[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2024:0117-1 -- SLES kernel

ID: oval:org.secpod.oval:def:89051369Date: (C)2024-01-23   (M)2024-04-29
Class: PATCHFamily: unix




The SUSE Linux Enterprise 12 SP5 kernel was updated to receive various security bugfixes. The following security bugs were fixed: * CVE-2022-2586: Fixed a use-after-free which can be triggered when a nft table is deleted . * CVE-2023-6121: Fixed an information leak via dmesg when receiving a crafted packet in the NVMe-oF/TCP subsystem . * CVE-2023-6606: Fixed an out of bounds read in the SMB client when receiving a malformed length from a server . * CVE-2023-6610: Fixed an out of bounds read in the SMB client when printing debug information . * CVE-2023-6931: Fixed an out of bounds write in the Performance Events subsystem when adding a new event . * CVE-2023-6932: Fixed a use-after-free issue when receiving an IGMP query packet due to reference count mismanagement . * CVE-2020-26555: Fixed an issue during BR/EDR PIN code pairing in the Bluetooth subsystem that would allow replay attacks . * CVE-2023-51779: Fixed a use-after-free issue due to a race condition during Bluetooth message reception . The following non-security bugs were fixed: * Enabled the LLC counters for 'perf' on the Ice-Lake and Rocket- Lake CPUs . * Reviewed and added more information to README.SUSE . * Enabled multibuild for kernel packages . * Fix termination state for idr_for_each_entry_ul . * KVM: s390/mm: Properly reset no-dat . * KVM: s390: vsie: fix wrong VIR 37 when MSO is used . * PCI: Disable ATS for specific Intel IPU E2000 devices . * gve: Add XDP DROP and TX support for GQI-QPL format . * gve: Add XDP REDIRECT support for GQI-QPL format . * gve: Changes to add new TX queues . * gve: Control path for DQO-QPL . * gve: Do not fully free QPL pages on prefill errors . * gve: Fix gve interrupt names . * gve: Fixes for napi_poll when budget is 0 . * gve: RX path for DQO-QPL . * gve: Set default duplex configuration to full . * gve: Tx path for DQO-QPL . * gve: Unify duplicate GQ min pkt desc size constants . * gve: XDP support GQI-QPL: helper function changes . * gve: fix frag_list chaining . * gve: trivial spell fix Recive to Receive . * gve: unify driver name usage . * net/tg3: fix race condition in tg3_reset_task . * net/tg3: resolve deadlock in tg3_reset_task during EEH . * s390/vx: fix save/restore of fpu kernel context . * tracing: Fix a possible race when disabling buffered events . * tracing: Fix a warning when allocating buffered events fails . * tracing: Fix incomplete locking when disabling buffered events . * tracing: Fix warning in trace_buffered_event_disable . ## Special Instructions and Notes: * Please reboot the system after installing this update.

Platform:
SUSE Linux Enterprise Server 12 SP5
Product:
kernel
Reference:
SUSE-SU-2024:0117-1
CVE-2020-26555
CVE-2022-2586
CVE-2023-51779
CVE-2023-6121
CVE-2023-6606
CVE-2023-6610
CVE-2023-6931
CVE-2023-6932
CVE    8
CVE-2023-6932
CVE-2023-6931
CVE-2020-26555
CVE-2022-2586
...
CPE    2
cpe:/o:linux:linux_kernel
cpe:/o:suse:suse_linux_enterprise_server:12:sp5

© SecPod Technologies