[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2023:4883-1 -- SLES kernel

ID: oval:org.secpod.oval:def:89051267Date: (C)2024-01-23   (M)2024-04-25
Class: PATCHFamily: unix




The SUSE Linux Enterprise 12 SP5 Azure kernel was updated to receive various security and bugfixes. The following security bugs were fixed: * CVE-2023-0461: Fixed use-after-free in icsk_ulp_data . * CVE-2023-31083: Fixed race condition in hci_uart_tty_ioctl . * CVE-2023-39197: Fixed a out-of-bounds read in nf_conntrack_dccp_packet . * CVE-2023-39198: Fixed a race condition leading to use-after-free in qxl_mode_dumb_create . * CVE-2023-45863: Fixed a out-of-bounds write in fill_kobj_path . * CVE-2023-45871: Fixed an issue in the IGB driver, where the buffer size may not be adequate for frames larger than the MTU . * CVE-2023-5717: Fixed a heap out-of-bounds write vulnerability in the Performance Events component . The following non-security bugs were fixed: * cpu/SMT: Allow enabling partial SMT states via sysfs . * cpu/SMT: Create topology_smt_thread_allowed . * cpu/SMT: Move SMT prototypes into cpu_smt.h . * cpu/SMT: Move smt/control simple exit cases earlier . * cpu/SMT: Remove topology_smt_supported . * cpu/SMT: Store the current/max number of threads . * cpu/hotplug: Create SMT sysfs interface for all arches . * dm-raid: remove useless checking in raid_message . * l2tp: fix refcount leakage on PPPoL2TP sockets . * l2tp: fix {pppol2tp, l2tp_dfs}_seq_stop in case of seq_file overflow . * md/bitmap: always wake up md_thread in timeout_store . * md/bitmap: factor out a helper to set timeout . * md/raid10: Do not add spare disk when recovery fails . * md/raid10: check slab-out-of-bounds in md_bitmap_get_counter . * md/raid10: clean up md_add_new_disk . * md/raid10: fix io loss while replacement replace rdev . * md/raid10: fix leak of "r10bio-greater than remaining" for recovery . * md/raid10: fix memleak for "conf-greater than bio_split" . * md/raid10: fix memleak of md thread . * md/raid10: fix null-ptr-deref in raid10_sync_request . * md/raid10: fix null-ptr-deref of mreplace in raid10_sync_request . * md/raid10: fix overflow of md/safe_mode_delay . * md/raid10: fix wrong setting of max_corr_read_errors . * md/raid10: improve code of mrdev in raid10_sync_request . * md/raid10: prevent soft lockup while flush writes . * md/raid10: prioritize adding disk to "removed" mirror . * md: Flush workqueue md_rdev_misc_wq in md_alloc . * md: add new workqueue for delete rdev . * md: avoid signed overflow in slot_store . * md: do not return existing mddevs from mddev_find_or_alloc . * md: factor out a mddev_alloc_unit helper from mddev_find . * md: fix data corruption for raid456 when reshape restart while grow up . * md: fix deadlock causing by sysfs_notify . * md: fix incorrect declaration about claim_rdev in md_import_device . * md: flush md_rdev_misc_wq for HOT_ADD_DISK case . * md: get sysfs entry after redundancy attr group create . * md: refactor mddev_find_or_alloc . * md: remove lock_bdev / unlock_bdev . * mm, memcg: add mem_cgroup_disabled checks in vmpressure and swap-related functions . * net-memcg: Fix scope of sockmem pressure indicators . * net: mana: Configure hwc timeout from hardware . * net: mana: Fix MANA VF unload when hardware is unresponsive . * powerpc/pseries: Honour current SMT state when DLPAR onlining CPUs . * powerpc/pseries: Initialise CPU hotplug callbacks earlier . * powerpc: Add HOTPLUG_SMT support . Update config files. * ring-buffer: Avoid softlockup in ring_buffer_resize . * s390/cio: unregister device when the only path is gone . * s390/cmma: fix detection of DAT pages . * s390/cmma: fix handling of swapper_pg_dir and invalid_pg_dir . * s390/cmma: fix initial kernel address space page table walk . * s390/crashdump: fix TOD programmable field size . * s390/dasd: protect device queue against concurrent access . * s390/dasd: use correct number of retries for ERP requests . * s390/mm: add missing arch_set_page_dat call to gmap allocations . * s390/mm: add missing arch_set_page_dat call to vmem_crst_alloc . * s390/ptrace: fix PTRACE_GET_LAST_BREAK error handling . * scsi: qla2xxx: Fix double free of dsd_list during driver load . * scsi: qla2xxx: Use FIELD_GET to extract PCIe capability fields . * tracing: Increase PERF_MAX_TRACE_SIZE to handle Sentinel1 and docker together . * usb-storage: fix deadlock when a scsi command timeouts more than once . * usb: serial: option: add Quectel RM500U-CN modem . * usb: serial: option: add Telit FE990 compositions . * usb: serial: option: add UNISOC vendor and TOZED LT70C product . * usb: typec: tcpm: Fix altmode re-registration causes sysfs create fail . * xfs: fix units conversion error in xfs_bmap_del_extent_delay . * xfs: make sure maxlen is still congruent with prod when rounding down . * xfs: reserve data and rt quota at the same time . ## Special Instructions and Notes: * Please reboot the system after installing this update.

Platform:
SUSE Linux Enterprise Server 12 SP5
Product:
kernel
Reference:
SUSE-SU-2023:4883-1
CVE-2023-0461
CVE-2023-31083
CVE-2023-39197
CVE-2023-39198
CVE-2023-45863
CVE-2023-45871
CVE-2023-5717
CVE    7
CVE-2023-0461
CVE-2023-31083
CVE-2023-45871
CVE-2023-5717
...
CPE    2
cpe:/o:linux:linux_kernel
cpe:/o:suse:suse_linux_enterprise_server:12:sp5

© SecPod Technologies