Oval Definition:oval:org.opensuse.security:def:101987
Revision Date:2022-02-01Version:1
Title:Security update for the Linux Kernel (Live Patch 4 for SLE 15 SP3) (Important)
Description:

This update for the Linux Kernel 5.3.18-59_16 fixes several issues.

The following security issues were fixed:

- CVE-2022-0185: Incorrect param length parsing in legacy_parse_param which could have led to a local privilege escalation (bsc#1194517). - CVE-2021-4154: Fixed option parsing with cgroups version 1 (bsc#1193842). - CVE-2021-4028: Fixed use-after-free in RDMA listen() that could lead to DoS or privilege escalation by a local attacker (bsc#1193167). - CVE-2020-3702: Fixed a bug which could be triggered with specifically timed and handcrafted traffic and cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure. (bsc#1191193) - CVE-2021-42739: The firewire subsystem had a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/firewire/firedtv-ci.c, because avc_ca_pmt mishandled bounds checking (bsc#1184673).
Family:unixClass:patch
Status:Reference(s):1087082
1133021
1152457
1152489
1155518
1156395
1164648
1177666
1178378
1178418
1178612
1179519
1179825
1179827
1179851
1182257
1182378
1182999
1183346
1183868
1183873
1183932
1183947
1183976
1184081
1184082
1184259
1184611
1184855
1185428
1185495
1185497
1185589
1185606
1185642
1185645
1185677
1185680
1185703
1185725
1185758
1185859
1185860
1185861
1185862
1185863
1185898
1185899
1185911
1185938
1185950
1185982
1185987
1185988
1186060
1186061
1186062
1186111
1186285
1186320
1186390
1186416
1186439
1186441
1186451
1186460
1186479
1186484
1186498
1186501
1186573
1186681
1191529
1192036
1193529
1194461
1194737
CVE-2020-24586
CVE-2020-24587
CVE-2020-24588
CVE-2020-26139
CVE-2020-26141
CVE-2020-26145
CVE-2020-26147
CVE-2020-3702
CVE-2021-23134
CVE-2021-32399
CVE-2021-33034
CVE-2021-33200
CVE-2021-3491
CVE-2021-4028
CVE-2021-4154
CVE-2021-42739
CVE-2022-0185
SUSE-SU-2022:0257-1
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP3
SUSE Linux Enterprise Micro 5.1
SUSE Linux Enterprise Micro 5.2
SUSE Linux Enterprise Module for Live Patching 15 SP3
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP3
Product(s):
Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise High Performance Computing 15 SP3 is installed
  • OR SUSE Linux Enterprise Micro 5.1 is installed
  • OR SUSE Linux Enterprise Micro 5.2 is installed
  • OR SUSE Linux Enterprise Module for Live Patching 15 SP3 is installed
  • OR SUSE Linux Enterprise Server 15 SP3 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
  • AND kernel-livepatch-5_3_18-59_16-default-7-150300.2.2 is installed
  • BACK