Описание
Security update for the Linux Kernel (Live Patch 55 for SLE 15 SP3)
This update for the Linux Kernel 5.3.18-150300_59_198 fixes one issue.
The following security issue was fixed:
- CVE-2022-49545: ALSA: usb-audio: Cancel pending work at closing a MIDI substream (bsc#1238730).
Список пакетов
SUSE Linux Enterprise Live Patching 15 SP3
kernel-livepatch-5_3_18-150300_59_198-default-3-150300.2.1
Ссылки
- Link for SUSE-SU-2025:02098-1
- E-Mail link for SUSE-SU-2025:02098-1
- SUSE Security Ratings
- SUSE Bug 1238730
- SUSE CVE CVE-2022-49545 page
Описание
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Cancel pending work at closing a MIDI substream At closing a USB MIDI output substream, there might be still a pending work, which would eventually access the rawmidi runtime object that is being released. For fixing the race, make sure to cancel the pending work at closing.
Затронутые продукты
SUSE Linux Enterprise Live Patching 15 SP3:kernel-livepatch-5_3_18-150300_59_198-default-3-150300.2.1
Ссылки
- CVE-2022-49545
- SUSE Bug 1238729
- SUSE Bug 1238730