Oval Definition:oval:org.opensuse.security:def:582
Revision Date:2022-07-15Version:1
Title:Security update for the Linux Kernel (Important)
Description:

The SUSE Linux Enterprise 15 SP1 kernel was updated to receive various security and bugfixes.



The following security bugs were fixed:

- CVE-2022-29900, CVE-2022-29901: Fixed the RETBLEED attack, a new Spectre like Branch Target Buffer attack, that can leak arbitrary kernel information (bsc#1199657). - CVE-2022-1679: Fixed a use-after-free in the Atheros wireless driver in the way a user forces the ath9k_htc_wait_for_target function to fail with some input messages (bsc#1199487). - CVE-2022-20132: Fixed out of bounds read due to improper input validation in lg_probe and related functions of hid-lg.c (bsc#1200619). - CVE-2022-33981: Fixed use-after-free in floppy driver (bsc#1200692) - CVE-2022-20141: Fixed a possible use after free due to improper locking in ip_check_mc_rcu() (bsc#1200604). - CVE-2021-4157: Fixed an out of memory bounds write flaw in the NFS subsystem, related to the replication of files with NFS. A user could potentially crash the system or escalate privileges on the system (bsc#1194013). - CVE-2022-20154: Fixed a use after free due to a race condition in lock_sock_nested of sock.c. This could lead to local escalation of privilege with System execution privileges needed (bsc#1200599). - CVE-2022-2318: Fixed a use-after-free vulnerabilities in the timer handler in net/rose/rose_timer.c that allow attackers to crash the system without any privileges (bsc#1201251). - CVE-2022-26365, CVE-2022-33740, CVE-2022-33741, CVE-2022-33742: Fixed multiple potential data leaks with Block and Network devices when using untrusted backends (bsc#1200762). - CVE-2021-26341: Some AMD CPUs may transiently execute beyond unconditional direct branches, which may potentially result in data leakage (bsc#1201050).

The following non-security bugs were fixed:

- exec: Force single empty string when argv is empty (bsc#1200571).
Family:unixClass:patch
Status:Reference(s):1194013
1196901
1199487
1199657
1200571
1200599
1200604
1200605
1200608
1200619
1200692
1200762
1201050
1201080
1201251
CVE-2014-8139
CVE-2014-8139
CVE-2014-8140
CVE-2014-8140
CVE-2014-8141
CVE-2014-8141
CVE-2014-9636
CVE-2014-9636
CVE-2014-9913
CVE-2014-9913
CVE-2015-7696
CVE-2015-7696
CVE-2015-7697
CVE-2015-7697
CVE-2016-9844
CVE-2016-9844
CVE-2018-1000035
CVE-2018-1000035
CVE-2018-18384
CVE-2018-18384
CVE-2021-26341
CVE-2021-4157
CVE-2022-1679
CVE-2022-20132
CVE-2022-20141
CVE-2022-20154
CVE-2022-2318
CVE-2022-26365
CVE-2022-29900
CVE-2022-29901
CVE-2022-33740
CVE-2022-33741
CVE-2022-33742
CVE-2022-33981
SUSE-SU-2022:2411-1
Platform(s):openSUSE 13.1
openSUSE Leap 15.4
SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 15 SP1
SUSE Linux Enterprise for SAP 12 SP1
SUSE Linux Enterprise High Availability 12
SUSE Linux Enterprise High Performance Computing 15 SP1
SUSE Linux Enterprise Live Patching 12
SUSE Linux Enterprise Module for Basesystem 15
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Module for Desktop Applications 15
SUSE Linux Enterprise Module for Desktop Applications 15 SP1
SUSE Linux Enterprise Module for Development Tools 15
SUSE Linux Enterprise Module for Legacy Software 12
SUSE Linux Enterprise Module for Public Cloud 12
SUSE Linux Enterprise Module for Public Cloud 15
SUSE Linux Enterprise Module for Toolchain 12
SUSE Linux Enterprise Module for Web Scripting 12
SUSE Linux Enterprise Module for Web Scripting 15
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Software Development Kit 12
SUSE Linux Enterprise Storage 6
SUSE Manager Proxy 4.0
SUSE Manager Server 4.0
SUSE Package Hub for SUSE Linux Enterprise 12
Product(s):
Definition Synopsis
  • openSUSE Leap 15.4 is installed
  • AND Package Information
  • kernel-debug-base-4.12.14-150100.197.117.1 is installed
  • OR kernel-default-man-4.12.14-150100.197.117.1 is installed
  • OR kernel-kvmsmall-base-4.12.14-150100.197.117.1 is installed
  • OR kernel-vanilla-4.12.14-150100.197.117.1 is installed
  • OR kernel-vanilla-base-4.12.14-150100.197.117.1 is installed
  • OR kernel-vanilla-devel-4.12.14-150100.197.117.1 is installed
  • OR kernel-vanilla-livepatch-devel-4.12.14-150100.197.117.1 is installed
  • OR kernel-zfcpdump-man-4.12.14-150100.197.117.1 is installed
  • Definition Synopsis
  • SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5 is installed
  • AND haproxy-1.5.4-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • MozillaFirefox-31.1.0esr-1 is installed
  • OR MozillaFirefox-translations-31.1.0esr-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • gstreamer-0_10-plugins-bad-0.10.23-20 is installed
  • OR gstreamer-0_10-plugins-bad-lang-0.10.23-20 is installed
  • OR libgstbasecamerabinsrc-0_10-23-0.10.23-20 is installed
  • OR libgstbasecamerabinsrc-0_10-23-32bit-0.10.23-20 is installed
  • OR libgstbasevideo-0_10-23-0.10.23-20 is installed
  • OR libgstbasevideo-0_10-23-32bit-0.10.23-20 is installed
  • OR libgstcodecparsers-0_10-23-0.10.23-20 is installed
  • OR libgstphotography-0_10-23-0.10.23-20 is installed
  • OR libgstphotography-0_10-23-32bit-0.10.23-20 is installed
  • OR libgstsignalprocessor-0_10-23-0.10.23-20 is installed
  • OR libgstsignalprocessor-0_10-23-32bit-0.10.23-20 is installed
  • OR libgstvdp-0_10-23-0.10.23-20 is installed
  • OR libgstvdp-0_10-23-32bit-0.10.23-20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND unzip-6.00-4.8.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 is installed
  • AND Package Information
  • libblkid-devel-2.31.1-9.3 is installed
  • OR libblkid-devel-static-2.31.1-9.3 is installed
  • OR libblkid1-2.31.1-9.3 is installed
  • OR libblkid1-32bit-2.31.1-9.3 is installed
  • OR libfdisk-devel-2.31.1-9.3 is installed
  • OR libfdisk1-2.31.1-9.3 is installed
  • OR libmount-devel-2.31.1-9.3 is installed
  • OR libmount1-2.31.1-9.3 is installed
  • OR libmount1-32bit-2.31.1-9.3 is installed
  • OR libsmartcols-devel-2.31.1-9.3 is installed
  • OR libsmartcols1-2.31.1-9.3 is installed
  • OR libuuid-devel-2.31.1-9.3 is installed
  • OR libuuid-devel-static-2.31.1-9.3 is installed
  • OR libuuid1-2.31.1-9.3 is installed
  • OR libuuid1-32bit-2.31.1-9.3 is installed
  • OR util-linux-2.31.1-9.3 is installed
  • OR util-linux-lang-2.31.1-9.3 is installed
  • OR util-linux-systemd-2.31.1-9.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND unzip-6.00-4.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 is installed
  • AND Package Information
  • libqt5-qtimageformats-5.9.4-3.3 is installed
  • OR libqt5-qtimageformats-devel-5.9.4-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
  • AND Package Information
  • ffmpeg-3.4.2-4.17 is installed
  • OR libavcodec57-3.4.2-4.17 is installed
  • OR libavutil-devel-3.4.2-4.17 is installed
  • OR libavutil55-3.4.2-4.17 is installed
  • OR libpostproc-devel-3.4.2-4.17 is installed
  • OR libpostproc54-3.4.2-4.17 is installed
  • OR libswresample-devel-3.4.2-4.17 is installed
  • OR libswresample2-3.4.2-4.17 is installed
  • OR libswscale-devel-3.4.2-4.17 is installed
  • OR libswscale4-3.4.2-4.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 is installed
  • AND Package Information
  • perl-5.26.1-7.3 is installed
  • OR perl-doc-5.26.1-7.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Public Cloud 15 is installed
  • AND Package Information
  • kernel-azure-4.12.14-5.5 is installed
  • OR kernel-azure-base-4.12.14-5.5 is installed
  • OR kernel-azure-devel-4.12.14-5.5 is installed
  • OR kernel-devel-azure-4.12.14-5.5 is installed
  • OR kernel-source-azure-4.12.14-5.5 is installed
  • OR kernel-syms-azure-4.12.14-5.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 is installed
  • AND Package Information
  • nodejs8-8.11.3-3.5 is installed
  • OR nodejs8-devel-8.11.3-3.5 is installed
  • OR nodejs8-docs-8.11.3-3.5 is installed
  • OR npm8-8.11.3-3.5 is installed
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 12 is installed
  • AND Package Information
  • irssi-0.8.20-9 is installed
  • OR irssi-devel-0.8.20-9 is installed
  • BACK