Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2023:0407-1

Опубликовано: 14 фев. 2023
Источник: suse-cvrf

Описание

Security update for the Linux Kernel

The SUSE Linux Enterprise 12 SP4 kernel was updated to receive various security and bugfixes.

The following security bugs were fixed:

  • CVE-2022-47929: Fixed NULL pointer dereference bug in the traffic control subsystem (bnc#1207237).
  • CVE-2023-23454: Fixed denial or service in cbq_classify in net/sched/sch_cbq.c (bnc#1207036).
  • CVE-2022-4662: Fixed incorrect access control in the USB core subsystem that could lead a local user to crash the system (bnc#1206664).
  • CVE-2022-3564: Fixed use-after-free in l2cap_core.c of the Bluetooth component (bnc#1206073).

The following non-security bugs were fixed:

  • Added support for enabling livepatching related packages on -RT (jsc#PED-1706).
  • Added suse-kernel-rpm-scriptlets to kmp buildreqs (boo#1205149).
  • Reverted 'constraints: increase disk space for all architectures' (bsc#1203693).
  • HID: betop: check shape of output reports (bsc#1207186).
  • HID: betop: fix slab-out-of-bounds Write in betop_probe (bsc#1207186).
  • HID: check empty report_list in hid_validate_values() (bsc#1206784).
  • net: sched: atm: dont intepret cls results when asked to drop (bsc#1207036).
  • net: sched: cbq: dont intepret cls results when asked to drop (bsc#1207036).
  • sctp: fail if no bound addresses can be used for a given scope (bsc#1206677).

Список пакетов

SUSE Linux Enterprise High Availability Extension 12 SP4
cluster-md-kmp-default-4.12.14-95.117.1
dlm-kmp-default-4.12.14-95.117.1
gfs2-kmp-default-4.12.14-95.117.1
ocfs2-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise Live Patching 12 SP4
kernel-default-kgraft-4.12.14-95.117.1
kernel-default-kgraft-devel-4.12.14-95.117.1
kgraft-patch-4_12_14-95_117-default-1-6.3.1
SUSE Linux Enterprise Server 12 SP4-LTSS
kernel-default-4.12.14-95.117.1
kernel-default-base-4.12.14-95.117.1
kernel-default-devel-4.12.14-95.117.1
kernel-default-man-4.12.14-95.117.1
kernel-devel-4.12.14-95.117.1
kernel-macros-4.12.14-95.117.1
kernel-source-4.12.14-95.117.1
kernel-syms-4.12.14-95.117.1
SUSE Linux Enterprise Server for SAP Applications 12 SP4
kernel-default-4.12.14-95.117.1
kernel-default-base-4.12.14-95.117.1
kernel-default-devel-4.12.14-95.117.1
kernel-devel-4.12.14-95.117.1
kernel-macros-4.12.14-95.117.1
kernel-source-4.12.14-95.117.1
kernel-syms-4.12.14-95.117.1
SUSE OpenStack Cloud 9
kernel-default-4.12.14-95.117.1
kernel-default-base-4.12.14-95.117.1
kernel-default-devel-4.12.14-95.117.1
kernel-devel-4.12.14-95.117.1
kernel-macros-4.12.14-95.117.1
kernel-source-4.12.14-95.117.1
kernel-syms-4.12.14-95.117.1
SUSE OpenStack Cloud Crowbar 9
kernel-default-4.12.14-95.117.1
kernel-default-base-4.12.14-95.117.1
kernel-default-devel-4.12.14-95.117.1
kernel-devel-4.12.14-95.117.1
kernel-macros-4.12.14-95.117.1
kernel-source-4.12.14-95.117.1
kernel-syms-4.12.14-95.117.1

Описание

A vulnerability classified as critical was found in Linux Kernel. Affected by this vulnerability is the function l2cap_reassemble_sdu of the file net/bluetooth/l2cap_core.c of the component Bluetooth. The manipulation leads to use after free. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-211087.


Затронутые продукты
SUSE Linux Enterprise High Availability Extension 12 SP4:cluster-md-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:dlm-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:gfs2-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:ocfs2-kmp-default-4.12.14-95.117.1

Ссылки

Описание

A flaw incorrect access control in the Linux kernel USB core subsystem was found in the way user attaches usb device. A local user could use this flaw to crash the system.


Затронутые продукты
SUSE Linux Enterprise High Availability Extension 12 SP4:cluster-md-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:dlm-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:gfs2-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:ocfs2-kmp-default-4.12.14-95.117.1

Ссылки

Описание

In the Linux kernel before 6.1.6, a NULL pointer dereference bug in the traffic control subsystem allows an unprivileged user to trigger a denial of service (system crash) via a crafted traffic control configuration that is set up with "tc qdisc" and "tc class" commands. This affects qdisc_graft in net/sched/sch_api.c.


Затронутые продукты
SUSE Linux Enterprise High Availability Extension 12 SP4:cluster-md-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:dlm-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:gfs2-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:ocfs2-kmp-default-4.12.14-95.117.1

Ссылки

Описание

cbq_classify in net/sched/sch_cbq.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service (slab-out-of-bounds read) because of type confusion (non-negative numbers can sometimes indicate a TC_ACT_SHOT condition rather than valid classification results).


Затронутые продукты
SUSE Linux Enterprise High Availability Extension 12 SP4:cluster-md-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:dlm-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:gfs2-kmp-default-4.12.14-95.117.1
SUSE Linux Enterprise High Availability Extension 12 SP4:ocfs2-kmp-default-4.12.14-95.117.1

Ссылки
Уязвимость SUSE-SU-2023:0407-1