33.1 * nodejs16-16.20.2-150300.7.33.1 * SUSE Enterprise Storage 7.1 (noarch) * nodejs16-docs-16.20.2-150300.7.33.1 ## References: * https://www.suse.com/security/cve/CVE-2023-46809.html * https://www.suse.com/security/cve/CVE-2024-22019.html * https://www.suse.com/security/cve/CVE-2024-22025.html * https://www.suse.com/security/cve/CVE-2024-24758.html * https://www.suse.com/security/cve/CVE-2024-24806.html * https://bugzilla.suse.com/show_bug.cgi?id=1219993 * https://bugzilla.suse.com/show_bug.cgi?id=1219997 * https://bugzilla.suse.com/show_bug.cgi?id=1220014 * https://bugzilla.suse.com/show_bug.cgi?id=1220017 * https://bugzilla.suse.com/show_bug.cgi?id=1220053 . An important enhancement for nodejs16 addresses critical vulnerabilities in multiple SUSE distributions to improve overall security.. OpenSUSE Security Advisory, Nodejs16 Update, Important Nodejs Security, Denial of Service Fix, SSRF Vulnerability. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 01, 2024 Important OpenSUSE
100

SUSE: 2023:2882-1 Important: Perl TLS Cert Verification Issue

* bsc#1210999 Cross-References: * CVE-2023-31484 . # Security update for perl Announcement ID: SUSE-SU-2023:2882-1 Rating: important References: * bsc#1210999 Cross-References: * CVE-2023-31484 CVSS scores: * CVE-2023-31484 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N * CVE-2023-31484 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * Basesystem Module 15-SP4 * Basesystem Module 15-SP5 * Development Tools Module 15-SP4 * Development Tools Module 15-SP5 * openSUSE Leap 15.3 * openSUSE Leap 15.4 * openSUSE Leap 15.5 * openSUSE Leap Micro 5.3 * openSUSE Leap Micro 5.4 * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise Desktop 15 SP4 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.2 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Real Time 15 SP3 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Manager Proxy 4.2 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.2 * SUSE Manager Retail Branch Server 4.3 * SUSEManager Server 4.2 * SUSE Manager Server 4.3 * SUSE Package Hub 15 15-SP4 * SUSE Package Hub 15 15-SP5 An update that solves one vulnerability can now be installed. ## Description: This update for perl fixes the following issues: * CVE-2023-31484: Enable TLS cert verification in CPAN (bsc#1210999). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2023-2882=1 * openSUSE Leap Micro 5.3 zypper in -t patch openSUSE-Leap-Micro-5.3-2023-2882=1 * openSUSE Leap Micro 5.4 zypper in -t patch openSUSE-Leap-Micro-5.4-2023-2882=1 * openSUSE Leap 15.4 zypper in -t patch openSUSE-SLE-15.4-2023-2882=1 * openSUSE Leap 15.5 zypper in -t patch openSUSE-SLE-15.5-2023-2882=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2023-2882=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2023-2882=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2023-2882=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2023-2882=1 * Basesystem Module 15-SP4 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP4-2023-2882=1 * Basesystem Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2023-2882=1 * Development Tools Module 15-SP4 zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP4-2023-2882=1 * Development Tools Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP5-2023-2882=1 * SUSE Package Hub 15 15-SP4 zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP4-2023-2882=1 * SUSE Package Hub 15 15-SP5 zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2023-2882=1 * SUSE Linux Enterprise High Performance Computing ESPOS15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-ESPOS-2023-2882=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2023-2882=1 * SUSE Linux Enterprise Real Time 15 SP3 zypper in -t patch SUSE-SLE-Product-RT-15-SP3-2023-2882=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2023-2882=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2023-2882=1 * SUSE Manager Proxy 4.2 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.2-2023-2882=1 * SUSE Manager Retail Branch Server 4.2 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch- Server-4.2-2023-2882=1 * SUSE Manager Server 4.2 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.2-2023-2882=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2023-2882=1 * SUSE Linux Enterprise Micro 5.1 zypper in -t patch SUSE-SUSE-MicroOS-5.1-2023-2882=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2023-2882=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2023-2882=1 ## Package List: * openSUSE Leap 15.3 (x86_64) * perl-32bit-5.26.1-150300.17.14.1 * perl-core-DB_File-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-32bit-5.26.1-150300.17.14.1 * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64 i586) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * openSUSELeap 15.3 (noarch) * perl-doc-5.26.1-150300.17.14.1 * openSUSE Leap 15.3 (aarch64_ilp32) * perl-64bit-5.26.1-150300.17.14.1 * perl-base-64bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-64bit-5.26.1-150300.17.14.1 * perl-64bit-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-64bit-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-64bit-5.26.1-150300.17.14.1 * openSUSE Leap Micro 5.3 (aarch64 x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * openSUSE Leap Micro 5.4 (aarch64 s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * openSUSE Leap 15.4 (x86_64) * perl-32bit-5.26.1-150300.17.14.1 * perl-core-DB_File-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-32bit-5.26.1-150300.17.14.1 * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * openSUSE Leap 15.4 (noarch) * perl-doc-5.26.1-150300.17.14.1 * openSUSE Leap 15.5 (x86_64) * perl-32bit-5.26.1-150300.17.14.1 * perl-core-DB_File-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-32bit-5.26.1-150300.17.14.1 * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * openSUSE Leap 15.5 (aarch64 ppc64le s390xx86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * openSUSE Leap 15.5 (noarch) * perl-doc-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * Basesystem Module 15-SP4 (aarch64 ppc64le s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * Basesystem Module 15-SP4 (x86_64) * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * BasesystemModule 15-SP5 (aarch64 ppc64le s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * Basesystem Module 15-SP5 (x86_64) * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * Development Tools Module 15-SP4 (noarch) * perl-doc-5.26.1-150300.17.14.1 * Development Tools Module 15-SP5 (noarch) * perl-doc-5.26.1-150300.17.14.1 * SUSE Package Hub 15 15-SP4 (x86_64) * perl-debugsource-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-32bit-5.26.1-150300.17.14.1 * SUSE Package Hub 15 15-SP5 (x86_64) * perl-debugsource-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-32bit-5.26.1-150300.17.14.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (aarch64 x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (noarch) * perl-doc-5.26.1-150300.17.14.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (x86_64) * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 *perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (noarch) * perl-doc-5.26.1-150300.17.14.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (x86_64) * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Real Time 15 SP3 (x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Real Time 15 SP3 (noarch) * perl-doc-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (aarch64 ppc64le s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (noarch) * perl-doc-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (x86_64) * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 *perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (noarch) * perl-doc-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (x86_64) * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * SUSE Manager Proxy 4.2 (x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Manager Retail Branch Server 4.2 (x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Manager Server 4.2 (ppc64le s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Manager Server 4.2 (x86_64) * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 *perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-core-DB_File-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-core-DB_File-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Enterprise Storage 7.1 (noarch) * perl-doc-5.26.1-150300.17.14.1 * SUSE Enterprise Storage 7.1 (x86_64) * perl-base-32bit-5.26.1-150300.17.14.1 * perl-32bit-debuginfo-5.26.1-150300.17.14.1 * perl-base-32bit-debuginfo-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Micro 5.1 (aarch64 s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Micro 5.2 (aarch64 s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 * SUSE Linux Enterprise Micro for Rancher 5.2 (aarch64 s390x x86_64) * perl-base-debuginfo-5.26.1-150300.17.14.1 * perl-debuginfo-5.26.1-150300.17.14.1 * perl-debugsource-5.26.1-150300.17.14.1 * perl-5.26.1-150300.17.14.1 * perl-base-5.26.1-150300.17.14.1 ## References: * https://www.suse.com/security/cve/CVE-2023-31484.html * https://bugzilla.suse.com/show_bug.cgi?id=1210999 . Important announcement regarding Perl to address security vulnerability CVE-2023-31484, including installation instructions for affected SUSE releases.. perl patch, TLS verification, SUSE security update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 05, 2024 Important SuSE
100

SUSE: 2024:0300-1 Important: xerces-c Denial of Service Alert

* bsc#1159552 Cross-References: * CVE-2018-1311 . # Security update for xerces-c Announcement ID: SUSE-SU-2024:0300-1 Rating: important References: * bsc#1159552 Cross-References: * CVE-2018-1311 CVSS scores: * CVE-2018-1311 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2018-1311 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 An update that solves one vulnerability can now be installed. ## Description: This update for xerces-c fixes the following issues: * CVE-2018-1311: fixed use-after-free triggered during the scanning of external DTDs potentially leading to DOS. (bsc#1159552) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2024-300=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2024-300=1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2024-300=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2024-300=1 * SUSE Linux Enterprise Serverfor SAP Applications 15 SP2 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2024-300=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2024-300=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2024-300=1 ## Package List: * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (aarch64 x86_64) * xerces-c-debuginfo-3.1.4-150200.10.11.1 * libxerces-c-3_1-3.1.4-150200.10.11.1 * libxerces-c-devel-3.1.4-150200.10.11.1 * xerces-c-debugsource-3.1.4-150200.10.11.1 * libxerces-c-3_1-debuginfo-3.1.4-150200.10.11.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * libxerces-c-3_1-3.1.4-150200.10.11.1 * libxerces-c-3_1-debuginfo-3.1.4-150200.10.11.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (x86_64) * libxerces-c-3_1-32bit-debuginfo-3.1.4-150200.10.11.1 * libxerces-c-3_1-32bit-3.1.4-150200.10.11.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (aarch64 ppc64le s390x x86_64) * xerces-c-debuginfo-3.1.4-150200.10.11.1 * libxerces-c-3_1-3.1.4-150200.10.11.1 * libxerces-c-devel-3.1.4-150200.10.11.1 * xerces-c-debugsource-3.1.4-150200.10.11.1 * libxerces-c-3_1-debuginfo-3.1.4-150200.10.11.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (aarch64 ppc64le s390x x86_64) * libxerces-c-3_1-3.1.4-150200.10.11.1 * libxerces-c-3_1-debuginfo-3.1.4-150200.10.11.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (x86_64) * libxerces-c-3_1-32bit-debuginfo-3.1.4-150200.10.11.1 * libxerces-c-3_1-32bit-3.1.4-150200.10.11.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (ppc64le x86_64) * xerces-c-debuginfo-3.1.4-150200.10.11.1 * libxerces-c-3_1-3.1.4-150200.10.11.1 * libxerces-c-devel-3.1.4-150200.10.11.1 * xerces-c-debugsource-3.1.4-150200.10.11.1 * libxerces-c-3_1-debuginfo-3.1.4-150200.10.11.1 * SUSE Linux Enterprise Serverfor SAP Applications 15 SP3 (ppc64le x86_64) * libxerces-c-3_1-3.1.4-150200.10.11.1 * libxerces-c-3_1-debuginfo-3.1.4-150200.10.11.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (x86_64) * libxerces-c-3_1-32bit-debuginfo-3.1.4-150200.10.11.1 * libxerces-c-3_1-32bit-3.1.4-150200.10.11.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * libxerces-c-3_1-3.1.4-150200.10.11.1 * libxerces-c-3_1-debuginfo-3.1.4-150200.10.11.1 * SUSE Enterprise Storage 7.1 (x86_64) * libxerces-c-3_1-32bit-debuginfo-3.1.4-150200.10.11.1 * libxerces-c-3_1-32bit-3.1.4-150200.10.11.1 ## References: * https://www.suse.com/security/cve/CVE-2018-1311.html * https://bugzilla.suse.com/show_bug.cgi?id=1159552 . Xerces-C has received an important update that addresses serious vulnerabilities. Implement these security patches on your SUSE systems to enhance protection.. SUSE Security Update,xerces-c Denial of Service issues,server patching,security vulnerability management. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 01, 2024 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200