Oval Definition:oval:org.opensuse.security:def:67187
Revision Date:2021-07-20Version:1
Title:Security update for the Linux Kernel (Important)
Description:



The SUSE Linux Enterprise 15 SP3 Azure kernel was updated to receive various security and bugfixes.

The following security bugs were fixed:

- CVE-2021-22555: A heap out-of-bounds write affecting Linux since v2.6.19-rc1 was discovered in net/netfilter/x_tables.c (bnc#1188116 ). - CVE-2021-33909: Fixed an out-of-bounds write in the filesystem layer that allows to obtain full root privileges (bsc#1188062).

The following non-security bugs were fixed:

- ceph: must hold snap_rwsem when filling inode for async create (bsc#1187927). - cgroup1: do not allow '\n' in renaming (bsc#1187972). - qla2xxx: synchronize rport dev_loss_tmo setting (bsc#1182470 bsc#1185486). - scsi: ufs: ufshcd-pltfrm depends on HAS_IOMEM (bsc#1187980). - usb: dwc3: Fix debugfs creation flow (git-fixes). - x86/pkru: Write hardware init value to PKRU when xstate is init (bsc#1152489). - x86/process: Check PF_KTHREAD and not current->mm for kernel threads (bsc#1152489).
Family:unixClass:patch
Status:Reference(s):1146608
1152489
1173026
1173027
1182470
1185486
1187927
1187972
1187980
1188062
1188116
CVE-2019-14973
CVE-2020-8169
CVE-2020-8177
CVE-2021-22555
CVE-2021-33909
Platform(s):SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP3
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
  • AND Package Information
  • curl-7.66.0-4.3 is installed
  • OR curl-mini-7.66.0-4.3 is installed
  • OR libcurl-devel-32bit-7.66.0-4.3 is installed
  • OR libcurl-mini-devel-7.66.0-4.3 is installed
  • OR libcurl4-mini-7.66.0-4.3 is installed
  • BACK