Revision Date: | 2022-07-21 | Version: | 1 |
Title: | Security update for the Linux Kernel (Live Patch 29 for SLE 12 SP5) (Important) |
Description: |
This update for the Linux Kernel 4.12.14-122_113 fixes several issues.
The following security issues were fixed:
- CVE-2022-20154: Fixed a use after free due to a race condition in lock_sock_nested of sock.c. This could lead to local escalation of privilege with System execution privileges needed (bsc#1200599). - CVE-2022-21499: Reinforced the kernel lockdown feature, until now it's been trivial to break out of it with kgdb or kdb (bsc#1199426). - CVE-2022-1729: Fixed a sys_perf_event_open() race condition against self (bsc#1199507).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1048942 1051510 1071995 1078248 1082635 1089644 1091041 1103990 1103991 1104353 1104427 1104745 1108043 1109837 1111666 1112178 1112374 1113722 1113956 1113994 1114279 1117169 1118661 1119105 1119113 1120853 1122983 1126390 1127354 1127371 1129770 1130694 1131107 1133267 1134983 1135824 1135966 1135967 1137223 1137236 1138039 1140948 1142095 1142635 1142924 1143706 1144333 1146544 1149126 1149429 1149448 1150466 1151067 1151186 1151548 1151900 1152778 1152782 1153628 1153811 1153879 1154043 1154058 1154124 1154355 1154526 1154601 1154738 1155021 1155217 1155689 1155692 1155836 1155897 1155921 1156187 1156258 1156429 1156466 1156471 1156494 1156609 1156700 1156729 1156882 1156928 1157032 1157038 1157042 1157044 1157045 1157046 1157049 1157070 1157115 1157143 1157145 1157158 1157160 1157162 1157171 1157173 1157178 1157180 1157182 1157183 1157184 1157191 1157193 1157197 1157298 1157304 1157307 1157324 1157333 1157386 1157424 1157463 1157499 1157678 1157698 1157778 1157908 1158049 1158063 1158064 1158065 1158066 1158067 1158068 1158071 1158082 1158381 1158394 1158398 1158407 1158410 1158413 1158417 1158427 1158445 1158637 1158638 1158639 1158640 1158641 1158643 1158644 1158645 1158646 1158647 1158649 1158651 1158652 1159819 1160460 1160904 1160906 1160968 1164390 1168669 1169511 1169746 1171352 1171978 1172277 1172405 1173032 1173902 1173994 1173998 1174117 1174121 1174922 1174923 1176409 1176412 1177613 1199697 1200059 1200608 CVE-2016-5824 CVE-2018-12405 CVE-2018-17466 CVE-2018-18492 CVE-2018-18493 CVE-2018-18494 CVE-2018-18498 CVE-2018-18500 CVE-2018-18501 CVE-2018-18505 CVE-2018-18511 CVE-2019-0154 CVE-2019-11691 CVE-2019-11692 CVE-2019-11693 CVE-2019-11694 CVE-2019-11698 CVE-2019-11757 CVE-2019-11758 CVE-2019-11759 CVE-2019-11760 CVE-2019-11761 CVE-2019-11762 CVE-2019-11763 CVE-2019-11764 CVE-2019-14895 CVE-2019-14901 CVE-2019-15213 CVE-2019-15903 CVE-2019-15916 CVE-2019-16231 CVE-2019-17006 CVE-2019-17055 CVE-2019-18466 CVE-2019-18660 CVE-2019-18683 CVE-2019-18805 CVE-2019-18809 CVE-2019-18903 CVE-2019-19046 CVE-2019-19049 CVE-2019-19052 CVE-2019-19056 CVE-2019-19057 CVE-2019-19058 CVE-2019-19060 CVE-2019-19062 CVE-2019-19063 CVE-2019-19065 CVE-2019-19067 CVE-2019-19068 CVE-2019-19073 CVE-2019-19074 CVE-2019-19075 CVE-2019-19077 CVE-2019-19078 CVE-2019-19080 CVE-2019-19081 CVE-2019-19082 CVE-2019-19083 CVE-2019-19227 CVE-2019-19524 CVE-2019-19525 CVE-2019-19528 CVE-2019-19529 CVE-2019-19530 CVE-2019-19531 CVE-2019-19534 CVE-2019-19536 CVE-2019-19543 CVE-2019-2949 CVE-2019-5798 CVE-2019-7317 CVE-2019-9797 CVE-2019-9800 CVE-2019-9815 CVE-2019-9816 CVE-2019-9817 CVE-2019-9818 CVE-2019-9819 CVE-2019-9820 CVE-2020-12399 CVE-2020-12402 CVE-2020-12673 CVE-2020-12674 CVE-2020-13753 CVE-2020-13934 CVE-2020-13935 CVE-2020-14318 CVE-2020-14323 CVE-2020-14383 CVE-2020-14392 CVE-2020-14393 CVE-2020-2654 CVE-2020-2754 CVE-2020-2755 CVE-2020-2756 CVE-2020-2757 CVE-2020-2781 CVE-2020-2800 CVE-2020-2803 CVE-2020-2805 CVE-2020-2830 CVE-2020-7217 CVE-2020-8022 CVE-2020-9802 CVE-2020-9803 CVE-2020-9805 CVE-2020-9806 CVE-2020-9807 CVE-2020-9843 CVE-2020-9850 CVE-2022-1729 CVE-2022-20154 CVE-2022-21499 SUSE-SU-2019:0338-1 SUSE-SU-2019:1458-1 SUSE-SU-2019:2912-1 SUSE-SU-2019:3372-1 SUSE-SU-2020:0370-1 SUSE-SU-2020:0697-1 SUSE-SU-2020:1677-1 SUSE-SU-2020:1684-1 SUSE-SU-2020:1789-1 SUSE-SU-2020:1850-1 SUSE-SU-2020:1990-1 SUSE-SU-2020:2045-1 SUSE-SU-2020:2266-1 SUSE-SU-2020:2645-1 SUSE-SU-2020:3087-1
|
Platform(s): | SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5 SUSE Linux Enterprise Build System Kit 12 SP2 SUSE Linux Enterprise Build System Kit 12 SP3 SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 11 SP4 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP1 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise for SAP 12 SP1 SUSE Linux Enterprise High Availability 12 SUSE Linux Enterprise High Availability 12 SP1 SUSE Linux Enterprise High Availability 12 SP2 SUSE Linux Enterprise High Availability 12 SP3 SUSE Linux Enterprise High Availability 12 SP5 SUSE Linux Enterprise High Performance Computing 12 SP5 SUSE Linux Enterprise Live Patching 12 SP5 SUSE Linux Enterprise Module for Public Cloud 15 SP1 SUSE Linux Enterprise Module for Web Scripting 12 SUSE Linux Enterprise Point of Sale 12 SP2-CLIENT SUSE Linux Enterprise Server 11 SP2 SUSE Linux Enterprise Server 11 SP2-LTSS SUSE Linux Enterprise Server 11 SP3 SUSE Linux Enterprise Server 11 SP4 SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 12-LTSS SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 SUSE Linux Enterprise Server for SAP Applications 15 SUSE Linux Enterprise Server for VMWare 11 SP2 SUSE Linux Enterprise Server for VMWare 11 SP3 SUSE Linux Enterprise Software Development Kit 11 SP2 SUSE Linux Enterprise Software Development Kit 11 SP3 SUSE Linux Enterprise Software Development Kit 11 SP4 SUSE Linux Enterprise Software Development Kit 12 SUSE Linux Enterprise Software Development Kit 12 SP1 SUSE Linux Enterprise Software Development Kit 12 SP2 SUSE Linux Enterprise Workstation Extension 12 SUSE Linux Enterprise Workstation Extension 12 SP1 SUSE Linux Enterprise Workstation Extension 12 SP2 SUSE Linux Enterprise Workstation Extension 15 SUSE Linux Enterprise Workstation Extension 15 SP1 SUSE OpenStack Cloud 5 SUSE Package Hub for SUSE Linux Enterprise 12
| Product(s): | |
Definition Synopsis |
SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5 is installed AND Package Information
python-keystoneclient-1.0.0-16.1 is installed
OR python-keystoneclient-doc-1.0.0-16.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP2 is installed
AND kernel-zfcpdump-4.4.38-93 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP3 is installed
AND Package Information
krb5-mini-1.12.5-40.16 is installed
OR krb5-mini-devel-1.12.5-40.16 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND Package Information
avahi-0.6.31-20 is installed
OR avahi-lang-0.6.31-20 is installed
OR libavahi-client3-0.6.31-20 is installed
OR libavahi-client3-32bit-0.6.31-20 is installed
OR libavahi-common3-0.6.31-20 is installed
OR libavahi-common3-32bit-0.6.31-20 is installed
OR libavahi-core7-0.6.31-20 is installed
OR libdns_sd-0.6.31-20 is installed
OR libdns_sd-32bit-0.6.31-20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP1 is installed
AND Package Information
ImageMagick-6.8.8.1-8 is installed
OR libMagick++-6_Q16-3-6.8.8.1-8 is installed
OR libMagickCore-6_Q16-1-6.8.8.1-8 is installed
OR libMagickCore-6_Q16-1-32bit-6.8.8.1-8 is installed
OR libMagickWand-6_Q16-1-6.8.8.1-8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND Package Information
gd-2.1.0-12 is installed
OR gd-32bit-2.1.0-12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND ctags-5.8-7 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND argyllcms-1.6.3-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise for SAP 12 SP1 is installed
AND Package Information
kgraft-patch-3_12_67-60_64_21-default-7-3.1 is installed
OR kgraft-patch-3_12_67-60_64_21-xen-7-3.1 is installed
OR kgraft-patch-SLE12-SP1_Update_10-7-3.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 is installed
AND haproxy-1.5.4-2.4.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP1 is installed
AND Package Information
ctdb-4.2.4-26.2 is installed
OR samba-4.2.4-26.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP2 is installed
AND fence-agents-4.0.22+git.1455008135.15c5e92-8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP3 is installed
AND haproxy-1.6.11-10 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP5 is installed
AND lighttpd-1.4.35-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Performance Computing 12 SP5 is installed
AND Package Information
augeas-1.10.1-2 is installed
OR augeas-lenses-1.10.1-2 is installed
OR libaugeas0-1.10.1-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Live Patching 12 SP5 is installed
AND kgraft-patch-4_12_14-122_113-default-7-2.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Public Cloud 15 SP1 is installed
AND Package Information
kernel-azure-4.12.14-8.22 is installed
OR kernel-azure-base-4.12.14-8.22 is installed
OR kernel-azure-devel-4.12.14-8.22 is installed
OR kernel-devel-azure-4.12.14-8.22 is installed
OR kernel-source-azure-4.12.14-8.22 is installed
OR kernel-syms-azure-4.12.14-8.22 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Web Scripting 12 is installed
AND Package Information
apache2-mod_php5-5.5.14-109.41 is installed
OR php5-5.5.14-109.41 is installed
OR php5-bcmath-5.5.14-109.41 is installed
OR php5-bz2-5.5.14-109.41 is installed
OR php5-calendar-5.5.14-109.41 is installed
OR php5-ctype-5.5.14-109.41 is installed
OR php5-curl-5.5.14-109.41 is installed
OR php5-dba-5.5.14-109.41 is installed
OR php5-dom-5.5.14-109.41 is installed
OR php5-enchant-5.5.14-109.41 is installed
OR php5-exif-5.5.14-109.41 is installed
OR php5-fastcgi-5.5.14-109.41 is installed
OR php5-fileinfo-5.5.14-109.41 is installed
OR php5-fpm-5.5.14-109.41 is installed
OR php5-ftp-5.5.14-109.41 is installed
OR php5-gd-5.5.14-109.41 is installed
OR php5-gettext-5.5.14-109.41 is installed
OR php5-gmp-5.5.14-109.41 is installed
OR php5-iconv-5.5.14-109.41 is installed
OR php5-imap-5.5.14-109.41 is installed
OR php5-intl-5.5.14-109.41 is installed
OR php5-json-5.5.14-109.41 is installed
OR php5-ldap-5.5.14-109.41 is installed
OR php5-mbstring-5.5.14-109.41 is installed
OR php5-mcrypt-5.5.14-109.41 is installed
OR php5-mysql-5.5.14-109.41 is installed
OR php5-odbc-5.5.14-109.41 is installed
OR php5-opcache-5.5.14-109.41 is installed
OR php5-openssl-5.5.14-109.41 is installed
OR php5-pcntl-5.5.14-109.41 is installed
OR php5-pdo-5.5.14-109.41 is installed
OR php5-pear-5.5.14-109.41 is installed
OR php5-pgsql-5.5.14-109.41 is installed
OR php5-phar-5.5.14-109.41 is installed
OR php5-posix-5.5.14-109.41 is installed
OR php5-pspell-5.5.14-109.41 is installed
OR php5-shmop-5.5.14-109.41 is installed
OR php5-snmp-5.5.14-109.41 is installed
OR php5-soap-5.5.14-109.41 is installed
OR php5-sockets-5.5.14-109.41 is installed
OR php5-sqlite-5.5.14-109.41 is installed
OR php5-suhosin-5.5.14-109.41 is installed
OR php5-sysvmsg-5.5.14-109.41 is installed
OR php5-sysvsem-5.5.14-109.41 is installed
OR php5-sysvshm-5.5.14-109.41 is installed
OR php5-tokenizer-5.5.14-109.41 is installed
OR php5-wddx-5.5.14-109.41 is installed
OR php5-xmlreader-5.5.14-109.41 is installed
OR php5-xmlrpc-5.5.14-109.41 is installed
OR php5-xmlwriter-5.5.14-109.41 is installed
OR php5-xsl-5.5.14-109.41 is installed
OR php5-zip-5.5.14-109.41 is installed
OR php5-zlib-5.5.14-109.41 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Point of Sale 12 SP2-CLIENT is installed
AND Package Information
glibc-2.22-62.13 is installed
OR glibc-32bit-2.22-62.13 is installed
OR glibc-devel-2.22-62.13 is installed
OR glibc-devel-32bit-2.22-62.13 is installed
OR glibc-html-2.22-62.13 is installed
OR glibc-i18ndata-2.22-62.13 is installed
OR glibc-info-2.22-62.13 is installed
OR glibc-locale-2.22-62.13 is installed
OR glibc-locale-32bit-2.22-62.13 is installed
OR glibc-profile-2.22-62.13 is installed
OR glibc-profile-32bit-2.22-62.13 is installed
OR nscd-2.22-62.13 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP2 is installed
AND Package Information
PackageKit-0.3.14-2.23.126 is installed
OR PackageKit-lang-0.3.14-2.23.126 is installed
OR hal-0.5.12-23.58.22 is installed
OR hal-32bit-0.5.12-23.58.22 is installed
OR hal-doc-0.5.12-23.58.21 is installed
OR hal-x86-0.5.12-23.58.22 is installed
OR libpackagekit-glib10-0.3.14-2.23.126 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP2-LTSS is installed
AND kvm-0.15.1-0.32.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 is installed
AND Package Information
openvpn-2.3.2-11.1 is installed
OR openvpn-auth-pam-plugin-2.3.2-11.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
apache2-2.4.16-5 is installed
OR apache2-doc-2.4.16-5 is installed
OR apache2-example-pages-2.4.16-5 is installed
OR apache2-prefork-2.4.16-5 is installed
OR apache2-utils-2.4.16-5 is installed
OR apache2-worker-2.4.16-5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND Package Information
apache-commons-daemon-1.0.15-4 is installed
OR apache-commons-daemon-javadoc-1.0.15-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND Package Information
augeas-1.2.0-15 is installed
OR augeas-lenses-1.2.0-15 is installed
OR libaugeas0-1.2.0-15 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND Package Information
apache-commons-daemon-1.0.15-6 is installed
OR apache-commons-daemon-javadoc-1.0.15-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12-LTSS is installed
AND apache2-mod_nss-1.0.14-10.14.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 15-LTSS is installed
AND Package Information
libfreebl3-3.53-3.40 is installed
OR libfreebl3-32bit-3.53-3.40 is installed
OR libfreebl3-hmac-3.53-3.40 is installed
OR libfreebl3-hmac-32bit-3.53-3.40 is installed
OR libsoftokn3-3.53-3.40 is installed
OR libsoftokn3-32bit-3.53-3.40 is installed
OR libsoftokn3-hmac-3.53-3.40 is installed
OR libsoftokn3-hmac-32bit-3.53-3.40 is installed
OR mozilla-nspr-4.25-3.12 is installed
OR mozilla-nspr-32bit-4.25-3.12 is installed
OR mozilla-nspr-devel-4.25-3.12 is installed
OR mozilla-nss-3.53-3.40 is installed
OR mozilla-nss-32bit-3.53-3.40 is installed
OR mozilla-nss-certs-3.53-3.40 is installed
OR mozilla-nss-certs-32bit-3.53-3.40 is installed
OR mozilla-nss-devel-3.53-3.40 is installed
OR mozilla-nss-sysinit-3.53-3.40 is installed
OR mozilla-nss-tools-3.53-3.40 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 is installed
AND logrotate-3.8.7-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 15 is installed
AND Package Information
java-1_8_0-ibm-1.8.0_sr6.10-3.38 is installed
OR java-1_8_0-ibm-alsa-1.8.0_sr6.10-3.38 is installed
OR java-1_8_0-ibm-devel-1.8.0_sr6.10-3.38 is installed
OR java-1_8_0-ibm-plugin-1.8.0_sr6.10-3.38 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP2 is installed
AND rubygem-rack-1.1.6-0.9.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP3 is installed
AND libksba-devel-1.0.4-1.18.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
AND Package Information
jasper-1.900.14-134.25.1 is installed
OR libjasper-devel-1.900.14-134.25.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 is installed
AND Package Information
FastCGI-2.4.0-167 is installed
OR perl-FastCGI-2.4.0-167 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP1 is installed
AND Package Information
ImageMagick-6.8.8.1-8 is installed
OR ImageMagick-devel-6.8.8.1-8 is installed
OR libMagick++-6_Q16-3-6.8.8.1-8 is installed
OR libMagick++-devel-6.8.8.1-8 is installed
OR perl-PerlMagick-6.8.8.1-8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP2 is installed
AND Package Information
DirectFB-devel-1.7.1-6 is installed
OR lib++dfb-devel-1.7.1-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 is installed
AND Package Information
python-backports.ssl_match_hostname-3.4.0.2-15.1 is installed
OR python-tornado-4.2.1-11.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
AND Package Information
libmysqlclient_r18-10.0.27-12.1 is installed
OR libmysqlclient_r18-32bit-10.0.27-12.1 is installed
OR mariadb-10.0.27-12.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
AND Package Information
kernel-default-4.4.21-90.1 is installed
OR kernel-default-extra-4.4.21-90.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 is installed
AND Package Information
MozillaThunderbird-60.7.0-3.33 is installed
OR MozillaThunderbird-translations-common-60.7.0-3.33 is installed
OR MozillaThunderbird-translations-other-60.7.0-3.33 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
AND Package Information
kernel-default-4.12.14-197.4 is installed
OR kernel-default-extra-4.12.14-197.4 is installed
|
Definition Synopsis |
SUSE Package Hub for SUSE Linux Enterprise 12 is installed
AND Package Information
irssi-0.8.20-9 is installed
OR irssi-devel-0.8.20-9 is installed
|